Kamaradky pocitac
Napsal: 07 zář 2014 02:26
Snazim se pomoct dobre kamaradce ktera ma notas 6 let bez jakekoliv udrzby. Stroj zpracovava i jednoduche prikazy extremne pomalu, vytvoreni logu trvalo okolo 40 minut. Doufam ze bude mozne zachovat stavajici w7. Predem dekuji za vas cas.
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 06-09-2014
Ran by Aneta (administrator) on ANETA-HP on 07-09-2014 02:21:52
Running from C:\Users\Aneta\Desktop
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9b219d80a8843bf8\stacsv.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9b219d80a8843bf8\AEstSrv.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\VS7DEBUG\MDM.EXE
(PDF Complete Inc) C:\Program Files\PDF Complete\pdfsvc.exe
(Nuance Communications, Inc.) C:\Program Files\Nuance\PDF Professional 6\PDFProFiltSrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft\BingBar\SeaPort.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Gemfor s.r.o.) C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Opera Software) C:\Program Files\Opera\launcher.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Service.exe
() C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files\Hewlett-Packard\Shared\hpCaslNotification.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
() C:\Program Files\Opera\23.0.1522.75\opera_autoupdate.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Opera Software ASA) C:\Windows\Temp\CProgram FilesOpera\2592_10598\Opera_24.0.1558.53_Autoupdate.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [PDF Complete] => C:\Program Files\PDF Complete\pdfsty.exe [563736 2010-01-12] (PDF Complete Inc)
HKLM\...\Run: [WirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [499768 2009-09-01] (Hewlett-Packard)
HKLM\...\Run: [Nuance PDF Reader-reminder] => C:\Program Files\Nuance\PDF Reader\Ereg\Ereg.exe [328992 2008-11-03] (Nuance Communications, Inc.)
HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [35760 2010-09-23] (Adobe Systems Incorporated)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [932288 2010-09-21] (Adobe Systems Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM\...\Run: [SwitchBoard] => C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM\...\Run: [AdobeCS5ServiceManager] => C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM\...\runonceex: [ContentMerger] => c:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\ContentMerger10.exe [19952 2009-11-23] (Sonic Solutions)
HKU\.DEFAULT\...\RunOnce: [SPReview] => C:\windows\System32\SPReview\SPReview.exe [280576 2013-04-30] (Microsoft Corporation)
HKU\S-1-5-21-1423684537-3366557919-2078362510-1001\...\MountPoints2: D - D:\Autorun.exe
HKU\S-1-5-21-1423684537-3366557919-2078362510-1001\...\MountPoints2: E - E:\Autorun.exe
HKU\S-1-5-21-1423684537-3366557919-2078362510-1001\...\MountPoints2: {c1532683-111b-11e0-bb49-1cc1dea277d3} - D:\Autorun.exe
HKU\S-1-5-21-1423684537-3366557919-2078362510-1001\...\MountPoints2: {c1532693-111b-11e0-bb49-1cc1dea277d3} - D:\Autorun.exe
HKU\S-1-5-21-1423684537-3366557919-2078362510-1001\...\MountPoints2: {c15326ae-111b-11e0-bb49-1cc1dea277d3} - D:\Autorun.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk
ShortcutTarget: Adobe Gamma Loader.lnk -> C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.searchnu.com/410
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKCU - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={sear
SearchScopes: HKCU - {87F5EC5B-FC70-4E10-B892-9C8E31B8C9CE} URL = https://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = http://isearch.avg.com/search?cid={E896 ... 2012-03-25 21:02:18&v=15.2.0.5&pid=avg&sg=0&sap=dsp&q={searchTerms}
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKCU - {E639A6D7-3058-4421-841C-BC33C77183E1} URL = http://www.webhledani.cz/results.aspx?i ... earchTerms}
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: PlusIEEventHelper Class -> {551A852F-39A6-44A7-9C13-AFBEC9185A9D} -> C:\Program Files\Nuance\PDF Professional 6\Bin\PlusIEContextMenu.dll (Zeon Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: No Name -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> No File
BHO: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
BHO: ZeonIEEventHelper Class -> {DA986D7D-CCAF-47B2-84FE-BFA1549BEBF9} -> C:\Program Files\Nuance\PDF Professional 6\Bin\ZeonIEFavClient.dll (Zeon Corporation)
Toolbar: HKLM - Nuance PDF - {E3286BF1-E654-42FF-B4A6-5E111731DF6B} - C:\Program Files\Nuance\PDF Professional 6\Bin\ZeonIEFavClient.dll (Zeon Corporation)
Toolbar: HKLM - No Name - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File
Toolbar: HKLM - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Toolbar: HKCU - No Name - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File
Toolbar: HKCU - No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{26D5F57C-DA1F-2B15-918A-B0204B6FDB04}: [NameServer] 62.141.0.1 213.162.65.1
FireFox:
========
FF ProfilePath: C:\Users\Aneta\AppData\Roaming\Mozilla\Firefox\Profiles\o33jrr3s.default
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: ZEON/PDF,version=2.0 -> C:\Program Files\Nuance\PDF Reader\bin\nppdf.dll (Zeon Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npnul32.dll (mozilla.org)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFFICE.DLL (Microsoft Corporation)
FF SearchPlugin: C:\Users\Aneta\AppData\Roaming\Mozilla\Firefox\Profiles\o33jrr3s.default\searchplugins\Search_Results.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\mall-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\Search_Results.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\slunecnice-cz.xml
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2011-08-29]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2013-06-13]
FF Extension: PDF Converter 6.0 - C:\Program Files\Nuance\PDF Professional 6\FireFox [2010-12-26]
Chrome:
=======
CHR DefaultSearchKeyword: Default -> r
CHR DefaultSearchProvider: Default -> Search Results
CHR DefaultSearchURL: Default -> http://dts.search-results.com/sr?src=cr ... earchTerms}
CHR DefaultSuggestURL: Default ->
CHR CustomProfile: C:\Users\Aneta\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Skype Click to Call) - C:\Users\Aneta\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2013-09-07]
CHR Extension: (Peněženka Google) - C:\Users\Aneta\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-08]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-05-14]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 ameisvc; C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe [67312 2010-03-02] (Gemfor s.r.o.)
R2 HP Health Check Service; C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [120832 2009-10-15] (Hewlett-Packard) [File not signed]
R2 hpHotkeyMonitor; C:\Program Files\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [265272 2010-01-28] (Hewlett-Packard Company)
R2 LightScribeService; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [73728 2010-01-22] (Hewlett-Packard Company) [File not signed]
R2 pdfcDispatcher; C:\Program Files\PDF Complete\pdfsvc.exe [635416 2010-01-12] (PDF Complete Inc)
R2 PDFProFiltSrv; C:\Program Files\Nuance\PDF Professional 6\PDFProFiltSrv.exe [134944 2009-11-03] (Nuance Communications, Inc.)
R2 STacSV; C:\windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9b219d80a8843bf8\STacSV.exe [229458 2010-01-29] (IDT, Inc.)
S3 SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R3 SNP2UVC; C:\windows\System32\DRIVERS\snp2uvc.sys [1763968 2010-01-19] ()
U5 ewusbnet; C:\Windows\System32\Drivers\ewusbnet.sys [198656 2009-10-21] (Huawei Technologies Co., Ltd.)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-09-07 02:21 - 2014-09-07 02:57 - 00015100 _____ () C:\Users\Aneta\Desktop\FRST.txt
2014-09-07 02:17 - 2014-09-07 02:35 - 00000000 ____D () C:\FRST
2014-09-07 01:47 - 2014-09-07 01:43 - 01096704 _____ (Farbar) C:\Users\Aneta\Desktop\FRST.exe
2014-09-04 07:18 - 2014-09-06 00:27 - 00000000 ____D () C:\3590F75ABA9E485486C100C1A9D4FF06ZZZ..Z.....ZZZZZ
2014-08-30 19:20 - 2014-09-07 01:49 - 00000448 _____ () C:\windows\setupact.log
2014-08-30 19:20 - 2014-08-30 19:20 - 00000578 _____ () C:\windows\PFRO.log
2014-08-30 19:20 - 2014-08-30 19:20 - 00000000 _____ () C:\windows\setuperr.log
2014-08-30 11:35 - 2014-08-30 11:35 - 00000969 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-08-30 11:28 - 2014-08-30 11:35 - 00000000 ____D () C:\Program Files\CCleaner
2014-08-27 16:10 - 2014-08-27 16:10 - 00000000 ____D () C:\Users\Aneta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zařízení Bluetooth
2014-08-24 20:56 - 2014-08-24 20:56 - 00000000 ____H () C:\Users\Aneta\AppData\Local\BITF749.tmp
2014-08-24 20:56 - 2014-08-24 20:56 - 00000000 _____ () C:\Users\Aneta\AppData\Local\{159A3212-F7D4-4B2C-99FA-FC33075AB814}
2014-08-24 20:49 - 2014-08-24 20:49 - 00000000 ____H () C:\Users\Aneta\AppData\Local\BIT366A.tmp
2014-08-24 20:49 - 2014-08-24 20:49 - 00000000 _____ () C:\Users\Aneta\AppData\Local\{DB9A5EB8-4AD1-4E09-AA7E-D1F2F7D1230B}
2014-08-21 20:55 - 2014-08-21 20:56 - 00000000 ____D () C:\Users\Aneta\Desktop\AHS titulky
2014-08-19 22:00 - 2014-08-21 21:09 - 00000000 ____D () C:\Users\Aneta\Desktop\American Horror Story - Season 1 part 1
2014-08-19 21:54 - 2014-08-19 21:54 - 00744021 _____ () C:\Users\Aneta\Desktop\american-horror-story-1-rada-titulky-cz-sz.zip
2014-08-19 21:22 - 2014-08-19 21:23 - 00066913 _____ () C:\Users\Aneta\Downloads\bluescreenview (1).zip
2014-08-19 20:54 - 2014-08-21 20:49 - 00000000 ____D () C:\Users\Aneta\Desktop\Connie venku
2014-08-18 19:48 - 2014-07-23 10:52 - 00231584 ____N (Microsoft Corporation) C:\windows\system32\MpSigStub.exe
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-09-07 02:57 - 2014-09-07 02:21 - 00015100 _____ () C:\Users\Aneta\Desktop\FRST.txt
2014-09-07 02:56 - 2010-09-01 17:36 - 01781225 _____ () C:\windows\WindowsUpdate.log
2014-09-07 02:55 - 2014-05-16 19:48 - 00000000 ____D () C:\Program Files\Opera
2014-09-07 02:42 - 2013-03-03 23:46 - 00000938 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-09-07 02:41 - 2009-07-14 06:34 - 00019760 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-07 02:40 - 2009-07-14 06:34 - 00019760 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-07 02:35 - 2014-09-07 02:17 - 00000000 ____D () C:\FRST
2014-09-07 02:05 - 2013-03-03 23:46 - 00000934 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-09-07 01:58 - 2014-02-16 00:03 - 00000914 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-09-07 01:51 - 2013-06-10 22:07 - 00000350 _____ () C:\windows\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job
2014-09-07 01:49 - 2014-08-30 19:20 - 00000448 _____ () C:\windows\setupact.log
2014-09-07 01:49 - 2009-07-14 06:53 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-09-07 01:43 - 2014-09-07 01:47 - 01096704 _____ (Farbar) C:\Users\Aneta\Desktop\FRST.exe
2014-09-06 00:29 - 2012-10-03 19:43 - 00000000 ____D () C:\Program Files\Free mp3 Wma Converter
2014-09-06 00:27 - 2014-09-04 07:18 - 00000000 ____D () C:\3590F75ABA9E485486C100C1A9D4FF06ZZZ..Z.....ZZZZZ
2014-09-05 23:25 - 2009-07-14 06:53 - 00032558 _____ () C:\windows\Tasks\SCHEDLGU.TXT
2014-08-30 19:43 - 2011-02-18 21:32 - 00000000 ____D () C:\Users\Aneta\AppData\Roaming\Skype
2014-08-30 19:20 - 2014-08-30 19:20 - 00000578 _____ () C:\windows\PFRO.log
2014-08-30 19:20 - 2014-08-30 19:20 - 00000000 _____ () C:\windows\setuperr.log
2014-08-30 18:57 - 2009-07-14 04:37 - 00000000 ____D () C:\windows\rescache
2014-08-30 18:56 - 2012-10-13 19:21 - 00000000 ____D () C:\Users\Aneta\AppData\Local\CrashDumps
2014-08-30 18:56 - 2012-07-11 23:01 - 00000000 ____D () C:\windows\Minidump
2014-08-30 18:56 - 2009-07-27 10:31 - 00000000 ____D () C:\windows\Panther
2014-08-30 11:35 - 2014-08-30 11:35 - 00000969 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-08-30 11:35 - 2014-08-30 11:28 - 00000000 ____D () C:\Program Files\CCleaner
2014-08-29 18:08 - 2010-03-27 04:50 - 00930482 _____ () C:\windows\system32\PerfStringBackup.INI
2014-08-27 16:10 - 2014-08-27 16:10 - 00000000 ____D () C:\Users\Aneta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zařízení Bluetooth
2014-08-24 20:56 - 2014-08-24 20:56 - 00000000 ____H () C:\Users\Aneta\AppData\Local\BITF749.tmp
2014-08-24 20:56 - 2014-08-24 20:56 - 00000000 _____ () C:\Users\Aneta\AppData\Local\{159A3212-F7D4-4B2C-99FA-FC33075AB814}
2014-08-24 20:49 - 2014-08-24 20:49 - 00000000 ____H () C:\Users\Aneta\AppData\Local\BIT366A.tmp
2014-08-24 20:49 - 2014-08-24 20:49 - 00000000 _____ () C:\Users\Aneta\AppData\Local\{DB9A5EB8-4AD1-4E09-AA7E-D1F2F7D1230B}
2014-08-21 21:09 - 2014-08-19 22:00 - 00000000 ____D () C:\Users\Aneta\Desktop\American Horror Story - Season 1 part 1
2014-08-21 20:56 - 2014-08-21 20:55 - 00000000 ____D () C:\Users\Aneta\Desktop\AHS titulky
2014-08-21 20:56 - 2013-07-20 21:21 - 00000000 ____D () C:\windows\system32\MRT
2014-08-21 20:53 - 2010-12-26 17:10 - 93585272 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2014-08-21 20:49 - 2014-08-19 20:54 - 00000000 ____D () C:\Users\Aneta\Desktop\Connie venku
2014-08-19 21:54 - 2014-08-19 21:54 - 00744021 _____ () C:\Users\Aneta\Desktop\american-horror-story-1-rada-titulky-cz-sz.zip
2014-08-19 21:23 - 2014-08-19 21:22 - 00066913 _____ () C:\Users\Aneta\Downloads\bluescreenview (1).zip
2014-08-19 05:17 - 2010-12-26 12:57 - 00125208 _____ () C:\Users\Aneta\AppData\Local\GDIPFONTCACHEV1.DAT
2014-08-19 05:17 - 2010-12-26 12:53 - 00000000 ____D () C:\Users\Aneta
2014-08-19 05:17 - 2009-07-14 06:33 - 01849104 _____ () C:\windows\system32\FNTCACHE.DAT
2014-08-18 19:58 - 2014-02-16 00:03 - 00699056 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerApp.exe
2014-08-18 19:58 - 2014-02-16 00:03 - 00071344 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerCPLApp.cpl
2014-08-18 19:54 - 2013-12-15 23:20 - 00002129 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\windows\explorer.exe => File is digitally signed
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-08-30 18:48
==================== End Of Log ============================
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 06-09-2014
Ran by Aneta (administrator) on ANETA-HP on 07-09-2014 02:21:52
Running from C:\Users\Aneta\Desktop
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9b219d80a8843bf8\stacsv.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9b219d80a8843bf8\AEstSrv.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\VS7DEBUG\MDM.EXE
(PDF Complete Inc) C:\Program Files\PDF Complete\pdfsvc.exe
(Nuance Communications, Inc.) C:\Program Files\Nuance\PDF Professional 6\PDFProFiltSrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft\BingBar\SeaPort.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Gemfor s.r.o.) C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Opera Software) C:\Program Files\Opera\launcher.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Service.exe
() C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files\Hewlett-Packard\Shared\hpCaslNotification.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
() C:\Program Files\Opera\23.0.1522.75\opera_autoupdate.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Opera Software ASA) C:\Windows\Temp\CProgram FilesOpera\2592_10598\Opera_24.0.1558.53_Autoupdate.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [PDF Complete] => C:\Program Files\PDF Complete\pdfsty.exe [563736 2010-01-12] (PDF Complete Inc)
HKLM\...\Run: [WirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [499768 2009-09-01] (Hewlett-Packard)
HKLM\...\Run: [Nuance PDF Reader-reminder] => C:\Program Files\Nuance\PDF Reader\Ereg\Ereg.exe [328992 2008-11-03] (Nuance Communications, Inc.)
HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [35760 2010-09-23] (Adobe Systems Incorporated)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [932288 2010-09-21] (Adobe Systems Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM\...\Run: [SwitchBoard] => C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM\...\Run: [AdobeCS5ServiceManager] => C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM\...\runonceex: [ContentMerger] => c:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\ContentMerger10.exe [19952 2009-11-23] (Sonic Solutions)
HKU\.DEFAULT\...\RunOnce: [SPReview] => C:\windows\System32\SPReview\SPReview.exe [280576 2013-04-30] (Microsoft Corporation)
HKU\S-1-5-21-1423684537-3366557919-2078362510-1001\...\MountPoints2: D - D:\Autorun.exe
HKU\S-1-5-21-1423684537-3366557919-2078362510-1001\...\MountPoints2: E - E:\Autorun.exe
HKU\S-1-5-21-1423684537-3366557919-2078362510-1001\...\MountPoints2: {c1532683-111b-11e0-bb49-1cc1dea277d3} - D:\Autorun.exe
HKU\S-1-5-21-1423684537-3366557919-2078362510-1001\...\MountPoints2: {c1532693-111b-11e0-bb49-1cc1dea277d3} - D:\Autorun.exe
HKU\S-1-5-21-1423684537-3366557919-2078362510-1001\...\MountPoints2: {c15326ae-111b-11e0-bb49-1cc1dea277d3} - D:\Autorun.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk
ShortcutTarget: Adobe Gamma Loader.lnk -> C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.searchnu.com/410
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKCU - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={sear
SearchScopes: HKCU - {87F5EC5B-FC70-4E10-B892-9C8E31B8C9CE} URL = https://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = http://isearch.avg.com/search?cid={E896 ... 2012-03-25 21:02:18&v=15.2.0.5&pid=avg&sg=0&sap=dsp&q={searchTerms}
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKCU - {E639A6D7-3058-4421-841C-BC33C77183E1} URL = http://www.webhledani.cz/results.aspx?i ... earchTerms}
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: PlusIEEventHelper Class -> {551A852F-39A6-44A7-9C13-AFBEC9185A9D} -> C:\Program Files\Nuance\PDF Professional 6\Bin\PlusIEContextMenu.dll (Zeon Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: No Name -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> No File
BHO: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
BHO: ZeonIEEventHelper Class -> {DA986D7D-CCAF-47B2-84FE-BFA1549BEBF9} -> C:\Program Files\Nuance\PDF Professional 6\Bin\ZeonIEFavClient.dll (Zeon Corporation)
Toolbar: HKLM - Nuance PDF - {E3286BF1-E654-42FF-B4A6-5E111731DF6B} - C:\Program Files\Nuance\PDF Professional 6\Bin\ZeonIEFavClient.dll (Zeon Corporation)
Toolbar: HKLM - No Name - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File
Toolbar: HKLM - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Toolbar: HKCU - No Name - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File
Toolbar: HKCU - No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{26D5F57C-DA1F-2B15-918A-B0204B6FDB04}: [NameServer] 62.141.0.1 213.162.65.1
FireFox:
========
FF ProfilePath: C:\Users\Aneta\AppData\Roaming\Mozilla\Firefox\Profiles\o33jrr3s.default
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: ZEON/PDF,version=2.0 -> C:\Program Files\Nuance\PDF Reader\bin\nppdf.dll (Zeon Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npnul32.dll (mozilla.org)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFFICE.DLL (Microsoft Corporation)
FF SearchPlugin: C:\Users\Aneta\AppData\Roaming\Mozilla\Firefox\Profiles\o33jrr3s.default\searchplugins\Search_Results.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\mall-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\Search_Results.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\slunecnice-cz.xml
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2011-08-29]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2013-06-13]
FF Extension: PDF Converter 6.0 - C:\Program Files\Nuance\PDF Professional 6\FireFox [2010-12-26]
Chrome:
=======
CHR DefaultSearchKeyword: Default -> r
CHR DefaultSearchProvider: Default -> Search Results
CHR DefaultSearchURL: Default -> http://dts.search-results.com/sr?src=cr ... earchTerms}
CHR DefaultSuggestURL: Default ->
CHR CustomProfile: C:\Users\Aneta\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Skype Click to Call) - C:\Users\Aneta\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2013-09-07]
CHR Extension: (Peněženka Google) - C:\Users\Aneta\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-08]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-05-14]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 ameisvc; C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe [67312 2010-03-02] (Gemfor s.r.o.)
R2 HP Health Check Service; C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [120832 2009-10-15] (Hewlett-Packard) [File not signed]
R2 hpHotkeyMonitor; C:\Program Files\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [265272 2010-01-28] (Hewlett-Packard Company)
R2 LightScribeService; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [73728 2010-01-22] (Hewlett-Packard Company) [File not signed]
R2 pdfcDispatcher; C:\Program Files\PDF Complete\pdfsvc.exe [635416 2010-01-12] (PDF Complete Inc)
R2 PDFProFiltSrv; C:\Program Files\Nuance\PDF Professional 6\PDFProFiltSrv.exe [134944 2009-11-03] (Nuance Communications, Inc.)
R2 STacSV; C:\windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9b219d80a8843bf8\STacSV.exe [229458 2010-01-29] (IDT, Inc.)
S3 SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R3 SNP2UVC; C:\windows\System32\DRIVERS\snp2uvc.sys [1763968 2010-01-19] ()
U5 ewusbnet; C:\Windows\System32\Drivers\ewusbnet.sys [198656 2009-10-21] (Huawei Technologies Co., Ltd.)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-09-07 02:21 - 2014-09-07 02:57 - 00015100 _____ () C:\Users\Aneta\Desktop\FRST.txt
2014-09-07 02:17 - 2014-09-07 02:35 - 00000000 ____D () C:\FRST
2014-09-07 01:47 - 2014-09-07 01:43 - 01096704 _____ (Farbar) C:\Users\Aneta\Desktop\FRST.exe
2014-09-04 07:18 - 2014-09-06 00:27 - 00000000 ____D () C:\3590F75ABA9E485486C100C1A9D4FF06ZZZ..Z.....ZZZZZ
2014-08-30 19:20 - 2014-09-07 01:49 - 00000448 _____ () C:\windows\setupact.log
2014-08-30 19:20 - 2014-08-30 19:20 - 00000578 _____ () C:\windows\PFRO.log
2014-08-30 19:20 - 2014-08-30 19:20 - 00000000 _____ () C:\windows\setuperr.log
2014-08-30 11:35 - 2014-08-30 11:35 - 00000969 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-08-30 11:28 - 2014-08-30 11:35 - 00000000 ____D () C:\Program Files\CCleaner
2014-08-27 16:10 - 2014-08-27 16:10 - 00000000 ____D () C:\Users\Aneta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zařízení Bluetooth
2014-08-24 20:56 - 2014-08-24 20:56 - 00000000 ____H () C:\Users\Aneta\AppData\Local\BITF749.tmp
2014-08-24 20:56 - 2014-08-24 20:56 - 00000000 _____ () C:\Users\Aneta\AppData\Local\{159A3212-F7D4-4B2C-99FA-FC33075AB814}
2014-08-24 20:49 - 2014-08-24 20:49 - 00000000 ____H () C:\Users\Aneta\AppData\Local\BIT366A.tmp
2014-08-24 20:49 - 2014-08-24 20:49 - 00000000 _____ () C:\Users\Aneta\AppData\Local\{DB9A5EB8-4AD1-4E09-AA7E-D1F2F7D1230B}
2014-08-21 20:55 - 2014-08-21 20:56 - 00000000 ____D () C:\Users\Aneta\Desktop\AHS titulky
2014-08-19 22:00 - 2014-08-21 21:09 - 00000000 ____D () C:\Users\Aneta\Desktop\American Horror Story - Season 1 part 1
2014-08-19 21:54 - 2014-08-19 21:54 - 00744021 _____ () C:\Users\Aneta\Desktop\american-horror-story-1-rada-titulky-cz-sz.zip
2014-08-19 21:22 - 2014-08-19 21:23 - 00066913 _____ () C:\Users\Aneta\Downloads\bluescreenview (1).zip
2014-08-19 20:54 - 2014-08-21 20:49 - 00000000 ____D () C:\Users\Aneta\Desktop\Connie venku
2014-08-18 19:48 - 2014-07-23 10:52 - 00231584 ____N (Microsoft Corporation) C:\windows\system32\MpSigStub.exe
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-09-07 02:57 - 2014-09-07 02:21 - 00015100 _____ () C:\Users\Aneta\Desktop\FRST.txt
2014-09-07 02:56 - 2010-09-01 17:36 - 01781225 _____ () C:\windows\WindowsUpdate.log
2014-09-07 02:55 - 2014-05-16 19:48 - 00000000 ____D () C:\Program Files\Opera
2014-09-07 02:42 - 2013-03-03 23:46 - 00000938 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-09-07 02:41 - 2009-07-14 06:34 - 00019760 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-07 02:40 - 2009-07-14 06:34 - 00019760 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-07 02:35 - 2014-09-07 02:17 - 00000000 ____D () C:\FRST
2014-09-07 02:05 - 2013-03-03 23:46 - 00000934 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-09-07 01:58 - 2014-02-16 00:03 - 00000914 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-09-07 01:51 - 2013-06-10 22:07 - 00000350 _____ () C:\windows\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job
2014-09-07 01:49 - 2014-08-30 19:20 - 00000448 _____ () C:\windows\setupact.log
2014-09-07 01:49 - 2009-07-14 06:53 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-09-07 01:43 - 2014-09-07 01:47 - 01096704 _____ (Farbar) C:\Users\Aneta\Desktop\FRST.exe
2014-09-06 00:29 - 2012-10-03 19:43 - 00000000 ____D () C:\Program Files\Free mp3 Wma Converter
2014-09-06 00:27 - 2014-09-04 07:18 - 00000000 ____D () C:\3590F75ABA9E485486C100C1A9D4FF06ZZZ..Z.....ZZZZZ
2014-09-05 23:25 - 2009-07-14 06:53 - 00032558 _____ () C:\windows\Tasks\SCHEDLGU.TXT
2014-08-30 19:43 - 2011-02-18 21:32 - 00000000 ____D () C:\Users\Aneta\AppData\Roaming\Skype
2014-08-30 19:20 - 2014-08-30 19:20 - 00000578 _____ () C:\windows\PFRO.log
2014-08-30 19:20 - 2014-08-30 19:20 - 00000000 _____ () C:\windows\setuperr.log
2014-08-30 18:57 - 2009-07-14 04:37 - 00000000 ____D () C:\windows\rescache
2014-08-30 18:56 - 2012-10-13 19:21 - 00000000 ____D () C:\Users\Aneta\AppData\Local\CrashDumps
2014-08-30 18:56 - 2012-07-11 23:01 - 00000000 ____D () C:\windows\Minidump
2014-08-30 18:56 - 2009-07-27 10:31 - 00000000 ____D () C:\windows\Panther
2014-08-30 11:35 - 2014-08-30 11:35 - 00000969 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-08-30 11:35 - 2014-08-30 11:28 - 00000000 ____D () C:\Program Files\CCleaner
2014-08-29 18:08 - 2010-03-27 04:50 - 00930482 _____ () C:\windows\system32\PerfStringBackup.INI
2014-08-27 16:10 - 2014-08-27 16:10 - 00000000 ____D () C:\Users\Aneta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zařízení Bluetooth
2014-08-24 20:56 - 2014-08-24 20:56 - 00000000 ____H () C:\Users\Aneta\AppData\Local\BITF749.tmp
2014-08-24 20:56 - 2014-08-24 20:56 - 00000000 _____ () C:\Users\Aneta\AppData\Local\{159A3212-F7D4-4B2C-99FA-FC33075AB814}
2014-08-24 20:49 - 2014-08-24 20:49 - 00000000 ____H () C:\Users\Aneta\AppData\Local\BIT366A.tmp
2014-08-24 20:49 - 2014-08-24 20:49 - 00000000 _____ () C:\Users\Aneta\AppData\Local\{DB9A5EB8-4AD1-4E09-AA7E-D1F2F7D1230B}
2014-08-21 21:09 - 2014-08-19 22:00 - 00000000 ____D () C:\Users\Aneta\Desktop\American Horror Story - Season 1 part 1
2014-08-21 20:56 - 2014-08-21 20:55 - 00000000 ____D () C:\Users\Aneta\Desktop\AHS titulky
2014-08-21 20:56 - 2013-07-20 21:21 - 00000000 ____D () C:\windows\system32\MRT
2014-08-21 20:53 - 2010-12-26 17:10 - 93585272 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2014-08-21 20:49 - 2014-08-19 20:54 - 00000000 ____D () C:\Users\Aneta\Desktop\Connie venku
2014-08-19 21:54 - 2014-08-19 21:54 - 00744021 _____ () C:\Users\Aneta\Desktop\american-horror-story-1-rada-titulky-cz-sz.zip
2014-08-19 21:23 - 2014-08-19 21:22 - 00066913 _____ () C:\Users\Aneta\Downloads\bluescreenview (1).zip
2014-08-19 05:17 - 2010-12-26 12:57 - 00125208 _____ () C:\Users\Aneta\AppData\Local\GDIPFONTCACHEV1.DAT
2014-08-19 05:17 - 2010-12-26 12:53 - 00000000 ____D () C:\Users\Aneta
2014-08-19 05:17 - 2009-07-14 06:33 - 01849104 _____ () C:\windows\system32\FNTCACHE.DAT
2014-08-18 19:58 - 2014-02-16 00:03 - 00699056 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerApp.exe
2014-08-18 19:58 - 2014-02-16 00:03 - 00071344 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerCPLApp.cpl
2014-08-18 19:54 - 2013-12-15 23:20 - 00002129 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\windows\explorer.exe => File is digitally signed
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-08-30 18:48
==================== End Of Log ============================