Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

zpomalený a zasekavájící se NB

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Ljuk
Návštěvník
Návštěvník
Příspěvky: 28
Registrován: 25 led 2011 09:51

zpomalený a zasekavájící se NB

#1 Příspěvek od Ljuk »

Dobrý den, prosím o kontrolu logu sestřina NB, má s ním problémy uvedeny v názvu tématu.
Předem děkuji za pomoc.




Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-05-2014
Ran by IVETA (administrator) on IVETA-PC on 05-05-2014 10:40:07
Running from C:\Users\IVETA\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
(Nero AG) C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Updater\UpdaterService.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
(Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(DT Soft Ltd) C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe
(Nero AG) C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
(Nero AG) C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastUI.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe
() C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe
(InterVideo) C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(forum.viry.cz) C:\Users\IVETA\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2723624 2011-03-28] (Synaptics Incorporated)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11855976 2011-05-17] (Realtek Semiconductor)
HKLM\...\Run: [IntelPAN] => C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1935120 2011-05-02] (Intel(R) Corporation)
HKLM\...\Run: [Power Management] => C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [1796200 2011-02-23] (Acer Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [472984 2013-09-25] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [BackupManagerTray] => C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe [297280 2011-04-24] (NTI Corporation)
HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1097808 2011-04-19] (Dritek System Inc.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2237328 2013-10-17] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [mobilegeni daemon] => C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\Alwil Software\Avast5\AvastUI.exe [3873704 2014-05-05] (AVAST Software)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3770649268-3110969754-3567135487-1000\...\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] => C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [147456 2007-01-15] (Nero AG)
HKU\S-1-5-21-3770649268-3110969754-3567135487-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [4910912 2011-08-02] (DT Soft Ltd)
HKU\S-1-5-21-3770649268-3110969754-3567135487-1000\...\MountPoints2: E - E:\LGAutoRun.exe
HKU\S-1-5-21-3770649268-3110969754-3567135487-1000\...\MountPoints2: {063600c5-d336-11e0-be00-806e6f6e6963} - E:\Autorun.exe
HKU\S-1-5-21-3770649268-3110969754-3567135487-1000\...\MountPoints2: {0636012c-d336-11e0-be00-e06995f22b0b} - E:\Autorun.exe
HKU\S-1-5-21-3770649268-3110969754-3567135487-1000\...\MountPoints2: {0636015c-d336-11e0-be00-e06995f22b0b} - E:\Autorun.exe
HKU\S-1-5-21-3770649268-3110969754-3567135487-1000\...\MountPoints2: {06360175-d336-11e0-be00-e06995f22b0b} - E:\Autorun.exe
HKU\S-1-5-21-3770649268-3110969754-3567135487-1000\...\MountPoints2: {44cbacad-b41e-11e3-9d8a-e06995f22b0b} - E:\LGAutoRun.exe
HKU\S-1-5-21-3770649268-3110969754-3567135487-1000\...\MountPoints2: {b37c16a5-da44-11e0-bd7f-e06995f22b0b} - E:\Autorun.exe
HKU\S-1-5-21-3770649268-3110969754-3567135487-1000\...\MountPoints2: {dc18a890-e6a3-11e0-96c1-e06995f22b0b} - F:\Autorun.exe
HKU\S-1-5-21-3770649268-3110969754-3567135487-1000\...\MountPoints2: {ed01c64b-2764-11e3-8b24-e06995f22b0b} - E:\LGAutoRun.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Acer VCM.lnk
ShortcutTarget: Acer VCM.lnk -> C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe (Acer Incorporated)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk
ShortcutTarget: Adobe Gamma Loader.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer.msn.com
SearchScopes: HKLM-x32 - DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.as ... =CT2269050
SearchScopes: HKLM-x32 - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.as ... =CT2269050
SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.as ... =CT2269050
BHO: McAfee Phishing Filter - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\PROGRA~1\mcafee\msk\MSKAPB~1.DLL No File
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: McAfee Phishing Filter - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\PROGRA~1\mcafee\msk\mskapbho.dll No File
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: No Name - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - No File
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Acer\Acer VCM\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 62.129.50.20 85.135.32.100

FireFox:
========
FF ProfilePath: C:\Users\IVETA\AppData\Roaming\Mozilla\Firefox\Profiles\94wmyaoy.default
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_206.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_206.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Send to Kindle for Mozilla Firefox - C:\Users\IVETA\AppData\Roaming\Mozilla\Firefox\Profiles\94wmyaoy.default\Extensions\sendtokindle@amazon.com.xpi [2013-10-15]
FF Extension: Adblock Plus - C:\Users\IVETA\AppData\Roaming\Mozilla\Firefox\Profiles\94wmyaoy.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2012-09-28]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\Alwil Software\Avast5\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\Alwil Software\Avast5\WebRep\FF [2012-06-01]

Chrome:
=======
CHR HomePage: hxxp://www.seznam.cz/
CHR RestoreOnStartup: "hxxp://seznam.cz/"
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\24.0.1312.57\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\24.0.1312.57\pdf.dll No File
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\24.0.1312.57\gcswf32.dll No File
CHR Plugin: (McAfee SiteAdvisor) - C:\Users\IVETA\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.41.123.2_0\McChPlg.dll No File
CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll No File
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File
CHR Plugin: (Windows Live™ Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll No File
CHR Plugin: (McAfee SecurityCenter) - c:\progra~2\mcafee\msc\npmcsn~1.dll No File
CHR Extension: (TICKE-TACK) - C:\Users\IVETA\AppData\Local\Google\Chrome\User Data\Default\Extensions\ageeicfbnfnehjibkceflgccgpjmalbm [2012-09-28]
CHR Extension: (YouTube) - C:\Users\IVETA\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-06-01]
CHR Extension: (Vyhledávání Google) - C:\Users\IVETA\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-06-02]
CHR Extension: (Dictionary Instant) - C:\Users\IVETA\AppData\Local\Google\Chrome\User Data\Default\Extensions\hngaklbjlbjhmoilkegninbmpfigheol [2012-09-28]
CHR Extension: (avast! WebRep) - C:\Users\IVETA\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda [2012-06-14]
CHR Extension: (Patrick Star - Bug Fixed Version) - C:\Users\IVETA\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngifmmghggmgbhdohdfjpaklhflocdad [2012-09-28]
CHR Extension: (DVDVideoSoft Browser Extension) - C:\Users\IVETA\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp [2013-01-23]
CHR Extension: (Gmail) - C:\Users\IVETA\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-06-01]

==================== Services (Whitelisted) =================

R2 avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [50344 2014-05-05] (AVAST Software)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-05-02] ()
R3 NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [266240 2007-01-15] (Nero AG)
R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [256832 2011-04-24] (NTI Corporation)
R2 RS_Service; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [260640 2010-01-30] (Acer Incorporated)
U4 avast! Firewall; "C:\Program Files\Alwil Software\Avast5\afwServ.exe" [X]

==================== Drivers (Whitelisted) ====================

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-05-05] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-05-05] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-05-05] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-05-05] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1039096 2014-05-05] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [423240 2014-05-05] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [85328 2014-05-05] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [208416 2014-05-05] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [270912 2011-09-24] (DT Soft Ltd)
U5 ewusbnet; C:\Windows\System32\Drivers\ewusbnet.sys [243200 2009-10-21] (Huawei Technologies Co., Ltd.)
S3 hwusbdev; C:\Windows\System32\DRIVERS\ewusbdev.sys [114304 2009-10-12] (Huawei Technologies Co., Ltd.)
S0 sptd; C:\Windows\System32\Drivers\sptd.sys [868848 2011-09-24] (Duplex Secure Ltd.)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-05-05 10:40 - 2014-05-05 10:40 - 00018279 _____ () C:\Users\IVETA\Desktop\FRST.txt
2014-05-05 10:39 - 2014-05-05 10:40 - 00000000 ____D () C:\FRST
2014-05-05 10:38 - 2014-05-05 10:38 - 00112640 _____ (forum.viry.cz) C:\Users\IVETA\Desktop\FRSTLauncher.exe
2014-05-05 10:34 - 2014-05-05 10:34 - 02062336 _____ (Farbar) C:\Users\IVETA\Desktop\FRST64.exe
2014-05-05 10:24 - 2014-05-05 10:24 - 00000000 ____D () C:\Users\IVETA\AppData\Roaming\AVAST Software
2014-05-05 10:23 - 2014-05-05 10:23 - 00000056 _____ () C:\Windows\setupact.log
2014-05-05 10:23 - 2014-05-05 10:23 - 00000000 _____ () C:\Windows\setuperr.log
2014-05-05 10:22 - 2014-05-05 10:23 - 00166480 _____ () C:\Windows\PFRO.log
2014-05-05 10:22 - 2014-05-05 10:22 - 00001981 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-05-05 10:21 - 2014-05-05 10:21 - 00085328 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2014-05-05 10:21 - 2014-05-05 10:21 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-05-05 10:21 - 2014-05-05 10:21 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-05-05 10:18 - 2014-05-05 10:22 - 00004184 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-05-05 10:18 - 2014-05-05 10:21 - 00208416 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-05-05 10:18 - 2014-05-05 10:21 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-05-05 10:16 - 2014-04-14 20:05 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-05-05 10:15 - 2014-05-05 10:15 - 00004100 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_55-b14.log
2014-05-05 10:15 - 2014-05-05 10:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-05-05 10:15 - 2014-04-14 20:13 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-05-05 10:15 - 2014-04-14 20:05 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-05-05 10:15 - 2014-04-14 20:04 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-05-05 10:11 - 2014-05-05 10:11 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-05-05 10:10 - 2014-05-05 10:10 - 04745984 _____ (Piriform Ltd) C:\Users\IVETA\Downloads\ccsetup413.exe
2014-05-04 22:02 - 2014-03-06 10:57 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-05-04 22:02 - 2014-03-06 10:32 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-05-04 22:02 - 2014-03-06 10:02 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-05-04 22:02 - 2014-03-06 09:40 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-05-04 22:01 - 2014-03-06 12:21 - 23549440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-05-04 22:01 - 2014-03-06 11:32 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-05-04 22:01 - 2014-03-06 11:31 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-05-04 22:01 - 2014-03-06 11:19 - 17387008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-05-04 22:01 - 2014-03-06 10:59 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-05-04 22:01 - 2014-03-06 10:57 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-05-04 22:01 - 2014-03-06 10:53 - 02767360 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-05-04 22:01 - 2014-03-06 10:40 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-05-04 22:01 - 2014-03-06 10:39 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-05-04 22:01 - 2014-03-06 10:32 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-05-04 22:01 - 2014-03-06 10:29 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-05-04 22:01 - 2014-03-06 10:29 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-05-04 22:01 - 2014-03-06 10:28 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-05-04 22:01 - 2014-03-06 10:15 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-05-04 22:01 - 2014-03-06 10:11 - 05784064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-05-04 22:01 - 2014-03-06 10:09 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-05-04 22:01 - 2014-03-06 10:03 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-05-04 22:01 - 2014-03-06 10:02 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-05-04 22:01 - 2014-03-06 10:01 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-05-04 22:01 - 2014-03-06 09:56 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-05-04 22:01 - 2014-03-06 09:48 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-05-04 22:01 - 2014-03-06 09:47 - 02178048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-05-04 22:01 - 2014-03-06 09:46 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-05-04 22:01 - 2014-03-06 09:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-05-04 22:01 - 2014-03-06 09:45 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-05-04 22:01 - 2014-03-06 09:42 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-05-04 22:01 - 2014-03-06 09:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-05-04 22:01 - 2014-03-06 09:36 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-05-04 22:01 - 2014-03-06 09:22 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-05-04 22:01 - 2014-03-06 09:21 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-05-04 22:01 - 2014-03-06 09:13 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-05-04 22:01 - 2014-03-06 09:11 - 02043904 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-05-04 22:01 - 2014-03-06 09:07 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-05-04 22:01 - 2014-03-06 09:01 - 00244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-05-04 22:01 - 2014-03-06 08:53 - 13551104 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-05-04 22:01 - 2014-03-06 08:46 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-05-04 22:01 - 2014-03-06 08:40 - 01967104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-05-04 22:01 - 2014-03-06 08:36 - 11745792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-05-04 22:01 - 2014-03-06 08:22 - 02260480 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-05-04 22:01 - 2014-03-06 07:58 - 01400832 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-05-04 22:01 - 2014-03-06 07:50 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-05-04 22:01 - 2014-03-06 07:43 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-05-04 22:01 - 2014-03-06 07:41 - 01789440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-05-04 22:01 - 2014-03-06 07:36 - 01143808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-05-04 14:28 - 2014-05-04 14:43 - 236946192 _____ () C:\Users\IVETA\Downloads\Girls_S02_E07_CZ.avi
2014-05-04 14:07 - 2014-05-04 14:21 - 192462907 _____ () C:\Users\IVETA\Downloads\Girls_S02_E06_CZ.avi
2014-05-03 11:35 - 2014-05-03 11:48 - 238228898 _____ () C:\Users\IVETA\Downloads\Girls_S02_E05_CZ.avi
2014-05-03 11:15 - 2014-05-03 11:28 - 241462964 _____ () C:\Users\IVETA\Downloads\Girls_S02_E04_CZ.avi
2014-05-03 10:50 - 2014-05-03 11:04 - 243655932 _____ () C:\Users\IVETA\Downloads\Girls_S02_E03_CZ.avi
2014-05-02 20:01 - 2014-05-02 20:16 - 233787190 _____ () C:\Users\IVETA\Downloads\Girls_S02_E02_CZ.avi
2014-04-22 19:23 - 2014-04-22 19:23 - 02937344 _____ () C:\Users\IVETA\Downloads\seminar k ZP - 3.hodina-upravena.ppt
2014-04-22 19:21 - 2014-04-22 19:21 - 00185856 _____ () C:\Users\IVETA\Downloads\2013_2014-szz-prezentace.ppt
2014-04-17 17:06 - 2014-04-17 17:06 - 00000000 ____D () C:\Users\IVETA\AppData\Roaming\Windows Live Writer
2014-04-17 17:06 - 2014-04-17 17:06 - 00000000 ____D () C:\Users\IVETA\AppData\Local\Windows Live Writer
2014-04-17 17:06 - 2014-04-17 17:06 - 00000000 ____D () C:\Users\IVETA\AppData\Local\{65B834DD-03C7-4886-AFF1-ED7EC472A049}
2014-04-16 23:57 - 2014-04-16 23:57 - 06777892 _____ () C:\Users\IVETA\Downloads\Stankowski--Resocializační-pedagogika.rar
2014-04-14 17:25 - 2014-04-14 17:25 - 00807424 _____ () C:\Users\IVETA\Downloads\seminar+k+ZP+_+1.hodina-upravena.ppt
2014-04-14 11:17 - 2014-04-14 11:18 - 00000000 ____D () C:\Users\IVETA\Downloads\Nová složka (3)
2014-04-13 00:25 - 2014-04-13 14:07 - 00136936 _____ () C:\Users\IVETA\Downloads\kodovani.xlsm
2014-04-10 14:50 - 2014-04-20 18:32 - 00000000 ____D () C:\Users\IVETA\Downloads\eto
2014-04-10 14:43 - 2014-04-10 14:43 - 00001049 _____ () C:\Users\IVETA\Desktop\Dokumenty – zástupce (2).lnk
2014-04-10 09:58 - 2014-04-10 09:58 - 00044274 _____ () C:\Users\IVETA\Downloads\Jak psát bakalářskou práci Odevzdejto.cz - seminární, bakalářská a diplomová práce.htm
2014-04-10 09:58 - 2014-04-10 09:58 - 00000000 ____D () C:\Users\IVETA\Downloads\Jak psát bakalářskou práci Odevzdejto.cz - seminární, bakalářská a diplomová práce_soubory
2014-04-10 09:55 - 2014-04-10 09:55 - 00025114 _____ () C:\Users\IVETA\Downloads\Bakalářská práce je obsahově koherentní a ucelenou odbornou písemnou prácí.htm
2014-04-10 09:55 - 2014-04-10 09:55 - 00004668 _____ () C:\Users\IVETA\Downloads\Definice hypotézy.htm
2014-04-10 09:54 - 2014-04-10 09:54 - 00026209 _____ () C:\Users\IVETA\Downloads\Nápověda „Výzkumná“ otázka – Enviwiki.htm
2014-04-10 09:23 - 2014-04-18 18:17 - 00317440 _____ () C:\Users\IVETA\Downloads\fenomen-bezdomovectvi-v-ostr(1).xls
2014-04-10 09:23 - 2014-04-13 00:25 - 00136917 _____ () C:\Users\IVETA\Downloads\fenomen-bezdomovectvi-v-ostr(1).xlsx
2014-04-10 09:23 - 2014-04-10 09:23 - 00575107 _____ () C:\Users\IVETA\Downloads\grafy_39260.zip
2014-04-10 09:22 - 2014-04-10 09:22 - 00278528 _____ () C:\Users\IVETA\Downloads\fenomen-bezdomovectvi-v-ostr.xls
2014-04-10 09:22 - 2014-04-10 09:22 - 00076444 _____ () C:\Users\IVETA\Downloads\fenomen-bezdomovectvi-v-ostr.csv
2014-04-10 09:22 - 2014-04-10 09:22 - 00072659 _____ () C:\Users\IVETA\Downloads\fenomen-bezdomovectvi-v-ostr.xlsx
2014-04-10 09:00 - 2014-04-10 09:00 - 00071295 _____ () C:\Users\IVETA\Downloads\prilohy_3137.zip
2014-04-09 10:06 - 2014-03-04 11:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-04-09 10:06 - 2014-03-04 11:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2014-04-09 10:06 - 2014-03-04 11:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2014-04-09 10:06 - 2014-03-04 11:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2014-04-09 10:06 - 2014-03-04 11:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2014-04-09 10:06 - 2014-03-04 11:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2014-04-09 10:06 - 2014-03-04 11:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2014-04-09 10:06 - 2014-03-04 11:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2014-04-09 10:06 - 2014-03-04 11:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2014-04-09 10:06 - 2014-03-04 10:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2014-04-09 10:06 - 2014-03-04 10:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2014-04-09 10:06 - 2014-02-04 04:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2014-04-09 10:06 - 2014-02-04 04:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2014-04-09 10:06 - 2014-02-04 04:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2014-04-09 10:06 - 2014-02-04 04:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2014-04-09 10:06 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll
2014-04-09 08:59 - 2014-01-24 04:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-04-07 22:08 - 2011-12-07 16:51 - 00000000 ____D () C:\Users\IVETA\Downloads\Oldřich Müller
2014-04-05 14:41 - 2013-12-16 13:41 - 00000000 ____D () C:\Users\IVETA\Downloads\OLAH_M_Metody_socialnej_prace_v_praxi_2012

==================== One Month Modified Files and Folders =======

2014-05-05 10:40 - 2014-05-05 10:40 - 00018279 _____ () C:\Users\IVETA\Desktop\FRST.txt
2014-05-05 10:40 - 2014-05-05 10:39 - 00000000 ____D () C:\FRST
2014-05-05 10:38 - 2014-05-05 10:38 - 00112640 _____ (forum.viry.cz) C:\Users\IVETA\Desktop\FRSTLauncher.exe
2014-05-05 10:38 - 2014-01-15 14:28 - 01850072 _____ () C:\Windows\WindowsUpdate.log
2014-05-05 10:36 - 2009-07-14 06:45 - 00016976 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-05-05 10:36 - 2009-07-14 06:45 - 00016976 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-05-05 10:34 - 2014-05-05 10:34 - 02062336 _____ (Farbar) C:\Users\IVETA\Desktop\FRST64.exe
2014-05-05 10:24 - 2014-05-05 10:24 - 00000000 ____D () C:\Users\IVETA\AppData\Roaming\AVAST Software
2014-05-05 10:23 - 2014-05-05 10:23 - 00000056 _____ () C:\Windows\setupact.log
2014-05-05 10:23 - 2014-05-05 10:23 - 00000000 _____ () C:\Windows\setuperr.log
2014-05-05 10:23 - 2014-05-05 10:22 - 00166480 _____ () C:\Windows\PFRO.log
2014-05-05 10:23 - 2011-08-31 10:29 - 00065536 _____ () C:\Windows\system32\Ikeext.etl
2014-05-05 10:23 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-05-05 10:23 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\tracing
2014-05-05 10:22 - 2014-05-05 10:22 - 00001981 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-05-05 10:22 - 2014-05-05 10:18 - 00004184 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-05-05 10:21 - 2014-05-05 10:21 - 00085328 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2014-05-05 10:21 - 2014-05-05 10:21 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-05-05 10:21 - 2014-05-05 10:21 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-05-05 10:21 - 2014-05-05 10:18 - 00208416 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-05-05 10:21 - 2014-05-05 10:18 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-05-05 10:21 - 2012-06-01 10:25 - 00334648 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-05-05 10:21 - 2012-06-01 10:25 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-05-05 10:21 - 2011-11-21 11:46 - 01039096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2014-05-05 10:21 - 2011-11-21 11:46 - 00423240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2014-05-05 10:21 - 2011-11-21 11:46 - 00079184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-05-05 10:19 - 2012-06-01 10:24 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-05-05 10:18 - 2011-11-21 11:46 - 00000000 _____ () C:\Windows\SysWOW64\config.nt
2014-05-05 10:16 - 2014-01-15 17:32 - 00000000 ____D () C:\ProgramData\Oracle
2014-05-05 10:15 - 2014-05-05 10:15 - 00004100 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_55-b14.log
2014-05-05 10:15 - 2014-05-05 10:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-05-05 10:15 - 2014-01-15 17:09 - 00000000 ____D () C:\Program Files (x86)\Java
2014-05-05 10:12 - 2011-09-24 13:44 - 00000000 ____D () C:\Users\IVETA\AppData\Roaming\DAEMON Tools Lite
2014-05-05 10:12 - 2007-07-12 03:49 - 00000000 ____D () C:\Windows\Panther
2014-05-05 10:11 - 2014-05-05 10:11 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-05-05 10:11 - 2011-08-27 13:34 - 00000826 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-05-05 10:11 - 2011-08-27 13:34 - 00000000 ____D () C:\Program Files\CCleaner
2014-05-05 10:10 - 2014-05-05 10:10 - 04745984 _____ (Piriform Ltd) C:\Users\IVETA\Downloads\ccsetup413.exe
2014-05-05 10:08 - 2011-08-31 07:42 - 00000000 ____D () C:\Users\IVETA\AppData\Local\Adobe
2014-05-05 10:01 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-05-04 20:42 - 2012-09-28 20:27 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-05-04 18:06 - 2011-08-28 09:00 - 00003970 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{D5666B1C-93EE-4F72-BE5C-19FB880FB661}
2014-05-04 16:13 - 2011-09-17 17:13 - 00000000 ____D () C:\Users\IVETA\AppData\Roaming\Media Player Classic
2014-05-04 14:43 - 2014-05-04 14:28 - 236946192 _____ () C:\Users\IVETA\Downloads\Girls_S02_E07_CZ.avi
2014-05-04 14:21 - 2014-05-04 14:07 - 192462907 _____ () C:\Users\IVETA\Downloads\Girls_S02_E06_CZ.avi
2014-05-03 14:49 - 2011-06-29 19:14 - 00669132 _____ () C:\Windows\system32\perfh005.dat
2014-05-03 14:49 - 2011-06-29 19:14 - 00141760 _____ () C:\Windows\system32\perfc005.dat
2014-05-03 14:49 - 2009-07-14 07:13 - 01584626 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-05-03 13:51 - 2012-11-16 23:15 - 00000000 ____D () C:\Users\IVETA\Desktop\kdesi cosi
2014-05-03 11:48 - 2014-05-03 11:35 - 238228898 _____ () C:\Users\IVETA\Downloads\Girls_S02_E05_CZ.avi
2014-05-03 11:28 - 2014-05-03 11:15 - 241462964 _____ () C:\Users\IVETA\Downloads\Girls_S02_E04_CZ.avi
2014-05-03 11:04 - 2014-05-03 10:50 - 243655932 _____ () C:\Users\IVETA\Downloads\Girls_S02_E03_CZ.avi
2014-05-02 20:16 - 2014-05-02 20:01 - 233787190 _____ () C:\Users\IVETA\Downloads\Girls_S02_E02_CZ.avi
2014-04-29 16:17 - 2012-09-28 20:27 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-04-29 16:17 - 2012-09-28 20:27 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-04-29 16:17 - 2012-02-06 15:10 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-04-28 17:12 - 2012-05-05 14:06 - 00000000 ____D () C:\Users\IVETA\Documents\blbosti
2014-04-24 06:20 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\registration
2014-04-24 06:20 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\AppCompat
2014-04-23 21:12 - 2011-08-25 18:16 - 00000000 ____D () C:\Users\IVETA
2014-04-22 19:23 - 2014-04-22 19:23 - 02937344 _____ () C:\Users\IVETA\Downloads\seminar k ZP - 3.hodina-upravena.ppt
2014-04-22 19:21 - 2014-04-22 19:21 - 00185856 _____ () C:\Users\IVETA\Downloads\2013_2014-szz-prezentace.ppt
2014-04-22 05:21 - 2012-11-13 19:26 - 00000000 ____D () C:\Users\IVETA\Downloads\etopedie
2014-04-21 21:30 - 2014-01-22 17:56 - 00000000 ____D () C:\Users\IVETA\Downloads\komplexky
2014-04-21 17:52 - 2012-11-13 19:29 - 00000000 ____D () C:\Users\IVETA\Downloads\bakalarka
2014-04-20 18:32 - 2014-04-10 14:50 - 00000000 ____D () C:\Users\IVETA\Downloads\eto
2014-04-18 18:17 - 2014-04-10 09:23 - 00317440 _____ () C:\Users\IVETA\Downloads\fenomen-bezdomovectvi-v-ostr(1).xls
2014-04-17 17:06 - 2014-04-17 17:06 - 00000000 ____D () C:\Users\IVETA\AppData\Roaming\Windows Live Writer
2014-04-17 17:06 - 2014-04-17 17:06 - 00000000 ____D () C:\Users\IVETA\AppData\Local\Windows Live Writer
2014-04-17 17:06 - 2014-04-17 17:06 - 00000000 ____D () C:\Users\IVETA\AppData\Local\{65B834DD-03C7-4886-AFF1-ED7EC472A049}
2014-04-17 17:05 - 2011-08-25 18:30 - 00000000 ____D () C:\Users\IVETA\AppData\Local\Windows Live
2014-04-16 23:57 - 2014-04-16 23:57 - 06777892 _____ () C:\Users\IVETA\Downloads\Stankowski--Resocializační-pedagogika.rar
2014-04-14 20:13 - 2014-05-05 10:15 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-04-14 20:05 - 2014-05-05 10:16 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-04-14 20:05 - 2014-05-05 10:15 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-04-14 20:04 - 2014-05-05 10:15 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-04-14 17:25 - 2014-04-14 17:25 - 00807424 _____ () C:\Users\IVETA\Downloads\seminar+k+ZP+_+1.hodina-upravena.ppt
2014-04-14 11:18 - 2014-04-14 11:17 - 00000000 ____D () C:\Users\IVETA\Downloads\Nová složka (3)
2014-04-13 21:02 - 2013-02-04 00:04 - 00000000 ____D () C:\Users\IVETA\Downloads\skola,promo,blbosti
2014-04-13 14:07 - 2014-04-13 00:25 - 00136936 _____ () C:\Users\IVETA\Downloads\kodovani.xlsm
2014-04-13 00:25 - 2014-04-10 09:23 - 00136917 _____ () C:\Users\IVETA\Downloads\fenomen-bezdomovectvi-v-ostr(1).xlsx
2014-04-11 15:48 - 2011-09-17 17:08 - 00000000 ____D () C:\Users\IVETA\AppData\Roaming\AIMP
2014-04-10 15:26 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-04-10 14:47 - 2014-02-16 18:52 - 00000000 ____D () C:\Users\IVETA\Downloads\Nová složka (2)
2014-04-10 14:43 - 2014-04-10 14:43 - 00001049 _____ () C:\Users\IVETA\Desktop\Dokumenty – zástupce (2).lnk
2014-04-10 09:58 - 2014-04-10 09:58 - 00044274 _____ () C:\Users\IVETA\Downloads\Jak psát bakalářskou práci Odevzdejto.cz - seminární, bakalářská a diplomová práce.htm
2014-04-10 09:58 - 2014-04-10 09:58 - 00000000 ____D () C:\Users\IVETA\Downloads\Jak psát bakalářskou práci Odevzdejto.cz - seminární, bakalářská a diplomová práce_soubory
2014-04-10 09:55 - 2014-04-10 09:55 - 00025114 _____ () C:\Users\IVETA\Downloads\Bakalářská práce je obsahově koherentní a ucelenou odbornou písemnou prácí.htm
2014-04-10 09:55 - 2014-04-10 09:55 - 00004668 _____ () C:\Users\IVETA\Downloads\Definice hypotézy.htm
2014-04-10 09:54 - 2014-04-10 09:54 - 00026209 _____ () C:\Users\IVETA\Downloads\Nápověda „Výzkumná“ otázka – Enviwiki.htm
2014-04-10 09:23 - 2014-04-10 09:23 - 00575107 _____ () C:\Users\IVETA\Downloads\grafy_39260.zip
2014-04-10 09:22 - 2014-04-10 09:22 - 00278528 _____ () C:\Users\IVETA\Downloads\fenomen-bezdomovectvi-v-ostr.xls
2014-04-10 09:22 - 2014-04-10 09:22 - 00076444 _____ () C:\Users\IVETA\Downloads\fenomen-bezdomovectvi-v-ostr.csv
2014-04-10 09:22 - 2014-04-10 09:22 - 00072659 _____ () C:\Users\IVETA\Downloads\fenomen-bezdomovectvi-v-ostr.xlsx
2014-04-10 09:00 - 2014-04-10 09:00 - 00071295 _____ () C:\Users\IVETA\Downloads\prilohy_3137.zip
2014-04-09 16:30 - 2011-08-27 10:33 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-04-05 15:10 - 2014-03-12 17:56 - 00000000 ____D () C:\Users\IVETA\Downloads\webka
2014-04-05 14:40 - 2012-06-27 21:35 - 00000000 ____D () C:\Users\IVETA\Downloads\knizky
2014-04-05 14:25 - 2014-01-16 15:53 - 00000000 ____D () C:\Users\IVETA\Downloads\třeták

Some content of TEMP:
====================
C:\Users\IVETA\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\IVETA\Desktop" je 86 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15727
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: zpomalený a zasekavájící se NB

#2 Příspěvek od JaRon »

ahoj,
vycisti NTB s ADWCleanerom - scan/clean
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Ljuk
Návštěvník
Návštěvník
Příspěvky: 28
Registrován: 25 led 2011 09:51

Re: zpomalený a zasekavájící se NB

#3 Příspěvek od Ljuk »

Vycisteno, posilam log:



# AdwCleaner v3.207 - Report created 05/05/2014 at 14:47:14
# Updated 05/05/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : IVETA - IVETA-PC
# Running from : C:\Users\IVETA\Desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Program Files (x86)\Conduit
Folder Deleted : C:\Users\IVETA\AppData\Local\genienext
Folder Deleted : C:\Users\IVETA\AppData\Local\Mobogenie
Folder Deleted : C:\Users\IVETA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie
File Deleted : C:\Users\IVETA\daemonprocess.txt

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon]
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2269050
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{872B5B88-9DB5-4310-BDD0-AC189557E5F5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5}
Value Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{318A227B-5E9F-45BD-8999-7F8F10CA4CF5}]
Key Deleted : HKCU\Software\AppDataLow\Toolbar
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKLM\Software\Conduit

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17041


-\\ Mozilla Firefox v28.0 (cs)

[ File : C:\Users\IVETA\AppData\Roaming\Mozilla\Firefox\Profiles\94wmyaoy.default\prefs.js ]


-\\ Google Chrome v

[ File : C:\Users\IVETA\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted [Search Provider] : hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2269050
Deleted [Extension] : kdcnnmifdmlmjffdgeieikcokcogpbej
Deleted [Extension] : kincjchfokkeneeofpeefomkikfkiedl

*************************

AdwCleaner[R0].txt - [2814 octets] - [05/05/2014 14:45:49]
AdwCleaner[S0].txt - [2662 octets] - [05/05/2014 14:47:14]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2722 octets] ##########

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15727
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: zpomalený a zasekavájící se NB

#4 Příspěvek od JaRon »

OK, prescanuj este PC s MBAM - kompletna kontrola
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Ljuk
Návštěvník
Návštěvník
Příspěvky: 28
Registrován: 25 led 2011 09:51

Re: zpomalený a zasekavájící se NB

#5 Příspěvek od Ljuk »

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Verze: v2014.05.05.06

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.17041
IVETA :: IVETA-PC [administrátor]

5.5.2014 15:16:16
MBAM-log-2014-05-05 (17-33-24).txt

Typ: Kompletní kontrola (C:\|D:\|F:\|H:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 398576
Uplynulý čas: 1 hodin, 5 minut, 33 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 3
C:\AdwCleaner\Quarantine\C\Users\IVETA\AppData\Local\genienext\nengine.dll.vir (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\AdwCleaner\Quarantine\C\Users\IVETA\AppData\Local\Mobogenie\Version\OldVersion\Mobogenie2.1.37.zip.vir (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\AdwCleaner\Quarantine\C\Users\IVETA\AppData\Local\Mobogenie\Version\OldVersion\Mobogenie\nengine.dll.vir (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.

(konec)

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15727
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: zpomalený a zasekavájící se NB

#6 Příspěvek od JaRon »

zmaz adresar C:\AdwCleaner a malo by to byt ciste :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Ljuk
Návštěvník
Návštěvník
Příspěvky: 28
Registrován: 25 led 2011 09:51

Re: zpomalený a zasekavájící se NB

#7 Příspěvek od Ljuk »

sestra děkuje za pomoc :|

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15727
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: zpomalený a zasekavájící se NB

#8 Příspěvek od JaRon »

rado sa stalo :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Zamčeno