Vkládání reklam a otevírání nových oken
Napsal: 23 črc 2014 07:29
Zdravím,
zřejmě jsem si nechtěne naisntalovat nějakého šedivce do PC, protožeš mi u všech prohlížečů vkládá reklamy tam, kde nemají být, otevírá sám nová okna a některá slova na stránkách podtrhuje a mění je v odkazy. Snažil jsem se něco najít pomocí antivirů a programů na detekci škodlivých programů, ale bohužel se mi nezdařilo problém vyřešit. Prosím o pomoc
Log:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:21-07-2014
Ran by xhorak06 (administrator) on HORAK on 23-07-2014 08:19:39
Running from C:\Users\xhorak06\Desktop
Platform: Microsoft Windows 7 Professional Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ABBYY) C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
() C:\Program Files\DVRMSToolbox\DTBFWService.exe
(Nero AG) C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe
() C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.2.5952.0\AdAwareService.exe
() C:\Program Files\Tyrell\MCEBuddy\MCEBuddySvc.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\VS7DEBUG\mdm.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Microsoft Online Services\MSOIDSVC.EXE
() C:\Program Files\Palm, Inc\novacom\x86\novacomd.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Microsoft Online Services\MSOIDSVCM.EXE
() C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
(PC Tools) C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
(QIP.ru) C:\Program Files\QipGuard\QipGuard.exe
() C:\Program Files\HTC\HTC Sync Manager\HTC Sync\adb.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Epson Software\Event Manager\EEventManager.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(PC Tools) C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe
() C:\Program Files\DivX\DivX Update\DivXUpdate.exe
(Adobe Systems Inc.) C:\Program Files\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Windows\WindowsMobile\wmdcBase.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
() C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.2.5952.0\AdAwareTray.exe
(NirSoft) C:\Program Files\NirSoft\Volumouse\volumouse.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
(QIP) C:\Program Files\QIP 2012\qip.exe
(Dragon Global) C:\Program Files\Dragon Global\ShowAnalyzerSuite\ShowAnalyzerMaster.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jucheck.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe
(forum.viry.cz) C:\Users\xhorak06\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\System32\cmd.exe
==================== Registry (Whitelisted) ==================
HKU\S-1-5-19\...\RunOnce: [mctadmin] => C:\Windows\System32\mctadmin.exe [93696 2009-07-14] (Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [mctadmin] => C:\Windows\System32\mctadmin.exe [93696 2009-07-14] (Microsoft Corporation)
HKU\S-1-5-21-1877342988-192937722-3280145632-1000\...\Run: [Nektra OEAPI] => [X]
HKU\S-1-5-21-1877342988-192937722-3280145632-1000\...\Run: [OEXPRESS] => [X]
HKU\S-1-5-21-1877342988-192937722-3280145632-1000\...\Run: [WEBTRAN] => [X]
HKU\S-1-5-21-1877342988-192937722-3280145632-1000\...\Run: [$Volumouse$] => C:\Program Files\NirSoft\Volumouse\volumouse.exe [33280 2009-08-05] (NirSoft)
HKU\S-1-5-21-1877342988-192937722-3280145632-1000\...\Run: [OfficeSyncProcess] => C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE [720064 2013-04-22] (Microsoft Corporation)
HKU\S-1-5-21-1877342988-192937722-3280145632-1000\...\Run: [Infium] => C:\Program Files\QIP 2012\qip.exe [7351760 2012-03-23] (QIP)
HKU\S-1-5-21-1877342988-192937722-3280145632-1000\...\MountPoints2: {3e282561-77bb-11e2-8b39-001d7d06eeaf} - E:\autorun.exe "intro.html"
HKU\S-1-5-21-1877342988-192937722-3280145632-1008\...\RunOnce: [mctadmin] => C:\Windows\System32\mctadmin.exe [93696 2009-07-14] (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.cz/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xA0D914892DC0CA01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = cs
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
URLSearchHook: HKLM - Default Value = {CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D}
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {2B1BD2ED-518C-47A6-9C44-C2FDAD109D6C} URL = http://search.creativetoolbars.com/resu ... earchTerms}
SearchScopes: HKCU - {93C894FD-5915-4183-B528-E5CB541B997D} URL = http://search.yahoo.com/search?fr=chr-g ... earchTerms}
SearchScopes: HKCU - {ECF861F3-2271-48BE-986A-8ED1474DCAAC} URL = http://search.conduit.com/ResultsExt.as ... 82230&UM=2
BHO: WebTransBHO Class -> {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} -> C:\ProgramData\LangSoft\WebIE.dll ()
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Lync\OCHelper.dll (Microsoft Corporation)
BHO: DivX Plus Web Player HTML5 <video> -> {326E768D-4182-46FD-9C16-1449A49795F4} -> C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: NXIECatcher Class -> {83B80A9C-D91A-4F22-8DCF-EA7204039F79} -> C:\Program Files\Xi\NetXfer\NXIEHelper.dll (Xi)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO: WinToFlash Suggestor -> {FC36B0BD-27F0-4cdd-8AB1-50651EFC3EFD} -> C:\Program Files\WinToFlash Suggestor\WinToFlashSuggestor.dll (Novicorp LLC)
Toolbar: HKLM - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM - WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\ProgramData\LangSoft\WebIE.dll ()
Toolbar: HKLM - NetXfer - {C16CBAAC-A75C-4DB5-A0DD-CDF5CAFCDD3A} - C:\Program Files\Xi\NetXfer\NXToolBar.dll (Xi)
Toolbar: HKLM - SiteFinder - {CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} - No File
Toolbar: HKCU - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} http://upload.facebook.com/controls/200 ... ader55.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Tcpip\Parameters: [DhcpNameServer] 195.113.143.240 195.113.143.137
FireFox:
========
FF ProfilePath: C:\Users\xhorak06\AppData\Roaming\Mozilla\Firefox\Profiles\whwx6l4i.default
FF Homepage: www.google.cz
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin: @divx.com/DivX Plus Web Player Plug-In,version=1.0.0 - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=10.60.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.60.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @staging.google.com/globalUpdate Update;version=10 - C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin: @staging.google.com/globalUpdate Update;version=4 - C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Acrobat - C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @facebook.com/FBPlugin,version=1.0.3 - C:\Users\xhorak06\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll ( )
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Shop-Up - C:\Users\xhorak06\AppData\Roaming\Mozilla\Firefox\Profiles\whwx6l4i.default\Extensions\a346f15b-f72e-4205-b29d-52ad46792214@bf4b3822-f1de-4b29-8f70-c0a27f6ca2b8.com [2014-07-18]
FF Extension: FireGestures - C:\Users\xhorak06\AppData\Roaming\Mozilla\Firefox\Profiles\whwx6l4i.default\Extensions\firegestures@xuldev.org.xpi [2014-07-02]
Chrome:
=======
CHR DefaultSearchKeyword: bechiro s.l.
CHR DefaultSearchProvider: Search the web (CT)
CHR DefaultSearchURL: http://search.creativetoolbars.com/resu ... earchTerms}
CHR DefaultNewTabURL:
CHR Extension: (WinToFlash Suggestor) - C:\Users\xhorak06\AppData\Local\Google\Chrome\User Data\Default\Extensions\acaoakiamfeidcmgooclgeleejkbaecf [2014-02-14]
CHR Extension: (SmartBar Chrome Toolbar) - C:\Users\xhorak06\AppData\Local\Google\Chrome\User Data\Default\Extensions\flcjcajklmlbpmgckpcmnampagbhhmcp [2014-07-02]
CHR Extension: (Peněženka Google) - C:\Users\xhorak06\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-02-14]
CHR Extension: (DivX Plus Web Player HTML5 video>) - C:\Users\xhorak06\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm [2012-03-23]
CHR HKLM\...\Chrome\Extension: [acaoakiamfeidcmgooclgeleejkbaecf] - C:\Program Files\WinToFlash Suggestor\WinToFlashSuggestor.crx [2012-04-09]
CHR HKLM\...\Chrome\Extension: [flcjcajklmlbpmgckpcmnampagbhhmcp] - C:\Program Files\Bechiro S.L.\smartbar\1.8.8.12\smartbar.crx [2013-01-13]
CHR HKLM\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx [2013-05-06]
CHR HKLM\...\Chrome\Extension: [pkmpcdbgnfjfeelcpebpkflcmbkclfho] - C:\Users\xhorak06\AppData\Local\CRE\pkmpcdbgnfjfeelcpebpkflcmbkclfho.crx [2013-05-06]
CHR HKCU\...\Chrome\Extension: [pkmpcdbgnfjfeelcpebpkflcmbkclfho] - C:\Users\xhorak06\AppData\Local\CRE\pkmpcdbgnfjfeelcpebpkflcmbkclfho.crx [2013-05-06]
========================== Services (Whitelisted) =================
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 ACDaemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 DTBService; C:\Program Files\DVRMSToolbox\DTBFWService.exe [9728 2010-07-31] () [File not signed]
S2 globalUpdate; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-07-01] (globalUpdate) [File not signed]
S3 globalUpdatem; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-07-01] (globalUpdate) [File not signed]
S2 gupdate1cacb2992a7bad0; C:\Program Files\Google\Update\GoogleUpdate.exe [133104 2010-03-24] (Google Inc.)
R2 HTCMonitorService; C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2012-10-26] (Nero AG)
R2 LavasoftAdAwareService11; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.2.5952.0\AdAwareService.exe [655352 2014-06-03] ()
R2 MCEBuddy; C:\Program Files\Tyrell\MCEBuddy\MCEBuddySvc.exe [20480 2010-01-24] () [File not signed]
R2 MDM; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [335872 2006-10-26] (Microsoft Corporation) [File not signed]
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22216 2014-03-11] (Microsoft Corporation)
R2 msoidsvc; C:\Program Files\Common Files\Microsoft Shared\Microsoft Online Services\MSOIDSVC.EXE [1542560 2010-08-17] (Microsoft Corp.)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [279776 2014-03-11] (Microsoft Corporation)
R2 NovacomD; C:\Program Files\Palm, Inc\novacom\x86\novacomd.exe [30720 2009-06-28] () [File not signed]
R2 PassThru Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [166912 2012-10-08] () [File not signed]
R2 PCToolsSSDMonitorSvc; C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe [793048 2012-04-26] (PC Tools)
R2 QipGuard; C:\Program Files\QipGuard\QipGuard.exe [191440 2012-03-23] (QIP.ru) [File not signed]
R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1738200 2014-04-25] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [2081752 2014-04-25] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
R2 ShowAnalyzerMaster; C:\Program Files\Dragon Global\ShowAnalyzerSuite\ShowAnalyzerMaster.exe [2074112 2010-02-08] (Dragon Global) [File not signed]
S3 rpcapd; "%ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini" [X]
==================== Drivers (Whitelisted) ====================
S3 61883; C:\Windows\System32\DRIVERS\61883.sys [46976 2009-07-14] (Microsoft Corporation)
R3 Afc; C:\Windows\System32\drivers\Afc.sys [18688 2006-11-10] (Arcsoft, Inc.)
S3 appliand; C:\Windows\System32\DRIVERS\appliand.sys [28256 2011-06-26] (Applian Technologies Inc.)
R3 appliandMP; C:\Windows\System32\DRIVERS\appliand.sys [28256 2011-06-26] (Applian Technologies Inc.)
S3 AVCSTRM; C:\Windows\System32\DRIVERS\avcstrm.sys [14464 2009-07-14] (Microsoft Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [231960 2014-01-25] (Microsoft Corporation)
S3 MSTAPE; C:\Windows\System32\DRIVERS\mstape.sys [50048 2009-07-14] (Microsoft Corporation)
S3 NPF; C:\Windows\System32\drivers\npf.sys [34064 2009-06-18] (CACE Technologies)
R2 Sentinel; C:\Windows\System32\Drivers\SENTINEL.SYS [76288 2002-12-17] (Rainbow Technologies, Inc.) [File not signed]
S3 Sntnlusb; C:\Windows\System32\DRIVERS\SNTNLUSB.SYS [26120 2002-12-17] (Rainbow Technologies Inc.)
R2 SS420; C:\Windows\system32\Drivers\SS420.sys [18444 2004-11-05] () [File not signed]
S3 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [360376 2014-04-22] (BitDefender S.R.L.)
S3 dgderdrv; System32\drivers\dgderdrv.sys [X]
S1 MpKsl3f5f4d8a; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{FC578043-E0CA-4F76-92EA-9EF6D34AF788}\MpKsl3f5f4d8a.sys [X]
S3 Pcouffin; System32\Drivers\Pcouffin.sys [X]
S3 RimUsb; System32\Drivers\RimUsb.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-07-23 08:19 - 2014-07-23 08:21 - 00019070 _____ () C:\Users\xhorak06\Desktop\FRST.txt
2014-07-23 08:19 - 2014-07-23 08:19 - 00029696 _____ () C:\Users\xhorak06\AppData\Local\MSGBOX.EXE
2014-07-23 08:19 - 2014-07-23 08:19 - 00015327 _____ () C:\Users\xhorak06\Desktop\LM.bat
2014-07-23 08:19 - 2014-07-23 08:19 - 00000000 ____D () C:\FRST
2014-07-23 08:18 - 2014-07-23 08:18 - 01080320 _____ (Farbar) C:\Users\xhorak06\Desktop\FRST.exe
2014-07-23 08:18 - 2014-07-23 08:18 - 00112640 _____ (forum.viry.cz) C:\Users\xhorak06\Desktop\FRSTLauncher.exe
2014-07-23 08:17 - 2014-07-23 08:17 - 00000000 _____ () C:\Windows\setuperr.log
2014-07-23 08:17 - 2014-07-23 08:17 - 00000000 _____ () C:\Windows\setupact.log
2014-07-23 08:06 - 2014-07-23 08:06 - 00000965 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-07-23 08:06 - 2014-07-23 08:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-07-23 08:06 - 2014-07-23 08:06 - 00000000 ____D () C:\Program Files\CCleaner
2014-07-23 08:05 - 2014-07-23 08:05 - 04812672 _____ (Piriform Ltd) C:\Users\xhorak06\Downloads\ccsetup415.exe
2014-07-18 10:30 - 2014-07-18 10:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ad-Aware Antivirus
2014-07-18 10:28 - 2014-07-18 10:28 - 00000000 ____D () C:\Program Files\Common Files\Lavasoft
2014-07-18 10:27 - 2014-07-18 10:27 - 01707144 _____ () C:\Users\xhorak06\Downloads\Adaware_Installer(1).exe
2014-07-18 08:04 - 2014-07-18 08:04 - 02347384 _____ (ESET) C:\Users\xhorak06\Downloads\esetsmartinstaller_csy.exe
2014-07-18 08:04 - 2014-07-18 08:04 - 00000000 ____D () C:\Program Files\ESET
2014-07-18 07:54 - 2014-07-18 07:54 - 01694551 _____ () C:\Users\xhorak06\Downloads\aaw6181(1).exe
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\xtomank0\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\xhorak06\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\xhorak06.ZF\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\xhic\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\UpdatusUser\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\quest\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\Guest\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lavasoft Ad-aware 6
2014-07-14 10:23 - 2014-07-14 10:23 - 00000000 ____D () C:\Users\xhorak06\AppData\Local\{046722A3-9B2C-4072-AAD9-E4037489C79D}
2014-07-09 07:37 - 2014-06-20 21:39 - 00240824 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-07-09 07:37 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-07-09 07:37 - 2014-06-19 01:56 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-07-09 07:37 - 2014-06-19 01:56 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-07-09 07:37 - 2014-06-19 01:38 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-07-09 07:37 - 2014-06-19 01:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-07-09 07:37 - 2014-06-19 01:36 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-07-09 07:37 - 2014-06-19 01:35 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-07-09 07:37 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-07-09 07:37 - 2014-06-19 01:28 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-07-09 07:37 - 2014-06-19 01:28 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-07-09 07:37 - 2014-06-19 01:25 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-07-09 07:37 - 2014-06-19 01:23 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-07-09 07:37 - 2014-06-19 01:23 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-07-09 07:37 - 2014-06-19 01:22 - 00592896 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-07-09 07:37 - 2014-06-19 01:16 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-07-09 07:37 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-07-09 07:37 - 2014-06-19 01:06 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-07-09 07:37 - 2014-06-19 01:01 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-07-09 07:37 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-07-09 07:37 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-07-09 07:37 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-07-09 07:37 - 2014-06-19 00:52 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-07-09 07:37 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-07-09 07:37 - 2014-06-19 00:46 - 01068032 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-07-09 07:37 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-07-09 07:37 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-07-09 07:37 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-07-09 07:37 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-07-09 07:37 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-07-09 07:37 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-07-09 07:37 - 2014-06-18 02:52 - 02350080 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-07-09 07:37 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-07-09 07:37 - 2014-05-30 09:52 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-07-09 07:37 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-07-09 07:37 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-07-09 07:37 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-07-09 07:37 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-07-09 07:37 - 2014-05-30 09:52 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-07-09 07:37 - 2014-05-30 09:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-07-09 07:37 - 2014-05-30 08:36 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-07-09 07:36 - 2014-06-30 03:40 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-07-09 07:36 - 2014-06-30 03:36 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-07-09 07:36 - 2014-06-05 16:26 - 01059840 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-07-04 07:47 - 2014-07-04 07:47 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Lavasoft
2014-07-03 13:52 - 2014-07-03 13:52 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\LavasoftStatistics
2014-07-03 13:51 - 2014-07-18 07:54 - 00000000 ____D () C:\Program Files\Lavasoft
2014-07-03 13:47 - 2014-07-03 13:47 - 00000000 ____D () C:\ProgramData\Lavasoft
2014-07-03 13:46 - 2014-07-03 13:46 - 01707144 _____ () C:\Users\xhorak06\Downloads\Adaware_Installer.exe
2014-07-03 10:40 - 2014-07-18 07:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft Ad-aware 6
2014-07-03 10:39 - 2014-07-03 10:39 - 01694551 _____ () C:\Users\xhorak06\Downloads\aaw6181.exe
2014-07-03 09:17 - 2014-07-03 13:43 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-07-03 09:17 - 2014-07-03 09:17 - 00002131 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-07-03 09:17 - 2014-07-03 09:17 - 00002119 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2014-07-03 09:17 - 2014-07-03 09:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-07-03 09:17 - 2013-09-20 10:49 - 00018968 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean.exe
2014-07-03 09:16 - 2014-07-03 09:20 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy 2
2014-07-03 09:16 - 2014-07-03 09:16 - 46392680 _____ (Safer-Networking Ltd. ) C:\Users\xhorak06\Downloads\spybot-2.3.exe
2014-07-03 09:01 - 2014-07-03 09:06 - 00002573 _____ () C:\rapport.txt
2014-07-03 09:01 - 2014-07-03 09:01 - 00004144 _____ () C:\Windows\system32\tmp.reg
2014-07-03 09:01 - 2014-07-03 09:01 - 00000000 _____ () C:\Windows\system32\tmp.txt
2014-07-03 09:00 - 2014-07-03 09:06 - 00000000 ____D () C:\Users\xhorak06\Downloads\SmitfraudFix
2014-07-03 09:00 - 2008-08-09 15:37 - 00082432 _____ (S!Ri.URZ) C:\Windows\system32\404Fix.exe
2014-07-03 09:00 - 2008-07-02 13:33 - 00082432 _____ (S!Ri.URZ) C:\Windows\system32\IEDFix.C.exe
2014-07-03 09:00 - 2008-05-29 09:35 - 00086528 _____ (S!Ri.URZ) C:\Windows\system32\VACFix.exe
2014-07-03 09:00 - 2008-05-18 21:40 - 00082944 _____ (S!Ri.URZ) C:\Windows\system32\IEDFix.exe
2014-07-03 09:00 - 2007-10-04 00:36 - 00025600 _____ () C:\Windows\system32\WS2Fix.exe
2014-07-03 09:00 - 2007-09-06 00:22 - 00289144 _____ (S!Ri) C:\Windows\system32\VCCLSID.exe
2014-07-03 09:00 - 2006-12-01 06:20 - 00079360 _____ (SteelWerX) C:\Windows\system32\swxcacls.exe
2014-07-03 09:00 - 2006-08-29 19:43 - 00135168 _____ (SteelWerX) C:\Windows\system32\swreg.exe
2014-07-03 09:00 - 2006-04-27 17:49 - 00288417 _____ (S!Ri) C:\Windows\system32\SrchSTS.exe
2014-07-03 09:00 - 2006-01-09 10:36 - 00040960 _____ () C:\Windows\system32\swsc.exe
2014-07-03 09:00 - 2004-07-31 18:50 - 00051200 _____ () C:\Windows\system32\dumphive.exe
2014-07-03 09:00 - 2003-06-05 21:13 - 00053248 _____ (http://www.beyondlogic.org) C:\Windows\system32\Process.exe
2014-07-03 08:57 - 2014-07-03 08:57 - 01479403 _____ () C:\Users\xhorak06\Downloads\SmitfraudFix.exe
2014-07-02 12:53 - 2014-07-02 12:53 - 29677080 _____ (Mozilla) C:\Users\xhorak06\Downloads\Firefox Setup 30.0.exe
2014-07-02 12:14 - 2014-07-02 14:03 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-07-02 12:14 - 2014-07-02 14:03 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-07-02 12:14 - 2014-07-02 14:00 - 00001117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-07-02 12:14 - 2014-07-02 14:00 - 00001105 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-07-02 12:13 - 2014-07-02 12:13 - 00284224 _____ (Mozilla) C:\Users\xhorak06\Downloads\Firefox Setup Stub 30.0.exe
2014-07-01 13:40 - 2014-07-01 13:41 - 00000000 ____D () C:\Program Files\Defraggler
2014-07-01 07:56 - 2014-07-01 07:56 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\NVIDIA
2014-07-01 07:50 - 2014-07-23 07:51 - 00001450 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-5.job
2014-07-01 07:50 - 2014-07-23 07:50 - 00001344 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-2.job
2014-07-01 07:50 - 2014-07-23 07:50 - 00001188 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-10.job
2014-07-01 07:49 - 2014-07-23 07:54 - 00000920 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2014-07-01 07:49 - 2014-07-23 07:54 - 00000916 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2014-07-01 07:49 - 2014-07-23 07:49 - 00002150 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-4.job
2014-07-01 07:49 - 2014-07-23 07:49 - 00001528 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-6.job
2014-07-01 07:49 - 2014-07-23 07:49 - 00001516 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-1.job
2014-07-01 07:49 - 2014-07-23 07:49 - 00001460 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-7.job
2014-07-01 07:48 - 2014-07-23 07:49 - 00000458 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-11.job
2014-07-01 07:48 - 2014-07-01 07:48 - 00000000 ____D () C:\Users\xhorak06\AppData\Local\globalUpdate
2014-07-01 07:48 - 2014-07-01 07:48 - 00000000 ____D () C:\Program Files\globalUpdate
2014-07-01 07:48 - 2014-07-01 07:48 - 00000000 ____D () C:\Program Files\Bechiro S.L
2014-07-01 07:47 - 2014-07-01 18:15 - 00000000 ____D () C:\Program Files\Zrychleni Pocitace
2014-07-01 07:47 - 2014-07-01 07:47 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Bechiro S.L
2014-06-25 11:03 - 2014-04-27 00:55 - 00000000 ____D () C:\Users\xhorak06\Desktop\BaldursGateEnhancedEdition v1.3 .apk
2014-06-23 09:24 - 2014-06-23 09:24 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\OpenOffice
2014-06-23 09:17 - 2014-06-23 09:17 - 00001058 _____ () C:\Users\Public\Desktop\OpenOffice 4.1.0.lnk
2014-06-23 09:17 - 2014-06-23 09:17 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.0
2014-06-23 09:16 - 2014-06-23 09:16 - 00000000 ____D () C:\Program Files\OpenOffice 4
2014-06-23 09:11 - 2014-06-23 09:11 - 00000000 ____D () C:\Users\xhorak06\Desktop\OpenOffice 4.1.0 (cs) Installation Files
2014-06-23 09:01 - 2014-06-23 09:02 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PDF Editor 4.0
2014-06-23 09:01 - 2014-06-23 09:02 - 00000000 ____D () C:\Program Files\PDF Editor 4
2014-06-23 08:59 - 2014-06-23 09:02 - 00000988 _____ () C:\Users\xhorak06\Desktop\PDF Editor 3.3.lnk
2014-06-23 08:59 - 2014-06-23 08:59 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PDF Editor 3.3
2014-06-23 08:40 - 2014-06-23 08:59 - 00000988 _____ () C:\Users\UpdatusUser\Desktop\PDF Editor 3.3.lnk
==================== One Month Modified Files and Folders =======
2014-07-23 08:21 - 2014-07-23 08:19 - 00019070 _____ () C:\Users\xhorak06\Desktop\FRST.txt
2014-07-23 08:19 - 2014-07-23 08:19 - 00029696 _____ () C:\Users\xhorak06\AppData\Local\MSGBOX.EXE
2014-07-23 08:19 - 2014-07-23 08:19 - 00015327 _____ () C:\Users\xhorak06\Desktop\LM.bat
2014-07-23 08:19 - 2014-07-23 08:19 - 00000000 ____D () C:\FRST
2014-07-23 08:18 - 2014-07-23 08:18 - 01080320 _____ (Farbar) C:\Users\xhorak06\Desktop\FRST.exe
2014-07-23 08:18 - 2014-07-23 08:18 - 00112640 _____ (forum.viry.cz) C:\Users\xhorak06\Desktop\FRSTLauncher.exe
2014-07-23 08:17 - 2014-07-23 08:17 - 00000000 _____ () C:\Windows\setuperr.log
2014-07-23 08:17 - 2014-07-23 08:17 - 00000000 _____ () C:\Windows\setupact.log
2014-07-23 08:17 - 2010-03-24 10:25 - 00000940 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-23 08:09 - 2012-04-10 08:13 - 00000000 ____D () C:\Windows\Minidump
2014-07-23 08:09 - 2011-05-18 13:48 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Media Player Classic
2014-07-23 08:09 - 2011-03-17 11:12 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Vso
2014-07-23 08:09 - 2010-03-08 11:47 - 00000000 ____D () C:\Windows\Panther
2014-07-23 08:06 - 2014-07-23 08:06 - 00000965 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-07-23 08:06 - 2014-07-23 08:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-07-23 08:06 - 2014-07-23 08:06 - 00000000 ____D () C:\Program Files\CCleaner
2014-07-23 08:05 - 2014-07-23 08:05 - 04812672 _____ (Piriform Ltd) C:\Users\xhorak06\Downloads\ccsetup415.exe
2014-07-23 07:59 - 2012-04-05 08:08 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-07-23 07:54 - 2014-07-01 07:49 - 00000920 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2014-07-23 07:54 - 2014-07-01 07:49 - 00000916 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2014-07-23 07:52 - 2010-03-08 11:50 - 01947033 ____N () C:\Windows\WindowsUpdate.log
2014-07-23 07:51 - 2014-07-01 07:50 - 00001450 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-5.job
2014-07-23 07:50 - 2014-07-01 07:50 - 00001344 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-2.job
2014-07-23 07:50 - 2014-07-01 07:50 - 00001188 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-10.job
2014-07-23 07:49 - 2014-07-01 07:49 - 00002150 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-4.job
2014-07-23 07:49 - 2014-07-01 07:49 - 00001528 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-6.job
2014-07-23 07:49 - 2014-07-01 07:49 - 00001516 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-1.job
2014-07-23 07:49 - 2014-07-01 07:49 - 00001460 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-7.job
2014-07-23 07:49 - 2014-07-01 07:48 - 00000458 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-11.job
2014-07-23 07:48 - 2009-07-14 06:34 - 00017136 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-07-23 07:48 - 2009-07-14 06:34 - 00017136 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-07-23 07:40 - 2012-08-17 08:42 - 00000000 ____D () C:\Users\xhorak06\AppData\Local\HTC MediaHub
2014-07-23 07:40 - 2012-07-09 12:42 - 00000278 _____ () C:\Windows\Tasks\RMAutoUpdate.job
2014-07-23 07:40 - 2012-07-09 12:42 - 00000000 ____D () C:\ProgramData\TEMP
2014-07-23 07:40 - 2012-07-09 12:42 - 00000000 ____D () C:\Program Files\PC Tools Registry Mechanic
2014-07-23 07:40 - 2010-11-15 15:20 - 00000128 _____ () C:\Windows\system32\config\netlogon.ftl
2014-07-23 07:40 - 2010-03-24 10:25 - 00000936 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-23 07:40 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-07-18 10:30 - 2014-07-18 10:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ad-Aware Antivirus
2014-07-18 10:28 - 2014-07-18 10:28 - 00000000 ____D () C:\Program Files\Common Files\Lavasoft
2014-07-18 10:27 - 2014-07-18 10:27 - 01707144 _____ () C:\Users\xhorak06\Downloads\Adaware_Installer(1).exe
2014-07-18 10:11 - 2012-10-25 13:25 - 00000000 ____D () C:\Users\xhorak06\Desktop\Download
2014-07-18 10:07 - 2014-05-16 08:30 - 00000000 ____D () C:\Program Files\SiteFinder
2014-07-18 08:29 - 2010-05-03 13:17 - 00000000 ____D () C:\ProgramData\Skype
2014-07-18 08:14 - 2013-01-07 12:42 - 00000000 ____D () C:\Program Files\DIFX
2014-07-18 08:04 - 2014-07-18 08:04 - 02347384 _____ (ESET) C:\Users\xhorak06\Downloads\esetsmartinstaller_csy.exe
2014-07-18 08:04 - 2014-07-18 08:04 - 00000000 ____D () C:\Program Files\ESET
2014-07-18 07:54 - 2014-07-18 07:54 - 01694551 _____ () C:\Users\xhorak06\Downloads\aaw6181(1).exe
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\xtomank0\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\xhorak06\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\xhorak06.ZF\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\xhic\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\UpdatusUser\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\quest\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\Guest\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lavasoft Ad-aware 6
2014-07-18 07:54 - 2014-07-03 13:51 - 00000000 ____D () C:\Program Files\Lavasoft
2014-07-18 07:54 - 2014-07-03 10:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft Ad-aware 6
2014-07-18 07:44 - 2013-07-03 11:08 - 00000000 ____D () C:\Users\xhorak06\Tracing
2014-07-14 10:23 - 2014-07-14 10:23 - 00000000 ____D () C:\Users\xhorak06\AppData\Local\{046722A3-9B2C-4072-AAD9-E4037489C79D}
2014-07-14 09:41 - 2012-07-09 12:42 - 00000280 _____ () C:\Windows\Tasks\RMSchedule.job
2014-07-11 00:32 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2014-07-10 23:05 - 2009-07-14 06:33 - 00468288 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-07-10 23:01 - 2014-05-06 16:19 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-07-10 03:27 - 2010-03-08 12:25 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-07-10 03:17 - 2013-08-14 14:42 - 00000000 ____D () C:\Windows\system32\MRT
2014-07-10 03:04 - 2010-03-15 09:44 - 93585272 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-07-10 03:00 - 2012-04-05 08:08 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-07-10 03:00 - 2011-05-19 07:43 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-07-04 11:12 - 2010-03-08 11:57 - 01595442 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-07-04 07:47 - 2014-07-04 07:47 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Lavasoft
2014-07-03 13:52 - 2014-07-03 13:52 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\LavasoftStatistics
2014-07-03 13:47 - 2014-07-03 13:47 - 00000000 ____D () C:\ProgramData\Lavasoft
2014-07-03 13:46 - 2014-07-03 13:46 - 01707144 _____ () C:\Users\xhorak06\Downloads\Adaware_Installer.exe
2014-07-03 13:43 - 2014-07-03 09:17 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-07-03 13:42 - 2013-04-17 08:25 - 00000000 ____D () C:\Users\xhorak06\Desktop\Dokumenty z činnosti
2014-07-03 10:39 - 2014-07-03 10:39 - 01694551 _____ () C:\Users\xhorak06\Downloads\aaw6181.exe
2014-07-03 09:20 - 2014-07-03 09:16 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy 2
2014-07-03 09:17 - 2014-07-03 09:17 - 00002131 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-07-03 09:17 - 2014-07-03 09:17 - 00002119 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2014-07-03 09:17 - 2014-07-03 09:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-07-03 09:16 - 2014-07-03 09:16 - 46392680 _____ (Safer-Networking Ltd. ) C:\Users\xhorak06\Downloads\spybot-2.3.exe
2014-07-03 09:06 - 2014-07-03 09:01 - 00002573 _____ () C:\rapport.txt
2014-07-03 09:06 - 2014-07-03 09:00 - 00000000 ____D () C:\Users\xhorak06\Downloads\SmitfraudFix
2014-07-03 09:01 - 2014-07-03 09:01 - 00004144 _____ () C:\Windows\system32\tmp.reg
2014-07-03 09:01 - 2014-07-03 09:01 - 00000000 _____ () C:\Windows\system32\tmp.txt
2014-07-03 08:57 - 2014-07-03 08:57 - 01479403 _____ () C:\Users\xhorak06\Downloads\SmitfraudFix.exe
2014-07-03 08:15 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-07-03 08:07 - 2012-08-17 10:22 - 00000000 ____D () C:\Windows\WindowsMobile
2014-07-03 08:05 - 2013-01-22 15:11 - 00000000 ____D () C:\Program Files\Common Files\XCPCSync.OEM
2014-07-03 08:05 - 2012-05-16 08:28 - 00000000 ____D () C:\Program Files\Research In Motion
2014-07-03 08:05 - 2012-05-16 08:28 - 00000000 ____D () C:\Program Files\Common Files\Research In Motion
2014-07-03 08:04 - 2013-01-22 15:12 - 00002009 _____ () C:\Users\xhorak06\AppData\Roaming\Rim.Desktop.HttpServerSetup.log
2014-07-03 07:59 - 2009-07-14 04:37 - 00000000 __RHD () C:\Users\Public\Libraries
2014-07-03 07:44 - 2011-05-04 09:28 - 00000000 ____D () C:\Users\Public\DvrmsToolbox
2014-07-02 14:03 - 2014-07-02 12:14 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-07-02 14:03 - 2014-07-02 12:14 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-07-02 14:00 - 2014-07-02 12:14 - 00001117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-07-02 14:00 - 2014-07-02 12:14 - 00001105 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-07-02 12:55 - 2011-02-17 11:22 - 00000000 ____D () C:\Users\xhorak06\Desktop\Projekty
2014-07-02 12:53 - 2014-07-02 12:53 - 29677080 _____ (Mozilla) C:\Users\xhorak06\Downloads\Firefox Setup 30.0.exe
2014-07-02 12:13 - 2014-07-02 12:13 - 00284224 _____ (Mozilla) C:\Users\xhorak06\Downloads\Firefox Setup Stub 30.0.exe
2014-07-01 18:15 - 2014-07-01 07:47 - 00000000 ____D () C:\Program Files\Zrychleni Pocitace
2014-07-01 14:13 - 2011-04-04 09:50 - 00000000 ____D () C:\Users\Public\Downloads\Mira
2014-07-01 13:49 - 2010-07-21 08:58 - 00000000 ____D () C:\Users\xhorak06\Desktop\Photo + Video
2014-07-01 13:41 - 2014-07-01 13:40 - 00000000 ____D () C:\Program Files\Defraggler
2014-07-01 13:34 - 2010-03-08 12:29 - 00007596 _____ () C:\Users\xhorak06\AppData\Local\resmon.resmoncfg
2014-07-01 07:56 - 2014-07-01 07:56 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\NVIDIA
2014-07-01 07:48 - 2014-07-01 07:48 - 00000000 ____D () C:\Users\xhorak06\AppData\Local\globalUpdate
2014-07-01 07:48 - 2014-07-01 07:48 - 00000000 ____D () C:\Program Files\globalUpdate
2014-07-01 07:48 - 2014-07-01 07:48 - 00000000 ____D () C:\Program Files\Bechiro S.L
2014-07-01 07:47 - 2014-07-01 07:47 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Bechiro S.L
2014-06-30 03:40 - 2014-07-09 07:36 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-06-30 03:36 - 2014-07-09 07:36 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-24 07:40 - 2010-03-08 11:58 - 00118312 _____ () C:\Users\xhorak06\AppData\Local\GDIPFONTCACHEV1.DAT
2014-06-23 09:24 - 2014-06-23 09:24 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\OpenOffice
2014-06-23 09:17 - 2014-06-23 09:17 - 00001058 _____ () C:\Users\Public\Desktop\OpenOffice 4.1.0.lnk
2014-06-23 09:17 - 2014-06-23 09:17 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.0
2014-06-23 09:17 - 2010-05-05 09:08 - 00000000 ____D () C:\Program Files\OpenOffice.org 3
2014-06-23 09:16 - 2014-06-23 09:16 - 00000000 ____D () C:\Program Files\OpenOffice 4
2014-06-23 09:11 - 2014-06-23 09:11 - 00000000 ____D () C:\Users\xhorak06\Desktop\OpenOffice 4.1.0 (cs) Installation Files
2014-06-23 09:02 - 2014-06-23 09:01 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PDF Editor 4.0
2014-06-23 09:02 - 2014-06-23 09:01 - 00000000 ____D () C:\Program Files\PDF Editor 4
2014-06-23 09:02 - 2014-06-23 08:59 - 00000988 _____ () C:\Users\xhorak06\Desktop\PDF Editor 3.3.lnk
2014-06-23 09:01 - 2011-06-27 08:57 - 00082072 _____ () C:\Windows\cadkasdeinst01e.exe
2014-06-23 08:59 - 2014-06-23 08:59 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PDF Editor 3.3
2014-06-23 08:59 - 2014-06-23 08:40 - 00000988 _____ () C:\Users\UpdatusUser\Desktop\PDF Editor 3.3.lnk
2014-06-23 08:59 - 2013-02-26 12:19 - 00000988 _____ () C:\Users\xtomank0\Desktop\PDF Editor 3.3.lnk
2014-06-23 08:59 - 2013-02-26 12:19 - 00000988 _____ () C:\Users\xhorak06.ZF\Desktop\PDF Editor 3.3.lnk
2014-06-23 08:59 - 2013-02-26 12:19 - 00000988 _____ () C:\Users\xhic\Desktop\PDF Editor 3.3.lnk
2014-06-23 08:59 - 2013-02-26 12:19 - 00000988 _____ () C:\Users\quest\Desktop\PDF Editor 3.3.lnk
2014-06-23 08:59 - 2013-02-26 12:19 - 00000988 _____ () C:\Users\Guest\Desktop\PDF Editor 3.3.lnk
2014-06-23 08:59 - 2013-02-26 12:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Editor 3.3
2014-06-23 08:59 - 2013-02-26 12:19 - 00000000 ____D () C:\Program Files\PDF Editor 3
2014-06-23 08:29 - 2013-04-04 09:45 - 00001222 _____ () C:\Users\xhorak06\Desktop\Revo Uninstaller.lnk
Some content of TEMP:
====================
C:\Users\xhorak06.ZF\AppData\Local\Temp\jre-6u22-windows-i586-iftw-rv.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
zřejmě jsem si nechtěne naisntalovat nějakého šedivce do PC, protožeš mi u všech prohlížečů vkládá reklamy tam, kde nemají být, otevírá sám nová okna a některá slova na stránkách podtrhuje a mění je v odkazy. Snažil jsem se něco najít pomocí antivirů a programů na detekci škodlivých programů, ale bohužel se mi nezdařilo problém vyřešit. Prosím o pomoc
Log:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:21-07-2014
Ran by xhorak06 (administrator) on HORAK on 23-07-2014 08:19:39
Running from C:\Users\xhorak06\Desktop
Platform: Microsoft Windows 7 Professional Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ABBYY) C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
() C:\Program Files\DVRMSToolbox\DTBFWService.exe
(Nero AG) C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe
() C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.2.5952.0\AdAwareService.exe
() C:\Program Files\Tyrell\MCEBuddy\MCEBuddySvc.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\VS7DEBUG\mdm.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Microsoft Online Services\MSOIDSVC.EXE
() C:\Program Files\Palm, Inc\novacom\x86\novacomd.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Microsoft Online Services\MSOIDSVCM.EXE
() C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
(PC Tools) C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
(QIP.ru) C:\Program Files\QipGuard\QipGuard.exe
() C:\Program Files\HTC\HTC Sync Manager\HTC Sync\adb.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Epson Software\Event Manager\EEventManager.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(PC Tools) C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe
() C:\Program Files\DivX\DivX Update\DivXUpdate.exe
(Adobe Systems Inc.) C:\Program Files\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Windows\WindowsMobile\wmdcBase.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
() C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.2.5952.0\AdAwareTray.exe
(NirSoft) C:\Program Files\NirSoft\Volumouse\volumouse.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
(QIP) C:\Program Files\QIP 2012\qip.exe
(Dragon Global) C:\Program Files\Dragon Global\ShowAnalyzerSuite\ShowAnalyzerMaster.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jucheck.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe
(forum.viry.cz) C:\Users\xhorak06\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\System32\cmd.exe
==================== Registry (Whitelisted) ==================
HKU\S-1-5-19\...\RunOnce: [mctadmin] => C:\Windows\System32\mctadmin.exe [93696 2009-07-14] (Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [mctadmin] => C:\Windows\System32\mctadmin.exe [93696 2009-07-14] (Microsoft Corporation)
HKU\S-1-5-21-1877342988-192937722-3280145632-1000\...\Run: [Nektra OEAPI] => [X]
HKU\S-1-5-21-1877342988-192937722-3280145632-1000\...\Run: [OEXPRESS] => [X]
HKU\S-1-5-21-1877342988-192937722-3280145632-1000\...\Run: [WEBTRAN] => [X]
HKU\S-1-5-21-1877342988-192937722-3280145632-1000\...\Run: [$Volumouse$] => C:\Program Files\NirSoft\Volumouse\volumouse.exe [33280 2009-08-05] (NirSoft)
HKU\S-1-5-21-1877342988-192937722-3280145632-1000\...\Run: [OfficeSyncProcess] => C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE [720064 2013-04-22] (Microsoft Corporation)
HKU\S-1-5-21-1877342988-192937722-3280145632-1000\...\Run: [Infium] => C:\Program Files\QIP 2012\qip.exe [7351760 2012-03-23] (QIP)
HKU\S-1-5-21-1877342988-192937722-3280145632-1000\...\MountPoints2: {3e282561-77bb-11e2-8b39-001d7d06eeaf} - E:\autorun.exe "intro.html"
HKU\S-1-5-21-1877342988-192937722-3280145632-1008\...\RunOnce: [mctadmin] => C:\Windows\System32\mctadmin.exe [93696 2009-07-14] (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.cz/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xA0D914892DC0CA01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = cs
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
URLSearchHook: HKLM - Default Value = {CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D}
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {2B1BD2ED-518C-47A6-9C44-C2FDAD109D6C} URL = http://search.creativetoolbars.com/resu ... earchTerms}
SearchScopes: HKCU - {93C894FD-5915-4183-B528-E5CB541B997D} URL = http://search.yahoo.com/search?fr=chr-g ... earchTerms}
SearchScopes: HKCU - {ECF861F3-2271-48BE-986A-8ED1474DCAAC} URL = http://search.conduit.com/ResultsExt.as ... 82230&UM=2
BHO: WebTransBHO Class -> {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} -> C:\ProgramData\LangSoft\WebIE.dll ()
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Lync\OCHelper.dll (Microsoft Corporation)
BHO: DivX Plus Web Player HTML5 <video> -> {326E768D-4182-46FD-9C16-1449A49795F4} -> C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: NXIECatcher Class -> {83B80A9C-D91A-4F22-8DCF-EA7204039F79} -> C:\Program Files\Xi\NetXfer\NXIEHelper.dll (Xi)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO: WinToFlash Suggestor -> {FC36B0BD-27F0-4cdd-8AB1-50651EFC3EFD} -> C:\Program Files\WinToFlash Suggestor\WinToFlashSuggestor.dll (Novicorp LLC)
Toolbar: HKLM - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM - WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\ProgramData\LangSoft\WebIE.dll ()
Toolbar: HKLM - NetXfer - {C16CBAAC-A75C-4DB5-A0DD-CDF5CAFCDD3A} - C:\Program Files\Xi\NetXfer\NXToolBar.dll (Xi)
Toolbar: HKLM - SiteFinder - {CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} - No File
Toolbar: HKCU - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} http://upload.facebook.com/controls/200 ... ader55.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Tcpip\Parameters: [DhcpNameServer] 195.113.143.240 195.113.143.137
FireFox:
========
FF ProfilePath: C:\Users\xhorak06\AppData\Roaming\Mozilla\Firefox\Profiles\whwx6l4i.default
FF Homepage: www.google.cz
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin: @divx.com/DivX Plus Web Player Plug-In,version=1.0.0 - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=10.60.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.60.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @staging.google.com/globalUpdate Update;version=10 - C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin: @staging.google.com/globalUpdate Update;version=4 - C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Acrobat - C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @facebook.com/FBPlugin,version=1.0.3 - C:\Users\xhorak06\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll ( )
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Shop-Up - C:\Users\xhorak06\AppData\Roaming\Mozilla\Firefox\Profiles\whwx6l4i.default\Extensions\a346f15b-f72e-4205-b29d-52ad46792214@bf4b3822-f1de-4b29-8f70-c0a27f6ca2b8.com [2014-07-18]
FF Extension: FireGestures - C:\Users\xhorak06\AppData\Roaming\Mozilla\Firefox\Profiles\whwx6l4i.default\Extensions\firegestures@xuldev.org.xpi [2014-07-02]
Chrome:
=======
CHR DefaultSearchKeyword: bechiro s.l.
CHR DefaultSearchProvider: Search the web (CT)
CHR DefaultSearchURL: http://search.creativetoolbars.com/resu ... earchTerms}
CHR DefaultNewTabURL:
CHR Extension: (WinToFlash Suggestor) - C:\Users\xhorak06\AppData\Local\Google\Chrome\User Data\Default\Extensions\acaoakiamfeidcmgooclgeleejkbaecf [2014-02-14]
CHR Extension: (SmartBar Chrome Toolbar) - C:\Users\xhorak06\AppData\Local\Google\Chrome\User Data\Default\Extensions\flcjcajklmlbpmgckpcmnampagbhhmcp [2014-07-02]
CHR Extension: (Peněženka Google) - C:\Users\xhorak06\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-02-14]
CHR Extension: (DivX Plus Web Player HTML5 video>) - C:\Users\xhorak06\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm [2012-03-23]
CHR HKLM\...\Chrome\Extension: [acaoakiamfeidcmgooclgeleejkbaecf] - C:\Program Files\WinToFlash Suggestor\WinToFlashSuggestor.crx [2012-04-09]
CHR HKLM\...\Chrome\Extension: [flcjcajklmlbpmgckpcmnampagbhhmcp] - C:\Program Files\Bechiro S.L.\smartbar\1.8.8.12\smartbar.crx [2013-01-13]
CHR HKLM\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx [2013-05-06]
CHR HKLM\...\Chrome\Extension: [pkmpcdbgnfjfeelcpebpkflcmbkclfho] - C:\Users\xhorak06\AppData\Local\CRE\pkmpcdbgnfjfeelcpebpkflcmbkclfho.crx [2013-05-06]
CHR HKCU\...\Chrome\Extension: [pkmpcdbgnfjfeelcpebpkflcmbkclfho] - C:\Users\xhorak06\AppData\Local\CRE\pkmpcdbgnfjfeelcpebpkflcmbkclfho.crx [2013-05-06]
========================== Services (Whitelisted) =================
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 ACDaemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 DTBService; C:\Program Files\DVRMSToolbox\DTBFWService.exe [9728 2010-07-31] () [File not signed]
S2 globalUpdate; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-07-01] (globalUpdate) [File not signed]
S3 globalUpdatem; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-07-01] (globalUpdate) [File not signed]
S2 gupdate1cacb2992a7bad0; C:\Program Files\Google\Update\GoogleUpdate.exe [133104 2010-03-24] (Google Inc.)
R2 HTCMonitorService; C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2012-10-26] (Nero AG)
R2 LavasoftAdAwareService11; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.2.5952.0\AdAwareService.exe [655352 2014-06-03] ()
R2 MCEBuddy; C:\Program Files\Tyrell\MCEBuddy\MCEBuddySvc.exe [20480 2010-01-24] () [File not signed]
R2 MDM; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [335872 2006-10-26] (Microsoft Corporation) [File not signed]
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22216 2014-03-11] (Microsoft Corporation)
R2 msoidsvc; C:\Program Files\Common Files\Microsoft Shared\Microsoft Online Services\MSOIDSVC.EXE [1542560 2010-08-17] (Microsoft Corp.)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [279776 2014-03-11] (Microsoft Corporation)
R2 NovacomD; C:\Program Files\Palm, Inc\novacom\x86\novacomd.exe [30720 2009-06-28] () [File not signed]
R2 PassThru Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [166912 2012-10-08] () [File not signed]
R2 PCToolsSSDMonitorSvc; C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe [793048 2012-04-26] (PC Tools)
R2 QipGuard; C:\Program Files\QipGuard\QipGuard.exe [191440 2012-03-23] (QIP.ru) [File not signed]
R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1738200 2014-04-25] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [2081752 2014-04-25] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
R2 ShowAnalyzerMaster; C:\Program Files\Dragon Global\ShowAnalyzerSuite\ShowAnalyzerMaster.exe [2074112 2010-02-08] (Dragon Global) [File not signed]
S3 rpcapd; "%ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini" [X]
==================== Drivers (Whitelisted) ====================
S3 61883; C:\Windows\System32\DRIVERS\61883.sys [46976 2009-07-14] (Microsoft Corporation)
R3 Afc; C:\Windows\System32\drivers\Afc.sys [18688 2006-11-10] (Arcsoft, Inc.)
S3 appliand; C:\Windows\System32\DRIVERS\appliand.sys [28256 2011-06-26] (Applian Technologies Inc.)
R3 appliandMP; C:\Windows\System32\DRIVERS\appliand.sys [28256 2011-06-26] (Applian Technologies Inc.)
S3 AVCSTRM; C:\Windows\System32\DRIVERS\avcstrm.sys [14464 2009-07-14] (Microsoft Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [231960 2014-01-25] (Microsoft Corporation)
S3 MSTAPE; C:\Windows\System32\DRIVERS\mstape.sys [50048 2009-07-14] (Microsoft Corporation)
S3 NPF; C:\Windows\System32\drivers\npf.sys [34064 2009-06-18] (CACE Technologies)
R2 Sentinel; C:\Windows\System32\Drivers\SENTINEL.SYS [76288 2002-12-17] (Rainbow Technologies, Inc.) [File not signed]
S3 Sntnlusb; C:\Windows\System32\DRIVERS\SNTNLUSB.SYS [26120 2002-12-17] (Rainbow Technologies Inc.)
R2 SS420; C:\Windows\system32\Drivers\SS420.sys [18444 2004-11-05] () [File not signed]
S3 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [360376 2014-04-22] (BitDefender S.R.L.)
S3 dgderdrv; System32\drivers\dgderdrv.sys [X]
S1 MpKsl3f5f4d8a; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{FC578043-E0CA-4F76-92EA-9EF6D34AF788}\MpKsl3f5f4d8a.sys [X]
S3 Pcouffin; System32\Drivers\Pcouffin.sys [X]
S3 RimUsb; System32\Drivers\RimUsb.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-07-23 08:19 - 2014-07-23 08:21 - 00019070 _____ () C:\Users\xhorak06\Desktop\FRST.txt
2014-07-23 08:19 - 2014-07-23 08:19 - 00029696 _____ () C:\Users\xhorak06\AppData\Local\MSGBOX.EXE
2014-07-23 08:19 - 2014-07-23 08:19 - 00015327 _____ () C:\Users\xhorak06\Desktop\LM.bat
2014-07-23 08:19 - 2014-07-23 08:19 - 00000000 ____D () C:\FRST
2014-07-23 08:18 - 2014-07-23 08:18 - 01080320 _____ (Farbar) C:\Users\xhorak06\Desktop\FRST.exe
2014-07-23 08:18 - 2014-07-23 08:18 - 00112640 _____ (forum.viry.cz) C:\Users\xhorak06\Desktop\FRSTLauncher.exe
2014-07-23 08:17 - 2014-07-23 08:17 - 00000000 _____ () C:\Windows\setuperr.log
2014-07-23 08:17 - 2014-07-23 08:17 - 00000000 _____ () C:\Windows\setupact.log
2014-07-23 08:06 - 2014-07-23 08:06 - 00000965 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-07-23 08:06 - 2014-07-23 08:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-07-23 08:06 - 2014-07-23 08:06 - 00000000 ____D () C:\Program Files\CCleaner
2014-07-23 08:05 - 2014-07-23 08:05 - 04812672 _____ (Piriform Ltd) C:\Users\xhorak06\Downloads\ccsetup415.exe
2014-07-18 10:30 - 2014-07-18 10:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ad-Aware Antivirus
2014-07-18 10:28 - 2014-07-18 10:28 - 00000000 ____D () C:\Program Files\Common Files\Lavasoft
2014-07-18 10:27 - 2014-07-18 10:27 - 01707144 _____ () C:\Users\xhorak06\Downloads\Adaware_Installer(1).exe
2014-07-18 08:04 - 2014-07-18 08:04 - 02347384 _____ (ESET) C:\Users\xhorak06\Downloads\esetsmartinstaller_csy.exe
2014-07-18 08:04 - 2014-07-18 08:04 - 00000000 ____D () C:\Program Files\ESET
2014-07-18 07:54 - 2014-07-18 07:54 - 01694551 _____ () C:\Users\xhorak06\Downloads\aaw6181(1).exe
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\xtomank0\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\xhorak06\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\xhorak06.ZF\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\xhic\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\UpdatusUser\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\quest\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\Guest\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lavasoft Ad-aware 6
2014-07-14 10:23 - 2014-07-14 10:23 - 00000000 ____D () C:\Users\xhorak06\AppData\Local\{046722A3-9B2C-4072-AAD9-E4037489C79D}
2014-07-09 07:37 - 2014-06-20 21:39 - 00240824 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-07-09 07:37 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-07-09 07:37 - 2014-06-19 01:56 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-07-09 07:37 - 2014-06-19 01:56 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-07-09 07:37 - 2014-06-19 01:38 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-07-09 07:37 - 2014-06-19 01:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-07-09 07:37 - 2014-06-19 01:36 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-07-09 07:37 - 2014-06-19 01:35 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-07-09 07:37 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-07-09 07:37 - 2014-06-19 01:28 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-07-09 07:37 - 2014-06-19 01:28 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-07-09 07:37 - 2014-06-19 01:25 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-07-09 07:37 - 2014-06-19 01:23 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-07-09 07:37 - 2014-06-19 01:23 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-07-09 07:37 - 2014-06-19 01:22 - 00592896 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-07-09 07:37 - 2014-06-19 01:16 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-07-09 07:37 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-07-09 07:37 - 2014-06-19 01:06 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-07-09 07:37 - 2014-06-19 01:01 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-07-09 07:37 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-07-09 07:37 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-07-09 07:37 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-07-09 07:37 - 2014-06-19 00:52 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-07-09 07:37 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-07-09 07:37 - 2014-06-19 00:46 - 01068032 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-07-09 07:37 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-07-09 07:37 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-07-09 07:37 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-07-09 07:37 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-07-09 07:37 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-07-09 07:37 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-07-09 07:37 - 2014-06-18 02:52 - 02350080 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-07-09 07:37 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-07-09 07:37 - 2014-05-30 09:52 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-07-09 07:37 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-07-09 07:37 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-07-09 07:37 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-07-09 07:37 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-07-09 07:37 - 2014-05-30 09:52 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-07-09 07:37 - 2014-05-30 09:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-07-09 07:37 - 2014-05-30 08:36 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-07-09 07:36 - 2014-06-30 03:40 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-07-09 07:36 - 2014-06-30 03:36 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-07-09 07:36 - 2014-06-05 16:26 - 01059840 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-07-04 07:47 - 2014-07-04 07:47 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Lavasoft
2014-07-03 13:52 - 2014-07-03 13:52 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\LavasoftStatistics
2014-07-03 13:51 - 2014-07-18 07:54 - 00000000 ____D () C:\Program Files\Lavasoft
2014-07-03 13:47 - 2014-07-03 13:47 - 00000000 ____D () C:\ProgramData\Lavasoft
2014-07-03 13:46 - 2014-07-03 13:46 - 01707144 _____ () C:\Users\xhorak06\Downloads\Adaware_Installer.exe
2014-07-03 10:40 - 2014-07-18 07:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft Ad-aware 6
2014-07-03 10:39 - 2014-07-03 10:39 - 01694551 _____ () C:\Users\xhorak06\Downloads\aaw6181.exe
2014-07-03 09:17 - 2014-07-03 13:43 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-07-03 09:17 - 2014-07-03 09:17 - 00002131 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-07-03 09:17 - 2014-07-03 09:17 - 00002119 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2014-07-03 09:17 - 2014-07-03 09:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-07-03 09:17 - 2013-09-20 10:49 - 00018968 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean.exe
2014-07-03 09:16 - 2014-07-03 09:20 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy 2
2014-07-03 09:16 - 2014-07-03 09:16 - 46392680 _____ (Safer-Networking Ltd. ) C:\Users\xhorak06\Downloads\spybot-2.3.exe
2014-07-03 09:01 - 2014-07-03 09:06 - 00002573 _____ () C:\rapport.txt
2014-07-03 09:01 - 2014-07-03 09:01 - 00004144 _____ () C:\Windows\system32\tmp.reg
2014-07-03 09:01 - 2014-07-03 09:01 - 00000000 _____ () C:\Windows\system32\tmp.txt
2014-07-03 09:00 - 2014-07-03 09:06 - 00000000 ____D () C:\Users\xhorak06\Downloads\SmitfraudFix
2014-07-03 09:00 - 2008-08-09 15:37 - 00082432 _____ (S!Ri.URZ) C:\Windows\system32\404Fix.exe
2014-07-03 09:00 - 2008-07-02 13:33 - 00082432 _____ (S!Ri.URZ) C:\Windows\system32\IEDFix.C.exe
2014-07-03 09:00 - 2008-05-29 09:35 - 00086528 _____ (S!Ri.URZ) C:\Windows\system32\VACFix.exe
2014-07-03 09:00 - 2008-05-18 21:40 - 00082944 _____ (S!Ri.URZ) C:\Windows\system32\IEDFix.exe
2014-07-03 09:00 - 2007-10-04 00:36 - 00025600 _____ () C:\Windows\system32\WS2Fix.exe
2014-07-03 09:00 - 2007-09-06 00:22 - 00289144 _____ (S!Ri) C:\Windows\system32\VCCLSID.exe
2014-07-03 09:00 - 2006-12-01 06:20 - 00079360 _____ (SteelWerX) C:\Windows\system32\swxcacls.exe
2014-07-03 09:00 - 2006-08-29 19:43 - 00135168 _____ (SteelWerX) C:\Windows\system32\swreg.exe
2014-07-03 09:00 - 2006-04-27 17:49 - 00288417 _____ (S!Ri) C:\Windows\system32\SrchSTS.exe
2014-07-03 09:00 - 2006-01-09 10:36 - 00040960 _____ () C:\Windows\system32\swsc.exe
2014-07-03 09:00 - 2004-07-31 18:50 - 00051200 _____ () C:\Windows\system32\dumphive.exe
2014-07-03 09:00 - 2003-06-05 21:13 - 00053248 _____ (http://www.beyondlogic.org) C:\Windows\system32\Process.exe
2014-07-03 08:57 - 2014-07-03 08:57 - 01479403 _____ () C:\Users\xhorak06\Downloads\SmitfraudFix.exe
2014-07-02 12:53 - 2014-07-02 12:53 - 29677080 _____ (Mozilla) C:\Users\xhorak06\Downloads\Firefox Setup 30.0.exe
2014-07-02 12:14 - 2014-07-02 14:03 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-07-02 12:14 - 2014-07-02 14:03 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-07-02 12:14 - 2014-07-02 14:00 - 00001117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-07-02 12:14 - 2014-07-02 14:00 - 00001105 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-07-02 12:13 - 2014-07-02 12:13 - 00284224 _____ (Mozilla) C:\Users\xhorak06\Downloads\Firefox Setup Stub 30.0.exe
2014-07-01 13:40 - 2014-07-01 13:41 - 00000000 ____D () C:\Program Files\Defraggler
2014-07-01 07:56 - 2014-07-01 07:56 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\NVIDIA
2014-07-01 07:50 - 2014-07-23 07:51 - 00001450 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-5.job
2014-07-01 07:50 - 2014-07-23 07:50 - 00001344 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-2.job
2014-07-01 07:50 - 2014-07-23 07:50 - 00001188 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-10.job
2014-07-01 07:49 - 2014-07-23 07:54 - 00000920 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2014-07-01 07:49 - 2014-07-23 07:54 - 00000916 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2014-07-01 07:49 - 2014-07-23 07:49 - 00002150 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-4.job
2014-07-01 07:49 - 2014-07-23 07:49 - 00001528 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-6.job
2014-07-01 07:49 - 2014-07-23 07:49 - 00001516 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-1.job
2014-07-01 07:49 - 2014-07-23 07:49 - 00001460 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-7.job
2014-07-01 07:48 - 2014-07-23 07:49 - 00000458 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-11.job
2014-07-01 07:48 - 2014-07-01 07:48 - 00000000 ____D () C:\Users\xhorak06\AppData\Local\globalUpdate
2014-07-01 07:48 - 2014-07-01 07:48 - 00000000 ____D () C:\Program Files\globalUpdate
2014-07-01 07:48 - 2014-07-01 07:48 - 00000000 ____D () C:\Program Files\Bechiro S.L
2014-07-01 07:47 - 2014-07-01 18:15 - 00000000 ____D () C:\Program Files\Zrychleni Pocitace
2014-07-01 07:47 - 2014-07-01 07:47 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Bechiro S.L
2014-06-25 11:03 - 2014-04-27 00:55 - 00000000 ____D () C:\Users\xhorak06\Desktop\BaldursGateEnhancedEdition v1.3 .apk
2014-06-23 09:24 - 2014-06-23 09:24 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\OpenOffice
2014-06-23 09:17 - 2014-06-23 09:17 - 00001058 _____ () C:\Users\Public\Desktop\OpenOffice 4.1.0.lnk
2014-06-23 09:17 - 2014-06-23 09:17 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.0
2014-06-23 09:16 - 2014-06-23 09:16 - 00000000 ____D () C:\Program Files\OpenOffice 4
2014-06-23 09:11 - 2014-06-23 09:11 - 00000000 ____D () C:\Users\xhorak06\Desktop\OpenOffice 4.1.0 (cs) Installation Files
2014-06-23 09:01 - 2014-06-23 09:02 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PDF Editor 4.0
2014-06-23 09:01 - 2014-06-23 09:02 - 00000000 ____D () C:\Program Files\PDF Editor 4
2014-06-23 08:59 - 2014-06-23 09:02 - 00000988 _____ () C:\Users\xhorak06\Desktop\PDF Editor 3.3.lnk
2014-06-23 08:59 - 2014-06-23 08:59 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PDF Editor 3.3
2014-06-23 08:40 - 2014-06-23 08:59 - 00000988 _____ () C:\Users\UpdatusUser\Desktop\PDF Editor 3.3.lnk
==================== One Month Modified Files and Folders =======
2014-07-23 08:21 - 2014-07-23 08:19 - 00019070 _____ () C:\Users\xhorak06\Desktop\FRST.txt
2014-07-23 08:19 - 2014-07-23 08:19 - 00029696 _____ () C:\Users\xhorak06\AppData\Local\MSGBOX.EXE
2014-07-23 08:19 - 2014-07-23 08:19 - 00015327 _____ () C:\Users\xhorak06\Desktop\LM.bat
2014-07-23 08:19 - 2014-07-23 08:19 - 00000000 ____D () C:\FRST
2014-07-23 08:18 - 2014-07-23 08:18 - 01080320 _____ (Farbar) C:\Users\xhorak06\Desktop\FRST.exe
2014-07-23 08:18 - 2014-07-23 08:18 - 00112640 _____ (forum.viry.cz) C:\Users\xhorak06\Desktop\FRSTLauncher.exe
2014-07-23 08:17 - 2014-07-23 08:17 - 00000000 _____ () C:\Windows\setuperr.log
2014-07-23 08:17 - 2014-07-23 08:17 - 00000000 _____ () C:\Windows\setupact.log
2014-07-23 08:17 - 2010-03-24 10:25 - 00000940 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-23 08:09 - 2012-04-10 08:13 - 00000000 ____D () C:\Windows\Minidump
2014-07-23 08:09 - 2011-05-18 13:48 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Media Player Classic
2014-07-23 08:09 - 2011-03-17 11:12 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Vso
2014-07-23 08:09 - 2010-03-08 11:47 - 00000000 ____D () C:\Windows\Panther
2014-07-23 08:06 - 2014-07-23 08:06 - 00000965 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-07-23 08:06 - 2014-07-23 08:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-07-23 08:06 - 2014-07-23 08:06 - 00000000 ____D () C:\Program Files\CCleaner
2014-07-23 08:05 - 2014-07-23 08:05 - 04812672 _____ (Piriform Ltd) C:\Users\xhorak06\Downloads\ccsetup415.exe
2014-07-23 07:59 - 2012-04-05 08:08 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-07-23 07:54 - 2014-07-01 07:49 - 00000920 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2014-07-23 07:54 - 2014-07-01 07:49 - 00000916 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2014-07-23 07:52 - 2010-03-08 11:50 - 01947033 ____N () C:\Windows\WindowsUpdate.log
2014-07-23 07:51 - 2014-07-01 07:50 - 00001450 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-5.job
2014-07-23 07:50 - 2014-07-01 07:50 - 00001344 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-2.job
2014-07-23 07:50 - 2014-07-01 07:50 - 00001188 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-10.job
2014-07-23 07:49 - 2014-07-01 07:49 - 00002150 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-4.job
2014-07-23 07:49 - 2014-07-01 07:49 - 00001528 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-6.job
2014-07-23 07:49 - 2014-07-01 07:49 - 00001516 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-1.job
2014-07-23 07:49 - 2014-07-01 07:49 - 00001460 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-7.job
2014-07-23 07:49 - 2014-07-01 07:48 - 00000458 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-11.job
2014-07-23 07:48 - 2009-07-14 06:34 - 00017136 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-07-23 07:48 - 2009-07-14 06:34 - 00017136 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-07-23 07:40 - 2012-08-17 08:42 - 00000000 ____D () C:\Users\xhorak06\AppData\Local\HTC MediaHub
2014-07-23 07:40 - 2012-07-09 12:42 - 00000278 _____ () C:\Windows\Tasks\RMAutoUpdate.job
2014-07-23 07:40 - 2012-07-09 12:42 - 00000000 ____D () C:\ProgramData\TEMP
2014-07-23 07:40 - 2012-07-09 12:42 - 00000000 ____D () C:\Program Files\PC Tools Registry Mechanic
2014-07-23 07:40 - 2010-11-15 15:20 - 00000128 _____ () C:\Windows\system32\config\netlogon.ftl
2014-07-23 07:40 - 2010-03-24 10:25 - 00000936 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-23 07:40 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-07-18 10:30 - 2014-07-18 10:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ad-Aware Antivirus
2014-07-18 10:28 - 2014-07-18 10:28 - 00000000 ____D () C:\Program Files\Common Files\Lavasoft
2014-07-18 10:27 - 2014-07-18 10:27 - 01707144 _____ () C:\Users\xhorak06\Downloads\Adaware_Installer(1).exe
2014-07-18 10:11 - 2012-10-25 13:25 - 00000000 ____D () C:\Users\xhorak06\Desktop\Download
2014-07-18 10:07 - 2014-05-16 08:30 - 00000000 ____D () C:\Program Files\SiteFinder
2014-07-18 08:29 - 2010-05-03 13:17 - 00000000 ____D () C:\ProgramData\Skype
2014-07-18 08:14 - 2013-01-07 12:42 - 00000000 ____D () C:\Program Files\DIFX
2014-07-18 08:04 - 2014-07-18 08:04 - 02347384 _____ (ESET) C:\Users\xhorak06\Downloads\esetsmartinstaller_csy.exe
2014-07-18 08:04 - 2014-07-18 08:04 - 00000000 ____D () C:\Program Files\ESET
2014-07-18 07:54 - 2014-07-18 07:54 - 01694551 _____ () C:\Users\xhorak06\Downloads\aaw6181(1).exe
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\xtomank0\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\xhorak06\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\xhorak06.ZF\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\xhic\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\UpdatusUser\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\quest\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00001036 _____ () C:\Users\Guest\Desktop\Ad-aware 6.0.lnk
2014-07-18 07:54 - 2014-07-18 07:54 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lavasoft Ad-aware 6
2014-07-18 07:54 - 2014-07-03 13:51 - 00000000 ____D () C:\Program Files\Lavasoft
2014-07-18 07:54 - 2014-07-03 10:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft Ad-aware 6
2014-07-18 07:44 - 2013-07-03 11:08 - 00000000 ____D () C:\Users\xhorak06\Tracing
2014-07-14 10:23 - 2014-07-14 10:23 - 00000000 ____D () C:\Users\xhorak06\AppData\Local\{046722A3-9B2C-4072-AAD9-E4037489C79D}
2014-07-14 09:41 - 2012-07-09 12:42 - 00000280 _____ () C:\Windows\Tasks\RMSchedule.job
2014-07-11 00:32 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2014-07-10 23:05 - 2009-07-14 06:33 - 00468288 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-07-10 23:01 - 2014-05-06 16:19 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-07-10 03:27 - 2010-03-08 12:25 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-07-10 03:17 - 2013-08-14 14:42 - 00000000 ____D () C:\Windows\system32\MRT
2014-07-10 03:04 - 2010-03-15 09:44 - 93585272 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-07-10 03:00 - 2012-04-05 08:08 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-07-10 03:00 - 2011-05-19 07:43 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-07-04 11:12 - 2010-03-08 11:57 - 01595442 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-07-04 07:47 - 2014-07-04 07:47 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Lavasoft
2014-07-03 13:52 - 2014-07-03 13:52 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\LavasoftStatistics
2014-07-03 13:47 - 2014-07-03 13:47 - 00000000 ____D () C:\ProgramData\Lavasoft
2014-07-03 13:46 - 2014-07-03 13:46 - 01707144 _____ () C:\Users\xhorak06\Downloads\Adaware_Installer.exe
2014-07-03 13:43 - 2014-07-03 09:17 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-07-03 13:42 - 2013-04-17 08:25 - 00000000 ____D () C:\Users\xhorak06\Desktop\Dokumenty z činnosti
2014-07-03 10:39 - 2014-07-03 10:39 - 01694551 _____ () C:\Users\xhorak06\Downloads\aaw6181.exe
2014-07-03 09:20 - 2014-07-03 09:16 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy 2
2014-07-03 09:17 - 2014-07-03 09:17 - 00002131 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-07-03 09:17 - 2014-07-03 09:17 - 00002119 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2014-07-03 09:17 - 2014-07-03 09:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-07-03 09:16 - 2014-07-03 09:16 - 46392680 _____ (Safer-Networking Ltd. ) C:\Users\xhorak06\Downloads\spybot-2.3.exe
2014-07-03 09:06 - 2014-07-03 09:01 - 00002573 _____ () C:\rapport.txt
2014-07-03 09:06 - 2014-07-03 09:00 - 00000000 ____D () C:\Users\xhorak06\Downloads\SmitfraudFix
2014-07-03 09:01 - 2014-07-03 09:01 - 00004144 _____ () C:\Windows\system32\tmp.reg
2014-07-03 09:01 - 2014-07-03 09:01 - 00000000 _____ () C:\Windows\system32\tmp.txt
2014-07-03 08:57 - 2014-07-03 08:57 - 01479403 _____ () C:\Users\xhorak06\Downloads\SmitfraudFix.exe
2014-07-03 08:15 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-07-03 08:07 - 2012-08-17 10:22 - 00000000 ____D () C:\Windows\WindowsMobile
2014-07-03 08:05 - 2013-01-22 15:11 - 00000000 ____D () C:\Program Files\Common Files\XCPCSync.OEM
2014-07-03 08:05 - 2012-05-16 08:28 - 00000000 ____D () C:\Program Files\Research In Motion
2014-07-03 08:05 - 2012-05-16 08:28 - 00000000 ____D () C:\Program Files\Common Files\Research In Motion
2014-07-03 08:04 - 2013-01-22 15:12 - 00002009 _____ () C:\Users\xhorak06\AppData\Roaming\Rim.Desktop.HttpServerSetup.log
2014-07-03 07:59 - 2009-07-14 04:37 - 00000000 __RHD () C:\Users\Public\Libraries
2014-07-03 07:44 - 2011-05-04 09:28 - 00000000 ____D () C:\Users\Public\DvrmsToolbox
2014-07-02 14:03 - 2014-07-02 12:14 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-07-02 14:03 - 2014-07-02 12:14 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-07-02 14:00 - 2014-07-02 12:14 - 00001117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-07-02 14:00 - 2014-07-02 12:14 - 00001105 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-07-02 12:55 - 2011-02-17 11:22 - 00000000 ____D () C:\Users\xhorak06\Desktop\Projekty
2014-07-02 12:53 - 2014-07-02 12:53 - 29677080 _____ (Mozilla) C:\Users\xhorak06\Downloads\Firefox Setup 30.0.exe
2014-07-02 12:13 - 2014-07-02 12:13 - 00284224 _____ (Mozilla) C:\Users\xhorak06\Downloads\Firefox Setup Stub 30.0.exe
2014-07-01 18:15 - 2014-07-01 07:47 - 00000000 ____D () C:\Program Files\Zrychleni Pocitace
2014-07-01 14:13 - 2011-04-04 09:50 - 00000000 ____D () C:\Users\Public\Downloads\Mira
2014-07-01 13:49 - 2010-07-21 08:58 - 00000000 ____D () C:\Users\xhorak06\Desktop\Photo + Video
2014-07-01 13:41 - 2014-07-01 13:40 - 00000000 ____D () C:\Program Files\Defraggler
2014-07-01 13:34 - 2010-03-08 12:29 - 00007596 _____ () C:\Users\xhorak06\AppData\Local\resmon.resmoncfg
2014-07-01 07:56 - 2014-07-01 07:56 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\NVIDIA
2014-07-01 07:48 - 2014-07-01 07:48 - 00000000 ____D () C:\Users\xhorak06\AppData\Local\globalUpdate
2014-07-01 07:48 - 2014-07-01 07:48 - 00000000 ____D () C:\Program Files\globalUpdate
2014-07-01 07:48 - 2014-07-01 07:48 - 00000000 ____D () C:\Program Files\Bechiro S.L
2014-07-01 07:47 - 2014-07-01 07:47 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Bechiro S.L
2014-06-30 03:40 - 2014-07-09 07:36 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-06-30 03:36 - 2014-07-09 07:36 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-24 07:40 - 2010-03-08 11:58 - 00118312 _____ () C:\Users\xhorak06\AppData\Local\GDIPFONTCACHEV1.DAT
2014-06-23 09:24 - 2014-06-23 09:24 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\OpenOffice
2014-06-23 09:17 - 2014-06-23 09:17 - 00001058 _____ () C:\Users\Public\Desktop\OpenOffice 4.1.0.lnk
2014-06-23 09:17 - 2014-06-23 09:17 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.0
2014-06-23 09:17 - 2010-05-05 09:08 - 00000000 ____D () C:\Program Files\OpenOffice.org 3
2014-06-23 09:16 - 2014-06-23 09:16 - 00000000 ____D () C:\Program Files\OpenOffice 4
2014-06-23 09:11 - 2014-06-23 09:11 - 00000000 ____D () C:\Users\xhorak06\Desktop\OpenOffice 4.1.0 (cs) Installation Files
2014-06-23 09:02 - 2014-06-23 09:01 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PDF Editor 4.0
2014-06-23 09:02 - 2014-06-23 09:01 - 00000000 ____D () C:\Program Files\PDF Editor 4
2014-06-23 09:02 - 2014-06-23 08:59 - 00000988 _____ () C:\Users\xhorak06\Desktop\PDF Editor 3.3.lnk
2014-06-23 09:01 - 2011-06-27 08:57 - 00082072 _____ () C:\Windows\cadkasdeinst01e.exe
2014-06-23 08:59 - 2014-06-23 08:59 - 00000000 ____D () C:\Users\xhorak06\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PDF Editor 3.3
2014-06-23 08:59 - 2014-06-23 08:40 - 00000988 _____ () C:\Users\UpdatusUser\Desktop\PDF Editor 3.3.lnk
2014-06-23 08:59 - 2013-02-26 12:19 - 00000988 _____ () C:\Users\xtomank0\Desktop\PDF Editor 3.3.lnk
2014-06-23 08:59 - 2013-02-26 12:19 - 00000988 _____ () C:\Users\xhorak06.ZF\Desktop\PDF Editor 3.3.lnk
2014-06-23 08:59 - 2013-02-26 12:19 - 00000988 _____ () C:\Users\xhic\Desktop\PDF Editor 3.3.lnk
2014-06-23 08:59 - 2013-02-26 12:19 - 00000988 _____ () C:\Users\quest\Desktop\PDF Editor 3.3.lnk
2014-06-23 08:59 - 2013-02-26 12:19 - 00000988 _____ () C:\Users\Guest\Desktop\PDF Editor 3.3.lnk
2014-06-23 08:59 - 2013-02-26 12:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Editor 3.3
2014-06-23 08:59 - 2013-02-26 12:19 - 00000000 ____D () C:\Program Files\PDF Editor 3
2014-06-23 08:29 - 2013-04-04 09:45 - 00001222 _____ () C:\Users\xhorak06\Desktop\Revo Uninstaller.lnk
Some content of TEMP:
====================
C:\Users\xhorak06.ZF\AppData\Local\Temp\jre-6u22-windows-i586-iftw-rv.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed