Prosím o kontrolu logu
Napsal: 27 kvě 2014 20:33
Dobrý deň,poprosil by som o kontrolu mojho logu nakolko mi NB hádže často bluescreen(modrá smrť) vopred dakujem 
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:25-05-2014 02
Ran by Saimon (administrator) on SAIMON-PC on 27-05-2014 21:27:37
Running from C:\Users\Saimon\Desktop
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) OS Language: English(US)
Internet Explorer Version 9
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgwdsvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Hi-Rez Studios) C:\Program Files\Hi-Rez Studios\HiPatchService.exe
(AVG) C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(AVG) C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesApp32.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgui.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(AVG) C:\Program Files\AVG\AVG PC TuneUp\TUAutoUpdateCheck.exe
(Microsoft Corporation) C:\Windows\System32\LogonUI.exe
(AVG) C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesApp32.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgui.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(House of Life) C:\Program Files\BitLord\Bitlord files\bitlord.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe
(forum.viry.cz) C:\Users\Saimon\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [91520 2010-01-21] (Microsoft Corporation)
HKLM\...\Run: [Aeria Ignite] => C:\Program Files\Aeria Games\Ignite\aeriaignite.exe [1925656 2013-06-06] (Aeria Games & Entertainment)
HKLM\...\Run: [AVG_UI] => C:\Program Files\AVG\AVG2014\avgui.exe [5180432 2014-04-06] (AVG Technologies CZ, s.r.o.)
HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\Windows\System32\SPReview\SPReview.exe [280576 2014-03-05] (Microsoft Corporation)
HKU\S-1-5-21-3211541326-2053572210-2390753330-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [21444224 2014-05-08] (Skype Technologies S.A.)
HKU\S-1-5-21-3211541326-2053572210-2390753330-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-3211541326-2053572210-2390753330-1000\...\Run: [Akamai NetSession Interface] => "C:\Users\Saimon\AppData\Local\Akamai\netsession_win.exe"
HKU\S-1-5-21-3211541326-2053572210-2390753330-1000\...\MountPoints2: F - F:\AutoRun.exe
HKU\S-1-5-21-3211541326-2053572210-2390753330-1000\...\MountPoints2: {82080c21-a360-11e3-b47a-b888e3d12056} - F:\AUTORUN.EXE
HKU\S-1-5-21-3211541326-2053572210-2390753330-1000\...\Winlogon: [Shell]
HKU\S-1-5-21-3211541326-2053572210-2390753330-1001\...\MountPoints2: {82080c21-a360-11e3-b47a-b888e3d12056} - F:\setup.exe
IFEO\aeriaignite.exe: [Debugger] "C:\Program Files\AVG\AVG PC TuneUp\TUAutoReactivator32.exe"
IFEO\dtlite.exe: [Debugger] "C:\Program Files\AVG\AVG PC TuneUp\TUAutoReactivator32.exe"
IFEO\p4admin.exe: [Debugger] "C:\Program Files\AVG\AVG PC TuneUp\TUAutoReactivator32.exe"
IFEO\p4merge.exe: [Debugger] "C:\Program Files\AVG\AVG PC TuneUp\TUAutoReactivator32.exe"
IFEO\p4v.exe: [Debugger] "C:\Program Files\AVG\AVG PC TuneUp\TUAutoReactivator32.exe"
IFEO\sptdinst-x86.exe: [Debugger] "C:\Program Files\AVG\AVG PC TuneUp\TUAutoReactivator32.exe"
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com/?ctid=CT33195 ... F826&SSPV=
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x60E326581537CF01
SearchScopes: HKLM - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL =
SearchScopes: HKCU - DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://search.conduit.com/Results.aspx? ... rms}&SSPV=
SearchScopes: HKCU - URL http://search.conduit.com/Results.aspx? ... rms}&SSPV=
SearchScopes: HKCU - SuggestionsURL_JSON http://suggest.search.conduit.com/CSugg ... earchTerms}
SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://search.conduit.com/Results.aspx? ... rms}&SSPV=
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: ArcPluginIEBHO Class - {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} - C:\Program Files\Perfect World Entertainment\Arc\Plugins\ArcPluginIE.dll (Perfect World Entertainment Inc)
BHO: ValueApps - {93DBF2BB-A2B3-4683-A92E-57E60751F346} - C:\Program Files\Conduit\ValueApps\IE\ValueAppsLoader.dll (Conduit Ltd.)
BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Shopping Suggestion - {F6C07882-D703-4DD5-905A-2C4E815A5066} - C:\Users\Saimon\AppData\Roaming\D394D188-BAC7-4e03-8FAF-389A4D7EC6F4\Shopping Suggestion.dll (WW3, LLC)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\Saimon\AppData\Roaming\Mozilla\Firefox\Profiles\4jl7uqad.default
FF SelectedSearchEngine: Google
FF Homepage: hxxp://search.conduit.com/?ctid=CT3319597&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SP82C0CD3A-4C8A-419D-926B-314476C0F826&SSPV=
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin: @perfectworld.com/npArcPlayNowPlugin - C:\Program Files\Perfect World Entertainment\Arc\Plugins\npArcPluginFF.dll (Perfect World Entertainment Inc)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Saimon\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF user.js: detected! => C:\Users\Saimon\AppData\Roaming\Mozilla\Firefox\Profiles\4jl7uqad.default\user.js
FF SearchPlugin: C:\Users\Saimon\AppData\Roaming\Mozilla\Firefox\Profiles\4jl7uqad.default\searchplugins\conduit-search.xml
FF Extension: Value Apps - C:\Users\Saimon\AppData\Roaming\Mozilla\Firefox\Profiles\4jl7uqad.default\Extensions\{94cd2cc3-083f-49ba-a218-4cda4b4829fd} [2014-03-03]
FF Extension: . - C:\Users\Saimon\AppData\Roaming\Mozilla\Firefox\Profiles\4jl7uqad.default\Extensions\{4e38134d-ba98-4066-b898-e296d8acc938}.xpi [2014-03-16]
FF Extension: Shopping Suggestion - C:\Users\Saimon\AppData\Roaming\Mozilla\Firefox\Profiles\4jl7uqad.default\Extensions\{D394D188-BAC7-4e03-8FAF-389A4D7EC6F4}.xpi [2014-03-16]
FF Extension: No Name - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-04-11]
========================== Services (Whitelisted) =================
S3 ArcService; C:\Program Files\Perfect World Entertainment\Arc\ArcService.exe [88400 2014-04-18] (Perfect World Entertainment Inc)
S2 AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [3645456 2014-04-18] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [291912 2014-03-27] (AVG Technologies CZ, s.r.o.)
R2 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390720 2014-04-11] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1764992 2014-04-11] (Microsoft Corporation)
S3 cphs; C:\Windows\system32\IntelCpHeciSvc.exe [279000 2014-01-30] (Intel Corporation)
R2 HiPatchService; C:\Program Files\Hi-Rez Studios\HiPatchService.exe [9216 2014-02-28] (Hi-Rez Studios)
S4 Perforce; C:\Program Files\Perforce\Server\p4s.exe [2944056 2013-11-11] (Perforce Software Inc.)
S2 ProtectMonitor; C:\Program Files\PCData\StartHelp.exe [90680 2014-03-14] ()
R2 TuneUp.UtilitiesSvc; C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe [1740088 2013-09-23] (AVG)
S3 TunngleService; C:\Program Files\Tunngle\TnglCtrl.exe [758224 2013-11-06] (Tunngle.net GmbH)
==================== Drivers (Whitelisted) ====================
S3 1394hub; C:\Windows\System32\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
S3 apf004; C:\Windows\system32\apf004.sys [15112 2014-04-09] ()
S3 apf005; C:\Windows\system32\apf005.sys [14160 2014-04-10] ()
R1 Avgdiskx; C:\Windows\System32\DRIVERS\avgdiskx.sys [123160 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [199960 2014-04-18] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [150296 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [22296 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [193304 2014-03-27] (AVG Technologies CZ, s.r.o.)
R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [238872 2014-03-27] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [108312 2014-03-31] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [28440 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [211224 2014-03-31] (AVG Technologies CZ, s.r.o.)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [243128 2014-03-04] (Disc Soft Ltd)
R3 MEI; C:\Windows\System32\DRIVERS\HECI.sys [55104 2012-07-17] (Intel Corporation)
R3 NETwNs32; C:\Windows\System32\DRIVERS\Netwsn00.sys [10339840 2012-02-20] (Intel Corporation)
R0 nvpciflt; C:\Windows\System32\DRIVERS\nvpciflt.sys [25376 2013-09-05] (NVIDIA Corporation)
R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [27136 2009-09-16] (Tunngle.net)
R3 TuneUpUtilitiesDrv; C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver32.sys [12320 2013-09-18] (TuneUp Software)
S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-05-27 21:27 - 2014-05-27 21:27 - 00012762 _____ () C:\Users\Saimon\Desktop\FRST.txt
2014-05-27 21:27 - 2014-05-27 21:27 - 00000000 ____D () C:\FRST
2014-05-27 21:25 - 2014-05-27 21:25 - 00112640 _____ (forum.viry.cz) C:\Users\Saimon\Desktop\FRSTLauncher.exe
2014-05-27 21:24 - 2014-05-27 21:24 - 01056256 _____ (Farbar) C:\Users\Saimon\Desktop\FRST.exe
2014-05-27 18:41 - 2014-05-27 18:41 - 00159368 _____ () C:\Windows\Minidump\052714-44429-01.dmp
2014-05-27 15:50 - 2014-05-27 15:50 - 00159360 _____ () C:\Windows\Minidump\052714-46878-01.dmp
2014-05-26 18:54 - 2014-05-26 18:59 - 54362860 _____ (PWO Team ) C:\Users\Saimon\Downloads\PWOSetup194A.exe
2014-05-26 17:58 - 2014-05-26 17:59 - 05531058 _____ () C:\Users\Saimon\Downloads\POKÉMON_GENESIS.zip
2014-05-26 17:47 - 2014-05-26 17:47 - 00519979 _____ () C:\Users\Saimon\Downloads\PsgXbeta5.zip
2014-05-26 17:40 - 2014-05-26 17:40 - 00116076 _____ () C:\Users\Saimon\Downloads\A-Trainer.rar
2014-05-26 17:39 - 2007-12-02 09:24 - 00513872 _____ () C:\Users\Saimon\Desktop\Crystal Shards beta1.ips
2014-05-26 17:38 - 2014-05-26 18:53 - 00002062 _____ () C:\Users\Saimon\Desktop\vba.ini
2014-05-26 17:38 - 2005-10-01 14:08 - 01974352 _____ (None) C:\Users\Saimon\Desktop\VisualBoyAdvance.exe
2014-05-26 17:35 - 2014-05-26 17:35 - 00659797 _____ () C:\Users\Saimon\Downloads\VisualBoyAdvance-1.8.0-beta3.zip
2014-05-26 17:34 - 2014-05-26 17:34 - 00233009 _____ () C:\Users\Saimon\Downloads\pcsbeta1.zip
2014-05-24 14:31 - 2014-05-24 14:32 - 00159016 _____ () C:\Windows\Minidump\052414-40482-01.dmp
2014-05-24 11:46 - 2014-05-24 11:46 - 00158920 _____ () C:\Windows\Minidump\052414-58110-01.dmp
2014-05-24 08:55 - 2014-05-24 08:55 - 00000000 ____D () C:\Program Files\Common Files\Skype
2014-05-21 15:43 - 2014-05-21 15:44 - 00001743 _____ () C:\Users\Saimon\Desktop\farcry3 - Shortcut.lnk
2014-05-21 15:35 - 2014-05-21 15:35 - 00000000 ____D () C:\ProgramData\Orbit
2014-05-20 22:40 - 2014-05-20 22:40 - 00002072 _____ () C:\Users\Saimon\Desktop\Warcraft III eSK.lnk
2014-05-20 22:35 - 2014-05-20 22:40 - 00000000 ____D () C:\Program Files\Warcraft III Frozen Throne eSK
2014-05-19 21:15 - 2014-05-19 21:15 - 00000218 _____ () C:\Users\Saimon\AppData\Local\recently-used.xbel
2014-05-18 12:09 - 2014-05-18 12:09 - 00001243 _____ () C:\Users\Saimon\Desktop\Far Cry 3.lnk
2014-05-18 12:09 - 2014-05-18 12:09 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\Far Cry 3
2014-05-18 12:09 - 2014-05-18 12:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
2014-05-18 09:15 - 2014-05-18 09:15 - 00000000 ____D () C:\Program Files\R.G. Mechanics
2014-05-17 13:46 - 2014-05-26 21:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pokemon World Online
2014-05-17 13:42 - 2014-05-17 13:43 - 51861434 _____ (PWO Team ) C:\Users\Saimon\Downloads\PWOSetup193.exe
2014-05-16 13:42 - 2014-05-06 01:32 - 12347392 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-05-16 13:42 - 2014-05-06 01:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-05-16 13:42 - 2014-05-06 01:14 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-05-16 13:41 - 2014-04-12 04:15 - 00136640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-05-16 13:41 - 2014-04-12 04:15 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-05-16 13:41 - 2014-04-12 04:12 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-05-16 13:41 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-05-16 13:41 - 2014-04-12 04:12 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-05-16 13:41 - 2014-04-12 04:11 - 01059840 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-05-16 13:41 - 2014-04-12 04:11 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-05-16 13:41 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2014-05-16 13:41 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-05-16 13:41 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-05-16 13:41 - 2014-03-04 11:17 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-05-16 13:39 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-05-14 18:39 - 2014-05-14 18:39 - 00000000 ____D () C:\Users\Saimon\Documents\TecmoKoei
2014-05-14 14:38 - 2014-05-14 14:39 - 54213078 _____ () C:\Users\Saimon\Downloads\DW7 English Patch v1.1.rar
2014-05-14 13:31 - 2014-05-14 13:31 - 00000000 ____D () C:\Program Files\TecmoKoei
2014-05-13 22:16 - 2014-05-13 22:16 - 01182632 _____ () C:\Users\Saimon\Documents\gg.themepack
2014-05-13 16:22 - 2014-05-13 16:23 - 07818998 _____ () C:\Users\Saimon\Downloads\Grand.Theft.Auto.IV.Crack.Offline.Activation(1).zip
2014-05-13 16:18 - 2014-05-13 16:19 - 04901698 _____ () C:\Users\Saimon\Downloads\Grand.Theft.Auto.IV.Crack.Offline.Activation.zip
2014-05-13 14:33 - 2014-05-13 14:33 - 00000000 ____D () C:\Users\Saimon\Documents\Rockstar Games
2014-05-13 06:43 - 2014-05-13 06:43 - 00107888 _____ (Sony DADC Austria AG.) C:\Windows\system32\CmdLineExt.dll
2014-05-13 06:23 - 2014-05-13 06:23 - 00000455 _____ () C:\Windows\KB926239.log
2014-05-13 06:22 - 2014-05-13 06:22 - 00000445 _____ () C:\Windows\WMFDist11.log
2014-05-13 06:22 - 2014-05-13 06:22 - 00000444 _____ () C:\Windows\Wudf01000Inst.log
2014-05-13 06:22 - 2014-05-13 06:22 - 00000000 ____D () C:\Windows\system32\xlive
2014-05-13 06:22 - 2014-05-13 06:22 - 00000000 ____D () C:\Program Files\Microsoft Games for Windows - LIVE
2014-05-12 23:45 - 2014-05-12 23:45 - 00577063 _____ () C:\Users\Saimon\Downloads\Skyrim Character Editor V1_3 Zip-3142-1-3.zip
2014-05-12 23:00 - 2014-05-18 09:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2014-05-12 23:00 - 2014-05-17 10:50 - 00000000 ____D () C:\Program Files\Rockstar Games
2014-05-12 19:05 - 2014-05-27 18:41 - 00000000 ____D () C:\Windows\Minidump
2014-05-12 19:05 - 2014-05-27 18:40 - 296293602 _____ () C:\Windows\MEMORY.DMP
2014-05-12 19:05 - 2014-05-12 19:06 - 00158920 _____ () C:\Windows\Minidump\051214-41028-01.dmp
2014-05-04 10:14 - 2014-05-04 11:27 - 00000000 ____D () C:\Users\Saimon\Documents\Prototype
2014-05-03 21:04 - 2014-05-03 21:04 - 00002393 _____ () C:\Users\Saimon\Desktop\Play PROTOTYPE.lnk
2014-05-02 19:07 - 2014-05-02 19:07 - 00001665 _____ () C:\Users\Public\Desktop\Play Hellgate.lnk
2014-05-02 18:59 - 2014-05-02 18:59 - 00000000 ____D () C:\T3Fun
2014-05-02 17:42 - 2014-05-02 17:42 - 00121266 _____ () C:\Users\Saimon\Downloads\hellgate-london-v1.0-dx9-trainer-plus7.zip
2014-05-02 17:37 - 2014-05-02 17:37 - 00000000 __RHD () C:\Users\Saimon\AppData\Roaming\SecuROM
2014-05-02 14:43 - 2014-05-02 14:43 - 00000000 ____D () C:\Program Files\Flagship Studios
2014-05-01 16:26 - 2014-05-01 16:42 - 582671666 _____ () C:\Users\Saimon\Downloads\Spider.mp4
2014-05-01 14:04 - 2014-05-01 14:04 - 00000000 ____D () C:\Users\Saimon\Documents\DayZ
2014-05-01 14:04 - 2014-05-01 14:04 - 00000000 ____D () C:\Users\Saimon\AppData\Local\DayZ
2014-05-01 13:48 - 2014-05-04 02:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DayZ Standalone
2014-05-01 13:35 - 2014-05-01 14:02 - 00000000 ____D () C:\Program Files\DayZ Standalone
2014-04-30 16:53 - 2014-04-30 16:53 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\krita
2014-04-30 16:52 - 2014-05-18 12:09 - 00000000 ____D () C:\ProgramData\Package Cache
2014-04-29 14:36 - 2014-04-29 14:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2014-04-27 18:47 - 2014-04-27 18:47 - 14113777 _____ () C:\Users\Saimon\Downloads\Animation_ Boeing's Crew Space Transportation (CST)-100.mov
2014-04-27 18:45 - 2014-04-27 18:46 - 08530300 _____ () C:\Users\Saimon\Downloads\Animation_ Boeing's Crew Space Transportation (CST)-100.avi
2014-04-27 14:28 - 2014-04-27 18:57 - 07579652 _____ () C:\Users\Saimon\Desktop\Budúcnosť kozmonautiky.pptx
==================== One Month Modified Files and Folders =======
2014-05-27 21:27 - 2014-05-27 21:27 - 00012762 _____ () C:\Users\Saimon\Desktop\FRST.txt
2014-05-27 21:27 - 2014-05-27 21:27 - 00000000 ____D () C:\FRST
2014-05-27 21:25 - 2014-05-27 21:25 - 00112640 _____ (forum.viry.cz) C:\Users\Saimon\Desktop\FRSTLauncher.exe
2014-05-27 21:24 - 2014-05-27 21:24 - 01056256 _____ (Farbar) C:\Users\Saimon\Desktop\FRST.exe
2014-05-27 21:20 - 2014-03-03 22:15 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\Skype
2014-05-27 21:19 - 2014-03-03 20:43 - 02004888 _____ () C:\Windows\WindowsUpdate.log
2014-05-27 21:19 - 2014-03-03 20:42 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-05-27 18:51 - 2014-03-03 20:13 - 00000000 ____D () C:\ProgramData\MFAData
2014-05-27 18:49 - 2014-03-03 21:11 - 00000000 ____D () C:\Program Files\Steam
2014-05-27 18:41 - 2014-05-27 18:41 - 00159368 _____ () C:\Windows\Minidump\052714-44429-01.dmp
2014-05-27 18:41 - 2014-05-12 19:05 - 00000000 ____D () C:\Windows\Minidump
2014-05-27 18:41 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-05-27 18:41 - 2009-07-14 06:39 - 00029760 _____ () C:\Windows\setupact.log
2014-05-27 18:40 - 2014-05-12 19:05 - 296293602 _____ () C:\Windows\MEMORY.DMP
2014-05-27 17:50 - 2009-07-14 06:34 - 00009584 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-05-27 17:50 - 2009-07-14 06:34 - 00009584 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-05-27 15:50 - 2014-05-27 15:50 - 00159360 _____ () C:\Windows\Minidump\052714-46878-01.dmp
2014-05-26 22:07 - 2014-03-22 09:45 - 00000148 _____ () C:\Users\Saimon\Documents\PWOOptions.ini
2014-05-26 21:04 - 2014-05-17 13:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pokemon World Online
2014-05-26 21:04 - 2014-03-22 09:37 - 00000000 ____D () C:\Program Files\Pokemon World Online
2014-05-26 18:59 - 2014-05-26 18:54 - 54362860 _____ (PWO Team ) C:\Users\Saimon\Downloads\PWOSetup194A.exe
2014-05-26 18:53 - 2014-05-26 17:38 - 00002062 _____ () C:\Users\Saimon\Desktop\vba.ini
2014-05-26 17:59 - 2014-05-26 17:58 - 05531058 _____ () C:\Users\Saimon\Downloads\POKÉMON_GENESIS.zip
2014-05-26 17:47 - 2014-05-26 17:47 - 00519979 _____ () C:\Users\Saimon\Downloads\PsgXbeta5.zip
2014-05-26 17:45 - 2014-03-04 14:33 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-05-26 17:40 - 2014-05-26 17:40 - 00116076 _____ () C:\Users\Saimon\Downloads\A-Trainer.rar
2014-05-26 17:35 - 2014-05-26 17:35 - 00659797 _____ () C:\Users\Saimon\Downloads\VisualBoyAdvance-1.8.0-beta3.zip
2014-05-26 17:34 - 2014-05-26 17:34 - 00233009 _____ () C:\Users\Saimon\Downloads\pcsbeta1.zip
2014-05-25 17:21 - 2014-04-24 18:40 - 00000000 ____D () C:\Program Files\The Walking Dead Survival Instinct
2014-05-25 16:57 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2014-05-24 14:32 - 2014-05-24 14:31 - 00159016 _____ () C:\Windows\Minidump\052414-40482-01.dmp
2014-05-24 11:46 - 2014-05-24 11:46 - 00158920 _____ () C:\Windows\Minidump\052414-58110-01.dmp
2014-05-24 10:52 - 2014-04-08 11:03 - 00000000 ____D () C:\Users\Saimon\Documents\Games
2014-05-24 08:55 - 2014-05-24 08:55 - 00000000 ____D () C:\Program Files\Common Files\Skype
2014-05-24 08:55 - 2014-03-03 22:15 - 00000000 ___RD () C:\Program Files\Skype
2014-05-24 08:55 - 2014-03-03 22:15 - 00000000 ____D () C:\ProgramData\Skype
2014-05-23 20:56 - 2014-03-05 14:14 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\Tunngle
2014-05-23 20:56 - 2014-03-05 14:14 - 00000000 ____D () C:\ProgramData\Tunngle
2014-05-23 20:50 - 2014-03-05 19:26 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\TS3Client
2014-05-23 19:14 - 2014-03-05 18:03 - 00000000 _____ () C:\Windows\system32\Access.dat
2014-05-23 13:33 - 2009-07-14 06:53 - 00032638 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-05-22 21:44 - 2014-03-03 21:19 - 00000000 ____D () C:\Users\Saimon\Documents\BitLord
2014-05-22 21:41 - 2014-03-03 21:29 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\BitLord
2014-05-22 20:07 - 2014-03-03 21:11 - 00000000 ____D () C:\Program Files\Common Files\Steam
2014-05-21 16:16 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\LogFiles
2014-05-21 15:44 - 2014-05-21 15:43 - 00001743 _____ () C:\Users\Saimon\Desktop\farcry3 - Shortcut.lnk
2014-05-21 15:35 - 2014-05-21 15:35 - 00000000 ____D () C:\ProgramData\Orbit
2014-05-20 22:42 - 2014-04-03 18:06 - 00000000 ____D () C:\Users\Saimon\Desktop\livthad
2014-05-20 22:42 - 2014-03-09 16:37 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2014-05-20 22:40 - 2014-05-20 22:40 - 00002072 _____ () C:\Users\Saimon\Desktop\Warcraft III eSK.lnk
2014-05-20 22:40 - 2014-05-20 22:35 - 00000000 ____D () C:\Program Files\Warcraft III Frozen Throne eSK
2014-05-19 21:15 - 2014-05-19 21:15 - 00000218 _____ () C:\Users\Saimon\AppData\Local\recently-used.xbel
2014-05-19 06:57 - 2014-03-05 07:44 - 00089554 _____ () C:\Windows\PFRO.log
2014-05-18 17:16 - 2014-03-03 20:11 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-05-18 12:09 - 2014-05-18 12:09 - 00001243 _____ () C:\Users\Saimon\Desktop\Far Cry 3.lnk
2014-05-18 12:09 - 2014-05-18 12:09 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\Far Cry 3
2014-05-18 12:09 - 2014-05-18 12:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
2014-05-18 12:09 - 2014-04-30 16:52 - 00000000 ____D () C:\ProgramData\Package Cache
2014-05-18 12:09 - 2014-03-09 10:10 - 00000000 ____D () C:\Users\Saimon\Documents\My Games
2014-05-18 10:03 - 2014-04-04 15:16 - 00000000 ____D () C:\Program Files\Torchlight II
2014-05-18 10:03 - 2014-03-29 20:04 - 00000000 ____D () C:\Program Files\Thief
2014-05-18 09:58 - 2014-04-09 02:42 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AeriaGames
2014-05-18 09:58 - 2014-04-09 00:20 - 00000000 ____D () C:\AeriaGames
2014-05-18 09:51 - 2014-05-12 23:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2014-05-18 09:51 - 2009-07-14 06:52 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-05-18 09:15 - 2014-05-18 09:15 - 00000000 ____D () C:\Program Files\R.G. Mechanics
2014-05-17 15:52 - 2014-03-03 21:29 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitLord
2014-05-17 15:52 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-05-17 13:43 - 2014-05-17 13:42 - 51861434 _____ (PWO Team ) C:\Users\Saimon\Downloads\PWOSetup193.exe
2014-05-17 10:50 - 2014-05-12 23:00 - 00000000 ____D () C:\Program Files\Rockstar Games
2014-05-16 13:56 - 2014-03-03 19:50 - 00784900 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-05-16 13:50 - 2014-03-03 21:10 - 00000000 ____D () C:\Windows\system32\MRT
2014-05-16 13:44 - 2014-03-03 21:10 - 90547776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-05-15 21:36 - 2014-03-03 21:29 - 00001957 _____ () C:\Users\Saimon\Desktop\BitLord.lnk
2014-05-14 18:39 - 2014-05-14 18:39 - 00000000 ____D () C:\Users\Saimon\Documents\TecmoKoei
2014-05-14 14:39 - 2014-05-14 14:38 - 54213078 _____ () C:\Users\Saimon\Downloads\DW7 English Patch v1.1.rar
2014-05-14 13:31 - 2014-05-14 13:31 - 00000000 ____D () C:\Program Files\TecmoKoei
2014-05-13 22:16 - 2014-05-13 22:16 - 01182632 _____ () C:\Users\Saimon\Documents\gg.themepack
2014-05-13 21:46 - 2014-03-03 20:42 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-05-13 21:46 - 2014-03-03 20:42 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-05-13 16:23 - 2014-05-13 16:22 - 07818998 _____ () C:\Users\Saimon\Downloads\Grand.Theft.Auto.IV.Crack.Offline.Activation(1).zip
2014-05-13 16:19 - 2014-05-13 16:18 - 04901698 _____ () C:\Users\Saimon\Downloads\Grand.Theft.Auto.IV.Crack.Offline.Activation.zip
2014-05-13 14:33 - 2014-05-13 14:33 - 00000000 ____D () C:\Users\Saimon\Documents\Rockstar Games
2014-05-13 06:43 - 2014-05-13 06:43 - 00107888 _____ (Sony DADC Austria AG.) C:\Windows\system32\CmdLineExt.dll
2014-05-13 06:23 - 2014-05-13 06:23 - 00000455 _____ () C:\Windows\KB926239.log
2014-05-13 06:22 - 2014-05-13 06:22 - 00000445 _____ () C:\Windows\WMFDist11.log
2014-05-13 06:22 - 2014-05-13 06:22 - 00000444 _____ () C:\Windows\Wudf01000Inst.log
2014-05-13 06:22 - 2014-05-13 06:22 - 00000000 ____D () C:\Windows\system32\xlive
2014-05-13 06:22 - 2014-05-13 06:22 - 00000000 ____D () C:\Program Files\Microsoft Games for Windows - LIVE
2014-05-13 06:22 - 2014-03-05 14:48 - 00121095 _____ () C:\Windows\DirectX.log
2014-05-12 23:45 - 2014-05-12 23:45 - 00577063 _____ () C:\Users\Saimon\Downloads\Skyrim Character Editor V1_3 Zip-3142-1-3.zip
2014-05-12 19:06 - 2014-05-12 19:05 - 00158920 _____ () C:\Windows\Minidump\051214-41028-01.dmp
2014-05-12 18:54 - 2014-04-02 22:52 - 00000000 ____D () C:\Program Files\Heroes of Newerth
2014-05-12 09:54 - 2014-03-04 00:42 - 00000000 ____D () C:\Users\Saimon\Documents\DragonNest
2014-05-11 18:02 - 2014-04-05 18:00 - 00000000 ____D () C:\Users\Mamina\AppData\Roaming\Skype
2014-05-07 17:15 - 2014-03-03 19:46 - 00000000 ____D () C:\Users\Saimon
2014-05-06 01:32 - 2014-05-16 13:42 - 12347392 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-05-06 01:14 - 2014-05-16 13:42 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-05-06 01:14 - 2014-05-16 13:42 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-05-04 11:27 - 2014-05-04 10:14 - 00000000 ____D () C:\Users\Saimon\Documents\Prototype
2014-05-04 02:13 - 2014-03-31 14:45 - 00000000 ____D () C:\Users\Saimon\AppData\Local\Microsoft Help
2014-05-04 02:11 - 2014-05-01 13:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DayZ Standalone
2014-05-03 21:04 - 2014-05-03 21:04 - 00002393 _____ () C:\Users\Saimon\Desktop\Play PROTOTYPE.lnk
2014-05-02 19:07 - 2014-05-02 19:07 - 00001665 _____ () C:\Users\Public\Desktop\Play Hellgate.lnk
2014-05-02 18:59 - 2014-05-02 18:59 - 00000000 ____D () C:\T3Fun
2014-05-02 17:42 - 2014-05-02 17:42 - 00121266 _____ () C:\Users\Saimon\Downloads\hellgate-london-v1.0-dx9-trainer-plus7.zip
2014-05-02 17:37 - 2014-05-02 17:37 - 00000000 __RHD () C:\Users\Saimon\AppData\Roaming\SecuROM
2014-05-02 14:43 - 2014-05-02 14:43 - 00000000 ____D () C:\Program Files\Flagship Studios
2014-05-02 14:39 - 2014-03-04 12:34 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\DAEMON Tools Lite
2014-05-01 16:42 - 2014-05-01 16:26 - 582671666 _____ () C:\Users\Saimon\Downloads\Spider.mp4
2014-05-01 14:04 - 2014-05-01 14:04 - 00000000 ____D () C:\Users\Saimon\Documents\DayZ
2014-05-01 14:04 - 2014-05-01 14:04 - 00000000 ____D () C:\Users\Saimon\AppData\Local\DayZ
2014-05-01 14:02 - 2014-05-01 13:35 - 00000000 ____D () C:\Program Files\DayZ Standalone
2014-05-01 12:24 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\NDF
2014-04-30 16:53 - 2014-04-30 16:53 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\krita
2014-04-29 14:36 - 2014-04-29 14:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2014-04-27 18:57 - 2014-04-27 14:28 - 07579652 _____ () C:\Users\Saimon\Desktop\Budúcnosť kozmonautiky.pptx
2014-04-27 18:47 - 2014-04-27 18:47 - 14113777 _____ () C:\Users\Saimon\Downloads\Animation_ Boeing's Crew Space Transportation (CST)-100.mov
2014-04-27 18:46 - 2014-04-27 18:45 - 08530300 _____ () C:\Users\Saimon\Downloads\Animation_ Boeing's Crew Space Transportation (CST)-100.avi
Files to move or delete:
====================
C:\Users\Saimon\AppData\Roaming\msconfig.ini
Some content of TEMP:
====================
C:\Users\Saimon\AppData\Local\Temp\SkypeSetup.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\system32\winlogon.exe
[2014-05-16 13:41] - [2014-03-04 11:17] - 0304128 ____A (Microsoft Corporation) 998507B046BA314CE8245364C686FA67
C:\Windows\system32\wininit.exe => MD5 is legit
C:\Windows\system32\svchost.exe => MD5 is legit
C:\Windows\system32\services.exe => MD5 is legit
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => MD5 is legit
C:\Windows\system32\rpcss.dll => MD5 is legit
C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-05-23 07:30
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:465.66 GB) (Free:140.8 GB) NTFS
Available physical RAM: 898.62 MB
Total physical RAM: 2460.36 MB
Percentage of memory in use: 63%
==================== MBR and Partition Table ==================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: EA76F37E)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=466 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: AVG AntiVirus Free Edition 2014 (Disabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG AntiVirus Free Edition 2014 (Disabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664}
FW: AVG Internet Security 2014 (Disabled) {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Saimon\Desktop" je 83 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:25-05-2014 02
Ran by Saimon (administrator) on SAIMON-PC on 27-05-2014 21:27:37
Running from C:\Users\Saimon\Desktop
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) OS Language: English(US)
Internet Explorer Version 9
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgwdsvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Hi-Rez Studios) C:\Program Files\Hi-Rez Studios\HiPatchService.exe
(AVG) C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(AVG) C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesApp32.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgui.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(AVG) C:\Program Files\AVG\AVG PC TuneUp\TUAutoUpdateCheck.exe
(Microsoft Corporation) C:\Windows\System32\LogonUI.exe
(AVG) C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesApp32.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgui.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(House of Life) C:\Program Files\BitLord\Bitlord files\bitlord.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe
(forum.viry.cz) C:\Users\Saimon\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [91520 2010-01-21] (Microsoft Corporation)
HKLM\...\Run: [Aeria Ignite] => C:\Program Files\Aeria Games\Ignite\aeriaignite.exe [1925656 2013-06-06] (Aeria Games & Entertainment)
HKLM\...\Run: [AVG_UI] => C:\Program Files\AVG\AVG2014\avgui.exe [5180432 2014-04-06] (AVG Technologies CZ, s.r.o.)
HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\Windows\System32\SPReview\SPReview.exe [280576 2014-03-05] (Microsoft Corporation)
HKU\S-1-5-21-3211541326-2053572210-2390753330-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [21444224 2014-05-08] (Skype Technologies S.A.)
HKU\S-1-5-21-3211541326-2053572210-2390753330-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-3211541326-2053572210-2390753330-1000\...\Run: [Akamai NetSession Interface] => "C:\Users\Saimon\AppData\Local\Akamai\netsession_win.exe"
HKU\S-1-5-21-3211541326-2053572210-2390753330-1000\...\MountPoints2: F - F:\AutoRun.exe
HKU\S-1-5-21-3211541326-2053572210-2390753330-1000\...\MountPoints2: {82080c21-a360-11e3-b47a-b888e3d12056} - F:\AUTORUN.EXE
HKU\S-1-5-21-3211541326-2053572210-2390753330-1000\...\Winlogon: [Shell]
HKU\S-1-5-21-3211541326-2053572210-2390753330-1001\...\MountPoints2: {82080c21-a360-11e3-b47a-b888e3d12056} - F:\setup.exe
IFEO\aeriaignite.exe: [Debugger] "C:\Program Files\AVG\AVG PC TuneUp\TUAutoReactivator32.exe"
IFEO\dtlite.exe: [Debugger] "C:\Program Files\AVG\AVG PC TuneUp\TUAutoReactivator32.exe"
IFEO\p4admin.exe: [Debugger] "C:\Program Files\AVG\AVG PC TuneUp\TUAutoReactivator32.exe"
IFEO\p4merge.exe: [Debugger] "C:\Program Files\AVG\AVG PC TuneUp\TUAutoReactivator32.exe"
IFEO\p4v.exe: [Debugger] "C:\Program Files\AVG\AVG PC TuneUp\TUAutoReactivator32.exe"
IFEO\sptdinst-x86.exe: [Debugger] "C:\Program Files\AVG\AVG PC TuneUp\TUAutoReactivator32.exe"
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com/?ctid=CT33195 ... F826&SSPV=
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x60E326581537CF01
SearchScopes: HKLM - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL =
SearchScopes: HKCU - DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://search.conduit.com/Results.aspx? ... rms}&SSPV=
SearchScopes: HKCU - URL http://search.conduit.com/Results.aspx? ... rms}&SSPV=
SearchScopes: HKCU - SuggestionsURL_JSON http://suggest.search.conduit.com/CSugg ... earchTerms}
SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://search.conduit.com/Results.aspx? ... rms}&SSPV=
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: ArcPluginIEBHO Class - {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} - C:\Program Files\Perfect World Entertainment\Arc\Plugins\ArcPluginIE.dll (Perfect World Entertainment Inc)
BHO: ValueApps - {93DBF2BB-A2B3-4683-A92E-57E60751F346} - C:\Program Files\Conduit\ValueApps\IE\ValueAppsLoader.dll (Conduit Ltd.)
BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Shopping Suggestion - {F6C07882-D703-4DD5-905A-2C4E815A5066} - C:\Users\Saimon\AppData\Roaming\D394D188-BAC7-4e03-8FAF-389A4D7EC6F4\Shopping Suggestion.dll (WW3, LLC)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\Saimon\AppData\Roaming\Mozilla\Firefox\Profiles\4jl7uqad.default
FF SelectedSearchEngine: Google
FF Homepage: hxxp://search.conduit.com/?ctid=CT3319597&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SP82C0CD3A-4C8A-419D-926B-314476C0F826&SSPV=
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin: @perfectworld.com/npArcPlayNowPlugin - C:\Program Files\Perfect World Entertainment\Arc\Plugins\npArcPluginFF.dll (Perfect World Entertainment Inc)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Saimon\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF user.js: detected! => C:\Users\Saimon\AppData\Roaming\Mozilla\Firefox\Profiles\4jl7uqad.default\user.js
FF SearchPlugin: C:\Users\Saimon\AppData\Roaming\Mozilla\Firefox\Profiles\4jl7uqad.default\searchplugins\conduit-search.xml
FF Extension: Value Apps - C:\Users\Saimon\AppData\Roaming\Mozilla\Firefox\Profiles\4jl7uqad.default\Extensions\{94cd2cc3-083f-49ba-a218-4cda4b4829fd} [2014-03-03]
FF Extension: . - C:\Users\Saimon\AppData\Roaming\Mozilla\Firefox\Profiles\4jl7uqad.default\Extensions\{4e38134d-ba98-4066-b898-e296d8acc938}.xpi [2014-03-16]
FF Extension: Shopping Suggestion - C:\Users\Saimon\AppData\Roaming\Mozilla\Firefox\Profiles\4jl7uqad.default\Extensions\{D394D188-BAC7-4e03-8FAF-389A4D7EC6F4}.xpi [2014-03-16]
FF Extension: No Name - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-04-11]
========================== Services (Whitelisted) =================
S3 ArcService; C:\Program Files\Perfect World Entertainment\Arc\ArcService.exe [88400 2014-04-18] (Perfect World Entertainment Inc)
S2 AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [3645456 2014-04-18] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [291912 2014-03-27] (AVG Technologies CZ, s.r.o.)
R2 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390720 2014-04-11] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1764992 2014-04-11] (Microsoft Corporation)
S3 cphs; C:\Windows\system32\IntelCpHeciSvc.exe [279000 2014-01-30] (Intel Corporation)
R2 HiPatchService; C:\Program Files\Hi-Rez Studios\HiPatchService.exe [9216 2014-02-28] (Hi-Rez Studios)
S4 Perforce; C:\Program Files\Perforce\Server\p4s.exe [2944056 2013-11-11] (Perforce Software Inc.)
S2 ProtectMonitor; C:\Program Files\PCData\StartHelp.exe [90680 2014-03-14] ()
R2 TuneUp.UtilitiesSvc; C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe [1740088 2013-09-23] (AVG)
S3 TunngleService; C:\Program Files\Tunngle\TnglCtrl.exe [758224 2013-11-06] (Tunngle.net GmbH)
==================== Drivers (Whitelisted) ====================
S3 1394hub; C:\Windows\System32\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
S3 apf004; C:\Windows\system32\apf004.sys [15112 2014-04-09] ()
S3 apf005; C:\Windows\system32\apf005.sys [14160 2014-04-10] ()
R1 Avgdiskx; C:\Windows\System32\DRIVERS\avgdiskx.sys [123160 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [199960 2014-04-18] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [150296 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [22296 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [193304 2014-03-27] (AVG Technologies CZ, s.r.o.)
R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [238872 2014-03-27] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [108312 2014-03-31] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [28440 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [211224 2014-03-31] (AVG Technologies CZ, s.r.o.)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [243128 2014-03-04] (Disc Soft Ltd)
R3 MEI; C:\Windows\System32\DRIVERS\HECI.sys [55104 2012-07-17] (Intel Corporation)
R3 NETwNs32; C:\Windows\System32\DRIVERS\Netwsn00.sys [10339840 2012-02-20] (Intel Corporation)
R0 nvpciflt; C:\Windows\System32\DRIVERS\nvpciflt.sys [25376 2013-09-05] (NVIDIA Corporation)
R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [27136 2009-09-16] (Tunngle.net)
R3 TuneUpUtilitiesDrv; C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver32.sys [12320 2013-09-18] (TuneUp Software)
S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-05-27 21:27 - 2014-05-27 21:27 - 00012762 _____ () C:\Users\Saimon\Desktop\FRST.txt
2014-05-27 21:27 - 2014-05-27 21:27 - 00000000 ____D () C:\FRST
2014-05-27 21:25 - 2014-05-27 21:25 - 00112640 _____ (forum.viry.cz) C:\Users\Saimon\Desktop\FRSTLauncher.exe
2014-05-27 21:24 - 2014-05-27 21:24 - 01056256 _____ (Farbar) C:\Users\Saimon\Desktop\FRST.exe
2014-05-27 18:41 - 2014-05-27 18:41 - 00159368 _____ () C:\Windows\Minidump\052714-44429-01.dmp
2014-05-27 15:50 - 2014-05-27 15:50 - 00159360 _____ () C:\Windows\Minidump\052714-46878-01.dmp
2014-05-26 18:54 - 2014-05-26 18:59 - 54362860 _____ (PWO Team ) C:\Users\Saimon\Downloads\PWOSetup194A.exe
2014-05-26 17:58 - 2014-05-26 17:59 - 05531058 _____ () C:\Users\Saimon\Downloads\POKÉMON_GENESIS.zip
2014-05-26 17:47 - 2014-05-26 17:47 - 00519979 _____ () C:\Users\Saimon\Downloads\PsgXbeta5.zip
2014-05-26 17:40 - 2014-05-26 17:40 - 00116076 _____ () C:\Users\Saimon\Downloads\A-Trainer.rar
2014-05-26 17:39 - 2007-12-02 09:24 - 00513872 _____ () C:\Users\Saimon\Desktop\Crystal Shards beta1.ips
2014-05-26 17:38 - 2014-05-26 18:53 - 00002062 _____ () C:\Users\Saimon\Desktop\vba.ini
2014-05-26 17:38 - 2005-10-01 14:08 - 01974352 _____ (None) C:\Users\Saimon\Desktop\VisualBoyAdvance.exe
2014-05-26 17:35 - 2014-05-26 17:35 - 00659797 _____ () C:\Users\Saimon\Downloads\VisualBoyAdvance-1.8.0-beta3.zip
2014-05-26 17:34 - 2014-05-26 17:34 - 00233009 _____ () C:\Users\Saimon\Downloads\pcsbeta1.zip
2014-05-24 14:31 - 2014-05-24 14:32 - 00159016 _____ () C:\Windows\Minidump\052414-40482-01.dmp
2014-05-24 11:46 - 2014-05-24 11:46 - 00158920 _____ () C:\Windows\Minidump\052414-58110-01.dmp
2014-05-24 08:55 - 2014-05-24 08:55 - 00000000 ____D () C:\Program Files\Common Files\Skype
2014-05-21 15:43 - 2014-05-21 15:44 - 00001743 _____ () C:\Users\Saimon\Desktop\farcry3 - Shortcut.lnk
2014-05-21 15:35 - 2014-05-21 15:35 - 00000000 ____D () C:\ProgramData\Orbit
2014-05-20 22:40 - 2014-05-20 22:40 - 00002072 _____ () C:\Users\Saimon\Desktop\Warcraft III eSK.lnk
2014-05-20 22:35 - 2014-05-20 22:40 - 00000000 ____D () C:\Program Files\Warcraft III Frozen Throne eSK
2014-05-19 21:15 - 2014-05-19 21:15 - 00000218 _____ () C:\Users\Saimon\AppData\Local\recently-used.xbel
2014-05-18 12:09 - 2014-05-18 12:09 - 00001243 _____ () C:\Users\Saimon\Desktop\Far Cry 3.lnk
2014-05-18 12:09 - 2014-05-18 12:09 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\Far Cry 3
2014-05-18 12:09 - 2014-05-18 12:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
2014-05-18 09:15 - 2014-05-18 09:15 - 00000000 ____D () C:\Program Files\R.G. Mechanics
2014-05-17 13:46 - 2014-05-26 21:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pokemon World Online
2014-05-17 13:42 - 2014-05-17 13:43 - 51861434 _____ (PWO Team ) C:\Users\Saimon\Downloads\PWOSetup193.exe
2014-05-16 13:42 - 2014-05-06 01:32 - 12347392 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-05-16 13:42 - 2014-05-06 01:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-05-16 13:42 - 2014-05-06 01:14 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-05-16 13:41 - 2014-04-12 04:15 - 00136640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-05-16 13:41 - 2014-04-12 04:15 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-05-16 13:41 - 2014-04-12 04:12 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-05-16 13:41 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-05-16 13:41 - 2014-04-12 04:12 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-05-16 13:41 - 2014-04-12 04:11 - 01059840 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-05-16 13:41 - 2014-04-12 04:11 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-05-16 13:41 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2014-05-16 13:41 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-05-16 13:41 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-05-16 13:41 - 2014-03-04 11:17 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2014-05-16 13:41 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-05-16 13:39 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-05-14 18:39 - 2014-05-14 18:39 - 00000000 ____D () C:\Users\Saimon\Documents\TecmoKoei
2014-05-14 14:38 - 2014-05-14 14:39 - 54213078 _____ () C:\Users\Saimon\Downloads\DW7 English Patch v1.1.rar
2014-05-14 13:31 - 2014-05-14 13:31 - 00000000 ____D () C:\Program Files\TecmoKoei
2014-05-13 22:16 - 2014-05-13 22:16 - 01182632 _____ () C:\Users\Saimon\Documents\gg.themepack
2014-05-13 16:22 - 2014-05-13 16:23 - 07818998 _____ () C:\Users\Saimon\Downloads\Grand.Theft.Auto.IV.Crack.Offline.Activation(1).zip
2014-05-13 16:18 - 2014-05-13 16:19 - 04901698 _____ () C:\Users\Saimon\Downloads\Grand.Theft.Auto.IV.Crack.Offline.Activation.zip
2014-05-13 14:33 - 2014-05-13 14:33 - 00000000 ____D () C:\Users\Saimon\Documents\Rockstar Games
2014-05-13 06:43 - 2014-05-13 06:43 - 00107888 _____ (Sony DADC Austria AG.) C:\Windows\system32\CmdLineExt.dll
2014-05-13 06:23 - 2014-05-13 06:23 - 00000455 _____ () C:\Windows\KB926239.log
2014-05-13 06:22 - 2014-05-13 06:22 - 00000445 _____ () C:\Windows\WMFDist11.log
2014-05-13 06:22 - 2014-05-13 06:22 - 00000444 _____ () C:\Windows\Wudf01000Inst.log
2014-05-13 06:22 - 2014-05-13 06:22 - 00000000 ____D () C:\Windows\system32\xlive
2014-05-13 06:22 - 2014-05-13 06:22 - 00000000 ____D () C:\Program Files\Microsoft Games for Windows - LIVE
2014-05-12 23:45 - 2014-05-12 23:45 - 00577063 _____ () C:\Users\Saimon\Downloads\Skyrim Character Editor V1_3 Zip-3142-1-3.zip
2014-05-12 23:00 - 2014-05-18 09:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2014-05-12 23:00 - 2014-05-17 10:50 - 00000000 ____D () C:\Program Files\Rockstar Games
2014-05-12 19:05 - 2014-05-27 18:41 - 00000000 ____D () C:\Windows\Minidump
2014-05-12 19:05 - 2014-05-27 18:40 - 296293602 _____ () C:\Windows\MEMORY.DMP
2014-05-12 19:05 - 2014-05-12 19:06 - 00158920 _____ () C:\Windows\Minidump\051214-41028-01.dmp
2014-05-04 10:14 - 2014-05-04 11:27 - 00000000 ____D () C:\Users\Saimon\Documents\Prototype
2014-05-03 21:04 - 2014-05-03 21:04 - 00002393 _____ () C:\Users\Saimon\Desktop\Play PROTOTYPE.lnk
2014-05-02 19:07 - 2014-05-02 19:07 - 00001665 _____ () C:\Users\Public\Desktop\Play Hellgate.lnk
2014-05-02 18:59 - 2014-05-02 18:59 - 00000000 ____D () C:\T3Fun
2014-05-02 17:42 - 2014-05-02 17:42 - 00121266 _____ () C:\Users\Saimon\Downloads\hellgate-london-v1.0-dx9-trainer-plus7.zip
2014-05-02 17:37 - 2014-05-02 17:37 - 00000000 __RHD () C:\Users\Saimon\AppData\Roaming\SecuROM
2014-05-02 14:43 - 2014-05-02 14:43 - 00000000 ____D () C:\Program Files\Flagship Studios
2014-05-01 16:26 - 2014-05-01 16:42 - 582671666 _____ () C:\Users\Saimon\Downloads\Spider.mp4
2014-05-01 14:04 - 2014-05-01 14:04 - 00000000 ____D () C:\Users\Saimon\Documents\DayZ
2014-05-01 14:04 - 2014-05-01 14:04 - 00000000 ____D () C:\Users\Saimon\AppData\Local\DayZ
2014-05-01 13:48 - 2014-05-04 02:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DayZ Standalone
2014-05-01 13:35 - 2014-05-01 14:02 - 00000000 ____D () C:\Program Files\DayZ Standalone
2014-04-30 16:53 - 2014-04-30 16:53 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\krita
2014-04-30 16:52 - 2014-05-18 12:09 - 00000000 ____D () C:\ProgramData\Package Cache
2014-04-29 14:36 - 2014-04-29 14:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2014-04-27 18:47 - 2014-04-27 18:47 - 14113777 _____ () C:\Users\Saimon\Downloads\Animation_ Boeing's Crew Space Transportation (CST)-100.mov
2014-04-27 18:45 - 2014-04-27 18:46 - 08530300 _____ () C:\Users\Saimon\Downloads\Animation_ Boeing's Crew Space Transportation (CST)-100.avi
2014-04-27 14:28 - 2014-04-27 18:57 - 07579652 _____ () C:\Users\Saimon\Desktop\Budúcnosť kozmonautiky.pptx
==================== One Month Modified Files and Folders =======
2014-05-27 21:27 - 2014-05-27 21:27 - 00012762 _____ () C:\Users\Saimon\Desktop\FRST.txt
2014-05-27 21:27 - 2014-05-27 21:27 - 00000000 ____D () C:\FRST
2014-05-27 21:25 - 2014-05-27 21:25 - 00112640 _____ (forum.viry.cz) C:\Users\Saimon\Desktop\FRSTLauncher.exe
2014-05-27 21:24 - 2014-05-27 21:24 - 01056256 _____ (Farbar) C:\Users\Saimon\Desktop\FRST.exe
2014-05-27 21:20 - 2014-03-03 22:15 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\Skype
2014-05-27 21:19 - 2014-03-03 20:43 - 02004888 _____ () C:\Windows\WindowsUpdate.log
2014-05-27 21:19 - 2014-03-03 20:42 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-05-27 18:51 - 2014-03-03 20:13 - 00000000 ____D () C:\ProgramData\MFAData
2014-05-27 18:49 - 2014-03-03 21:11 - 00000000 ____D () C:\Program Files\Steam
2014-05-27 18:41 - 2014-05-27 18:41 - 00159368 _____ () C:\Windows\Minidump\052714-44429-01.dmp
2014-05-27 18:41 - 2014-05-12 19:05 - 00000000 ____D () C:\Windows\Minidump
2014-05-27 18:41 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-05-27 18:41 - 2009-07-14 06:39 - 00029760 _____ () C:\Windows\setupact.log
2014-05-27 18:40 - 2014-05-12 19:05 - 296293602 _____ () C:\Windows\MEMORY.DMP
2014-05-27 17:50 - 2009-07-14 06:34 - 00009584 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-05-27 17:50 - 2009-07-14 06:34 - 00009584 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-05-27 15:50 - 2014-05-27 15:50 - 00159360 _____ () C:\Windows\Minidump\052714-46878-01.dmp
2014-05-26 22:07 - 2014-03-22 09:45 - 00000148 _____ () C:\Users\Saimon\Documents\PWOOptions.ini
2014-05-26 21:04 - 2014-05-17 13:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pokemon World Online
2014-05-26 21:04 - 2014-03-22 09:37 - 00000000 ____D () C:\Program Files\Pokemon World Online
2014-05-26 18:59 - 2014-05-26 18:54 - 54362860 _____ (PWO Team ) C:\Users\Saimon\Downloads\PWOSetup194A.exe
2014-05-26 18:53 - 2014-05-26 17:38 - 00002062 _____ () C:\Users\Saimon\Desktop\vba.ini
2014-05-26 17:59 - 2014-05-26 17:58 - 05531058 _____ () C:\Users\Saimon\Downloads\POKÉMON_GENESIS.zip
2014-05-26 17:47 - 2014-05-26 17:47 - 00519979 _____ () C:\Users\Saimon\Downloads\PsgXbeta5.zip
2014-05-26 17:45 - 2014-03-04 14:33 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-05-26 17:40 - 2014-05-26 17:40 - 00116076 _____ () C:\Users\Saimon\Downloads\A-Trainer.rar
2014-05-26 17:35 - 2014-05-26 17:35 - 00659797 _____ () C:\Users\Saimon\Downloads\VisualBoyAdvance-1.8.0-beta3.zip
2014-05-26 17:34 - 2014-05-26 17:34 - 00233009 _____ () C:\Users\Saimon\Downloads\pcsbeta1.zip
2014-05-25 17:21 - 2014-04-24 18:40 - 00000000 ____D () C:\Program Files\The Walking Dead Survival Instinct
2014-05-25 16:57 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2014-05-24 14:32 - 2014-05-24 14:31 - 00159016 _____ () C:\Windows\Minidump\052414-40482-01.dmp
2014-05-24 11:46 - 2014-05-24 11:46 - 00158920 _____ () C:\Windows\Minidump\052414-58110-01.dmp
2014-05-24 10:52 - 2014-04-08 11:03 - 00000000 ____D () C:\Users\Saimon\Documents\Games
2014-05-24 08:55 - 2014-05-24 08:55 - 00000000 ____D () C:\Program Files\Common Files\Skype
2014-05-24 08:55 - 2014-03-03 22:15 - 00000000 ___RD () C:\Program Files\Skype
2014-05-24 08:55 - 2014-03-03 22:15 - 00000000 ____D () C:\ProgramData\Skype
2014-05-23 20:56 - 2014-03-05 14:14 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\Tunngle
2014-05-23 20:56 - 2014-03-05 14:14 - 00000000 ____D () C:\ProgramData\Tunngle
2014-05-23 20:50 - 2014-03-05 19:26 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\TS3Client
2014-05-23 19:14 - 2014-03-05 18:03 - 00000000 _____ () C:\Windows\system32\Access.dat
2014-05-23 13:33 - 2009-07-14 06:53 - 00032638 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-05-22 21:44 - 2014-03-03 21:19 - 00000000 ____D () C:\Users\Saimon\Documents\BitLord
2014-05-22 21:41 - 2014-03-03 21:29 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\BitLord
2014-05-22 20:07 - 2014-03-03 21:11 - 00000000 ____D () C:\Program Files\Common Files\Steam
2014-05-21 16:16 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\LogFiles
2014-05-21 15:44 - 2014-05-21 15:43 - 00001743 _____ () C:\Users\Saimon\Desktop\farcry3 - Shortcut.lnk
2014-05-21 15:35 - 2014-05-21 15:35 - 00000000 ____D () C:\ProgramData\Orbit
2014-05-20 22:42 - 2014-04-03 18:06 - 00000000 ____D () C:\Users\Saimon\Desktop\livthad
2014-05-20 22:42 - 2014-03-09 16:37 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2014-05-20 22:40 - 2014-05-20 22:40 - 00002072 _____ () C:\Users\Saimon\Desktop\Warcraft III eSK.lnk
2014-05-20 22:40 - 2014-05-20 22:35 - 00000000 ____D () C:\Program Files\Warcraft III Frozen Throne eSK
2014-05-19 21:15 - 2014-05-19 21:15 - 00000218 _____ () C:\Users\Saimon\AppData\Local\recently-used.xbel
2014-05-19 06:57 - 2014-03-05 07:44 - 00089554 _____ () C:\Windows\PFRO.log
2014-05-18 17:16 - 2014-03-03 20:11 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-05-18 12:09 - 2014-05-18 12:09 - 00001243 _____ () C:\Users\Saimon\Desktop\Far Cry 3.lnk
2014-05-18 12:09 - 2014-05-18 12:09 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\Far Cry 3
2014-05-18 12:09 - 2014-05-18 12:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
2014-05-18 12:09 - 2014-04-30 16:52 - 00000000 ____D () C:\ProgramData\Package Cache
2014-05-18 12:09 - 2014-03-09 10:10 - 00000000 ____D () C:\Users\Saimon\Documents\My Games
2014-05-18 10:03 - 2014-04-04 15:16 - 00000000 ____D () C:\Program Files\Torchlight II
2014-05-18 10:03 - 2014-03-29 20:04 - 00000000 ____D () C:\Program Files\Thief
2014-05-18 09:58 - 2014-04-09 02:42 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AeriaGames
2014-05-18 09:58 - 2014-04-09 00:20 - 00000000 ____D () C:\AeriaGames
2014-05-18 09:51 - 2014-05-12 23:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2014-05-18 09:51 - 2009-07-14 06:52 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-05-18 09:15 - 2014-05-18 09:15 - 00000000 ____D () C:\Program Files\R.G. Mechanics
2014-05-17 15:52 - 2014-03-03 21:29 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitLord
2014-05-17 15:52 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-05-17 13:43 - 2014-05-17 13:42 - 51861434 _____ (PWO Team ) C:\Users\Saimon\Downloads\PWOSetup193.exe
2014-05-17 10:50 - 2014-05-12 23:00 - 00000000 ____D () C:\Program Files\Rockstar Games
2014-05-16 13:56 - 2014-03-03 19:50 - 00784900 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-05-16 13:50 - 2014-03-03 21:10 - 00000000 ____D () C:\Windows\system32\MRT
2014-05-16 13:44 - 2014-03-03 21:10 - 90547776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-05-15 21:36 - 2014-03-03 21:29 - 00001957 _____ () C:\Users\Saimon\Desktop\BitLord.lnk
2014-05-14 18:39 - 2014-05-14 18:39 - 00000000 ____D () C:\Users\Saimon\Documents\TecmoKoei
2014-05-14 14:39 - 2014-05-14 14:38 - 54213078 _____ () C:\Users\Saimon\Downloads\DW7 English Patch v1.1.rar
2014-05-14 13:31 - 2014-05-14 13:31 - 00000000 ____D () C:\Program Files\TecmoKoei
2014-05-13 22:16 - 2014-05-13 22:16 - 01182632 _____ () C:\Users\Saimon\Documents\gg.themepack
2014-05-13 21:46 - 2014-03-03 20:42 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-05-13 21:46 - 2014-03-03 20:42 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-05-13 16:23 - 2014-05-13 16:22 - 07818998 _____ () C:\Users\Saimon\Downloads\Grand.Theft.Auto.IV.Crack.Offline.Activation(1).zip
2014-05-13 16:19 - 2014-05-13 16:18 - 04901698 _____ () C:\Users\Saimon\Downloads\Grand.Theft.Auto.IV.Crack.Offline.Activation.zip
2014-05-13 14:33 - 2014-05-13 14:33 - 00000000 ____D () C:\Users\Saimon\Documents\Rockstar Games
2014-05-13 06:43 - 2014-05-13 06:43 - 00107888 _____ (Sony DADC Austria AG.) C:\Windows\system32\CmdLineExt.dll
2014-05-13 06:23 - 2014-05-13 06:23 - 00000455 _____ () C:\Windows\KB926239.log
2014-05-13 06:22 - 2014-05-13 06:22 - 00000445 _____ () C:\Windows\WMFDist11.log
2014-05-13 06:22 - 2014-05-13 06:22 - 00000444 _____ () C:\Windows\Wudf01000Inst.log
2014-05-13 06:22 - 2014-05-13 06:22 - 00000000 ____D () C:\Windows\system32\xlive
2014-05-13 06:22 - 2014-05-13 06:22 - 00000000 ____D () C:\Program Files\Microsoft Games for Windows - LIVE
2014-05-13 06:22 - 2014-03-05 14:48 - 00121095 _____ () C:\Windows\DirectX.log
2014-05-12 23:45 - 2014-05-12 23:45 - 00577063 _____ () C:\Users\Saimon\Downloads\Skyrim Character Editor V1_3 Zip-3142-1-3.zip
2014-05-12 19:06 - 2014-05-12 19:05 - 00158920 _____ () C:\Windows\Minidump\051214-41028-01.dmp
2014-05-12 18:54 - 2014-04-02 22:52 - 00000000 ____D () C:\Program Files\Heroes of Newerth
2014-05-12 09:54 - 2014-03-04 00:42 - 00000000 ____D () C:\Users\Saimon\Documents\DragonNest
2014-05-11 18:02 - 2014-04-05 18:00 - 00000000 ____D () C:\Users\Mamina\AppData\Roaming\Skype
2014-05-07 17:15 - 2014-03-03 19:46 - 00000000 ____D () C:\Users\Saimon
2014-05-06 01:32 - 2014-05-16 13:42 - 12347392 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-05-06 01:14 - 2014-05-16 13:42 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-05-06 01:14 - 2014-05-16 13:42 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-05-04 11:27 - 2014-05-04 10:14 - 00000000 ____D () C:\Users\Saimon\Documents\Prototype
2014-05-04 02:13 - 2014-03-31 14:45 - 00000000 ____D () C:\Users\Saimon\AppData\Local\Microsoft Help
2014-05-04 02:11 - 2014-05-01 13:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DayZ Standalone
2014-05-03 21:04 - 2014-05-03 21:04 - 00002393 _____ () C:\Users\Saimon\Desktop\Play PROTOTYPE.lnk
2014-05-02 19:07 - 2014-05-02 19:07 - 00001665 _____ () C:\Users\Public\Desktop\Play Hellgate.lnk
2014-05-02 18:59 - 2014-05-02 18:59 - 00000000 ____D () C:\T3Fun
2014-05-02 17:42 - 2014-05-02 17:42 - 00121266 _____ () C:\Users\Saimon\Downloads\hellgate-london-v1.0-dx9-trainer-plus7.zip
2014-05-02 17:37 - 2014-05-02 17:37 - 00000000 __RHD () C:\Users\Saimon\AppData\Roaming\SecuROM
2014-05-02 14:43 - 2014-05-02 14:43 - 00000000 ____D () C:\Program Files\Flagship Studios
2014-05-02 14:39 - 2014-03-04 12:34 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\DAEMON Tools Lite
2014-05-01 16:42 - 2014-05-01 16:26 - 582671666 _____ () C:\Users\Saimon\Downloads\Spider.mp4
2014-05-01 14:04 - 2014-05-01 14:04 - 00000000 ____D () C:\Users\Saimon\Documents\DayZ
2014-05-01 14:04 - 2014-05-01 14:04 - 00000000 ____D () C:\Users\Saimon\AppData\Local\DayZ
2014-05-01 14:02 - 2014-05-01 13:35 - 00000000 ____D () C:\Program Files\DayZ Standalone
2014-05-01 12:24 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\NDF
2014-04-30 16:53 - 2014-04-30 16:53 - 00000000 ____D () C:\Users\Saimon\AppData\Roaming\krita
2014-04-29 14:36 - 2014-04-29 14:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2014-04-27 18:57 - 2014-04-27 14:28 - 07579652 _____ () C:\Users\Saimon\Desktop\Budúcnosť kozmonautiky.pptx
2014-04-27 18:47 - 2014-04-27 18:47 - 14113777 _____ () C:\Users\Saimon\Downloads\Animation_ Boeing's Crew Space Transportation (CST)-100.mov
2014-04-27 18:46 - 2014-04-27 18:45 - 08530300 _____ () C:\Users\Saimon\Downloads\Animation_ Boeing's Crew Space Transportation (CST)-100.avi
Files to move or delete:
====================
C:\Users\Saimon\AppData\Roaming\msconfig.ini
Some content of TEMP:
====================
C:\Users\Saimon\AppData\Local\Temp\SkypeSetup.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\system32\winlogon.exe
[2014-05-16 13:41] - [2014-03-04 11:17] - 0304128 ____A (Microsoft Corporation) 998507B046BA314CE8245364C686FA67
C:\Windows\system32\wininit.exe => MD5 is legit
C:\Windows\system32\svchost.exe => MD5 is legit
C:\Windows\system32\services.exe => MD5 is legit
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => MD5 is legit
C:\Windows\system32\rpcss.dll => MD5 is legit
C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-05-23 07:30
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:465.66 GB) (Free:140.8 GB) NTFS
Available physical RAM: 898.62 MB
Total physical RAM: 2460.36 MB
Percentage of memory in use: 63%
==================== MBR and Partition Table ==================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: EA76F37E)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=466 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: AVG AntiVirus Free Edition 2014 (Disabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG AntiVirus Free Edition 2014 (Disabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664}
FW: AVG Internet Security 2014 (Disabled) {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Saimon\Desktop" je 83 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================