Ako odstránim program SpeedUpMyComputer?
Napsal: 18 čer 2014 15:26
Preinstaloval som PC a ked som si nainstaloval antivirus tak mi zahadne nainstalovalo aj program SpeedUpMyComputer a ked ho odinstalujem tak mi tam pre zmenu da program FixMyRegistry. Nasiel som na tomto fore uz ze niekto mal s tym problem ale asi pred rokom. Postupoval som ako ste radili jemu tak tu je moj log.
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-06-2014
Ran by M (administrator) on M-PC on 18-06-2014 16:24:09
Running from C:\Users\M\Desktop
Platform: Windows 7 Ultimate (X64) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\M\Desktop\FRSTLauncher.exe
(forum.viry.cz) C:\Users\M\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [183376 2014-05-14] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [737872 2014-05-27] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-21-890191530-4184947256-3143903046-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-890191530-4184947256-3143903046-1000\...\Run: [SpeedUpMyComputer] => C:\Program Files (x86)\SmartTweak\SpeedUpMyComputer\SpeedUpMyComputer.exe /ot /as /ss
HKU\S-1-5-21-890191530-4184947256-3143903046-1000\...\Run: [FixMyRegistry] => C:\Program Files (x86)\SmartTweak\FixMyRegistry\FixMyRegistry.exe [1886840 2014-05-26] ()
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x14E4B063F88ACF01
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
Tcpip\Parameters: [DhcpNameServer] 192.168.4.20 192.168.0.1
FireFox:
========
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
Chrome:
=======
CHR NewTab: "chrome-extension://olfeabkoenfaoljndfecamgilllcpiak/core/chrome/content/speedDial/speedDial.html"
CHR Extension: (Dokumenty Google) - C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-18]
CHR Extension: (Disk Google) - C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-18]
CHR Extension: (Seznam Lištička - Email) - C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2014-06-18]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2014-06-18]
CHR Extension: (YouTube) - C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-18]
CHR Extension: (Hľadať v Google) - C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-18]
CHR Extension: (Peňaženka Google) - C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-18]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2014-06-18]
CHR Extension: (Gmail) - C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-06-18]
==================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [430160 2014-05-27] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [430160 2014-05-27] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1039952 2014-05-27] (Avira Operations GmbH & Co. KG)
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [123984 2014-05-14] (Avira Operations GmbH & Co. KG)
==================== Drivers (Whitelisted) ====================
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [112080 2014-05-27] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130584 2014-05-27] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-05-27] (Avira Operations GmbH & Co. KG)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-06-18] (Disc Soft Ltd)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-06-18 16:24 - 2014-06-18 16:24 - 00006786 _____ () C:\Users\M\Desktop\FRST.txt
2014-06-18 16:21 - 2014-06-18 16:21 - 00001212 _____ () C:\Users\M\Desktop\FixMyRegistry.lnk
2014-06-18 16:15 - 2014-06-18 16:15 - 00000000 _____ () C:\prefs.js
2014-06-18 16:12 - 2014-06-18 16:24 - 00000000 ____D () C:\FRST
2014-06-18 16:11 - 2014-06-18 16:11 - 00112640 _____ (forum.viry.cz) C:\Users\M\Desktop\FRSTLauncher.exe
2014-06-18 16:09 - 2014-06-18 16:09 - 02081280 _____ (Farbar) C:\Users\M\Desktop\FRST64.exe
2014-06-18 16:07 - 2014-06-18 16:07 - 00000000 ____D () C:\Users\M\AppData\Roaming\Avira
2014-06-18 16:05 - 2014-06-18 16:03 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2014-06-18 16:01 - 2014-05-27 17:13 - 00130584 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2014-06-18 16:01 - 2014-05-27 17:13 - 00112080 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2014-06-18 16:01 - 2014-05-27 17:13 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2014-06-18 15:56 - 2014-06-18 16:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-06-18 15:56 - 2014-06-18 16:01 - 00000000 ____D () C:\ProgramData\Avira
2014-06-18 15:56 - 2014-06-18 16:01 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-06-18 15:56 - 2014-06-18 15:56 - 00001133 _____ () C:\Users\Public\Desktop\Avira.lnk
2014-06-18 15:54 - 2014-03-31 09:35 - 00270496 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-06-18 15:49 - 2009-11-25 21:47 - 01942856 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2014-06-18 15:49 - 2009-11-25 21:47 - 01130824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2014-06-18 15:49 - 2009-11-25 21:47 - 00444752 _____ (Microsoft Corporation) C:\Windows\system32\mscoree.dll
2014-06-18 15:49 - 2009-11-25 21:47 - 00320352 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHost.exe
2014-06-18 15:49 - 2009-11-25 21:47 - 00297808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscoree.dll
2014-06-18 15:49 - 2009-11-25 21:47 - 00295264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHost.exe
2014-06-18 15:49 - 2009-11-25 21:47 - 00109912 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHostProxy.dll
2014-06-18 15:49 - 2009-11-25 21:47 - 00099176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHostProxy.dll
2014-06-18 15:49 - 2009-11-25 21:47 - 00049472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netfxperf.dll
2014-06-18 15:49 - 2009-11-25 21:47 - 00048960 _____ (Microsoft Corporation) C:\Windows\system32\netfxperf.dll
2014-06-18 15:35 - 2014-06-18 15:55 - 00001332 _____ () C:\Windows\PFRO.log
2014-06-18 15:33 - 2014-06-18 15:48 - 00000000 ____D () C:\ProgramData\Package Cache
2014-06-18 15:32 - 2014-06-18 15:33 - 04536336 _____ (Avira Operations GmbH & Co. KG) C:\Users\M\Downloads\avira_en_av___ws.exe
2014-06-18 15:30 - 2014-06-18 16:21 - 00000000 ____D () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SmartTweak Software
2014-06-18 15:30 - 2014-06-18 16:21 - 00000000 ____D () C:\Program Files (x86)\SmartTweak
2014-06-18 15:30 - 2014-06-18 15:31 - 00000000 ____D () C:\Program Files (x86)\Seznam.cz
2014-06-18 15:29 - 2014-06-18 15:31 - 00000000 ____D () C:\Users\M\AppData\Roaming\Seznam.cz
2014-06-18 15:29 - 2014-06-18 15:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2014-06-18 15:28 - 2014-06-18 15:32 - 00000000 ____D () C:\Users\M\AppData\Roaming\DAEMON Tools Lite
2014-06-18 15:28 - 2014-06-18 15:28 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2014-06-18 15:28 - 2014-06-18 15:28 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
2014-06-18 15:27 - 2014-06-18 15:30 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite
2014-06-18 15:25 - 2014-06-18 15:26 - 19862734 _____ () C:\Users\M\Downloads\DTLite-setup.exe
2014-06-18 15:25 - 2014-06-18 15:25 - 00002267 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-06-18 15:25 - 2014-06-18 15:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-06-18 15:23 - 2014-06-18 15:55 - 00000922 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-06-18 15:23 - 2014-06-18 15:28 - 00000926 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-06-18 15:23 - 2014-06-18 15:25 - 00000000 ____D () C:\Users\M\AppData\Local\Google
2014-06-18 15:23 - 2014-06-18 15:24 - 00000000 ____D () C:\Program Files (x86)\Google
2014-06-18 15:23 - 2014-06-18 15:23 - 00003922 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-06-18 15:23 - 2014-06-18 15:23 - 00003670 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-06-18 15:22 - 2014-06-18 15:23 - 00000000 ____D () C:\Users\M\AppData\Local\Deployment
2014-06-18 15:22 - 2014-06-18 15:22 - 00057560 _____ () C:\Users\M\AppData\Local\GDIPFONTCACHEV1.DAT
2014-06-18 15:22 - 2014-06-18 15:22 - 00000000 ____D () C:\Users\M\AppData\Local\Apps\2.0
2014-06-18 15:20 - 2012-02-15 08:27 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2014-06-18 15:20 - 2012-02-15 07:44 - 00826368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2014-06-18 15:20 - 2012-02-15 06:47 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-06-18 15:20 - 2012-02-15 06:46 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2014-06-18 15:20 - 2010-01-09 09:19 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\cabview.dll
2014-06-18 15:20 - 2010-01-09 08:52 - 00132608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cabview.dll
2014-06-18 15:15 - 2012-06-03 00:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-06-18 15:15 - 2012-06-03 00:19 - 00701976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-06-18 15:15 - 2012-06-03 00:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-06-18 15:15 - 2012-06-03 00:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-06-18 15:15 - 2012-06-03 00:19 - 00038424 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-06-18 15:15 - 2012-06-03 00:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-06-18 15:15 - 2012-06-03 00:15 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-06-18 15:15 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-06-18 15:15 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-06-18 14:16 - 2014-06-18 16:24 - 00000000 ____D () C:\Users\M\AppData\Local\Temp
2014-06-18 14:16 - 2014-06-18 14:16 - 00001443 _____ () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-06-18 14:16 - 2014-06-18 14:16 - 00001409 _____ () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2014-06-18 14:16 - 2014-06-18 14:16 - 00000020 ___SH () C:\Users\M\ntuser.ini
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Šablony
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Soubory cookie
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Poslední
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Okolní tiskárny
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Okolní síť
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Nabídka Start
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Dokumenty
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Documents\Obrázky
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Documents\Hudba
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Documents\Filmy
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Data aplikací
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\AppData\Local\Data aplikací
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 ___RD () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 ___RD () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 ____D () C:\Users\M\AppData\Local\VirtualStore
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 ____D () C:\Users\M
2014-06-18 14:16 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-06-18 14:16 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Public\Documents\Obrázky
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Public\Documents\Hudba
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Public\Documents\Filmy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Šablony
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Soubory cookie
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Poslední
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Okolní tiskárny
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Okolní síť
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Nabídka Start
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Dokumenty
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Documents\Obrázky
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Documents\Hudba
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Documents\Filmy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Data aplikací
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Data aplikací
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default User\Documents\Obrázky
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default User\Documents\Hudba
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default User\Documents\Filmy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Data aplikací
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Šablony
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Plocha
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Oblíbené položky
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Nabídka Start
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Dokumenty
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Data aplikací
2014-06-18 14:01 - 2014-06-18 14:15 - 00000000 ____D () C:\Windows\Panther
2014-06-18 13:44 - 2014-06-18 14:59 - 00000000 ____D () C:\Windows.old
2014-06-18 13:07 - 2014-06-18 13:07 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2014-06-18 13:06 - 2014-06-18 13:06 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2014-06-18 13:06 - 2014-06-18 13:06 - 00001313 _____ () C:\Windows\TSSysprep.log
2014-06-18 13:05 - 2014-06-18 15:58 - 00381500 _____ () C:\Windows\WindowsUpdate.log
==================== One Month Modified Files and Folders =======
2014-06-18 16:24 - 2014-06-18 16:24 - 00006786 _____ () C:\Users\M\Desktop\FRST.txt
2014-06-18 16:24 - 2014-06-18 16:12 - 00000000 ____D () C:\FRST
2014-06-18 16:24 - 2014-06-18 14:16 - 00000000 ____D () C:\Users\M\AppData\Local\Temp
2014-06-18 16:21 - 2014-06-18 16:21 - 00001212 _____ () C:\Users\M\Desktop\FixMyRegistry.lnk
2014-06-18 16:21 - 2014-06-18 15:30 - 00000000 ____D () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SmartTweak Software
2014-06-18 16:21 - 2014-06-18 15:30 - 00000000 ____D () C:\Program Files (x86)\SmartTweak
2014-06-18 16:15 - 2014-06-18 16:15 - 00000000 _____ () C:\prefs.js
2014-06-18 16:11 - 2014-06-18 16:11 - 00112640 _____ (forum.viry.cz) C:\Users\M\Desktop\FRSTLauncher.exe
2014-06-18 16:09 - 2014-06-18 16:09 - 02081280 _____ (Farbar) C:\Users\M\Desktop\FRST64.exe
2014-06-18 16:07 - 2014-06-18 16:07 - 00000000 ____D () C:\Users\M\AppData\Roaming\Avira
2014-06-18 16:03 - 2014-06-18 16:05 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2014-06-18 16:02 - 2014-06-18 15:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-06-18 16:02 - 2009-07-14 06:45 - 00014016 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-06-18 16:02 - 2009-07-14 06:45 - 00014016 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-06-18 16:01 - 2014-06-18 15:56 - 00000000 ____D () C:\ProgramData\Avira
2014-06-18 16:01 - 2014-06-18 15:56 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-06-18 16:01 - 2009-07-14 17:18 - 00623144 _____ () C:\Windows\system32\perfh005.dat
2014-06-18 16:01 - 2009-07-14 17:18 - 00121788 _____ () C:\Windows\system32\perfc005.dat
2014-06-18 16:01 - 2009-07-14 07:13 - 01470062 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-06-18 15:58 - 2014-06-18 13:05 - 00381500 _____ () C:\Windows\WindowsUpdate.log
2014-06-18 15:56 - 2014-06-18 15:56 - 00001133 _____ () C:\Users\Public\Desktop\Avira.lnk
2014-06-18 15:55 - 2014-06-18 15:35 - 00001332 _____ () C:\Windows\PFRO.log
2014-06-18 15:55 - 2014-06-18 15:23 - 00000922 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-06-18 15:55 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-06-18 15:55 - 2009-07-14 06:51 - 00017265 _____ () C:\Windows\setupact.log
2014-06-18 15:48 - 2014-06-18 15:33 - 00000000 ____D () C:\ProgramData\Package Cache
2014-06-18 15:33 - 2014-06-18 15:32 - 04536336 _____ (Avira Operations GmbH & Co. KG) C:\Users\M\Downloads\avira_en_av___ws.exe
2014-06-18 15:32 - 2014-06-18 15:28 - 00000000 ____D () C:\Users\M\AppData\Roaming\DAEMON Tools Lite
2014-06-18 15:31 - 2014-06-18 15:30 - 00000000 ____D () C:\Program Files (x86)\Seznam.cz
2014-06-18 15:31 - 2014-06-18 15:29 - 00000000 ____D () C:\Users\M\AppData\Roaming\Seznam.cz
2014-06-18 15:30 - 2014-06-18 15:27 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite
2014-06-18 15:29 - 2014-06-18 15:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2014-06-18 15:28 - 2014-06-18 15:28 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2014-06-18 15:28 - 2014-06-18 15:28 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
2014-06-18 15:28 - 2014-06-18 15:23 - 00000926 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-06-18 15:26 - 2014-06-18 15:25 - 19862734 _____ () C:\Users\M\Downloads\DTLite-setup.exe
2014-06-18 15:25 - 2014-06-18 15:25 - 00002267 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-06-18 15:25 - 2014-06-18 15:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-06-18 15:25 - 2014-06-18 15:23 - 00000000 ____D () C:\Users\M\AppData\Local\Google
2014-06-18 15:24 - 2014-06-18 15:23 - 00000000 ____D () C:\Program Files (x86)\Google
2014-06-18 15:23 - 2014-06-18 15:23 - 00003922 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-06-18 15:23 - 2014-06-18 15:23 - 00003670 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-06-18 15:23 - 2014-06-18 15:22 - 00000000 ____D () C:\Users\M\AppData\Local\Deployment
2014-06-18 15:22 - 2014-06-18 15:22 - 00057560 _____ () C:\Users\M\AppData\Local\GDIPFONTCACHEV1.DAT
2014-06-18 15:22 - 2014-06-18 15:22 - 00000000 ____D () C:\Users\M\AppData\Local\Apps\2.0
2014-06-18 15:14 - 2009-07-14 07:32 - 00000000 ____D () C:\Windows\system32\restore
2014-06-18 14:59 - 2014-06-18 13:44 - 00000000 ____D () C:\Windows.old
2014-06-18 14:16 - 2014-06-18 14:16 - 00001443 _____ () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-06-18 14:16 - 2014-06-18 14:16 - 00001409 _____ () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2014-06-18 14:16 - 2014-06-18 14:16 - 00000020 ___SH () C:\Users\M\ntuser.ini
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Šablony
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Soubory cookie
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Poslední
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Okolní tiskárny
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Okolní síť
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Nabídka Start
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Dokumenty
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Documents\Obrázky
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Documents\Hudba
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Documents\Filmy
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Data aplikací
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\AppData\Local\Data aplikací
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 ___RD () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 ___RD () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 ____D () C:\Users\M\AppData\Local\VirtualStore
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 ____D () C:\Users\M
2014-06-18 14:15 - 2014-06-18 14:01 - 00000000 ____D () C:\Windows\Panther
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Public\Documents\Obrázky
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Public\Documents\Hudba
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Public\Documents\Filmy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Šablony
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Soubory cookie
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Poslední
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Okolní tiskárny
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Okolní síť
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Nabídka Start
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Dokumenty
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Documents\Obrázky
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Documents\Hudba
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Documents\Filmy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Data aplikací
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Data aplikací
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default User\Documents\Obrázky
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default User\Documents\Hudba
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default User\Documents\Filmy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Data aplikací
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Šablony
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Plocha
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Oblíbené položky
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Nabídka Start
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Dokumenty
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Data aplikací
2014-06-18 14:14 - 2013-01-13 04:58 - 00000000 __SHD () C:\Recovery
2014-06-18 14:14 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default
2014-06-18 14:14 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Recovery
2014-06-18 14:14 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Windows NT
2014-06-18 14:06 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-06-18 14:01 - 2009-07-14 07:38 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG
2014-06-18 14:01 - 2009-07-14 07:32 - 00028672 _____ () C:\Windows\system32\config\BCD-Template
2014-06-18 14:00 - 2009-07-14 06:45 - 00000000 ____D () C:\Windows\Setup
2014-06-18 13:13 - 2009-07-14 06:51 - 00000269 _____ () C:\Windows\setuperr.log
2014-06-18 13:07 - 2014-06-18 13:07 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2014-06-18 13:07 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-06-18 13:07 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-06-18 13:07 - 2009-07-14 05:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-06-18 13:06 - 2014-06-18 13:06 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2014-06-18 13:06 - 2014-06-18 13:06 - 00001313 _____ () C:\Windows\TSSysprep.log
2014-06-18 13:06 - 2009-07-14 06:46 - 00001774 _____ () C:\Windows\DtcInstall.log
2014-06-18 13:06 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\sysprep
2014-06-18 13:03 - 2009-07-14 17:37 - 00000000 ____D () C:\Windows\CSC
2014-06-18 13:02 - 2009-07-14 06:45 - 00274736 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-05-27 17:13 - 2014-06-18 16:01 - 00130584 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2014-05-27 17:13 - 2014-06-18 16:01 - 00112080 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2014-05-27 17:13 - 2014-06-18 16:01 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
Some content of TEMP:
====================
C:\Users\M\AppData\Local\Temp\avgnt.exe
C:\Users\M\AppData\Local\Temp\bitool.dll
C:\Users\M\AppData\Local\Temp\FixMyRegistry.exe
C:\Users\M\AppData\Local\Temp\listicka-partner-13415-1.1.2-offline.exe
C:\Users\M\AppData\Local\Temp\SpeedUpMyComputer.exe
C:\Users\M\AppData\Local\Temp\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-06-18 13:02
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:280.8 GB) (Free:165.62 GB) NTFS
Drive d: (HP_RECOVERY) (Fixed) (Total:15 GB) (Free:2.42 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (HP_TOOLS) (Fixed) (Total:1.99 GB) (Free:1.48 GB) FAT32
Drive f: (ZOO_TYCN) (CDROM) (Total:0.53 GB) (Free:0 GB) CDFS
Drive h: (SYSTEM) (Fixed) (Total:0.29 GB) (Free:0.25 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Available physical RAM: 842.95 MB
Total physical RAM: 1903.43 MB
Percentage of memory in use: 55%
==================== MBR and Partition Table ==================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: BCA4165D)
Partition 1: (Active) - (Size=300 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=281 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=15 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=2 GB) - (Type=0C)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Avira Desktop (Disabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Desktop (Disabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\M\Desktop" je 2 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-06-2014
Ran by M (administrator) on M-PC on 18-06-2014 16:24:09
Running from C:\Users\M\Desktop
Platform: Windows 7 Ultimate (X64) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\M\Desktop\FRSTLauncher.exe
(forum.viry.cz) C:\Users\M\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [183376 2014-05-14] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [737872 2014-05-27] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-21-890191530-4184947256-3143903046-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-890191530-4184947256-3143903046-1000\...\Run: [SpeedUpMyComputer] => C:\Program Files (x86)\SmartTweak\SpeedUpMyComputer\SpeedUpMyComputer.exe /ot /as /ss
HKU\S-1-5-21-890191530-4184947256-3143903046-1000\...\Run: [FixMyRegistry] => C:\Program Files (x86)\SmartTweak\FixMyRegistry\FixMyRegistry.exe [1886840 2014-05-26] ()
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x14E4B063F88ACF01
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
Tcpip\Parameters: [DhcpNameServer] 192.168.4.20 192.168.0.1
FireFox:
========
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
Chrome:
=======
CHR NewTab: "chrome-extension://olfeabkoenfaoljndfecamgilllcpiak/core/chrome/content/speedDial/speedDial.html"
CHR Extension: (Dokumenty Google) - C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-18]
CHR Extension: (Disk Google) - C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-18]
CHR Extension: (Seznam Lištička - Email) - C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2014-06-18]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2014-06-18]
CHR Extension: (YouTube) - C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-18]
CHR Extension: (Hľadať v Google) - C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-18]
CHR Extension: (Peňaženka Google) - C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-18]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2014-06-18]
CHR Extension: (Gmail) - C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-06-18]
==================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [430160 2014-05-27] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [430160 2014-05-27] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1039952 2014-05-27] (Avira Operations GmbH & Co. KG)
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [123984 2014-05-14] (Avira Operations GmbH & Co. KG)
==================== Drivers (Whitelisted) ====================
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [112080 2014-05-27] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130584 2014-05-27] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-05-27] (Avira Operations GmbH & Co. KG)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-06-18] (Disc Soft Ltd)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-06-18 16:24 - 2014-06-18 16:24 - 00006786 _____ () C:\Users\M\Desktop\FRST.txt
2014-06-18 16:21 - 2014-06-18 16:21 - 00001212 _____ () C:\Users\M\Desktop\FixMyRegistry.lnk
2014-06-18 16:15 - 2014-06-18 16:15 - 00000000 _____ () C:\prefs.js
2014-06-18 16:12 - 2014-06-18 16:24 - 00000000 ____D () C:\FRST
2014-06-18 16:11 - 2014-06-18 16:11 - 00112640 _____ (forum.viry.cz) C:\Users\M\Desktop\FRSTLauncher.exe
2014-06-18 16:09 - 2014-06-18 16:09 - 02081280 _____ (Farbar) C:\Users\M\Desktop\FRST64.exe
2014-06-18 16:07 - 2014-06-18 16:07 - 00000000 ____D () C:\Users\M\AppData\Roaming\Avira
2014-06-18 16:05 - 2014-06-18 16:03 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2014-06-18 16:01 - 2014-05-27 17:13 - 00130584 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2014-06-18 16:01 - 2014-05-27 17:13 - 00112080 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2014-06-18 16:01 - 2014-05-27 17:13 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2014-06-18 15:56 - 2014-06-18 16:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-06-18 15:56 - 2014-06-18 16:01 - 00000000 ____D () C:\ProgramData\Avira
2014-06-18 15:56 - 2014-06-18 16:01 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-06-18 15:56 - 2014-06-18 15:56 - 00001133 _____ () C:\Users\Public\Desktop\Avira.lnk
2014-06-18 15:54 - 2014-03-31 09:35 - 00270496 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-06-18 15:49 - 2009-11-25 21:47 - 01942856 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2014-06-18 15:49 - 2009-11-25 21:47 - 01130824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2014-06-18 15:49 - 2009-11-25 21:47 - 00444752 _____ (Microsoft Corporation) C:\Windows\system32\mscoree.dll
2014-06-18 15:49 - 2009-11-25 21:47 - 00320352 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHost.exe
2014-06-18 15:49 - 2009-11-25 21:47 - 00297808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscoree.dll
2014-06-18 15:49 - 2009-11-25 21:47 - 00295264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHost.exe
2014-06-18 15:49 - 2009-11-25 21:47 - 00109912 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHostProxy.dll
2014-06-18 15:49 - 2009-11-25 21:47 - 00099176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHostProxy.dll
2014-06-18 15:49 - 2009-11-25 21:47 - 00049472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netfxperf.dll
2014-06-18 15:49 - 2009-11-25 21:47 - 00048960 _____ (Microsoft Corporation) C:\Windows\system32\netfxperf.dll
2014-06-18 15:35 - 2014-06-18 15:55 - 00001332 _____ () C:\Windows\PFRO.log
2014-06-18 15:33 - 2014-06-18 15:48 - 00000000 ____D () C:\ProgramData\Package Cache
2014-06-18 15:32 - 2014-06-18 15:33 - 04536336 _____ (Avira Operations GmbH & Co. KG) C:\Users\M\Downloads\avira_en_av___ws.exe
2014-06-18 15:30 - 2014-06-18 16:21 - 00000000 ____D () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SmartTweak Software
2014-06-18 15:30 - 2014-06-18 16:21 - 00000000 ____D () C:\Program Files (x86)\SmartTweak
2014-06-18 15:30 - 2014-06-18 15:31 - 00000000 ____D () C:\Program Files (x86)\Seznam.cz
2014-06-18 15:29 - 2014-06-18 15:31 - 00000000 ____D () C:\Users\M\AppData\Roaming\Seznam.cz
2014-06-18 15:29 - 2014-06-18 15:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2014-06-18 15:28 - 2014-06-18 15:32 - 00000000 ____D () C:\Users\M\AppData\Roaming\DAEMON Tools Lite
2014-06-18 15:28 - 2014-06-18 15:28 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2014-06-18 15:28 - 2014-06-18 15:28 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
2014-06-18 15:27 - 2014-06-18 15:30 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite
2014-06-18 15:25 - 2014-06-18 15:26 - 19862734 _____ () C:\Users\M\Downloads\DTLite-setup.exe
2014-06-18 15:25 - 2014-06-18 15:25 - 00002267 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-06-18 15:25 - 2014-06-18 15:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-06-18 15:23 - 2014-06-18 15:55 - 00000922 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-06-18 15:23 - 2014-06-18 15:28 - 00000926 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-06-18 15:23 - 2014-06-18 15:25 - 00000000 ____D () C:\Users\M\AppData\Local\Google
2014-06-18 15:23 - 2014-06-18 15:24 - 00000000 ____D () C:\Program Files (x86)\Google
2014-06-18 15:23 - 2014-06-18 15:23 - 00003922 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-06-18 15:23 - 2014-06-18 15:23 - 00003670 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-06-18 15:22 - 2014-06-18 15:23 - 00000000 ____D () C:\Users\M\AppData\Local\Deployment
2014-06-18 15:22 - 2014-06-18 15:22 - 00057560 _____ () C:\Users\M\AppData\Local\GDIPFONTCACHEV1.DAT
2014-06-18 15:22 - 2014-06-18 15:22 - 00000000 ____D () C:\Users\M\AppData\Local\Apps\2.0
2014-06-18 15:20 - 2012-02-15 08:27 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2014-06-18 15:20 - 2012-02-15 07:44 - 00826368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2014-06-18 15:20 - 2012-02-15 06:47 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-06-18 15:20 - 2012-02-15 06:46 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2014-06-18 15:20 - 2010-01-09 09:19 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\cabview.dll
2014-06-18 15:20 - 2010-01-09 08:52 - 00132608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cabview.dll
2014-06-18 15:15 - 2012-06-03 00:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-06-18 15:15 - 2012-06-03 00:19 - 00701976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-06-18 15:15 - 2012-06-03 00:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-06-18 15:15 - 2012-06-03 00:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-06-18 15:15 - 2012-06-03 00:19 - 00038424 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-06-18 15:15 - 2012-06-03 00:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-06-18 15:15 - 2012-06-03 00:15 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-06-18 15:15 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-06-18 15:15 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-06-18 14:16 - 2014-06-18 16:24 - 00000000 ____D () C:\Users\M\AppData\Local\Temp
2014-06-18 14:16 - 2014-06-18 14:16 - 00001443 _____ () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-06-18 14:16 - 2014-06-18 14:16 - 00001409 _____ () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2014-06-18 14:16 - 2014-06-18 14:16 - 00000020 ___SH () C:\Users\M\ntuser.ini
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Šablony
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Soubory cookie
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Poslední
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Okolní tiskárny
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Okolní síť
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Nabídka Start
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Dokumenty
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Documents\Obrázky
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Documents\Hudba
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Documents\Filmy
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Data aplikací
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\AppData\Local\Data aplikací
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 ___RD () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 ___RD () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 ____D () C:\Users\M\AppData\Local\VirtualStore
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 ____D () C:\Users\M
2014-06-18 14:16 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-06-18 14:16 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Public\Documents\Obrázky
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Public\Documents\Hudba
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Public\Documents\Filmy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Šablony
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Soubory cookie
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Poslední
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Okolní tiskárny
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Okolní síť
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Nabídka Start
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Dokumenty
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Documents\Obrázky
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Documents\Hudba
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Documents\Filmy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Data aplikací
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Data aplikací
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default User\Documents\Obrázky
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default User\Documents\Hudba
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default User\Documents\Filmy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Data aplikací
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Šablony
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Plocha
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Oblíbené položky
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Nabídka Start
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Dokumenty
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Data aplikací
2014-06-18 14:01 - 2014-06-18 14:15 - 00000000 ____D () C:\Windows\Panther
2014-06-18 13:44 - 2014-06-18 14:59 - 00000000 ____D () C:\Windows.old
2014-06-18 13:07 - 2014-06-18 13:07 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2014-06-18 13:06 - 2014-06-18 13:06 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2014-06-18 13:06 - 2014-06-18 13:06 - 00001313 _____ () C:\Windows\TSSysprep.log
2014-06-18 13:05 - 2014-06-18 15:58 - 00381500 _____ () C:\Windows\WindowsUpdate.log
==================== One Month Modified Files and Folders =======
2014-06-18 16:24 - 2014-06-18 16:24 - 00006786 _____ () C:\Users\M\Desktop\FRST.txt
2014-06-18 16:24 - 2014-06-18 16:12 - 00000000 ____D () C:\FRST
2014-06-18 16:24 - 2014-06-18 14:16 - 00000000 ____D () C:\Users\M\AppData\Local\Temp
2014-06-18 16:21 - 2014-06-18 16:21 - 00001212 _____ () C:\Users\M\Desktop\FixMyRegistry.lnk
2014-06-18 16:21 - 2014-06-18 15:30 - 00000000 ____D () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SmartTweak Software
2014-06-18 16:21 - 2014-06-18 15:30 - 00000000 ____D () C:\Program Files (x86)\SmartTweak
2014-06-18 16:15 - 2014-06-18 16:15 - 00000000 _____ () C:\prefs.js
2014-06-18 16:11 - 2014-06-18 16:11 - 00112640 _____ (forum.viry.cz) C:\Users\M\Desktop\FRSTLauncher.exe
2014-06-18 16:09 - 2014-06-18 16:09 - 02081280 _____ (Farbar) C:\Users\M\Desktop\FRST64.exe
2014-06-18 16:07 - 2014-06-18 16:07 - 00000000 ____D () C:\Users\M\AppData\Roaming\Avira
2014-06-18 16:03 - 2014-06-18 16:05 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2014-06-18 16:02 - 2014-06-18 15:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-06-18 16:02 - 2009-07-14 06:45 - 00014016 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-06-18 16:02 - 2009-07-14 06:45 - 00014016 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-06-18 16:01 - 2014-06-18 15:56 - 00000000 ____D () C:\ProgramData\Avira
2014-06-18 16:01 - 2014-06-18 15:56 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-06-18 16:01 - 2009-07-14 17:18 - 00623144 _____ () C:\Windows\system32\perfh005.dat
2014-06-18 16:01 - 2009-07-14 17:18 - 00121788 _____ () C:\Windows\system32\perfc005.dat
2014-06-18 16:01 - 2009-07-14 07:13 - 01470062 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-06-18 15:58 - 2014-06-18 13:05 - 00381500 _____ () C:\Windows\WindowsUpdate.log
2014-06-18 15:56 - 2014-06-18 15:56 - 00001133 _____ () C:\Users\Public\Desktop\Avira.lnk
2014-06-18 15:55 - 2014-06-18 15:35 - 00001332 _____ () C:\Windows\PFRO.log
2014-06-18 15:55 - 2014-06-18 15:23 - 00000922 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-06-18 15:55 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-06-18 15:55 - 2009-07-14 06:51 - 00017265 _____ () C:\Windows\setupact.log
2014-06-18 15:48 - 2014-06-18 15:33 - 00000000 ____D () C:\ProgramData\Package Cache
2014-06-18 15:33 - 2014-06-18 15:32 - 04536336 _____ (Avira Operations GmbH & Co. KG) C:\Users\M\Downloads\avira_en_av___ws.exe
2014-06-18 15:32 - 2014-06-18 15:28 - 00000000 ____D () C:\Users\M\AppData\Roaming\DAEMON Tools Lite
2014-06-18 15:31 - 2014-06-18 15:30 - 00000000 ____D () C:\Program Files (x86)\Seznam.cz
2014-06-18 15:31 - 2014-06-18 15:29 - 00000000 ____D () C:\Users\M\AppData\Roaming\Seznam.cz
2014-06-18 15:30 - 2014-06-18 15:27 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite
2014-06-18 15:29 - 2014-06-18 15:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2014-06-18 15:28 - 2014-06-18 15:28 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2014-06-18 15:28 - 2014-06-18 15:28 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
2014-06-18 15:28 - 2014-06-18 15:23 - 00000926 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-06-18 15:26 - 2014-06-18 15:25 - 19862734 _____ () C:\Users\M\Downloads\DTLite-setup.exe
2014-06-18 15:25 - 2014-06-18 15:25 - 00002267 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-06-18 15:25 - 2014-06-18 15:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-06-18 15:25 - 2014-06-18 15:23 - 00000000 ____D () C:\Users\M\AppData\Local\Google
2014-06-18 15:24 - 2014-06-18 15:23 - 00000000 ____D () C:\Program Files (x86)\Google
2014-06-18 15:23 - 2014-06-18 15:23 - 00003922 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-06-18 15:23 - 2014-06-18 15:23 - 00003670 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-06-18 15:23 - 2014-06-18 15:22 - 00000000 ____D () C:\Users\M\AppData\Local\Deployment
2014-06-18 15:22 - 2014-06-18 15:22 - 00057560 _____ () C:\Users\M\AppData\Local\GDIPFONTCACHEV1.DAT
2014-06-18 15:22 - 2014-06-18 15:22 - 00000000 ____D () C:\Users\M\AppData\Local\Apps\2.0
2014-06-18 15:14 - 2009-07-14 07:32 - 00000000 ____D () C:\Windows\system32\restore
2014-06-18 14:59 - 2014-06-18 13:44 - 00000000 ____D () C:\Windows.old
2014-06-18 14:16 - 2014-06-18 14:16 - 00001443 _____ () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-06-18 14:16 - 2014-06-18 14:16 - 00001409 _____ () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2014-06-18 14:16 - 2014-06-18 14:16 - 00000020 ___SH () C:\Users\M\ntuser.ini
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Šablony
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Soubory cookie
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Poslední
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Okolní tiskárny
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Okolní síť
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Nabídka Start
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Dokumenty
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Documents\Obrázky
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Documents\Hudba
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Documents\Filmy
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\Data aplikací
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 _SHDL () C:\Users\M\AppData\Local\Data aplikací
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 ___RD () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 ___RD () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 ____D () C:\Users\M\AppData\Local\VirtualStore
2014-06-18 14:16 - 2014-06-18 14:16 - 00000000 ____D () C:\Users\M
2014-06-18 14:15 - 2014-06-18 14:01 - 00000000 ____D () C:\Windows\Panther
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Public\Documents\Obrázky
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Public\Documents\Hudba
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Public\Documents\Filmy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Šablony
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Soubory cookie
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Poslední
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Okolní tiskárny
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Okolní síť
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Nabídka Start
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Dokumenty
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Documents\Obrázky
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Documents\Hudba
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Documents\Filmy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\Data aplikací
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Data aplikací
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default User\Documents\Obrázky
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default User\Documents\Hudba
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default User\Documents\Filmy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Data aplikací
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Šablony
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Plocha
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Oblíbené položky
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Nabídka Start
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Dokumenty
2014-06-18 14:14 - 2014-06-18 14:14 - 00000000 _SHDL () C:\ProgramData\Data aplikací
2014-06-18 14:14 - 2013-01-13 04:58 - 00000000 __SHD () C:\Recovery
2014-06-18 14:14 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default
2014-06-18 14:14 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Recovery
2014-06-18 14:14 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Windows NT
2014-06-18 14:06 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-06-18 14:01 - 2009-07-14 07:38 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG
2014-06-18 14:01 - 2009-07-14 07:32 - 00028672 _____ () C:\Windows\system32\config\BCD-Template
2014-06-18 14:00 - 2009-07-14 06:45 - 00000000 ____D () C:\Windows\Setup
2014-06-18 13:13 - 2009-07-14 06:51 - 00000269 _____ () C:\Windows\setuperr.log
2014-06-18 13:07 - 2014-06-18 13:07 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2014-06-18 13:07 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-06-18 13:07 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-06-18 13:07 - 2009-07-14 05:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-06-18 13:06 - 2014-06-18 13:06 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2014-06-18 13:06 - 2014-06-18 13:06 - 00001313 _____ () C:\Windows\TSSysprep.log
2014-06-18 13:06 - 2009-07-14 06:46 - 00001774 _____ () C:\Windows\DtcInstall.log
2014-06-18 13:06 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\sysprep
2014-06-18 13:03 - 2009-07-14 17:37 - 00000000 ____D () C:\Windows\CSC
2014-06-18 13:02 - 2009-07-14 06:45 - 00274736 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-05-27 17:13 - 2014-06-18 16:01 - 00130584 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2014-05-27 17:13 - 2014-06-18 16:01 - 00112080 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2014-05-27 17:13 - 2014-06-18 16:01 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
Some content of TEMP:
====================
C:\Users\M\AppData\Local\Temp\avgnt.exe
C:\Users\M\AppData\Local\Temp\bitool.dll
C:\Users\M\AppData\Local\Temp\FixMyRegistry.exe
C:\Users\M\AppData\Local\Temp\listicka-partner-13415-1.1.2-offline.exe
C:\Users\M\AppData\Local\Temp\SpeedUpMyComputer.exe
C:\Users\M\AppData\Local\Temp\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-06-18 13:02
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:280.8 GB) (Free:165.62 GB) NTFS
Drive d: (HP_RECOVERY) (Fixed) (Total:15 GB) (Free:2.42 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (HP_TOOLS) (Fixed) (Total:1.99 GB) (Free:1.48 GB) FAT32
Drive f: (ZOO_TYCN) (CDROM) (Total:0.53 GB) (Free:0 GB) CDFS
Drive h: (SYSTEM) (Fixed) (Total:0.29 GB) (Free:0.25 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Available physical RAM: 842.95 MB
Total physical RAM: 1903.43 MB
Percentage of memory in use: 55%
==================== MBR and Partition Table ==================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: BCA4165D)
Partition 1: (Active) - (Size=300 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=281 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=15 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=2 GB) - (Type=0C)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Avira Desktop (Disabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Desktop (Disabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\M\Desktop" je 2 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================