Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
LecoQ
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 19 zář 2014 20:18

Prosím o kontrolu logu

#1 Příspěvek od LecoQ »

Zdravím, dlouhou dobu jsem používal ASC 7, dozvěděl jsem se, jakej je to hajzl a možná díky němu mám rapidní snížení výkonu.

zde je log, prosím o kontrolu

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-09-2014
Ran by Ondra (administrator) on ONDRA-PC on 19-09-2014 21:12:51
Running from C:\Users\Ondra\Desktop
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(BitTorrent Inc.) C:\Users\Ondra\AppData\Roaming\BitTorrent\BitTorrent.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Realtek) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtlService.exe
(Realtek Semiconductor Corp.) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtWLan.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
() C:\Program Files (x86)\Opera\24.0.1558.61\opera_crashreporter.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Microsoft Corporation) C:\Windows\System32\audiodg.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(forum.viry.cz) C:\Users\Ondra\Downloads\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-07-31] (AVAST Software)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\.DEFAULT\...\RunOnce: [SpUninstallDeleteDir] => rmdir /s /q "\SearchProtect"
HKU\S-1-5-21-3021103483-654499671-1049248257-1000\...\Run: [BitTorrent] => C:\Users\Ondra\AppData\Roaming\BitTorrent\BitTorrent.exe [1417048 2014-09-19] (BitTorrent Inc.)
HKU\S-1-5-21-3021103483-654499671-1049248257-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-3021103483-654499671-1049248257-1000\...\MountPoints2: {b5e37a76-77b6-11e3-be75-001c231b1ffb} - E:\_AUTORUN\AUTORUN.EXE
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?ocid=iehp
SearchScopes: HKLM - {363B01D3-7E6F-43D2-8DEA-85993497B576} URL =
SearchScopes: HKLM-x32 - DefaultScope {363B01D3-7E6F-43D2-8DEA-85993497B576} URL =
SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL =
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www.max-start.com/?q={searchTerm ... 5&tsp=5246
SearchScopes: HKCU - {363B01D3-7E6F-43D2-8DEA-85993497B576} URL = http://search.conduit.com/ResultsExt.as ... 25220&UM=2
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení k účtu Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Advanced SystemCare Browser Protection -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit)
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.4.0.1

FireFox:
========
FF ProfilePath: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\hiufmblb.default
FF SelectedSearchEngine: Google
FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_235.dll ()
FF Plugin-x32: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Ondra\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\NPOFF12.DLL (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-04-11]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-01-07]
FF Extension: No Name - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\hiufmblb.default\extensions\ascsurfingprotection@iobit.com [Not Found]
FF Extension: No Name - C:\Program Files (x86)\IObit Apps Toolbar\FF [Not Found]

Chrome:
=======
CHR HKCU\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\Ondra\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx [2014-08-29]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-18]
CHR HKLM-x32\...\Chrome\Extension: [pfmopbbadnfoelckkcmjjeaaegjpjjbk] - C:\Program Files (x86)\Gophoto.it\gophotoit16.crx [2013-08-08]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-18] (AVAST Software)
S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-08-03] (globalUpdate) [File not signed]
S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-08-03] (globalUpdate) [File not signed]
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [File not signed]
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2152736 2014-05-04] (IObit)
S2 ProtectMonitor; C:\Program Files\PCDApp\StartHelp.exe [97008 2014-04-10] () [File not signed]
R2 Realtek11nCU; C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtlService.exe [36864 2010-04-16] (Realtek) [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-21] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-07-18] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-07-18] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-07-18] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-07-18] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-07-18] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-07-18] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-07-18] (AVAST Software)
S3 aswTap; C:\Windows\System32\DRIVERS\aswTap.sys [44640 2014-01-07] (The OpenVPN Project)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-07-18] ()
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2014-01-10] ()
S3 cpudrv64; C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys [17864 2011-06-02] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-01-07] (Disc Soft Ltd)
R3 guardian2; C:\Windows\System32\Drivers\oz776x64.sys [87696 2014-06-06] (O2Micro)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2014-01-10] ()
S3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [748648 2010-06-15] (Realtek Semiconductor Corporation )
R3 RtlWlanu; C:\Windows\System32\DRIVERS\rtwlanu.sys [2976472 2014-06-06] (Realtek Semiconductor Corporation )
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [381440 2014-02-13] (Duplex Secure Ltd.)
R1 {3f538614-b636-4023-9ec2-564ada4b07b3}w64; C:\Windows\System32\drivers\{3f538614-b636-4023-9ec2-564ada4b07b3}w64.sys [61112 2014-06-27] (StdLib)
R1 {587cb346-a3d8-4884-b39b-f0ed918b6f96}w64; C:\Windows\System32\drivers\{587cb346-a3d8-4884-b39b-f0ed918b6f96}w64.sys [61120 2014-04-24] (StdLib)
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S2 SVKP; \??\C:\Windows\system32\SVKP.sys [X]
S3 WinRing0_1_2_0; \??\C:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-19 21:07 - 2014-09-19 21:07 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Downloads\trz260C.tmp
2014-09-19 21:07 - 2014-09-19 21:07 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Downloads\FRSTLauncher.exe
2014-09-19 21:06 - 2014-09-19 21:07 - 02105856 _____ (Farbar) C:\Users\Ondra\Downloads\FRST64.exe
2014-09-19 21:05 - 2014-09-19 20:59 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Desktop\trzA152.tmp
2014-09-19 21:01 - 2014-09-19 21:13 - 00016501 _____ () C:\Users\Ondra\Desktop\FRST.txt
2014-09-19 21:00 - 2014-09-19 21:12 - 00000000 ____D () C:\FRST
2014-09-19 20:59 - 2014-09-19 20:59 - 02105856 _____ (Farbar) C:\Users\Ondra\Desktop\FRST64.exe
2014-09-19 20:58 - 2014-09-19 20:57 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Desktop\trz3343.tmp
2014-09-19 20:56 - 2014-09-19 20:56 - 00080736 _____ () C:\Users\Ondra\Downloads\trz3C47.tmp
2014-09-19 18:34 - 2014-09-19 18:35 - 00278208 _____ () C:\Windows\Minidump\091914-30685-01.dmp
2014-09-19 18:34 - 2014-09-19 18:34 - 1212481607 _____ () C:\Windows\MEMORY.DMP
2014-09-19 17:18 - 2014-09-19 18:50 - 00000000 ____D () C:\Users\Ondra\Desktop\2014 bordel
2014-09-19 16:12 - 2014-09-19 16:13 - 03249480 _____ (Unity Technologies ApS) C:\Users\Ondra\Downloads\UnityWebPlayer.exe
2014-09-18 19:34 - 2014-09-18 19:34 - 00002165 _____ () C:\Users\Ondra\Desktop\Heroes of Might and Magic® IV.lnk
2014-09-18 19:34 - 2014-09-18 19:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\3DO
2014-09-18 19:33 - 2014-09-18 19:33 - 00000000 ____D () C:\Program Files (x86)\3DO
2014-09-18 17:03 - 2014-09-18 17:04 - 00000000 ____D () C:\Users\Ondra\Downloads\Heroes IV Complete
2014-09-18 17:01 - 2014-09-18 17:01 - 00011373 _____ () C:\Users\Ondra\Downloads\[CzT]Heroes_of_Might_and_Magic_IV_Complete_CZ_version (1).torrent
2014-09-18 17:01 - 2014-09-18 17:01 - 00011372 _____ () C:\Users\Ondra\Downloads\[CzT]Heroes_of_Might_and_Magic_IV_Complete_CZ_version.torrent
2014-09-18 11:32 - 2014-09-18 11:33 - 113591962 _____ () C:\Users\Ondra\Documents\Student magic.wav
2014-09-18 10:37 - 2014-09-18 10:37 - 00000000 ____D () C:\Users\Ondra\Documents\GTA Vice City User Files
2014-09-18 10:26 - 2014-09-18 10:26 - 00000000 ____D () C:\Program Files (x86)\Rockstar Games
2014-09-18 10:22 - 2010-11-09 13:06 - 00000000 ____D () C:\Users\Ondra\Downloads\GTA Vice City
2014-09-18 08:28 - 2014-09-18 09:10 - 1467198962 ____R () C:\Users\Ondra\Downloads\GTA Vice City.rar
2014-09-18 08:28 - 2014-09-18 08:28 - 00014540 _____ () C:\Users\Ondra\Downloads\[CzT]Grand_Theft_Auto_GTA_Vice_City_2003_CZ_.torrent
2014-09-17 19:00 - 2014-09-17 19:00 - 02680104 _____ () C:\Users\Ondra\Downloads\lips_brush_39752.zip
2014-09-17 16:01 - 2014-09-19 18:35 - 00000280 _____ () C:\Windows\setupact.log
2014-09-17 16:01 - 2014-09-17 16:01 - 00000584 _____ () C:\Windows\PFRO.log
2014-09-17 16:01 - 2014-09-17 16:01 - 00000000 _____ () C:\Windows\setuperr.log
2014-09-14 16:09 - 2014-09-14 16:09 - 00001317 _____ () C:\Users\Public\Desktop\Ashampoo Burning Studio 6 FREE.lnk
2014-09-14 16:09 - 2014-09-14 16:09 - 00000214 _____ () C:\Users\Public\Desktop\Your Software Deals.url
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Users\Ondra\AppData\Local\ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\ProgramData\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Program Files (x86)\Ashampoo
2014-09-14 15:56 - 2014-09-14 16:02 - 12891208 _____ (Ashampoo GmbH & Co. KG ) C:\Users\Ondra\Downloads\ashampoo_burning_studio_6_free_6.84_13471.exe
2014-09-14 15:51 - 2014-09-14 15:51 - 00001239 _____ () C:\Users\Ondra\Desktop\DVDVideoSoft Free Studio.lnk
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\Users\Ondra\Documents\DVDVideoSoft
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft
2014-09-14 15:43 - 2014-09-14 15:50 - 08152757 _____ (DVDVideoSoft Limited. ) C:\Users\Ondra\Downloads\FreeDVDVideoBurner.exe
2014-09-14 15:33 - 2014-09-14 21:36 - 00391084 _____ () C:\Users\Ondra\Documents\Betlémy.XtoDVD
2014-09-14 15:29 - 2014-09-14 15:29 - 00000000 ____D () C:\ProgramData\vsosdk
2014-09-14 14:15 - 2014-09-14 16:31 - 00000000 ____D () C:\Users\Ondra\Documents\ConvertXtoDVD
2014-09-14 12:08 - 2014-09-16 22:09 - 00000000 ____D () C:\Users\Ondra\Documents\PcSetup
2014-09-14 12:08 - 2014-09-14 12:08 - 00099384 _____ () C:\Users\Ondra\AppData\Roaming\inst.exe
2014-09-14 12:08 - 2014-09-14 12:08 - 00082816 _____ (VSO Software) C:\Users\Ondra\AppData\Roaming\pcouffin.sys
2014-09-14 12:08 - 2014-09-14 12:08 - 00007859 _____ () C:\Users\Ondra\AppData\Roaming\pcouffin.cat
2014-09-14 12:08 - 2014-09-14 12:08 - 00000055 _____ () C:\Users\Ondra\AppData\Roaming\pcouffin.log
2014-09-14 12:08 - 2014-09-14 12:08 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Vso
2014-09-14 12:07 - 2014-09-16 22:09 - 00000000 ____D () C:\ProgramData\VSO
2014-09-14 12:07 - 2014-09-14 12:07 - 00001228 _____ () C:\Users\Ondra\Desktop\ConvertXToDVD 5.lnk
2014-09-14 12:07 - 2014-09-14 12:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VSO
2014-09-14 12:07 - 2014-09-14 12:07 - 00000000 ____D () C:\Program Files (x86)\VSO
2014-09-14 11:50 - 2014-09-14 12:03 - 00000000 ____D () C:\Users\Ondra\Downloads\VSO ConvertXtoDVD 5.2.0.13 Final
2014-09-14 11:49 - 2014-09-14 11:49 - 00018808 _____ () C:\Users\Ondra\Downloads\[CzT]VSO_ConvertXtoDVD_5_2_0_13_Final_CZ_EN_.torrent
2014-09-14 11:44 - 2014-09-14 11:45 - 00000000 ____D () C:\Users\Ondra\Desktop\dvd2013
2014-09-14 11:22 - 2014-09-14 11:23 - 00000000 ____D () C:\Users\Ondra\Desktop\OBRÁZKY 2013
2014-09-14 09:33 - 2014-09-14 09:37 - 00000000 ____D () C:\Users\Ondra\pomalé
2014-09-14 09:31 - 2014-09-14 09:45 - 17732488 _____ (Adobe Systems Incorporated) C:\Users\Ondra\Downloads\flashplayer_12_ax_debug.exe
2014-09-14 09:27 - 2014-09-14 10:11 - 91128531 _____ () C:\Users\Ondra\Downloads\The-Prophecy.avi
2014-09-14 08:55 - 2014-09-14 08:55 - 00000000 _____ () C:\asc_rdflag
2014-09-13 20:31 - 2014-09-13 20:31 - 00000093 _____ () C:\Users\Ondra\AppData\Local\fusioncache.dat
2014-09-13 19:53 - 2014-09-13 19:53 - 00000000 ____D () C:\Program Files (x86)\Cisco
2014-09-13 19:52 - 2014-09-13 19:52 - 00002136 _____ () C:\Users\Public\Desktop\REALTEK 11n USB Wireless LAN Utility.lnk
2014-09-13 19:52 - 2014-09-13 19:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REALTEK 11n USB Wireless LAN Utility
2014-09-13 19:52 - 2014-09-13 19:52 - 00000000 ____D () C:\Program Files (x86)\REALTEK
2014-09-13 19:52 - 2010-06-15 11:57 - 00748648 ____R (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtl8192cu.sys
2014-09-13 19:52 - 2009-04-02 10:27 - 00188416 _____ (Realtek Semiconductor Corp. ) C:\Windows\SysWOW64\RTLExtUI.dll
2014-09-13 19:52 - 2009-03-31 14:31 - 00380928 _____ (Realtek) C:\Windows\RtlUI2.exe
2014-09-13 19:52 - 2009-01-05 20:31 - 00000901 _____ () C:\Windows\RtlUI2.exe.manifest
2014-09-13 19:52 - 2008-07-01 12:31 - 00614400 _____ (Realtek Semiconductor Corp. ) C:\Windows\SysWOW64\Rtlihvs.dll
2014-09-13 19:10 - 2014-09-13 19:10 - 00001159 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-09-13 19:10 - 2014-09-13 19:10 - 00001147 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-09-13 19:09 - 2014-09-13 19:10 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-13 19:08 - 2014-09-13 19:08 - 00004026 _____ () C:\Windows\System32\Tasks\LaunchSignup
2014-09-13 19:07 - 2014-09-13 19:07 - 00419488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-13 19:07 - 2014-09-13 19:07 - 00070304 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-13 19:04 - 2014-09-13 19:07 - 04140192 _____ (Adobe Systems Incorporated) C:\Users\Ondra\Downloads\adobe-flash-player_11.2.202.235nonIE.exe
2014-09-13 18:57 - 2014-09-13 18:58 - 00782000 _____ ( ) C:\Users\Ondra\Downloads\adobe_flash_player.exe
2014-09-13 17:48 - 2014-09-17 16:08 - 00003830 _____ () C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1410623299
2014-09-13 17:48 - 2014-09-13 17:48 - 00001135 _____ () C:\Users\Public\Desktop\Opera.lnk
2014-09-13 17:48 - 2014-09-13 17:48 - 00001135 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2014-09-13 15:31 - 2014-09-13 15:54 - 35100360 _____ () C:\Users\Ondra\Downloads\Firefox Setup 32.0.exe
2014-09-13 15:22 - 2014-09-13 15:23 - 00868360 _____ (Opera Software) C:\Users\Ondra\Downloads\Opera_NI_stable.exe
2014-09-12 05:04 - 2014-08-19 20:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-09-12 05:04 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-09-12 05:04 - 2014-08-19 01:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-09-12 05:04 - 2014-08-19 00:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-09-12 05:04 - 2014-08-19 00:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-09-12 05:04 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-09-12 05:04 - 2014-08-19 00:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-09-12 05:04 - 2014-08-19 00:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-09-12 05:04 - 2014-08-19 00:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-09-12 05:04 - 2014-08-19 00:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-09-12 05:04 - 2014-08-19 00:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-09-12 05:04 - 2014-08-19 00:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-09-12 05:04 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-09-12 05:04 - 2014-08-19 00:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-09-12 05:04 - 2014-08-19 00:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-09-12 05:04 - 2014-08-19 00:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-09-12 05:04 - 2014-08-19 00:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-09-12 05:04 - 2014-08-19 00:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-09-12 05:04 - 2014-08-19 00:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-09-12 05:04 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-09-12 05:04 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-09-12 05:04 - 2014-08-18 23:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-09-12 05:04 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-09-12 05:04 - 2014-08-18 23:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-09-12 05:04 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-09-12 05:04 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-09-12 05:04 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-09-12 05:04 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-09-12 05:04 - 2014-08-18 23:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-09-12 05:04 - 2014-08-18 23:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-09-12 05:04 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-09-12 05:04 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-09-12 05:04 - 2014-08-18 23:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-09-12 05:04 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-09-12 05:04 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-09-12 05:04 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-09-12 05:04 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-09-12 05:04 - 2014-08-18 23:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-09-12 05:04 - 2014-08-18 23:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-09-12 05:04 - 2014-08-18 23:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-09-12 05:04 - 2014-08-18 23:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-09-12 05:04 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-09-12 05:04 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-09-12 05:04 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-09-12 05:04 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-09-12 05:04 - 2014-08-18 23:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-09-12 05:04 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-09-12 05:04 - 2014-08-18 23:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-09-12 05:04 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-09-12 05:04 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-09-12 05:04 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-09-12 05:04 - 2014-08-18 22:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-09-12 05:04 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-09-12 05:04 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-09-12 05:04 - 2014-08-18 22:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-09-12 05:04 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-09-12 01:56 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-09-12 01:56 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-09-12 01:56 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-09-12 01:56 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-09-12 01:56 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-09-11 18:45 - 2014-09-11 18:45 - 00000000 ____D () C:\Users\Ondra\Downloads\Dan Sperry - Technical Dove Tosses
2014-09-11 17:12 - 2014-09-11 17:12 - 17328816 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2014-09-08 17:19 - 2014-09-08 17:19 - 00000020 ___SH () C:\Users\DefaultAppPool\ntuser.ini
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Šablony
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Soubory cookie
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Poslední
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Okolní tiskárny
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Okolní síť
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Nabídka Start
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Dokumenty
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Obrázky
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Hudba
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Filmy
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Data aplikací
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\AppData\Local\Data aplikací
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 ____D () C:\Users\DefaultAppPool
2014-09-08 17:19 - 2014-04-16 23:47 - 00000000 ____D () C:\Users\DefaultAppPool\AppData\Local\Microsoft Help
2014-09-08 17:19 - 2014-01-24 19:32 - 00000000 ____D () C:\Users\DefaultAppPool\AppData\Roaming\Macromedia
2014-09-08 17:19 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-09-08 17:19 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-09-06 20:11 - 2014-09-06 20:12 - 01892361 _____ () C:\Users\Ondra\Downloads\Minecraft-1.8-Mac-and-Windows-Cracked-Launcher-[AUTO-UPDATES]-by-Racad.zip
2014-09-06 20:08 - 2014-09-06 20:09 - 00000000 ____D () C:\Users\Ondra\Downloads\Moon Taxi Immersion Bundle
2014-09-06 20:07 - 2014-09-06 20:07 - 00000833 _____ () C:\Users\Ondra\Desktop\BitTorrent.lnk
2014-09-06 20:07 - 2014-09-06 20:07 - 00000813 _____ () C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\BitTorrent.lnk
2014-09-06 20:00 - 2014-09-06 20:00 - 00000000 ____D () C:\Users\Ondra\Desktop\bin
2014-09-06 19:58 - 2014-09-06 20:00 - 00000000 ____D () C:\Users\Ondra\Downloads\New Folder
2014-09-06 19:55 - 2014-09-06 19:57 - 54613936 ____R () C:\Users\Ondra\Downloads\New Folder.rar
2014-09-06 19:52 - 2014-09-06 19:52 - 00017214 _____ () C:\Users\Ondra\Downloads\[CzT]Minecraft_1_8_Full_verze.torrent
2014-09-05 18:43 - 2014-09-05 18:43 - 09755449 _____ () C:\Users\Ondra\Downloads\g2addon-2_6.exe
2014-09-05 18:40 - 2014-09-05 18:40 - 03031183 _____ (${MOD_COMP}) C:\Users\Ondra\Downloads\gothic2_fix-2.6.0.0-rev2.exe
2014-09-05 18:40 - 2014-09-05 18:40 - 00092970 _____ () C:\Users\Ondra\Downloads\gothic2_playerkit-2.6f.exe
2014-09-05 18:30 - 2014-09-05 18:31 - 02210677 _____ (Gothicz NET - Komunita © 2014) C:\Users\Ondra\Downloads\g2notr-systempack-1.0.exe
2014-09-02 17:43 - 2014-09-02 17:54 - 172814918 _____ () C:\Users\Ondra\Downloads\The-Game---Jesus-Piece-(Deluxe-Edition)-[iTunes]-(2012-Album).rar
2014-08-29 22:02 - 2014-09-05 17:33 - 00000000 ___RD () C:\Users\Ondra\Disk Google
2014-08-29 22:02 - 2014-08-29 22:02 - 00001674 _____ () C:\Users\Ondra\Desktop\Disk Google.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002042 _____ () C:\Users\Public\Desktop\Google Slides.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002040 _____ () C:\Users\Public\Desktop\Google Sheets.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002030 _____ () C:\Users\Public\Desktop\Google Docs.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2014-08-29 21:57 - 2014-08-29 21:58 - 00895120 _____ (Google Inc.) C:\Users\Ondra\Downloads\googledrivesync.exe
2014-08-28 23:18 - 2014-09-18 11:34 - 00015768 _____ () C:\Users\Ondra\Desktop\Untitled.veg
2014-08-28 23:18 - 2014-08-28 23:18 - 00017920 _____ () C:\Users\Ondra\Desktop\Untitled.veg.bak
2014-08-28 18:46 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-28 18:46 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-28 18:46 - 2014-08-23 02:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-08-26 10:13 - 2014-08-26 10:32 - 159434083 _____ () C:\Users\Ondra\Downloads\Nightwish---2007---Dark-Passion-Play.zip
2014-08-24 22:21 - 2014-08-24 22:21 - 00030180 _____ () C:\Users\Ondra\Documents\hrt 2.dvds
2014-08-24 21:42 - 2014-08-24 21:44 - 17533715 _____ () C:\Users\Ondra\Documents\PRACHASTÁ.wmv
2014-08-24 21:20 - 2014-08-24 21:32 - 30205901 _____ () C:\Users\Ondra\Documents\POČASÍCKO.wmv
2014-08-24 21:19 - 2014-08-24 21:19 - 01011632 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv.sfap0
2014-08-24 21:19 - 2014-08-24 21:19 - 00007968 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv.sfk
2014-08-24 21:15 - 2014-08-24 21:16 - 02277475 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv
2014-08-24 21:02 - 2014-08-24 21:09 - 18421727 _____ () C:\Users\Ondra\Documents\fantomas.wmv
2014-08-24 20:40 - 2014-08-24 20:54 - 45574153 _____ () C:\Users\Ondra\Documents\PEPA.wmv
2014-08-24 20:37 - 2014-08-24 20:54 - 00009424 _____ () C:\Users\Ondra\Documents\reportáž.wmv.sfk
2014-08-24 20:37 - 2014-08-24 20:37 - 01198232 _____ () C:\Users\Ondra\Documents\reportáž.wmv.sfap0
2014-08-24 20:25 - 2014-08-24 20:28 - 04637481 _____ () C:\Users\Ondra\Documents\reportáž.wmv
2014-08-24 20:24 - 2014-08-24 20:28 - 00241688 _____ () C:\Users\Ondra\Desktop\pepa.veg
2014-08-24 20:24 - 2014-08-24 20:24 - 00258000 _____ () C:\Users\Ondra\Desktop\pepa.veg.bak
2014-08-23 18:19 - 2014-08-23 18:24 - 00000000 ____D () C:\Users\Ondra\Desktop\Half Life Pack (1)
2014-08-23 13:08 - 2014-08-23 13:08 - 00014016 _____ () C:\Users\Ondra\Downloads\[CzT]Half_Life_1_Pack_specialni_kompilace_.torrent
2014-08-22 13:52 - 2014-08-22 15:07 - 1809489232 ____R () C:\Users\Ondra\Downloads\Velký Gatsby (2013) CZdabing.mkv
2014-08-22 13:51 - 2014-08-22 13:51 - 00017817 _____ () C:\Users\Ondra\Downloads\[CzT]Velky_Gatsby_The_Great_Gatsby_2013_CZ_.torrent
2014-08-21 18:54 - 2014-08-21 18:54 - 04477658 _____ () C:\Users\Ondra\Downloads\Capture_20140821.wmv
2014-08-21 15:16 - 2014-09-14 15:37 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\vlc
2014-08-21 11:36 - 2014-08-21 11:36 - 00001066 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-08-21 11:36 - 2014-08-21 11:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2014-08-21 11:35 - 2014-08-21 11:35 - 00000000 ____D () C:\Program Files (x86)\VideoLAN
2014-08-21 11:33 - 2014-08-21 11:34 - 31206605 _____ () C:\Users\Ondra\Downloads\vlc-setup.exe
2014-08-21 11:31 - 2014-08-21 11:32 - 24740645 _____ () C:\Users\Ondra\Downloads\vlc-2.1.5-win32.exe.opdownload
2014-08-20 23:20 - 2014-08-20 23:20 - 00000000 ____D () C:\Users\Ondra\Documents\GomPlayer
2014-08-20 23:19 - 2014-08-25 14:55 - 00000000 ____D () C:\Program Files (x86)\GRETECH
2014-08-20 23:00 - 2014-08-21 11:30 - 00000000 ____D () C:\Users\Ondra\Downloads\22 Jump Street 2014 TS Xvid Ac3 5.1-MiLLENiUM
2014-08-20 22:57 - 2014-08-21 11:27 - 00000000 ____D () C:\Users\Ondra\Downloads\22 Jump Street 2014 titulky
2014-08-20 16:36 - 2014-08-20 16:42 - 00007304 _____ () C:\Users\Ondra\Downloads\News_Intro-Maximilien_-1801238420.mp3.sfk
2014-08-20 16:22 - 2014-08-20 16:24 - 24759649 _____ () C:\Users\Ondra\Downloads\Sony Vegas Pro 10 - TutorialzXD Intro 18.rar

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-19 21:13 - 2014-09-19 21:01 - 00016501 _____ () C:\Users\Ondra\Desktop\FRST.txt
2014-09-19 21:13 - 2014-01-07 18:41 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\BitTorrent
2014-09-19 21:12 - 2014-09-19 21:00 - 00000000 ____D () C:\FRST
2014-09-19 21:07 - 2014-09-19 21:07 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Downloads\trz260C.tmp
2014-09-19 21:07 - 2014-09-19 21:07 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Downloads\FRSTLauncher.exe
2014-09-19 21:07 - 2014-09-19 21:06 - 02105856 _____ (Farbar) C:\Users\Ondra\Downloads\FRST64.exe
2014-09-19 21:03 - 2014-07-02 15:37 - 00000896 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-09-19 21:00 - 2014-01-17 16:38 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Skype
2014-09-19 20:59 - 2014-09-19 21:05 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Desktop\trzA152.tmp
2014-09-19 20:59 - 2014-09-19 20:59 - 02105856 _____ (Farbar) C:\Users\Ondra\Desktop\FRST64.exe
2014-09-19 20:57 - 2014-09-19 20:58 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Desktop\trz3343.tmp
2014-09-19 20:56 - 2014-09-19 20:56 - 00080736 _____ () C:\Users\Ondra\Downloads\trz3C47.tmp
2014-09-19 20:40 - 2009-07-14 06:45 - 00025024 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-19 20:40 - 2009-07-14 06:45 - 00025024 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-19 19:51 - 2014-01-07 17:58 - 01654794 _____ () C:\Windows\WindowsUpdate.log
2014-09-19 19:05 - 2011-04-12 10:34 - 00743836 _____ () C:\Windows\system32\perfh005.dat
2014-09-19 19:05 - 2011-04-12 10:34 - 00175166 _____ () C:\Windows\system32\perfc005.dat
2014-09-19 19:05 - 2009-07-14 07:13 - 01798342 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-19 18:50 - 2014-09-19 17:18 - 00000000 ____D () C:\Users\Ondra\Desktop\2014 bordel
2014-09-19 18:44 - 2014-08-03 12:39 - 00000896 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2014-09-19 18:40 - 2014-08-03 12:40 - 00001602 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-1.job
2014-09-19 18:40 - 2014-08-03 12:40 - 00001482 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-5_user.job
2014-09-19 18:40 - 2014-08-03 12:40 - 00001468 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-5.job
2014-09-19 18:39 - 2014-08-03 12:39 - 00003788 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-11.job
2014-09-19 18:36 - 2014-08-03 12:39 - 00000892 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2014-09-19 18:36 - 2014-07-02 15:37 - 00000892 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-09-19 18:36 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-19 18:35 - 2014-09-19 18:34 - 00278208 _____ () C:\Windows\Minidump\091914-30685-01.dmp
2014-09-19 18:35 - 2014-09-17 16:01 - 00000280 _____ () C:\Windows\setupact.log
2014-09-19 18:34 - 2014-09-19 18:34 - 1212481607 _____ () C:\Windows\MEMORY.DMP
2014-09-19 18:34 - 2014-01-09 18:16 - 00000000 ____D () C:\Windows\Minidump
2014-09-19 16:13 - 2014-09-19 16:12 - 03249480 _____ (Unity Technologies ApS) C:\Users\Ondra\Downloads\UnityWebPlayer.exe
2014-09-19 16:13 - 2014-02-19 18:52 - 00000000 ____D () C:\Users\Ondra\AppData\Local\Unity
2014-09-19 14:47 - 2014-01-07 19:26 - 00000000 ____D () C:\Users\Ondra\AppData\Local\Adobe
2014-09-19 14:36 - 2009-07-14 07:08 - 00032574 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-09-19 14:31 - 2014-03-24 18:39 - 00000000 ____D () C:\ProgramData\ProductData
2014-09-19 14:31 - 2014-01-07 18:28 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-09-18 19:34 - 2014-09-18 19:34 - 00002165 _____ () C:\Users\Ondra\Desktop\Heroes of Might and Magic® IV.lnk
2014-09-18 19:34 - 2014-09-18 19:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\3DO
2014-09-18 19:34 - 2014-01-07 18:10 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-09-18 19:33 - 2014-09-18 19:33 - 00000000 ____D () C:\Program Files (x86)\3DO
2014-09-18 17:11 - 2014-07-02 18:51 - 00000000 ____D () C:\Program Files (x86)\Warcraft III
2014-09-18 17:10 - 2014-01-07 18:43 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\DAEMON Tools Lite
2014-09-18 17:04 - 2014-09-18 17:03 - 00000000 ____D () C:\Users\Ondra\Downloads\Heroes IV Complete
2014-09-18 17:01 - 2014-09-18 17:01 - 00011373 _____ () C:\Users\Ondra\Downloads\[CzT]Heroes_of_Might_and_Magic_IV_Complete_CZ_version (1).torrent
2014-09-18 17:01 - 2014-09-18 17:01 - 00011372 _____ () C:\Users\Ondra\Downloads\[CzT]Heroes_of_Might_and_Magic_IV_Complete_CZ_version.torrent
2014-09-18 11:34 - 2014-08-28 23:18 - 00015768 _____ () C:\Users\Ondra\Desktop\Untitled.veg
2014-09-18 11:33 - 2014-09-18 11:32 - 113591962 _____ () C:\Users\Ondra\Documents\Student magic.wav
2014-09-18 10:37 - 2014-09-18 10:37 - 00000000 ____D () C:\Users\Ondra\Documents\GTA Vice City User Files
2014-09-18 10:37 - 2014-01-10 15:22 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2014-09-18 10:27 - 2014-01-29 22:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2014-09-18 10:26 - 2014-09-18 10:26 - 00000000 ____D () C:\Program Files (x86)\Rockstar Games
2014-09-18 09:10 - 2014-09-18 08:28 - 1467198962 ____R () C:\Users\Ondra\Downloads\GTA Vice City.rar
2014-09-18 08:28 - 2014-09-18 08:28 - 00014540 _____ () C:\Users\Ondra\Downloads\[CzT]Grand_Theft_Auto_GTA_Vice_City_2003_CZ_.torrent
2014-09-17 19:00 - 2014-09-17 19:00 - 02680104 _____ () C:\Users\Ondra\Downloads\lips_brush_39752.zip
2014-09-17 16:08 - 2014-09-13 17:48 - 00003830 _____ () C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1410623299
2014-09-17 16:08 - 2014-08-02 15:41 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-09-17 16:08 - 2014-01-16 20:13 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-09-17 16:01 - 2014-09-17 16:01 - 00000584 _____ () C:\Windows\PFRO.log
2014-09-17 16:01 - 2014-09-17 16:01 - 00000000 _____ () C:\Windows\setuperr.log
2014-09-16 22:09 - 2014-09-14 12:08 - 00000000 ____D () C:\Users\Ondra\Documents\PcSetup
2014-09-16 22:09 - 2014-09-14 12:07 - 00000000 ____D () C:\ProgramData\VSO
2014-09-14 21:36 - 2014-09-14 15:33 - 00391084 _____ () C:\Users\Ondra\Documents\Betlémy.XtoDVD
2014-09-14 18:32 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-09-14 16:31 - 2014-09-14 14:15 - 00000000 ____D () C:\Users\Ondra\Documents\ConvertXtoDVD
2014-09-14 16:09 - 2014-09-14 16:09 - 00001317 _____ () C:\Users\Public\Desktop\Ashampoo Burning Studio 6 FREE.lnk
2014-09-14 16:09 - 2014-09-14 16:09 - 00000214 _____ () C:\Users\Public\Desktop\Your Software Deals.url
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Users\Ondra\AppData\Local\ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\ProgramData\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Program Files (x86)\Ashampoo
2014-09-14 16:02 - 2014-09-14 15:56 - 12891208 _____ (Ashampoo GmbH & Co. KG ) C:\Users\Ondra\Downloads\ashampoo_burning_studio_6_free_6.84_13471.exe
2014-09-14 15:51 - 2014-09-14 15:51 - 00001239 _____ () C:\Users\Ondra\Desktop\DVDVideoSoft Free Studio.lnk
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\Users\Ondra\Documents\DVDVideoSoft
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft
2014-09-14 15:50 - 2014-09-14 15:43 - 08152757 _____ (DVDVideoSoft Limited. ) C:\Users\Ondra\Downloads\FreeDVDVideoBurner.exe
2014-09-14 15:39 - 2011-04-12 10:45 - 00000000 ___RD () C:\Users\Public\Recorded TV
2014-09-14 15:37 - 2014-08-21 15:16 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\vlc
2014-09-14 15:29 - 2014-09-14 15:29 - 00000000 ____D () C:\ProgramData\vsosdk
2014-09-14 12:08 - 2014-09-14 12:08 - 00099384 _____ () C:\Users\Ondra\AppData\Roaming\inst.exe
2014-09-14 12:08 - 2014-09-14 12:08 - 00082816 _____ (VSO Software) C:\Users\Ondra\AppData\Roaming\pcouffin.sys
2014-09-14 12:08 - 2014-09-14 12:08 - 00007859 _____ () C:\Users\Ondra\AppData\Roaming\pcouffin.cat
2014-09-14 12:08 - 2014-09-14 12:08 - 00000055 _____ () C:\Users\Ondra\AppData\Roaming\pcouffin.log
2014-09-14 12:08 - 2014-09-14 12:08 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Vso
2014-09-14 12:07 - 2014-09-14 12:07 - 00001228 _____ () C:\Users\Ondra\Desktop\ConvertXToDVD 5.lnk
2014-09-14 12:07 - 2014-09-14 12:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VSO
2014-09-14 12:07 - 2014-09-14 12:07 - 00000000 ____D () C:\Program Files (x86)\VSO
2014-09-14 12:03 - 2014-09-14 11:50 - 00000000 ____D () C:\Users\Ondra\Downloads\VSO ConvertXtoDVD 5.2.0.13 Final
2014-09-14 11:49 - 2014-09-14 11:49 - 00018808 _____ () C:\Users\Ondra\Downloads\[CzT]VSO_ConvertXtoDVD_5_2_0_13_Final_CZ_EN_.torrent
2014-09-14 11:45 - 2014-09-14 11:44 - 00000000 ____D () C:\Users\Ondra\Desktop\dvd2013
2014-09-14 11:23 - 2014-09-14 11:22 - 00000000 ____D () C:\Users\Ondra\Desktop\OBRÁZKY 2013
2014-09-14 10:11 - 2014-09-14 09:27 - 91128531 _____ () C:\Users\Ondra\Downloads\The-Prophecy.avi
2014-09-14 09:47 - 2014-08-12 16:02 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\.minecraft
2014-09-14 09:45 - 2014-09-14 09:31 - 17732488 _____ (Adobe Systems Incorporated) C:\Users\Ondra\Downloads\flashplayer_12_ax_debug.exe
2014-09-14 09:37 - 2014-09-14 09:33 - 00000000 ____D () C:\Users\Ondra\pomalé
2014-09-14 09:33 - 2014-01-07 18:08 - 00000000 ____D () C:\Users\Ondra
2014-09-14 08:55 - 2014-09-14 08:55 - 00000000 _____ () C:\asc_rdflag
2014-09-14 08:55 - 2014-03-24 23:02 - 80441344 _____ () C:\Windows\system32\config\SOFTWARE.iodefrag.bak
2014-09-14 08:55 - 2014-03-24 23:02 - 00311296 _____ () C:\Windows\system32\config\DEFAULT.iodefrag.bak
2014-09-14 08:55 - 2014-03-24 23:02 - 00061440 _____ () C:\Windows\system32\config\SAM.iodefrag.bak
2014-09-14 08:55 - 2014-03-24 23:02 - 00024576 _____ () C:\Windows\system32\config\SECURITY.iodefrag.bak
2014-09-13 20:31 - 2014-09-13 20:31 - 00000093 _____ () C:\Users\Ondra\AppData\Local\fusioncache.dat
2014-09-13 19:53 - 2014-09-13 19:53 - 00000000 ____D () C:\Program Files (x86)\Cisco
2014-09-13 19:52 - 2014-09-13 19:52 - 00002136 _____ () C:\Users\Public\Desktop\REALTEK 11n USB Wireless LAN Utility.lnk
2014-09-13 19:52 - 2014-09-13 19:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REALTEK 11n USB Wireless LAN Utility
2014-09-13 19:52 - 2014-09-13 19:52 - 00000000 ____D () C:\Program Files (x86)\REALTEK
2014-09-13 19:10 - 2014-09-13 19:10 - 00001159 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-09-13 19:10 - 2014-09-13 19:10 - 00001147 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-09-13 19:10 - 2014-09-13 19:09 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-13 19:09 - 2014-05-10 08:38 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-09-13 19:08 - 2014-09-13 19:08 - 00004026 _____ () C:\Windows\System32\Tasks\LaunchSignup
2014-09-13 19:07 - 2014-09-13 19:07 - 00419488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-13 19:07 - 2014-09-13 19:07 - 00070304 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-13 19:07 - 2014-09-13 19:04 - 04140192 _____ (Adobe Systems Incorporated) C:\Users\Ondra\Downloads\adobe-flash-player_11.2.202.235nonIE.exe
2014-09-13 18:58 - 2014-09-13 18:57 - 00782000 _____ ( ) C:\Users\Ondra\Downloads\adobe_flash_player.exe
2014-09-13 17:48 - 2014-09-13 17:48 - 00001135 _____ () C:\Users\Public\Desktop\Opera.lnk
2014-09-13 17:48 - 2014-09-13 17:48 - 00001135 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2014-09-13 17:45 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-09-13 17:30 - 2014-07-02 15:36 - 00000000 ____D () C:\Program Files (x86)\Google
2014-09-13 17:30 - 2014-07-02 15:30 - 00000000 ____D () C:\Windows\SysWOW64\Adobe
2014-09-13 17:28 - 2014-01-07 18:09 - 00001393 _____ () C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-09-13 15:55 - 2014-01-07 18:36 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Mozilla
2014-09-13 15:54 - 2014-09-13 15:31 - 35100360 _____ () C:\Users\Ondra\Downloads\Firefox Setup 32.0.exe
2014-09-13 15:23 - 2014-09-13 15:22 - 00868360 _____ (Opera Software) C:\Users\Ondra\Downloads\Opera_NI_stable.exe
2014-09-12 20:39 - 2014-08-03 12:38 - 00000000 ____D () C:\Program Files (x86)\Apps Hat
2014-09-12 20:33 - 2014-05-03 09:26 - 00000000 ____D () C:\Program Files\PCDApp
2014-09-12 19:45 - 2014-08-03 12:40 - 00001876 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.job
2014-09-12 18:40 - 2014-08-03 12:40 - 00002636 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.job
2014-09-12 18:40 - 2014-08-03 12:40 - 00001926 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.job
2014-09-12 18:40 - 2014-08-03 12:40 - 00001364 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.job
2014-09-12 05:07 - 2014-01-16 21:02 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-09-11 18:45 - 2014-09-11 18:45 - 00000000 ____D () C:\Users\Ondra\Downloads\Dan Sperry - Technical Dove Tosses
2014-09-11 17:12 - 2014-09-11 17:12 - 17328816 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2014-09-08 17:19 - 2014-09-08 17:19 - 00000020 ___SH () C:\Users\DefaultAppPool\ntuser.ini
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Šablony
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Soubory cookie
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Poslední
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Okolní tiskárny
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Okolní síť
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Nabídka Start
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Dokumenty
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Obrázky
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Hudba
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Filmy
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Data aplikací
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\AppData\Local\Data aplikací
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 ____D () C:\Users\DefaultAppPool
2014-09-06 20:12 - 2014-09-06 20:11 - 01892361 _____ () C:\Users\Ondra\Downloads\Minecraft-1.8-Mac-and-Windows-Cracked-Launcher-[AUTO-UPDATES]-by-Racad.zip
2014-09-06 20:09 - 2014-09-06 20:08 - 00000000 ____D () C:\Users\Ondra\Downloads\Moon Taxi Immersion Bundle
2014-09-06 20:07 - 2014-09-06 20:07 - 00000833 _____ () C:\Users\Ondra\Desktop\BitTorrent.lnk
2014-09-06 20:07 - 2014-09-06 20:07 - 00000813 _____ () C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\BitTorrent.lnk
2014-09-06 20:00 - 2014-09-06 20:00 - 00000000 ____D () C:\Users\Ondra\Desktop\bin
2014-09-06 20:00 - 2014-09-06 19:58 - 00000000 ____D () C:\Users\Ondra\Downloads\New Folder
2014-09-06 19:57 - 2014-09-06 19:55 - 54613936 ____R () C:\Users\Ondra\Downloads\New Folder.rar
2014-09-06 19:52 - 2014-09-06 19:52 - 00017214 _____ () C:\Users\Ondra\Downloads\[CzT]Minecraft_1_8_Full_verze.torrent
2014-09-05 18:43 - 2014-09-05 18:43 - 09755449 _____ () C:\Users\Ondra\Downloads\g2addon-2_6.exe
2014-09-05 18:40 - 2014-09-05 18:40 - 03031183 _____ (${MOD_COMP}) C:\Users\Ondra\Downloads\gothic2_fix-2.6.0.0-rev2.exe
2014-09-05 18:40 - 2014-09-05 18:40 - 00092970 _____ () C:\Users\Ondra\Downloads\gothic2_playerkit-2.6f.exe
2014-09-05 18:33 - 2014-02-01 11:00 - 00000000 ____D () C:\Program Files (x86)\Piranha Bytes
2014-09-05 18:31 - 2014-09-05 18:30 - 02210677 _____ (Gothicz NET - Komunita © 2014) C:\Users\Ondra\Downloads\g2notr-systempack-1.0.exe
2014-09-05 17:33 - 2014-08-29 22:02 - 00000000 ___RD () C:\Users\Ondra\Disk Google
2014-09-02 17:54 - 2014-09-02 17:43 - 172814918 _____ () C:\Users\Ondra\Downloads\The-Game---Jesus-Piece-(Deluxe-Edition)-[iTunes]-(2012-Album).rar
2014-08-31 13:03 - 2009-07-14 06:45 - 05049960 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-08-29 22:02 - 2014-08-29 22:02 - 00001674 _____ () C:\Users\Ondra\Desktop\Disk Google.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002042 _____ () C:\Users\Public\Desktop\Google Slides.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002040 _____ () C:\Users\Public\Desktop\Google Sheets.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002030 _____ () C:\Users\Public\Desktop\Google Docs.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2014-08-29 22:01 - 2014-03-09 13:52 - 00000000 ____D () C:\Users\Ondra\AppData\Local\Google
2014-08-29 21:58 - 2014-08-29 21:57 - 00895120 _____ (Google Inc.) C:\Users\Ondra\Downloads\googledrivesync.exe
2014-08-29 21:58 - 2014-07-02 15:37 - 00003892 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-08-29 21:58 - 2014-07-02 15:37 - 00003640 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-08-28 23:18 - 2014-08-28 23:18 - 00017920 _____ () C:\Users\Ondra\Desktop\Untitled.veg.bak
2014-08-26 10:32 - 2014-08-26 10:13 - 159434083 _____ () C:\Users\Ondra\Downloads\Nightwish---2007---Dark-Passion-Play.zip
2014-08-25 15:09 - 2014-01-17 16:38 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-08-25 15:02 - 2014-01-11 17:37 - 00000000 ____D () C:\ProgramData\Sony
2014-08-25 15:02 - 2014-01-11 17:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2014-08-25 14:55 - 2014-08-20 23:19 - 00000000 ____D () C:\Program Files (x86)\GRETECH
2014-08-25 14:52 - 2014-01-08 20:54 - 00000000 ____D () C:\Program Files (x86)\IObit
2014-08-25 14:51 - 2014-08-16 17:43 - 00000000 ____D () C:\Program Files (x86)\Brany Skeldalu
2014-08-24 22:21 - 2014-08-24 22:21 - 00030180 _____ () C:\Users\Ondra\Documents\hrt 2.dvds
2014-08-24 21:44 - 2014-08-24 21:42 - 17533715 _____ () C:\Users\Ondra\Documents\PRACHASTÁ.wmv
2014-08-24 21:32 - 2014-08-24 21:20 - 30205901 _____ () C:\Users\Ondra\Documents\POČASÍCKO.wmv
2014-08-24 21:19 - 2014-08-24 21:19 - 01011632 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv.sfap0
2014-08-24 21:19 - 2014-08-24 21:19 - 00007968 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv.sfk
2014-08-24 21:16 - 2014-08-24 21:15 - 02277475 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv
2014-08-24 21:09 - 2014-08-24 21:02 - 18421727 _____ () C:\Users\Ondra\Documents\fantomas.wmv
2014-08-24 20:54 - 2014-08-24 20:40 - 45574153 _____ () C:\Users\Ondra\Documents\PEPA.wmv
2014-08-24 20:54 - 2014-08-24 20:37 - 00009424 _____ () C:\Users\Ondra\Documents\reportáž.wmv.sfk
2014-08-24 20:37 - 2014-08-24 20:37 - 01198232 _____ () C:\Users\Ondra\Documents\reportáž.wmv.sfap0
2014-08-24 20:28 - 2014-08-24 20:25 - 04637481 _____ () C:\Users\Ondra\Documents\reportáž.wmv
2014-08-24 20:28 - 2014-08-24 20:24 - 00241688 _____ () C:\Users\Ondra\Desktop\pepa.veg
2014-08-24 20:24 - 2014-08-24 20:24 - 00258000 _____ () C:\Users\Ondra\Desktop\pepa.veg.bak
2014-08-23 18:24 - 2014-08-23 18:19 - 00000000 ____D () C:\Users\Ondra\Desktop\Half Life Pack (1)
2014-08-23 13:08 - 2014-08-23 13:08 - 00014016 _____ () C:\Users\Ondra\Downloads\[CzT]Half_Life_1_Pack_specialni_kompilace_.torrent
2014-08-23 04:07 - 2014-08-28 18:46 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-23 03:45 - 2014-08-28 18:46 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-23 02:59 - 2014-08-28 18:46 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-08-22 15:07 - 2014-08-22 13:52 - 1809489232 ____R () C:\Users\Ondra\Downloads\Velký Gatsby (2013) CZdabing.mkv
2014-08-22 13:51 - 2014-08-22 13:51 - 00017817 _____ () C:\Users\Ondra\Downloads\[CzT]Velky_Gatsby_The_Great_Gatsby_2013_CZ_.torrent
2014-08-22 11:59 - 2014-08-08 21:15 - 00000000 ____D () C:\Users\Ondra\Desktop\Zapomenutá Pravda
2014-08-21 18:54 - 2014-08-21 18:54 - 04477658 _____ () C:\Users\Ondra\Downloads\Capture_20140821.wmv
2014-08-21 18:15 - 2014-01-17 16:38 - 00000000 ____D () C:\ProgramData\Skype
2014-08-21 11:36 - 2014-08-21 11:36 - 00001066 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-08-21 11:36 - 2014-08-21 11:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2014-08-21 11:35 - 2014-08-21 11:35 - 00000000 ____D () C:\Program Files (x86)\VideoLAN
2014-08-21 11:34 - 2014-08-21 11:33 - 31206605 _____ () C:\Users\Ondra\Downloads\vlc-setup.exe
2014-08-21 11:32 - 2014-08-21 11:31 - 24740645 _____ () C:\Users\Ondra\Downloads\vlc-2.1.5-win32.exe.opdownload
2014-08-21 11:30 - 2014-08-20 23:00 - 00000000 ____D () C:\Users\Ondra\Downloads\22 Jump Street 2014 TS Xvid Ac3 5.1-MiLLENiUM
2014-08-21 11:27 - 2014-08-20 22:57 - 00000000 ____D () C:\Users\Ondra\Downloads\22 Jump Street 2014 titulky
2014-08-21 09:36 - 2014-08-12 11:24 - 00000000 ____D () C:\Program Files (x86)\Valve
2014-08-21 09:27 - 2014-01-11 17:37 - 00000000 ____D () C:\Program Files (x86)\Sony
2014-08-20 23:24 - 2014-06-02 18:30 - 00000000 __SHD () C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2014-08-20 23:20 - 2014-08-20 23:20 - 00000000 ____D () C:\Users\Ondra\Documents\GomPlayer
2014-08-20 23:19 - 2014-06-02 18:28 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\OpenCandy
2014-08-20 19:31 - 2014-04-16 19:32 - 00000000 ____D () C:\Users\Ondra\AppData\Local\Game Dev Tycoon
2014-08-20 16:42 - 2014-08-20 16:36 - 00007304 _____ () C:\Users\Ondra\Downloads\News_Intro-Maximilien_-1801238420.mp3.sfk
2014-08-20 16:25 - 2014-01-07 18:23 - 00113528 _____ () C:\Users\Ondra\AppData\Local\GDIPFONTCACHEV1.DAT
2014-08-20 16:24 - 2014-08-20 16:22 - 24759649 _____ () C:\Users\Ondra\Downloads\Sony Vegas Pro 10 - TutorialzXD Intro 18.rar

Some content of TEMP:
====================
C:\Users\Ondra\AppData\Local\Temp\CloudBackup5829.exe
C:\Users\Ondra\AppData\Local\Temp\SIntf16.dll
C:\Users\Ondra\AppData\Local\Temp\SIntf32.dll
C:\Users\Ondra\AppData\Local\Temp\SIntfNT.dll
C:\Users\Ondra\AppData\Local\Temp\vcredist_x64.exe
C:\Users\Ondra\AppData\Local\Temp\war3_Install.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-09-16 17:15




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: () (Fixed) (Total:297.99 GB) (Free:68.19 GB) NTFS
Drive e: (DISK2) (CDROM) (Total:0.42 GB) (Free:0 GB) CDFS

Available physical RAM: 1122.61 MB
Total physical RAM: 3573.97 MB
Percentage of memory in use: 68%

==================== MBR and Partition Table ==================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 09225B87)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=298 GB) - (Type=07 NTFS)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-1.job => C:\Program Files (x86)\Apps Hat\Apps Hat-codedownloader.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-11.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-11.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-5.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-5_user.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.exeú/UzXVbGYj='Apps Hat' /RJtXNlqNn=48559 /VLtBCp='000820' /YlIEdT='0' /EJiOLewi='appshatmadness' /gKzzwjXKs=C415103B5CF443E4AD2B7DCE5C5CA1E5IE /UiMfg=86411a8da8bbcb510b30f6ba4068b8a9 /komTECIG=1_34_07_29 /GipKCg=1.34.7.29 /oxzwkVw=1407062321 /HyfScLolu=http://stats.infogenservice.com /AoEWZhoYb=http://errors.infogenservice.com /twfIanQ=http://js.infogenservice.com /EhfoJZqd=opera /kksEOXn /EwbjBAZa=Apps Hat /ifHpua7f937b1-1822-4e15-b817-3290385ebd30.dll /QGUGHMICl72ff3edf-b1ca-4260-822e-df33b957a044.dll /RJiEg117f4961-35a2-4fcf-a2ed-5d6306d1ff22-64.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.exe/frILTi /UzXVbGYj='Apps Hat' /RJtXNlqNn=48559 /VLtBCp='000820' /YlIEdT='0' /EJiOLewi='appshatmadness' /gKzzwjXKs=C415103B5CF443E4AD2B7DCE5C5CA1E5IE /UiMfg=86411a8da8bbcb510b30f6ba4068b8a9 /komTECIG=1_34_07_29 /GipKCg=1.34.7.29 /oxzwkVw=1407062321 /HyfScLolu=http://stats.infogenservice.com /AoEWZhoYb=http://errors.infogenservice.com /twfIanQ=http://js.infogenservice.com /EhfoJZqd=opera /kksEOXn /EwbjBAZa=Apps Hat /ifHpua7f937b1-1822-4e15-b817-3290385ebd30.dll /QGUGHMICl72ff3edf-b1ca-4260-822e-df33b957a044.dll /RJiEg117f4961-35a2-4fcf-a2ed-5d6306d1ff22-64.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Ondra\Desktop" je 34235 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeBridge
"C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced SystemCare 7
"C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon
"C:\Users\Ondra\AppData\Roaming\BitTorrent\BitTorrent.exe" /MINIMIZED [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GoogleDriveSync
"C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe" /autostart [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IObit Malware Fighter
"C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype
"C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony PC Companion
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard
Re�im ECHO je vypnut.


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119546
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#2 Příspěvek od Rudy »

Zdravím!
Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

LecoQ
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 19 zář 2014 20:18

Re: Prosím o kontrolu logu

#3 Příspěvek od LecoQ »

# AdwCleaner v3.310 - Report created 22/09/2014 at 17:47:19
# Updated 12/09/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Ondra - ONDRA-PC
# Running from : C:\Users\Ondra\Desktop\adwcleaner_3.310.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : globalUpdate
[#] Service Deleted : globalUpdatem
[#] Service Deleted : ProtectMonitor
Service Deleted : {3f538614-b636-4023-9ec2-564ada4b07b3}w64
Service Deleted : {587cb346-a3d8-4884-b39b-f0ed918b6f96}w64

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\apn
Folder Deleted : C:\ProgramData\Conduit
Folder Deleted : C:\ProgramData\NCH Software
Folder Deleted : C:\ProgramData\Trymedia
Folder Deleted : C:\ProgramData\TAAkeTheiCooupon
Folder Deleted : C:\ProgramData\websAvee
Folder Deleted : C:\ProgramData\YoutubeAdblocker
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TornTV.com
Folder Deleted : C:\Program Files (x86)\Conduit
Folder Deleted : C:\Program Files (x86)\eSupport.com
Folder Deleted : C:\Program Files (x86)\globalUpdate
Folder Deleted : C:\Program Files (x86)\Gophoto.it
Folder Deleted : C:\Program Files (x86)\HulaToo
Folder Deleted : C:\Program Files (x86)\NCH Software
Folder Deleted : C:\Program Files (x86)\trolatunt
Folder Deleted : C:\Program Files (x86)\Common Files\DVDVideoSoft\TB
Folder Deleted : C:\Windows\SysWOW64\SearchProtect
Folder Deleted : C:\Program Files\PCDApp
Folder Deleted : C:\Users\Administrator\AppData\Local\torch
Folder Deleted : C:\Users\Guest\AppData\Local\torch
Folder Deleted : C:\Users\Ondra\AppData\Local\Conduit
Folder Deleted : C:\Users\Ondra\AppData\Local\eSupport.com
Folder Deleted : C:\Users\Ondra\AppData\Local\genienext
Folder Deleted : C:\Users\Ondra\AppData\Local\globalUpdate
Folder Deleted : C:\Users\Ondra\AppData\Local\Mobogenie
Folder Deleted : C:\Users\Ondra\AppData\Local\torch
Folder Deleted : C:\Users\Ondra\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\Ondra\AppData\Roaming\goforfiles
Folder Deleted : C:\Users\Ondra\AppData\Roaming\NCH Software
Folder Deleted : C:\Users\Ondra\AppData\Roaming\newnext.me
Folder Deleted : C:\Users\Ondra\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\Ondra\AppData\Roaming\Solvusoft
Folder Deleted : C:\Users\Ondra\AppData\Roaming\YourFileDownloader
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\eibddjpbcffnjghpneapnoadkcilhooo
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eibddjpbcffnjghpneapnoadkcilhooo
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfgjcgpehigcobhfglmldpegochjnnoi
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfgjcgpehigcobhfglmldpegochjnnoi
[!] Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\eibddjpbcffnjghpneapnoadkcilhooo
[!] Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eibddjpbcffnjghpneapnoadkcilhooo
[!] Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfgjcgpehigcobhfglmldpegochjnnoi
[!] Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfgjcgpehigcobhfglmldpegochjnnoi
File Deleted : C:\Windows\System32\roboot64.exe
File Deleted : C:\Windows\System32\drivers\{3f538614-b636-4023-9ec2-564ada4b07b3}w64.sys
File Deleted : C:\Windows\System32\drivers\{587cb346-a3d8-4884-b39b-f0ed918b6f96}w64.sys
File Deleted : C:\Users\Ondra\daemonprocess.txt

***** [ Scheduled Tasks ] *****

Task Deleted : globalUpdateUpdateTaskMachineCore
Task Deleted : globalUpdateUpdateTaskMachineUA
Task Deleted : GoforFilesUpdate
Task Deleted : LaunchSignup
Task Deleted : YourFile DownloaderUpdate
Task Deleted : 117f4961-35a2-4fcf-a2ed-5d6306d1ff22-1
Task Deleted : 117f4961-35a2-4fcf-a2ed-5d6306d1ff22-11
Task Deleted : 117f4961-35a2-4fcf-a2ed-5d6306d1ff22-5
Task Deleted : 117f4961-35a2-4fcf-a2ed-5d6306d1ff22-5_user

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\APN_ATU3__RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\APN_ATU3__RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\GoforFiles_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\GoforFiles_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Mobogenie_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Mobogenie_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Key Deleted : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5F189DF5-2D05-472B-9091-84D9848AE48B}{1a34a8e0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5F189DF5-2D05-472B-9091-84D9848AE48B}{84ef8d51}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{0BDDE35F-64F7-49C3-99B2-404E899C49F7}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{24236608-609C-42C5-B13C-A8A3EC921850}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{28B1A706-4B97-4EB1-8B32-125042685AD9}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{33575A26-D9CF-40C6-8A3E-116F17201C7F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4BDFD19F-93D7-49CE-B554-5C215FDC0136}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{7307CF0F-7173-4FBF-8649-B149916DD322}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{80A5E38C-5F6B-485F-BD97-0B5BE991FAD5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9544D727-A26F-4D57-AF38-4496088640EA}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{AC4C30BF-7D5F-4EAB-9C2A-454178F079AA}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{BC6F9C26-93EA-4C6D-A4A7-C1FA333B4BBE}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E975527B-ABE7-40B3-B5C1-385016913E3B}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EFA4B5B1-6C76-4B20-BCDB-D41A93E79053}
Key Deleted : HKCU\Software\1ClickDownload
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\eSupport.com
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\GoforFiles
Key Deleted : HKCU\Software\InstalledBrowserExtensions
Key Deleted : HKCU\Software\RegisteredApplicationsEx
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\SOFTWARE\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\SOFTWARE\{77D46E27-0E41-4478-87A6-AABE6FBCF252}
Key Deleted : HKLM\SOFTWARE\Conduit
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\GoforFiles
Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : HKLM\SOFTWARE\Trymedia Systems
Key Deleted : HKLM\SOFTWARE\YourFileDownloader
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{90120000-00B2-0405-0000-0000000FF1CE}
Key Deleted : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17280


-\\ Mozilla Firefox v32.0 (x86 cs)

[ File : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\hiufmblb.default\prefs.js ]


-\\ Google Chrome v

*************************

AdwCleaner[R0].txt - [13768 octets] - [22/09/2014 17:09:17]
AdwCleaner[S0].txt - [13098 octets] - [22/09/2014 17:47:19]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [13159 octets] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119546
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#4 Příspěvek od Rudy »

Dejte nový log FRST.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

LecoQ
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 19 zář 2014 20:18

Re: Prosím o kontrolu logu

#5 Příspěvek od LecoQ »

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-09-2014
Ran by Ondra (administrator) on ONDRA-PC on 22-09-2014 19:22:49
Running from C:\Users\Ondra\Desktop
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(BitTorrent Inc.) C:\Users\Ondra\AppData\Roaming\BitTorrent\BitTorrent.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Realtek) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtlService.exe
(Realtek Semiconductor Corp.) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtWLan.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Microsoft Corporation) C:\Windows\System32\audiodg.exe
(forum.viry.cz) C:\Users\Ondra\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-07-31] (AVAST Software)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\.DEFAULT\...\RunOnce: [SpUninstallDeleteDir] => rmdir /s /q "\SearchProtect"
HKU\S-1-5-21-3021103483-654499671-1049248257-1000\...\Run: [BitTorrent] => C:\Users\Ondra\AppData\Roaming\BitTorrent\BitTorrent.exe [1417048 2014-09-19] (BitTorrent Inc.)
HKU\S-1-5-21-3021103483-654499671-1049248257-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-3021103483-654499671-1049248257-1000\...\MountPoints2: {b5e37a76-77b6-11e3-be75-001c231b1ffb} - E:\_AUTORUN\AUTORUN.EXE
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?ocid=iehp
SearchScopes: HKLM - {363B01D3-7E6F-43D2-8DEA-85993497B576} URL =
SearchScopes: HKCU - {363B01D3-7E6F-43D2-8DEA-85993497B576} URL = http://search.conduit.com/ResultsExt.as ... 25220&UM=2
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení k účtu Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Advanced SystemCare Browser Protection -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit)
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.4.0.1

FireFox:
========
FF ProfilePath: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\hiufmblb.default
FF SelectedSearchEngine: Google
FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_235.dll ()
FF Plugin-x32: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Ondra\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\NPOFF12.DLL (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-04-11]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-01-07]
FF Extension: No Name - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\hiufmblb.default\extensions\ascsurfingprotection@iobit.com [Not Found]
FF Extension: No Name - C:\Program Files (x86)\IObit Apps Toolbar\FF [Not Found]

Chrome:
=======
CHR HKCU\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\Ondra\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx [2014-08-29]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-18]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-18] (AVAST Software)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [File not signed]
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2152736 2014-05-04] (IObit)
R2 Realtek11nCU; C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtlService.exe [36864 2010-04-16] (Realtek) [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-21] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-07-18] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-07-18] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-07-18] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-07-18] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-07-18] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-07-18] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-07-18] (AVAST Software)
S3 aswTap; C:\Windows\System32\DRIVERS\aswTap.sys [44640 2014-01-07] (The OpenVPN Project)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-07-18] ()
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2014-01-10] ()
S3 cpudrv64; C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys [17864 2011-06-02] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-01-07] (Disc Soft Ltd)
R3 guardian2; C:\Windows\System32\Drivers\oz776x64.sys [87696 2014-06-06] (O2Micro)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2014-01-10] ()
S3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [748648 2010-06-15] (Realtek Semiconductor Corporation )
R3 RtlWlanu; C:\Windows\System32\DRIVERS\rtwlanu.sys [2976472 2014-06-06] (Realtek Semiconductor Corporation )
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [381440 2014-02-13] (Duplex Secure Ltd.)
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S2 SVKP; \??\C:\Windows\system32\SVKP.sys [X]
S3 WinRing0_1_2_0; \??\C:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-22 18:49 - 2014-09-22 18:49 - 00000010 _____ () C:\Users\Ondra\insta.txt
2014-09-22 17:12 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-09-22 17:09 - 2014-09-22 17:47 - 00000000 ____D () C:\AdwCleaner
2014-09-21 18:21 - 2003-05-09 15:24 - 00001371 _____ () C:\Users\Ondra\Desktop\grugtavccd.nfo
2014-09-21 18:21 - 2003-05-09 01:24 - 03088896 _____ () C:\Users\Ondra\Desktop\gta-vc.exe
2014-09-21 18:20 - 2014-09-21 18:20 - 01291997 _____ () C:\Users\Ondra\Downloads\grandtheftautovicecity-nocd-1_0-ENG.zip
2014-09-21 18:14 - 2014-09-21 18:14 - 00178800 _____ (Sony DADC Austria AG.) C:\Windows\SysWOW64\CmdLineExt_x64.dll
2014-09-21 12:56 - 2014-09-21 12:57 - 01373475 _____ () C:\Users\Ondra\Desktop\adwcleaner_3.310.exe
2014-09-21 10:48 - 2014-09-21 10:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-09-21 10:14 - 2014-09-21 10:14 - 00017264 _____ () C:\Users\Ondra\Desktop\stahování.htm
2014-09-19 21:07 - 2014-09-19 21:07 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Downloads\trz260C.tmp
2014-09-19 21:07 - 2014-09-19 21:07 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Desktop\FRSTLauncher.exe
2014-09-19 21:06 - 2014-09-19 21:07 - 02105856 _____ (Farbar) C:\Users\Ondra\Desktop\FRST64.exe
2014-09-19 21:05 - 2014-09-19 20:59 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Desktop\trzA152.tmp
2014-09-19 21:01 - 2014-09-22 19:23 - 00014272 _____ () C:\Users\Ondra\Desktop\FRST.txt
2014-09-19 21:00 - 2014-09-22 19:22 - 00000000 ____D () C:\FRST
2014-09-19 20:58 - 2014-09-19 20:57 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Desktop\trz3343.tmp
2014-09-19 20:56 - 2014-09-19 20:56 - 00080736 _____ () C:\Users\Ondra\Downloads\trz3C47.tmp
2014-09-19 18:34 - 2014-09-21 16:19 - 527306823 _____ () C:\Windows\MEMORY.DMP
2014-09-19 18:34 - 2014-09-19 18:35 - 00278208 _____ () C:\Windows\Minidump\091914-30685-01.dmp
2014-09-19 17:18 - 2014-09-21 11:02 - 00000000 ____D () C:\Users\Ondra\Desktop\2014 bordel
2014-09-19 16:12 - 2014-09-19 16:13 - 03249480 _____ (Unity Technologies ApS) C:\Users\Ondra\Downloads\UnityWebPlayer.exe
2014-09-18 19:34 - 2014-09-18 19:34 - 00002165 _____ () C:\Users\Ondra\Desktop\Heroes of Might and Magic® IV.lnk
2014-09-18 19:34 - 2014-09-18 19:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\3DO
2014-09-18 19:33 - 2014-09-18 19:33 - 00000000 ____D () C:\Program Files (x86)\3DO
2014-09-18 17:03 - 2014-09-18 17:04 - 00000000 ____D () C:\Users\Ondra\Downloads\Heroes IV Complete
2014-09-18 17:01 - 2014-09-18 17:01 - 00011373 _____ () C:\Users\Ondra\Downloads\[CzT]Heroes_of_Might_and_Magic_IV_Complete_CZ_version (1).torrent
2014-09-18 17:01 - 2014-09-18 17:01 - 00011372 _____ () C:\Users\Ondra\Downloads\[CzT]Heroes_of_Might_and_Magic_IV_Complete_CZ_version.torrent
2014-09-18 11:32 - 2014-09-18 11:33 - 113591962 _____ () C:\Users\Ondra\Documents\Student magic.wav
2014-09-18 10:37 - 2014-09-21 18:34 - 00000000 ____D () C:\Users\Ondra\Documents\GTA Vice City User Files
2014-09-18 10:26 - 2014-09-18 10:26 - 00000000 ____D () C:\Program Files (x86)\Rockstar Games
2014-09-18 10:22 - 2010-11-09 13:06 - 00000000 ____D () C:\Users\Ondra\Downloads\GTA Vice City
2014-09-18 08:28 - 2014-09-18 09:10 - 1467198962 ____R () C:\Users\Ondra\Downloads\GTA Vice City.rar
2014-09-18 08:28 - 2014-09-18 08:28 - 00014540 _____ () C:\Users\Ondra\Downloads\[CzT]Grand_Theft_Auto_GTA_Vice_City_2003_CZ_.torrent
2014-09-17 19:00 - 2014-09-17 19:00 - 02680104 _____ () C:\Users\Ondra\Downloads\lips_brush_39752.zip
2014-09-17 16:01 - 2014-09-22 17:49 - 00002138 _____ () C:\Windows\setupact.log
2014-09-17 16:01 - 2014-09-22 17:48 - 00002362 _____ () C:\Windows\PFRO.log
2014-09-17 16:01 - 2014-09-17 16:01 - 00000000 _____ () C:\Windows\setuperr.log
2014-09-14 16:09 - 2014-09-14 16:09 - 00001317 _____ () C:\Users\Public\Desktop\Ashampoo Burning Studio 6 FREE.lnk
2014-09-14 16:09 - 2014-09-14 16:09 - 00000214 _____ () C:\Users\Public\Desktop\Your Software Deals.url
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Users\Ondra\AppData\Local\ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\ProgramData\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Program Files (x86)\Ashampoo
2014-09-14 15:56 - 2014-09-14 16:02 - 12891208 _____ (Ashampoo GmbH & Co. KG ) C:\Users\Ondra\Downloads\ashampoo_burning_studio_6_free_6.84_13471.exe
2014-09-14 15:51 - 2014-09-14 15:51 - 00001239 _____ () C:\Users\Ondra\Desktop\DVDVideoSoft Free Studio.lnk
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\Users\Ondra\Documents\DVDVideoSoft
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft
2014-09-14 15:43 - 2014-09-14 15:50 - 08152757 _____ (DVDVideoSoft Limited. ) C:\Users\Ondra\Downloads\FreeDVDVideoBurner.exe
2014-09-14 15:33 - 2014-09-14 21:36 - 00391084 _____ () C:\Users\Ondra\Documents\Betlémy.XtoDVD
2014-09-14 15:29 - 2014-09-14 15:29 - 00000000 ____D () C:\ProgramData\vsosdk
2014-09-14 14:15 - 2014-09-14 16:31 - 00000000 ____D () C:\Users\Ondra\Documents\ConvertXtoDVD
2014-09-14 12:08 - 2014-09-16 22:09 - 00000000 ____D () C:\Users\Ondra\Documents\PcSetup
2014-09-14 12:08 - 2014-09-14 12:08 - 00099384 _____ () C:\Users\Ondra\AppData\Roaming\inst.exe
2014-09-14 12:08 - 2014-09-14 12:08 - 00082816 _____ (VSO Software) C:\Users\Ondra\AppData\Roaming\pcouffin.sys
2014-09-14 12:08 - 2014-09-14 12:08 - 00007859 _____ () C:\Users\Ondra\AppData\Roaming\pcouffin.cat
2014-09-14 12:08 - 2014-09-14 12:08 - 00000055 _____ () C:\Users\Ondra\AppData\Roaming\pcouffin.log
2014-09-14 12:08 - 2014-09-14 12:08 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Vso
2014-09-14 12:07 - 2014-09-16 22:09 - 00000000 ____D () C:\ProgramData\VSO
2014-09-14 12:07 - 2014-09-14 12:07 - 00001228 _____ () C:\Users\Ondra\Desktop\ConvertXToDVD 5.lnk
2014-09-14 12:07 - 2014-09-14 12:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VSO
2014-09-14 12:07 - 2014-09-14 12:07 - 00000000 ____D () C:\Program Files (x86)\VSO
2014-09-14 11:50 - 2014-09-14 12:03 - 00000000 ____D () C:\Users\Ondra\Downloads\VSO ConvertXtoDVD 5.2.0.13 Final
2014-09-14 11:49 - 2014-09-14 11:49 - 00018808 _____ () C:\Users\Ondra\Downloads\[CzT]VSO_ConvertXtoDVD_5_2_0_13_Final_CZ_EN_.torrent
2014-09-14 11:44 - 2014-09-14 11:45 - 00000000 ____D () C:\Users\Ondra\Desktop\dvd2013
2014-09-14 11:22 - 2014-09-14 11:23 - 00000000 ____D () C:\Users\Ondra\Desktop\OBRÁZKY 2013
2014-09-14 09:33 - 2014-09-14 09:37 - 00000000 ____D () C:\Users\Ondra\pomalé
2014-09-14 09:31 - 2014-09-14 09:45 - 17732488 _____ (Adobe Systems Incorporated) C:\Users\Ondra\Downloads\flashplayer_12_ax_debug.exe
2014-09-14 09:27 - 2014-09-14 10:11 - 91128531 _____ () C:\Users\Ondra\Downloads\The-Prophecy.avi
2014-09-14 08:55 - 2014-09-14 08:55 - 00000000 _____ () C:\asc_rdflag
2014-09-13 20:31 - 2014-09-13 20:31 - 00000093 _____ () C:\Users\Ondra\AppData\Local\fusioncache.dat
2014-09-13 19:53 - 2014-09-13 19:53 - 00000000 ____D () C:\Program Files (x86)\Cisco
2014-09-13 19:52 - 2014-09-13 19:52 - 00002136 _____ () C:\Users\Public\Desktop\REALTEK 11n USB Wireless LAN Utility.lnk
2014-09-13 19:52 - 2014-09-13 19:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REALTEK 11n USB Wireless LAN Utility
2014-09-13 19:52 - 2014-09-13 19:52 - 00000000 ____D () C:\Program Files (x86)\REALTEK
2014-09-13 19:52 - 2010-06-15 11:57 - 00748648 ____R (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtl8192cu.sys
2014-09-13 19:52 - 2009-04-02 10:27 - 00188416 _____ (Realtek Semiconductor Corp. ) C:\Windows\SysWOW64\RTLExtUI.dll
2014-09-13 19:52 - 2009-03-31 14:31 - 00380928 _____ (Realtek) C:\Windows\RtlUI2.exe
2014-09-13 19:52 - 2009-01-05 20:31 - 00000901 _____ () C:\Windows\RtlUI2.exe.manifest
2014-09-13 19:52 - 2008-07-01 12:31 - 00614400 _____ (Realtek Semiconductor Corp. ) C:\Windows\SysWOW64\Rtlihvs.dll
2014-09-13 19:10 - 2014-09-13 19:10 - 00001159 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-09-13 19:10 - 2014-09-13 19:10 - 00001147 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-09-13 19:09 - 2014-09-13 19:10 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-13 19:07 - 2014-09-13 19:07 - 00419488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-13 19:07 - 2014-09-13 19:07 - 00070304 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-13 19:04 - 2014-09-13 19:07 - 04140192 _____ (Adobe Systems Incorporated) C:\Users\Ondra\Downloads\adobe-flash-player_11.2.202.235nonIE.exe
2014-09-13 18:57 - 2014-09-13 18:58 - 00782000 _____ ( ) C:\Users\Ondra\Downloads\adobe_flash_player.exe
2014-09-13 17:48 - 2014-09-17 16:08 - 00003830 _____ () C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1410623299
2014-09-13 17:48 - 2014-09-13 17:48 - 00001135 _____ () C:\Users\Public\Desktop\Opera.lnk
2014-09-13 17:48 - 2014-09-13 17:48 - 00001135 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2014-09-13 15:31 - 2014-09-13 15:54 - 35100360 _____ () C:\Users\Ondra\Downloads\Firefox Setup 32.0.exe
2014-09-13 15:22 - 2014-09-13 15:23 - 00868360 _____ (Opera Software) C:\Users\Ondra\Downloads\Opera_NI_stable.exe
2014-09-12 05:04 - 2014-08-19 20:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-09-12 05:04 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-09-12 05:04 - 2014-08-19 01:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-09-12 05:04 - 2014-08-19 00:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-09-12 05:04 - 2014-08-19 00:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-09-12 05:04 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-09-12 05:04 - 2014-08-19 00:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-09-12 05:04 - 2014-08-19 00:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-09-12 05:04 - 2014-08-19 00:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-09-12 05:04 - 2014-08-19 00:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-09-12 05:04 - 2014-08-19 00:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-09-12 05:04 - 2014-08-19 00:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-09-12 05:04 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-09-12 05:04 - 2014-08-19 00:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-09-12 05:04 - 2014-08-19 00:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-09-12 05:04 - 2014-08-19 00:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-09-12 05:04 - 2014-08-19 00:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-09-12 05:04 - 2014-08-19 00:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-09-12 05:04 - 2014-08-19 00:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-09-12 05:04 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-09-12 05:04 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-09-12 05:04 - 2014-08-18 23:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-09-12 05:04 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-09-12 05:04 - 2014-08-18 23:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-09-12 05:04 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-09-12 05:04 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-09-12 05:04 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-09-12 05:04 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-09-12 05:04 - 2014-08-18 23:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-09-12 05:04 - 2014-08-18 23:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-09-12 05:04 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-09-12 05:04 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-09-12 05:04 - 2014-08-18 23:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-09-12 05:04 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-09-12 05:04 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-09-12 05:04 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-09-12 05:04 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-09-12 05:04 - 2014-08-18 23:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-09-12 05:04 - 2014-08-18 23:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-09-12 05:04 - 2014-08-18 23:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-09-12 05:04 - 2014-08-18 23:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-09-12 05:04 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-09-12 05:04 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-09-12 05:04 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-09-12 05:04 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-09-12 05:04 - 2014-08-18 23:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-09-12 05:04 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-09-12 05:04 - 2014-08-18 23:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-09-12 05:04 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-09-12 05:04 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-09-12 05:04 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-09-12 05:04 - 2014-08-18 22:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-09-12 05:04 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-09-12 05:04 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-09-12 05:04 - 2014-08-18 22:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-09-12 05:04 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-09-12 01:56 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-09-12 01:56 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-09-12 01:56 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-09-12 01:56 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-09-12 01:56 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-09-11 18:45 - 2014-09-11 18:45 - 00000000 ____D () C:\Users\Ondra\Downloads\Dan Sperry - Technical Dove Tosses
2014-09-11 17:12 - 2014-09-11 17:12 - 17328816 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2014-09-08 17:19 - 2014-09-08 17:19 - 00000020 ___SH () C:\Users\DefaultAppPool\ntuser.ini
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Šablony
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Soubory cookie
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Poslední
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Okolní tiskárny
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Okolní síť
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Nabídka Start
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Dokumenty
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Obrázky
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Hudba
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Filmy
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Data aplikací
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\AppData\Local\Data aplikací
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 ____D () C:\Users\DefaultAppPool
2014-09-08 17:19 - 2014-04-16 23:47 - 00000000 ____D () C:\Users\DefaultAppPool\AppData\Local\Microsoft Help
2014-09-08 17:19 - 2014-01-24 19:32 - 00000000 ____D () C:\Users\DefaultAppPool\AppData\Roaming\Macromedia
2014-09-08 17:19 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-09-08 17:19 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-09-06 20:11 - 2014-09-06 20:12 - 01892361 _____ () C:\Users\Ondra\Downloads\Minecraft-1.8-Mac-and-Windows-Cracked-Launcher-[AUTO-UPDATES]-by-Racad.zip
2014-09-06 20:08 - 2014-09-06 20:09 - 00000000 ____D () C:\Users\Ondra\Downloads\Moon Taxi Immersion Bundle
2014-09-06 20:07 - 2014-09-06 20:07 - 00000833 _____ () C:\Users\Ondra\Desktop\BitTorrent.lnk
2014-09-06 20:07 - 2014-09-06 20:07 - 00000813 _____ () C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\BitTorrent.lnk
2014-09-06 20:00 - 2014-09-06 20:00 - 00000000 ____D () C:\Users\Ondra\Desktop\bin
2014-09-06 19:58 - 2014-09-06 20:00 - 00000000 ____D () C:\Users\Ondra\Downloads\New Folder
2014-09-06 19:55 - 2014-09-06 19:57 - 54613936 ____R () C:\Users\Ondra\Downloads\New Folder.rar
2014-09-06 19:52 - 2014-09-06 19:52 - 00017214 _____ () C:\Users\Ondra\Downloads\[CzT]Minecraft_1_8_Full_verze.torrent
2014-09-05 18:43 - 2014-09-05 18:43 - 09755449 _____ () C:\Users\Ondra\Downloads\g2addon-2_6.exe
2014-09-05 18:40 - 2014-09-05 18:40 - 03031183 _____ (${MOD_COMP}) C:\Users\Ondra\Downloads\gothic2_fix-2.6.0.0-rev2.exe
2014-09-05 18:40 - 2014-09-05 18:40 - 00092970 _____ () C:\Users\Ondra\Downloads\gothic2_playerkit-2.6f.exe
2014-09-05 18:30 - 2014-09-05 18:31 - 02210677 _____ (Gothicz NET - Komunita © 2014) C:\Users\Ondra\Downloads\g2notr-systempack-1.0.exe
2014-09-02 17:43 - 2014-09-02 17:54 - 172814918 _____ () C:\Users\Ondra\Downloads\The-Game---Jesus-Piece-(Deluxe-Edition)-[iTunes]-(2012-Album).rar
2014-08-29 22:02 - 2014-09-05 17:33 - 00000000 ___RD () C:\Users\Ondra\Disk Google
2014-08-29 22:02 - 2014-08-29 22:02 - 00001674 _____ () C:\Users\Ondra\Desktop\Disk Google.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002042 _____ () C:\Users\Public\Desktop\Google Slides.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002040 _____ () C:\Users\Public\Desktop\Google Sheets.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002030 _____ () C:\Users\Public\Desktop\Google Docs.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2014-08-29 21:57 - 2014-08-29 21:58 - 00895120 _____ (Google Inc.) C:\Users\Ondra\Downloads\googledrivesync.exe
2014-08-28 23:18 - 2014-09-18 11:34 - 00015768 _____ () C:\Users\Ondra\Desktop\Untitled.veg
2014-08-28 23:18 - 2014-08-28 23:18 - 00017920 _____ () C:\Users\Ondra\Desktop\Untitled.veg.bak
2014-08-28 18:46 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-28 18:46 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-28 18:46 - 2014-08-23 02:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-08-26 10:13 - 2014-08-26 10:32 - 159434083 _____ () C:\Users\Ondra\Downloads\Nightwish---2007---Dark-Passion-Play.zip
2014-08-24 22:21 - 2014-08-24 22:21 - 00030180 _____ () C:\Users\Ondra\Documents\hrt 2.dvds
2014-08-24 21:42 - 2014-08-24 21:44 - 17533715 _____ () C:\Users\Ondra\Documents\PRACHASTÁ.wmv
2014-08-24 21:20 - 2014-08-24 21:32 - 30205901 _____ () C:\Users\Ondra\Documents\POČASÍCKO.wmv
2014-08-24 21:19 - 2014-08-24 21:19 - 01011632 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv.sfap0
2014-08-24 21:19 - 2014-08-24 21:19 - 00007968 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv.sfk
2014-08-24 21:15 - 2014-08-24 21:16 - 02277475 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv
2014-08-24 21:02 - 2014-08-24 21:09 - 18421727 _____ () C:\Users\Ondra\Documents\fantomas.wmv
2014-08-24 20:40 - 2014-08-24 20:54 - 45574153 _____ () C:\Users\Ondra\Documents\PEPA.wmv
2014-08-24 20:37 - 2014-08-24 20:54 - 00009424 _____ () C:\Users\Ondra\Documents\reportáž.wmv.sfk
2014-08-24 20:37 - 2014-08-24 20:37 - 01198232 _____ () C:\Users\Ondra\Documents\reportáž.wmv.sfap0
2014-08-24 20:25 - 2014-08-24 20:28 - 04637481 _____ () C:\Users\Ondra\Documents\reportáž.wmv
2014-08-24 20:24 - 2014-08-24 20:28 - 00241688 _____ () C:\Users\Ondra\Desktop\pepa.veg
2014-08-24 20:24 - 2014-08-24 20:24 - 00258000 _____ () C:\Users\Ondra\Desktop\pepa.veg.bak
2014-08-23 18:19 - 2014-08-23 18:24 - 00000000 ____D () C:\Users\Ondra\Desktop\Half Life Pack (1)
2014-08-23 13:08 - 2014-08-23 13:08 - 00014016 _____ () C:\Users\Ondra\Downloads\[CzT]Half_Life_1_Pack_specialni_kompilace_.torrent

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-22 19:23 - 2014-09-19 21:01 - 00014272 _____ () C:\Users\Ondra\Desktop\FRST.txt
2014-09-22 19:23 - 2014-01-07 18:41 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\BitTorrent
2014-09-22 19:22 - 2014-09-19 21:00 - 00000000 ____D () C:\FRST
2014-09-22 19:21 - 2014-01-17 16:38 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Skype
2014-09-22 19:03 - 2014-07-02 15:37 - 00000896 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-09-22 18:49 - 2014-09-22 18:49 - 00000010 _____ () C:\Users\Ondra\insta.txt
2014-09-22 18:49 - 2014-01-07 18:08 - 00000000 ____D () C:\Users\Ondra
2014-09-22 18:01 - 2011-04-12 10:34 - 00743836 _____ () C:\Windows\system32\perfh005.dat
2014-09-22 18:01 - 2011-04-12 10:34 - 00175166 _____ () C:\Windows\system32\perfc005.dat
2014-09-22 18:01 - 2009-07-14 07:13 - 01798342 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-22 17:50 - 2014-07-02 15:37 - 00000892 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-09-22 17:49 - 2014-09-17 16:01 - 00002138 _____ () C:\Windows\setupact.log
2014-09-22 17:49 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-22 17:48 - 2014-09-17 16:01 - 00002362 _____ () C:\Windows\PFRO.log
2014-09-22 17:48 - 2009-07-14 06:45 - 00025024 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-22 17:48 - 2009-07-14 06:45 - 00025024 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-22 17:47 - 2014-09-22 17:09 - 00000000 ____D () C:\AdwCleaner
2014-09-22 16:20 - 2014-01-07 19:26 - 00000000 ____D () C:\Users\Ondra\AppData\Local\Adobe
2014-09-22 16:11 - 2014-03-24 18:39 - 00000000 ____D () C:\ProgramData\ProductData
2014-09-22 16:11 - 2014-01-07 18:28 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-09-21 18:34 - 2014-09-18 10:37 - 00000000 ____D () C:\Users\Ondra\Documents\GTA Vice City User Files
2014-09-21 18:20 - 2014-09-21 18:20 - 01291997 _____ () C:\Users\Ondra\Downloads\grandtheftautovicecity-nocd-1_0-ENG.zip
2014-09-21 18:14 - 2014-09-21 18:14 - 00178800 _____ (Sony DADC Austria AG.) C:\Windows\SysWOW64\CmdLineExt_x64.dll
2014-09-21 16:19 - 2014-09-19 18:34 - 527306823 _____ () C:\Windows\MEMORY.DMP
2014-09-21 16:19 - 2014-01-09 18:16 - 00000000 ____D () C:\Windows\Minidump
2014-09-21 12:57 - 2014-09-21 12:56 - 01373475 _____ () C:\Users\Ondra\Desktop\adwcleaner_3.310.exe
2014-09-21 12:12 - 2014-08-21 15:16 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\vlc
2014-09-21 11:02 - 2014-09-19 17:18 - 00000000 ____D () C:\Users\Ondra\Desktop\2014 bordel
2014-09-21 10:48 - 2014-09-21 10:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-09-21 10:48 - 2014-01-17 16:38 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-09-21 10:48 - 2014-01-17 16:38 - 00000000 ____D () C:\ProgramData\Skype
2014-09-21 10:14 - 2014-09-21 10:14 - 00017264 _____ () C:\Users\Ondra\Desktop\stahování.htm
2014-09-19 22:10 - 2014-01-07 17:58 - 01655499 _____ () C:\Windows\WindowsUpdate.log
2014-09-19 21:07 - 2014-09-19 21:07 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Downloads\trz260C.tmp
2014-09-19 21:07 - 2014-09-19 21:07 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Desktop\FRSTLauncher.exe
2014-09-19 21:07 - 2014-09-19 21:06 - 02105856 _____ (Farbar) C:\Users\Ondra\Desktop\FRST64.exe
2014-09-19 20:59 - 2014-09-19 21:05 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Desktop\trzA152.tmp
2014-09-19 20:57 - 2014-09-19 20:58 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Desktop\trz3343.tmp
2014-09-19 20:56 - 2014-09-19 20:56 - 00080736 _____ () C:\Users\Ondra\Downloads\trz3C47.tmp
2014-09-19 18:35 - 2014-09-19 18:34 - 00278208 _____ () C:\Windows\Minidump\091914-30685-01.dmp
2014-09-19 16:13 - 2014-09-19 16:12 - 03249480 _____ (Unity Technologies ApS) C:\Users\Ondra\Downloads\UnityWebPlayer.exe
2014-09-19 16:13 - 2014-02-19 18:52 - 00000000 ____D () C:\Users\Ondra\AppData\Local\Unity
2014-09-19 14:36 - 2009-07-14 07:08 - 00032574 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-09-18 19:34 - 2014-09-18 19:34 - 00002165 _____ () C:\Users\Ondra\Desktop\Heroes of Might and Magic® IV.lnk
2014-09-18 19:34 - 2014-09-18 19:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\3DO
2014-09-18 19:34 - 2014-01-07 18:10 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-09-18 19:33 - 2014-09-18 19:33 - 00000000 ____D () C:\Program Files (x86)\3DO
2014-09-18 17:11 - 2014-07-02 18:51 - 00000000 ____D () C:\Program Files (x86)\Warcraft III
2014-09-18 17:10 - 2014-01-07 18:43 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\DAEMON Tools Lite
2014-09-18 17:04 - 2014-09-18 17:03 - 00000000 ____D () C:\Users\Ondra\Downloads\Heroes IV Complete
2014-09-18 17:01 - 2014-09-18 17:01 - 00011373 _____ () C:\Users\Ondra\Downloads\[CzT]Heroes_of_Might_and_Magic_IV_Complete_CZ_version (1).torrent
2014-09-18 17:01 - 2014-09-18 17:01 - 00011372 _____ () C:\Users\Ondra\Downloads\[CzT]Heroes_of_Might_and_Magic_IV_Complete_CZ_version.torrent
2014-09-18 11:34 - 2014-08-28 23:18 - 00015768 _____ () C:\Users\Ondra\Desktop\Untitled.veg
2014-09-18 11:33 - 2014-09-18 11:32 - 113591962 _____ () C:\Users\Ondra\Documents\Student magic.wav
2014-09-18 10:37 - 2014-01-10 15:22 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2014-09-18 10:27 - 2014-01-29 22:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2014-09-18 10:26 - 2014-09-18 10:26 - 00000000 ____D () C:\Program Files (x86)\Rockstar Games
2014-09-18 09:10 - 2014-09-18 08:28 - 1467198962 ____R () C:\Users\Ondra\Downloads\GTA Vice City.rar
2014-09-18 08:28 - 2014-09-18 08:28 - 00014540 _____ () C:\Users\Ondra\Downloads\[CzT]Grand_Theft_Auto_GTA_Vice_City_2003_CZ_.torrent
2014-09-17 19:00 - 2014-09-17 19:00 - 02680104 _____ () C:\Users\Ondra\Downloads\lips_brush_39752.zip
2014-09-17 16:08 - 2014-09-13 17:48 - 00003830 _____ () C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1410623299
2014-09-17 16:08 - 2014-08-02 15:41 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-09-17 16:08 - 2014-01-16 20:13 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-09-17 16:01 - 2014-09-17 16:01 - 00000000 _____ () C:\Windows\setuperr.log
2014-09-16 22:09 - 2014-09-14 12:08 - 00000000 ____D () C:\Users\Ondra\Documents\PcSetup
2014-09-16 22:09 - 2014-09-14 12:07 - 00000000 ____D () C:\ProgramData\VSO
2014-09-14 21:36 - 2014-09-14 15:33 - 00391084 _____ () C:\Users\Ondra\Documents\Betlémy.XtoDVD
2014-09-14 18:32 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-09-14 16:31 - 2014-09-14 14:15 - 00000000 ____D () C:\Users\Ondra\Documents\ConvertXtoDVD
2014-09-14 16:09 - 2014-09-14 16:09 - 00001317 _____ () C:\Users\Public\Desktop\Ashampoo Burning Studio 6 FREE.lnk
2014-09-14 16:09 - 2014-09-14 16:09 - 00000214 _____ () C:\Users\Public\Desktop\Your Software Deals.url
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Users\Ondra\AppData\Local\ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\ProgramData\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Program Files (x86)\Ashampoo
2014-09-14 16:02 - 2014-09-14 15:56 - 12891208 _____ (Ashampoo GmbH & Co. KG ) C:\Users\Ondra\Downloads\ashampoo_burning_studio_6_free_6.84_13471.exe
2014-09-14 15:51 - 2014-09-14 15:51 - 00001239 _____ () C:\Users\Ondra\Desktop\DVDVideoSoft Free Studio.lnk
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\Users\Ondra\Documents\DVDVideoSoft
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft
2014-09-14 15:50 - 2014-09-14 15:43 - 08152757 _____ (DVDVideoSoft Limited. ) C:\Users\Ondra\Downloads\FreeDVDVideoBurner.exe
2014-09-14 15:39 - 2011-04-12 10:45 - 00000000 ___RD () C:\Users\Public\Recorded TV
2014-09-14 15:29 - 2014-09-14 15:29 - 00000000 ____D () C:\ProgramData\vsosdk
2014-09-14 12:08 - 2014-09-14 12:08 - 00099384 _____ () C:\Users\Ondra\AppData\Roaming\inst.exe
2014-09-14 12:08 - 2014-09-14 12:08 - 00082816 _____ (VSO Software) C:\Users\Ondra\AppData\Roaming\pcouffin.sys
2014-09-14 12:08 - 2014-09-14 12:08 - 00007859 _____ () C:\Users\Ondra\AppData\Roaming\pcouffin.cat
2014-09-14 12:08 - 2014-09-14 12:08 - 00000055 _____ () C:\Users\Ondra\AppData\Roaming\pcouffin.log
2014-09-14 12:08 - 2014-09-14 12:08 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Vso
2014-09-14 12:07 - 2014-09-14 12:07 - 00001228 _____ () C:\Users\Ondra\Desktop\ConvertXToDVD 5.lnk
2014-09-14 12:07 - 2014-09-14 12:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VSO
2014-09-14 12:07 - 2014-09-14 12:07 - 00000000 ____D () C:\Program Files (x86)\VSO
2014-09-14 12:03 - 2014-09-14 11:50 - 00000000 ____D () C:\Users\Ondra\Downloads\VSO ConvertXtoDVD 5.2.0.13 Final
2014-09-14 11:49 - 2014-09-14 11:49 - 00018808 _____ () C:\Users\Ondra\Downloads\[CzT]VSO_ConvertXtoDVD_5_2_0_13_Final_CZ_EN_.torrent
2014-09-14 11:45 - 2014-09-14 11:44 - 00000000 ____D () C:\Users\Ondra\Desktop\dvd2013
2014-09-14 11:23 - 2014-09-14 11:22 - 00000000 ____D () C:\Users\Ondra\Desktop\OBRÁZKY 2013
2014-09-14 10:11 - 2014-09-14 09:27 - 91128531 _____ () C:\Users\Ondra\Downloads\The-Prophecy.avi
2014-09-14 09:47 - 2014-08-12 16:02 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\.minecraft
2014-09-14 09:45 - 2014-09-14 09:31 - 17732488 _____ (Adobe Systems Incorporated) C:\Users\Ondra\Downloads\flashplayer_12_ax_debug.exe
2014-09-14 09:37 - 2014-09-14 09:33 - 00000000 ____D () C:\Users\Ondra\pomalé
2014-09-14 08:55 - 2014-09-14 08:55 - 00000000 _____ () C:\asc_rdflag
2014-09-14 08:55 - 2014-03-24 23:02 - 80441344 _____ () C:\Windows\system32\config\SOFTWARE.iodefrag.bak
2014-09-14 08:55 - 2014-03-24 23:02 - 00311296 _____ () C:\Windows\system32\config\DEFAULT.iodefrag.bak
2014-09-14 08:55 - 2014-03-24 23:02 - 00061440 _____ () C:\Windows\system32\config\SAM.iodefrag.bak
2014-09-14 08:55 - 2014-03-24 23:02 - 00024576 _____ () C:\Windows\system32\config\SECURITY.iodefrag.bak
2014-09-13 20:31 - 2014-09-13 20:31 - 00000093 _____ () C:\Users\Ondra\AppData\Local\fusioncache.dat
2014-09-13 19:53 - 2014-09-13 19:53 - 00000000 ____D () C:\Program Files (x86)\Cisco
2014-09-13 19:52 - 2014-09-13 19:52 - 00002136 _____ () C:\Users\Public\Desktop\REALTEK 11n USB Wireless LAN Utility.lnk
2014-09-13 19:52 - 2014-09-13 19:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REALTEK 11n USB Wireless LAN Utility
2014-09-13 19:52 - 2014-09-13 19:52 - 00000000 ____D () C:\Program Files (x86)\REALTEK
2014-09-13 19:10 - 2014-09-13 19:10 - 00001159 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-09-13 19:10 - 2014-09-13 19:10 - 00001147 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-09-13 19:10 - 2014-09-13 19:09 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-13 19:09 - 2014-05-10 08:38 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-09-13 19:07 - 2014-09-13 19:07 - 00419488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-13 19:07 - 2014-09-13 19:07 - 00070304 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-13 19:07 - 2014-09-13 19:04 - 04140192 _____ (Adobe Systems Incorporated) C:\Users\Ondra\Downloads\adobe-flash-player_11.2.202.235nonIE.exe
2014-09-13 18:58 - 2014-09-13 18:57 - 00782000 _____ ( ) C:\Users\Ondra\Downloads\adobe_flash_player.exe
2014-09-13 17:48 - 2014-09-13 17:48 - 00001135 _____ () C:\Users\Public\Desktop\Opera.lnk
2014-09-13 17:48 - 2014-09-13 17:48 - 00001135 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2014-09-13 17:45 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-09-13 17:30 - 2014-07-02 15:36 - 00000000 ____D () C:\Program Files (x86)\Google
2014-09-13 17:30 - 2014-07-02 15:30 - 00000000 ____D () C:\Windows\SysWOW64\Adobe
2014-09-13 17:28 - 2014-01-07 18:09 - 00001393 _____ () C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-09-13 15:55 - 2014-01-07 18:36 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Mozilla
2014-09-13 15:54 - 2014-09-13 15:31 - 35100360 _____ () C:\Users\Ondra\Downloads\Firefox Setup 32.0.exe
2014-09-13 15:23 - 2014-09-13 15:22 - 00868360 _____ (Opera Software) C:\Users\Ondra\Downloads\Opera_NI_stable.exe
2014-09-12 20:39 - 2014-08-03 12:38 - 00000000 ____D () C:\Program Files (x86)\Apps Hat
2014-09-12 19:45 - 2014-08-03 12:40 - 00001876 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.job
2014-09-12 18:40 - 2014-08-03 12:40 - 00002636 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.job
2014-09-12 18:40 - 2014-08-03 12:40 - 00001926 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.job
2014-09-12 18:40 - 2014-08-03 12:40 - 00001364 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.job
2014-09-12 05:07 - 2014-01-16 21:02 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-09-11 18:45 - 2014-09-11 18:45 - 00000000 ____D () C:\Users\Ondra\Downloads\Dan Sperry - Technical Dove Tosses
2014-09-11 17:12 - 2014-09-11 17:12 - 17328816 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2014-09-08 17:19 - 2014-09-08 17:19 - 00000020 ___SH () C:\Users\DefaultAppPool\ntuser.ini
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Šablony
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Soubory cookie
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Poslední
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Okolní tiskárny
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Okolní síť
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Nabídka Start
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Dokumenty
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Obrázky
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Hudba
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Filmy
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Data aplikací
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\AppData\Local\Data aplikací
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 ____D () C:\Users\DefaultAppPool
2014-09-06 20:12 - 2014-09-06 20:11 - 01892361 _____ () C:\Users\Ondra\Downloads\Minecraft-1.8-Mac-and-Windows-Cracked-Launcher-[AUTO-UPDATES]-by-Racad.zip
2014-09-06 20:09 - 2014-09-06 20:08 - 00000000 ____D () C:\Users\Ondra\Downloads\Moon Taxi Immersion Bundle
2014-09-06 20:07 - 2014-09-06 20:07 - 00000833 _____ () C:\Users\Ondra\Desktop\BitTorrent.lnk
2014-09-06 20:07 - 2014-09-06 20:07 - 00000813 _____ () C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\BitTorrent.lnk
2014-09-06 20:00 - 2014-09-06 20:00 - 00000000 ____D () C:\Users\Ondra\Desktop\bin
2014-09-06 20:00 - 2014-09-06 19:58 - 00000000 ____D () C:\Users\Ondra\Downloads\New Folder
2014-09-06 19:57 - 2014-09-06 19:55 - 54613936 ____R () C:\Users\Ondra\Downloads\New Folder.rar
2014-09-06 19:52 - 2014-09-06 19:52 - 00017214 _____ () C:\Users\Ondra\Downloads\[CzT]Minecraft_1_8_Full_verze.torrent
2014-09-05 18:43 - 2014-09-05 18:43 - 09755449 _____ () C:\Users\Ondra\Downloads\g2addon-2_6.exe
2014-09-05 18:40 - 2014-09-05 18:40 - 03031183 _____ (${MOD_COMP}) C:\Users\Ondra\Downloads\gothic2_fix-2.6.0.0-rev2.exe
2014-09-05 18:40 - 2014-09-05 18:40 - 00092970 _____ () C:\Users\Ondra\Downloads\gothic2_playerkit-2.6f.exe
2014-09-05 18:33 - 2014-02-01 11:00 - 00000000 ____D () C:\Program Files (x86)\Piranha Bytes
2014-09-05 18:31 - 2014-09-05 18:30 - 02210677 _____ (Gothicz NET - Komunita © 2014) C:\Users\Ondra\Downloads\g2notr-systempack-1.0.exe
2014-09-05 17:33 - 2014-08-29 22:02 - 00000000 ___RD () C:\Users\Ondra\Disk Google
2014-09-02 17:54 - 2014-09-02 17:43 - 172814918 _____ () C:\Users\Ondra\Downloads\The-Game---Jesus-Piece-(Deluxe-Edition)-[iTunes]-(2012-Album).rar
2014-08-31 13:03 - 2009-07-14 06:45 - 05049960 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-08-29 22:02 - 2014-08-29 22:02 - 00001674 _____ () C:\Users\Ondra\Desktop\Disk Google.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002042 _____ () C:\Users\Public\Desktop\Google Slides.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002040 _____ () C:\Users\Public\Desktop\Google Sheets.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002030 _____ () C:\Users\Public\Desktop\Google Docs.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2014-08-29 22:01 - 2014-03-09 13:52 - 00000000 ____D () C:\Users\Ondra\AppData\Local\Google
2014-08-29 21:58 - 2014-08-29 21:57 - 00895120 _____ (Google Inc.) C:\Users\Ondra\Downloads\googledrivesync.exe
2014-08-29 21:58 - 2014-07-02 15:37 - 00003892 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-08-29 21:58 - 2014-07-02 15:37 - 00003640 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-08-28 23:18 - 2014-08-28 23:18 - 00017920 _____ () C:\Users\Ondra\Desktop\Untitled.veg.bak
2014-08-26 10:32 - 2014-08-26 10:13 - 159434083 _____ () C:\Users\Ondra\Downloads\Nightwish---2007---Dark-Passion-Play.zip
2014-08-25 15:02 - 2014-01-11 17:37 - 00000000 ____D () C:\ProgramData\Sony
2014-08-25 15:02 - 2014-01-11 17:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2014-08-25 14:55 - 2014-08-20 23:19 - 00000000 ____D () C:\Program Files (x86)\GRETECH
2014-08-25 14:52 - 2014-01-08 20:54 - 00000000 ____D () C:\Program Files (x86)\IObit
2014-08-25 14:51 - 2014-08-16 17:43 - 00000000 ____D () C:\Program Files (x86)\Brany Skeldalu
2014-08-24 22:21 - 2014-08-24 22:21 - 00030180 _____ () C:\Users\Ondra\Documents\hrt 2.dvds
2014-08-24 21:44 - 2014-08-24 21:42 - 17533715 _____ () C:\Users\Ondra\Documents\PRACHASTÁ.wmv
2014-08-24 21:32 - 2014-08-24 21:20 - 30205901 _____ () C:\Users\Ondra\Documents\POČASÍCKO.wmv
2014-08-24 21:19 - 2014-08-24 21:19 - 01011632 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv.sfap0
2014-08-24 21:19 - 2014-08-24 21:19 - 00007968 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv.sfk
2014-08-24 21:16 - 2014-08-24 21:15 - 02277475 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv
2014-08-24 21:09 - 2014-08-24 21:02 - 18421727 _____ () C:\Users\Ondra\Documents\fantomas.wmv
2014-08-24 20:54 - 2014-08-24 20:40 - 45574153 _____ () C:\Users\Ondra\Documents\PEPA.wmv
2014-08-24 20:54 - 2014-08-24 20:37 - 00009424 _____ () C:\Users\Ondra\Documents\reportáž.wmv.sfk
2014-08-24 20:37 - 2014-08-24 20:37 - 01198232 _____ () C:\Users\Ondra\Documents\reportáž.wmv.sfap0
2014-08-24 20:28 - 2014-08-24 20:25 - 04637481 _____ () C:\Users\Ondra\Documents\reportáž.wmv
2014-08-24 20:28 - 2014-08-24 20:24 - 00241688 _____ () C:\Users\Ondra\Desktop\pepa.veg
2014-08-24 20:24 - 2014-08-24 20:24 - 00258000 _____ () C:\Users\Ondra\Desktop\pepa.veg.bak
2014-08-23 18:24 - 2014-08-23 18:19 - 00000000 ____D () C:\Users\Ondra\Desktop\Half Life Pack (1)
2014-08-23 13:08 - 2014-08-23 13:08 - 00014016 _____ () C:\Users\Ondra\Downloads\[CzT]Half_Life_1_Pack_specialni_kompilace_.torrent
2014-08-23 04:07 - 2014-08-28 18:46 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-23 03:45 - 2014-08-28 18:46 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-23 02:59 - 2014-08-28 18:46 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys

Some content of TEMP:
====================
C:\Users\Ondra\AppData\Local\Temp\CloudBackup5829.exe
C:\Users\Ondra\AppData\Local\Temp\Quarantine.exe
C:\Users\Ondra\AppData\Local\Temp\SIntf16.dll
C:\Users\Ondra\AppData\Local\Temp\SIntf32.dll
C:\Users\Ondra\AppData\Local\Temp\SIntfNT.dll
C:\Users\Ondra\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Ondra\AppData\Local\Temp\vcredist_x64.exe
C:\Users\Ondra\AppData\Local\Temp\war3_Install.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.exeú/UzXVbGYj='Apps Hat' /RJtXNlqNn=48559 /VLtBCp='000820' /YlIEdT='0' /EJiOLewi='appshatmadness' /gKzzwjXKs=C415103B5CF443E4AD2B7DCE5C5CA1E5IE /UiMfg=86411a8da8bbcb510b30f6ba4068b8a9 /komTECIG=1_34_07_29 /GipKCg=1.34.7.29 /oxzwkVw=1407062321 /HyfScLolu=http://stats.infogenservice.com /AoEWZhoYb=http://errors.infogenservice.com /twfIanQ=http://js.infogenservice.com /EhfoJZqd=opera /kksEOXn /EwbjBAZa=Apps Hat /ifHpua7f937b1-1822-4e15-b817-3290385ebd30.dll /QGUGHMICl72ff3edf-b1ca-4260-822e-df33b957a044.dll /RJiEg117f4961-35a2-4fcf-a2ed-5d6306d1ff22-64.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.exe/frILTi /UzXVbGYj='Apps Hat' /RJtXNlqNn=48559 /VLtBCp='000820' /YlIEdT='0' /EJiOLewi='appshatmadness' /gKzzwjXKs=C415103B5CF443E4AD2B7DCE5C5CA1E5IE /UiMfg=86411a8da8bbcb510b30f6ba4068b8a9 /komTECIG=1_34_07_29 /GipKCg=1.34.7.29 /oxzwkVw=1407062321 /HyfScLolu=http://stats.infogenservice.com /AoEWZhoYb=http://errors.infogenservice.com /twfIanQ=http://js.infogenservice.com /EhfoJZqd=opera /kksEOXn /EwbjBAZa=Apps Hat /ifHpua7f937b1-1822-4e15-b817-3290385ebd30.dll /QGUGHMICl72ff3edf-b1ca-4260-822e-df33b957a044.dll /RJiEg117f4961-35a2-4fcf-a2ed-5d6306d1ff22-64.exe <==== ATTENTION
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Ondra\Desktop" je 37538 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeBridge
"C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced SystemCare 7
"C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon
"C:\Users\Ondra\AppData\Roaming\BitTorrent\BitTorrent.exe" /MINIMIZED [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GoogleDriveSync
"C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe" /autostart [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IObit Malware Fighter
"C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype
"C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony PC Companion
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard
Re�im ECHO je vypnut.


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119546
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#6 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
SearchScopes: HKCU - {363B01D3-7E6F-43D2-8DEA-85993497B576} URL = http://search.conduit.com/ResultsExt.as ... 25220&UM=2
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
FF Extension: No Name - C:\Program Files (x86)\IObit Apps Toolbar\FF [Not Found]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.job
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.job
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.job
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.job
C:\Users\Ondra\AppData\Local\Temp
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.exeú/UzXVbGYj='Apps Hat' /RJtXNlqNn=48559 /VLtBCp='000820' /YlIEdT='0' /EJiOLewi='appshatmadness' /gKzzwjXKs=C415103B5CF443E4AD2B7DCE5C5CA1E5IE /UiMfg=86411a8da8bbcb510b30f6ba4068b8a9 /komTECIG=1_34_07_29 /GipKCg=1.34.7.29 /oxzwkVw=1407062321 /HyfScLolu=http://stats.infogenservice.com /AoEWZhoYb=http://errors.infogenservice.com /twfIanQ=http://js.infogenservice.com /EhfoJZqd=opera /kksEOXn /EwbjBAZa=Apps Hat /ifHpua7f937b1-1822-4e15-b817-3290385ebd30.dll /QGUGHMICl72ff3edf-b1ca-4260-822e-df33b957a044.dll /RJiEg117f4961-35a2-4fcf-a2ed-5d6306d1ff22-64.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.exe/frILTi /UzXVbGYj='Apps Hat' /RJtXNlqNn=48559 /VLtBCp='000820' /YlIEdT='0' /EJiOLewi='appshatmadness' /gKzzwjXKs=C415103B5CF443E4AD2B7DCE5C5CA1E5IE /UiMfg=86411a8da8bbcb510b30f6ba4068b8a9 /komTECIG=1_34_07_29 /GipKCg=1.34.7.29 /oxzwkVw=1407062321 /HyfScLolu=http://stats.infogenservice.com /AoEWZhoYb=http://errors.infogenservice.com /twfIanQ=http://js.infogenservice.com /EhfoJZqd=opera /kksEOXn /EwbjBAZa=Apps Hat /ifHpua7f937b1-1822-4e15-b817-3290385ebd30.dll /QGUGHMICl72ff3edf-b1ca-4260-822e-df33b957a044.dll /RJiEg117f4961-35a2-4fcf-a2ed-5d6306d1ff22-64.exe <==== ATTENTION
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Na ploše máte příliš mnoho dat (37,5GB), což může zpomalovat start. Vytvořte třeba v C:\Users\Ondra nový adresář, kam všechna svá data přesuňte a pro snazší přístup na ploše vytvořte zástupce.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

LecoQ
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 19 zář 2014 20:18

Re: Prosím o kontrolu logu

#7 Příspěvek od LecoQ »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 12-09-2014
Ran by Ondra at 2014-09-22 19:57:04 Run:1
Running from C:\Users\Ondra\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
SearchScopes: HKCU - {363B01D3-7E6F-43D2-8DEA-85993497B576} URL = http://search.conduit.com/ResultsExt.as ... 25220&UM=2
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
FF Extension: No Name - C:\Program Files (x86)\IObit Apps Toolbar\FF [Not Found]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.job
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.job
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.job
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.job
C:\Users\Ondra\AppData\Local\Temp
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.exeú/UzXVbGYj='Apps Hat' /RJtXNlqNn=48559 /VLtBCp='000820' /YlIEdT='0' /EJiOLewi='appshatmadness' /gKzzwjXKs=C415103B5CF443E4AD2B7DCE5C5CA1E5IE /UiMfg=86411a8da8bbcb510b30f6ba4068b8a9 /komTECIG=1_34_07_29 /GipKCg=1.34.7.29 /oxzwkVw=1407062321 /HyfScLolu=http://stats.infogenservice.com /AoEWZhoYb=http://errors.infogenservice.com /twfIanQ=http://js.infogenservice.com /EhfoJZqd=opera /kksEOXn /EwbjBAZa=Apps Hat /ifHpua7f937b1-1822-4e15-b817-3290385ebd30.dll /QGUGHMICl72ff3edf-b1ca-4260-822e-df33b957a044.dll /RJiEg117f4961-35a2-4fcf-a2ed-5d6306d1ff22-64.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.exe/frILTi /UzXVbGYj='Apps Hat' /RJtXNlqNn=48559 /VLtBCp='000820' /YlIEdT='0' /EJiOLewi='appshatmadness' /gKzzwjXKs=C415103B5CF443E4AD2B7DCE5C5CA1E5IE /UiMfg=86411a8da8bbcb510b30f6ba4068b8a9 /komTECIG=1_34_07_29 /GipKCg=1.34.7.29 /oxzwkVw=1407062321 /HyfScLolu=http://stats.infogenservice.com /AoEWZhoYb=http://errors.infogenservice.com /twfIanQ=http://js.infogenservice.com /EhfoJZqd=opera /kksEOXn /EwbjBAZa=Apps Hat /ifHpua7f937b1-1822-4e15-b817-3290385ebd30.dll /QGUGHMICl72ff3edf-b1ca-4260-822e-df33b957a044.dll /RJiEg117f4961-35a2-4fcf-a2ed-5d6306d1ff22-64.exe <==== ATTENTION
End
*****************

"HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{363B01D3-7E6F-43D2-8DEA-85993497B576}" => Key deleted successfully.
"HKCR\CLSID\{363B01D3-7E6F-43D2-8DEA-85993497B576}" => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => value deleted successfully.
"HKCR\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}" => Key not found.
C:\Program Files (x86)\IObit Apps Toolbar\FF not found.
"HKLM\SOFTWARE\Policies\Google" => Key deleted successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.job => Moved successfully.
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.job => Moved successfully.
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.job => Moved successfully.
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.job => Moved successfully.

"C:\Users\Ondra\AppData\Local\Temp" directory move:

C:\Users\Ondra\AppData\Local\Temp\28322667.od => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\9BA95F3B-C8BC-4C0D-8159-BB9D4A1EF567.Diagnose.Admin.0.etl => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\AdobeARM.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\AdwCleaner.jpg => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\amt3.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\atcMRUList.idx => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\atc_DownloadsBackupMain.lst => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\atc_MP3Backup.lst => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\boost197250.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\boost320056.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\boost334568.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\boost563426.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CFG3F53.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CFG7051.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CFG8067.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CFG9213.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CFG9ED0.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CFGA075.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\chrome_installer.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Cleaning.ico => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Click.wav => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CloudBackup5829.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CProgram Files (x86)Opera24.0.1558.53opera_autoupdate.download.lock => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CProgram Files (x86)Opera24.0.1558.53opera_autoupdate.metrics.lock => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CProgram Files (x86)Opera24.0.1558.53_0opera_autoupdate.download.lock => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CProgram Files (x86)Opera24.0.1558.53_0opera_autoupdate.metrics.lock => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CProgram Files (x86)Opera24.0.1558.61opera_autoupdate.download.lock => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CProgram Files (x86)Opera24.0.1558.61opera_autoupdate.metrics.lock => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CVR2B5C.tmp.cvr => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\D87DF9F1-AA9D-4DE7-971B-C0FFE50FB532.Diagnose.Admin.0.etl => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\dd_vcredistMSI6278.txt => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\dd_vcredistUI6278.txt => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Donate.ico => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\dvdstyler.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_5cc1aAsnb0CzQPf => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_7dx0c4VMUlAUWmQ => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_C8z1eE2LCdD4gus => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_HseCSwDZVuvIDbl => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_J7lnkKzR3JcLgDI => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_KmxB36mQ6VH8icP => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_L1LCjFp7sehY48g => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_NVmRl75knaFtbRr => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_oM0QI2vBlgpEPWw => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_S5YFSeEQbEkISoa => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_XkK6JWiWF6p0E10 => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_zgEcXRHOgpa1xo8 => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\EULA.txt => Moved successfully.
Could not move "C:\Users\Ondra\AppData\Local\Temp\FXSAPIDebugLogFile.txt" => Scheduled to move on reboot.
C:\Users\Ondra\AppData\Local\Temp\log.txt => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\mpbtrk.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\oobelib.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera-crashlog-3344-1.txt => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera_crashreporter.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera_installer_20140913172828.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera_installer_20140913174809.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\PDApp.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Quarantine.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Report.ico => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Scan.ico => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\SIntf16.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\SIntf32.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\SIntfNT.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\SkypeSetup.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\swtag.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Uninstall.ico => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\vcredist_x64.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\war3_Install.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\wmplog00.sqm => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\wmsetup.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~2711.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~5C16.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~5F91.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~911A.bat => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~911A.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~A68D.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~DA88.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~DFE74E9CD999317B95.TMP => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~nsu.tmp\Au_.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{E8DBCEBF-B5BE-4D25-A501-F14B09D9F53B}\{EC8F71AD-B5E7-4D4A-A69C-CE78CCF4B8FF}\Win7.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{AFE6D066-033E-4D95-B34B-A29271CAEF66}\{EC8F71AD-B5E7-4D4A-A69C-CE78CCF4B8FF}\Win7.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{13EE01AC-7BE0-4C6D-B012-7462D9555432}\Setup.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\UnityWebPlayer\UnityWebPlayerUpdate.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Opera NetInstaller\net_installer.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\is-PQTK2.tmp\UninstallPromote.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\is-PQTK2.tmp\_isetup\_setup64.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\is-PQTK2.tmp\_isetup\_shfoldr.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\is-9R4SM.tmp\UninstallPromote.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\is-9R4SM.tmp\_isetup\_setup64.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\is-9R4SM.tmp\_isetup\_shfoldr.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\avastBCLTMP\default\Web Data => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\avastBCLTMP\chrome\Default\Web Data => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\6502\ProjectOnUninstall.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\6502\taskmgr.dll => Moved successfully.
Could not move "C:\Users\Ondra\AppData\Local\Temp" directory. => Scheduled to move on reboot.

C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.job not found.
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.job not found.
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.job not found.
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.job not found.

=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-09-22 20:00:27)<=

C:\Users\Ondra\AppData\Local\Temp\FXSAPIDebugLogFile.txt => Is moved successfully.
C:\Users\Ondra\AppData\Local\Temp => Moved successfully.

==== End of Fixlog ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119546
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#8 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

LecoQ
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 19 zář 2014 20:18

Re: Prosím o kontrolu logu

#9 Příspěvek od LecoQ »

Zatížení je nižší a počítač rychlejší. Díky :).

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119546
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#10 Příspěvek od Rudy »

Rádo se stalo! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno