
i okem neznalého člověka jsem si musela všimnout, že můj rádoby notebook skoro vůbec nepracuje. Je strašně pomalý, najednou se začne sekat a já ho už bez vypnutí/zapnutí nerozjedu, prostě typické příznaky toho, že je zavirovaný. Ač si má dcera jen prý stahuje knížky, seriály a sem tam nějaký program na úpravu fotek, tak prý nic "škodlivého" nestahuje


Děkuji mnohokrát za pomoc
log z FRST:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 25-08-2014
Ran by Tereza (administrator) on TEREZA-HP on 29-08-2014 10:14:10
Running from C:\Users\Tereza\Desktop
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 9
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(HP) C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
() C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MpCmdRun.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(TorchMedia Inc.) C:\Users\Tereza\AppData\Local\Torch\Update\TorchCrashHandler.exe
(ArcSoft, Inc.) C:\Windows\SysWOW64\ArcVCapRender\uArcCapture.exe
(OutBrowse) C:\Program Files (x86)\SavePass\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-10.exe
(DigitalPersona, Inc.) C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
(P-HD) C:\Program Files (x86)\P-HD-V1.4\P-HD-V1.4-nova.exe
(OutBrowse) C:\Program Files (x86)\SavePass\SavePass-nova.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(Hewlett-Packard Company) C:\Program Files (x86)\HP\Digital Imaging\Fax\Fax Driver 0.6 Base\hppfaxprintersrv.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpAgent.exe
(ZONER software) C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTray.exe
(SOLIBO Ltd.) C:\Program Files (x86)\Solibo Ltd\NCdownloader\NCdownloader.exe
() C:\Users\Tereza\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe
(Hewlett-Packard Company) C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Power Software Ltd) C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
() C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\HP LJ CM1410 MFP Series\bin\HPScan.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPConnectionManager.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Microsoft Corporation) C:\Windows\System32\msfeedssync.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
() C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Portrait Displays, Inc) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe
(Portrait Displays, Inc.) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdiSDKHelperx64.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Temp\mpam-913b5868.exe
() C:\c1d6dd87380185dabc0e\MPSigStub.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Tereza\Desktop\FRST-OlderVersion\FRSTLauncher.exe
(forum.viry.cz) C:\Users\Tereza\Desktop\FRST-OlderVersion\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [1016992 2012-01-19] (Atheros Communications)
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [800416 2012-01-19] (Atheros Commnucations)
HKLM\...\Run: [HPPowerAssistant] => C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [3488640 2012-03-14] (Hewlett-Packard Company)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe
HKLM\...\Run: [MfeEpePcMonitor] => "C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe"
HKLM\...\Run: [HP LaserJet Professional CM1410 Series Fax] => C:\Program Files (x86)\HP\Digital Imaging\Fax\Fax Driver 0.6 Base\hppfaxprintersrv.exe [3706424 2010-08-24] (Hewlett-Packard Company)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3056880 2013-10-19] (Synaptics Incorporated)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1271072 2014-03-11] (Microsoft Corporation)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2012-03-01] (Intel Corporation)
HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [684024 2012-03-07] (PDF Complete Inc)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-03-27] (Intel Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [636032 2012-03-30] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [AMD AVT] => C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe [10752 2012-01-31] ()
HKLM-x32\...\Run: [DTRun] => c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [517456 2010-11-24] (ArcSoft Inc.)
HKLM-x32\...\Run: [File Sanitizer] => c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe [12310616 2012-03-22] (Hewlett-Packard)
HKLM-x32\...\Run: [ToolboxFX] => C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe [58936 2010-10-25] (Hewlett-Packard Company)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard)
HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [336992 2012-08-17] (Power Software Ltd)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [mobilegeni daemon] => C:\Program Files (x86)\Mobogenie\DaemonProcess.exe [761024 2013-12-10] ()
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1009288 2012-09-13] ()
HKLM-x32\...\Run: [HPConnectionManager] => C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [185144 2013-10-31] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [337184 2013-10-16] (Hewlett-Packard Company)
HKLM-x32\...\Run: [] => [X]
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe,
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
Winlogon\Notify\DeviceNP-x32: DeviceNP.dll [X]
HKU\S-1-5-21-3183168421-3275855651-560329424-1001\...\Run: [Zoner Photo Studio Service 16] => C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSService.exe [27672 2013-09-27] ()
HKU\S-1-5-21-3183168421-3275855651-560329424-1001\...\Run: [NextLive] => C:\windows\SysWOW64\rundll32.exe "C:\Users\Tereza\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l
HKU\S-1-5-21-3183168421-3275855651-560329424-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Tereza\AppData\Roaming\Seznam.cz\szninstall.exe [1009288 2012-09-13] ()
HKU\S-1-5-21-3183168421-3275855651-560329424-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Tereza\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92296 2012-12-19] ()
HKU\S-1-5-21-3183168421-3275855651-560329424-1001\...\Run: [BackgroundContainer] => "C:\windows\SysWOW64\Rundll32.exe" "C:\Users\Tereza\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll",DllRun <===== ATTENTION
HKU\S-1-5-21-3183168421-3275855651-560329424-1001\...\Run: [Zoner Photo Studio Autoupdate] => C:\PROGRAM FILES\ZONER\PHOTO STUDIO 16\Program32\ZPSTRAY.EXE [801816 2013-09-27] (ZONER software)
HKU\S-1-5-21-3183168421-3275855651-560329424-1001\...\RunOnce: [Application Restart #8] => C:\Users\Tereza\AppData\Local\Pokki\Engine\pokki.exe [8252744 2013-11-01] (Pokki)
AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll => C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC64Loader.dll [1351968 2014-02-12] (Conduit)
AppInit_DLLs-x32: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll => C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC32Loader.dll [1047328 2014-02-12] (Conduit)
IFEO\bitguard.exe: [Debugger] tasklist.exe
IFEO\bprotect.exe: [Debugger] tasklist.exe
IFEO\bpsvc.exe: [Debugger] tasklist.exe
IFEO\browsemngr.exe: [Debugger] tasklist.exe
IFEO\browserdefender.exe: [Debugger] tasklist.exe
IFEO\browsermngr.exe: [Debugger] tasklist.exe
IFEO\browserprotect.exe: [Debugger] tasklist.exe
IFEO\browsersafeguard.exe: [Debugger] tasklist.exe
IFEO\bundlesweetimsetup.exe: [Debugger] tasklist.exe
IFEO\cltmngsvc.exe: [Debugger] tasklist.exe
IFEO\iminentsetup.exe: [Debugger] tasklist.exe
IFEO\protectedsearch.exe: [Debugger] tasklist.exe
IFEO\searchprotection.exe: [Debugger] tasklist.exe
IFEO\snapdo.exe: [Debugger] tasklist.exe
IFEO\stinst32.exe: [Debugger] tasklist.exe
IFEO\stinst64.exe: [Debugger] tasklist.exe
Lsa: [Notification Packages] DPPassFilter scecli
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NCdownloader.lnk
ShortcutTarget: NCdownloader.lnk -> C:\Program Files (x86)\Solibo Ltd\NCdownloader\NCdownloader.exe (SOLIBO Ltd.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=16194
URLSearchHook: HKCU - Default Value = {74198672-5F7D-4FE9-A611-4AC1D5A66A15}
SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKCU - DefaultScope {89528805-2F18-4E6B-A814-8DF987C166E9} URL = http://search.seznam.cz/?q={searchTerms ... arch_16194
SearchScopes: HKCU - {17DE7E93-5002-4B19-AC56-93B350511B00} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_16194
SearchScopes: HKCU - {89528805-2F18-4E6B-A814-8DF987C166E9} URL = http://search.seznam.cz/?q={searchTerms ... arch_16194
SearchScopes: HKCU - {BE69CC09-CFC0-47A2-BE3A-FC8F03DF94DE} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_16194
SearchScopes: HKCU - {CEE27466-3CB8-49BB-B7CD-47401476A1B9} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_16194
SearchScopes: HKCU - {DFEAA9B2-ABAF-4428-A459-6005E3B1622C} URL = http://www.firmy.cz/phr/{searchTerms}?s ... arch_16194
SearchScopes: HKCU - {F26083DC-8FFE-4E30-A627-B8AEF78B828F} URL = http://encyklopedie.seznam.cz/search?q= ... arch_16194
SearchScopes: HKCU - {FE0C0164-60C8-4E83-A8F1-95B89C0251C5} URL = http://www.mapy.cz/?query={searchTerms} ... arch_16194
BHO: SavePass -> {11111111-1111-1111-1111-110511701150} -> C:\Program Files (x86)\SavePass\SavePass-bho64.dll (OutBrowse)
BHO: P-HD-V1.4 -> {11111111-1111-1111-1111-110511831162} -> C:\Program Files (x86)\P-HD-V1.4\P-HD-V1.4-bho64.dll (P-HD)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: SavePass -> {11111111-1111-1111-1111-110511701150} -> C:\Program Files (x86)\SavePass\SavePass-bho.dll (OutBrowse)
BHO-x32: P-HD-V1.4 -> {11111111-1111-1111-1111-110511831162} -> C:\Program Files (x86)\P-HD-V1.4\P-HD-V1.4-bho.dll (P-HD)
BHO-x32: File Sanitizer for HP ProtectTools -> {3134413B-49B4-425C-98A5-893C1F195601} -> c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll (Hewlett-Packard)
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
BHO-x32: focusbase -> {8fda85d4-b14a-49f5-9de6-f91c4ec5aaf4} -> C:\Program Files (x86)\focusbase\focusbasebho.dll (focusbase)
BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKLM-x32 - VideoDownloadConverter - {48586425-6bb7-4f51-8dc6-38c88e3ebb58} - C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zbar.dll No File
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll No File
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @VideoDownloadConverter_4z.com/Plugin -> C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\NP4zStub.dll No File
FF HKLM-x32\...\Firefox\Extensions: [otis@digitalpersona.com] - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt
FF Extension: DigitalPersona Extension - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt [2012-08-07]
FF HKLM-x32\...\Firefox\Extensions: [4zffxtbr@VideoDownloadConverter_4z.com] - C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin
FF HKLM-x32\...\Firefox\Extensions: [zulagames@ZulaGames.com] - C:\Users\Tereza\AppData\Roaming\Mozilla\Extensions\zulagames@ZulaGames.com
FF Extension: Zula Games - C:\Users\Tereza\AppData\Roaming\Mozilla\Extensions\zulagames@ZulaGames.com [2013-10-03]
FF HKCU\...\Firefox\Extensions: [zulagames@ZulaGames.com] - C:\Users\Tereza\AppData\Roaming\Mozilla\Extensions\zulagames@ZulaGames.com
FF HKCU\...\Firefox\Extensions: [speedtest4354@BestOffers] - C:\Users\Tereza\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers
FF Extension: Speed Test 127 - C:\Users\Tereza\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers [2014-01-07]
Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com
CHR StartupUrls: Default -> "hxxp://www.search.ask.com/?o=APN10645A&gct=hp& ... 81-221&t=4"
CHR DefaultSearchKeyword: Default -> ask.com
CHR DefaultSearchProvider: Default -> Ask.com
CHR DefaultSearchURL: Default -> http://dts.search.ask.com/sr?src=crb&gc ... earchTerms}
CHR DefaultSuggestURL: Default ->
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.143\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.143\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.143\pdf.dll ()
CHR Plugin: (Funmoods) - C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbjciahceamgodcoidkjpchnokgfpphh\2.1.3_0\resources/fm.dll No File
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (AVG SiteSafety plugin) - C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\15.4.0\\npsitesafety.dll No File
CHR Plugin: (Picasa) - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File
CHR Plugin: (Intel Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
CHR Plugin: (Intel Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
CHR Plugin: (MindSpark Toolbar Platform Plugin Stub) - C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\NP4zStub.dll No File
CHR Profile: C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (SPOI Options (Please remove me)) - C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdokagampppgbnjfdlkfpphniapiiifn [2013-12-10]
CHR Extension: (YoutubeAdblocker) - C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\eebagdoglmcmakanohagimlmppcgfdbk [2014-02-09]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\eibfgbclmgnmffinenpipoibfdoblond [2014-02-12]
CHR Extension: (Seznam Lištička - Email) - C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkfpcckoflkdgjdobdkpclgngaahgbpi [2014-02-12]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghoooididkjbjjldgojdgceoinbhbjmh [2014-02-12]
CHR Extension: (AdBlock) - C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-12-10]
CHR Extension: (Everplex Dark + Black Theme for YouTube) - C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\hipmkeejhafdjjcnhmjibpgfheoicokl [2013-12-10]
CHR Extension: (P-HD-V1.4) - C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\inmkmihphgjhmeabggdcokmkjhbnmdml [2014-07-23]
CHR Extension: (Peněženka Google) - C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-04]
CHR HKCU\...\Chrome\Extension: [eibfgbclmgnmffinenpipoibfdoblond] - C:\Users\Tereza\AppData\Roaming\Seznam.cz\bin\listicka-chrome-rv-1.5.3.crx [2014-02-11]
CHR HKCU\...\Chrome\Extension: [fkfpcckoflkdgjdobdkpclgngaahgbpi] - C:\Users\Tereza\AppData\Roaming\Seznam.cz\bin\listicka-chrome-email-1.2.0.crx [2014-02-11]
CHR HKCU\...\Chrome\Extension: [ghoooididkjbjjldgojdgceoinbhbjmh] - C:\Users\Tereza\AppData\Roaming\Seznam.cz\bin\listicka-chrome-slovnik-1.2.0.crx [2014-02-11]
CHR HKLM-x32\...\Chrome\Extension: [gkjoindjjcmbdpbfppabdgflnkgbbcli] - C:\Program Files (x86)\FTDownloader.com\FTDownloader10.crx [2014-02-11]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [106144 2012-01-19] (Atheros Commnucations) [File not signed]
R2 DpHost; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [493904 2012-03-15] (DigitalPersona, Inc.)
S3 FLCDLOCK; c:\windows\SysWOW64\flcdlock.exe [477056 2012-01-31] (Hewlett-Packard Company)
S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-07-16] (globalUpdate) [File not signed]
S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-07-16] (globalUpdate) [File not signed]
R2 HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [145920 2010-10-25] (HP) [File not signed]
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2013-11-04] (Hewlett-Packard Company) [File not signed]
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [681760 2013-10-16] (Hewlett-Packard Company)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280 2012-03-28] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165144 2012-03-28] (Intel Corporation)
R2 McAfee Endpoint Encryption Agent; C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe [1327104 2013-03-27] () [File not signed]
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2014-03-11] (Microsoft Corporation)
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [50688 2011-04-13] (Hewlett-Packard) [File not signed]
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [347872 2014-03-11] (Microsoft Corporation)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1134584 2012-03-07] (PDF Complete Inc)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [66048 2011-04-13] (Hewlett-Packard) [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 TorchCrashHandler; C:\Users\Tereza\AppData\Local\Torch\Update\TorchCrashHandler.exe [1216520 2014-07-10] (TorchMedia Inc.)
R2 uArcCapture; C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe [498352 2012-02-03] (ArcSoft, Inc.)
S2 Update focusbase; C:\Program Files (x86)\focusbase\updatefocusbase.exe [323360 2014-08-19] ()
S2 Util focusbase; C:\Program Files (x86)\focusbase\bin\utilfocusbase.exe [323360 2014-08-19] ()
R2 ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [158880 2012-01-19] (Atheros) [File not signed]
S2 vToolbarUpdater17.3.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.3.0\ToolbarUpdater.exe [X]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [32896 2012-03-20] (Advanced Micro Devices, Inc.)
R3 ARCVCAM; C:\Windows\System32\DRIVERS\ArcSoftVCapture.sys [42816 2012-02-03] (ArcSoft, Inc.)
R1 avgtp; C:\windows\system32\drivers\avgtpx64.sys [46368 2013-11-10] (AVG Technologies)
S3 DAMDrv; C:\Windows\System32\DRIVERS\DAMDrv64.sys [64312 2012-01-31] (Hewlett-Packard Company)
S3 intelkmd; C:\Windows\System32\DRIVERS\igdpmd64.sys [14748416 2012-03-26] (Intel Corporation) [File not signed]
R0 MfeEpeOpal; C:\Windows\System32\Drivers\MfeEpeOpal.sys [91432 2013-03-27] (McAfee, Inc.)
R0 MfeEpePc; C:\Windows\System32\Drivers\MfeEpePc.sys [158760 2013-03-27] (McAfee, Inc.)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [268512 2014-01-25] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [133928 2014-03-11] (Microsoft Corporation)
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1866080 2012-11-20] ()
R1 {2b929fe1-284b-4766-afb9-19b0915b99b0}Gw64; C:\Windows\System32\drivers\{2b929fe1-284b-4766-afb9-19b0915b99b0}Gw64.sys [61120 2014-07-12] (StdLib)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-08-29 10:14 - 2014-08-29 10:18 - 00030615 _____ () C:\Users\Tereza\Desktop\FRST.txt
2014-08-29 10:13 - 2014-08-29 10:13 - 00000000 ____D () C:\Users\Tereza\Desktop\FRST-OlderVersion
2014-08-29 09:55 - 2014-08-29 09:56 - 00000000 ____D () C:\c1d6dd87380185dabc0e
2014-08-29 09:50 - 2014-08-29 09:50 - 00000000 ____D () C:\Users\Tereza\AppData\Local\HP
2014-08-22 22:09 - 2014-08-29 10:09 - 00003192 _____ () C:\windows\System32\Tasks\HPCeeScheduleForTereza
2014-08-22 22:09 - 2014-08-29 10:09 - 00000336 _____ () C:\windows\Tasks\HPCeeScheduleForTereza.job
2014-08-22 21:34 - 2014-08-22 21:35 - 00429104 _____ () C:\Users\Tereza\Downloads\Nepotvrzeno 260759.crdownload
2014-08-22 21:34 - 2014-08-22 21:34 - 00429104 _____ () C:\Users\Tereza\Downloads\Tielle_St_Clare_[Werewolf_04]_Jackson_s_Rise_pdf_Full (1).exe
2014-08-22 21:30 - 2014-08-22 21:30 - 00186076 _____ () C:\Users\Tereza\Downloads\[St_Clare_Tielle]_Jackson's_Rise(BookSee.org) (2).rar
2014-08-22 21:29 - 2014-08-22 21:30 - 00429104 _____ () C:\Users\Tereza\Downloads\Tielle_St_Clare_[Werewolf_04]_Jackson_s_Rise_pdf_Full.exe
2014-08-22 21:29 - 2014-08-22 21:29 - 00186076 _____ () C:\Users\Tereza\Downloads\[St_Clare_Tielle]_Jackson's_Rise(BookSee.org) (1).rar
2014-08-22 21:27 - 2014-08-22 21:27 - 00186076 _____ () C:\Users\Tereza\Downloads\[St_Clare_Tielle]_Jackson's_Rise(BookSee.org).rar
2014-08-22 20:55 - 2014-08-22 20:55 - 00715740 _____ () C:\Users\Tereza\Downloads\Jackson s Rise Wolf s Heritage Book Four - Tielle St. Clare.exe
2014-08-22 20:48 - 2014-08-22 20:48 - 01139320 _____ (Zugara Investments Limited ) C:\Users\Tereza\Downloads\download-jacksons-rise-by-tielle-st-clare-kindle-ebook.exe
2014-08-22 20:11 - 2014-08-22 20:11 - 00203003 _____ () C:\Users\Tereza\Desktop\jac.txt
2014-08-22 20:09 - 2014-08-22 20:09 - 00203003 _____ () C:\windows\system32\jac.txt
2014-08-21 20:14 - 2014-08-21 21:09 - 481841315 _____ () C:\Users\Tereza\Downloads\Outlander.S01E02.HDTV.x264-ASAP.mp4
2014-08-21 18:09 - 2014-08-21 19:34 - 552321522 _____ () C:\Users\Tereza\Downloads\Outlander.S01E01.HDTV.x264-2HD.mp4
2014-08-21 11:19 - 2014-08-21 11:19 - 00542160 _____ () C:\Users\Tereza\Downloads\Cole Kresley - 04 Nedostižný přízrak.txt
2014-08-20 22:54 - 2014-08-20 23:08 - 00000000 ____D () C:\Users\Tereza\Downloads\abbi glines
2014-08-20 17:07 - 2014-08-20 18:47 - 287712931 _____ () C:\Users\Tereza\Downloads\Witches.of.East.End.S02E05.HDTV.x264-KILLERS.mp4
2014-08-20 16:33 - 2014-08-20 16:33 - 00375474 _____ () C:\Users\Tereza\Downloads\Kiss of a Demon King - Kresley Cole.epub
2014-08-20 15:58 - 2014-08-20 15:59 - 00013624 _____ () C:\Users\Tereza\Downloads\[kickass.to]immortals.after.dark.kresley.cole (1).torrent
2014-08-20 15:58 - 2014-08-20 15:58 - 00013624 _____ () C:\Users\Tereza\Downloads\[kickass.to]immortals.after.dark.kresley.cole.torrent
2014-08-20 15:32 - 2014-08-21 18:05 - 00000000 ____D () C:\Users\Tereza\Downloads\Teen Wolf S04E09 HDTV x264-ASAP[ettv]
2014-08-19 22:22 - 2014-08-19 22:23 - 00591094 _____ () C:\Users\Tereza\Downloads\Cole Kresley - 05 Temné touhy (1).txt
2014-08-19 18:53 - 2014-08-19 18:53 - 00650262 _____ () C:\Users\Tereza\Downloads\dare_you_to_mcgarry_katie.txt
2014-08-19 16:56 - 2014-08-19 16:56 - 00591094 _____ () C:\Users\Tereza\Downloads\Cole Kresley - 05 Temné touhy.txt
2014-08-18 22:02 - 2014-08-18 22:04 - 37801245 _____ () C:\Users\Tereza\Downloads\Novinky z 33. týdne 2014 1.rar
2014-08-17 14:50 - 2014-08-17 14:51 - 00279896 _____ () C:\windows\Minidump\081714-44912-01.dmp
2014-08-16 12:12 - 2014-08-16 12:12 - 00730497 _____ () C:\Users\Tereza\Downloads\Arthur Keri 03 - Smyslne zlo.txt
2014-08-16 11:42 - 2014-08-16 11:43 - 02659169 _____ () C:\Users\Tereza\Downloads\Temne-touhy_Kresley-Cole.mobi
2014-08-14 15:49 - 2014-08-14 16:04 - 00000000 ____D () C:\Users\Tereza\Desktop\prochajda
2014-08-14 10:46 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDYAK.DLL
2014-08-14 10:46 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDTAT.DLL
2014-08-14 10:46 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDRU1.DLL
2014-08-14 10:46 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDBASH.DLL
2014-08-14 10:46 - 2014-07-09 04:03 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\KBDRU.DLL
2014-08-14 10:46 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDYAK.DLL
2014-08-14 10:46 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDTAT.DLL
2014-08-14 10:46 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDRU1.DLL
2014-08-14 10:46 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDRU.DLL
2014-08-14 10:46 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDBASH.DLL
2014-08-14 10:46 - 2014-07-09 00:38 - 00419992 _____ () C:\windows\system32\locale.nls
2014-08-14 10:46 - 2014-07-09 00:30 - 00419992 _____ () C:\windows\SysWOW64\locale.nls
2014-08-14 10:45 - 2014-07-24 21:28 - 17861120 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-08-14 10:45 - 2014-07-24 21:12 - 02339328 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-08-14 10:45 - 2014-07-24 21:10 - 10920960 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-08-14 10:45 - 2014-07-24 21:07 - 01384960 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-08-14 10:45 - 2014-07-24 21:06 - 01392128 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-08-14 10:45 - 2014-07-24 21:05 - 01494016 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-08-14 10:45 - 2014-07-24 21:05 - 00237056 _____ (Microsoft Corporation) C:\windows\system32\url.dll
2014-08-14 10:45 - 2014-07-24 21:05 - 00086016 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-08-14 10:45 - 2014-07-24 21:04 - 02155520 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-08-14 10:45 - 2014-07-24 21:04 - 00816640 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2014-08-14 10:45 - 2014-07-24 21:04 - 00729088 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-08-14 10:45 - 2014-07-24 21:04 - 00599040 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-08-14 10:45 - 2014-07-24 21:04 - 00453120 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-08-14 10:45 - 2014-07-24 21:04 - 00173056 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-08-14 10:45 - 2014-07-24 21:03 - 02382848 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-08-14 10:45 - 2014-07-24 21:03 - 00282112 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-08-14 10:45 - 2014-07-24 21:03 - 00096768 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-08-14 10:45 - 2014-07-24 21:03 - 00055296 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll
2014-08-14 10:45 - 2014-07-24 21:03 - 00012800 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe
2014-08-14 10:45 - 2014-07-24 21:03 - 00011264 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe
2014-08-14 10:45 - 2014-07-24 21:02 - 00248320 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-08-14 10:45 - 2014-07-24 20:07 - 12356608 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-08-14 10:45 - 2014-07-24 19:58 - 01810432 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-08-14 10:45 - 2014-07-24 19:57 - 09739264 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-08-14 10:45 - 2014-07-24 19:52 - 01137664 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-08-14 10:45 - 2014-07-24 19:51 - 01427968 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-08-14 10:45 - 2014-07-24 19:51 - 01129472 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-08-14 10:45 - 2014-07-24 19:50 - 00231936 _____ (Microsoft Corporation) C:\windows\SysWOW64\url.dll
2014-08-14 10:45 - 2014-07-24 19:50 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-08-14 10:45 - 2014-07-24 19:49 - 01802240 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-08-14 10:45 - 2014-07-24 19:49 - 00717824 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2014-08-14 10:45 - 2014-07-24 19:49 - 00607744 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-08-14 10:45 - 2014-07-24 19:49 - 00421376 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-08-14 10:45 - 2014-07-24 19:49 - 00142848 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-08-14 10:45 - 2014-07-24 19:48 - 02382848 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-08-14 10:45 - 2014-07-24 19:48 - 00353792 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-08-14 10:45 - 2014-07-24 19:48 - 00223232 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-08-14 10:45 - 2014-07-24 19:48 - 00073216 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-08-14 10:45 - 2014-07-24 19:48 - 00041472 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedsbs.dll
2014-08-14 10:45 - 2014-07-24 19:48 - 00011776 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshta.exe
2014-08-14 10:45 - 2014-07-24 19:48 - 00010752 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedssync.exe
2014-08-14 10:45 - 2014-07-24 19:47 - 00176640 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-08-14 10:45 - 2014-07-16 05:23 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2014-08-14 10:45 - 2014-07-16 04:46 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll
2014-08-14 10:42 - 2014-07-16 05:25 - 00404480 _____ (Microsoft Corporation) C:\windows\system32\gdi32.dll
2014-08-14 10:42 - 2014-07-16 04:46 - 00311808 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32.dll
2014-08-14 10:42 - 2014-07-16 04:12 - 03163648 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2014-08-14 10:42 - 2014-06-25 04:05 - 14175744 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2014-08-14 10:42 - 2014-06-25 03:41 - 12874240 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2014-08-14 10:42 - 2014-06-12 09:52 - 00986560 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys
2014-08-14 10:33 - 2014-07-14 04:02 - 01216000 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2014-08-14 10:33 - 2014-07-14 03:40 - 00664064 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2014-08-14 10:22 - 2014-07-01 00:24 - 00008856 _____ (Microsoft Corporation) C:\windows\system32\icardres.dll
2014-08-14 10:22 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardres.dll
2014-08-14 10:22 - 2014-03-09 23:48 - 01389208 _____ (Microsoft Corporation) C:\windows\system32\icardagt.exe
2014-08-14 10:22 - 2014-03-09 23:48 - 00171160 _____ (Microsoft Corporation) C:\windows\system32\infocardapi.dll
2014-08-14 10:22 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardagt.exe
2014-08-14 10:22 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\windows\SysWOW64\infocardapi.dll
2014-08-14 10:21 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\windows\SysWOW64\TsWpfWrp.exe
2014-08-14 10:21 - 2014-06-06 08:12 - 00035480 _____ (Microsoft Corporation) C:\windows\system32\TsWpfWrp.exe
2014-08-14 10:07 - 2014-08-07 04:06 - 00529920 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-08-14 10:07 - 2014-08-07 04:01 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-08-13 21:15 - 2014-08-13 21:15 - 00000000 _____ () C:\Users\Tereza\AppData\Local\{402D5AAA-1A79-48DB-83F6-EB8349D658BE}
2014-08-13 20:11 - 2014-08-14 17:22 - 00000000 ____D () C:\Users\Tereza\Desktop\šumava 2014
2014-08-13 10:32 - 2014-08-13 10:32 - 00026902 _____ () C:\Users\Tereza\Downloads\dominion-S01E08-hdtv-By-jeriska03-efvendy.zip
2014-08-13 10:31 - 2014-08-13 22:46 - 00000000 ____D () C:\Users\Tereza\Downloads\Teen Wolf S04E08 HDTV x264-KILLERS[ettv]
2014-08-13 10:07 - 2014-08-13 22:46 - 00000000 ____D () C:\Users\Tereza\Downloads\[ www.torrenting.com ] - Dominion.S01E08.480p.HDTV.x264-mSD
2014-08-10 23:08 - 2014-08-11 20:28 - 00000000 ____D () C:\Users\Tereza\Desktop\měsíc
2014-08-10 23:03 - 2014-08-10 23:03 - 00000000 ____D () C:\Users\Tereza\Desktop\Nová složka (8)
2014-08-07 12:25 - 2014-08-07 13:35 - 00000000 ____D () C:\Users\Tereza\Downloads\Dominion S01E07 HDTV x264-KILLERS[ettv]
2014-08-07 11:07 - 2014-08-07 11:07 - 00012343 _____ () C:\Users\Tereza\Downloads\teen-wolf-s04e07-hdtv-x264-2hd-31398085.zip
2014-08-07 10:38 - 2014-08-07 11:08 - 00000000 ____D () C:\Users\Tereza\Downloads\Teen Wolf S04E07 HDTV x264-2HD[ettv]
2014-07-30 18:29 - 2014-07-30 19:18 - 00000000 ____D () C:\Users\Tereza\Downloads\Teen Wolf S04E06 HDTV x264-ASAP[ettv]
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-08-29 10:18 - 2014-08-29 10:14 - 00030615 _____ () C:\Users\Tereza\Desktop\FRST.txt
2014-08-29 10:18 - 2012-11-03 20:46 - 00000952 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-08-29 10:16 - 2012-08-07 08:14 - 01370631 _____ () C:\windows\WindowsUpdate.log
2014-08-29 10:15 - 2014-02-22 13:37 - 00000000 ____D () C:\FRST
2014-08-29 10:13 - 2014-08-29 10:13 - 00000000 ____D () C:\Users\Tereza\Desktop\FRST-OlderVersion
2014-08-29 10:13 - 2014-02-22 13:29 - 02103296 _____ (Farbar) C:\Users\Tereza\Desktop\FRST64.exe
2014-08-29 10:10 - 2009-07-14 06:45 - 00028576 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-08-29 10:10 - 2009-07-14 06:45 - 00028576 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-08-29 10:09 - 2014-08-22 22:09 - 00003192 _____ () C:\windows\System32\Tasks\HPCeeScheduleForTereza
2014-08-29 10:09 - 2014-08-22 22:09 - 00000336 _____ () C:\windows\Tasks\HPCeeScheduleForTereza.job
2014-08-29 10:02 - 2013-11-13 04:02 - 00918758 _____ () C:\windows\IE11_main.log
2014-08-29 09:56 - 2014-08-29 09:55 - 00000000 ____D () C:\c1d6dd87380185dabc0e
2014-08-29 09:54 - 2014-02-11 16:57 - 00000000 ____D () C:\Users\Tereza\AppData\Roaming\Seznam.cz
2014-08-29 09:53 - 2012-04-17 07:33 - 00000000 ____D () C:\ProgramData\PDFC
2014-08-29 09:51 - 2013-12-15 21:23 - 00000000 ____D () C:\Users\Tereza\AppData\Roaming\newnext.me
2014-08-29 09:50 - 2014-08-29 09:50 - 00000000 ____D () C:\Users\Tereza\AppData\Local\HP
2014-08-29 09:48 - 2014-07-16 09:26 - 00002146 _____ () C:\windows\Tasks\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-4.job
2014-08-29 09:48 - 2014-07-16 09:26 - 00001496 _____ () C:\windows\Tasks\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-1.job
2014-08-29 09:48 - 2014-07-16 09:26 - 00001406 _____ () C:\windows\Tasks\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-5_user.job
2014-08-29 09:48 - 2014-07-16 09:26 - 00001392 _____ () C:\windows\Tasks\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-5.job
2014-08-29 09:48 - 2014-07-16 09:26 - 00001292 _____ () C:\windows\Tasks\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-2.job
2014-08-29 09:48 - 2014-07-16 09:26 - 00001222 _____ () C:\windows\Tasks\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-10.job
2014-08-29 09:48 - 2014-07-16 09:25 - 00001496 _____ () C:\windows\Tasks\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-6.job
2014-08-29 09:48 - 2014-07-16 09:25 - 00001428 _____ () C:\windows\Tasks\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-7.job
2014-08-29 09:48 - 2014-07-16 09:25 - 00001410 _____ () C:\windows\Tasks\df8b5783-9078-491f-887a-27e02672ebc5-5_user.job
2014-08-29 09:48 - 2014-07-16 09:25 - 00001396 _____ () C:\windows\Tasks\df8b5783-9078-491f-887a-27e02672ebc5-5.job
2014-08-29 09:48 - 2014-07-16 09:25 - 00000572 _____ () C:\windows\Tasks\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-11.job
2014-08-29 09:48 - 2014-07-16 09:24 - 00002218 _____ () C:\windows\Tasks\df8b5783-9078-491f-887a-27e02672ebc5-4.job
2014-08-29 09:48 - 2014-07-16 09:24 - 00001500 _____ () C:\windows\Tasks\df8b5783-9078-491f-887a-27e02672ebc5-6.job
2014-08-29 09:48 - 2014-07-16 09:24 - 00001500 _____ () C:\windows\Tasks\df8b5783-9078-491f-887a-27e02672ebc5-1.job
2014-08-29 09:48 - 2014-07-16 09:24 - 00001432 _____ () C:\windows\Tasks\df8b5783-9078-491f-887a-27e02672ebc5-7.job
2014-08-29 09:48 - 2014-07-16 09:24 - 00001312 _____ () C:\windows\Tasks\df8b5783-9078-491f-887a-27e02672ebc5-2.job
2014-08-29 09:48 - 2014-07-16 09:23 - 00003798 _____ () C:\windows\Tasks\df8b5783-9078-491f-887a-27e02672ebc5-11.job
2014-08-29 09:48 - 2014-07-16 09:23 - 00002428 _____ () C:\windows\Tasks\df8b5783-9078-491f-887a-27e02672ebc5-3.job
2014-08-29 09:48 - 2014-07-16 09:23 - 00000924 _____ () C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2014-08-29 09:48 - 2013-06-08 15:22 - 00000350 _____ () C:\windows\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv.job
2014-08-29 09:48 - 2013-06-03 09:29 - 00000350 _____ () C:\windows\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job
2014-08-29 09:48 - 2012-11-03 20:46 - 00000948 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-08-29 09:48 - 2009-07-14 06:45 - 05120800 _____ () C:\windows\system32\FNTCACHE.DAT
2014-08-29 09:47 - 2014-01-08 15:16 - 00000000 ____D () C:\ProgramData\TorchCrashHandler
2014-08-29 09:47 - 2009-07-14 07:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-08-29 09:46 - 2009-07-14 06:51 - 00116639 _____ () C:\windows\setupact.log
2014-08-23 08:00 - 2012-04-17 06:18 - 03632346 _____ () C:\windows\system32\perfh005.dat
2014-08-23 08:00 - 2012-04-17 06:18 - 01174362 _____ () C:\windows\system32\perfc005.dat
2014-08-23 08:00 - 2009-07-14 07:13 - 00006540 _____ () C:\windows\system32\PerfStringBackup.INI
2014-08-23 07:44 - 2009-07-14 04:34 - 00000580 _____ () C:\windows\win.ini
2014-08-23 07:41 - 2014-07-16 09:23 - 00000928 _____ () C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2014-08-22 22:12 - 2013-12-15 21:23 - 00049096 _____ () C:\Users\Tereza\daemonprocess.txt
2014-08-22 21:35 - 2014-08-22 21:34 - 00429104 _____ () C:\Users\Tereza\Downloads\Nepotvrzeno 260759.crdownload
2014-08-22 21:34 - 2014-08-22 21:34 - 00429104 _____ () C:\Users\Tereza\Downloads\Tielle_St_Clare_[Werewolf_04]_Jackson_s_Rise_pdf_Full (1).exe
2014-08-22 21:30 - 2014-08-22 21:30 - 00186076 _____ () C:\Users\Tereza\Downloads\[St_Clare_Tielle]_Jackson's_Rise(BookSee.org) (2).rar
2014-08-22 21:30 - 2014-08-22 21:29 - 00429104 _____ () C:\Users\Tereza\Downloads\Tielle_St_Clare_[Werewolf_04]_Jackson_s_Rise_pdf_Full.exe
2014-08-22 21:29 - 2014-08-22 21:29 - 00186076 _____ () C:\Users\Tereza\Downloads\[St_Clare_Tielle]_Jackson's_Rise(BookSee.org) (1).rar
2014-08-22 21:27 - 2014-08-22 21:27 - 00186076 _____ () C:\Users\Tereza\Downloads\[St_Clare_Tielle]_Jackson's_Rise(BookSee.org).rar
2014-08-22 20:55 - 2014-08-22 20:55 - 00715740 _____ () C:\Users\Tereza\Downloads\Jackson s Rise Wolf s Heritage Book Four - Tielle St. Clare.exe
2014-08-22 20:48 - 2014-08-22 20:48 - 01139320 _____ (Zugara Investments Limited ) C:\Users\Tereza\Downloads\download-jacksons-rise-by-tielle-st-clare-kindle-ebook.exe
2014-08-22 20:35 - 2012-10-13 09:48 - 00003978 _____ () C:\windows\System32\Tasks\User_Feed_Synchronization-{62E21B0F-278C-4787-8D62-C3A8F9BC2B43}
2014-08-22 20:11 - 2014-08-22 20:11 - 00203003 _____ () C:\Users\Tereza\Desktop\jac.txt
2014-08-22 20:09 - 2014-08-22 20:09 - 00203003 _____ () C:\windows\system32\jac.txt
2014-08-22 14:46 - 2012-10-12 17:29 - 00000000 ____D () C:\Users\Tereza\AppData\Local\PDFC
2014-08-22 11:14 - 2009-07-14 07:08 - 00032548 _____ () C:\windows\Tasks\SCHEDLGU.TXT
2014-08-21 22:02 - 2014-02-17 20:00 - 00000000 ____D () C:\Users\Tereza\Downloads\Subs
2014-08-21 21:09 - 2014-08-21 20:14 - 481841315 _____ () C:\Users\Tereza\Downloads\Outlander.S01E02.HDTV.x264-ASAP.mp4
2014-08-21 19:34 - 2014-08-21 18:09 - 552321522 _____ () C:\Users\Tereza\Downloads\Outlander.S01E01.HDTV.x264-2HD.mp4
2014-08-21 18:05 - 2014-08-20 15:32 - 00000000 ____D () C:\Users\Tereza\Downloads\Teen Wolf S04E09 HDTV x264-ASAP[ettv]
2014-08-21 11:19 - 2014-08-21 11:19 - 00542160 _____ () C:\Users\Tereza\Downloads\Cole Kresley - 04 Nedostižný přízrak.txt
2014-08-20 23:08 - 2014-08-20 22:54 - 00000000 ____D () C:\Users\Tereza\Downloads\abbi glines
2014-08-20 22:15 - 2013-12-15 21:23 - 00000000 ____D () C:\Users\Tereza\AppData\Local\genienext
2014-08-20 18:47 - 2014-08-20 17:07 - 287712931 _____ () C:\Users\Tereza\Downloads\Witches.of.East.End.S02E05.HDTV.x264-KILLERS.mp4
2014-08-20 16:33 - 2014-08-20 16:33 - 00375474 _____ () C:\Users\Tereza\Downloads\Kiss of a Demon King - Kresley Cole.epub
2014-08-20 15:59 - 2014-08-20 15:58 - 00013624 _____ () C:\Users\Tereza\Downloads\[kickass.to]immortals.after.dark.kresley.cole (1).torrent
2014-08-20 15:58 - 2014-08-20 15:58 - 00013624 _____ () C:\Users\Tereza\Downloads\[kickass.to]immortals.after.dark.kresley.cole.torrent
2014-08-19 22:23 - 2014-08-19 22:22 - 00591094 _____ () C:\Users\Tereza\Downloads\Cole Kresley - 05 Temné touhy (1).txt
2014-08-19 18:53 - 2014-08-19 18:53 - 00650262 _____ () C:\Users\Tereza\Downloads\dare_you_to_mcgarry_katie.txt
2014-08-19 17:13 - 2012-10-24 16:47 - 00000000 ____D () C:\Users\Tereza\AppData\Local\CrashDumps
2014-08-19 16:56 - 2014-08-19 16:56 - 00591094 _____ () C:\Users\Tereza\Downloads\Cole Kresley - 05 Temné touhy.txt
2014-08-19 11:42 - 2014-07-16 09:27 - 00000000 ____D () C:\Program Files (x86)\focusbase
2014-08-18 22:07 - 2013-04-12 14:42 - 00000000 ____D () C:\Users\Tereza\Desktop\knihy
2014-08-18 22:04 - 2014-08-18 22:02 - 37801245 _____ () C:\Users\Tereza\Downloads\Novinky z 33. týdne 2014 1.rar
2014-08-17 14:51 - 2014-08-17 14:50 - 00279896 _____ () C:\windows\Minidump\081714-44912-01.dmp
2014-08-17 14:50 - 2012-12-22 11:15 - 513405954 _____ () C:\windows\MEMORY.DMP
2014-08-17 14:50 - 2012-12-22 11:15 - 00000000 ____D () C:\windows\Minidump
2014-08-16 12:12 - 2014-08-16 12:12 - 00730497 _____ () C:\Users\Tereza\Downloads\Arthur Keri 03 - Smyslne zlo.txt
2014-08-16 11:43 - 2014-08-16 11:42 - 02659169 _____ () C:\Users\Tereza\Downloads\Temne-touhy_Kresley-Cole.mobi
2014-08-15 15:28 - 2012-11-03 20:47 - 00002389 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-08-15 15:28 - 2012-11-03 20:47 - 00002389 _____ () C:\ProgramData\Desktop\Google Chrome.lnk
2014-08-15 13:59 - 2013-02-09 18:46 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-08-14 19:45 - 2012-11-18 12:05 - 00000000 ____D () C:\Program Files (x86)\rajce
2014-08-14 19:43 - 2013-12-15 21:23 - 00000000 ____D () C:\Users\Tereza\AppData\Local\Mobogenie
2014-08-14 17:22 - 2014-08-13 20:11 - 00000000 ____D () C:\Users\Tereza\Desktop\šumava 2014
2014-08-14 16:04 - 2014-08-14 15:49 - 00000000 ____D () C:\Users\Tereza\Desktop\prochajda
2014-08-14 10:20 - 2014-05-09 03:02 - 00000000 ___SD () C:\windows\system32\CompatTel
2014-08-13 23:10 - 2013-07-14 03:00 - 00000000 ____D () C:\windows\system32\MRT
2014-08-13 23:02 - 2012-10-21 10:39 - 99218768 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2014-08-13 22:49 - 2012-10-12 17:25 - 00000000 ____D () C:\Users\Tereza
2014-08-13 22:46 - 2014-08-13 10:31 - 00000000 ____D () C:\Users\Tereza\Downloads\Teen Wolf S04E08 HDTV x264-KILLERS[ettv]
2014-08-13 22:46 - 2014-08-13 10:07 - 00000000 ____D () C:\Users\Tereza\Downloads\[ www.torrenting.com ] - Dominion.S01E08.480p.HDTV.x264-mSD
2014-08-13 22:46 - 2012-10-18 15:01 - 00000000 ____D () C:\Users\Tereza\AppData\Local\WinZip
2014-08-13 22:46 - 2012-08-07 08:24 - 00000000 ____D () C:\ProgramData\Atheros
2014-08-13 22:46 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\registration
2014-08-13 21:15 - 2014-08-13 21:15 - 00000000 _____ () C:\Users\Tereza\AppData\Local\{402D5AAA-1A79-48DB-83F6-EB8349D658BE}
2014-08-13 10:32 - 2014-08-13 10:32 - 00026902 _____ () C:\Users\Tereza\Downloads\dominion-S01E08-hdtv-By-jeriska03-efvendy.zip
2014-08-11 20:28 - 2014-08-10 23:08 - 00000000 ____D () C:\Users\Tereza\Desktop\měsíc
2014-08-10 23:03 - 2014-08-10 23:03 - 00000000 ____D () C:\Users\Tereza\Desktop\Nová složka (8)
2014-08-07 13:35 - 2014-08-07 12:25 - 00000000 ____D () C:\Users\Tereza\Downloads\Dominion S01E07 HDTV x264-KILLERS[ettv]
2014-08-07 11:08 - 2014-08-07 10:38 - 00000000 ____D () C:\Users\Tereza\Downloads\Teen Wolf S04E07 HDTV x264-2HD[ettv]
2014-08-07 11:07 - 2014-08-07 11:07 - 00012343 _____ () C:\Users\Tereza\Downloads\teen-wolf-s04e07-hdtv-x264-2hd-31398085.zip
2014-08-07 04:06 - 2014-08-14 10:07 - 00529920 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-08-07 04:01 - 2014-08-14 10:07 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-08-05 09:20 - 2010-11-21 05:27 - 00270496 ____N (Microsoft Corporation) C:\windows\system32\MpSigStub.exe
2014-08-01 12:16 - 2014-07-29 18:02 - 00000000 ____D () C:\Users\Tereza\Downloads\Witches of East End S02E04 HDTV x264-ASAP[ettv]
2014-07-30 19:18 - 2014-07-30 18:29 - 00000000 ____D () C:\Users\Tereza\Downloads\Teen Wolf S04E06 HDTV x264-ASAP[ettv]
Some content of TEMP:
====================
C:\Users\Tereza\AppData\Local\Temp\ac3uftv5.dll
C:\Users\Tereza\AppData\Local\Temp\epwhtqp5.dll
C:\Users\Tereza\AppData\Local\Temp\Extract.exe
C:\Users\Tereza\AppData\Local\Temp\g2dmpq1j.dll
C:\Users\Tereza\AppData\Local\Temp\htmlayout.dll
C:\Users\Tereza\AppData\Local\Temp\nscD773.exe
C:\Users\Tereza\AppData\Local\Temp\nsh5E49.exe
C:\Users\Tereza\AppData\Local\Temp\nssD512.exe
C:\Users\Tereza\AppData\Local\Temp\nsx61B4.exe
C:\Users\Tereza\AppData\Local\Temp\pfrir8mu.dll
C:\Users\Tereza\AppData\Local\Temp\Quarantine.exe
C:\Users\Tereza\AppData\Local\Temp\rdm.exe
C:\Users\Tereza\AppData\Local\Temp\SP64316.exe
C:\Users\Tereza\AppData\Local\Temp\SP64639.exe
C:\Users\Tereza\AppData\Local\Temp\SP64676.exe
C:\Users\Tereza\AppData\Local\Temp\uninstall1390686.exe
C:\Users\Tereza\AppData\Local\Temp\uttEB9A.tmp.exe
C:\Users\Tereza\AppData\Local\Temp\zg8hmoi5.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\windows\Tasks\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-1.job => C:\Program Files (x86)\SavePass\SavePass-codedownloader.exe
Task: C:\windows\Tasks\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-10.job => C:\Program Files (x86)\SavePass\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-10.exe
Task: C:\windows\Tasks\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-11.job => C:\Program Files (x86)\SavePass\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-11.exe
Task: C:\windows\Tasks\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-2.job => C:\Program Files (x86)\SavePass\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-2.exe
Task: C:\windows\Tasks\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-4.job => C:\Program Files (x86)\SavePass\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-4.exe
Task: C:\windows\Tasks\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-5.job => C:\Program Files (x86)\SavePass\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-5.exe
Task: C:\windows\Tasks\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-5_user.job => C:\Program Files (x86)\SavePass\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-5.exe
Task: C:\windows\Tasks\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-6.job => C:\Program Files (x86)\SavePass\SavePass-novainstaller.exe
Task: C:\windows\Tasks\aa29d575-9bdd-4ab7-8fa5-3c3899760f89-7.job => C:\Program Files (x86)\SavePass\SavePass-nova.exe
Task: C:\windows\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv.job => C:\windows\TEMP\{E2BFA9A3-E796-4F59-B675-2A24FA861658}.exe
Task: C:\windows\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job => C:\windows\TEMP\{3EB2BB30-A582-48C6-831E-61A5FF806F61}.exe
Task: C:\windows\Tasks\df8b5783-9078-491f-887a-27e02672ebc5-1.job => C:\Program Files (x86)\P-HD-V1.4\P-HD-V1.4-codedownloader.exe <==== ATTENTION
Task: C:\windows\Tasks\df8b5783-9078-491f-887a-27e02672ebc5-11.job => C:\Program Files (x86)\P-HD-V1.4\df8b5783-9078-491f-887a-27e02672ebc5-11.exe <==== ATTENTION
Task: C:\windows\Tasks\df8b5783-9078-491f-887a-27e02672ebc5-2.job => C:\Program Files (x86)\P-HD-V1.4\df8b5783-9078-491f-887a-27e02672ebc5-2.exe <==== ATTENTION
Task: C:\windows\Tasks\df8b5783-9078-491f-887a-27e02672ebc5-3.job => C:\Program Files (x86)\P-HD-V1.4\df8b5783-9078-491f-887a-27e02672ebc5-3.exe <==== ATTENTION
Task: C:\windows\Tasks\df8b5783-9078-491f-887a-27e02672ebc5-4.job => C:\Program Files (x86)\P-HD-V1.4\df8b5783-9078-491f-887a-27e02672ebc5-4.exe <==== ATTENTION
Task: C:\windows\Tasks\df8b5783-9078-491f-887a-27e02672ebc5-5.job => C:\Program Files (x86)\P-HD-V1.4\df8b5783-9078-491f-887a-27e02672ebc5-5.exe <==== ATTENTION
Task: C:\windows\Tasks\df8b5783-9078-491f-887a-27e02672ebc5-5_user.job => C:\Program Files (x86)\P-HD-V1.4\df8b5783-9078-491f-887a-27e02672ebc5-5.exe <==== ATTENTION
Task: C:\windows\Tasks\df8b5783-9078-491f-887a-27e02672ebc5-6.job => C:\Program Files (x86)\P-HD-V1.4\P-HD-V1.4-novainstaller.exe <==== ATTENTION
Task: C:\windows\Tasks\df8b5783-9078-491f-887a-27e02672ebc5-7.job => C:\Program Files (x86)\P-HD-V1.4\P-HD-V1.4-nova.exe <==== ATTENTION
Task: C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForTereza.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Tereza\Desktop" je 95438 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000001
==================== End Of Log ==============================