Pomalejší PC
Napsal: 12 srp 2014 23:04
Dobrý den, prosím o kontrolu. Pc se zpomalilo, vypadává na něm internet a takové věci.
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-08-2014
Ran by Roman (administrator) on ROMAN2001 on 12-08-2014 23:56:23
Running from C:\Users\Roman\Desktop
Platform: Windows 8 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 10
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Threat Expert Ltd.) C:\Program Files (x86)\PC Tools\PC Tools Security\BDT\BDTUpdateService.exe
(Samsung Electronics CO., LTD.) C:\Program Files (x86)\Samsung\Settings\CmdServer\EasyLauncher.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(PC Tools) C:\Program Files (x86)\PC Tools\PC Tools Security\pctsAuxs.exe
(PC Tools) C:\Program Files (x86)\PC Tools\PC Tools Security\pctsSvc.exe
() C:\Program Files (x86)\Samsung\Settings\CmdServer\EasySettingsCmdServer.exe
(PC Tools) C:\Program Files (x86)\PC Tools\PC Tools Security\pctsGui.exe
(Samsung Electronics CO., LTD.) C:\Program Files (x86)\Samsung\Settings\sSettings.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Samsung Electronics CO., LTD.) C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe
(Qualcomm®Atheros®) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
() C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Samsung Electronics CO., LTD.) C:\Program Files\Samsung\S Agent\CommonAgent.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Roman\Desktop\FRST-OlderVersion\FRSTLauncher (1).exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2862448 2012-08-06] (ELAN Microelectronics Corp.)
HKLM-x32\...\Run: [ISTray] => C:\Program Files (x86)\PC Tools\PC Tools Security\pctsGui.exe [2717816 2012-11-01] (PC Tools)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [133760 2014-01-07] ( (Qualcomm®Atheros®))
AppInit_DLLs: C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [168616 2013-09-05] (NVIDIA Corporation)
AppInit_DLLs: C:\Program Files => C:\Program Files [0 2014-08-01] ()
AppInit_DLLs-x32: c:\windows\syswow64\nvinit.dll => c:\windows\syswow64\nvinit.dll [141336 2013-09-05] (NVIDIA Corporation)
AppInit_DLLs-x32: c:\program files => c:\program files [0 2014-08-01] ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: PC Tools Browser Guard BHO -> {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} -> C:\Program Files (x86)\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll (Threat Expert Ltd.)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM-x32 - No Name - {472734EA-242A-422B-ADF8-83D1E48CC825} - No File
Tcpip\Parameters: [DhcpNameServer] 81.200.55.50 81.200.55.34
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.60.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.60.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [{cb84136f-9c44-433a-9048-c5cd9df1dc16}] - C:\Program Files (x86)\PC Tools\PC Tools Security\BDT\Firefox
FF Extension: Browser Guard Toolbar - C:\Program Files (x86)\PC Tools\PC Tools Security\BDT\Firefox [2014-07-02]
Chrome:
=======
CHR HomePage: hxxp://www.google.cz/
CHR StartupUrls: "hxxp://websearch.wonderfulsearches.info/?pid=1387&r=2014/07/31&hid=6628315559057160171&lg=EN&cc=CZ&unqvl=60"
CHR Extension: (Dokumenty Google) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-07-02]
CHR Extension: (Disk Google) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-07-02]
CHR Extension: (Seznam Lištička - Email) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2014-07-02]
CHR Extension: (YouTube) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-07-02]
CHR Extension: (Vyhledávání Google) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-07-02]
CHR Extension: (AdBlock) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-08-05]
CHR Extension: (Peněženka Google) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-07-02]
CHR Extension: (Gmail) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-07-02]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\AdminService.exe [318592 2014-01-07] (Windows (R) Win 7 DDK provider)
R2 Browser Defender Update Service; C:\Program Files (x86)\PC Tools\PC Tools Security\BDT\BDTUpdateService.exe [580728 2012-10-23] (Threat Expert Ltd.)
R2 Easy Launcher; C:\Program Files (x86)\Samsung\Settings\CmdServer\EasyLauncher.exe [1593152 2014-01-29] (Samsung Electronics CO., LTD.)
R2 sdAuxService; C:\Program Files (x86)\PC Tools\PC Tools Security\pctsAuxs.exe [403416 2012-10-31] (PC Tools)
R2 sdCoreService; C:\Program Files (x86)\PC Tools\PC Tools Security\pctsSvc.exe [1162360 2012-11-01] (PC Tools)
R2 SWUpdateService; C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe [3020632 2014-04-04] (Samsung Electronics CO., LTD.)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16056 2014-03-29] (Microsoft Corporation)
S2 f7dc94c1; "C:\WINDOWS\system32\rundll32.exe" "c:\program files (x86)\sssupp~1\AssistantSvc.dll",service
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
U5 BtFilter; C:\Windows\System32\Drivers\BtFilter.sys [565760 2013-06-25] (Qualcomm Atheros)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink)
R3 PCTBD; C:\Windows\System32\Drivers\PCTBD64.sys [77144 2012-10-23] (PC Tools)
R0 PCTCore; C:\Windows\System32\drivers\PCTCore64.sys [413448 2012-10-22] (PC Tools)
R0 pctDS; C:\Windows\System32\drivers\pctDS64.sys [453896 2012-02-28] (PC Tools)
R0 pctEFA; C:\Windows\System32\drivers\pctEFA64.sys [1096176 2012-02-28] (PC Tools)
R1 pctgntdi; C:\Windows\System32\Drivers\pctgntdi64.sys [347016 2012-10-31] (PC Tools)
R3 pctplsm; C:\Windows\System32\Drivers\pctplsm64.sys [87968 2012-11-01] (PC Tools)
R1 PCTSD; C:\Windows\System32\Drivers\PCTSD64.sys [253256 2012-11-01] (PC Tools)
R3 RadioHIDMini; C:\Windows\System32\drivers\RadioHIDMini.sys [23408 2012-07-27] (Windows (R) Win 7 DDK provider)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-08-12 23:56 - 2014-08-12 23:57 - 00011055 _____ () C:\Users\Roman\Desktop\FRST.txt
2014-08-12 23:56 - 2014-08-12 23:56 - 00000000 ____D () C:\Users\Roman\Desktop\FRST-OlderVersion
2014-08-12 23:53 - 2014-08-12 23:53 - 00112640 _____ (forum.viry.cz) C:\Users\Roman\Downloads\Nepotvrzeno 542312.crdownload
2014-08-12 23:53 - 2014-08-12 23:53 - 00112640 _____ (forum.viry.cz) C:\Users\Roman\Downloads\FRSTLauncher (1).exe
2014-08-11 19:02 - 2014-08-11 19:02 - 00014088 _____ () C:\Users\Roman\Downloads\%3forst%3fracks%3fver_o8.Challenge.Gbx
2014-08-11 11:13 - 2014-08-12 09:15 - 00001488 _____ () C:\WINDOWS\setupact.log
2014-08-11 11:13 - 2014-08-11 11:13 - 00000000 _____ () C:\WINDOWS\setuperr.log
2014-08-10 16:05 - 2014-08-10 16:05 - 00111963 _____ () C:\Users\Roman\Downloads\particles.zip
2014-08-10 15:59 - 2014-08-10 15:59 - 00009255 _____ () C:\Users\Roman\Downloads\autoexec.txt
2014-08-09 11:40 - 2014-08-09 11:40 - 00060790 _____ () C:\Users\Roman\Downloads\FRST3.zip
2014-08-08 15:03 - 2014-08-12 18:00 - 00000470 ____H () C:\WINDOWS\Tasks\Norton Security Scan for Roman.job
2014-08-07 20:49 - 2014-08-07 20:49 - 00051847 _____ () C:\Users\Roman\Downloads\openal32 (2).zip
2014-08-07 20:49 - 2014-08-07 20:49 - 00051847 _____ () C:\Users\Roman\Desktop\openal32 (2).zip
2014-08-07 20:41 - 2014-08-07 20:41 - 00050500 _____ () C:\Users\Roman\Downloads\openal32 (1).zip
2014-08-07 20:40 - 2014-08-07 20:40 - 00001118 _____ () C:\Users\Public\Desktop\TmNationsForever.lnk
2014-08-07 20:40 - 2014-08-07 20:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TmNationsForever
2014-08-07 20:35 - 2014-08-07 20:50 - 00000000 ____D () C:\Program Files (x86)\TmNationsForever
2014-08-07 02:31 - 2014-08-07 02:31 - 00013113 _____ () C:\Users\Roman\Downloads\Return.Challenge.Gbx
2014-08-07 02:29 - 2014-08-07 02:29 - 00015811 _____ () C:\Users\Roman\Downloads\OldLoop.Challenge.Gbx
2014-08-07 02:28 - 2014-08-07 02:28 - 00020405 _____ () C:\Users\Roman\Downloads\Mike_Blue_Eyes.Replay.gbx
2014-08-07 02:24 - 2014-08-07 02:24 - 00013042 _____ () C:\Users\Roman\Downloads\Blue_Eyes.Challenge.Gbx
2014-08-07 02:13 - 2014-08-07 02:13 - 00014456 _____ () C:\Users\Roman\Downloads\Mini-Stunt.Challenge.Gbx
2014-08-07 02:08 - 2014-08-07 02:08 - 00016501 _____ () C:\Users\Roman\Downloads\Train__Speed_Drift.Challenge.Gbx
2014-08-04 17:46 - 2014-08-04 17:46 - 00000000 ____D () C:\WINDOWS\LastGood
2014-08-04 03:35 - 2014-08-12 20:38 - 00000000 ____D () C:\ProgramData\TrackMania
2014-08-04 03:15 - 2014-08-04 03:17 - 00425984 _____ (fuckfish ltd.) C:\Users\Roman\Downloads\gbxtmtptools.exe
2014-08-04 03:08 - 2014-08-04 03:08 - 00000221 _____ () C:\Users\Roman\Desktop\tmnf (steam).url
2014-08-04 02:48 - 2014-08-04 02:48 - 00000000 ____D () C:\ProgramData\Atheros
2014-08-04 02:47 - 2014-08-04 02:47 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\Atheros
2014-08-04 01:50 - 2014-08-04 01:50 - 00050500 _____ () C:\Users\Roman\Downloads\openal32.zip
2014-08-03 23:12 - 2014-08-04 00:32 - 530600781 _____ () C:\Users\Roman\Downloads\Trackmania-Nations-Forever-setup.exe
2014-08-03 15:48 - 2014-08-03 15:48 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BT Program
2014-08-03 15:48 - 2014-08-03 15:48 - 00000000 ____D () C:\Program Files\Common Files\QCA_Bluetooth
2014-08-03 15:48 - 2014-08-03 15:48 - 00000000 ____D () C:\Program Files (x86)\Bluetooth Suite
2014-08-03 14:54 - 2014-08-03 14:25 - 976244450 _____ () C:\Users\Roman\Desktop\Prci,-prci,-prcičky-8-Školní-sraz.avi
2014-08-03 12:33 - 2014-08-03 14:25 - 976244450 _____ () C:\Users\Roman\Downloads\Prci,-prci,-prcičky-8-Školní-sraz.avi
2014-08-02 19:28 - 2014-08-02 19:25 - 801075430 _____ () C:\Users\Roman\Desktop\Prci,-prci,-prcičky-7-Kniha-lásky.avi
2014-08-02 17:54 - 2014-08-02 19:25 - 801075430 _____ () C:\Users\Roman\Downloads\Prci,-prci,-prcičky-7-Kniha-lásky.avi
2014-08-02 17:10 - 2014-08-02 17:10 - 00000000 ____D () C:\WINDOWS\LastGood.Tmp
2014-08-02 15:52 - 2014-08-02 15:52 - 742047852 _____ () C:\Users\Roman\Desktop\Prci,-prci,-prcičky-6-Spolek-Beta.avi
2014-08-02 14:15 - 2014-08-02 15:52 - 742047852 _____ () C:\Users\Roman\Downloads\Prci,-prci,-prcičky-6-Spolek-Beta.avi
2014-08-02 00:21 - 2014-08-02 00:21 - 00895120 _____ (Google Inc.) C:\Users\Roman\Downloads\googledrivesync.exe
2014-08-01 22:36 - 2014-08-01 22:36 - 00001017 _____ () C:\Users\Roman\Desktop\CCleaner.lnk
2014-08-01 22:36 - 2014-08-01 22:36 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-08-01 22:36 - 2014-08-01 22:36 - 00000000 ____D () C:\Program Files (x86)\CCleaner
2014-08-01 22:35 - 2014-08-01 22:35 - 01187896 _____ (Piriform Ltd) C:\Users\Roman\Downloads\ccleaner.exe
2014-08-01 18:17 - 2014-08-12 23:56 - 02099712 _____ (Farbar) C:\Users\Roman\Desktop\FRST64.exe
2014-08-01 02:06 - 2014-08-01 02:06 - 772659628 _____ () C:\Users\Roman\Desktop\Prci-prci-prcičky-5-Nahá-míle-cz-(2006)-(#).avi
2014-08-01 00:42 - 2014-08-01 02:06 - 772659628 _____ () C:\Users\Roman\Downloads\Prci-prci-prcičky-5-Nahá-míle-cz-(2006)-(#).avi
2014-07-31 22:41 - 2014-08-01 21:59 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Google
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Comodo
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Roman\AppData\Local\Comodo
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Guest\AppData\Local\Google
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Guest\AppData\Local\Comodo
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Guest
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Comodo
2014-07-31 22:40 - 2014-07-31 22:43 - 00000000 ____D () C:\ProgramData\InstallMate
2014-07-31 22:39 - 2014-07-31 22:39 - 00318184 _____ (FreshApp installer) C:\Users\Roman\Downloads\SkypEmoticons.exe
2014-07-31 18:48 - 2014-07-31 18:48 - 00003802 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2014-07-31 17:14 - 2014-07-31 17:08 - 733999104 _____ () C:\Users\Roman\Desktop\Prci-prci-prcicky-4.CZ.avi
2014-07-31 15:49 - 2014-07-31 17:08 - 733999104 _____ () C:\Users\Roman\Downloads\Prci-prci-prcicky-4.CZ.avi
2014-07-31 12:19 - 2014-07-31 11:18 - 735893383 _____ () C:\Users\Roman\Desktop\Prci-prci-prcičky-3---Svatba-(2003)-CZ.avi
2014-07-31 09:59 - 2014-07-31 11:18 - 735893383 _____ () C:\Users\Roman\Downloads\Prci-prci-prcičky-3---Svatba-(2003)-CZ.avi
2014-07-30 20:08 - 2014-07-31 16:03 - 00000098 _____ () C:\Users\Roman\Desktop\Nový textový dokument.txt
2014-07-30 17:37 - 2014-07-30 17:35 - 1471449088 _____ () C:\Users\Roman\Desktop\Prci,-prci,-prcičky-2.avi
2014-07-30 16:02 - 2014-07-30 17:35 - 1471449088 _____ () C:\Users\Roman\Downloads\Prci,-prci,-prcičky-2.avi
2014-07-30 01:00 - 2014-07-30 01:00 - 733689434 _____ () C:\Users\Roman\Desktop\Prci,-prci,-prcičky-1.avi
2014-07-29 23:36 - 2014-07-30 01:00 - 733689434 _____ () C:\Users\Roman\Downloads\Prci,-prci,-prcičky-1.avi
2014-07-29 15:31 - 2014-07-29 15:31 - 00013404 _____ () C:\Users\Roman\Downloads\MiniFullSpeed_.Challenge.Gbx
2014-07-29 15:26 - 2014-07-29 15:26 - 00014424 _____ () C:\Users\Roman\Downloads\ExtremeLOL_By_doRiK.Challenge.Gbx
2014-07-29 15:24 - 2014-07-29 15:24 - 00011854 _____ () C:\Users\Roman\Downloads\don't_laugh_at_%2333.Challenge.Gbx
2014-07-29 15:22 - 2014-07-29 15:22 - 00085972 _____ () C:\Users\Roman\Downloads\»ctc._At_The_Speed_Of_Life.Replay.Gbx
2014-07-29 15:20 - 2014-07-29 15:20 - 00008681 _____ () C:\Users\Roman\Downloads\NBK_15_seconds.Replay (1).gbx
2014-07-29 15:17 - 2014-07-29 15:17 - 00007834 _____ () C:\Users\Roman\Downloads\Lovva%5eLoL%5e17..Challenge (2).Gbx
2014-07-28 20:26 - 2014-07-28 20:26 - 00007834 _____ () C:\Users\Roman\Downloads\Lovva%5eLoL%5e17..Challenge (1).Gbx
2014-07-28 16:20 - 2014-07-28 16:20 - 00007834 _____ () C:\Users\Roman\Downloads\Lovva%5eLoL%5e17..Challenge.Gbx
2014-07-28 12:28 - 2014-07-28 12:29 - 04915831 _____ (Nadeo ) C:\Users\Roman\Downloads\TmNationsForever_Update_2010-03-15_Setup (2).exe
2014-07-27 18:08 - 2014-07-27 18:08 - 00001637 _____ () C:\Users\Roman\Downloads\B-0.Challenge (1).Gbx
2014-07-27 18:01 - 2014-07-27 18:01 - 00001637 _____ () C:\Users\Roman\Downloads\B-0.Challenge.Gbx
2014-07-21 21:04 - 2014-07-21 21:04 - 00016536 _____ () C:\Users\Roman\Downloads\Nexus___Snow_World.Challenge.Gbx
2014-07-21 21:03 - 2014-07-21 21:03 - 00024238 _____ () C:\Users\Roman\Downloads\Decadence._%3f%3ft__®%3fä%3fa%3f%3fe(00'27''48).Replay.Gbx
2014-07-21 20:46 - 2014-07-21 20:46 - 00015857 _____ () C:\Users\Roman\Downloads\Decadence..Challenge.Gbx
2014-07-21 14:55 - 2014-07-21 14:55 - 00006758 _____ () C:\Users\Roman\Downloads\Jan_Lol_for_Tomilll__3.Replay.gbx
2014-07-21 14:52 - 2014-07-21 14:52 - 00073839 _____ () C:\Users\Roman\Downloads\Ever_Dream.°_%3f%3f%3f_»NG%3f%3f!__3(00'48''63).Replay.Gbx
2014-07-21 14:39 - 2014-07-21 14:39 - 00056208 _____ () C:\Users\Roman\Downloads\Ever_Dream.°.Challenge.Gbx
2014-07-21 14:35 - 2014-07-21 14:35 - 00056130 _____ () C:\Users\Roman\Downloads\Manu2_Twilight_Impact.Replay.gbx
2014-07-21 14:27 - 2014-07-21 14:27 - 00048942 _____ () C:\Users\Roman\Downloads\Twilight_Impact.Challenge.Gbx
2014-07-21 14:24 - 2014-07-21 14:24 - 00075769 _____ () C:\Users\Roman\Downloads\Anael_LOL_Impossible_Nino´s_Answer.Replay.gbx
2014-07-18 14:33 - 2014-07-18 14:33 - 00013185 _____ () C:\Users\Roman\Downloads\A03_Lik3D_riolu!(00'17''19).Replay (2).Gbx
2014-07-18 14:32 - 2014-07-18 14:32 - 00013185 _____ () C:\Users\Roman\Downloads\A03_Lik3D_riolu!(00'17''19).Replay.Gbx
2014-07-18 14:32 - 2014-07-18 14:32 - 00013185 _____ () C:\Users\Roman\Downloads\A03_Lik3D_riolu!(00'17''19).Replay (1).Gbx
2014-07-18 12:15 - 2014-07-18 12:15 - 00074768 _____ () C:\Users\Roman\Downloads\E_X_Q_U_I_S_I_T_E_Quantum_II_chrisor.(00'44''43).Replay (1).Gbx
2014-07-17 16:48 - 2014-08-10 11:28 - 00000000 ____D () C:\ProgramData\ManiaPlanet
2014-07-17 16:48 - 2014-07-27 18:06 - 00000000 ____D () C:\Program Files (x86)\ManiaPlanet
2014-07-17 16:48 - 2014-07-17 16:48 - 00001093 _____ () C:\Users\Public\Desktop\ManiaPlanet.lnk
2014-07-17 16:48 - 2014-07-17 16:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ManiaPlanet
2014-07-17 13:23 - 2014-07-17 13:13 - 120269872 _____ () C:\Users\Roman\Desktop\ManiaplanetMinimalSetup.exe
2014-07-17 13:11 - 2014-07-17 13:13 - 120269872 _____ () C:\Users\Roman\Downloads\ManiaplanetMinimalSetup.exe
2014-07-15 21:21 - 2014-07-15 21:21 - 00063960 _____ () C:\Users\Roman\Downloads\EtniEs_40.24.Replay.Gbx
2014-07-15 16:38 - 2014-07-15 16:38 - 00008082 _____ () C:\Users\Roman\Downloads\lol_hard_trial.Challenge.Gbx
2014-07-14 23:16 - 2014-07-14 23:16 - 00000000 ____D () C:\Users\Roman\Documents\Electronic Arts
2014-07-14 23:08 - 2014-07-14 23:08 - 00000000 ____D () C:\Program Files (x86)\Microsoft WSE
2014-07-14 23:08 - 2008-09-04 20:17 - 00447752 ____R (On2.com) C:\WINDOWS\SysWOW64\vp6vfw.dll
2014-07-14 22:57 - 2014-07-14 22:57 - 00002086 _____ () C:\Users\Public\Desktop\The Sims™ 3.lnk
2014-07-14 22:45 - 2014-07-14 22:45 - 00000000 ____D () C:\Program Files (x86)\Electronic Arts
2014-07-14 22:24 - 2014-07-14 22:24 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\WinRAR
2014-07-14 22:20 - 2014-07-14 22:20 - 00000971 _____ () C:\Users\Public\Desktop\WinRAR.lnk
2014-07-14 22:20 - 2014-07-14 22:20 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-07-14 22:20 - 2014-07-14 22:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-07-14 22:20 - 2014-07-14 22:20 - 00000000 ____D () C:\Program Files\WinRAR
2014-07-14 22:19 - 2014-07-14 22:19 - 01942752 _____ () C:\Users\Roman\Downloads\winrar-x64-510cz.exe
2014-07-14 20:25 - 2014-07-14 20:25 - 00011219 _____ () C:\Users\Roman\Downloads\Shit_%231.Challenge.Gbx
2014-07-14 19:57 - 2014-07-14 19:58 - 00000056 _____ () C:\Users\Roman\Desktop\STEAM KEY.txt
2014-07-14 15:05 - 2014-07-14 15:05 - 00104747 _____ () C:\Users\Roman\Downloads\Kirshblats_¡_No_Sense_!.Replay.gbx
2014-07-14 12:35 - 2014-07-14 21:38 - 662523473 _____ () C:\Users\Roman\Downloads\The-Sims-3-+-Crack.rar
2014-07-14 12:18 - 2014-07-04 20:15 - 00000008 _____ () C:\WINDOWS\system32\Drivers\rtkhdaud.dat
2014-07-13 21:44 - 2014-07-13 21:44 - 00003150 _____ () C:\WINDOWS\System32\Tasks\RtHDVBg
2014-07-13 21:44 - 2014-07-13 21:44 - 00003132 _____ () C:\WINDOWS\System32\Tasks\RTKCPL
2014-07-13 21:44 - 2014-07-13 21:44 - 00000000 ____D () C:\WINDOWS\SysWOW64\RTCOM
2014-07-13 21:44 - 2014-07-13 21:44 - 00000000 ____D () C:\Program Files\Realtek
2014-07-13 21:43 - 2013-11-06 21:48 - 03710552 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2014-07-13 21:43 - 2013-11-06 17:59 - 38747648 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2014-07-13 21:43 - 2013-11-06 17:41 - 00682709 _____ () C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2014-07-13 21:43 - 2013-11-04 20:26 - 00153304 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
2014-07-13 21:43 - 2013-11-04 12:11 - 02587864 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkAPO64.dll
2014-07-13 21:43 - 2013-10-28 18:29 - 01021656 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2014-07-13 21:43 - 2013-10-18 17:41 - 01286360 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2014-07-13 21:43 - 2013-10-11 12:31 - 00947760 _____ (Sony Corporation) C:\WINDOWS\system32\SFSS_APO.dll
2014-07-13 21:43 - 2013-10-09 21:12 - 02103040 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\WavesGUILib64.dll
2014-07-13 21:43 - 2013-10-07 12:05 - 02810072 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2014-07-13 21:43 - 2013-10-02 18:10 - 00617176 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2014-07-13 21:43 - 2013-09-09 16:32 - 05681192 _____ () C:\WINDOWS\system32\Drivers\rtvienna.dat
2014-07-13 21:43 - 2013-04-24 18:16 - 01662024 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2014-07-13 21:43 - 2011-12-20 16:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
2014-07-13 21:43 - 2011-11-22 17:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll
2014-07-13 21:43 - 2011-09-02 15:21 - 00221024 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFNHK64.dll
2014-07-13 21:43 - 2011-09-02 15:21 - 00081248 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFCOM64.dll
2014-07-13 21:43 - 2011-09-02 15:21 - 00078688 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFAPO64.dll
2014-07-13 21:43 - 2010-11-08 08:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
2014-07-13 21:43 - 2010-11-08 08:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
2014-07-13 21:43 - 2010-11-08 08:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
2014-07-13 21:43 - 2010-11-08 08:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
2014-07-13 21:43 - 2010-11-08 08:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
2014-07-13 21:43 - 2010-11-08 08:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
2014-07-13 21:43 - 2010-11-03 19:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2014-07-13 21:43 - 2010-07-22 17:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll
2014-07-13 21:43 - 2009-11-24 10:55 - 00518896 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
2014-07-13 21:43 - 2009-11-24 10:55 - 00211184 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
2014-07-13 21:43 - 2009-11-24 10:55 - 00198896 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
2014-07-13 21:43 - 2009-11-24 10:55 - 00155888 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
2014-07-13 21:42 - 2013-10-09 21:12 - 14152960 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioRealtek64.dll
2014-07-13 21:42 - 2013-10-09 21:12 - 02036992 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioEQ64.dll
2014-07-13 21:42 - 2013-10-09 21:12 - 01012992 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPOShell64.dll
2014-07-13 21:42 - 2013-08-14 17:36 - 00662784 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2014-07-13 21:42 - 2013-08-14 17:35 - 00663296 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO30.dll
2014-07-13 21:42 - 2012-08-31 20:18 - 07164176 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll
2014-07-13 21:42 - 2012-08-31 20:17 - 00434960 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll
2014-07-13 21:42 - 2012-08-31 20:17 - 00141584 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll
2014-07-13 21:42 - 2012-08-31 20:17 - 00124176 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll
2014-07-13 21:42 - 2012-08-31 20:17 - 00075024 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll
2014-07-13 21:42 - 2011-08-23 18:00 - 00603984 _____ (Knowles Acoustics ) C:\WINDOWS\system32\KAAPORT64.dll
2014-07-13 21:42 - 2010-09-27 10:34 - 00318808 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO20.dll
2014-07-13 21:41 - 2013-10-16 04:43 - 00209096 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAC64.dll
2014-07-13 21:41 - 2013-10-11 13:47 - 00113576 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2014-07-13 21:41 - 2013-09-10 05:02 - 06217904 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll
2014-07-13 21:41 - 2013-09-10 05:02 - 00313520 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll
2014-07-13 21:41 - 2013-09-10 05:01 - 01938608 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll
2014-07-13 21:41 - 2013-09-10 05:01 - 00260272 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll
2014-07-13 21:41 - 2013-08-05 19:11 - 02743328 _____ (Fortemedia Corporation) C:\WINDOWS\system32\FMAPO64.dll
2014-07-13 21:41 - 2012-03-08 12:47 - 00108640 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAR64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 01756264 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 01568360 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 01486952 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 00728680 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 00712296 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 00693352 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 00491112 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 00432744 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 00428648 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 00242792 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 00242792 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 00241768 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll
2014-07-13 21:30 - 2014-08-08 15:03 - 00003614 _____ () C:\WINDOWS\System32\Tasks\Norton Security Scan for Roman
2014-07-13 21:29 - 2014-07-13 21:29 - 00001463 _____ () C:\Users\Public\Desktop\Norton Security Scan.LNK
2014-07-13 21:29 - 2014-07-13 21:29 - 00000000 ____D () C:\WINDOWS\system32\Drivers\NSSx64
2014-07-13 21:29 - 2014-07-13 21:29 - 00000000 ____D () C:\ProgramData\Norton
2014-07-13 21:29 - 2014-07-13 21:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security Scan
2014-07-13 21:29 - 2014-07-13 21:29 - 00000000 ____D () C:\Program Files (x86)\Norton Security Scan
2014-07-13 21:23 - 2014-07-13 21:23 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Imperia Online
2014-07-13 21:23 - 2014-07-13 21:23 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\ImperiaOnline
2014-07-13 21:20 - 2014-07-13 21:21 - 00740688 _____ () C:\Users\Roman\Downloads\setup (1).exe
2014-07-13 21:11 - 2014-07-13 21:11 - 00001249 _____ () C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RtkGUI.lnk
2014-07-13 20:56 - 2014-07-13 20:56 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-07-13 20:18 - 2014-07-13 20:19 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\rmi
2014-07-13 20:18 - 2014-07-13 20:18 - 00089624 _____ () C:\Users\Roman\Downloads\64bit_Win7_Win8_Win81_R273.exe
2014-07-13 20:18 - 2014-07-13 20:18 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\rmc
2014-07-13 16:56 - 2014-07-13 16:56 - 00281632 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-07-13 16:47 - 2014-07-13 16:47 - 00000000 ____D () C:\WINDOWS\SysWOW64\NV
2014-07-13 16:47 - 2014-07-13 16:47 - 00000000 ____D () C:\WINDOWS\system32\NV
2014-07-13 16:23 - 2014-06-26 22:53 - 00703968 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-07-13 16:23 - 2014-06-26 22:53 - 00105440 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-07-13 16:12 - 2014-07-13 16:12 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2014-07-13 16:09 - 2014-07-13 16:47 - 00000000 ___RD () C:\WINDOWS\BrowserChoice
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-08-12 23:57 - 2014-08-12 23:56 - 00011055 _____ () C:\Users\Roman\Desktop\FRST.txt
2014-08-12 23:56 - 2014-08-12 23:56 - 00000000 ____D () C:\Users\Roman\Desktop\FRST-OlderVersion
2014-08-12 23:56 - 2014-08-01 18:17 - 02099712 _____ (Farbar) C:\Users\Roman\Desktop\FRST64.exe
2014-08-12 23:56 - 2014-06-24 12:47 - 00000000 ____D () C:\FRST
2014-08-12 23:53 - 2014-08-12 23:53 - 00112640 _____ (forum.viry.cz) C:\Users\Roman\Downloads\Nepotvrzeno 542312.crdownload
2014-08-12 23:53 - 2014-08-12 23:53 - 00112640 _____ (forum.viry.cz) C:\Users\Roman\Downloads\FRSTLauncher (1).exe
2014-08-12 23:47 - 2014-07-02 18:13 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\Skype
2014-08-12 23:44 - 2014-07-02 18:37 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-08-12 23:01 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\NDF
2014-08-12 23:00 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-08-12 20:38 - 2014-08-04 03:35 - 00000000 ____D () C:\ProgramData\TrackMania
2014-08-12 20:38 - 2013-05-16 16:59 - 00000000 ____D () C:\Users\Roman\Documents\TrackMania
2014-08-12 19:47 - 2012-10-26 09:33 - 01407973 _____ () C:\WINDOWS\WindowsUpdate.log
2014-08-12 18:00 - 2014-08-08 15:03 - 00000470 ____H () C:\WINDOWS\Tasks\Norton Security Scan for Roman.job
2014-08-12 13:31 - 2014-07-02 18:13 - 00000000 ____D () C:\ProgramData\Skype
2014-08-12 11:43 - 2014-07-02 18:52 - 00000000 ____D () C:\ProgramData\TEMP
2014-08-12 09:15 - 2014-08-11 11:13 - 00001488 _____ () C:\WINDOWS\setupact.log
2014-08-11 19:11 - 2014-07-02 23:07 - 00000000 ____D () C:\Users\Roman\Documents\TmForever
2014-08-11 19:02 - 2014-08-11 19:02 - 00014088 _____ () C:\Users\Roman\Downloads\%3forst%3fracks%3fver_o8.Challenge.Gbx
2014-08-11 11:13 - 2014-08-11 11:13 - 00000000 _____ () C:\WINDOWS\setuperr.log
2014-08-10 16:05 - 2014-08-10 16:05 - 00111963 _____ () C:\Users\Roman\Downloads\particles.zip
2014-08-10 15:59 - 2014-08-10 15:59 - 00009255 _____ () C:\Users\Roman\Downloads\autoexec.txt
2014-08-10 15:57 - 2012-10-27 01:34 - 00727488 _____ () C:\WINDOWS\system32\perfh005.dat
2014-08-10 15:57 - 2012-10-27 01:34 - 00148006 _____ () C:\WINDOWS\system32\perfc005.dat
2014-08-10 15:57 - 2012-07-26 09:28 - 01714430 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-08-10 12:42 - 2013-11-18 21:27 - 00000000 ____D () C:\Users\Roman\Documents\ManiaPlanet
2014-08-10 11:28 - 2014-07-17 16:48 - 00000000 ____D () C:\ProgramData\ManiaPlanet
2014-08-09 11:40 - 2014-08-09 11:40 - 00060790 _____ () C:\Users\Roman\Downloads\FRST3.zip
2014-08-09 11:39 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\AUInstallAgent
2014-08-08 15:03 - 2014-07-13 21:30 - 00003614 _____ () C:\WINDOWS\System32\Tasks\Norton Security Scan for Roman
2014-08-07 20:50 - 2014-08-07 20:35 - 00000000 ____D () C:\Program Files (x86)\TmNationsForever
2014-08-07 20:49 - 2014-08-07 20:49 - 00051847 _____ () C:\Users\Roman\Downloads\openal32 (2).zip
2014-08-07 20:49 - 2014-08-07 20:49 - 00051847 _____ () C:\Users\Roman\Desktop\openal32 (2).zip
2014-08-07 20:41 - 2014-08-07 20:41 - 00050500 _____ () C:\Users\Roman\Downloads\openal32 (1).zip
2014-08-07 20:40 - 2014-08-07 20:40 - 00001118 _____ () C:\Users\Public\Desktop\TmNationsForever.lnk
2014-08-07 20:40 - 2014-08-07 20:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TmNationsForever
2014-08-07 02:31 - 2014-08-07 02:31 - 00013113 _____ () C:\Users\Roman\Downloads\Return.Challenge.Gbx
2014-08-07 02:29 - 2014-08-07 02:29 - 00015811 _____ () C:\Users\Roman\Downloads\OldLoop.Challenge.Gbx
2014-08-07 02:28 - 2014-08-07 02:28 - 00020405 _____ () C:\Users\Roman\Downloads\Mike_Blue_Eyes.Replay.gbx
2014-08-07 02:24 - 2014-08-07 02:24 - 00013042 _____ () C:\Users\Roman\Downloads\Blue_Eyes.Challenge.Gbx
2014-08-07 02:13 - 2014-08-07 02:13 - 00014456 _____ () C:\Users\Roman\Downloads\Mini-Stunt.Challenge.Gbx
2014-08-07 02:08 - 2014-08-07 02:08 - 00016501 _____ () C:\Users\Roman\Downloads\Train__Speed_Drift.Challenge.Gbx
2014-08-06 12:55 - 2014-07-02 15:56 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-917002104-2466774044-2298986580-1002
2014-08-04 17:46 - 2014-08-04 17:46 - 00000000 ____D () C:\WINDOWS\LastGood
2014-08-04 03:17 - 2014-08-04 03:15 - 00425984 _____ (fuckfish ltd.) C:\Users\Roman\Downloads\gbxtmtptools.exe
2014-08-04 03:08 - 2014-08-04 03:08 - 00000221 _____ () C:\Users\Roman\Desktop\tmnf (steam).url
2014-08-04 02:49 - 2014-07-02 21:47 - 00000000 ____D () C:\ProgramData\WinClon
2014-08-04 02:48 - 2014-08-04 02:48 - 00000000 ____D () C:\ProgramData\Atheros
2014-08-04 02:48 - 2014-07-02 15:47 - 00000000 ____D () C:\Users\Roman\AppData\Local\Packages
2014-08-04 02:47 - 2014-08-04 02:47 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\Atheros
2014-08-04 02:44 - 2012-07-26 09:22 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-08-04 01:51 - 2012-08-30 14:31 - 00109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\WINDOWS\SysWOW64\$RNYQ4O3.dll
2014-08-04 01:50 - 2014-08-04 01:50 - 00050500 _____ () C:\Users\Roman\Downloads\openal32.zip
2014-08-04 00:32 - 2014-08-03 23:12 - 530600781 _____ () C:\Users\Roman\Downloads\Trackmania-Nations-Forever-setup.exe
2014-08-03 15:48 - 2014-08-03 15:48 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BT Program
2014-08-03 15:48 - 2014-08-03 15:48 - 00000000 ____D () C:\Program Files\Common Files\QCA_Bluetooth
2014-08-03 15:48 - 2014-08-03 15:48 - 00000000 ____D () C:\Program Files (x86)\Bluetooth Suite
2014-08-03 14:25 - 2014-08-03 14:54 - 976244450 _____ () C:\Users\Roman\Desktop\Prci,-prci,-prcičky-8-Školní-sraz.avi
2014-08-03 14:25 - 2014-08-03 12:33 - 976244450 _____ () C:\Users\Roman\Downloads\Prci,-prci,-prcičky-8-Školní-sraz.avi
2014-08-02 19:25 - 2014-08-02 19:28 - 801075430 _____ () C:\Users\Roman\Desktop\Prci,-prci,-prcičky-7-Kniha-lásky.avi
2014-08-02 19:25 - 2014-08-02 17:54 - 801075430 _____ () C:\Users\Roman\Downloads\Prci,-prci,-prcičky-7-Kniha-lásky.avi
2014-08-02 17:10 - 2014-08-02 17:10 - 00000000 ____D () C:\WINDOWS\LastGood.Tmp
2014-08-02 15:52 - 2014-08-02 15:52 - 742047852 _____ () C:\Users\Roman\Desktop\Prci,-prci,-prcičky-6-Spolek-Beta.avi
2014-08-02 15:52 - 2014-08-02 14:15 - 742047852 _____ () C:\Users\Roman\Downloads\Prci,-prci,-prcičky-6-Spolek-Beta.avi
2014-08-02 00:21 - 2014-08-02 00:21 - 00895120 _____ (Google Inc.) C:\Users\Roman\Downloads\googledrivesync.exe
2014-08-01 22:36 - 2014-08-01 22:36 - 00001017 _____ () C:\Users\Roman\Desktop\CCleaner.lnk
2014-08-01 22:36 - 2014-08-01 22:36 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-08-01 22:36 - 2014-08-01 22:36 - 00000000 ____D () C:\Program Files (x86)\CCleaner
2014-08-01 22:35 - 2014-08-01 22:35 - 01187896 _____ (Piriform Ltd) C:\Users\Roman\Downloads\ccleaner.exe
2014-08-01 21:59 - 2014-07-31 22:41 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2014-08-01 21:55 - 2012-07-26 10:12 - 00000000 ___HD () C:\WINDOWS\system32\GroupPolicy
2014-08-01 15:18 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\rescache
2014-08-01 15:06 - 2012-07-26 07:26 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2014-08-01 14:05 - 2014-07-02 18:54 - 05109716 _____ () C:\WINDOWS\system32\Drivers\Cat.DB
2014-08-01 14:04 - 2014-07-02 18:01 - 00000000 ____D () C:\Program Files (x86)\Google
2014-08-01 14:02 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer
2014-08-01 14:01 - 2012-10-27 01:11 - 00000000 ____D () C:\WINDOWS\SysWOW64\XPSViewer
2014-08-01 14:01 - 2012-07-26 10:12 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel
2014-08-01 14:01 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\WinStore
2014-08-01 14:01 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\MUI
2014-08-01 14:01 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\migwiz
2014-08-01 14:01 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\Com
2014-08-01 14:01 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\migwiz
2014-08-01 14:01 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions
2014-08-01 14:01 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-08-01 14:01 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\SysWOW64\winrm
2014-08-01 14:01 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\SysWOW64\WCN
2014-08-01 14:01 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\SysWOW64\slmgr
2014-08-01 14:01 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2014-08-01 14:01 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\system32\winrm
2014-08-01 14:01 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\system32\slmgr
2014-08-01 14:01 - 2012-07-26 07:38 - 00000000 ____D () C:\WINDOWS\SysWOW64\oobe
2014-08-01 14:01 - 2012-07-26 07:38 - 00000000 ____D () C:\WINDOWS\SysWOW64\Dism
2014-08-01 14:01 - 2012-07-26 07:38 - 00000000 ____D () C:\WINDOWS\system32\Sysprep
2014-08-01 14:01 - 2012-07-26 07:38 - 00000000 ____D () C:\WINDOWS\system32\oobe
2014-08-01 14:00 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\MUI
2014-08-01 14:00 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\system32\WCN
2014-08-01 14:00 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\system32\Printing_Admin_Scripts
2014-08-01 14:00 - 2012-07-26 07:38 - 00000000 ____D () C:\WINDOWS\system32\Dism
2014-08-01 13:58 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\SystemResetPlatform
2014-08-01 13:58 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\Com
2014-08-01 13:57 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2014-08-01 13:57 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Windows Defender
2014-08-01 13:57 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Common Files\System
2014-08-01 13:57 - 2012-07-26 09:52 - 00000000 ____D () C:\Program Files\Windows Journal
2014-08-01 13:56 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\en-GB
2014-08-01 13:56 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\en-GB
2014-08-01 13:48 - 2014-06-24 14:36 - 00000000 ____D () C:\AdwCleaner
2014-08-01 02:06 - 2014-08-01 02:06 - 772659628 _____ () C:\Users\Roman\Desktop\Prci-prci-prcičky-5-Nahá-míle-cz-(2006)-(#).avi
2014-08-01 02:06 - 2014-08-01 00:42 - 772659628 _____ () C:\Users\Roman\Downloads\Prci-prci-prcičky-5-Nahá-míle-cz-(2006)-(#).avi
2014-07-31 22:43 - 2014-07-31 22:40 - 00000000 ____D () C:\ProgramData\InstallMate
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Google
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Comodo
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Roman\AppData\Local\Comodo
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Guest\AppData\Local\Google
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Guest\AppData\Local\Comodo
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Guest
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Comodo
2014-07-31 22:41 - 2014-07-02 18:01 - 00000000 ____D () C:\Users\Roman\AppData\Local\Google
2014-07-31 22:41 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\GroupPolicy
2014-07-31 22:39 - 2014-07-31 22:39 - 00318184 _____ (FreshApp installer) C:\Users\Roman\Downloads\SkypEmoticons.exe
2014-07-31 18:48 - 2014-07-31 18:48 - 00003802 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2014-07-31 17:08 - 2014-07-31 17:14 - 733999104 _____ () C:\Users\Roman\Desktop\Prci-prci-prcicky-4.CZ.avi
2014-07-31 17:08 - 2014-07-31 15:49 - 733999104 _____ () C:\Users\Roman\Downloads\Prci-prci-prcicky-4.CZ.avi
2014-07-31 16:03 - 2014-07-30 20:08 - 00000098 _____ () C:\Users\Roman\Desktop\Nový textový dokument.txt
2014-07-31 11:18 - 2014-07-31 12:19 - 735893383 _____ () C:\Users\Roman\Desktop\Prci-prci-prcičky-3---Svatba-(2003)-CZ.avi
2014-07-31 11:18 - 2014-07-31 09:59 - 735893383 _____ () C:\Users\Roman\Downloads\Prci-prci-prcičky-3---Svatba-(2003)-CZ.avi
2014-07-30 17:35 - 2014-07-30 17:37 - 1471449088 _____ () C:\Users\Roman\Desktop\Prci,-prci,-prcičky-2.avi
2014-07-30 17:35 - 2014-07-30 16:02 - 1471449088 _____ () C:\Users\Roman\Downloads\Prci,-prci,-prcičky-2.avi
2014-07-30 01:00 - 2014-07-30 01:00 - 733689434 _____ () C:\Users\Roman\Desktop\Prci,-prci,-prcičky-1.avi
2014-07-30 01:00 - 2014-07-29 23:36 - 733689434 _____ () C:\Users\Roman\Downloads\Prci,-prci,-prcičky-1.avi
2014-07-29 15:31 - 2014-07-29 15:31 - 00013404 _____ () C:\Users\Roman\Downloads\MiniFullSpeed_.Challenge.Gbx
2014-07-29 15:26 - 2014-07-29 15:26 - 00014424 _____ () C:\Users\Roman\Downloads\ExtremeLOL_By_doRiK.Challenge.Gbx
2014-07-29 15:24 - 2014-07-29 15:24 - 00011854 _____ () C:\Users\Roman\Downloads\don't_laugh_at_%2333.Challenge.Gbx
2014-07-29 15:22 - 2014-07-29 15:22 - 00085972 _____ () C:\Users\Roman\Downloads\»ctc._At_The_Speed_Of_Life.Replay.Gbx
2014-07-29 15:20 - 2014-07-29 15:20 - 00008681 _____ () C:\Users\Roman\Downloads\NBK_15_seconds.Replay (1).gbx
2014-07-29 15:17 - 2014-07-29 15:17 - 00007834 _____ () C:\Users\Roman\Downloads\Lovva%5eLoL%5e17..Challenge (2).Gbx
2014-07-28 20:26 - 2014-07-28 20:26 - 00007834 _____ () C:\Users\Roman\Downloads\Lovva%5eLoL%5e17..Challenge (1).Gbx
2014-07-28 16:20 - 2014-07-28 16:20 - 00007834 _____ () C:\Users\Roman\Downloads\Lovva%5eLoL%5e17..Challenge.Gbx
2014-07-28 12:29 - 2014-07-28 12:28 - 04915831 _____ (Nadeo ) C:\Users\Roman\Downloads\TmNationsForever_Update_2010-03-15_Setup (2).exe
2014-07-27 18:08 - 2014-07-27 18:08 - 00001637 _____ () C:\Users\Roman\Downloads\B-0.Challenge (1).Gbx
2014-07-27 18:06 - 2014-07-17 16:48 - 00000000 ____D () C:\Program Files (x86)\ManiaPlanet
2014-07-27 18:01 - 2014-07-27 18:01 - 00001637 _____ () C:\Users\Roman\Downloads\B-0.Challenge.Gbx
2014-07-21 21:04 - 2014-07-21 21:04 - 00016536 _____ () C:\Users\Roman\Downloads\Nexus___Snow_World.Challenge.Gbx
2014-07-21 21:03 - 2014-07-21 21:03 - 00024238 _____ () C:\Users\Roman\Downloads\Decadence._%3f%3ft__®%3fä%3fa%3f%3fe(00'27''48).Replay.Gbx
2014-07-21 20:46 - 2014-07-21 20:46 - 00015857 _____ () C:\Users\Roman\Downloads\Decadence..Challenge.Gbx
2014-07-21 14:55 - 2014-07-21 14:55 - 00006758 _____ () C:\Users\Roman\Downloads\Jan_Lol_for_Tomilll__3.Replay.gbx
2014-07-21 14:52 - 2014-07-21 14:52 - 00073839 _____ () C:\Users\Roman\Downloads\Ever_Dream.°_%3f%3f%3f_»NG%3f%3f!__3(00'48''63).Replay.Gbx
2014-07-21 14:39 - 2014-07-21 14:39 - 00056208 _____ () C:\Users\Roman\Downloads\Ever_Dream.°.Challenge.Gbx
2014-07-21 14:35 - 2014-07-21 14:35 - 00056130 _____ () C:\Users\Roman\Downloads\Manu2_Twilight_Impact.Replay.gbx
2014-07-21 14:27 - 2014-07-21 14:27 - 00048942 _____ () C:\Users\Roman\Downloads\Twilight_Impact.Challenge.Gbx
2014-07-21 14:24 - 2014-07-21 14:24 - 00075769 _____ () C:\Users\Roman\Downloads\Anael_LOL_Impossible_Nino´s_Answer.Replay.gbx
2014-07-18 14:33 - 2014-07-18 14:33 - 00013185 _____ () C:\Users\Roman\Downloads\A03_Lik3D_riolu!(00'17''19).Replay (2).Gbx
2014-07-18 14:32 - 2014-07-18 14:32 - 00013185 _____ () C:\Users\Roman\Downloads\A03_Lik3D_riolu!(00'17''19).Replay.Gbx
2014-07-18 14:32 - 2014-07-18 14:32 - 00013185 _____ () C:\Users\Roman\Downloads\A03_Lik3D_riolu!(00'17''19).Replay (1).Gbx
2014-07-18 12:15 - 2014-07-18 12:15 - 00074768 _____ () C:\Users\Roman\Downloads\E_X_Q_U_I_S_I_T_E_Quantum_II_chrisor.(00'44''43).Replay (1).Gbx
2014-07-17 16:48 - 2014-07-17 16:48 - 00001093 _____ () C:\Users\Public\Desktop\ManiaPlanet.lnk
2014-07-17 16:48 - 2014-07-17 16:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ManiaPlanet
2014-07-17 13:13 - 2014-07-17 13:23 - 120269872 _____ () C:\Users\Roman\Desktop\ManiaplanetMinimalSetup.exe
2014-07-17 13:13 - 2014-07-17 13:11 - 120269872 _____ () C:\Users\Roman\Downloads\ManiaplanetMinimalSetup.exe
2014-07-16 22:12 - 2014-07-02 18:02 - 00002193 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-07-15 21:21 - 2014-07-15 21:21 - 00063960 _____ () C:\Users\Roman\Downloads\EtniEs_40.24.Replay.Gbx
2014-07-15 16:38 - 2014-07-15 16:38 - 00008082 _____ () C:\Users\Roman\Downloads\lol_hard_trial.Challenge.Gbx
2014-07-14 23:16 - 2014-07-14 23:16 - 00000000 ____D () C:\Users\Roman\Documents\Electronic Arts
2014-07-14 23:08 - 2014-07-14 23:08 - 00000000 ____D () C:\Program Files (x86)\Microsoft WSE
2014-07-14 22:57 - 2014-07-14 22:57 - 00002086 _____ () C:\Users\Public\Desktop\The Sims™ 3.lnk
2014-07-14 22:45 - 2014-07-14 22:45 - 00000000 ____D () C:\Program Files (x86)\Electronic Arts
2014-07-14 22:44 - 2012-10-26 09:31 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-07-14 22:24 - 2014-07-14 22:24 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\WinRAR
2014-07-14 22:20 - 2014-07-14 22:20 - 00000971 _____ () C:\Users\Public\Desktop\WinRAR.lnk
2014-07-14 22:20 - 2014-07-14 22:20 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-07-14 22:20 - 2014-07-14 22:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-07-14 22:20 - 2014-07-14 22:20 - 00000000 ____D () C:\Program Files\WinRAR
2014-07-14 22:19 - 2014-07-14 22:19 - 01942752 _____ () C:\Users\Roman\Downloads\winrar-x64-510cz.exe
2014-07-14 21:38 - 2014-07-14 12:35 - 662523473 _____ () C:\Users\Roman\Downloads\The-Sims-3-+-Crack.rar
2014-07-14 20:25 - 2014-07-14 20:25 - 00011219 _____ () C:\Users\Roman\Downloads\Shit_%231.Challenge.Gbx
2014-07-14 19:58 - 2014-07-14 19:57 - 00000056 _____ () C:\Users\Roman\Desktop\STEAM KEY.txt
2014-07-14 15:05 - 2014-07-14 15:05 - 00104747 _____ () C:\Users\Roman\Downloads\Kirshblats_¡_No_Sense_!.Replay.gbx
2014-07-13 23:01 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2014-07-13 22:42 - 2014-07-02 16:36 - 00000000 ____D () C:\Windows.old
2014-07-13 21:49 - 2014-07-02 21:21 - 00000000 ___HD () C:\Program Files (x86)\Temp
2014-07-13 21:44 - 2014-07-13 21:44 - 00003150 _____ () C:\WINDOWS\System32\Tasks\RtHDVBg
2014-07-13 21:44 - 2014-07-13 21:44 - 00003132 _____ () C:\WINDOWS\System32\Tasks\RTKCPL
2014-07-13 21:44 - 2014-07-13 21:44 - 00000000 ____D () C:\WINDOWS\SysWOW64\RTCOM
2014-07-13 21:44 - 2014-07-13 21:44 - 00000000 ____D () C:\Program Files\Realtek
2014-07-13 21:33 - 2013-12-15 19:35 - 68207817 _____ (Igor Pavlov) C:\Users\Roman\Downloads\setup.exe
2014-07-13 21:29 - 2014-07-13 21:29 - 00001463 _____ () C:\Users\Public\Desktop\Norton Security Scan.LNK
2014-07-13 21:29 - 2014-07-13 21:29 - 00000000 ____D () C:\WINDOWS\system32\Drivers\NSSx64
2014-07-13 21:29 - 2014-07-13 21:29 - 00000000 ____D () C:\ProgramData\Norton
2014-07-13 21:29 - 2014-07-13 21:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security Scan
2014-07-13 21:29 - 2014-07-13 21:29 - 00000000 ____D () C:\Program Files (x86)\Norton Security Scan
2014-07-13 21:23 - 2014-07-13 21:23 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Imperia Online
2014-07-13 21:23 - 2014-07-13 21:23 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\ImperiaOnline
2014-07-13 21:21 - 2014-07-13 21:20 - 00740688 _____ () C:\Users\Roman\Downloads\setup (1).exe
2014-07-13 21:11 - 2014-07-13 21:11 - 00001249 _____ () C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RtkGUI.lnk
2014-07-13 20:56 - 2014-07-13 20:56 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-07-13 20:28 - 2012-10-26 09:31 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-07-13 20:19 - 2014-07-13 20:18 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\rmi
2014-07-13 20:18 - 2014-07-13 20:18 - 00089624 _____ () C:\Users\Roman\Downloads\64bit_Win7_Win8_Win81_R273.exe
2014-07-13 20:18 - 2014-07-13 20:18 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\rmc
2014-07-13 16:56 - 2014-07-13 16:56 - 00281632 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-07-13 16:47 - 2014-07-13 16:47 - 00000000 ____D () C:\WINDOWS\SysWOW64\NV
2014-07-13 16:47 - 2014-07-13 16:47 - 00000000 ____D () C:\WINDOWS\system32\NV
2014-07-13 16:47 - 2014-07-13 16:09 - 00000000 ___RD () C:\WINDOWS\BrowserChoice
2014-07-13 16:47 - 2012-08-05 23:11 - 00000000 ____D () C:\ProgramData\PRICache
2014-07-13 16:12 - 2014-07-13 16:12 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2014-07-13 16:12 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-13 16:10 - 2012-07-26 10:12 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-07-13 16:10 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-07-13 16:10 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-07-13 16:08 - 2012-07-26 10:12 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-07-13 16:08 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates
2014-07-13 16:06 - 2012-07-26 10:12 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
2014-07-13 16:04 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\sk-SK
2014-07-13 16:02 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\hr-HR
2014-07-13 16:00 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\sl-SI
2014-07-13 15:57 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\sl-SI
2014-07-13 15:57 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\sk-SK
2014-07-13 15:57 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\hr-HR
Files to move or delete:
====================
C:\ProgramData\MakeMarkerFile.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\WINDOWS\Tasks\Norton Security Scan for Roman.job => C:\Program Files (x86)\NORTON~2\Engine\410~1.28\Nss.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: PC Tools AntiVirus Free (Enabled - Up to date) {2F668A56-D5E0-2DF1-A0AE-CB1284F42AB2}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: PC Tools AntiVirus Free (Enabled - Up to date) {94076BB2-F3DA-227F-9A1E-F060FF73600F}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Roman\Desktop" je 24920 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
==================== End Of Log ==============================
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-08-2014
Ran by Roman (administrator) on ROMAN2001 on 12-08-2014 23:56:23
Running from C:\Users\Roman\Desktop
Platform: Windows 8 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 10
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Threat Expert Ltd.) C:\Program Files (x86)\PC Tools\PC Tools Security\BDT\BDTUpdateService.exe
(Samsung Electronics CO., LTD.) C:\Program Files (x86)\Samsung\Settings\CmdServer\EasyLauncher.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(PC Tools) C:\Program Files (x86)\PC Tools\PC Tools Security\pctsAuxs.exe
(PC Tools) C:\Program Files (x86)\PC Tools\PC Tools Security\pctsSvc.exe
() C:\Program Files (x86)\Samsung\Settings\CmdServer\EasySettingsCmdServer.exe
(PC Tools) C:\Program Files (x86)\PC Tools\PC Tools Security\pctsGui.exe
(Samsung Electronics CO., LTD.) C:\Program Files (x86)\Samsung\Settings\sSettings.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Samsung Electronics CO., LTD.) C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe
(Qualcomm®Atheros®) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
() C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Samsung Electronics CO., LTD.) C:\Program Files\Samsung\S Agent\CommonAgent.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Roman\Desktop\FRST-OlderVersion\FRSTLauncher (1).exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2862448 2012-08-06] (ELAN Microelectronics Corp.)
HKLM-x32\...\Run: [ISTray] => C:\Program Files (x86)\PC Tools\PC Tools Security\pctsGui.exe [2717816 2012-11-01] (PC Tools)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [133760 2014-01-07] ( (Qualcomm®Atheros®))
AppInit_DLLs: C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [168616 2013-09-05] (NVIDIA Corporation)
AppInit_DLLs: C:\Program Files => C:\Program Files [0 2014-08-01] ()
AppInit_DLLs-x32: c:\windows\syswow64\nvinit.dll => c:\windows\syswow64\nvinit.dll [141336 2013-09-05] (NVIDIA Corporation)
AppInit_DLLs-x32: c:\program files => c:\program files [0 2014-08-01] ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: PC Tools Browser Guard BHO -> {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} -> C:\Program Files (x86)\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll (Threat Expert Ltd.)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM-x32 - No Name - {472734EA-242A-422B-ADF8-83D1E48CC825} - No File
Tcpip\Parameters: [DhcpNameServer] 81.200.55.50 81.200.55.34
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.60.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.60.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [{cb84136f-9c44-433a-9048-c5cd9df1dc16}] - C:\Program Files (x86)\PC Tools\PC Tools Security\BDT\Firefox
FF Extension: Browser Guard Toolbar - C:\Program Files (x86)\PC Tools\PC Tools Security\BDT\Firefox [2014-07-02]
Chrome:
=======
CHR HomePage: hxxp://www.google.cz/
CHR StartupUrls: "hxxp://websearch.wonderfulsearches.info/?pid=1387&r=2014/07/31&hid=6628315559057160171&lg=EN&cc=CZ&unqvl=60"
CHR Extension: (Dokumenty Google) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-07-02]
CHR Extension: (Disk Google) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-07-02]
CHR Extension: (Seznam Lištička - Email) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2014-07-02]
CHR Extension: (YouTube) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-07-02]
CHR Extension: (Vyhledávání Google) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-07-02]
CHR Extension: (AdBlock) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-08-05]
CHR Extension: (Peněženka Google) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-07-02]
CHR Extension: (Gmail) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-07-02]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\AdminService.exe [318592 2014-01-07] (Windows (R) Win 7 DDK provider)
R2 Browser Defender Update Service; C:\Program Files (x86)\PC Tools\PC Tools Security\BDT\BDTUpdateService.exe [580728 2012-10-23] (Threat Expert Ltd.)
R2 Easy Launcher; C:\Program Files (x86)\Samsung\Settings\CmdServer\EasyLauncher.exe [1593152 2014-01-29] (Samsung Electronics CO., LTD.)
R2 sdAuxService; C:\Program Files (x86)\PC Tools\PC Tools Security\pctsAuxs.exe [403416 2012-10-31] (PC Tools)
R2 sdCoreService; C:\Program Files (x86)\PC Tools\PC Tools Security\pctsSvc.exe [1162360 2012-11-01] (PC Tools)
R2 SWUpdateService; C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe [3020632 2014-04-04] (Samsung Electronics CO., LTD.)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16056 2014-03-29] (Microsoft Corporation)
S2 f7dc94c1; "C:\WINDOWS\system32\rundll32.exe" "c:\program files (x86)\sssupp~1\AssistantSvc.dll",service
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
U5 BtFilter; C:\Windows\System32\Drivers\BtFilter.sys [565760 2013-06-25] (Qualcomm Atheros)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink)
R3 PCTBD; C:\Windows\System32\Drivers\PCTBD64.sys [77144 2012-10-23] (PC Tools)
R0 PCTCore; C:\Windows\System32\drivers\PCTCore64.sys [413448 2012-10-22] (PC Tools)
R0 pctDS; C:\Windows\System32\drivers\pctDS64.sys [453896 2012-02-28] (PC Tools)
R0 pctEFA; C:\Windows\System32\drivers\pctEFA64.sys [1096176 2012-02-28] (PC Tools)
R1 pctgntdi; C:\Windows\System32\Drivers\pctgntdi64.sys [347016 2012-10-31] (PC Tools)
R3 pctplsm; C:\Windows\System32\Drivers\pctplsm64.sys [87968 2012-11-01] (PC Tools)
R1 PCTSD; C:\Windows\System32\Drivers\PCTSD64.sys [253256 2012-11-01] (PC Tools)
R3 RadioHIDMini; C:\Windows\System32\drivers\RadioHIDMini.sys [23408 2012-07-27] (Windows (R) Win 7 DDK provider)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-08-12 23:56 - 2014-08-12 23:57 - 00011055 _____ () C:\Users\Roman\Desktop\FRST.txt
2014-08-12 23:56 - 2014-08-12 23:56 - 00000000 ____D () C:\Users\Roman\Desktop\FRST-OlderVersion
2014-08-12 23:53 - 2014-08-12 23:53 - 00112640 _____ (forum.viry.cz) C:\Users\Roman\Downloads\Nepotvrzeno 542312.crdownload
2014-08-12 23:53 - 2014-08-12 23:53 - 00112640 _____ (forum.viry.cz) C:\Users\Roman\Downloads\FRSTLauncher (1).exe
2014-08-11 19:02 - 2014-08-11 19:02 - 00014088 _____ () C:\Users\Roman\Downloads\%3forst%3fracks%3fver_o8.Challenge.Gbx
2014-08-11 11:13 - 2014-08-12 09:15 - 00001488 _____ () C:\WINDOWS\setupact.log
2014-08-11 11:13 - 2014-08-11 11:13 - 00000000 _____ () C:\WINDOWS\setuperr.log
2014-08-10 16:05 - 2014-08-10 16:05 - 00111963 _____ () C:\Users\Roman\Downloads\particles.zip
2014-08-10 15:59 - 2014-08-10 15:59 - 00009255 _____ () C:\Users\Roman\Downloads\autoexec.txt
2014-08-09 11:40 - 2014-08-09 11:40 - 00060790 _____ () C:\Users\Roman\Downloads\FRST3.zip
2014-08-08 15:03 - 2014-08-12 18:00 - 00000470 ____H () C:\WINDOWS\Tasks\Norton Security Scan for Roman.job
2014-08-07 20:49 - 2014-08-07 20:49 - 00051847 _____ () C:\Users\Roman\Downloads\openal32 (2).zip
2014-08-07 20:49 - 2014-08-07 20:49 - 00051847 _____ () C:\Users\Roman\Desktop\openal32 (2).zip
2014-08-07 20:41 - 2014-08-07 20:41 - 00050500 _____ () C:\Users\Roman\Downloads\openal32 (1).zip
2014-08-07 20:40 - 2014-08-07 20:40 - 00001118 _____ () C:\Users\Public\Desktop\TmNationsForever.lnk
2014-08-07 20:40 - 2014-08-07 20:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TmNationsForever
2014-08-07 20:35 - 2014-08-07 20:50 - 00000000 ____D () C:\Program Files (x86)\TmNationsForever
2014-08-07 02:31 - 2014-08-07 02:31 - 00013113 _____ () C:\Users\Roman\Downloads\Return.Challenge.Gbx
2014-08-07 02:29 - 2014-08-07 02:29 - 00015811 _____ () C:\Users\Roman\Downloads\OldLoop.Challenge.Gbx
2014-08-07 02:28 - 2014-08-07 02:28 - 00020405 _____ () C:\Users\Roman\Downloads\Mike_Blue_Eyes.Replay.gbx
2014-08-07 02:24 - 2014-08-07 02:24 - 00013042 _____ () C:\Users\Roman\Downloads\Blue_Eyes.Challenge.Gbx
2014-08-07 02:13 - 2014-08-07 02:13 - 00014456 _____ () C:\Users\Roman\Downloads\Mini-Stunt.Challenge.Gbx
2014-08-07 02:08 - 2014-08-07 02:08 - 00016501 _____ () C:\Users\Roman\Downloads\Train__Speed_Drift.Challenge.Gbx
2014-08-04 17:46 - 2014-08-04 17:46 - 00000000 ____D () C:\WINDOWS\LastGood
2014-08-04 03:35 - 2014-08-12 20:38 - 00000000 ____D () C:\ProgramData\TrackMania
2014-08-04 03:15 - 2014-08-04 03:17 - 00425984 _____ (fuckfish ltd.) C:\Users\Roman\Downloads\gbxtmtptools.exe
2014-08-04 03:08 - 2014-08-04 03:08 - 00000221 _____ () C:\Users\Roman\Desktop\tmnf (steam).url
2014-08-04 02:48 - 2014-08-04 02:48 - 00000000 ____D () C:\ProgramData\Atheros
2014-08-04 02:47 - 2014-08-04 02:47 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\Atheros
2014-08-04 01:50 - 2014-08-04 01:50 - 00050500 _____ () C:\Users\Roman\Downloads\openal32.zip
2014-08-03 23:12 - 2014-08-04 00:32 - 530600781 _____ () C:\Users\Roman\Downloads\Trackmania-Nations-Forever-setup.exe
2014-08-03 15:48 - 2014-08-03 15:48 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BT Program
2014-08-03 15:48 - 2014-08-03 15:48 - 00000000 ____D () C:\Program Files\Common Files\QCA_Bluetooth
2014-08-03 15:48 - 2014-08-03 15:48 - 00000000 ____D () C:\Program Files (x86)\Bluetooth Suite
2014-08-03 14:54 - 2014-08-03 14:25 - 976244450 _____ () C:\Users\Roman\Desktop\Prci,-prci,-prcičky-8-Školní-sraz.avi
2014-08-03 12:33 - 2014-08-03 14:25 - 976244450 _____ () C:\Users\Roman\Downloads\Prci,-prci,-prcičky-8-Školní-sraz.avi
2014-08-02 19:28 - 2014-08-02 19:25 - 801075430 _____ () C:\Users\Roman\Desktop\Prci,-prci,-prcičky-7-Kniha-lásky.avi
2014-08-02 17:54 - 2014-08-02 19:25 - 801075430 _____ () C:\Users\Roman\Downloads\Prci,-prci,-prcičky-7-Kniha-lásky.avi
2014-08-02 17:10 - 2014-08-02 17:10 - 00000000 ____D () C:\WINDOWS\LastGood.Tmp
2014-08-02 15:52 - 2014-08-02 15:52 - 742047852 _____ () C:\Users\Roman\Desktop\Prci,-prci,-prcičky-6-Spolek-Beta.avi
2014-08-02 14:15 - 2014-08-02 15:52 - 742047852 _____ () C:\Users\Roman\Downloads\Prci,-prci,-prcičky-6-Spolek-Beta.avi
2014-08-02 00:21 - 2014-08-02 00:21 - 00895120 _____ (Google Inc.) C:\Users\Roman\Downloads\googledrivesync.exe
2014-08-01 22:36 - 2014-08-01 22:36 - 00001017 _____ () C:\Users\Roman\Desktop\CCleaner.lnk
2014-08-01 22:36 - 2014-08-01 22:36 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-08-01 22:36 - 2014-08-01 22:36 - 00000000 ____D () C:\Program Files (x86)\CCleaner
2014-08-01 22:35 - 2014-08-01 22:35 - 01187896 _____ (Piriform Ltd) C:\Users\Roman\Downloads\ccleaner.exe
2014-08-01 18:17 - 2014-08-12 23:56 - 02099712 _____ (Farbar) C:\Users\Roman\Desktop\FRST64.exe
2014-08-01 02:06 - 2014-08-01 02:06 - 772659628 _____ () C:\Users\Roman\Desktop\Prci-prci-prcičky-5-Nahá-míle-cz-(2006)-(#).avi
2014-08-01 00:42 - 2014-08-01 02:06 - 772659628 _____ () C:\Users\Roman\Downloads\Prci-prci-prcičky-5-Nahá-míle-cz-(2006)-(#).avi
2014-07-31 22:41 - 2014-08-01 21:59 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Google
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Comodo
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Roman\AppData\Local\Comodo
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Guest\AppData\Local\Google
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Guest\AppData\Local\Comodo
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Guest
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Comodo
2014-07-31 22:40 - 2014-07-31 22:43 - 00000000 ____D () C:\ProgramData\InstallMate
2014-07-31 22:39 - 2014-07-31 22:39 - 00318184 _____ (FreshApp installer) C:\Users\Roman\Downloads\SkypEmoticons.exe
2014-07-31 18:48 - 2014-07-31 18:48 - 00003802 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2014-07-31 17:14 - 2014-07-31 17:08 - 733999104 _____ () C:\Users\Roman\Desktop\Prci-prci-prcicky-4.CZ.avi
2014-07-31 15:49 - 2014-07-31 17:08 - 733999104 _____ () C:\Users\Roman\Downloads\Prci-prci-prcicky-4.CZ.avi
2014-07-31 12:19 - 2014-07-31 11:18 - 735893383 _____ () C:\Users\Roman\Desktop\Prci-prci-prcičky-3---Svatba-(2003)-CZ.avi
2014-07-31 09:59 - 2014-07-31 11:18 - 735893383 _____ () C:\Users\Roman\Downloads\Prci-prci-prcičky-3---Svatba-(2003)-CZ.avi
2014-07-30 20:08 - 2014-07-31 16:03 - 00000098 _____ () C:\Users\Roman\Desktop\Nový textový dokument.txt
2014-07-30 17:37 - 2014-07-30 17:35 - 1471449088 _____ () C:\Users\Roman\Desktop\Prci,-prci,-prcičky-2.avi
2014-07-30 16:02 - 2014-07-30 17:35 - 1471449088 _____ () C:\Users\Roman\Downloads\Prci,-prci,-prcičky-2.avi
2014-07-30 01:00 - 2014-07-30 01:00 - 733689434 _____ () C:\Users\Roman\Desktop\Prci,-prci,-prcičky-1.avi
2014-07-29 23:36 - 2014-07-30 01:00 - 733689434 _____ () C:\Users\Roman\Downloads\Prci,-prci,-prcičky-1.avi
2014-07-29 15:31 - 2014-07-29 15:31 - 00013404 _____ () C:\Users\Roman\Downloads\MiniFullSpeed_.Challenge.Gbx
2014-07-29 15:26 - 2014-07-29 15:26 - 00014424 _____ () C:\Users\Roman\Downloads\ExtremeLOL_By_doRiK.Challenge.Gbx
2014-07-29 15:24 - 2014-07-29 15:24 - 00011854 _____ () C:\Users\Roman\Downloads\don't_laugh_at_%2333.Challenge.Gbx
2014-07-29 15:22 - 2014-07-29 15:22 - 00085972 _____ () C:\Users\Roman\Downloads\»ctc._At_The_Speed_Of_Life.Replay.Gbx
2014-07-29 15:20 - 2014-07-29 15:20 - 00008681 _____ () C:\Users\Roman\Downloads\NBK_15_seconds.Replay (1).gbx
2014-07-29 15:17 - 2014-07-29 15:17 - 00007834 _____ () C:\Users\Roman\Downloads\Lovva%5eLoL%5e17..Challenge (2).Gbx
2014-07-28 20:26 - 2014-07-28 20:26 - 00007834 _____ () C:\Users\Roman\Downloads\Lovva%5eLoL%5e17..Challenge (1).Gbx
2014-07-28 16:20 - 2014-07-28 16:20 - 00007834 _____ () C:\Users\Roman\Downloads\Lovva%5eLoL%5e17..Challenge.Gbx
2014-07-28 12:28 - 2014-07-28 12:29 - 04915831 _____ (Nadeo ) C:\Users\Roman\Downloads\TmNationsForever_Update_2010-03-15_Setup (2).exe
2014-07-27 18:08 - 2014-07-27 18:08 - 00001637 _____ () C:\Users\Roman\Downloads\B-0.Challenge (1).Gbx
2014-07-27 18:01 - 2014-07-27 18:01 - 00001637 _____ () C:\Users\Roman\Downloads\B-0.Challenge.Gbx
2014-07-21 21:04 - 2014-07-21 21:04 - 00016536 _____ () C:\Users\Roman\Downloads\Nexus___Snow_World.Challenge.Gbx
2014-07-21 21:03 - 2014-07-21 21:03 - 00024238 _____ () C:\Users\Roman\Downloads\Decadence._%3f%3ft__®%3fä%3fa%3f%3fe(00'27''48).Replay.Gbx
2014-07-21 20:46 - 2014-07-21 20:46 - 00015857 _____ () C:\Users\Roman\Downloads\Decadence..Challenge.Gbx
2014-07-21 14:55 - 2014-07-21 14:55 - 00006758 _____ () C:\Users\Roman\Downloads\Jan_Lol_for_Tomilll__3.Replay.gbx
2014-07-21 14:52 - 2014-07-21 14:52 - 00073839 _____ () C:\Users\Roman\Downloads\Ever_Dream.°_%3f%3f%3f_»NG%3f%3f!__3(00'48''63).Replay.Gbx
2014-07-21 14:39 - 2014-07-21 14:39 - 00056208 _____ () C:\Users\Roman\Downloads\Ever_Dream.°.Challenge.Gbx
2014-07-21 14:35 - 2014-07-21 14:35 - 00056130 _____ () C:\Users\Roman\Downloads\Manu2_Twilight_Impact.Replay.gbx
2014-07-21 14:27 - 2014-07-21 14:27 - 00048942 _____ () C:\Users\Roman\Downloads\Twilight_Impact.Challenge.Gbx
2014-07-21 14:24 - 2014-07-21 14:24 - 00075769 _____ () C:\Users\Roman\Downloads\Anael_LOL_Impossible_Nino´s_Answer.Replay.gbx
2014-07-18 14:33 - 2014-07-18 14:33 - 00013185 _____ () C:\Users\Roman\Downloads\A03_Lik3D_riolu!(00'17''19).Replay (2).Gbx
2014-07-18 14:32 - 2014-07-18 14:32 - 00013185 _____ () C:\Users\Roman\Downloads\A03_Lik3D_riolu!(00'17''19).Replay.Gbx
2014-07-18 14:32 - 2014-07-18 14:32 - 00013185 _____ () C:\Users\Roman\Downloads\A03_Lik3D_riolu!(00'17''19).Replay (1).Gbx
2014-07-18 12:15 - 2014-07-18 12:15 - 00074768 _____ () C:\Users\Roman\Downloads\E_X_Q_U_I_S_I_T_E_Quantum_II_chrisor.(00'44''43).Replay (1).Gbx
2014-07-17 16:48 - 2014-08-10 11:28 - 00000000 ____D () C:\ProgramData\ManiaPlanet
2014-07-17 16:48 - 2014-07-27 18:06 - 00000000 ____D () C:\Program Files (x86)\ManiaPlanet
2014-07-17 16:48 - 2014-07-17 16:48 - 00001093 _____ () C:\Users\Public\Desktop\ManiaPlanet.lnk
2014-07-17 16:48 - 2014-07-17 16:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ManiaPlanet
2014-07-17 13:23 - 2014-07-17 13:13 - 120269872 _____ () C:\Users\Roman\Desktop\ManiaplanetMinimalSetup.exe
2014-07-17 13:11 - 2014-07-17 13:13 - 120269872 _____ () C:\Users\Roman\Downloads\ManiaplanetMinimalSetup.exe
2014-07-15 21:21 - 2014-07-15 21:21 - 00063960 _____ () C:\Users\Roman\Downloads\EtniEs_40.24.Replay.Gbx
2014-07-15 16:38 - 2014-07-15 16:38 - 00008082 _____ () C:\Users\Roman\Downloads\lol_hard_trial.Challenge.Gbx
2014-07-14 23:16 - 2014-07-14 23:16 - 00000000 ____D () C:\Users\Roman\Documents\Electronic Arts
2014-07-14 23:08 - 2014-07-14 23:08 - 00000000 ____D () C:\Program Files (x86)\Microsoft WSE
2014-07-14 23:08 - 2008-09-04 20:17 - 00447752 ____R (On2.com) C:\WINDOWS\SysWOW64\vp6vfw.dll
2014-07-14 22:57 - 2014-07-14 22:57 - 00002086 _____ () C:\Users\Public\Desktop\The Sims™ 3.lnk
2014-07-14 22:45 - 2014-07-14 22:45 - 00000000 ____D () C:\Program Files (x86)\Electronic Arts
2014-07-14 22:24 - 2014-07-14 22:24 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\WinRAR
2014-07-14 22:20 - 2014-07-14 22:20 - 00000971 _____ () C:\Users\Public\Desktop\WinRAR.lnk
2014-07-14 22:20 - 2014-07-14 22:20 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-07-14 22:20 - 2014-07-14 22:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-07-14 22:20 - 2014-07-14 22:20 - 00000000 ____D () C:\Program Files\WinRAR
2014-07-14 22:19 - 2014-07-14 22:19 - 01942752 _____ () C:\Users\Roman\Downloads\winrar-x64-510cz.exe
2014-07-14 20:25 - 2014-07-14 20:25 - 00011219 _____ () C:\Users\Roman\Downloads\Shit_%231.Challenge.Gbx
2014-07-14 19:57 - 2014-07-14 19:58 - 00000056 _____ () C:\Users\Roman\Desktop\STEAM KEY.txt
2014-07-14 15:05 - 2014-07-14 15:05 - 00104747 _____ () C:\Users\Roman\Downloads\Kirshblats_¡_No_Sense_!.Replay.gbx
2014-07-14 12:35 - 2014-07-14 21:38 - 662523473 _____ () C:\Users\Roman\Downloads\The-Sims-3-+-Crack.rar
2014-07-14 12:18 - 2014-07-04 20:15 - 00000008 _____ () C:\WINDOWS\system32\Drivers\rtkhdaud.dat
2014-07-13 21:44 - 2014-07-13 21:44 - 00003150 _____ () C:\WINDOWS\System32\Tasks\RtHDVBg
2014-07-13 21:44 - 2014-07-13 21:44 - 00003132 _____ () C:\WINDOWS\System32\Tasks\RTKCPL
2014-07-13 21:44 - 2014-07-13 21:44 - 00000000 ____D () C:\WINDOWS\SysWOW64\RTCOM
2014-07-13 21:44 - 2014-07-13 21:44 - 00000000 ____D () C:\Program Files\Realtek
2014-07-13 21:43 - 2013-11-06 21:48 - 03710552 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2014-07-13 21:43 - 2013-11-06 17:59 - 38747648 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2014-07-13 21:43 - 2013-11-06 17:41 - 00682709 _____ () C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2014-07-13 21:43 - 2013-11-04 20:26 - 00153304 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
2014-07-13 21:43 - 2013-11-04 12:11 - 02587864 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkAPO64.dll
2014-07-13 21:43 - 2013-10-28 18:29 - 01021656 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2014-07-13 21:43 - 2013-10-18 17:41 - 01286360 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2014-07-13 21:43 - 2013-10-11 12:31 - 00947760 _____ (Sony Corporation) C:\WINDOWS\system32\SFSS_APO.dll
2014-07-13 21:43 - 2013-10-09 21:12 - 02103040 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\WavesGUILib64.dll
2014-07-13 21:43 - 2013-10-07 12:05 - 02810072 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2014-07-13 21:43 - 2013-10-02 18:10 - 00617176 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2014-07-13 21:43 - 2013-09-09 16:32 - 05681192 _____ () C:\WINDOWS\system32\Drivers\rtvienna.dat
2014-07-13 21:43 - 2013-04-24 18:16 - 01662024 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2014-07-13 21:43 - 2011-12-20 16:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
2014-07-13 21:43 - 2011-11-22 17:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll
2014-07-13 21:43 - 2011-09-02 15:21 - 00221024 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFNHK64.dll
2014-07-13 21:43 - 2011-09-02 15:21 - 00081248 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFCOM64.dll
2014-07-13 21:43 - 2011-09-02 15:21 - 00078688 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFAPO64.dll
2014-07-13 21:43 - 2010-11-08 08:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
2014-07-13 21:43 - 2010-11-08 08:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
2014-07-13 21:43 - 2010-11-08 08:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
2014-07-13 21:43 - 2010-11-08 08:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
2014-07-13 21:43 - 2010-11-08 08:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
2014-07-13 21:43 - 2010-11-08 08:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
2014-07-13 21:43 - 2010-11-03 19:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2014-07-13 21:43 - 2010-07-22 17:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll
2014-07-13 21:43 - 2009-11-24 10:55 - 00518896 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
2014-07-13 21:43 - 2009-11-24 10:55 - 00211184 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
2014-07-13 21:43 - 2009-11-24 10:55 - 00198896 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
2014-07-13 21:43 - 2009-11-24 10:55 - 00155888 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
2014-07-13 21:42 - 2013-10-09 21:12 - 14152960 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioRealtek64.dll
2014-07-13 21:42 - 2013-10-09 21:12 - 02036992 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioEQ64.dll
2014-07-13 21:42 - 2013-10-09 21:12 - 01012992 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPOShell64.dll
2014-07-13 21:42 - 2013-08-14 17:36 - 00662784 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2014-07-13 21:42 - 2013-08-14 17:35 - 00663296 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO30.dll
2014-07-13 21:42 - 2012-08-31 20:18 - 07164176 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll
2014-07-13 21:42 - 2012-08-31 20:17 - 00434960 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll
2014-07-13 21:42 - 2012-08-31 20:17 - 00141584 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll
2014-07-13 21:42 - 2012-08-31 20:17 - 00124176 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll
2014-07-13 21:42 - 2012-08-31 20:17 - 00075024 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll
2014-07-13 21:42 - 2011-08-23 18:00 - 00603984 _____ (Knowles Acoustics ) C:\WINDOWS\system32\KAAPORT64.dll
2014-07-13 21:42 - 2010-09-27 10:34 - 00318808 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO20.dll
2014-07-13 21:41 - 2013-10-16 04:43 - 00209096 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAC64.dll
2014-07-13 21:41 - 2013-10-11 13:47 - 00113576 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2014-07-13 21:41 - 2013-09-10 05:02 - 06217904 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll
2014-07-13 21:41 - 2013-09-10 05:02 - 00313520 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll
2014-07-13 21:41 - 2013-09-10 05:01 - 01938608 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll
2014-07-13 21:41 - 2013-09-10 05:01 - 00260272 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll
2014-07-13 21:41 - 2013-08-05 19:11 - 02743328 _____ (Fortemedia Corporation) C:\WINDOWS\system32\FMAPO64.dll
2014-07-13 21:41 - 2012-03-08 12:47 - 00108640 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAR64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 01756264 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 01568360 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 01486952 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 00728680 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 00712296 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 00693352 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 00491112 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 00432744 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 00428648 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 00242792 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 00242792 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll
2014-07-13 21:41 - 2011-05-31 10:42 - 00241768 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll
2014-07-13 21:30 - 2014-08-08 15:03 - 00003614 _____ () C:\WINDOWS\System32\Tasks\Norton Security Scan for Roman
2014-07-13 21:29 - 2014-07-13 21:29 - 00001463 _____ () C:\Users\Public\Desktop\Norton Security Scan.LNK
2014-07-13 21:29 - 2014-07-13 21:29 - 00000000 ____D () C:\WINDOWS\system32\Drivers\NSSx64
2014-07-13 21:29 - 2014-07-13 21:29 - 00000000 ____D () C:\ProgramData\Norton
2014-07-13 21:29 - 2014-07-13 21:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security Scan
2014-07-13 21:29 - 2014-07-13 21:29 - 00000000 ____D () C:\Program Files (x86)\Norton Security Scan
2014-07-13 21:23 - 2014-07-13 21:23 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Imperia Online
2014-07-13 21:23 - 2014-07-13 21:23 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\ImperiaOnline
2014-07-13 21:20 - 2014-07-13 21:21 - 00740688 _____ () C:\Users\Roman\Downloads\setup (1).exe
2014-07-13 21:11 - 2014-07-13 21:11 - 00001249 _____ () C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RtkGUI.lnk
2014-07-13 20:56 - 2014-07-13 20:56 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-07-13 20:18 - 2014-07-13 20:19 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\rmi
2014-07-13 20:18 - 2014-07-13 20:18 - 00089624 _____ () C:\Users\Roman\Downloads\64bit_Win7_Win8_Win81_R273.exe
2014-07-13 20:18 - 2014-07-13 20:18 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\rmc
2014-07-13 16:56 - 2014-07-13 16:56 - 00281632 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-07-13 16:47 - 2014-07-13 16:47 - 00000000 ____D () C:\WINDOWS\SysWOW64\NV
2014-07-13 16:47 - 2014-07-13 16:47 - 00000000 ____D () C:\WINDOWS\system32\NV
2014-07-13 16:23 - 2014-06-26 22:53 - 00703968 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-07-13 16:23 - 2014-06-26 22:53 - 00105440 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-07-13 16:12 - 2014-07-13 16:12 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2014-07-13 16:09 - 2014-07-13 16:47 - 00000000 ___RD () C:\WINDOWS\BrowserChoice
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-08-12 23:57 - 2014-08-12 23:56 - 00011055 _____ () C:\Users\Roman\Desktop\FRST.txt
2014-08-12 23:56 - 2014-08-12 23:56 - 00000000 ____D () C:\Users\Roman\Desktop\FRST-OlderVersion
2014-08-12 23:56 - 2014-08-01 18:17 - 02099712 _____ (Farbar) C:\Users\Roman\Desktop\FRST64.exe
2014-08-12 23:56 - 2014-06-24 12:47 - 00000000 ____D () C:\FRST
2014-08-12 23:53 - 2014-08-12 23:53 - 00112640 _____ (forum.viry.cz) C:\Users\Roman\Downloads\Nepotvrzeno 542312.crdownload
2014-08-12 23:53 - 2014-08-12 23:53 - 00112640 _____ (forum.viry.cz) C:\Users\Roman\Downloads\FRSTLauncher (1).exe
2014-08-12 23:47 - 2014-07-02 18:13 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\Skype
2014-08-12 23:44 - 2014-07-02 18:37 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-08-12 23:01 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\NDF
2014-08-12 23:00 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-08-12 20:38 - 2014-08-04 03:35 - 00000000 ____D () C:\ProgramData\TrackMania
2014-08-12 20:38 - 2013-05-16 16:59 - 00000000 ____D () C:\Users\Roman\Documents\TrackMania
2014-08-12 19:47 - 2012-10-26 09:33 - 01407973 _____ () C:\WINDOWS\WindowsUpdate.log
2014-08-12 18:00 - 2014-08-08 15:03 - 00000470 ____H () C:\WINDOWS\Tasks\Norton Security Scan for Roman.job
2014-08-12 13:31 - 2014-07-02 18:13 - 00000000 ____D () C:\ProgramData\Skype
2014-08-12 11:43 - 2014-07-02 18:52 - 00000000 ____D () C:\ProgramData\TEMP
2014-08-12 09:15 - 2014-08-11 11:13 - 00001488 _____ () C:\WINDOWS\setupact.log
2014-08-11 19:11 - 2014-07-02 23:07 - 00000000 ____D () C:\Users\Roman\Documents\TmForever
2014-08-11 19:02 - 2014-08-11 19:02 - 00014088 _____ () C:\Users\Roman\Downloads\%3forst%3fracks%3fver_o8.Challenge.Gbx
2014-08-11 11:13 - 2014-08-11 11:13 - 00000000 _____ () C:\WINDOWS\setuperr.log
2014-08-10 16:05 - 2014-08-10 16:05 - 00111963 _____ () C:\Users\Roman\Downloads\particles.zip
2014-08-10 15:59 - 2014-08-10 15:59 - 00009255 _____ () C:\Users\Roman\Downloads\autoexec.txt
2014-08-10 15:57 - 2012-10-27 01:34 - 00727488 _____ () C:\WINDOWS\system32\perfh005.dat
2014-08-10 15:57 - 2012-10-27 01:34 - 00148006 _____ () C:\WINDOWS\system32\perfc005.dat
2014-08-10 15:57 - 2012-07-26 09:28 - 01714430 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-08-10 12:42 - 2013-11-18 21:27 - 00000000 ____D () C:\Users\Roman\Documents\ManiaPlanet
2014-08-10 11:28 - 2014-07-17 16:48 - 00000000 ____D () C:\ProgramData\ManiaPlanet
2014-08-09 11:40 - 2014-08-09 11:40 - 00060790 _____ () C:\Users\Roman\Downloads\FRST3.zip
2014-08-09 11:39 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\AUInstallAgent
2014-08-08 15:03 - 2014-07-13 21:30 - 00003614 _____ () C:\WINDOWS\System32\Tasks\Norton Security Scan for Roman
2014-08-07 20:50 - 2014-08-07 20:35 - 00000000 ____D () C:\Program Files (x86)\TmNationsForever
2014-08-07 20:49 - 2014-08-07 20:49 - 00051847 _____ () C:\Users\Roman\Downloads\openal32 (2).zip
2014-08-07 20:49 - 2014-08-07 20:49 - 00051847 _____ () C:\Users\Roman\Desktop\openal32 (2).zip
2014-08-07 20:41 - 2014-08-07 20:41 - 00050500 _____ () C:\Users\Roman\Downloads\openal32 (1).zip
2014-08-07 20:40 - 2014-08-07 20:40 - 00001118 _____ () C:\Users\Public\Desktop\TmNationsForever.lnk
2014-08-07 20:40 - 2014-08-07 20:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TmNationsForever
2014-08-07 02:31 - 2014-08-07 02:31 - 00013113 _____ () C:\Users\Roman\Downloads\Return.Challenge.Gbx
2014-08-07 02:29 - 2014-08-07 02:29 - 00015811 _____ () C:\Users\Roman\Downloads\OldLoop.Challenge.Gbx
2014-08-07 02:28 - 2014-08-07 02:28 - 00020405 _____ () C:\Users\Roman\Downloads\Mike_Blue_Eyes.Replay.gbx
2014-08-07 02:24 - 2014-08-07 02:24 - 00013042 _____ () C:\Users\Roman\Downloads\Blue_Eyes.Challenge.Gbx
2014-08-07 02:13 - 2014-08-07 02:13 - 00014456 _____ () C:\Users\Roman\Downloads\Mini-Stunt.Challenge.Gbx
2014-08-07 02:08 - 2014-08-07 02:08 - 00016501 _____ () C:\Users\Roman\Downloads\Train__Speed_Drift.Challenge.Gbx
2014-08-06 12:55 - 2014-07-02 15:56 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-917002104-2466774044-2298986580-1002
2014-08-04 17:46 - 2014-08-04 17:46 - 00000000 ____D () C:\WINDOWS\LastGood
2014-08-04 03:17 - 2014-08-04 03:15 - 00425984 _____ (fuckfish ltd.) C:\Users\Roman\Downloads\gbxtmtptools.exe
2014-08-04 03:08 - 2014-08-04 03:08 - 00000221 _____ () C:\Users\Roman\Desktop\tmnf (steam).url
2014-08-04 02:49 - 2014-07-02 21:47 - 00000000 ____D () C:\ProgramData\WinClon
2014-08-04 02:48 - 2014-08-04 02:48 - 00000000 ____D () C:\ProgramData\Atheros
2014-08-04 02:48 - 2014-07-02 15:47 - 00000000 ____D () C:\Users\Roman\AppData\Local\Packages
2014-08-04 02:47 - 2014-08-04 02:47 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\Atheros
2014-08-04 02:44 - 2012-07-26 09:22 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-08-04 01:51 - 2012-08-30 14:31 - 00109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\WINDOWS\SysWOW64\$RNYQ4O3.dll
2014-08-04 01:50 - 2014-08-04 01:50 - 00050500 _____ () C:\Users\Roman\Downloads\openal32.zip
2014-08-04 00:32 - 2014-08-03 23:12 - 530600781 _____ () C:\Users\Roman\Downloads\Trackmania-Nations-Forever-setup.exe
2014-08-03 15:48 - 2014-08-03 15:48 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BT Program
2014-08-03 15:48 - 2014-08-03 15:48 - 00000000 ____D () C:\Program Files\Common Files\QCA_Bluetooth
2014-08-03 15:48 - 2014-08-03 15:48 - 00000000 ____D () C:\Program Files (x86)\Bluetooth Suite
2014-08-03 14:25 - 2014-08-03 14:54 - 976244450 _____ () C:\Users\Roman\Desktop\Prci,-prci,-prcičky-8-Školní-sraz.avi
2014-08-03 14:25 - 2014-08-03 12:33 - 976244450 _____ () C:\Users\Roman\Downloads\Prci,-prci,-prcičky-8-Školní-sraz.avi
2014-08-02 19:25 - 2014-08-02 19:28 - 801075430 _____ () C:\Users\Roman\Desktop\Prci,-prci,-prcičky-7-Kniha-lásky.avi
2014-08-02 19:25 - 2014-08-02 17:54 - 801075430 _____ () C:\Users\Roman\Downloads\Prci,-prci,-prcičky-7-Kniha-lásky.avi
2014-08-02 17:10 - 2014-08-02 17:10 - 00000000 ____D () C:\WINDOWS\LastGood.Tmp
2014-08-02 15:52 - 2014-08-02 15:52 - 742047852 _____ () C:\Users\Roman\Desktop\Prci,-prci,-prcičky-6-Spolek-Beta.avi
2014-08-02 15:52 - 2014-08-02 14:15 - 742047852 _____ () C:\Users\Roman\Downloads\Prci,-prci,-prcičky-6-Spolek-Beta.avi
2014-08-02 00:21 - 2014-08-02 00:21 - 00895120 _____ (Google Inc.) C:\Users\Roman\Downloads\googledrivesync.exe
2014-08-01 22:36 - 2014-08-01 22:36 - 00001017 _____ () C:\Users\Roman\Desktop\CCleaner.lnk
2014-08-01 22:36 - 2014-08-01 22:36 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-08-01 22:36 - 2014-08-01 22:36 - 00000000 ____D () C:\Program Files (x86)\CCleaner
2014-08-01 22:35 - 2014-08-01 22:35 - 01187896 _____ (Piriform Ltd) C:\Users\Roman\Downloads\ccleaner.exe
2014-08-01 21:59 - 2014-07-31 22:41 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2014-08-01 21:55 - 2012-07-26 10:12 - 00000000 ___HD () C:\WINDOWS\system32\GroupPolicy
2014-08-01 15:18 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\rescache
2014-08-01 15:06 - 2012-07-26 07:26 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2014-08-01 14:05 - 2014-07-02 18:54 - 05109716 _____ () C:\WINDOWS\system32\Drivers\Cat.DB
2014-08-01 14:04 - 2014-07-02 18:01 - 00000000 ____D () C:\Program Files (x86)\Google
2014-08-01 14:02 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer
2014-08-01 14:01 - 2012-10-27 01:11 - 00000000 ____D () C:\WINDOWS\SysWOW64\XPSViewer
2014-08-01 14:01 - 2012-07-26 10:12 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel
2014-08-01 14:01 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\WinStore
2014-08-01 14:01 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\MUI
2014-08-01 14:01 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\migwiz
2014-08-01 14:01 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\Com
2014-08-01 14:01 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\migwiz
2014-08-01 14:01 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions
2014-08-01 14:01 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-08-01 14:01 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\SysWOW64\winrm
2014-08-01 14:01 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\SysWOW64\WCN
2014-08-01 14:01 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\SysWOW64\slmgr
2014-08-01 14:01 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2014-08-01 14:01 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\system32\winrm
2014-08-01 14:01 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\system32\slmgr
2014-08-01 14:01 - 2012-07-26 07:38 - 00000000 ____D () C:\WINDOWS\SysWOW64\oobe
2014-08-01 14:01 - 2012-07-26 07:38 - 00000000 ____D () C:\WINDOWS\SysWOW64\Dism
2014-08-01 14:01 - 2012-07-26 07:38 - 00000000 ____D () C:\WINDOWS\system32\Sysprep
2014-08-01 14:01 - 2012-07-26 07:38 - 00000000 ____D () C:\WINDOWS\system32\oobe
2014-08-01 14:00 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\MUI
2014-08-01 14:00 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\system32\WCN
2014-08-01 14:00 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\system32\Printing_Admin_Scripts
2014-08-01 14:00 - 2012-07-26 07:38 - 00000000 ____D () C:\WINDOWS\system32\Dism
2014-08-01 13:58 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\SystemResetPlatform
2014-08-01 13:58 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\Com
2014-08-01 13:57 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2014-08-01 13:57 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Windows Defender
2014-08-01 13:57 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Common Files\System
2014-08-01 13:57 - 2012-07-26 09:52 - 00000000 ____D () C:\Program Files\Windows Journal
2014-08-01 13:56 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\en-GB
2014-08-01 13:56 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\en-GB
2014-08-01 13:48 - 2014-06-24 14:36 - 00000000 ____D () C:\AdwCleaner
2014-08-01 02:06 - 2014-08-01 02:06 - 772659628 _____ () C:\Users\Roman\Desktop\Prci-prci-prcičky-5-Nahá-míle-cz-(2006)-(#).avi
2014-08-01 02:06 - 2014-08-01 00:42 - 772659628 _____ () C:\Users\Roman\Downloads\Prci-prci-prcičky-5-Nahá-míle-cz-(2006)-(#).avi
2014-07-31 22:43 - 2014-07-31 22:40 - 00000000 ____D () C:\ProgramData\InstallMate
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Google
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Comodo
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Roman\AppData\Local\Comodo
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Guest\AppData\Local\Google
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Guest\AppData\Local\Comodo
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Guest
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google
2014-07-31 22:41 - 2014-07-31 22:41 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Comodo
2014-07-31 22:41 - 2014-07-02 18:01 - 00000000 ____D () C:\Users\Roman\AppData\Local\Google
2014-07-31 22:41 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\GroupPolicy
2014-07-31 22:39 - 2014-07-31 22:39 - 00318184 _____ (FreshApp installer) C:\Users\Roman\Downloads\SkypEmoticons.exe
2014-07-31 18:48 - 2014-07-31 18:48 - 00003802 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2014-07-31 17:08 - 2014-07-31 17:14 - 733999104 _____ () C:\Users\Roman\Desktop\Prci-prci-prcicky-4.CZ.avi
2014-07-31 17:08 - 2014-07-31 15:49 - 733999104 _____ () C:\Users\Roman\Downloads\Prci-prci-prcicky-4.CZ.avi
2014-07-31 16:03 - 2014-07-30 20:08 - 00000098 _____ () C:\Users\Roman\Desktop\Nový textový dokument.txt
2014-07-31 11:18 - 2014-07-31 12:19 - 735893383 _____ () C:\Users\Roman\Desktop\Prci-prci-prcičky-3---Svatba-(2003)-CZ.avi
2014-07-31 11:18 - 2014-07-31 09:59 - 735893383 _____ () C:\Users\Roman\Downloads\Prci-prci-prcičky-3---Svatba-(2003)-CZ.avi
2014-07-30 17:35 - 2014-07-30 17:37 - 1471449088 _____ () C:\Users\Roman\Desktop\Prci,-prci,-prcičky-2.avi
2014-07-30 17:35 - 2014-07-30 16:02 - 1471449088 _____ () C:\Users\Roman\Downloads\Prci,-prci,-prcičky-2.avi
2014-07-30 01:00 - 2014-07-30 01:00 - 733689434 _____ () C:\Users\Roman\Desktop\Prci,-prci,-prcičky-1.avi
2014-07-30 01:00 - 2014-07-29 23:36 - 733689434 _____ () C:\Users\Roman\Downloads\Prci,-prci,-prcičky-1.avi
2014-07-29 15:31 - 2014-07-29 15:31 - 00013404 _____ () C:\Users\Roman\Downloads\MiniFullSpeed_.Challenge.Gbx
2014-07-29 15:26 - 2014-07-29 15:26 - 00014424 _____ () C:\Users\Roman\Downloads\ExtremeLOL_By_doRiK.Challenge.Gbx
2014-07-29 15:24 - 2014-07-29 15:24 - 00011854 _____ () C:\Users\Roman\Downloads\don't_laugh_at_%2333.Challenge.Gbx
2014-07-29 15:22 - 2014-07-29 15:22 - 00085972 _____ () C:\Users\Roman\Downloads\»ctc._At_The_Speed_Of_Life.Replay.Gbx
2014-07-29 15:20 - 2014-07-29 15:20 - 00008681 _____ () C:\Users\Roman\Downloads\NBK_15_seconds.Replay (1).gbx
2014-07-29 15:17 - 2014-07-29 15:17 - 00007834 _____ () C:\Users\Roman\Downloads\Lovva%5eLoL%5e17..Challenge (2).Gbx
2014-07-28 20:26 - 2014-07-28 20:26 - 00007834 _____ () C:\Users\Roman\Downloads\Lovva%5eLoL%5e17..Challenge (1).Gbx
2014-07-28 16:20 - 2014-07-28 16:20 - 00007834 _____ () C:\Users\Roman\Downloads\Lovva%5eLoL%5e17..Challenge.Gbx
2014-07-28 12:29 - 2014-07-28 12:28 - 04915831 _____ (Nadeo ) C:\Users\Roman\Downloads\TmNationsForever_Update_2010-03-15_Setup (2).exe
2014-07-27 18:08 - 2014-07-27 18:08 - 00001637 _____ () C:\Users\Roman\Downloads\B-0.Challenge (1).Gbx
2014-07-27 18:06 - 2014-07-17 16:48 - 00000000 ____D () C:\Program Files (x86)\ManiaPlanet
2014-07-27 18:01 - 2014-07-27 18:01 - 00001637 _____ () C:\Users\Roman\Downloads\B-0.Challenge.Gbx
2014-07-21 21:04 - 2014-07-21 21:04 - 00016536 _____ () C:\Users\Roman\Downloads\Nexus___Snow_World.Challenge.Gbx
2014-07-21 21:03 - 2014-07-21 21:03 - 00024238 _____ () C:\Users\Roman\Downloads\Decadence._%3f%3ft__®%3fä%3fa%3f%3fe(00'27''48).Replay.Gbx
2014-07-21 20:46 - 2014-07-21 20:46 - 00015857 _____ () C:\Users\Roman\Downloads\Decadence..Challenge.Gbx
2014-07-21 14:55 - 2014-07-21 14:55 - 00006758 _____ () C:\Users\Roman\Downloads\Jan_Lol_for_Tomilll__3.Replay.gbx
2014-07-21 14:52 - 2014-07-21 14:52 - 00073839 _____ () C:\Users\Roman\Downloads\Ever_Dream.°_%3f%3f%3f_»NG%3f%3f!__3(00'48''63).Replay.Gbx
2014-07-21 14:39 - 2014-07-21 14:39 - 00056208 _____ () C:\Users\Roman\Downloads\Ever_Dream.°.Challenge.Gbx
2014-07-21 14:35 - 2014-07-21 14:35 - 00056130 _____ () C:\Users\Roman\Downloads\Manu2_Twilight_Impact.Replay.gbx
2014-07-21 14:27 - 2014-07-21 14:27 - 00048942 _____ () C:\Users\Roman\Downloads\Twilight_Impact.Challenge.Gbx
2014-07-21 14:24 - 2014-07-21 14:24 - 00075769 _____ () C:\Users\Roman\Downloads\Anael_LOL_Impossible_Nino´s_Answer.Replay.gbx
2014-07-18 14:33 - 2014-07-18 14:33 - 00013185 _____ () C:\Users\Roman\Downloads\A03_Lik3D_riolu!(00'17''19).Replay (2).Gbx
2014-07-18 14:32 - 2014-07-18 14:32 - 00013185 _____ () C:\Users\Roman\Downloads\A03_Lik3D_riolu!(00'17''19).Replay.Gbx
2014-07-18 14:32 - 2014-07-18 14:32 - 00013185 _____ () C:\Users\Roman\Downloads\A03_Lik3D_riolu!(00'17''19).Replay (1).Gbx
2014-07-18 12:15 - 2014-07-18 12:15 - 00074768 _____ () C:\Users\Roman\Downloads\E_X_Q_U_I_S_I_T_E_Quantum_II_chrisor.(00'44''43).Replay (1).Gbx
2014-07-17 16:48 - 2014-07-17 16:48 - 00001093 _____ () C:\Users\Public\Desktop\ManiaPlanet.lnk
2014-07-17 16:48 - 2014-07-17 16:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ManiaPlanet
2014-07-17 13:13 - 2014-07-17 13:23 - 120269872 _____ () C:\Users\Roman\Desktop\ManiaplanetMinimalSetup.exe
2014-07-17 13:13 - 2014-07-17 13:11 - 120269872 _____ () C:\Users\Roman\Downloads\ManiaplanetMinimalSetup.exe
2014-07-16 22:12 - 2014-07-02 18:02 - 00002193 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-07-15 21:21 - 2014-07-15 21:21 - 00063960 _____ () C:\Users\Roman\Downloads\EtniEs_40.24.Replay.Gbx
2014-07-15 16:38 - 2014-07-15 16:38 - 00008082 _____ () C:\Users\Roman\Downloads\lol_hard_trial.Challenge.Gbx
2014-07-14 23:16 - 2014-07-14 23:16 - 00000000 ____D () C:\Users\Roman\Documents\Electronic Arts
2014-07-14 23:08 - 2014-07-14 23:08 - 00000000 ____D () C:\Program Files (x86)\Microsoft WSE
2014-07-14 22:57 - 2014-07-14 22:57 - 00002086 _____ () C:\Users\Public\Desktop\The Sims™ 3.lnk
2014-07-14 22:45 - 2014-07-14 22:45 - 00000000 ____D () C:\Program Files (x86)\Electronic Arts
2014-07-14 22:44 - 2012-10-26 09:31 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-07-14 22:24 - 2014-07-14 22:24 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\WinRAR
2014-07-14 22:20 - 2014-07-14 22:20 - 00000971 _____ () C:\Users\Public\Desktop\WinRAR.lnk
2014-07-14 22:20 - 2014-07-14 22:20 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-07-14 22:20 - 2014-07-14 22:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-07-14 22:20 - 2014-07-14 22:20 - 00000000 ____D () C:\Program Files\WinRAR
2014-07-14 22:19 - 2014-07-14 22:19 - 01942752 _____ () C:\Users\Roman\Downloads\winrar-x64-510cz.exe
2014-07-14 21:38 - 2014-07-14 12:35 - 662523473 _____ () C:\Users\Roman\Downloads\The-Sims-3-+-Crack.rar
2014-07-14 20:25 - 2014-07-14 20:25 - 00011219 _____ () C:\Users\Roman\Downloads\Shit_%231.Challenge.Gbx
2014-07-14 19:58 - 2014-07-14 19:57 - 00000056 _____ () C:\Users\Roman\Desktop\STEAM KEY.txt
2014-07-14 15:05 - 2014-07-14 15:05 - 00104747 _____ () C:\Users\Roman\Downloads\Kirshblats_¡_No_Sense_!.Replay.gbx
2014-07-13 23:01 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2014-07-13 22:42 - 2014-07-02 16:36 - 00000000 ____D () C:\Windows.old
2014-07-13 21:49 - 2014-07-02 21:21 - 00000000 ___HD () C:\Program Files (x86)\Temp
2014-07-13 21:44 - 2014-07-13 21:44 - 00003150 _____ () C:\WINDOWS\System32\Tasks\RtHDVBg
2014-07-13 21:44 - 2014-07-13 21:44 - 00003132 _____ () C:\WINDOWS\System32\Tasks\RTKCPL
2014-07-13 21:44 - 2014-07-13 21:44 - 00000000 ____D () C:\WINDOWS\SysWOW64\RTCOM
2014-07-13 21:44 - 2014-07-13 21:44 - 00000000 ____D () C:\Program Files\Realtek
2014-07-13 21:33 - 2013-12-15 19:35 - 68207817 _____ (Igor Pavlov) C:\Users\Roman\Downloads\setup.exe
2014-07-13 21:29 - 2014-07-13 21:29 - 00001463 _____ () C:\Users\Public\Desktop\Norton Security Scan.LNK
2014-07-13 21:29 - 2014-07-13 21:29 - 00000000 ____D () C:\WINDOWS\system32\Drivers\NSSx64
2014-07-13 21:29 - 2014-07-13 21:29 - 00000000 ____D () C:\ProgramData\Norton
2014-07-13 21:29 - 2014-07-13 21:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security Scan
2014-07-13 21:29 - 2014-07-13 21:29 - 00000000 ____D () C:\Program Files (x86)\Norton Security Scan
2014-07-13 21:23 - 2014-07-13 21:23 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Imperia Online
2014-07-13 21:23 - 2014-07-13 21:23 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\ImperiaOnline
2014-07-13 21:21 - 2014-07-13 21:20 - 00740688 _____ () C:\Users\Roman\Downloads\setup (1).exe
2014-07-13 21:11 - 2014-07-13 21:11 - 00001249 _____ () C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RtkGUI.lnk
2014-07-13 20:56 - 2014-07-13 20:56 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-07-13 20:28 - 2012-10-26 09:31 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-07-13 20:19 - 2014-07-13 20:18 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\rmi
2014-07-13 20:18 - 2014-07-13 20:18 - 00089624 _____ () C:\Users\Roman\Downloads\64bit_Win7_Win8_Win81_R273.exe
2014-07-13 20:18 - 2014-07-13 20:18 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\rmc
2014-07-13 16:56 - 2014-07-13 16:56 - 00281632 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-07-13 16:47 - 2014-07-13 16:47 - 00000000 ____D () C:\WINDOWS\SysWOW64\NV
2014-07-13 16:47 - 2014-07-13 16:47 - 00000000 ____D () C:\WINDOWS\system32\NV
2014-07-13 16:47 - 2014-07-13 16:09 - 00000000 ___RD () C:\WINDOWS\BrowserChoice
2014-07-13 16:47 - 2012-08-05 23:11 - 00000000 ____D () C:\ProgramData\PRICache
2014-07-13 16:12 - 2014-07-13 16:12 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2014-07-13 16:12 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-13 16:10 - 2012-07-26 10:12 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-07-13 16:10 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-07-13 16:10 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-07-13 16:08 - 2012-07-26 10:12 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-07-13 16:08 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates
2014-07-13 16:06 - 2012-07-26 10:12 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
2014-07-13 16:04 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\sk-SK
2014-07-13 16:02 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\hr-HR
2014-07-13 16:00 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\sl-SI
2014-07-13 15:57 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\sl-SI
2014-07-13 15:57 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\sk-SK
2014-07-13 15:57 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\hr-HR
Files to move or delete:
====================
C:\ProgramData\MakeMarkerFile.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\WINDOWS\Tasks\Norton Security Scan for Roman.job => C:\Program Files (x86)\NORTON~2\Engine\410~1.28\Nss.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: PC Tools AntiVirus Free (Enabled - Up to date) {2F668A56-D5E0-2DF1-A0AE-CB1284F42AB2}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: PC Tools AntiVirus Free (Enabled - Up to date) {94076BB2-F3DA-227F-9A1E-F060FF73600F}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Roman\Desktop" je 24920 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
==================== End Of Log ==============================