Stránka 1 z 1

Nejake otravne Adware

Napsal: 05 bře 2014 17:58
od kiko22
dobry den,

teraz som si po dlhsej dobe prezrel pocitac a zistl som, ze tam mam par veci, ktore som neinstaloval a pribudlo nieco ako Smileys we love a este nieco

mohli by ste to prosim odpalit jdenym z vasich super programov?

Dakujem, Kiko

Re: Nejake otravne Adware

Napsal: 05 bře 2014 18:33
od Rudy
Zdravím!
Zkuste tento postup: http://forum.viry.cz/viewtopic.php?f=13&t=133100 .

Re: Nejake otravne Adware

Napsal: 05 bře 2014 19:00
od kiko22
tu je log
zatial dakujem za pomoc, kiko

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 05-03-2014
Ran by krist_000 at 2014-03-05 19:01:13
Running from C:\Users\krist_000\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: Bitdefender Antivirus (Enabled - Up to date) {9A0813D8-CED6-F86B-072E-28D2AF25A83D}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Bitdefender Antispyware (Enabled - Up to date) {2169F23C-E8EC-F7E5-3D9E-13A0D4A2E280}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Bitdefender Firewall (Enabled) {A23392FD-84B9-F933-2C71-81E751F6EF46}

==================== Installed Programs ======================

„Windows Live Essentials“ (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
„Windows Live Mail“ (x32 Version: 16.4.3505.0912 - „Microsoft Corporation“) Hidden
„Windows Live Messenger“ (x32 Version: 16.4.3505.0912 - „Microsoft Corporation“) Hidden
µTorrent (HKCU\...\uTorrent) (Version: 3.3.1.30017 - BitTorrent Inc.)
ABBYY FineReader 9.0 Sprint (HKLM-x32\...\ABBYY FineReader 9.0 Sprint) (Version: 9.00.631.5823 - ABBYY)
ABBYY FineReader 9.0 Sprint (x32 Version: 9.00.631.5823 - ABBYY) Hidden
Adobe Flash Player 12 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 12.0.0.70 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.06) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.0 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.0.5.146 - Adobe Systems, Inc.)
Aktualizácie NVIDIA 1.14.17 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.14.17 - NVIDIA Corporation)
Angry Birds Breakfast 2 (HKLM-x32\...\{8495C4DB-8328-4C11-9727-4355DC74A311}) (Version: 1.0.16 - Rovio Entertainment Ltd.)
Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}) (Version: 7.0.0.117 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Battery Calibration (HKLM-x32\...\{619FA785-489B-4D22-911F-82D6EDF5BDB0}) (Version: 1.0.1208.0301 - Micro-Star International Co., Ltd.)
Bitdefender Internet Security (HKLM\...\Bitdefender) (Version: 17.15.0.682 - Bitdefender)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
BurnRecovery (HKLM-x32\...\{2892E1B7-E24D-4CCB-B8A7-B63D4B66F89F}) (Version: 4.0.1211.2101 - Micro-Star International Co., Ltd.)
CCleaner (HKLM\...\CCleaner) (Version: 4.09 - Piriform)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{81FB7C60-565A-4869-9D90-3BE1D270E8B7}) (Version: - Microsoft)
Epson Easy Photo Print 2 (HKLM-x32\...\{02A312B5-1542-47B6-BFE9-F51358C39E86}) (Version: 2.4.0.0 - SEIKO EPSON CORPORATION)
Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (HKLM-x32\...\{B2D55EB8-32C5-4B43-9006-9E97DECBA178}) (Version: 1.00.0000 - SEIKO EPSON CORPORATION2)
Epson Event Manager (HKLM-x32\...\{8F01524C-0676-4CC1-B4AE-64753C723391}) (Version: 3.01.0005 - Seiko Epson Corporation)
Epson Používateľská príručka XP-600 Series (HKLM-x32\...\XP-600 Series Useg) (Version: - )
Epson Print CD (HKLM-x32\...\{D16A31F9-276D-4968-A753-FFEAC56995D0}) (Version: 2.20.00 - SEIKO EPSON CORPORATION)
EPSON Printer Finder (HKLM-x32\...\{B8ECD0D3-AE08-4891-B6C7-32F96B75EB6C}) (Version: 1.0.0 - SEIKO EPSON CORPORATION)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation)
Epson Sprievodca sieťou XP-600 Series (HKLM-x32\...\XP-600 Series Netg) (Version: - )
EpsonNet Print (HKLM-x32\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.6.0 - SEIKO EPSON CORPORATION)
ETDWare PS/2-X64 11.13.0.2_WHQL (HKLM\...\Elantech) (Version: 11.13.0.2 - ELAN Microelectronic Corp.)
Euro Truck Simulator 2 (HKLM-x32\...\{1B705E8F-9893-4486-B5D7-4F7FEB9C871E}_is1) (Version: 1.0.5 - SCS Software)
Fotoattēlu galerija (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotogaléria (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotogalerii (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotogalerija (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Foto-galerija (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotogalleri (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotogalleriet (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotoğraf Galerisi (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotótár (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galeria de Fotografias (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galeria de Fotos (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galería de fotos (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galeria fotografii (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galerie de photos (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galerie foto (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galerija fotografija (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Google Drive (HKLM-x32\...\{E87022D3-C8C9-4C76-8E27-BC7F18F9B8FB}) (Version: 1.14.6059.644 - Google, Inc.)
Google Earth Plug-in (HKLM-x32\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden
Grand Theft Auto IV (x32 Version: 1.0.0013.131 - Rockstar Games Inc.) Hidden
Cheat Engine 6.3 (HKLM-x32\...\Cheat Engine 6.3_is1) (Version: - Cheat Engine)
iCloud (HKLM\...\{81E20D41-C277-4526-934D-F2380AF91B78}) (Version: 3.1.0.40 - Apple Inc.)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1281 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3345 - Intel Corporation)
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\...\{0728A184-F899-4356-B93D-8228674F0DEB}) (Version: 2.6.1209.0268 - Motorola Solutions, Inc.)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.6.0.1030 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
Intel® Trusted Connect Service Client (Version: 1.24.738.1 - Intel Corporation) Hidden
iTunes (HKLM\...\{D601CEAD-2E4F-4BBB-85CC-C29A4CE6A3C0}) (Version: 11.1.3.8 - Apple Inc.)
Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217017FF}) (Version: 7.0.510 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Junk Mail filter update (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
KB9X Radio Switch Driver (HKLM\...\B16388B2E5D3CBA8F0EE88A8C5459BADAF4DE251) (Version: 1.0.7112.20593 - ENE TECHNOLOGY INC.)
Malwarebytes Anti-Malware verzia 1.75.0.1300 (HKLM-x32\...\Malwarebytes' Anti-Malware_is1) (Version: 1.75.0.1300 - Malwarebytes Corporation)
Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (x32 Version: 12.0.6012.5000 - Microsoft Corporation) Hidden
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Help Viewer 1.1 (HKLM\...\Microsoft Help Viewer 1.1) (Version: 1.1.40219 - Microsoft Corporation)
Microsoft Help Viewer 1.1 (Version: 1.1.40219 - Microsoft Corporation) Hidden
Microsoft Office Access MUI (Czech) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (Czech) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Groove MUI (Czech) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (Czech) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (Czech) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (Czech) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (Czech) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Czech) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Slovak) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (Czech) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (Czech) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (Czech) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Czech) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (Czech) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKCU\...\OneDriveSetup.exe) (Version: 17.0.4029.0217 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20913.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server 2008 (64-bit) (HKLM\...\Microsoft SQL Server 10 Release) (Version: - Microsoft Corporation)
Microsoft SQL Server 2008 (64-bit) (Version: - Microsoft Corporation) Hidden
Microsoft SQL Server 2008 Browser (HKLM-x32\...\{C688457E-03FD-4941-923B-A27F4D42A7DD}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft SQL Server 2008 Common Files (Version: 10.3.5500.0 - Microsoft Corporation) Hidden
Microsoft SQL Server 2008 Database Engine Services (Version: 10.3.5500.0 - Microsoft Corporation) Hidden
Microsoft SQL Server 2008 Database Engine Shared (Version: 10.3.5500.0 - Microsoft Corporation) Hidden
Microsoft SQL Server 2008 Native Client (HKLM\...\{2738C4AA-420E-4E13-ADEF-B5AB250E3EF1}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Management Objects (HKLM-x32\...\{77F1F8AD-51B8-4490-AEEC-BF480073E0FC}) (Version: 10.50.1750.9 - Microsoft Corporation)
Microsoft SQL Server 2008 RsFx Driver (Version: 10.3.5500.0 - Microsoft Corporation) Hidden
Microsoft SQL Server 2008 Setup Support Files (HKLM\...\{6292D514-17A4-403F-98F9-E150F10C043D}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 ENU (HKLM-x32\...\{3A9FC03D-C685-4831-94CF-4EDFD3749497}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 x64 ENU (HKLM\...\{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft SQL Server System CLR Types (HKLM-x32\...\{877B76B2-F83F-4F5A-B28D-3F398641ADB6}) (Version: 10.50.1750.9 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{0826F9E4-787E-481D-83E0-BC6A57B056D5}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft Visual Basic 2010 Express - ENU (HKLM-x32\...\Microsoft Visual Basic 2010 Express - ENU) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Basic 2010 Express - ENU (x32 Version: 10.0.40219 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Runtime - 10.0.40219 (HKLM\...\{1C7C8AAF-A16D-32E8-89E5-F6D165DE0BCE}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Runtime - 10.0.40219 (HKLM-x32\...\{5D9ED403-94DE-3BA0-B1D6-71F4BDA412E6}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools (HKLM-x32\...\{14DD7530-CCD2-3798-B37D-3839ED6A441C}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Express Prerequisites x64 - ENU (HKLM\...\{BCA26999-EC22-3007-BB79-638913079C9A}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Service Pack 1 (HKLM-x32\...\Microsoft Visual Studio 2010 Service Pack 1) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Service Pack 1 (x32 Version: 10.0.40219 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.40303 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (Version: 10.0.40308 - Microsoft Corporation) Hidden
Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Mozilla Firefox 27.0.1 (x86 sk) (HKLM-x32\...\Mozilla Firefox 27.0.1 (x86 sk)) (Version: 27.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 27.0.1 - Mozilla)
MSI Remind Manager (HKLM-x32\...\{7359585E-A828-4EFC-8177-7D1883DDA0B5}) (Version: 2.12.1003 - MSI)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT Redists (Version: 1.0 - Sony Creative Software Inc.) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden
MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden
Need for Speed(TM) Hot Pursuit (HKLM-x32\...\{83A606F5-BF6F-42ED-9F33-B9F74297CDED}) (Version: 1.0.0.0 - Electronic Arts)
neroxml (x32 Version: 1.0.0 - Nero AG) Hidden
NVIDIA Grafický ovládač 327.02 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 327.02 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.133.889 - NVIDIA Corporation) Hidden
NVIDIA Optimus 1.14.17 (Version: 1.14.17 - NVIDIA Corporation) Hidden
NVIDIA PhysX (HKLM-x32\...\{3282FBE1-35FC-48D8-98CA-115A5EF1F9B4}) (Version: 9.13.0604 - NVIDIA Corporation)
NVIDIA Update Components (Version: 1.14.17 - NVIDIA Corporation) Hidden
Odinštalovať tlačiareň EPSON XP-600 Series (HKLM\...\EPSON XP-600 Series) (Version: - SEIKO EPSON Corporation)
Origin (HKLM-x32\...\Origin) (Version: 9.1.15.109 - Electronic Arts, Inc.)
Ovládací panel NVIDIA 327.02 (Version: 327.02 - NVIDIA Corporation) Hidden
PC Sound (HKLM\...\{3007FF9F-5B2C-41FF-8BFC-08BF25DB2681}) (Version: 1.12.2900 - SRS Labs, Inc.)
Photo Common (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Photo Gallery (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Poczta usługi Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Podstawowe programy Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Pošta Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
ProtectDisc Driver, Version 11 (HKLM-x32\...\ProtectDisc Driver 11) (Version: 11.0.0.14 - ProtectDisc Software GmbH)
Python 2.7.5 (HKLM-x32\...\{DBDD570E-0952-475f-9453-AB88F3DD5659}) (Version: 2.7.5150 - Python Software Foundation)
Raccolta foto (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Razer Surround (HKLM-x32\...\Razer Surround) (Version: 1.05.00 - Razer Inc.)
Razer Synapse 2.0 (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.16.6 - Razer Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.2.612.2012 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6728 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.8400.30136 - Realtek Semiconductor Corp.)
ROCCAT Kone Pure Mouse Driver (HKLM-x32\...\{4905245D-56E7-4176-BE68-962728B803D6}) (Version: - Roccat GmbH)
SCM (HKLM\...\{FA8AB91A-0B41-4797-9015-9B3FBC7834CC}) (Version: 10.012.09132 - )
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32 Version: - Microsoft) Hidden
Service Pack 3 for SQL Server 2008 (KB2546951) (64-bit) (HKLM\...\KB2546951) (Version: 10.3.5500.0 - Microsoft Corporation)
Skype™ 6.11 (HKLM-x32\...\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.11.102 - Skype Technologies S.A.)
Sony Ericsson Update Engine (HKLM-x32\...\Update Engine) (Version: 2.13.6.201305161305 - Sony Ericsson Communications AB)
Sony PC Companion 2.10.188 (HKLM-x32\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.188 - Sony)
Sprievodca službou Epson Connect (HKLM-x32\...\Epson Connect Guide) (Version: - )
Sql Server Customer Experience Improvement Program (Version: 10.3.5500.0 - Microsoft Corporation) Hidden
Super-Charger (HKLM-x32\...\{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1) (Version: 1.2.010 - MSI)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
System Requirements Lab CYRI (HKLM-x32\...\{F3FCB08B-E752-444D-86A0-0634A4F3B23D}) (Version: 6.0.8.0 - Husdawg, LLC)
ToneSync for Windows (HKCU\...\c2c9648a374f64d1) (Version: 1.2.3.309 - Zedge Europe AS)
Unity Web Player (HKCU\...\UnityWebPlayer) (Version: - Unity Technologies ApS)
Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{B4A38370-2ADB-46B0-A1B0-0C4A2F7DCA31}) (Version: - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2810071) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{001E8BF3-EDC3-4D5E-9C11-1D0E599B6497}) (Version: - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2810071) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{001E8BF3-EDC3-4D5E-9C11-1D0E599B6497}) (Version: - Microsoft)
Update for Microsoft InfoPath 2010 (KB2817369) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{4EEA3D3E-989C-4DF4-AB0A-3042C0C12AA3}) (Version: - Microsoft)
Update for Microsoft InfoPath 2010 (KB2817396) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{39767ECA-1731-45DB-AB5B-6BF40E151D66}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DADF7E25-FFA4-4D02-BE84-1DAE62C18516}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{287A1E92-9E41-4BC1-8920-B3D0E9220800}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{9D69691D-823D-4C3E-9B12-563A3F520366}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{35698CB7-AAA2-4577-B505-DBFF504AEF23}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{5AA578BB-759C-40FD-9661-A737C0884541}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{BA610006-2C39-4419-9834-CF61AB24810A}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2837583) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{E21274CE-CA0C-49FA-93F4-DC292A052264}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2850079) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}_Office14.PROPLUSR_{C70D2038-A2C4-4A99-87DE-5272BB44F0CE}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2850079) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.PROPLUSR_{B5C70C99-B109-42FD-B219-FF12CA543F19}) (Version: - Microsoft)
Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version: - Microsoft)
Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version: - Microsoft)
Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{D02AE7ED-5B00-4251-B7D5-F9590899EEEA}) (Version: - Microsoft)
Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{2AB483F1-C86E-427A-83B4-23889B03512D}) (Version: - Microsoft)
Update for Microsoft PowerPoint 2010 (KB2553145) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{6077F41F-4BA3-4333-BA4C-7EB0B1F2EB88}) (Version: - Microsoft)
Update for Microsoft PowerPoint 2010 (KB2775360) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{80F56E3F-1D47-4E45-B6E0-FEF4E919F4F9}) (Version: - Microsoft)
Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version: - Microsoft)
Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version: - Microsoft)
Update for Microsoft Visio Viewer 2010 (KB2810066) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{8C55AA83-54C2-4236-A622-78440A411DC5}) (Version: - Microsoft)
Update for Microsoft Word 2010 (KB2837593) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{E78E2B68-8FD1-42EE-BB74-99A4D9E6222D}) (Version: - Microsoft)
UpdateChecker (HKCU\...\Popajar, inc UpdateChecker) (Version: - Popajar, inc) <==== ATTENTION
Valokuvavalikoima (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
VCRedistSetup (x32 Version: 1.0.0 - Nero AG) Hidden
Vegas Pro 12.0 (64-bit) (HKLM\...\{A7500970-FE98-11E1-B560-F04DA23A5C58}) (Version: 12.0.367 - Sony)
Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 ENU (HKLM-x32\...\{112C23F2-C036-4D40-BED4-0CB47BF5555C}) (Version: 4.0.8080.0 - Microsoft Corporation)
VLC media player 2.0.7 (HKLM-x32\...\VLC media player) (Version: 2.0.7 - VideoLAN)
Windows Driver Package - Intel (NETwNe64) net (09/12/2012 15.5.4.45) (HKLM\...\A007E57753F87B14A4737DA95057F173950A6A3D) (Version: 09/12/2012 15.5.4.45 - Intel)
Windows Live Communications Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 16.4.3505.0912 - společnost Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 16.4.3505.0912 - Корпорація Майкрософт) Hidden
Windows Live Messenger (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 16.4.3505.0912 - společnost Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 16.4.3505.0912 - Корпорация Майкрософт) Hidden
Windows Live Messenger (x32 Version: 16.4.3505.0912 - Корпорація Майкрософт) Hidden
Windows Live MIME IFilter (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Pošta (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Temel Parçalar (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live メール (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live 메일 (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live 필수 패키지 (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live 程式集 (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live 软件包 (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Liven peruspaketti (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Liven sähköposti (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Media Player 64-bit Plug-in Fix (HKLM\...\{00a8ce68-cb2e-4652-aecd-c05c0d9d53a7}.sdb) (Version: - )
WinRAR 4.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.11.0 - win.rar GmbH)
Συλλογή φωτογραφιών (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Основи Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Основные компоненты Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Почта Windows Live (x32 Version: 16.4.3505.0912 - Корпорация Майкрософт) Hidden
Фотоальбом (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Фотогалерия (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Фотографии (общедоступная версия) (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Фотоколекція (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
フォト ギャラリー (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
גלריית התמונות (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
بريد Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
معرض الصور (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
사진 갤러리 (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
影像中心 (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
照片库 (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden

==================== Restore Points =========================

19-02-2014 12:59:23 Windows Update
21-02-2014 14:40:41 Sony PC Companion
01-03-2014 18:37:50 Scheduled Checkpoint
03-03-2014 20:42:28 Installed Java 7 Update 51
05-03-2014 17:01:09 Odstránené Smileys We Love Toolbar for IE

==================== Hosts content: ==========================

2012-07-26 06:26 - 2013-08-30 20:43 - 00000098 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 localhost
::1 localhost

==================== Scheduled Tasks (whitelisted) =============

Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {19C1AC9A-D041-4B24-B166-6F57958ABA87} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-12-17] (Piriform Ltd)
Task: {1E9A37D2-7469-471A-AA8B-2BF0FD8B5FD8} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1449852709-4245229944-518367605-1002 => %localappdata%\Microsoft\SkyDrive\SkyDrive.exe
Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)
Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation)
Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance
Task: {66089654-FD39-4B5D-9E0D-5520CF1B5AF9} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-01-19] (Microsoft Corporation)
Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task
Task: {6E8FF633-5DA0-49A9-99A1-6971B6E3C6E7} - System32\Tasks\Bitdefender Autoscan => C:\Program Files\Bitdefender\Bitdefender\mtasklaunch.exe [2013-06-19] (Bitdefender)
Task: {72C3936C-1F54-40A9-B45C-D25D5A9C7D32} - System32\Tasks\GenericSettingsHandler\Windows-Credentials\RetrySyncTask_for_S-1-5-21-1449852709-4245229944-518367605-1002
Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task
Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask

Re: Nejake otravne Adware

Napsal: 05 bře 2014 19:01
od kiko22
Task: {8F1ADBAA-1434-4441-8F49-C1AB46D59BE9} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-20] (Adobe Systems Incorporated)
Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work
Task: {AF9D812E-C8CA-4C55-9D7D-077222B40A7E} - System32\Tasks\Razer_Game_Booster_AutoUpdate => C:\Program Files (x86)\Razer\Razer Game Booster\AutoUpdate.exe
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask
Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization
Task: {DF92B7AF-2ABB-4748-89AD-1DB4BADFABA6} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE
Task: {F6D8492E-0E57-4C47-97A8-3D00F4606A66} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-04-12] (Google Inc.)
Task: {FC372714-29DB-40E5-B4E5-9D5BA816C021} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-04-12] (Google Inc.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2013-09-05 02:36 - 2013-09-05 02:36 - 00013088 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll
2013-08-14 18:04 - 2013-06-19 11:45 - 00265080 ____N () C:\Program Files\Bitdefender\Bitdefender\txmlutil.dll
2014-01-22 16:26 - 2013-11-28 16:39 - 00003072 _____ () C:\Program Files\Bitdefender\Bitdefender\UI\accessl.ui
2014-01-22 16:25 - 2011-11-14 19:17 - 00153680 _____ () C:\Program Files\Bitdefender\Bitdefender\bdfwcore.dll
2014-01-22 16:26 - 2013-11-28 16:39 - 00004608 _____ () C:\Program Files\Bitdefender\Bitdefender\UI\IMSecurityAL.ui
2014-03-01 19:24 - 2014-03-01 19:24 - 00770792 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_00036_004\ashttpbr.mdl
2014-03-01 19:24 - 2014-03-01 19:24 - 00568400 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_00036_004\ashttpdsp.mdl
2014-03-01 19:24 - 2014-03-01 19:24 - 02592904 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_00036_004\ashttpph.mdl
2014-03-01 19:24 - 2014-03-01 19:24 - 01315680 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_00036_004\ashttprbl.mdl
2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2013-10-03 23:42 - 2013-10-03 23:42 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2013-09-13 19:51 - 2013-09-13 19:51 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2013-09-13 19:51 - 2013-09-13 19:51 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2014-03-05 16:41 - 2014-03-05 16:41 - 00098816 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32api.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00110080 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\PyWinTypes27.dll
2014-03-05 16:41 - 2014-03-05 16:41 - 00364544 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\pythoncom27.dll
2014-03-05 16:41 - 2014-03-05 16:41 - 00044032 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\_socket.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 01157120 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\_ssl.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00320512 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32com.shell.shell.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00712192 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\_hashlib.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 01175040 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\wx._core_.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00805888 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\wx._gdi_.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00811008 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\wx._windows_.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 01062400 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\wx._controls_.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00735232 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\wx._misc_.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00128512 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\_elementtree.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00127488 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\pyexpat.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00557056 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\pysqlite2._sqlite.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00087040 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\_ctypes.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00119808 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32file.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00108544 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32security.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00018432 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32event.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00038912 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32inet.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00122368 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\wx._wizard.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00070656 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\wx._html2.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00026624 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\_multiprocessing.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00010240 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\select.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00024064 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32pipe.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00686080 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\unicodedata.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00025600 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32pdh.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00525640 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\windows._lib_cacheinvalidation.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00011264 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32crypt.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00035840 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32process.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00017408 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32profile.pyd
2014-03-05 16:41 - 2014-03-05 16:41 - 00022528 _____ () C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32ts.pyd
2013-09-14 01:51 - 2013-09-14 01:51 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Internet Services\zlib1.dll
2013-09-14 01:50 - 2013-09-14 01:50 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Internet Services\libxml2.dll
2013-06-14 18:54 - 2012-06-23 13:54 - 00061440 _____ () C:\Program Files (x86)\ROCCAT\Kone Pure Mouse\hiddriver.dll
2013-09-05 02:36 - 2013-09-05 02:36 - 00013088 _____ () C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll
2014-02-17 19:34 - 2014-02-17 19:34 - 00016384 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\PSIClient\8310d224af54d6cbd9fce767da495350\PSIClient.ni.dll
2012-11-28 23:31 - 2012-11-28 17:34 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\office14\Cultures\office.odf
2014-02-15 12:39 - 2014-02-15 12:40 - 03578992 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2014-01-22 16:25 - 2013-09-10 18:46 - 00035896 _____ () C:\Program Files\Bitdefender\Bitdefender\Antispam32\ffpwdman\components\ffpwdman.dll

==================== Alternate Data Streams (whitelisted) =========

AlternateDataStreams: C:\Users\krist_000\SkyDrive:ms-properties

==================== Safe Mode (whitelisted) ===================


==================== Disabled items from MSCONFIG ==============


==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (03/03/2014 06:20:18 PM) (Source: Microsoft-Windows-LocationProvider) (User: NT AUTHORITY)
Description: There was an error with the Windows Location Provider database

Error: (03/03/2014 03:35:13 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 31198469

Error: (03/03/2014 03:35:13 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 31198469

Error: (03/03/2014 03:35:13 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (03/03/2014 06:55:33 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 18984

Error: (03/03/2014 06:55:33 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 18984

Error: (03/03/2014 06:55:33 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (03/03/2014 06:55:32 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 17875

Error: (03/03/2014 06:55:32 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 17875

Error: (03/03/2014 06:55:32 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second


System errors:
=============
Error: (03/05/2014 05:42:08 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)
Description: Zlyhanie inštalácie: Systému Windows sa nepodarilo nainštalovať nasledujúcu aktualizáciu. Vyskytla sa chyba 0x80246007: Nástroj na odstránenie škodlivého softvéru systému Windows pre systémy Windows 8, 8.1 a Windows Server 2012, 2012 R2 x64 Edition - február 2014 (KB890830).

Error: (03/05/2014 04:44:43 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: machine-defaultLocalActivation{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (Using LRPC)UnavailableUnavailable

Error: (03/05/2014 04:39:59 PM) (Source: BTHUSB) (User: )
Description: Lokálny adaptér nepodporuje dôležitý stav radiča pri nedostatku energie. Minimálna požadovaná maska podporovaného stavu je 0x1f7fffff, k dispozícii je 0x1f3fffff. Funkcia kritického nedostatku energie sa vypne.

Error: (03/03/2014 09:54:49 PM) (Source: disk) (User: )
Description: The driver detected a controller error on \Device\Harddisk1\DR2.

Error: (03/03/2014 08:31:46 PM) (Source: DCOM) (User: KIKO)
Description: {9E6E74C7-0E85-4D14-8851-7635E2C1C528}

Error: (03/03/2014 06:50:27 PM) (Source: BTHUSB) (User: )
Description: Lokálny adaptér nepodporuje dôležitý stav radiča pri nedostatku energie. Minimálna požadovaná maska podporovaného stavu je 0x1f7fffff, k dispozícii je 0x1f3fffff. Funkcia kritického nedostatku energie sa vypne.

Error: (03/03/2014 06:49:54 PM) (Source: disk) (User: )
Description: The driver detected a controller error on \Device\Harddisk1\DR2.

Error: (03/03/2014 03:38:16 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: machine-defaultLocalActivation{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (Using LRPC)UnavailableUnavailable

Error: (03/02/2014 11:24:26 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: machine-defaultLocalActivation{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (Using LRPC)UnavailableUnavailable

Error: (03/02/2014 11:13:34 AM) (Source: BTHUSB) (User: )
Description: Lokálny adaptér nepodporuje dôležitý stav radiča pri nedostatku energie. Minimálna požadovaná maska podporovaného stavu je 0x1f7fffff, k dispozícii je 0x1f3fffff. Funkcia kritického nedostatku energie sa vypne.


Microsoft Office Sessions:
=========================
Error: (03/03/2014 06:20:18 PM) (Source: Microsoft-Windows-LocationProvider)(User: NT AUTHORITY)
Description: -2147024883

Error: (03/03/2014 03:35:13 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 31198469

Error: (03/03/2014 03:35:13 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 31198469

Error: (03/03/2014 03:35:13 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (03/03/2014 06:55:33 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 18984

Error: (03/03/2014 06:55:33 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 18984

Error: (03/03/2014 06:55:33 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (03/03/2014 06:55:32 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 17875

Error: (03/03/2014 06:55:32 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 17875

Error: (03/03/2014 06:55:32 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second


CodeIntegrity Errors:
===================================
Date: 2014-01-22 16:20:30.105
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\ProgramData\Microsoft\Windows Defender\Definition Updates\{92A0AAD0-93E9-4D0E-90CF-79B2794EBEA4}\mpengine.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-01-22 16:20:28.330
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\ProgramData\Microsoft\Windows Defender\Definition Updates\{F5D10D26-BDA0-41DF-957F-286054CAA635}\mpengine.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2013-12-01 10:34:51.458
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\uxtheme.dll that did not meet the Windows signing level requirements.

Date: 2013-12-01 10:34:48.158
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\uxtheme.dll that did not meet the Windows signing level requirements.

Date: 2013-12-01 10:34:44.541
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\uxtheme.dll that did not meet the Windows signing level requirements.

Date: 2013-12-01 10:21:36.665
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\uxtheme.dll that did not meet the Windows signing level requirements.

Date: 2013-12-01 10:21:33.196
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\uxtheme.dll that did not meet the Windows signing level requirements.

Date: 2013-12-01 10:21:28.985
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\uxtheme.dll that did not meet the Windows signing level requirements.

Date: 2013-11-30 20:47:02.387
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\uxtheme.dll that did not meet the Windows signing level requirements.

Date: 2013-11-30 20:46:52.711
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\uxtheme.dll that did not meet the Windows signing level requirements.


==================== Memory info ===========================

Percentage of memory in use: 49%
Total physical RAM: 3985.43 MB
Available physical RAM: 2013.42 MB
Total Pagefile: 8081.43 MB
Available Pagefile: 5591.86 MB
Total Virtual: 131072 MB
Available Virtual: 131071.83 MB

==================== Drives ================================

Drive c: (OS_Install) (Fixed) (Total:311.32 GB) (Free:100.34 GB) NTFS
Drive d: (Data) (Fixed) (Total:132.5 GB) (Free:114.95 GB) NTFS
Drive f: () (Removable) (Total:7.45 GB) (Free:3.27 GB) FAT32
Drive g: (WATERPROOF) (Removable) (Total:7.41 GB) (Free:7.2 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 466 GB) (Disk ID: AC38BDF4)

Partition: GPT Partition Type.

========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 7 GB) (Disk ID: C3072E18)

Partition: GPT Partition Type.

========================================================
Disk: 2 (Size: 7 GB) (Disk ID: 00000000)

Partition: GPT Partition Type.

==================== End Of Log ============================

Re: Nejake otravne Adware

Napsal: 05 bře 2014 19:02
od kiko22
pardon, teraz som si uvedomil, ze to bol adittions.txt, teraz posielam ten, ktory som mal poslat
kiko

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 05-03-2014
Ran by krist_000 (administrator) on KIKO on 05-03-2014 18:59:55
Running from C:\Users\krist_000\Desktop
Windows 8.1 (X64) OS Language: 041B
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\vsserv.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Micro-Star International Co., Ltd.) C:\Program Files (x86)\SCM\MSIService.exe
(MSI) C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe
(Microsoft Corporation) c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
(A-Volute) C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzMaelstromVADStreamingService.exe
(Microsoft Corporation) c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe
(Seiko Epson Corporation) C:\Windows\system32\EscSvc64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\System32\skydrive.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\bdagent.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Popajar, inc) C:\Users\krist_000\AppData\Local\Popajar\UpdateChecker\UpdateCheckerApp.exe
(SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe
(MSI) C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
(ROCCAT GmbH) C:\Program Files (x86)\ROCCAT\Kone Pure Mouse\KonePureMonitor.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\WINDOWS\system32\dashost.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\WINWORD.EXE
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Microsoft Corporation) C:\WINDOWS\splwow64.exe
(Microsoft Corporation) C:\Program Files (x86)\Internet Explorer\IELowutil.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\APSDaemon.exe
(Adobe Systems, Inc.) C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_70.exe
(Adobe Systems, Inc.) C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_70.exe
(forum.viry.cz) C:\Users\krist_000\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [ETDCtrl] - C:\Program Files\Elantech\ETDCtrl.exe [2859344 2012-11-28] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13192848 2012-11-28] (Realtek Semiconductor)
HKLM\...\Run: [BTMTrayAgent] - C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [11577216 2012-08-27] (Motorola Solutions, Inc.)
HKLM\...\Run: [Radio Manager] - C:\Program Files (x86)\SCM\Radio Manager.exe [403848 2012-09-13] (MSI)
HKLM\...\Run: [SCM] - C:\Program Files (x86)\SCM\SCM.exe [399776 2012-09-13] (MSI)
HKLM\...\Run: [Bdagent] - C:\Program Files\Bitdefender\Bitdefender\bdagent.exe [1739480 2014-03-01] (Bitdefender)
HKLM-x32\...\Run: [Super-Charger] - C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe [502328 2012-05-23] (MSI)
HKLM-x32\...\Run: [EEventManager] - C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1058912 2012-04-02] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [RoccatKonePure] - C:\Program Files (x86)\ROCCAT\Kone Pure Mouse\KonePureMonitor.EXE [569040 2012-11-30] (ROCCAT GmbH)
HKLM-x32\...\Run: [BCSSync] - C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [Razer Synapse] - C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [442712 2013-11-17] (Razer Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKU\.DEFAULT\...\Run: [Bitdefender Wallet Agent] - C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [567888 2014-02-06] (Bitdefender)
HKU\.DEFAULT\...\Run: [Bitdefender Wallet] - C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe [1001536 2014-02-06] (Bitdefender)
HKU\.DEFAULT\...\Run: [Bitdefender Wallet Application Agent] - C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe [614232 2014-02-06] (Bitdefender)
HKU\S-1-5-21-1449852709-4245229944-518367605-1001\...\RunOnce: [WAB Migrate] - C:\Program Files\Windows Mail\wab.exe [516608 2013-08-22] (Microsoft Corporation)
HKU\S-1-5-21-1449852709-4245229944-518367605-1002\...\Run: [Bitdefender Wallet Agent] - C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [567888 2014-02-06] (Bitdefender)
HKU\S-1-5-21-1449852709-4245229944-518367605-1002\...\Run: [Bitdefender Wallet Application Agent] - C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe [614232 2014-02-06] (Bitdefender)
HKU\S-1-5-21-1449852709-4245229944-518367605-1002\...\Run: [SkyDrive] - C:\Users\krist_000\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [257224 2014-02-20] (Microsoft Corporation)
HKU\S-1-5-21-1449852709-4245229944-518367605-1002\...\Run: [GoogleDriveSync] - C:\Program Files (x86)\Google\Drive\googledrivesync.exe [21822128 2014-01-30] (Google)
HKU\S-1-5-21-1449852709-4245229944-518367605-1002\...\Run: [iCloudServices] - C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [59720 2013-11-20] (Apple Inc.)
HKU\S-1-5-21-1449852709-4245229944-518367605-1002\...\Run: [Sony PC Companion] - C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [449760 2013-10-31] (Sony)
HKU\S-1-5-21-1449852709-4245229944-518367605-1002\...\Run: [Bitdefender Wallet] - C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe [1001536 2014-02-06] (Bitdefender)
HKU\S-1-5-21-1449852709-4245229944-518367605-1002\...\Run: [UpdateChecker] - C:\Users\krist_000\AppData\Local\Popajar\UpdateChecker\UpdateCheckerApp.exe [7168 2014-01-16] (Popajar, inc)
HKU\S-1-5-21-1449852709-4245229944-518367605-1002\...\MountPoints2: {7f870ccc-f68d-11e2-bed3-8c89a5081b9b} - "F:\Startme.exe"
AppInit_DLLs: C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [168616 2013-09-05] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\WINDOWS\SysWOW64\nvinit.dll => C:\WINDOWS\SysWOW64\nvinit.dll [141336 2013-09-05] (NVIDIA Corporation)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
BHO: Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender\pmbxie.dll (Bitdefender)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxie.dll (Bitdefender)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF ProfilePath: C:\Users\krist_000\AppData\Roaming\Mozilla\Firefox\Profiles\gy9gugdw.default-1365923927922
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_12_0_0_70.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MIF5BA~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1205146.dll (Adobe Systems, Inc.)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MIF5BA~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MIF5BA~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\krist_000\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll No File
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\atlas-sk.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\azet-sk.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\dunaj-sk.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slovnik-sk.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\zoznam-sk.xml
FF Extension: iCloud Bookmarks - C:\Users\krist_000\AppData\Roaming\Mozilla\Firefox\Profiles\gy9gugdw.default-1365923927922\Extensions\firefoxdav@icloud.com [2013-12-24]
FF Extension: FT GraphiteGlow - C:\Users\krist_000\AppData\Roaming\Mozilla\Firefox\Profiles\gy9gugdw.default-1365923927922\Extensions\{99e34760-2754-11e0-91fa-0800200c9a66} [2014-03-01]
FF Extension: SmileysWeLove: Smileys for use with Facebook, GMail, and more - C:\Users\krist_000\AppData\Roaming\Mozilla\Firefox\Profiles\gy9gugdw.default-1365923927922\Extensions\jid1-vW9nopuIAJiRHw@jetpack.xpi [2014-03-03]
FF Extension: TabAlarm - C:\Users\krist_000\AppData\Roaming\Mozilla\Firefox\Profiles\gy9gugdw.default-1365923927922\Extensions\tab@tim.er.xpi [2013-09-27]
FF Extension: FXChrome - C:\Users\krist_000\AppData\Roaming\Mozilla\Firefox\Profiles\gy9gugdw.default-1365923927922\Extensions\{c0c588b6-b11d-4898-af00-079fed05aa32}.xpi [2013-11-27]
FF Extension: Adblock Plus - C:\Users\krist_000\AppData\Roaming\Mozilla\Firefox\Profiles\gy9gugdw.default-1365923927922\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-09-10]
FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\bdtbext
FF Extension: bdToolbar - C:\Program Files\Bitdefender\Bitdefender\bdtbext [2014-01-22]
FF HKLM-x32\...\Firefox\Extensions: [ffpwdman@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\Antispam32\ffpwdman\
FF Extension: Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender\Antispam32\ffpwdman\ []
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
FF HKLM-x32\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\bdtbext
FF Extension: bdToolbar - C:\Program Files\Bitdefender\Bitdefender\bdtbext [2014-01-22]

==================== Services (Whitelisted) =================

R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
S4 BdDesktopParental; C:\Program Files\Bitdefender\Bitdefender\bdparentalservice.exe [77632 2013-11-21] (Bitdefender)
R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [135824 2011-12-11] (Seiko Epson Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-11-28] (Intel Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 Micro Star SCM; C:\Program Files (x86)\SCM\MSIService.exe [160768 2012-09-13] (Micro-Star International Co., Ltd.)
R2 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [142904 2012-05-23] (MSI)
R2 MSSQL$SQLEXPRESS; c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [58345832 2011-09-22] (Microsoft Corporation)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [201360 2012-11-28] (Realtek Semiconductor)
R2 RzMaelstromVADStreamingService; C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzMaelstromVADStreamingService.exe [4263936 2013-11-21] (A-Volute)
S4 SQLAgent$SQLEXPRESS; c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [431464 2011-09-22] (Microsoft Corporation)
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe [67320 2013-10-07] (Bitdefender)
R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender\vsserv.exe [1507248 2014-03-01] (Bitdefender)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)
R3 avchv; C:\Windows\system32\DRIVERS\avchv.sys [261056 2012-11-02] (BitDefender)
S3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [635392 2014-01-27] (BitDefender)
S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider)
S0 bdelam; C:\Windows\System32\drivers\bdelam.sys [23568 2013-09-08] (Bitdefender)
R1 BdfNdisf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfndisf6.sys [98768 2013-07-24] (BitDefender LLC)
R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [107008 2013-07-29] (BitDefender LLC)
S3 bdfwfpf_pc; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys [121928 2013-07-02] (Bitdefender SRL)
S3 BDSandBox; C:\WINDOWS\system32\drivers\bdsandbox.sys [82824 2013-11-04] (BitDefender SRL)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [224768 2013-08-22] (Microsoft Corporation)
S3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [857472 2012-08-29] (Motorola Solutions, Inc.)
R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [150256 2014-01-22] (BitDefender LLC)
S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation)
S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation)
S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation)
R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation)
S3 ipadtst; C:\Program Files (x86)\MSI\Super-Charger\ipadtst_64.sys [17936 2011-12-12] (Windows (R) Win 7 DDK provider)
S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)
S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation)
R3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [3344352 2013-07-08] (Intel Corporation)
R3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [14136 2010-01-18] (MSI)
S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation)
R3 RZMAELSTROMVADService; C:\Windows\system32\drivers\RzMaelstromVAD.sys [40696 2013-11-21] (Windows (R) Win 7 DDK provider)
S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation)
S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-11-18] (Microsoft Corporation)
R2 trufos; C:\Windows\System32\DRIVERS\trufos.sys [389240 2014-01-22] (BitDefender S.R.L.)
S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation)
U0 avc3;

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-03-05 18:59 - 2014-03-05 19:00 - 00022147 _____ () C:\Users\krist_000\Desktop\FRST.txt
2014-03-05 18:56 - 2014-03-05 18:57 - 00112640 _____ (forum.viry.cz) C:\Users\krist_000\Desktop\FRSTLauncher.exe
2014-03-05 18:56 - 2014-03-05 18:56 - 02157056 _____ (Farbar) C:\Users\krist_000\Desktop\FRST64.exe
2014-03-05 16:53 - 2014-03-05 17:15 - 3818035158 _____ () C:\Users\krist_000\Downloads\Windows-7-32-a-64-bit-CZ-.rar
2014-03-03 21:46 - 2014-03-03 21:46 - 00000000 ____D () C:\ProgramData\SystemRequirementsLab
2014-03-03 21:46 - 2014-03-03 21:46 - 00000000 ____D () C:\Program Files (x86)\SystemRequirementsLab
2014-03-03 21:44 - 2014-03-03 21:44 - 00000000 ____D () C:\ProgramData\Oracle
2014-03-03 21:44 - 2013-12-18 21:09 - 00096168 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2014-03-03 21:44 - 2013-12-18 21:04 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaws.exe
2014-03-03 21:44 - 2013-12-18 21:04 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaw.exe
2014-03-03 21:44 - 2013-12-18 21:03 - 00174504 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\java.exe
2014-03-03 21:43 - 2014-03-03 21:44 - 00006443 _____ () C:\WINDOWS\SysWOW64\jupdate-1.7.0_51-b13.log
2014-03-03 21:41 - 2014-03-03 21:41 - 00921000 _____ (Oracle Corporation) C:\Users\krist_000\Downloads\jxpiinstall.exe
2014-03-03 21:41 - 2014-03-03 21:41 - 00921000 _____ (Oracle Corporation) C:\Users\krist_000\Downloads\jxpiinstall(1).exe
2014-03-03 20:31 - 2014-03-03 20:31 - 00000000 ____D () C:\Users\krist_000\Documents\Add-in Express
2014-03-03 20:31 - 2014-03-03 20:31 - 00000000 ____D () C:\Users\krist_000\AppData\Local\Popajar
2014-03-03 20:30 - 2014-03-03 20:30 - 08065840 _____ (Cheat Engine ) C:\Users\krist_000\Downloads\CheatEngine63.exe
2014-03-03 20:30 - 2014-03-03 20:30 - 00001107 _____ () C:\Users\krist_000\Desktop\Cheat Engine.lnk
2014-03-03 20:30 - 2014-03-03 20:30 - 00000000 ____D () C:\Users\krist_000\AppData\Roaming\OpenCandy
2014-03-03 20:30 - 2014-03-03 20:30 - 00000000 ____D () C:\Program Files (x86)\Cheat Engine 6.3
2014-03-03 18:37 - 2014-03-03 18:37 - 00000736 _____ () C:\Users\krist_000\Documents\Default.sfvidcap
2014-03-03 18:20 - 2014-03-03 18:14 - 116593388 ____N () C:\Users\krist_000\Desktop\IMG_0066.MOV
2014-03-03 18:01 - 2014-03-03 18:01 - 03779965 _____ () C:\Users\Nina\Downloads\Skladáme vety.exe
2014-03-03 16:56 - 2014-03-03 16:56 - 00000000 ____D () C:\Users\krist_000\AppData\Roaming\Publish Providers
2014-03-03 16:51 - 2014-03-03 16:56 - 00000000 ____D () C:\Users\krist_000\AppData\Local\Sony
2014-03-03 16:51 - 2014-03-03 16:51 - 00001064 _____ () C:\Users\Public\Desktop\Vegas Pro 12.0 (64-bit).lnk
2014-03-03 16:51 - 2014-03-03 16:51 - 00000000 ____D () C:\Program Files\Sony
2014-03-03 16:50 - 2014-03-05 17:59 - 00000000 ____D () C:\Users\krist_000\AppData\Roaming\Sony
2014-03-03 16:10 - 2014-03-03 16:10 - 00000000 ____D () C:\Users\krist_000\Downloads\Sony-Vegas-Pro-12-Build-367-(64-bit-patch-KHG)
2014-03-03 15:42 - 2014-03-03 15:43 - 224555220 _____ () C:\Users\krist_000\Downloads\Sony-Vegas-Pro-12-Build-367-(64-bit-patch-KHG).rar
2014-02-20 20:13 - 2014-02-20 20:13 - 00003096 _____ () C:\WINDOWS\System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1449852709-4245229944-518367605-1002
2014-02-20 20:12 - 2014-02-20 20:12 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive
2014-02-19 19:20 - 2014-02-20 06:55 - 01376382 _____ () C:\Users\krist_000\Documents\Záhorská Bystrica.pptx
2014-02-19 16:13 - 2014-02-19 16:13 - 00000886 _____ () C:\Users\krist_000\Downloads\Prevzaté súbory - odkaz.lnk
2014-02-19 14:03 - 2014-03-05 18:08 - 00000954 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-02-19 14:03 - 2014-03-05 16:40 - 00000950 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-02-17 17:00 - 2013-12-09 01:34 - 01227264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2014-02-17 17:00 - 2013-12-09 01:04 - 00980480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2014-02-17 17:00 - 2013-11-27 16:34 - 03210528 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2014-02-17 17:00 - 2013-11-27 16:27 - 00809872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-02-17 17:00 - 2013-11-27 15:00 - 00663680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2014-02-17 17:00 - 2013-11-27 14:47 - 02804528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll

Re: Nejake otravne Adware

Napsal: 05 bře 2014 19:03
od kiko22
2014-02-17 17:00 - 2013-11-27 13:02 - 00142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ipnat.sys
2014-02-17 17:00 - 2013-11-27 11:54 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll
2014-02-17 17:00 - 2013-11-27 11:24 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\msieftp.dll
2014-02-17 17:00 - 2013-11-27 11:08 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll
2014-02-17 17:00 - 2013-11-27 10:46 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msieftp.dll
2014-02-17 17:00 - 2013-11-27 10:41 - 00136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2014-02-17 17:00 - 2013-11-27 10:17 - 00263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2014-02-17 17:00 - 2013-11-27 10:10 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2014-02-17 17:00 - 2013-11-27 09:58 - 01503232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2014-02-17 17:00 - 2013-11-27 09:56 - 00218112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
2014-02-17 17:00 - 2013-11-27 05:01 - 00385614 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2014-02-17 17:00 - 2013-11-26 14:22 - 01928144 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2014-02-17 17:00 - 2013-11-26 14:20 - 02131120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2014-02-17 17:00 - 2013-11-26 14:20 - 01399176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2014-02-17 17:00 - 2013-11-26 14:20 - 01374384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2014-02-17 17:00 - 2013-11-26 12:50 - 01371312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2014-02-17 17:00 - 2013-11-26 12:44 - 02142936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2014-02-17 17:00 - 2013-11-26 12:44 - 01204968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2014-02-17 17:00 - 2013-11-26 11:13 - 04191232 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-02-17 17:00 - 2013-11-26 10:21 - 18577920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2014-02-17 17:00 - 2013-11-26 09:28 - 13925888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2014-02-17 17:00 - 2013-11-25 02:45 - 00142680 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2014-02-17 17:00 - 2013-11-25 02:32 - 01119064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2014-02-17 17:00 - 2013-11-25 00:30 - 00513536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2014-02-17 17:00 - 2013-11-25 00:28 - 00589824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2014-02-17 17:00 - 2013-11-23 13:47 - 00032088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll
2014-02-17 17:00 - 2013-11-23 12:49 - 21196664 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2014-02-17 17:00 - 2013-11-23 09:19 - 18642504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2014-02-17 17:00 - 2013-11-23 08:13 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\bi.dll
2014-02-17 17:00 - 2013-11-23 08:13 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BtaMPM.sys
2014-02-17 17:00 - 2013-11-23 08:08 - 00403456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2014-02-17 17:00 - 2013-11-23 05:50 - 00282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2014-02-17 17:00 - 2013-11-23 04:57 - 00637952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2014-02-17 17:00 - 2013-11-23 04:48 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2014-02-17 17:00 - 2013-11-23 04:25 - 00744448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2014-02-17 17:00 - 2013-11-23 04:25 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2014-02-17 17:00 - 2013-11-23 04:19 - 02617344 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2014-02-17 17:00 - 2013-11-23 04:15 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2014-02-17 17:00 - 2013-11-21 07:58 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceregistration.dll
2014-02-17 17:00 - 2013-11-21 07:26 - 01415680 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-02-17 17:00 - 2013-11-16 06:11 - 00764856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2014-02-17 17:00 - 2013-11-15 19:19 - 00669344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2014-02-17 17:00 - 2013-11-15 15:59 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2014-02-17 17:00 - 2013-11-15 15:25 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2014-02-17 17:00 - 2013-11-15 15:08 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2014-02-17 17:00 - 2013-11-15 14:24 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2014-02-17 17:00 - 2013-11-05 21:12 - 02551128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2014-02-17 17:00 - 2013-10-31 01:29 - 00745336 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2014-02-17 17:00 - 2013-10-31 00:41 - 00552624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2014-02-15 17:54 - 2014-02-15 18:44 - 253417612 _____ () C:\Users\krist_000\Downloads\► BioShock Infinite - [Slovenský letsplay] - Part. 4 - FaceTime! ◄.avi
2014-02-15 12:39 - 2014-02-15 12:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-02-15 11:40 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2014-02-15 11:40 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll
2014-02-15 11:40 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-02-15 11:40 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll
2014-02-15 11:40 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2014-02-15 11:40 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe
2014-02-15 11:40 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-02-15 11:40 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2014-02-15 11:40 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll
2014-02-15 11:40 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-02-15 11:40 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-02-15 11:40 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2014-02-15 11:40 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2014-02-15 11:40 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2014-02-15 11:40 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-02-15 11:40 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-02-15 11:40 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-02-15 11:40 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-02-15 11:40 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-02-15 11:40 - 2014-01-07 06:00 - 02397184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2014-02-15 11:40 - 2014-01-07 05:30 - 02071552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2014-02-15 11:40 - 2013-12-09 01:27 - 02152448 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2014-02-15 11:40 - 2013-12-09 00:54 - 01317376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2014-02-15 11:40 - 2013-11-21 07:42 - 04604416 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2014-02-15 11:40 - 2013-11-21 06:44 - 03936256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2014-02-15 11:39 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-02-15 11:39 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2014-02-15 11:39 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2014-02-15 11:39 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe
2014-02-15 11:39 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2014-02-15 11:39 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-02-15 11:39 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2014-02-15 11:39 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2014-02-15 11:39 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-02-15 11:39 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-02-15 11:39 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe
2014-02-15 11:39 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-02-15 11:39 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2014-02-15 11:39 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-02-15 11:39 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-02-15 11:39 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-02-15 11:39 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-02-15 11:39 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-02-15 11:39 - 2013-12-09 01:19 - 00570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdrm.dll
2014-02-15 11:39 - 2013-12-09 00:55 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdrm.dll
2014-02-15 11:38 - 2014-01-09 09:25 - 02804224 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2014-02-15 11:38 - 2014-01-09 08:59 - 01020928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2014-02-15 11:38 - 2014-01-09 08:59 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
2014-02-15 11:38 - 2014-01-09 08:49 - 00919040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2014-02-15 11:38 - 2014-01-09 08:44 - 00720384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-02-15 11:38 - 2014-01-09 08:43 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveShell.dll
2014-02-15 11:38 - 2014-01-09 08:29 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SkyDriveShell.dll
2014-02-15 11:38 - 2014-01-09 08:28 - 04217344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2014-02-15 11:38 - 2014-01-09 08:28 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2014-02-15 11:38 - 2014-01-09 08:18 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2014-02-15 11:38 - 2014-01-07 08:03 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe
2014-02-15 11:38 - 2014-01-07 06:59 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe
2014-02-15 11:38 - 2014-01-04 21:50 - 01462216 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2014-02-15 11:38 - 2014-01-04 20:22 - 01202888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2014-02-15 11:38 - 2014-01-04 15:30 - 13209088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2014-02-15 11:38 - 2014-01-04 15:23 - 11702272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2014-02-15 11:38 - 2014-01-04 14:42 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2014-02-15 11:38 - 2014-01-04 14:40 - 07416832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2014-02-15 11:38 - 2014-01-04 14:36 - 00830976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2014-02-15 11:38 - 2014-01-04 14:28 - 04961792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2014-02-15 11:38 - 2013-12-21 03:10 - 00009701 _____ () C:\WINDOWS\SysWOW64\connectedsearch-results.searchconnector-ms
2014-02-15 11:38 - 2013-12-21 03:10 - 00009701 _____ () C:\WINDOWS\system32\connectedsearch-results.searchconnector-ms
2014-02-15 11:38 - 2013-12-20 11:10 - 01113040 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2014-02-15 11:38 - 2013-12-20 07:13 - 00835584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2014-02-15 11:38 - 2013-12-09 03:57 - 00548864 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2014-02-15 11:38 - 2013-12-09 02:51 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2014-02-05 19:06 - 2014-02-05 19:14 - 787536754 _____ () C:\Users\krist_000\Downloads\Pripoutejte-se-prosim-2.avi
2014-02-05 19:05 - 2014-02-05 19:32 - 3833343200 _____ () C:\Users\krist_000\Downloads\Spaceballs-(Valky-hvezd-naruby)-1987-720p-x264-Japhson-2xCZ-dabing+ENG-REPACK.mkv
2014-02-05 19:01 - 2014-02-05 19:07 - 729349968 _____ () C:\Users\krist_000\Downloads\Bláznivý-příběh-Robina-Hooda-(1993)-(CZ).avi
2014-02-05 11:25 - 2013-10-09 12:50 - 00000000 ____D () C:\Users\krist_000\Downloads\Lorde - Pure Heroine (2013)
2014-02-05 11:23 - 2013-10-13 10:20 - 00000000 ____D () C:\Users\krist_000\Downloads\JHNWMANTRBUTE13
2014-02-05 10:57 - 2014-02-05 10:58 - 89252850 _____ () C:\Users\krist_000\Downloads\Lorde---Pure-Heroine-(September-26-2013).rar
2014-02-05 10:37 - 2014-02-05 11:20 - 131665061 _____ () C:\Users\krist_000\Downloads\JHNWMANTRBUTE13.zip

==================== One Month Modified Files and Folders =======

2015-07-25 03:24 - 2013-08-06 09:41 - 00000000 ____D () C:\Users\krist_000\Downloads\Guru3D.com
2014-03-05 19:00 - 2014-03-05 18:59 - 00022147 _____ () C:\Users\krist_000\Desktop\FRST.txt
2014-03-05 19:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-03-05 18:59 - 2013-10-21 19:16 - 00000000 ____D () C:\FRST
2014-03-05 18:57 - 2014-03-05 18:56 - 00112640 _____ (forum.viry.cz) C:\Users\krist_000\Desktop\FRSTLauncher.exe
2014-03-05 18:57 - 2013-08-20 18:58 - 00000830 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-03-05 18:56 - 2014-03-05 18:56 - 02157056 _____ (Farbar) C:\Users\krist_000\Desktop\FRST64.exe
2014-03-05 18:21 - 2013-11-18 19:47 - 01181662 _____ () C:\WINDOWS\WindowsUpdate.log
2014-03-05 18:09 - 2013-01-29 18:32 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1449852709-4245229944-518367605-1002
2014-03-05 18:08 - 2014-02-19 14:03 - 00000954 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-03-05 18:01 - 2013-11-27 16:32 - 00003970 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{2968F31A-0901-4F84-808D-9BE67185402F}
2014-03-05 17:59 - 2014-03-03 16:50 - 00000000 ____D () C:\Users\krist_000\AppData\Roaming\Sony
2014-03-05 17:42 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-03-05 17:21 - 2013-02-17 15:17 - 00000000 ____D () C:\Users\krist_000\AppData\Roaming\vlc
2014-03-05 17:15 - 2014-03-05 16:53 - 3818035158 _____ () C:\Users\krist_000\Downloads\Windows-7-32-a-64-bit-CZ-.rar
2014-03-05 16:41 - 2013-11-21 17:52 - 00000000 ___RD () C:\Users\krist_000\Disk Google
2014-03-05 16:41 - 2013-08-17 19:25 - 00000000 __RDO () C:\Users\krist_000\SkyDrive
2014-03-05 16:40 - 2014-02-19 14:03 - 00000950 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-03-05 16:40 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-03-03 21:54 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2014-03-03 21:46 - 2014-03-03 21:46 - 00000000 ____D () C:\ProgramData\SystemRequirementsLab
2014-03-03 21:46 - 2014-03-03 21:46 - 00000000 ____D () C:\Program Files (x86)\SystemRequirementsLab
2014-03-03 21:44 - 2014-03-03 21:44 - 00000000 ____D () C:\ProgramData\Oracle
2014-03-03 21:44 - 2014-03-03 21:43 - 00006443 _____ () C:\WINDOWS\SysWOW64\jupdate-1.7.0_51-b13.log
2014-03-03 21:44 - 2013-05-02 06:43 - 00000000 ____D () C:\Program Files (x86)\Origin
2014-03-03 21:44 - 2013-03-06 13:15 - 00000000 ____D () C:\Program Files (x86)\Java
2014-03-03 21:41 - 2014-03-03 21:41 - 00921000 _____ (Oracle Corporation) C:\Users\krist_000\Downloads\jxpiinstall.exe
2014-03-03 21:41 - 2014-03-03 21:41 - 00921000 _____ (Oracle Corporation) C:\Users\krist_000\Downloads\jxpiinstall(1).exe
2014-03-03 21:36 - 2013-03-06 13:24 - 00000000 ____D () C:\Users\krist_000\Documents\Euro Truck Simulator 2
2014-03-03 20:31 - 2014-03-03 20:31 - 00000000 ____D () C:\Users\krist_000\Documents\Add-in Express
2014-03-03 20:31 - 2014-03-03 20:31 - 00000000 ____D () C:\Users\krist_000\AppData\Local\Popajar
2014-03-03 20:30 - 2014-03-03 20:30 - 08065840 _____ (Cheat Engine ) C:\Users\krist_000\Downloads\CheatEngine63.exe
2014-03-03 20:30 - 2014-03-03 20:30 - 00001107 _____ () C:\Users\krist_000\Desktop\Cheat Engine.lnk
2014-03-03 20:30 - 2014-03-03 20:30 - 00000000 ____D () C:\Users\krist_000\AppData\Roaming\OpenCandy
2014-03-03 20:30 - 2014-03-03 20:30 - 00000000 ____D () C:\Program Files (x86)\Cheat Engine 6.3
2014-03-03 20:15 - 2013-09-30 05:18 - 01285340 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-03-03 20:15 - 2013-02-26 17:07 - 00261362 _____ () C:\WINDOWS\system32\perfh01B.dat
2014-03-03 20:15 - 2013-02-26 17:07 - 00077912 _____ () C:\WINDOWS\system32\perfc01B.dat
2014-03-03 18:59 - 2013-02-06 18:01 - 00000000 ____D () C:\Users\krist_000\AppData\Local\Windows Live
2014-03-03 18:37 - 2014-03-03 18:37 - 00000736 _____ () C:\Users\krist_000\Documents\Default.sfvidcap
2014-03-03 18:36 - 2013-01-29 18:22 - 00000000 ____D () C:\Users\krist_000\AppData\Local\VirtualStore
2014-03-03 18:14 - 2014-03-03 18:20 - 116593388 ____N () C:\Users\krist_000\Desktop\IMG_0066.MOV
2014-03-03 18:12 - 2013-11-30 20:50 - 00003596 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1449852709-4245229944-518367605-1008
2014-03-03 18:01 - 2014-03-03 18:01 - 03779965 _____ () C:\Users\Nina\Downloads\Skladáme vety.exe
2014-03-03 17:09 - 2013-07-13 14:07 - 00000000 ____D () C:\Users\krist_000\AppData\Local\Axialis
2014-03-03 16:56 - 2014-03-03 16:56 - 00000000 ____D () C:\Users\krist_000\AppData\Roaming\Publish Providers
2014-03-03 16:56 - 2014-03-03 16:51 - 00000000 ____D () C:\Users\krist_000\AppData\Local\Sony
2014-03-03 16:51 - 2014-03-03 16:51 - 00001064 _____ () C:\Users\Public\Desktop\Vegas Pro 12.0 (64-bit).lnk
2014-03-03 16:51 - 2014-03-03 16:51 - 00000000 ____D () C:\Program Files\Sony
2014-03-03 16:51 - 2014-01-17 20:58 - 00000000 ____D () C:\ProgramData\Sony
2014-03-03 16:51 - 2014-01-17 20:58 - 00000000 ____D () C:\Program Files (x86)\Sony
2014-03-03 16:10 - 2014-03-03 16:10 - 00000000 ____D () C:\Users\krist_000\Downloads\Sony-Vegas-Pro-12-Build-367-(64-bit-patch-KHG)
2014-03-03 15:43 - 2014-03-03 15:42 - 224555220 _____ () C:\Users\krist_000\Downloads\Sony-Vegas-Pro-12-Build-367-(64-bit-patch-KHG).rar
2014-03-02 14:01 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-03-02 11:15 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2014-03-02 11:14 - 2013-08-22 15:44 - 00502272 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-03-02 11:13 - 2013-08-17 15:35 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-03-01 22:48 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-03-01 22:48 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\Dism
2014-03-01 22:48 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\Dism
2014-03-01 19:08 - 2013-11-21 17:50 - 00002068 _____ () C:\Users\Public\Desktop\Google Slides.lnk
2014-03-01 19:08 - 2013-11-21 17:50 - 00002066 _____ () C:\Users\Public\Desktop\Google Sheets.lnk
2014-03-01 19:08 - 2013-11-21 17:50 - 00002056 _____ () C:\Users\Public\Desktop\Google Docs.lnk
2014-02-21 15:40 - 2014-01-17 20:59 - 00002124 _____ () C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk
2014-02-21 15:39 - 2012-11-28 23:32 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-02-20 20:58 - 2013-01-29 19:08 - 00003718 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2014-02-20 20:13 - 2014-02-20 20:13 - 00003096 _____ () C:\WINDOWS\System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1449852709-4245229944-518367605-1002
2014-02-20 20:12 - 2014-02-20 20:12 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive
2014-02-20 06:55 - 2014-02-19 19:20 - 01376382 _____ () C:\Users\krist_000\Documents\Záhorská Bystrica.pptx
2014-02-19 16:13 - 2014-02-19 16:13 - 00000886 _____ () C:\Users\krist_000\Downloads\Prevzaté súbory - odkaz.lnk
2014-02-19 14:03 - 2013-04-12 17:03 - 00003926 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2014-02-19 14:03 - 2013-04-12 17:03 - 00003690 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2014-02-17 22:00 - 2013-08-22 16:38 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-02-17 22:00 - 2013-08-22 16:38 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-02-15 21:59 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\sk-SK
2014-02-15 21:59 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sk-SK
2014-02-15 21:59 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\MediaViewer
2014-02-15 21:59 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\FileManager
2014-02-15 21:59 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Camera
2014-02-15 18:44 - 2014-02-15 17:54 - 253417612 _____ () C:\Users\krist_000\Downloads\► BioShock Infinite - [Slovenský letsplay] - Part. 4 - FaceTime! ◄.avi
2014-02-15 12:40 - 2014-02-15 12:39 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-02-15 11:56 - 2013-01-29 20:55 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-02-15 11:49 - 2012-07-26 06:26 - 00000167 _____ () C:\WINDOWS\win.ini
2014-02-06 13:16 - 2014-02-15 11:39 - 23170048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-02-06 12:30 - 2014-02-15 11:40 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2014-02-06 12:30 - 2014-02-15 11:40 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll
2014-02-06 12:12 - 2014-02-15 11:40 - 02765824 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-02-06 12:07 - 2014-02-15 11:39 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2014-02-06 12:06 - 2014-02-15 11:40 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll
2014-02-06 11:57 - 2014-02-15 11:39 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2014-02-06 11:56 - 2014-02-15 11:40 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2014-02-06 11:49 - 2014-02-15 11:39 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe
2014-02-06 11:48 - 2014-02-15 11:40 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe
2014-02-06 11:48 - 2014-02-15 11:39 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2014-02-06 11:38 - 2014-02-15 11:40 - 17103872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-02-06 11:32 - 2014-02-15 11:39 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-02-06 11:20 - 2014-02-15 11:39 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2014-02-06 11:17 - 2014-02-15 11:39 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2014-02-06 11:11 - 2014-02-15 11:39 - 05768704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-02-06 11:01 - 2014-02-15 11:40 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2014-02-06 11:00 - 2014-02-15 11:40 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll
2014-02-06 10:57 - 2014-02-15 11:40 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-02-06 10:57 - 2014-02-15 11:40 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-02-06 10:52 - 2014-02-15 11:40 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2014-02-06 10:52 - 2014-02-15 11:40 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2014-02-06 10:50 - 2014-02-15 11:39 - 02041856 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-02-06 10:47 - 2014-02-15 11:39 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe
2014-02-06 10:46 - 2014-02-15 11:40 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2014-02-06 10:25 - 2014-02-15 11:39 - 04244480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-02-06 10:25 - 2014-02-15 11:39 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2014-02-06 10:24 - 2014-02-15 11:39 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-02-06 10:22 - 2014-02-15 11:39 - 13051392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-02-06 10:13 - 2014-02-15 11:40 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-02-06 10:09 - 2014-02-15 11:40 - 01964032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-02-06 10:03 - 2014-02-15 11:40 - 11266048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-02-06 09:55 - 2014-02-15 11:40 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-02-06 09:41 - 2014-02-15 11:39 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-02-06 09:40 - 2014-02-15 11:39 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-02-06 09:36 - 2014-02-15 11:40 - 01156096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-02-06 09:34 - 2014-02-15 11:39 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-02-05 19:32 - 2014-02-05 19:05 - 3833343200 _____ () C:\Users\krist_000\Downloads\Spaceballs-(Valky-hvezd-naruby)-1987-720p-x264-Japhson-2xCZ-dabing+ENG-REPACK.mkv
2014-02-05 19:14 - 2014-02-05 19:06 - 787536754 _____ () C:\Users\krist_000\Downloads\Pripoutejte-se-prosim-2.avi
2014-02-05 19:07 - 2014-02-05 19:01 - 729349968 _____ () C:\Users\krist_000\Downloads\Bláznivý-příběh-Robina-Hooda-(1993)-(CZ).avi
2014-02-05 11:20 - 2014-02-05 10:37 - 131665061 _____ () C:\Users\krist_000\Downloads\JHNWMANTRBUTE13.zip
2014-02-05 10:58 - 2014-02-05 10:57 - 89252850 _____ () C:\Users\krist_000\Downloads\Lorde---Pure-Heroine-(September-26-2013).rar
2014-02-03 11:43 - 2013-04-01 10:32 - 00000000 ____D () C:\Users\krist_000\AppData\Roaming\Skype

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: Bitdefender Antivirus (Enabled - Up to date) {9A0813D8-CED6-F86B-072E-28D2AF25A83D}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Bitdefender Antispyware (Enabled - Up to date) {2169F23C-E8EC-F7E5-3D9E-13A0D4A2E280}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Bitdefender Firewall (Enabled) {A23392FD-84B9-F933-2C71-81E751F6EF46}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\krist_000\Desktop" je 123 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Re: Nejake otravne Adware

Napsal: 05 bře 2014 19:13
od Rudy
Otevřte poznámkový blok a zkopírujte do něj:
Start
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKU\S-1-5-21-1449852709-4245229944-518367605-1002\...\MountPoints2: {7f870ccc-f68d-11e2-bed3-8c89a5081b9b} - "F:\Startme.exe"
Task: {F6D8492E-0E57-4C47-97A8-3D00F4606A66} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-04-12] (Google Inc.)
Task: {FC372714-29DB-40E5-B4E5-9D5BA816C021} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-04-12] (Google Inc.)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
C:\Users\krist_000\AppData\Local\Temp
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Nejake otravne Adware

Napsal: 05 bře 2014 19:34
od kiko22
tu je filog

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 05-03-2014
Ran by krist_000 at 2014-03-05 19:23:51 Run:3
Running from C:\Users\krist_000\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKU\S-1-5-21-1449852709-4245229944-518367605-1002\...\MountPoints2: {7f870ccc-f68d-11e2-bed3-8c89a5081b9b} - "F:\Startme.exe"
Task: {F6D8492E-0E57-4C47-97A8-3D00F4606A66} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-04-12] (Google Inc.)
Task: {FC372714-29DB-40E5-B4E5-9D5BA816C021} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-04-12] (Google Inc.)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
C:\Users\krist_000\AppData\Local\Temp
End
*****************

C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => Moved successfully.
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => Moved successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => Value deleted successfully.
HKU\S-1-5-21-1449852709-4245229944-518367605-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{7f870ccc-f68d-11e2-bed3-8c89a5081b9b} => Key deleted successfully.
HKCR\CLSID\{7f870ccc-f68d-11e2-bed3-8c89a5081b9b} => Key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F6D8492E-0E57-4C47-97A8-3D00F4606A66} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F6D8492E-0E57-4C47-97A8-3D00F4606A66} => Key deleted successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{FC372714-29DB-40E5-B4E5-9D5BA816C021} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FC372714-29DB-40E5-B4E5-9D5BA816C021} => Key deleted successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore => Key deleted successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.

"C:\Users\krist_000\AppData\Local\Temp" directory move:

C:\Users\krist_000\AppData\Local\Temp\CFG2619.tmp => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\CVR1641.tmp.cvr => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\CVRE5F0.tmp.cvr => Moved successfully.
Could not move "C:\Users\krist_000\AppData\Local\Temp\etilqs_bLvTbPDuGURHloY" => Scheduled to move on reboot.
Could not move "C:\Users\krist_000\AppData\Local\Temp\etilqs_RZbEP32nMkL9IbV" => Scheduled to move on reboot.
C:\Users\krist_000\AppData\Local\Temp\wctFA1B.tmp => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\~6F1B.tmp => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\~DFA474C3748F621B6D.TMP => Moved successfully.
Could not move "C:\Users\krist_000\AppData\Local\Temp\~DFB79FEE2C02F62E9E.TMP" => Scheduled to move on reboot.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\bz2.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\gdi32.dll => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\kernel32.dll => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\main.exe.manifest => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\mfc90.dll => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\mfc90u.dll => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\mfcm90.dll => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\mfcm90u.dll => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\msvcp100.dll => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\msvcr100.dll => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\psapi.dll => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\pyexpat.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\pysqlite2._sqlite.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\python27.dll => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\pythoncom27.dll => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\PyWinTypes27.dll => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\select.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\shell32.dll => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\unicodedata.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32api.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32com.shell.shell.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32crypt.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32event.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32evtlog.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32file.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32inet.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32pdh.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32pipe.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32process.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32profile.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32security.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32trace.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32ts.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32ui.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\win32wnet.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\windows._lib_cacheinvalidation.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\wx._controls_.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\wx._core_.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\wx._gdi_.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\wx._html2.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\wx._misc_.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\wx._windows_.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\wx._wizard.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\wxbase294u_net_vc90.dll => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\wxbase294u_vc90.dll => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\wxmsw294u_adv_vc90.dll => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\wxmsw294u_core_vc90.dll => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\wxmsw294u_html_vc90.dll => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\wxmsw294u_webview_vc90.dll => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\_ctypes.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\_elementtree.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\_hashlib.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\_multiprocessing.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\_socket.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\_ssl.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\_win32sysloader.pyd => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\support\gen_py\__init__.py => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\mime\drive.mime.types => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\js\XMLHttpRequest.js => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\docs.ico => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-gdoc16.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-gdoc256.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-gdoc32.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-gdoc48.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-gdraw16.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-gdraw256.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-gdraw32.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-gdraw48.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-gform16.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-gform256.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-gform32.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-gform48.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-glink16.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-glink256.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-glink32.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-glink48.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-gsheet16.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-gsheet256.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-gsheet32.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-gsheet48.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-gslides16.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-gslides256.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-gslides32.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-gslides48.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-sync16.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-sync16.xpm => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-sync256.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-sync32.xpm => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\drive-sync64.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\exclaim.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\file.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\folder-mac.icns => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\folder-winseven.ico => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\folder-winxp.ico => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\folder.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\gdoc.icns => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\gdoc.ico => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\gdraw.icns => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\gdraw.ico => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\gform.icns => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\gform.ico => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\glink.icns => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\glink.ico => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\gnote.icns => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\gnote.ico => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\gscript.icns => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\gscript.ico => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\gsheet.icns => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\gsheet.ico => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\gslides.icns => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\gslides.ico => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\gtable.icns => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\gtable.ico => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\image_resources.py => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\image_resources.pyo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate1-inverse.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate1-inverse_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate1.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate1_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate2-inverse.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate2-inverse_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate2.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate2_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate3-inverse.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate3-inverse_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate3.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate3_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate4-inverse.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate4-inverse_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate4.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate4_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate5-inverse.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate5-inverse_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate5.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate5_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate6-inverse.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate6-inverse_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate6.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate6_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate7-inverse.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate7-inverse_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate7.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate7_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate8-inverse.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate8-inverse_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate8.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-animate8_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-error-inverse.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-error-inverse_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-error.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-error_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-inactive-inverse.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-inactive-inverse_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-inactive.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-inactive_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-normal-inverse.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-normal-inverse_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-normal.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-normal_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-pause-inverse_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-paused-inverse.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-paused-inverse_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-paused.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\mac-paused_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\menu_warning.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\menu_warning_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\setup1.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\setup2-mac.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\setup2-win.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\setup3-bottom.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\setup3-right.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\setup4-mac.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\setup4-win.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\setup5-mac.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\setup5-win.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\sharedfolder-mac.icns => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\sharedfolder-winseven.ico => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\sharedfolder-winxp.ico => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\shareguyicon.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\sheets.ico => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\slides.ico => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\sync.icns => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\sync.ico => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\sync.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\sync_128.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\sync_menu_done.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\sync_menu_done_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\sync_menu_error.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\sync_menu_error_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\sync_menu_syncing.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\sync_menu_syncing_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\toprighticon.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\warning-hdpi_2x.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\win-animate1.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\win-animate2.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\win-animate3.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\win-animate4.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\win-animate5.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\win-animate6.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\win-animate7.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\win-animate8.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\win-normal.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\win7-error.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\win7-inactive.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\win7-paused.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\winxp-error.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\winxp-inactive.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\winxp-paused.png => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\__init__.py => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\__init__.pyo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\overlays\Blacklisted.ico => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\overlays\Shared.ico => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\overlays\Synced.ico => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\images\overlays\Syncing.ico => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\zh_TW\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\zh_HK\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\zh_CN\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\zh-Hant\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\zh-Hans\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\zh\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\vi\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\uk\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\tr\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\th\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\te\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\ta\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\sv\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\sr\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\sl\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\sk\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\ru\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\ro\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\pt_PT\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\pt_BR\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\pt\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\pl\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\no\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\nl\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\mr\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\ml\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\lv\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\lt\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\ko\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\kn\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\ja\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\it\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\id\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\hu\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\hr\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\hi\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\he\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\gu\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\fr\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\fil\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\fi\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\es\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\en_US\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\en_GB\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\en\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\el\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\de\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\da\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\cs\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\ca\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\bn\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\bg\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\i18n\locale\ar\LC_MESSAGES\syncclient.mo => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\html\drive_thankyou.html => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\fonts\Roboto-Bold.ttf => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\fonts\Roboto-Regular.ttf => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\fonts\Roboto-Thin.ttf => Moved successfully.
C:\Users\krist_000\AppData\Local\Temp\_MEI47762\resources\chrome_ext\apdfllckaahabafndbhieahigkjlhalf_live.crx => Moved successfully.
Could not move "C:\Users\krist_000\AppData\Local\Temp\Rar$DIa0.575\Windows 7 (32 a 64-bit).docx" => Scheduled to move on reboot.
C:\Users\krist_000\AppData\Local\Temp\Rar$DIa0.575\~$ndows 7 (32 a 64-bit).docx => Moved successfully.
Could not move "C:\Users\krist_000\AppData\Local\Temp\mozilla-temp-files\mozilla-temp-7282" => Scheduled to move on reboot.
Could not move "C:\Users\krist_000\AppData\Local\Temp" directory. => Scheduled to move on reboot.


=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-03-05 19:36:00)<=

"C:\Users\krist_000\AppData\Local\Temp\etilqs_bLvTbPDuGURHloY" => File could not move.
"C:\Users\krist_000\AppData\Local\Temp\etilqs_RZbEP32nMkL9IbV" => File could not move.
C:\Users\krist_000\AppData\Local\Temp\~DFB79FEE2C02F62E9E.TMP => Is moved successfully.
C:\Users\krist_000\AppData\Local\Temp\Rar$DIa0.575\Windows 7 (32 a 64-bit).docx => Is moved successfully.
"C:\Users\krist_000\AppData\Local\Temp\mozilla-temp-files\mozilla-temp-7282" => File could not move.
C:\Users\krist_000\AppData\Local\Temp => Is moved successfully.

==== End of Fixlog ====

Re: Nejake otravne Adware

Napsal: 05 bře 2014 19:52
od kiko22
prave som si zacal citat par "hot" topicov tuna sa zistil som, ze tento http://forum.viry.cz/viewtopic.php?f=13&t=136604topic. Mam presne to iste! Ibaze sa mi ho nejako cez gmail podarilo "hide-ovat"

Kiko

Re: Nejake otravne Adware

Napsal: 05 bře 2014 20:08
od Rudy
V kterém to máte prohlížeči?

Re: Nejake otravne Adware

Napsal: 05 bře 2014 21:45
od kiko22
firefox s chrome témou

Re: Nejake otravne Adware

Napsal: 05 bře 2014 22:21
od Rudy
FF i Chrome zazálohujte pomocí MozBackup: http://www.stahuj.centrum.cz/utility_a_ ... mozbackup/ , resp. ChromeBackup: http://www.stahuj.centrum.cz/internet_a ... me-backup/ . pak oba prohlížeče odinstalujte vč. jejich profilů. stáhněte anakopírujte pouze záložky. nainstalujte nové a zpět ze záloh

Re: Nejake otravne Adware

Napsal: 08 bře 2014 20:18
od kiko22
skopcilo sa to s tym backupom, po reinstalacii sa to neobjavilo, ale mne nevadi ked nebudem mat nic

mozete podla mna vlakno uzamknut,
dakujem za vas cas a za vasu pomoc, kiko

Re: Nejake otravne Adware

Napsal: 08 bře 2014 20:27
od Rudy
Nemáte zač! :)