Kontrola logu. 4jádro jede na 50 % v nečinosti
Napsal: 07 dub 2014 10:43
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014
Ran by Michele (administrator) on MICHELE-PC on 07-04-2014 11:43:24
Running from C:\Users\Michele\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe
(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
() c:\programdata\softwarehouse\gs.enabler\GS.Enabler.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\DIGI+ VRM\VRMHelp.exe
(http://yourfiledownloader.com) C:\Program Files (x86)\YourFileDownloader Updater\YourFileUpdater.exe
() C:\Program Files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe
() C:\Program Files (x86)\ASUS\AAHM\1.00.13\aaHMSvc.exe
() C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Agent.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\TurboVHelp.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Glarysoft Ltd) C:\Program Files (x86)\Glary Utilities 4\Integrator.exe
() C:\Users\Michele\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Michele\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
() C:\Program Files (x86)\VLC Player GPU+\GPULog.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\AllShare\AllShareAgent.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Intel Corporation) C:\Windows\system32\IProsetMonitor.exe
(Nero AG) C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(ePlayWorks, Inc.) C:\Program Files (x86)\ePlayWorks\AVStreamer\PoSrv.exe
(ePlayWorks Co., Ltd.) C:\Program Files (x86)\ePlayWorks\AVStreamer\PoAgent.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe
() C:\Program Files (x86)\GreyGray\updateGreyGray.exe
() C:\Program Files (x86)\GreyGray\bin\utilGreyGray.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe
(AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM64.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(AVG) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\NisSrv.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe
() C:\Windows\explorer_1.exe
(Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
() C:\Users\Michele\Desktop\Stahovani\RSITx64.exe
(forum.viry.cz) C:\Users\Michele\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11545192 2010-11-02] (Realtek Semiconductor)
HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [1356240 2013-07-18] (Microsoft Corporation)
HKLM-x32\...\Run: [NUSB3MON] - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [JMB36X IDE Setup] - C:\Windows\RaidTool\xInsIDE.exe [43632 2010-01-19] ()
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642216 2012-08-06] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [BlueStacks Agent] - C:\Program Files (x86)\BlueStacks\HD-Agent.exe [606024 2013-09-19] (BlueStack Systems, Inc.)
HKLM-x32\...\Run: [seznam-listicka-distribuce] - C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [GPULoader] - C:\Program Files (x86)\VLC Player GPU+\GPULog.exe [1303776 2013-12-13] ()
HKLM-x32\...\Run: [AllShareAgent] - C:\Program Files (x86)\Samsung\AllShare\AllShareAgent.exe [285072 2012-03-02] (Samsung Electronics Co., Ltd.)
HKU\S-1-5-21-1048441034-508376767-185308242-1000\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [4910912 2011-08-02] (DT Soft Ltd)
HKU\S-1-5-21-1048441034-508376767-185308242-1000\...\Run: [uTorrent] - C:\Program Files (x86)\uTorrent\uTorrent.exe [641400 2011-09-21] (BitTorrent, Inc.)
HKU\S-1-5-21-1048441034-508376767-185308242-1000\...\Run: [] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
HKU\S-1-5-21-1048441034-508376767-185308242-1000\...\Run: [cz.seznam.software.autoupdate] - C:\Users\Michele\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-1048441034-508376767-185308242-1000\...\Run: [cz.seznam.software.szndesktop] - C:\Users\Michele\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-1048441034-508376767-185308242-1000\...\Run: [NextLive] - C:\Windows\SysWOW64\rundll32.exe "C:\Users\Michele\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l
HKU\S-1-5-21-1048441034-508376767-185308242-1000\...\Run: [test] - C:\Windows\bat_starter.exe [9216 2014-01-09] ()
HKU\S-1-5-21-1048441034-508376767-185308242-1000\...\Run: [HydraVisionDesktopManager] - C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [393216 2011-03-09] (AMD)
HKU\S-1-5-21-1048441034-508376767-185308242-1000\...\MountPoints2: {6d004ecd-dfda-11e0-a7f3-f46d04b01055} - F:\AutoRunCD.exe
AppInit_DLLs: C:\PROGRA~3\ASSIST~1\ASSIST~2.DLL => C:\ProgramData\Assistant\Assistant_x64.dll [4146688 2014-04-02] ()
AppInit_DLLs-x32: c:\progra~3\assist~1\assist~1.dll => C:\ProgramData\Assistant\Assistant.dll [4288512 2014-04-02] ()
IFEO\skype.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\utorrent.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,ICQ Search = http://search.icq.com/search/results.ph ... &ch_id=osd
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.glarysoft.com/?src=iehome
HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages =
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=16194
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.glarysoft.com/?src=iehome
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://websearch.searchsunmy.info/?pid= ... Z&unqvl=45
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://www.searchqu.com/web?src=ieb&app ... earchTerms}
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKLM-x32 - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://www.searchqu.com/web?src=ieb&app ... earchTerms}
SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKLM-x32 - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.searchsunmy.info/?l=1& ... Z&unqvl=45
SearchScopes: HKLM-x32 - {c1d89ae7-449d-4929-b24b-fded04adbe06} URL = http://isearch.glarysoft.com/?q={search ... c=iesearch
SearchScopes: HKLM-x32 - {EEE6C360-6118-11DC-9C72-001320C79847} URL = http://search.sweetim.com/search.asp?sr ... 6D04B01055}
SearchScopes: HKCU - DefaultScope {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.searchsunmy.info/?l=1& ... Z&unqvl=45
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www.dalesearch.com/?q={searchTer ... 0&tsp=4998
SearchScopes: HKCU - {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL =
SearchScopes: HKCU - {1FFD0CAD-D866-4A42-BA69-A62A8958AE5B} URL = http://www.novinky.cz/hledej?w={searchT ... arch_16194
SearchScopes: HKCU - {3446F9BD-6A95-4438-9E6F-209658891CD9} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_16194
SearchScopes: HKCU - {34FA5B75-F08E-44E4-A1CA-5905A82CB942} URL = http://search.yahoo.com/search?fr=chr-g ... earchTerms}
SearchScopes: HKCU - {53E89ED7-103A-408B-917E-D1CD1BEBC935} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_16194
SearchScopes: HKCU - {6552C7DD-90A4-4387-B795-F8F96747DE19} URL = http://search.icq.com/search/results.ph ... &ch_id=osd
SearchScopes: HKCU - {7D82393D-1EDA-42F5-8D39-3F12CE0CCB7E} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_16194
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://www.searchqu.com/web?src=ieb&app ... earchTerms}
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKCU - {ABA7EDE6-AE52-4A62-99FD-83E7E0F8A864} URL = http://websearch.ask.com/redirect?clien ... B7C818EF53
SearchScopes: HKCU - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.searchsunmy.info/?l=1& ... Z&unqvl=45
SearchScopes: HKCU - {BE9654C9-9D79-42ec-B55A-3CAEB12DBF58} URL = http://www.icq.com/search/results.php?q ... &ch_id=osd
SearchScopes: HKCU - {c1d89ae7-449d-4929-b24b-fded04adbe06} URL = http://isearch.glarysoft.com/?q={search ... c=iesearch
SearchScopes: HKCU - {CAF65FCF-44DA-4768-90F0-27836F3ABD39} URL = http://www.mapy.cz/?query={searchTerms} ... arch_16194
SearchScopes: HKCU - {D9630D55-49A8-4AB4-8F63-678EC1FE5871} URL = http://search.seznam.cz/?q={searchTerms ... arch_16194
SearchScopes: HKCU - {DFFEFC86-6459-4123-976E-96C468BBD637} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_16194
SearchScopes: HKCU - {EEE6C360-6118-11DC-9C72-001320C79847} URL = http://search.sweetim.com/search.asp?sr ... 6D04B01055}
SearchScopes: HKCU - {EF338EFB-2DA9-4C71-847A-2F353C46F5F2} URL = http://encyklopedie.seznam.cz/search?q= ... arch_16194
SearchScopes: HKCU - {F05D1B44-CC7F-4894-A49C-C7300007F5DC} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_16194
BHO: Happye2Save - {269A65E1-3D43-A06D-89B8-1F28B355D95D} - C:\ProgramData\Happye2Save\iMv4V.x64.dll ()
BHO: greuatsiaveer - {5FA163A7-5F31-C010-258A-143F7CE43059} - C:\Program Files (x86)\greuatsiaveer\oUWo.x64.dll ()
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: Skype add-on for Internet Explorer - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
BHO: UTubeNoAdS - {B3D65F6A-6D79-D8CA-D69E-FFB86EBEA39E} - C:\ProgramData\UTubeNoAdS\DWzLLuplk.x64.dll ()
BHO: greatsavErr - {CB0C26B4-AB22-53C6-8C14-4EF536239BD5} - C:\Program Files (x86)\greatsavErr\4rhB0.x64.dll ()
BHO: SNT - {E3B334F0-C0E9-F435-C8E6-736A9C456A93} - C:\Program Files (x86)\SNT\H7oJ8U5nA.x64.dll ()
BHO: YoutubeAdblocker - {F39CAA4B-0BAB-0848-6C18-F45661AA438F} - C:\Program Files (x86)\YoutubeAdblocker\_lF26PGNg.x64.dll ()
BHO: Hotspot Shield Class - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - No File
BHO: SNT - {FBB75A19-06D2-3A41-7AEF-0D33EE62360E} - C:\Program Files (x86)\SNT\bqRmxu.x64.dll ()
BHO-x32: Happye2Save - {269A65E1-3D43-A06D-89B8-1F28B355D95D} - C:\ProgramData\Happye2Save\iMv4V.dll ()
BHO-x32: GreyGray - {5cb21133-55d7-4b7a-9c69-4352006c5d37} - C:\Program Files (x86)\GreyGray\GreyGrayBHO.dll (GreyGray)
BHO-x32: GreyGray - {ae60e6ed-49dd-4099-8b5e-386a4908d5d5} - C:\Program Files (x86)\GreyGray\GreyGrayBHO.dll (GreyGray)
BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO-x32: Media Watch - {c36efb44-81fd-476e-b8a2-428f31d71a00} - C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home905\ie\MediaWatchV1home905.dll ()
Toolbar: HKLM - No Name - {32099AAC-C132-4136-9E9A-4E364A424E17} - No File
Toolbar: HKLM - No Name - !{95B7759C-8C7F-4BF1-B163-73684A933233} - No File
Toolbar: HKLM-x32 - Searchqu Toolbar - {99079a25-328f-4bd4-be04-00955acaa0a7} - No File
Toolbar: HKLM-x32 - No Name - !{95B7759C-8C7F-4BF1-B163-73684A933233} - No File
Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
Toolbar: HKCU - No Name - {EEE6C35B-6118-11DC-9C72-001320C79847} - No File
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 85.193.0.8 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\Michele\AppData\Roaming\Mozilla\Firefox\Profiles\su5sw63i.default-1389550717220
FF user.js: detected! => C:\Users\Michele\AppData\Roaming\Mozilla\Firefox\Profiles\su5sw63i.default-1389550717220\user.js
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_77.dll ()
FF Plugin: @java.com/DTPlugin,version=10.10.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @eximion.com/KalydoPlayer - C:\Users\Michele\AppData\Roaming\Kalydo\KalydoPlayer\bin2\npkalydo.dll (Eximion B.V.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Michele\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll (Ubisoft)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Battlefield Heroes Updater - C:\Users\Michele\AppData\Roaming\Mozilla\Firefox\Profiles\su5sw63i.default-1389550717220\Extensions\battlefieldheroespatcher@ea.com [2014-01-23]
FF Extension: Battlefield Play4Free - C:\Users\Michele\AppData\Roaming\Mozilla\Firefox\Profiles\su5sw63i.default-1389550717220\Extensions\battlefieldplay4free@ea.com [2014-04-04]
FF Extension: YouTube Unblocker - C:\Users\Michele\AppData\Roaming\Mozilla\Firefox\Profiles\su5sw63i.default-1389550717220\Extensions\youtubeunblocker@unblocker.yt [2014-02-09]
FF Extension: Mark Ads Sites In Search - C:\Users\Michele\AppData\Roaming\Mozilla\Firefox\Profiles\su5sw63i.default-1389550717220\Extensions\jid1-LGBwZ7tVjRcfIg@jetpack.xpi [2014-01-12]
FF Extension: YouTube High Definition - C:\Users\Michele\AppData\Roaming\Mozilla\Firefox\Profiles\su5sw63i.default-1389550717220\Extensions\{7b1bf0b6-a1b9-42b0-b75d-252036438bdc}.xpi [2014-02-09]
FF Extension: Adblock Plus - C:\Users\Michele\AppData\Roaming\Mozilla\Firefox\Profiles\su5sw63i.default-1389550717220\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-01-15]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-03-03]
FF HKLM-x32\...\Firefox\Extensions: [ext@WebexpEnhancedV1alpha5514.net] - C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha5514\ff
FF Extension: Webexp Enhanced - C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha5514\ff [2014-01-03]
FF HKLM-x32\...\Firefox\Extensions: [ext@VideoPlayerV3beta842.net] - C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta842\ff
FF Extension: Video Player - C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta842\ff [2014-01-10]
FF HKLM-x32\...\Firefox\Extensions: [ext@MediaPlayerV1alpha2.net] - C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha2\ff
FF Extension: Media Player - C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha2\ff [2014-01-30]
FF HKLM-x32\...\Firefox\Extensions: [ext@MediaViewerV1alpha21.net] - C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha21\ff
FF Extension: Media Viewer - C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha21\ff [2014-02-23]
FF HKLM-x32\...\Firefox\Extensions: [ext@MediaViewV1alpha2305.net] - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha2305\ff
FF Extension: Media View - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha2305\ff [2014-02-28]
FF HKLM-x32\...\Firefox\Extensions: [ext@MediaViewV1alpha81.net] - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha81\ff
FF Extension: Media View - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha81\ff [2014-03-15]
FF HKLM-x32\...\Firefox\Extensions: [ext@MediaWatchV1home905.net] - C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home905\ff
FF Extension: Media Watch - C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home905\ff [2014-03-23]
Chrome:
=======
CHR HomePage: https://www.google.cz/
CHR Extension: (Media Viewer) - C:\Users\Michele\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdgpfjiojofoleepldloihlojgldfand [2014-02-23]
CHR Extension: (Media Watch) - C:\Users\Michele\AppData\Local\Google\Chrome\User Data\Default\Extensions\eibjmljhlcpainepmgedlnppghmigain [2014-03-23]
CHR Extension: (AdBlock Premium) - C:\Users\Michele\AppData\Local\Google\Chrome\User Data\Default\Extensions\fndlhnanhedoklpdaacidomdnplcjcpj [2014-01-10]
CHR Extension: (YTTBoOokMeark) - C:\Users\Michele\AppData\Local\Google\Chrome\User Data\Default\Extensions\hpdjlppcghhcgipcboedhebbnapddajc [2014-01-09]
CHR Extension: (UKON00C4008CENA PODPORA: Virtu00C300A1ln00C300AD kl00C300A1vesnice (od spole00C4008Dnosti Google)) - C:\Users\Michele\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpphfcjpaldmedbbomcdhgonmhjngfig [2014-01-10]
CHR Extension: (Fix Cleaner) - C:\Users\Michele\AppData\Local\Google\Chrome\User Data\Default\Extensions\njeicbdoddkeedpdhlcjncealfhflhml [2014-01-10]
CHR Extension: (Pen011B017Eenka Google) - C:\Users\Michele\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-22]
CHR Extension: (UTubeNoAdS) - C:\Users\Michele\AppData\Local\Google\Chrome\User Data\Default\Extensions\obikpplhmpmfnmndmbegcmcnfpcnnhbn [2014-01-31]
CHR Extension: (Battlefield Play4Free) - C:\Users\Michele\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiokahphinmbmakkehgelkmpolmnbkdh [2014-01-11]
CHR Extension: (Media View) - C:\Users\Michele\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcakkpdafbmmjmicdmmjpfcbdcjfhegb [2014-03-15]
CHR HKLM-x32\...\Chrome\Extension: [cdgpfjiojofoleepldloihlojgldfand] - C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha21\ch\MediaViewerV1alpha21.crx [2014-02-23]
CHR HKLM-x32\...\Chrome\Extension: [ceiapeodjfjcbfkfkfbdpgbhbgiidjdb] - C:\Program Files (x86)\GreyGray\ceiapeodjfjcbfkfkfbdpgbhbgiidjdb.crx [2014-02-28]
CHR HKLM-x32\...\Chrome\Extension: [dklmmacmhbidolfcijdhknacmdimgfah] - C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta842\ch\VideoPlayerV3beta842.crx [2014-01-08]
CHR HKLM-x32\...\Chrome\Extension: [eibjmljhlcpainepmgedlnppghmigain] - C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home905\ch\MediaWatchV1home905.crx [2014-03-20]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-03-03]
CHR HKLM-x32\...\Chrome\Extension: [nkcakejdghnaocjokiohjbglgngidgbg] - C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha5514\ch\WebexpEnhancedV1alpha5514.crx [2013-12-20]
CHR HKLM-x32\...\Chrome\Extension: [omhceofeplgolgifooncnecciillkofc] - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha2305\ch\MediaViewV1alpha2305.crx [2014-02-26]
CHR HKLM-x32\...\Chrome\Extension: [pcakkpdafbmmjmicdmmjpfcbdcjfhegb] - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha81\ch\MediaViewV1alpha81.crx [2014-02-26]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Services (Whitelisted) =================
R2 699fd52f; C:\ProgramData\Assistant\AssistantSvc.dll [177488 2014-04-02] ()
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe [918144 2010-11-03] ()
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.13\aaHMSvc.exe [915584 2010-12-02] ()
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe [586880 2010-10-21] ()
S2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [393032 2013-09-19] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [384840 2013-09-19] (BlueStack Systems, Inc.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1363584 2014-03-03] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1748608 2014-03-03] (Microsoft Corporation)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23816 2013-07-18] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [366600 2013-07-18] (Microsoft Corporation)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-11-02] ()
R2 PoSrv1; C:\Program Files (x86)\ePlayWorks\AVStreamer\PoSrv.exe [148224 2013-02-07] (ePlayWorks, Inc.)
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2103096 2013-12-18] (TuneUp Software)
R2 Update GreyGray; C:\Program Files (x86)\GreyGray\updateGreyGray.exe [350488 2014-04-04] ()
R2 Util GreyGray; C:\Program Files (x86)\GreyGray\bin\utilGreyGray.exe [350488 2014-04-04] ()
==================== Drivers (Whitelisted) ====================
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2010-08-24] ()
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] ()
S3 BlueletAudio; No ImagePath
S3 BlueletSCOAudio; No ImagePath
R0 BootDefragDriver; C:\Windows\System32\drivers\BootDefragDriver.sys [17088 2013-12-23] (Glarysoft Ltd)
R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [70984 2013-09-19] (BlueStack Systems)
S3 BT; No ImagePath
S3 Btcsrusb; No ImagePath
S0 BTHidEnum; No ImagePath
S0 BTHidMgr; No ImagePath
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [270912 2012-02-15] (DT Soft Ltd)
S3 FsUsbExDisk; C:\Windows\SysWOW64\FsUsbExDisk.SYS [37344 2014-01-23] ()
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [247216 2013-06-18] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [139616 2013-06-18] (Microsoft Corporation)
S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-02-12] (Anchorfree Inc.)
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-08-21] (TuneUp Software)
S3 VComm; No ImagePath
S3 VcommMgr; No ImagePath
S3 WinRing0_1_2_0; No ImagePath
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-04-07 11:43 - 2014-04-07 11:43 - 00027888 _____ () C:\Users\Michele\Desktop\FRST.txt
2014-04-07 11:43 - 2014-04-07 11:43 - 00000000 ____D () C:\FRST
2014-04-07 11:42 - 2014-04-07 11:42 - 00112640 _____ (forum.viry.cz) C:\Users\Michele\Desktop\FRSTLauncher.exe
2014-04-07 11:41 - 2014-04-07 11:41 - 02157056 _____ (Farbar) C:\Users\Michele\Desktop\FRST64.exe
2014-04-07 11:39 - 2014-04-07 11:39 - 00832273 _____ () C:\Users\Michele\Desktop\RSITx64.exe
2014-04-07 11:39 - 2014-04-07 11:39 - 00000000 ____D () C:\rsit
2014-04-07 11:39 - 2014-04-07 11:39 - 00000000 ____D () C:\Program Files\trend micro
2014-04-06 18:01 - 2014-04-06 18:01 - 00000000 ____D () C:\Users\Michele\AppData\Local\Macromedia
2014-04-06 17:37 - 2014-04-06 17:37 - 00000000 ____D () C:\Download
2014-04-06 17:30 - 2014-04-06 17:30 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\ATI
2014-04-06 17:29 - 2014-04-06 17:29 - 00003524 _____ () C:\Windows\PFRO.log
2014-04-06 17:29 - 2014-04-06 17:29 - 00000000 ____D () C:\Users\Michele\AppData\Local\uTorrent
2014-04-06 17:18 - 2014-04-07 09:08 - 00000280 _____ () C:\Windows\setupact.log
2014-04-06 17:18 - 2014-04-06 17:18 - 00000000 _____ () C:\Windows\setuperr.log
2014-04-06 17:17 - 2013-12-18 11:01 - 00043320 _____ (TuneUp Software) C:\Windows\system32\uxtuneup.dll
2014-04-06 17:17 - 2013-12-18 11:01 - 00036152 _____ (TuneUp Software) C:\Windows\SysWOW64\uxtuneup.dll
2014-04-06 17:16 - 2014-04-06 17:16 - 00002220 _____ () C:\Users\Public\Desktop\TuneUp 1-Click Maintenance.lnk
2014-04-06 17:16 - 2014-04-06 17:16 - 00002194 _____ () C:\Users\Public\Desktop\TuneUp Utilities 2014.lnk
2014-04-06 17:16 - 2013-12-18 11:01 - 00040760 _____ (TuneUp Software) C:\Windows\system32\TURegOpt.exe
2014-04-06 17:16 - 2013-12-18 11:01 - 00029496 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll
2014-04-06 17:16 - 2013-12-18 11:01 - 00025400 _____ (TuneUp Software) C:\Windows\SysWOW64\authuitu.dll
2014-04-06 17:15 - 2014-04-06 17:17 - 00000000 ____D () C:\Program Files (x86)\TuneUp Utilities 2014
2014-04-06 17:13 - 2014-04-06 17:23 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2014-04-05 19:38 - 2014-04-05 19:38 - 00890430 _____ (PDAwin) C:\Users\Michele\Downloads\TVremote57.exe
2014-04-01 07:07 - 2014-04-01 07:07 - 00003140 _____ () C:\Windows\System32\Tasks\YourFile DownloaderUpdate
2014-04-01 07:07 - 2014-04-01 07:07 - 00000000 ____D () C:\Program Files (x86)\YourFileDownloader Updater
2014-03-31 18:31 - 2014-03-31 18:31 - 00000000 ____D () C:\Users\Michele\Desktop\Rakim - The Archive Live Lost And Found (2008)
2014-03-29 19:50 - 2014-01-23 05:21 - 00206080 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudmdm.sys
2014-03-29 19:50 - 2014-01-23 05:21 - 00108800 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudbus.sys
2014-03-29 15:44 - 2014-03-29 15:45 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\DownloadManager
2014-03-29 15:13 - 2014-03-29 15:46 - 00000000 ____D () C:\Users\Michele\AppData\Local\SOTI
2014-03-29 01:16 - 2014-04-03 18:41 - 00000000 ____D () C:\Users\Michele\Desktop\nože
2014-03-24 18:13 - 2014-03-24 18:13 - 00017232 ____H () C:\Users\Michele\Desktop\Asterix.E.I.Vichinghi.iTALiAN.DVDRip.XviD-A-TeaM.O.R.AVI.mta
2014-03-24 18:13 - 2014-03-24 18:13 - 00014637 ____H () C:\Users\Michele\Desktop\ruac3.AVI.mta
2014-03-23 21:19 - 2014-04-02 15:25 - 00000000 ____D () C:\ProgramData\Assistant
2014-03-23 00:18 - 2014-03-23 00:18 - 00000000 ____D () C:\Program Files (x86)\MediaWatchV1
2014-03-09 15:52 - 2014-03-09 15:52 - 00002036 _____ () C:\Users\Public\Desktop\Samsung AllShare.lnk
2014-03-09 15:52 - 2014-03-09 15:52 - 00000000 ____D () C:\AllShare
==================== One Month Modified Files and Folders =======
2014-04-07 11:43 - 2014-04-07 11:43 - 00027888 _____ () C:\Users\Michele\Desktop\FRST.txt
2014-04-07 11:43 - 2014-04-07 11:43 - 00000000 ____D () C:\FRST
2014-04-07 11:42 - 2014-04-07 11:42 - 00112640 _____ (forum.viry.cz) C:\Users\Michele\Desktop\FRSTLauncher.exe
2014-04-07 11:42 - 2011-09-15 20:45 - 00000000 ___RD () C:\Users\Michele\Desktop\Stahovani
2014-04-07 11:41 - 2014-04-07 11:41 - 02157056 _____ (Farbar) C:\Users\Michele\Desktop\FRST64.exe
2014-04-07 11:39 - 2014-04-07 11:39 - 00832273 _____ () C:\Users\Michele\Desktop\RSITx64.exe
2014-04-07 11:39 - 2014-04-07 11:39 - 00000000 ____D () C:\rsit
2014-04-07 11:39 - 2014-04-07 11:39 - 00000000 ____D () C:\Program Files\trend micro
2014-04-07 10:56 - 2011-09-15 22:42 - 00000954 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-04-07 10:51 - 2012-09-08 14:26 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-04-07 09:16 - 2009-07-14 06:45 - 00019712 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-04-07 09:16 - 2009-07-14 06:45 - 00019712 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-04-07 09:13 - 2013-12-18 16:38 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\Seznam.cz
2014-04-07 09:13 - 2011-09-16 00:40 - 02046439 _____ () C:\Windows\WindowsUpdate.log
2014-04-07 09:10 - 2013-12-18 16:39 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\newnext.me
2014-04-07 09:09 - 2013-12-29 23:52 - 00000332 _____ () C:\Windows\Tasks\GlaryInitialize 4.job
2014-04-07 09:09 - 2013-12-29 23:52 - 00000000 ____D () C:\Program Files (x86)\Glary Utilities 4
2014-04-07 09:08 - 2014-04-06 17:18 - 00000280 _____ () C:\Windows\setupact.log
2014-04-07 09:08 - 2014-01-09 21:46 - 00000464 ____H () C:\Windows\Tasks\GS.Enabler-S-926685765.job
2014-04-07 09:08 - 2013-12-18 16:37 - 00000364 _____ () C:\Windows\Tasks\AmiUpdXp.job
2014-04-07 09:08 - 2011-09-15 22:42 - 00000950 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-04-07 09:08 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-04-06 20:53 - 2011-09-15 21:50 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\Skype
2014-04-06 19:30 - 2009-07-14 17:18 - 03130370 _____ () C:\Windows\system32\perfh005.dat
2014-04-06 19:30 - 2009-07-14 17:18 - 00976700 _____ () C:\Windows\system32\perfc005.dat
2014-04-06 19:30 - 2009-07-14 07:13 - 00006216 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-04-06 18:01 - 2014-04-06 18:01 - 00000000 ____D () C:\Users\Michele\AppData\Local\Macromedia
2014-04-06 18:00 - 2011-09-20 23:48 - 01032256 _____ () C:\Windows\PE_Rom.dll
2014-04-06 17:44 - 2009-07-14 07:08 - 00032548 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-04-06 17:37 - 2014-04-06 17:37 - 00000000 ____D () C:\Download
2014-04-06 17:37 - 2011-09-23 01:43 - 00000000 ____D () C:\ProgramData\Nero
2014-04-06 17:35 - 2011-09-16 00:18 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\uTorrent
2014-04-06 17:30 - 2014-04-06 17:30 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\ATI
2014-04-06 17:29 - 2014-04-06 17:29 - 00003524 _____ () C:\Windows\PFRO.log
2014-04-06 17:29 - 2014-04-06 17:29 - 00000000 ____D () C:\Users\Michele\AppData\Local\uTorrent
2014-04-06 17:29 - 2011-09-15 22:42 - 00000000 ____D () C:\Program Files (x86)\Google
2014-04-06 17:24 - 2012-05-07 19:47 - 00003694 _____ () C:\Windows\System32\Tasks\Adobe online update program
2014-04-06 17:24 - 2011-09-22 02:02 - 00003704 _____ () C:\Windows\System32\Tasks\Java Update Scheduler
2014-04-06 17:23 - 2014-04-06 17:13 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2014-04-06 17:23 - 2013-08-12 20:30 - 00000000 __SHD () C:\ProgramData\{D1D4879F-2279-49C9-AEBF-3B95C84EAA8F}
2014-04-06 17:23 - 2012-10-10 10:03 - 00000000 __SHD () C:\ProgramData\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
2014-04-06 17:23 - 2012-09-01 18:24 - 00000000 __SHD () C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936}
2014-04-06 17:23 - 2011-09-22 01:35 - 00000000 __SHD () C:\ProgramData\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
2014-04-06 17:23 - 2011-09-17 01:59 - 00000000 ____D () C:\Users\Michele\AppData\Local\Downloaded Installations
2014-04-06 17:18 - 2014-04-06 17:18 - 00000000 _____ () C:\Windows\setuperr.log
2014-04-06 17:18 - 2011-09-22 01:35 - 00000000 ____D () C:\ProgramData\TuneUp Software
2014-04-06 17:17 - 2014-04-06 17:15 - 00000000 ____D () C:\Program Files (x86)\TuneUp Utilities 2014
2014-04-06 17:17 - 2011-09-16 01:38 - 00003986 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{DD2C6B39-18CA-49A3-85ED-0DDFCC04CB3D}
2014-04-06 17:16 - 2014-04-06 17:16 - 00002220 _____ () C:\Users\Public\Desktop\TuneUp 1-Click Maintenance.lnk
2014-04-06 17:16 - 2014-04-06 17:16 - 00002194 _____ () C:\Users\Public\Desktop\TuneUp Utilities 2014.lnk
2014-04-06 17:16 - 2011-09-22 01:35 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\TuneUp Software
2014-04-06 17:16 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\Windows Sidebar
2014-04-06 17:11 - 2011-09-15 22:42 - 00000000 ____D () C:\Users\Michele\AppData\Local\Google
2014-04-06 17:09 - 2011-09-15 20:21 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\Mozilla
2014-04-06 17:08 - 2013-12-18 16:39 - 00000000 ____D () C:\Users\Michele\AppData\Local\Mobogenie
2014-04-06 17:08 - 2013-10-08 16:21 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\PDF Software
2014-04-06 17:08 - 2013-09-20 15:33 - 00000000 ____D () C:\Users\Michele\AppData\Local\Urban Trial Freestyle
2014-04-06 17:08 - 2013-06-25 18:37 - 00000000 ____D () C:\ADCDA2
2014-04-06 17:08 - 2013-03-12 20:42 - 00000000 ____D () C:\Users\Michele\AppData\Local\JustRemotePhone
2014-04-06 17:08 - 2013-01-17 22:00 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\FreeCDRipper
2014-04-06 17:08 - 2012-11-14 02:43 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\wargaming.net
2014-04-06 17:08 - 2012-11-11 00:36 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\ArcSoft
2014-04-06 17:08 - 2012-11-06 20:15 - 00000000 ____D () C:\ProgramData\Origin
2014-04-06 17:08 - 2012-09-14 21:21 - 00000000 ____D () C:\Users\Michele\Documents\The KMPlayer
2014-04-06 17:08 - 2012-07-14 21:14 - 00000000 ____D () C:\ProgramData\Electronic Arts
2014-04-06 17:08 - 2012-07-01 00:45 - 00000000 ____D () C:\Users\Michele\AppData\Local\Facebook
2014-04-06 17:08 - 2012-06-04 00:13 - 00000000 ____D () C:\Users\Michele\Documents\Bluetooth
2014-04-06 17:08 - 2012-04-29 21:58 - 00000000 ____D () C:\Users\Michele\AppData\Local\PMB Files
2014-04-06 17:08 - 2012-02-15 17:43 - 00000000 ____D () C:\Users\Michele\AppData\Local\SKIDROW
2014-04-06 17:08 - 2012-01-07 01:02 - 00000000 ____D () C:\Program Files (x86)\The KMPlayer
2014-04-06 17:08 - 2011-10-21 19:54 - 00000000 ____D () C:\Program Files (x86)\DivX
2014-04-06 17:08 - 2011-10-18 18:05 - 00000000 ____D () C:\ProgramData\InstallMate
2014-04-06 17:08 - 2011-09-17 02:00 - 00000000 ____D () C:\Users\Michele\AppData\Local\Sony
2014-04-06 17:08 - 2011-09-15 20:12 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\Adobe
2014-04-06 17:08 - 2011-09-15 20:12 - 00000000 ____D () C:\ProgramData\Adobe
2014-04-06 17:08 - 2011-09-15 06:37 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-04-06 17:08 - 2011-09-15 06:15 - 00000000 ____D () C:\Users\Michele
2014-04-06 17:08 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default
2014-04-05 19:38 - 2014-04-05 19:38 - 00890430 _____ (PDAwin) C:\Users\Michele\Downloads\TVremote57.exe
2014-04-03 18:41 - 2014-03-29 01:16 - 00000000 ____D () C:\Users\Michele\Desktop\nože
2014-04-02 15:25 - 2014-03-23 21:19 - 00000000 ____D () C:\ProgramData\Assistant
2014-04-01 17:41 - 2013-12-14 19:26 - 00352768 ___SH () C:\Users\Michele\Desktop\Thumbs.db
2014-04-01 07:07 - 2014-04-01 07:07 - 00003140 _____ () C:\Windows\System32\Tasks\YourFile DownloaderUpdate
2014-04-01 07:07 - 2014-04-01 07:07 - 00000000 ____D () C:\Program Files (x86)\YourFileDownloader Updater
2014-03-31 18:31 - 2014-03-31 18:31 - 00000000 ____D () C:\Users\Michele\Desktop\Rakim - The Archive Live Lost And Found (2008)
2014-03-29 20:22 - 2013-01-20 18:59 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\Samsung
2014-03-29 20:22 - 2013-01-20 18:59 - 00000000 ____D () C:\ProgramData\Samsung
2014-03-29 15:46 - 2014-03-29 15:13 - 00000000 ____D () C:\Users\Michele\AppData\Local\SOTI
2014-03-29 15:45 - 2014-03-29 15:44 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\DownloadManager
2014-03-29 15:38 - 2014-01-12 02:13 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-03-29 15:38 - 2013-07-07 00:55 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-03-24 18:13 - 2014-03-24 18:13 - 00017232 ____H () C:\Users\Michele\Desktop\Asterix.E.I.Vichinghi.iTALiAN.DVDRip.XviD-A-TeaM.O.R.AVI.mta
2014-03-24 18:13 - 2014-03-24 18:13 - 00014637 ____H () C:\Users\Michele\Desktop\ruac3.AVI.mta
2014-03-23 00:18 - 2014-03-23 00:18 - 00000000 ____D () C:\Program Files (x86)\MediaWatchV1
2014-03-23 00:18 - 2014-01-30 14:30 - 00000270 __RSH () C:\ProgramData\ntuser.pol
2014-03-15 19:18 - 2014-02-28 11:16 - 00000000 ____D () C:\Program Files (x86)\MediaViewV1
2014-03-15 15:51 - 2011-09-15 21:50 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-03-12 16:51 - 2012-09-08 14:26 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-03-12 16:51 - 2012-09-08 14:26 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-03-12 16:51 - 2011-09-15 22:42 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-03-09 15:52 - 2014-03-09 15:52 - 00002036 _____ () C:\Users\Public\Desktop\Samsung AllShare.lnk
2014-03-09 15:52 - 2014-03-09 15:52 - 00000000 ____D () C:\AllShare
2014-03-09 15:51 - 2013-01-20 18:59 - 00000000 ____D () C:\Program Files (x86)\Samsung
Some content of TEMP:
====================
C:\Users\Michele\AppData\Local\Temp\~63.exe
C:\Users\Michele\AppData\Local\Temp\~80B8.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-04-06 13:02
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (Nový svazek) (Fixed) (Total:149.05 GB) (Free:44.14 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive e: () (Fixed) (Total:233.76 GB) (Free:51.14 GB) NTFS
Available physical RAM: 13438.12 MB
Total physical RAM: 16360.97 MB
Percentage of memory in use: 17%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 234 GB) (Disk ID: EDC3EDC3)
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 149 GB) (Disk ID: E07FE07F)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\AmiUpdXp.job => C:\Users\Michele\AppData\Local\SwvUpdater\Updater.exe <==== ATTENTION
Task: C:\Windows\Tasks\GlaryInitialize 4.job => C:\Program Files (x86)\Glary Utilities 4\Initialize.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GS.Enabler-S-926685765.job => c:\programdata\softwarehouse\gs.enabler\GS.Enabler.exe <==== ATTENTION
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Michele\Desktop" je 13973 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
Ran by Michele (administrator) on MICHELE-PC on 07-04-2014 11:43:24
Running from C:\Users\Michele\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe
(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
() c:\programdata\softwarehouse\gs.enabler\GS.Enabler.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\DIGI+ VRM\VRMHelp.exe
(http://yourfiledownloader.com) C:\Program Files (x86)\YourFileDownloader Updater\YourFileUpdater.exe
() C:\Program Files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe
() C:\Program Files (x86)\ASUS\AAHM\1.00.13\aaHMSvc.exe
() C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Agent.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\TurboVHelp.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Glarysoft Ltd) C:\Program Files (x86)\Glary Utilities 4\Integrator.exe
() C:\Users\Michele\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Michele\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
() C:\Program Files (x86)\VLC Player GPU+\GPULog.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\AllShare\AllShareAgent.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Intel Corporation) C:\Windows\system32\IProsetMonitor.exe
(Nero AG) C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(ePlayWorks, Inc.) C:\Program Files (x86)\ePlayWorks\AVStreamer\PoSrv.exe
(ePlayWorks Co., Ltd.) C:\Program Files (x86)\ePlayWorks\AVStreamer\PoAgent.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe
() C:\Program Files (x86)\GreyGray\updateGreyGray.exe
() C:\Program Files (x86)\GreyGray\bin\utilGreyGray.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe
(AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM64.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(AVG) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\NisSrv.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe
() C:\Windows\explorer_1.exe
(Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
() C:\Users\Michele\Desktop\Stahovani\RSITx64.exe
(forum.viry.cz) C:\Users\Michele\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11545192 2010-11-02] (Realtek Semiconductor)
HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [1356240 2013-07-18] (Microsoft Corporation)
HKLM-x32\...\Run: [NUSB3MON] - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [JMB36X IDE Setup] - C:\Windows\RaidTool\xInsIDE.exe [43632 2010-01-19] ()
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642216 2012-08-06] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [BlueStacks Agent] - C:\Program Files (x86)\BlueStacks\HD-Agent.exe [606024 2013-09-19] (BlueStack Systems, Inc.)
HKLM-x32\...\Run: [seznam-listicka-distribuce] - C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [GPULoader] - C:\Program Files (x86)\VLC Player GPU+\GPULog.exe [1303776 2013-12-13] ()
HKLM-x32\...\Run: [AllShareAgent] - C:\Program Files (x86)\Samsung\AllShare\AllShareAgent.exe [285072 2012-03-02] (Samsung Electronics Co., Ltd.)
HKU\S-1-5-21-1048441034-508376767-185308242-1000\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [4910912 2011-08-02] (DT Soft Ltd)
HKU\S-1-5-21-1048441034-508376767-185308242-1000\...\Run: [uTorrent] - C:\Program Files (x86)\uTorrent\uTorrent.exe [641400 2011-09-21] (BitTorrent, Inc.)
HKU\S-1-5-21-1048441034-508376767-185308242-1000\...\Run: [] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
HKU\S-1-5-21-1048441034-508376767-185308242-1000\...\Run: [cz.seznam.software.autoupdate] - C:\Users\Michele\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-1048441034-508376767-185308242-1000\...\Run: [cz.seznam.software.szndesktop] - C:\Users\Michele\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-1048441034-508376767-185308242-1000\...\Run: [NextLive] - C:\Windows\SysWOW64\rundll32.exe "C:\Users\Michele\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l
HKU\S-1-5-21-1048441034-508376767-185308242-1000\...\Run: [test] - C:\Windows\bat_starter.exe [9216 2014-01-09] ()
HKU\S-1-5-21-1048441034-508376767-185308242-1000\...\Run: [HydraVisionDesktopManager] - C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [393216 2011-03-09] (AMD)
HKU\S-1-5-21-1048441034-508376767-185308242-1000\...\MountPoints2: {6d004ecd-dfda-11e0-a7f3-f46d04b01055} - F:\AutoRunCD.exe
AppInit_DLLs: C:\PROGRA~3\ASSIST~1\ASSIST~2.DLL => C:\ProgramData\Assistant\Assistant_x64.dll [4146688 2014-04-02] ()
AppInit_DLLs-x32: c:\progra~3\assist~1\assist~1.dll => C:\ProgramData\Assistant\Assistant.dll [4288512 2014-04-02] ()
IFEO\skype.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\utorrent.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,ICQ Search = http://search.icq.com/search/results.ph ... &ch_id=osd
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.glarysoft.com/?src=iehome
HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages =
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=16194
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.glarysoft.com/?src=iehome
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://websearch.searchsunmy.info/?pid= ... Z&unqvl=45
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://www.searchqu.com/web?src=ieb&app ... earchTerms}
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKLM-x32 - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://www.searchqu.com/web?src=ieb&app ... earchTerms}
SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKLM-x32 - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.searchsunmy.info/?l=1& ... Z&unqvl=45
SearchScopes: HKLM-x32 - {c1d89ae7-449d-4929-b24b-fded04adbe06} URL = http://isearch.glarysoft.com/?q={search ... c=iesearch
SearchScopes: HKLM-x32 - {EEE6C360-6118-11DC-9C72-001320C79847} URL = http://search.sweetim.com/search.asp?sr ... 6D04B01055}
SearchScopes: HKCU - DefaultScope {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.searchsunmy.info/?l=1& ... Z&unqvl=45
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www.dalesearch.com/?q={searchTer ... 0&tsp=4998
SearchScopes: HKCU - {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL =
SearchScopes: HKCU - {1FFD0CAD-D866-4A42-BA69-A62A8958AE5B} URL = http://www.novinky.cz/hledej?w={searchT ... arch_16194
SearchScopes: HKCU - {3446F9BD-6A95-4438-9E6F-209658891CD9} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_16194
SearchScopes: HKCU - {34FA5B75-F08E-44E4-A1CA-5905A82CB942} URL = http://search.yahoo.com/search?fr=chr-g ... earchTerms}
SearchScopes: HKCU - {53E89ED7-103A-408B-917E-D1CD1BEBC935} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_16194
SearchScopes: HKCU - {6552C7DD-90A4-4387-B795-F8F96747DE19} URL = http://search.icq.com/search/results.ph ... &ch_id=osd
SearchScopes: HKCU - {7D82393D-1EDA-42F5-8D39-3F12CE0CCB7E} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_16194
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://www.searchqu.com/web?src=ieb&app ... earchTerms}
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKCU - {ABA7EDE6-AE52-4A62-99FD-83E7E0F8A864} URL = http://websearch.ask.com/redirect?clien ... B7C818EF53
SearchScopes: HKCU - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.searchsunmy.info/?l=1& ... Z&unqvl=45
SearchScopes: HKCU - {BE9654C9-9D79-42ec-B55A-3CAEB12DBF58} URL = http://www.icq.com/search/results.php?q ... &ch_id=osd
SearchScopes: HKCU - {c1d89ae7-449d-4929-b24b-fded04adbe06} URL = http://isearch.glarysoft.com/?q={search ... c=iesearch
SearchScopes: HKCU - {CAF65FCF-44DA-4768-90F0-27836F3ABD39} URL = http://www.mapy.cz/?query={searchTerms} ... arch_16194
SearchScopes: HKCU - {D9630D55-49A8-4AB4-8F63-678EC1FE5871} URL = http://search.seznam.cz/?q={searchTerms ... arch_16194
SearchScopes: HKCU - {DFFEFC86-6459-4123-976E-96C468BBD637} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_16194
SearchScopes: HKCU - {EEE6C360-6118-11DC-9C72-001320C79847} URL = http://search.sweetim.com/search.asp?sr ... 6D04B01055}
SearchScopes: HKCU - {EF338EFB-2DA9-4C71-847A-2F353C46F5F2} URL = http://encyklopedie.seznam.cz/search?q= ... arch_16194
SearchScopes: HKCU - {F05D1B44-CC7F-4894-A49C-C7300007F5DC} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_16194
BHO: Happye2Save - {269A65E1-3D43-A06D-89B8-1F28B355D95D} - C:\ProgramData\Happye2Save\iMv4V.x64.dll ()
BHO: greuatsiaveer - {5FA163A7-5F31-C010-258A-143F7CE43059} - C:\Program Files (x86)\greuatsiaveer\oUWo.x64.dll ()
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: Skype add-on for Internet Explorer - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
BHO: UTubeNoAdS - {B3D65F6A-6D79-D8CA-D69E-FFB86EBEA39E} - C:\ProgramData\UTubeNoAdS\DWzLLuplk.x64.dll ()
BHO: greatsavErr - {CB0C26B4-AB22-53C6-8C14-4EF536239BD5} - C:\Program Files (x86)\greatsavErr\4rhB0.x64.dll ()
BHO: SNT - {E3B334F0-C0E9-F435-C8E6-736A9C456A93} - C:\Program Files (x86)\SNT\H7oJ8U5nA.x64.dll ()
BHO: YoutubeAdblocker - {F39CAA4B-0BAB-0848-6C18-F45661AA438F} - C:\Program Files (x86)\YoutubeAdblocker\_lF26PGNg.x64.dll ()
BHO: Hotspot Shield Class - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - No File
BHO: SNT - {FBB75A19-06D2-3A41-7AEF-0D33EE62360E} - C:\Program Files (x86)\SNT\bqRmxu.x64.dll ()
BHO-x32: Happye2Save - {269A65E1-3D43-A06D-89B8-1F28B355D95D} - C:\ProgramData\Happye2Save\iMv4V.dll ()
BHO-x32: GreyGray - {5cb21133-55d7-4b7a-9c69-4352006c5d37} - C:\Program Files (x86)\GreyGray\GreyGrayBHO.dll (GreyGray)
BHO-x32: GreyGray - {ae60e6ed-49dd-4099-8b5e-386a4908d5d5} - C:\Program Files (x86)\GreyGray\GreyGrayBHO.dll (GreyGray)
BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO-x32: Media Watch - {c36efb44-81fd-476e-b8a2-428f31d71a00} - C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home905\ie\MediaWatchV1home905.dll ()
Toolbar: HKLM - No Name - {32099AAC-C132-4136-9E9A-4E364A424E17} - No File
Toolbar: HKLM - No Name - !{95B7759C-8C7F-4BF1-B163-73684A933233} - No File
Toolbar: HKLM-x32 - Searchqu Toolbar - {99079a25-328f-4bd4-be04-00955acaa0a7} - No File
Toolbar: HKLM-x32 - No Name - !{95B7759C-8C7F-4BF1-B163-73684A933233} - No File
Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
Toolbar: HKCU - No Name - {EEE6C35B-6118-11DC-9C72-001320C79847} - No File
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 85.193.0.8 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\Michele\AppData\Roaming\Mozilla\Firefox\Profiles\su5sw63i.default-1389550717220
FF user.js: detected! => C:\Users\Michele\AppData\Roaming\Mozilla\Firefox\Profiles\su5sw63i.default-1389550717220\user.js
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_77.dll ()
FF Plugin: @java.com/DTPlugin,version=10.10.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @eximion.com/KalydoPlayer - C:\Users\Michele\AppData\Roaming\Kalydo\KalydoPlayer\bin2\npkalydo.dll (Eximion B.V.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Michele\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll (Ubisoft)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Battlefield Heroes Updater - C:\Users\Michele\AppData\Roaming\Mozilla\Firefox\Profiles\su5sw63i.default-1389550717220\Extensions\battlefieldheroespatcher@ea.com [2014-01-23]
FF Extension: Battlefield Play4Free - C:\Users\Michele\AppData\Roaming\Mozilla\Firefox\Profiles\su5sw63i.default-1389550717220\Extensions\battlefieldplay4free@ea.com [2014-04-04]
FF Extension: YouTube Unblocker - C:\Users\Michele\AppData\Roaming\Mozilla\Firefox\Profiles\su5sw63i.default-1389550717220\Extensions\youtubeunblocker@unblocker.yt [2014-02-09]
FF Extension: Mark Ads Sites In Search - C:\Users\Michele\AppData\Roaming\Mozilla\Firefox\Profiles\su5sw63i.default-1389550717220\Extensions\jid1-LGBwZ7tVjRcfIg@jetpack.xpi [2014-01-12]
FF Extension: YouTube High Definition - C:\Users\Michele\AppData\Roaming\Mozilla\Firefox\Profiles\su5sw63i.default-1389550717220\Extensions\{7b1bf0b6-a1b9-42b0-b75d-252036438bdc}.xpi [2014-02-09]
FF Extension: Adblock Plus - C:\Users\Michele\AppData\Roaming\Mozilla\Firefox\Profiles\su5sw63i.default-1389550717220\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-01-15]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-03-03]
FF HKLM-x32\...\Firefox\Extensions: [ext@WebexpEnhancedV1alpha5514.net] - C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha5514\ff
FF Extension: Webexp Enhanced - C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha5514\ff [2014-01-03]
FF HKLM-x32\...\Firefox\Extensions: [ext@VideoPlayerV3beta842.net] - C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta842\ff
FF Extension: Video Player - C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta842\ff [2014-01-10]
FF HKLM-x32\...\Firefox\Extensions: [ext@MediaPlayerV1alpha2.net] - C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha2\ff
FF Extension: Media Player - C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha2\ff [2014-01-30]
FF HKLM-x32\...\Firefox\Extensions: [ext@MediaViewerV1alpha21.net] - C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha21\ff
FF Extension: Media Viewer - C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha21\ff [2014-02-23]
FF HKLM-x32\...\Firefox\Extensions: [ext@MediaViewV1alpha2305.net] - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha2305\ff
FF Extension: Media View - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha2305\ff [2014-02-28]
FF HKLM-x32\...\Firefox\Extensions: [ext@MediaViewV1alpha81.net] - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha81\ff
FF Extension: Media View - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha81\ff [2014-03-15]
FF HKLM-x32\...\Firefox\Extensions: [ext@MediaWatchV1home905.net] - C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home905\ff
FF Extension: Media Watch - C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home905\ff [2014-03-23]
Chrome:
=======
CHR HomePage: https://www.google.cz/
CHR Extension: (Media Viewer) - C:\Users\Michele\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdgpfjiojofoleepldloihlojgldfand [2014-02-23]
CHR Extension: (Media Watch) - C:\Users\Michele\AppData\Local\Google\Chrome\User Data\Default\Extensions\eibjmljhlcpainepmgedlnppghmigain [2014-03-23]
CHR Extension: (AdBlock Premium) - C:\Users\Michele\AppData\Local\Google\Chrome\User Data\Default\Extensions\fndlhnanhedoklpdaacidomdnplcjcpj [2014-01-10]
CHR Extension: (YTTBoOokMeark) - C:\Users\Michele\AppData\Local\Google\Chrome\User Data\Default\Extensions\hpdjlppcghhcgipcboedhebbnapddajc [2014-01-09]
CHR Extension: (UKON00C4008CENA PODPORA: Virtu00C300A1ln00C300AD kl00C300A1vesnice (od spole00C4008Dnosti Google)) - C:\Users\Michele\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpphfcjpaldmedbbomcdhgonmhjngfig [2014-01-10]
CHR Extension: (Fix Cleaner) - C:\Users\Michele\AppData\Local\Google\Chrome\User Data\Default\Extensions\njeicbdoddkeedpdhlcjncealfhflhml [2014-01-10]
CHR Extension: (Pen011B017Eenka Google) - C:\Users\Michele\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-22]
CHR Extension: (UTubeNoAdS) - C:\Users\Michele\AppData\Local\Google\Chrome\User Data\Default\Extensions\obikpplhmpmfnmndmbegcmcnfpcnnhbn [2014-01-31]
CHR Extension: (Battlefield Play4Free) - C:\Users\Michele\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiokahphinmbmakkehgelkmpolmnbkdh [2014-01-11]
CHR Extension: (Media View) - C:\Users\Michele\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcakkpdafbmmjmicdmmjpfcbdcjfhegb [2014-03-15]
CHR HKLM-x32\...\Chrome\Extension: [cdgpfjiojofoleepldloihlojgldfand] - C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha21\ch\MediaViewerV1alpha21.crx [2014-02-23]
CHR HKLM-x32\...\Chrome\Extension: [ceiapeodjfjcbfkfkfbdpgbhbgiidjdb] - C:\Program Files (x86)\GreyGray\ceiapeodjfjcbfkfkfbdpgbhbgiidjdb.crx [2014-02-28]
CHR HKLM-x32\...\Chrome\Extension: [dklmmacmhbidolfcijdhknacmdimgfah] - C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta842\ch\VideoPlayerV3beta842.crx [2014-01-08]
CHR HKLM-x32\...\Chrome\Extension: [eibjmljhlcpainepmgedlnppghmigain] - C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home905\ch\MediaWatchV1home905.crx [2014-03-20]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-03-03]
CHR HKLM-x32\...\Chrome\Extension: [nkcakejdghnaocjokiohjbglgngidgbg] - C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha5514\ch\WebexpEnhancedV1alpha5514.crx [2013-12-20]
CHR HKLM-x32\...\Chrome\Extension: [omhceofeplgolgifooncnecciillkofc] - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha2305\ch\MediaViewV1alpha2305.crx [2014-02-26]
CHR HKLM-x32\...\Chrome\Extension: [pcakkpdafbmmjmicdmmjpfcbdcjfhegb] - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha81\ch\MediaViewV1alpha81.crx [2014-02-26]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Services (Whitelisted) =================
R2 699fd52f; C:\ProgramData\Assistant\AssistantSvc.dll [177488 2014-04-02] ()
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe [918144 2010-11-03] ()
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.13\aaHMSvc.exe [915584 2010-12-02] ()
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe [586880 2010-10-21] ()
S2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [393032 2013-09-19] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [384840 2013-09-19] (BlueStack Systems, Inc.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1363584 2014-03-03] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1748608 2014-03-03] (Microsoft Corporation)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23816 2013-07-18] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [366600 2013-07-18] (Microsoft Corporation)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-11-02] ()
R2 PoSrv1; C:\Program Files (x86)\ePlayWorks\AVStreamer\PoSrv.exe [148224 2013-02-07] (ePlayWorks, Inc.)
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2103096 2013-12-18] (TuneUp Software)
R2 Update GreyGray; C:\Program Files (x86)\GreyGray\updateGreyGray.exe [350488 2014-04-04] ()
R2 Util GreyGray; C:\Program Files (x86)\GreyGray\bin\utilGreyGray.exe [350488 2014-04-04] ()
==================== Drivers (Whitelisted) ====================
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2010-08-24] ()
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] ()
S3 BlueletAudio; No ImagePath
S3 BlueletSCOAudio; No ImagePath
R0 BootDefragDriver; C:\Windows\System32\drivers\BootDefragDriver.sys [17088 2013-12-23] (Glarysoft Ltd)
R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [70984 2013-09-19] (BlueStack Systems)
S3 BT; No ImagePath
S3 Btcsrusb; No ImagePath
S0 BTHidEnum; No ImagePath
S0 BTHidMgr; No ImagePath
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [270912 2012-02-15] (DT Soft Ltd)
S3 FsUsbExDisk; C:\Windows\SysWOW64\FsUsbExDisk.SYS [37344 2014-01-23] ()
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [247216 2013-06-18] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [139616 2013-06-18] (Microsoft Corporation)
S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-02-12] (Anchorfree Inc.)
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-08-21] (TuneUp Software)
S3 VComm; No ImagePath
S3 VcommMgr; No ImagePath
S3 WinRing0_1_2_0; No ImagePath
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-04-07 11:43 - 2014-04-07 11:43 - 00027888 _____ () C:\Users\Michele\Desktop\FRST.txt
2014-04-07 11:43 - 2014-04-07 11:43 - 00000000 ____D () C:\FRST
2014-04-07 11:42 - 2014-04-07 11:42 - 00112640 _____ (forum.viry.cz) C:\Users\Michele\Desktop\FRSTLauncher.exe
2014-04-07 11:41 - 2014-04-07 11:41 - 02157056 _____ (Farbar) C:\Users\Michele\Desktop\FRST64.exe
2014-04-07 11:39 - 2014-04-07 11:39 - 00832273 _____ () C:\Users\Michele\Desktop\RSITx64.exe
2014-04-07 11:39 - 2014-04-07 11:39 - 00000000 ____D () C:\rsit
2014-04-07 11:39 - 2014-04-07 11:39 - 00000000 ____D () C:\Program Files\trend micro
2014-04-06 18:01 - 2014-04-06 18:01 - 00000000 ____D () C:\Users\Michele\AppData\Local\Macromedia
2014-04-06 17:37 - 2014-04-06 17:37 - 00000000 ____D () C:\Download
2014-04-06 17:30 - 2014-04-06 17:30 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\ATI
2014-04-06 17:29 - 2014-04-06 17:29 - 00003524 _____ () C:\Windows\PFRO.log
2014-04-06 17:29 - 2014-04-06 17:29 - 00000000 ____D () C:\Users\Michele\AppData\Local\uTorrent
2014-04-06 17:18 - 2014-04-07 09:08 - 00000280 _____ () C:\Windows\setupact.log
2014-04-06 17:18 - 2014-04-06 17:18 - 00000000 _____ () C:\Windows\setuperr.log
2014-04-06 17:17 - 2013-12-18 11:01 - 00043320 _____ (TuneUp Software) C:\Windows\system32\uxtuneup.dll
2014-04-06 17:17 - 2013-12-18 11:01 - 00036152 _____ (TuneUp Software) C:\Windows\SysWOW64\uxtuneup.dll
2014-04-06 17:16 - 2014-04-06 17:16 - 00002220 _____ () C:\Users\Public\Desktop\TuneUp 1-Click Maintenance.lnk
2014-04-06 17:16 - 2014-04-06 17:16 - 00002194 _____ () C:\Users\Public\Desktop\TuneUp Utilities 2014.lnk
2014-04-06 17:16 - 2013-12-18 11:01 - 00040760 _____ (TuneUp Software) C:\Windows\system32\TURegOpt.exe
2014-04-06 17:16 - 2013-12-18 11:01 - 00029496 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll
2014-04-06 17:16 - 2013-12-18 11:01 - 00025400 _____ (TuneUp Software) C:\Windows\SysWOW64\authuitu.dll
2014-04-06 17:15 - 2014-04-06 17:17 - 00000000 ____D () C:\Program Files (x86)\TuneUp Utilities 2014
2014-04-06 17:13 - 2014-04-06 17:23 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2014-04-05 19:38 - 2014-04-05 19:38 - 00890430 _____ (PDAwin) C:\Users\Michele\Downloads\TVremote57.exe
2014-04-01 07:07 - 2014-04-01 07:07 - 00003140 _____ () C:\Windows\System32\Tasks\YourFile DownloaderUpdate
2014-04-01 07:07 - 2014-04-01 07:07 - 00000000 ____D () C:\Program Files (x86)\YourFileDownloader Updater
2014-03-31 18:31 - 2014-03-31 18:31 - 00000000 ____D () C:\Users\Michele\Desktop\Rakim - The Archive Live Lost And Found (2008)
2014-03-29 19:50 - 2014-01-23 05:21 - 00206080 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudmdm.sys
2014-03-29 19:50 - 2014-01-23 05:21 - 00108800 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudbus.sys
2014-03-29 15:44 - 2014-03-29 15:45 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\DownloadManager
2014-03-29 15:13 - 2014-03-29 15:46 - 00000000 ____D () C:\Users\Michele\AppData\Local\SOTI
2014-03-29 01:16 - 2014-04-03 18:41 - 00000000 ____D () C:\Users\Michele\Desktop\nože
2014-03-24 18:13 - 2014-03-24 18:13 - 00017232 ____H () C:\Users\Michele\Desktop\Asterix.E.I.Vichinghi.iTALiAN.DVDRip.XviD-A-TeaM.O.R.AVI.mta
2014-03-24 18:13 - 2014-03-24 18:13 - 00014637 ____H () C:\Users\Michele\Desktop\ruac3.AVI.mta
2014-03-23 21:19 - 2014-04-02 15:25 - 00000000 ____D () C:\ProgramData\Assistant
2014-03-23 00:18 - 2014-03-23 00:18 - 00000000 ____D () C:\Program Files (x86)\MediaWatchV1
2014-03-09 15:52 - 2014-03-09 15:52 - 00002036 _____ () C:\Users\Public\Desktop\Samsung AllShare.lnk
2014-03-09 15:52 - 2014-03-09 15:52 - 00000000 ____D () C:\AllShare
==================== One Month Modified Files and Folders =======
2014-04-07 11:43 - 2014-04-07 11:43 - 00027888 _____ () C:\Users\Michele\Desktop\FRST.txt
2014-04-07 11:43 - 2014-04-07 11:43 - 00000000 ____D () C:\FRST
2014-04-07 11:42 - 2014-04-07 11:42 - 00112640 _____ (forum.viry.cz) C:\Users\Michele\Desktop\FRSTLauncher.exe
2014-04-07 11:42 - 2011-09-15 20:45 - 00000000 ___RD () C:\Users\Michele\Desktop\Stahovani
2014-04-07 11:41 - 2014-04-07 11:41 - 02157056 _____ (Farbar) C:\Users\Michele\Desktop\FRST64.exe
2014-04-07 11:39 - 2014-04-07 11:39 - 00832273 _____ () C:\Users\Michele\Desktop\RSITx64.exe
2014-04-07 11:39 - 2014-04-07 11:39 - 00000000 ____D () C:\rsit
2014-04-07 11:39 - 2014-04-07 11:39 - 00000000 ____D () C:\Program Files\trend micro
2014-04-07 10:56 - 2011-09-15 22:42 - 00000954 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-04-07 10:51 - 2012-09-08 14:26 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-04-07 09:16 - 2009-07-14 06:45 - 00019712 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-04-07 09:16 - 2009-07-14 06:45 - 00019712 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-04-07 09:13 - 2013-12-18 16:38 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\Seznam.cz
2014-04-07 09:13 - 2011-09-16 00:40 - 02046439 _____ () C:\Windows\WindowsUpdate.log
2014-04-07 09:10 - 2013-12-18 16:39 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\newnext.me
2014-04-07 09:09 - 2013-12-29 23:52 - 00000332 _____ () C:\Windows\Tasks\GlaryInitialize 4.job
2014-04-07 09:09 - 2013-12-29 23:52 - 00000000 ____D () C:\Program Files (x86)\Glary Utilities 4
2014-04-07 09:08 - 2014-04-06 17:18 - 00000280 _____ () C:\Windows\setupact.log
2014-04-07 09:08 - 2014-01-09 21:46 - 00000464 ____H () C:\Windows\Tasks\GS.Enabler-S-926685765.job
2014-04-07 09:08 - 2013-12-18 16:37 - 00000364 _____ () C:\Windows\Tasks\AmiUpdXp.job
2014-04-07 09:08 - 2011-09-15 22:42 - 00000950 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-04-07 09:08 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-04-06 20:53 - 2011-09-15 21:50 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\Skype
2014-04-06 19:30 - 2009-07-14 17:18 - 03130370 _____ () C:\Windows\system32\perfh005.dat
2014-04-06 19:30 - 2009-07-14 17:18 - 00976700 _____ () C:\Windows\system32\perfc005.dat
2014-04-06 19:30 - 2009-07-14 07:13 - 00006216 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-04-06 18:01 - 2014-04-06 18:01 - 00000000 ____D () C:\Users\Michele\AppData\Local\Macromedia
2014-04-06 18:00 - 2011-09-20 23:48 - 01032256 _____ () C:\Windows\PE_Rom.dll
2014-04-06 17:44 - 2009-07-14 07:08 - 00032548 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-04-06 17:37 - 2014-04-06 17:37 - 00000000 ____D () C:\Download
2014-04-06 17:37 - 2011-09-23 01:43 - 00000000 ____D () C:\ProgramData\Nero
2014-04-06 17:35 - 2011-09-16 00:18 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\uTorrent
2014-04-06 17:30 - 2014-04-06 17:30 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\ATI
2014-04-06 17:29 - 2014-04-06 17:29 - 00003524 _____ () C:\Windows\PFRO.log
2014-04-06 17:29 - 2014-04-06 17:29 - 00000000 ____D () C:\Users\Michele\AppData\Local\uTorrent
2014-04-06 17:29 - 2011-09-15 22:42 - 00000000 ____D () C:\Program Files (x86)\Google
2014-04-06 17:24 - 2012-05-07 19:47 - 00003694 _____ () C:\Windows\System32\Tasks\Adobe online update program
2014-04-06 17:24 - 2011-09-22 02:02 - 00003704 _____ () C:\Windows\System32\Tasks\Java Update Scheduler
2014-04-06 17:23 - 2014-04-06 17:13 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2014-04-06 17:23 - 2013-08-12 20:30 - 00000000 __SHD () C:\ProgramData\{D1D4879F-2279-49C9-AEBF-3B95C84EAA8F}
2014-04-06 17:23 - 2012-10-10 10:03 - 00000000 __SHD () C:\ProgramData\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
2014-04-06 17:23 - 2012-09-01 18:24 - 00000000 __SHD () C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936}
2014-04-06 17:23 - 2011-09-22 01:35 - 00000000 __SHD () C:\ProgramData\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
2014-04-06 17:23 - 2011-09-17 01:59 - 00000000 ____D () C:\Users\Michele\AppData\Local\Downloaded Installations
2014-04-06 17:18 - 2014-04-06 17:18 - 00000000 _____ () C:\Windows\setuperr.log
2014-04-06 17:18 - 2011-09-22 01:35 - 00000000 ____D () C:\ProgramData\TuneUp Software
2014-04-06 17:17 - 2014-04-06 17:15 - 00000000 ____D () C:\Program Files (x86)\TuneUp Utilities 2014
2014-04-06 17:17 - 2011-09-16 01:38 - 00003986 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{DD2C6B39-18CA-49A3-85ED-0DDFCC04CB3D}
2014-04-06 17:16 - 2014-04-06 17:16 - 00002220 _____ () C:\Users\Public\Desktop\TuneUp 1-Click Maintenance.lnk
2014-04-06 17:16 - 2014-04-06 17:16 - 00002194 _____ () C:\Users\Public\Desktop\TuneUp Utilities 2014.lnk
2014-04-06 17:16 - 2011-09-22 01:35 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\TuneUp Software
2014-04-06 17:16 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\Windows Sidebar
2014-04-06 17:11 - 2011-09-15 22:42 - 00000000 ____D () C:\Users\Michele\AppData\Local\Google
2014-04-06 17:09 - 2011-09-15 20:21 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\Mozilla
2014-04-06 17:08 - 2013-12-18 16:39 - 00000000 ____D () C:\Users\Michele\AppData\Local\Mobogenie
2014-04-06 17:08 - 2013-10-08 16:21 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\PDF Software
2014-04-06 17:08 - 2013-09-20 15:33 - 00000000 ____D () C:\Users\Michele\AppData\Local\Urban Trial Freestyle
2014-04-06 17:08 - 2013-06-25 18:37 - 00000000 ____D () C:\ADCDA2
2014-04-06 17:08 - 2013-03-12 20:42 - 00000000 ____D () C:\Users\Michele\AppData\Local\JustRemotePhone
2014-04-06 17:08 - 2013-01-17 22:00 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\FreeCDRipper
2014-04-06 17:08 - 2012-11-14 02:43 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\wargaming.net
2014-04-06 17:08 - 2012-11-11 00:36 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\ArcSoft
2014-04-06 17:08 - 2012-11-06 20:15 - 00000000 ____D () C:\ProgramData\Origin
2014-04-06 17:08 - 2012-09-14 21:21 - 00000000 ____D () C:\Users\Michele\Documents\The KMPlayer
2014-04-06 17:08 - 2012-07-14 21:14 - 00000000 ____D () C:\ProgramData\Electronic Arts
2014-04-06 17:08 - 2012-07-01 00:45 - 00000000 ____D () C:\Users\Michele\AppData\Local\Facebook
2014-04-06 17:08 - 2012-06-04 00:13 - 00000000 ____D () C:\Users\Michele\Documents\Bluetooth
2014-04-06 17:08 - 2012-04-29 21:58 - 00000000 ____D () C:\Users\Michele\AppData\Local\PMB Files
2014-04-06 17:08 - 2012-02-15 17:43 - 00000000 ____D () C:\Users\Michele\AppData\Local\SKIDROW
2014-04-06 17:08 - 2012-01-07 01:02 - 00000000 ____D () C:\Program Files (x86)\The KMPlayer
2014-04-06 17:08 - 2011-10-21 19:54 - 00000000 ____D () C:\Program Files (x86)\DivX
2014-04-06 17:08 - 2011-10-18 18:05 - 00000000 ____D () C:\ProgramData\InstallMate
2014-04-06 17:08 - 2011-09-17 02:00 - 00000000 ____D () C:\Users\Michele\AppData\Local\Sony
2014-04-06 17:08 - 2011-09-15 20:12 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\Adobe
2014-04-06 17:08 - 2011-09-15 20:12 - 00000000 ____D () C:\ProgramData\Adobe
2014-04-06 17:08 - 2011-09-15 06:37 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-04-06 17:08 - 2011-09-15 06:15 - 00000000 ____D () C:\Users\Michele
2014-04-06 17:08 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default
2014-04-05 19:38 - 2014-04-05 19:38 - 00890430 _____ (PDAwin) C:\Users\Michele\Downloads\TVremote57.exe
2014-04-03 18:41 - 2014-03-29 01:16 - 00000000 ____D () C:\Users\Michele\Desktop\nože
2014-04-02 15:25 - 2014-03-23 21:19 - 00000000 ____D () C:\ProgramData\Assistant
2014-04-01 17:41 - 2013-12-14 19:26 - 00352768 ___SH () C:\Users\Michele\Desktop\Thumbs.db
2014-04-01 07:07 - 2014-04-01 07:07 - 00003140 _____ () C:\Windows\System32\Tasks\YourFile DownloaderUpdate
2014-04-01 07:07 - 2014-04-01 07:07 - 00000000 ____D () C:\Program Files (x86)\YourFileDownloader Updater
2014-03-31 18:31 - 2014-03-31 18:31 - 00000000 ____D () C:\Users\Michele\Desktop\Rakim - The Archive Live Lost And Found (2008)
2014-03-29 20:22 - 2013-01-20 18:59 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\Samsung
2014-03-29 20:22 - 2013-01-20 18:59 - 00000000 ____D () C:\ProgramData\Samsung
2014-03-29 15:46 - 2014-03-29 15:13 - 00000000 ____D () C:\Users\Michele\AppData\Local\SOTI
2014-03-29 15:45 - 2014-03-29 15:44 - 00000000 ____D () C:\Users\Michele\AppData\Roaming\DownloadManager
2014-03-29 15:38 - 2014-01-12 02:13 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-03-29 15:38 - 2013-07-07 00:55 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-03-24 18:13 - 2014-03-24 18:13 - 00017232 ____H () C:\Users\Michele\Desktop\Asterix.E.I.Vichinghi.iTALiAN.DVDRip.XviD-A-TeaM.O.R.AVI.mta
2014-03-24 18:13 - 2014-03-24 18:13 - 00014637 ____H () C:\Users\Michele\Desktop\ruac3.AVI.mta
2014-03-23 00:18 - 2014-03-23 00:18 - 00000000 ____D () C:\Program Files (x86)\MediaWatchV1
2014-03-23 00:18 - 2014-01-30 14:30 - 00000270 __RSH () C:\ProgramData\ntuser.pol
2014-03-15 19:18 - 2014-02-28 11:16 - 00000000 ____D () C:\Program Files (x86)\MediaViewV1
2014-03-15 15:51 - 2011-09-15 21:50 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-03-12 16:51 - 2012-09-08 14:26 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-03-12 16:51 - 2012-09-08 14:26 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-03-12 16:51 - 2011-09-15 22:42 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-03-09 15:52 - 2014-03-09 15:52 - 00002036 _____ () C:\Users\Public\Desktop\Samsung AllShare.lnk
2014-03-09 15:52 - 2014-03-09 15:52 - 00000000 ____D () C:\AllShare
2014-03-09 15:51 - 2013-01-20 18:59 - 00000000 ____D () C:\Program Files (x86)\Samsung
Some content of TEMP:
====================
C:\Users\Michele\AppData\Local\Temp\~63.exe
C:\Users\Michele\AppData\Local\Temp\~80B8.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-04-06 13:02
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (Nový svazek) (Fixed) (Total:149.05 GB) (Free:44.14 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive e: () (Fixed) (Total:233.76 GB) (Free:51.14 GB) NTFS
Available physical RAM: 13438.12 MB
Total physical RAM: 16360.97 MB
Percentage of memory in use: 17%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 234 GB) (Disk ID: EDC3EDC3)
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 149 GB) (Disk ID: E07FE07F)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\AmiUpdXp.job => C:\Users\Michele\AppData\Local\SwvUpdater\Updater.exe <==== ATTENTION
Task: C:\Windows\Tasks\GlaryInitialize 4.job => C:\Program Files (x86)\Glary Utilities 4\Initialize.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GS.Enabler-S-926685765.job => c:\programdata\softwarehouse\gs.enabler\GS.Enabler.exe <==== ATTENTION
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Michele\Desktop" je 13973 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================