Stránka 1 z 1

Prosím o kontrolu logu

Napsal: 19 zář 2014 20:22
od LecoQ
Zdravím, dlouhou dobu jsem používal ASC 7, dozvěděl jsem se, jakej je to hajzl a možná díky němu mám rapidní snížení výkonu.

zde je log, prosím o kontrolu

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-09-2014
Ran by Ondra (administrator) on ONDRA-PC on 19-09-2014 21:12:51
Running from C:\Users\Ondra\Desktop
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(BitTorrent Inc.) C:\Users\Ondra\AppData\Roaming\BitTorrent\BitTorrent.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Realtek) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtlService.exe
(Realtek Semiconductor Corp.) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtWLan.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
() C:\Program Files (x86)\Opera\24.0.1558.61\opera_crashreporter.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Microsoft Corporation) C:\Windows\System32\audiodg.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(forum.viry.cz) C:\Users\Ondra\Downloads\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-07-31] (AVAST Software)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\.DEFAULT\...\RunOnce: [SpUninstallDeleteDir] => rmdir /s /q "\SearchProtect"
HKU\S-1-5-21-3021103483-654499671-1049248257-1000\...\Run: [BitTorrent] => C:\Users\Ondra\AppData\Roaming\BitTorrent\BitTorrent.exe [1417048 2014-09-19] (BitTorrent Inc.)
HKU\S-1-5-21-3021103483-654499671-1049248257-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-3021103483-654499671-1049248257-1000\...\MountPoints2: {b5e37a76-77b6-11e3-be75-001c231b1ffb} - E:\_AUTORUN\AUTORUN.EXE
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?ocid=iehp
SearchScopes: HKLM - {363B01D3-7E6F-43D2-8DEA-85993497B576} URL =
SearchScopes: HKLM-x32 - DefaultScope {363B01D3-7E6F-43D2-8DEA-85993497B576} URL =
SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL =
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www.max-start.com/?q={searchTerm ... 5&tsp=5246
SearchScopes: HKCU - {363B01D3-7E6F-43D2-8DEA-85993497B576} URL = http://search.conduit.com/ResultsExt.as ... 25220&UM=2
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení k účtu Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Advanced SystemCare Browser Protection -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit)
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.4.0.1

FireFox:
========
FF ProfilePath: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\hiufmblb.default
FF SelectedSearchEngine: Google
FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_235.dll ()
FF Plugin-x32: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Ondra\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\NPOFF12.DLL (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-04-11]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-01-07]
FF Extension: No Name - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\hiufmblb.default\extensions\ascsurfingprotection@iobit.com [Not Found]
FF Extension: No Name - C:\Program Files (x86)\IObit Apps Toolbar\FF [Not Found]

Chrome:
=======
CHR HKCU\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\Ondra\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx [2014-08-29]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-18]
CHR HKLM-x32\...\Chrome\Extension: [pfmopbbadnfoelckkcmjjeaaegjpjjbk] - C:\Program Files (x86)\Gophoto.it\gophotoit16.crx [2013-08-08]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-18] (AVAST Software)
S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-08-03] (globalUpdate) [File not signed]
S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-08-03] (globalUpdate) [File not signed]
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [File not signed]
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2152736 2014-05-04] (IObit)
S2 ProtectMonitor; C:\Program Files\PCDApp\StartHelp.exe [97008 2014-04-10] () [File not signed]
R2 Realtek11nCU; C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtlService.exe [36864 2010-04-16] (Realtek) [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-21] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-07-18] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-07-18] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-07-18] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-07-18] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-07-18] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-07-18] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-07-18] (AVAST Software)
S3 aswTap; C:\Windows\System32\DRIVERS\aswTap.sys [44640 2014-01-07] (The OpenVPN Project)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-07-18] ()
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2014-01-10] ()
S3 cpudrv64; C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys [17864 2011-06-02] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-01-07] (Disc Soft Ltd)
R3 guardian2; C:\Windows\System32\Drivers\oz776x64.sys [87696 2014-06-06] (O2Micro)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2014-01-10] ()
S3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [748648 2010-06-15] (Realtek Semiconductor Corporation )
R3 RtlWlanu; C:\Windows\System32\DRIVERS\rtwlanu.sys [2976472 2014-06-06] (Realtek Semiconductor Corporation )
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [381440 2014-02-13] (Duplex Secure Ltd.)
R1 {3f538614-b636-4023-9ec2-564ada4b07b3}w64; C:\Windows\System32\drivers\{3f538614-b636-4023-9ec2-564ada4b07b3}w64.sys [61112 2014-06-27] (StdLib)
R1 {587cb346-a3d8-4884-b39b-f0ed918b6f96}w64; C:\Windows\System32\drivers\{587cb346-a3d8-4884-b39b-f0ed918b6f96}w64.sys [61120 2014-04-24] (StdLib)
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S2 SVKP; \??\C:\Windows\system32\SVKP.sys [X]
S3 WinRing0_1_2_0; \??\C:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-19 21:07 - 2014-09-19 21:07 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Downloads\trz260C.tmp
2014-09-19 21:07 - 2014-09-19 21:07 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Downloads\FRSTLauncher.exe
2014-09-19 21:06 - 2014-09-19 21:07 - 02105856 _____ (Farbar) C:\Users\Ondra\Downloads\FRST64.exe
2014-09-19 21:05 - 2014-09-19 20:59 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Desktop\trzA152.tmp
2014-09-19 21:01 - 2014-09-19 21:13 - 00016501 _____ () C:\Users\Ondra\Desktop\FRST.txt
2014-09-19 21:00 - 2014-09-19 21:12 - 00000000 ____D () C:\FRST
2014-09-19 20:59 - 2014-09-19 20:59 - 02105856 _____ (Farbar) C:\Users\Ondra\Desktop\FRST64.exe
2014-09-19 20:58 - 2014-09-19 20:57 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Desktop\trz3343.tmp
2014-09-19 20:56 - 2014-09-19 20:56 - 00080736 _____ () C:\Users\Ondra\Downloads\trz3C47.tmp
2014-09-19 18:34 - 2014-09-19 18:35 - 00278208 _____ () C:\Windows\Minidump\091914-30685-01.dmp
2014-09-19 18:34 - 2014-09-19 18:34 - 1212481607 _____ () C:\Windows\MEMORY.DMP
2014-09-19 17:18 - 2014-09-19 18:50 - 00000000 ____D () C:\Users\Ondra\Desktop\2014 bordel
2014-09-19 16:12 - 2014-09-19 16:13 - 03249480 _____ (Unity Technologies ApS) C:\Users\Ondra\Downloads\UnityWebPlayer.exe
2014-09-18 19:34 - 2014-09-18 19:34 - 00002165 _____ () C:\Users\Ondra\Desktop\Heroes of Might and Magic® IV.lnk
2014-09-18 19:34 - 2014-09-18 19:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\3DO
2014-09-18 19:33 - 2014-09-18 19:33 - 00000000 ____D () C:\Program Files (x86)\3DO
2014-09-18 17:03 - 2014-09-18 17:04 - 00000000 ____D () C:\Users\Ondra\Downloads\Heroes IV Complete
2014-09-18 17:01 - 2014-09-18 17:01 - 00011373 _____ () C:\Users\Ondra\Downloads\[CzT]Heroes_of_Might_and_Magic_IV_Complete_CZ_version (1).torrent
2014-09-18 17:01 - 2014-09-18 17:01 - 00011372 _____ () C:\Users\Ondra\Downloads\[CzT]Heroes_of_Might_and_Magic_IV_Complete_CZ_version.torrent
2014-09-18 11:32 - 2014-09-18 11:33 - 113591962 _____ () C:\Users\Ondra\Documents\Student magic.wav
2014-09-18 10:37 - 2014-09-18 10:37 - 00000000 ____D () C:\Users\Ondra\Documents\GTA Vice City User Files
2014-09-18 10:26 - 2014-09-18 10:26 - 00000000 ____D () C:\Program Files (x86)\Rockstar Games
2014-09-18 10:22 - 2010-11-09 13:06 - 00000000 ____D () C:\Users\Ondra\Downloads\GTA Vice City
2014-09-18 08:28 - 2014-09-18 09:10 - 1467198962 ____R () C:\Users\Ondra\Downloads\GTA Vice City.rar
2014-09-18 08:28 - 2014-09-18 08:28 - 00014540 _____ () C:\Users\Ondra\Downloads\[CzT]Grand_Theft_Auto_GTA_Vice_City_2003_CZ_.torrent
2014-09-17 19:00 - 2014-09-17 19:00 - 02680104 _____ () C:\Users\Ondra\Downloads\lips_brush_39752.zip
2014-09-17 16:01 - 2014-09-19 18:35 - 00000280 _____ () C:\Windows\setupact.log
2014-09-17 16:01 - 2014-09-17 16:01 - 00000584 _____ () C:\Windows\PFRO.log
2014-09-17 16:01 - 2014-09-17 16:01 - 00000000 _____ () C:\Windows\setuperr.log
2014-09-14 16:09 - 2014-09-14 16:09 - 00001317 _____ () C:\Users\Public\Desktop\Ashampoo Burning Studio 6 FREE.lnk
2014-09-14 16:09 - 2014-09-14 16:09 - 00000214 _____ () C:\Users\Public\Desktop\Your Software Deals.url
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Users\Ondra\AppData\Local\ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\ProgramData\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Program Files (x86)\Ashampoo
2014-09-14 15:56 - 2014-09-14 16:02 - 12891208 _____ (Ashampoo GmbH & Co. KG ) C:\Users\Ondra\Downloads\ashampoo_burning_studio_6_free_6.84_13471.exe
2014-09-14 15:51 - 2014-09-14 15:51 - 00001239 _____ () C:\Users\Ondra\Desktop\DVDVideoSoft Free Studio.lnk
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\Users\Ondra\Documents\DVDVideoSoft
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft
2014-09-14 15:43 - 2014-09-14 15:50 - 08152757 _____ (DVDVideoSoft Limited. ) C:\Users\Ondra\Downloads\FreeDVDVideoBurner.exe
2014-09-14 15:33 - 2014-09-14 21:36 - 00391084 _____ () C:\Users\Ondra\Documents\Betlémy.XtoDVD
2014-09-14 15:29 - 2014-09-14 15:29 - 00000000 ____D () C:\ProgramData\vsosdk
2014-09-14 14:15 - 2014-09-14 16:31 - 00000000 ____D () C:\Users\Ondra\Documents\ConvertXtoDVD
2014-09-14 12:08 - 2014-09-16 22:09 - 00000000 ____D () C:\Users\Ondra\Documents\PcSetup
2014-09-14 12:08 - 2014-09-14 12:08 - 00099384 _____ () C:\Users\Ondra\AppData\Roaming\inst.exe
2014-09-14 12:08 - 2014-09-14 12:08 - 00082816 _____ (VSO Software) C:\Users\Ondra\AppData\Roaming\pcouffin.sys
2014-09-14 12:08 - 2014-09-14 12:08 - 00007859 _____ () C:\Users\Ondra\AppData\Roaming\pcouffin.cat
2014-09-14 12:08 - 2014-09-14 12:08 - 00000055 _____ () C:\Users\Ondra\AppData\Roaming\pcouffin.log
2014-09-14 12:08 - 2014-09-14 12:08 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Vso
2014-09-14 12:07 - 2014-09-16 22:09 - 00000000 ____D () C:\ProgramData\VSO
2014-09-14 12:07 - 2014-09-14 12:07 - 00001228 _____ () C:\Users\Ondra\Desktop\ConvertXToDVD 5.lnk
2014-09-14 12:07 - 2014-09-14 12:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VSO
2014-09-14 12:07 - 2014-09-14 12:07 - 00000000 ____D () C:\Program Files (x86)\VSO
2014-09-14 11:50 - 2014-09-14 12:03 - 00000000 ____D () C:\Users\Ondra\Downloads\VSO ConvertXtoDVD 5.2.0.13 Final
2014-09-14 11:49 - 2014-09-14 11:49 - 00018808 _____ () C:\Users\Ondra\Downloads\[CzT]VSO_ConvertXtoDVD_5_2_0_13_Final_CZ_EN_.torrent
2014-09-14 11:44 - 2014-09-14 11:45 - 00000000 ____D () C:\Users\Ondra\Desktop\dvd2013
2014-09-14 11:22 - 2014-09-14 11:23 - 00000000 ____D () C:\Users\Ondra\Desktop\OBRÁZKY 2013
2014-09-14 09:33 - 2014-09-14 09:37 - 00000000 ____D () C:\Users\Ondra\pomalé
2014-09-14 09:31 - 2014-09-14 09:45 - 17732488 _____ (Adobe Systems Incorporated) C:\Users\Ondra\Downloads\flashplayer_12_ax_debug.exe
2014-09-14 09:27 - 2014-09-14 10:11 - 91128531 _____ () C:\Users\Ondra\Downloads\The-Prophecy.avi
2014-09-14 08:55 - 2014-09-14 08:55 - 00000000 _____ () C:\asc_rdflag
2014-09-13 20:31 - 2014-09-13 20:31 - 00000093 _____ () C:\Users\Ondra\AppData\Local\fusioncache.dat
2014-09-13 19:53 - 2014-09-13 19:53 - 00000000 ____D () C:\Program Files (x86)\Cisco
2014-09-13 19:52 - 2014-09-13 19:52 - 00002136 _____ () C:\Users\Public\Desktop\REALTEK 11n USB Wireless LAN Utility.lnk
2014-09-13 19:52 - 2014-09-13 19:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REALTEK 11n USB Wireless LAN Utility
2014-09-13 19:52 - 2014-09-13 19:52 - 00000000 ____D () C:\Program Files (x86)\REALTEK
2014-09-13 19:52 - 2010-06-15 11:57 - 00748648 ____R (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtl8192cu.sys
2014-09-13 19:52 - 2009-04-02 10:27 - 00188416 _____ (Realtek Semiconductor Corp. ) C:\Windows\SysWOW64\RTLExtUI.dll
2014-09-13 19:52 - 2009-03-31 14:31 - 00380928 _____ (Realtek) C:\Windows\RtlUI2.exe
2014-09-13 19:52 - 2009-01-05 20:31 - 00000901 _____ () C:\Windows\RtlUI2.exe.manifest
2014-09-13 19:52 - 2008-07-01 12:31 - 00614400 _____ (Realtek Semiconductor Corp. ) C:\Windows\SysWOW64\Rtlihvs.dll
2014-09-13 19:10 - 2014-09-13 19:10 - 00001159 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-09-13 19:10 - 2014-09-13 19:10 - 00001147 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-09-13 19:09 - 2014-09-13 19:10 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-13 19:08 - 2014-09-13 19:08 - 00004026 _____ () C:\Windows\System32\Tasks\LaunchSignup
2014-09-13 19:07 - 2014-09-13 19:07 - 00419488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-13 19:07 - 2014-09-13 19:07 - 00070304 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-13 19:04 - 2014-09-13 19:07 - 04140192 _____ (Adobe Systems Incorporated) C:\Users\Ondra\Downloads\adobe-flash-player_11.2.202.235nonIE.exe
2014-09-13 18:57 - 2014-09-13 18:58 - 00782000 _____ ( ) C:\Users\Ondra\Downloads\adobe_flash_player.exe
2014-09-13 17:48 - 2014-09-17 16:08 - 00003830 _____ () C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1410623299
2014-09-13 17:48 - 2014-09-13 17:48 - 00001135 _____ () C:\Users\Public\Desktop\Opera.lnk
2014-09-13 17:48 - 2014-09-13 17:48 - 00001135 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2014-09-13 15:31 - 2014-09-13 15:54 - 35100360 _____ () C:\Users\Ondra\Downloads\Firefox Setup 32.0.exe
2014-09-13 15:22 - 2014-09-13 15:23 - 00868360 _____ (Opera Software) C:\Users\Ondra\Downloads\Opera_NI_stable.exe
2014-09-12 05:04 - 2014-08-19 20:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-09-12 05:04 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-09-12 05:04 - 2014-08-19 01:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-09-12 05:04 - 2014-08-19 00:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-09-12 05:04 - 2014-08-19 00:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-09-12 05:04 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-09-12 05:04 - 2014-08-19 00:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-09-12 05:04 - 2014-08-19 00:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-09-12 05:04 - 2014-08-19 00:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-09-12 05:04 - 2014-08-19 00:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-09-12 05:04 - 2014-08-19 00:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-09-12 05:04 - 2014-08-19 00:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-09-12 05:04 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-09-12 05:04 - 2014-08-19 00:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-09-12 05:04 - 2014-08-19 00:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-09-12 05:04 - 2014-08-19 00:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-09-12 05:04 - 2014-08-19 00:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-09-12 05:04 - 2014-08-19 00:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-09-12 05:04 - 2014-08-19 00:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-09-12 05:04 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-09-12 05:04 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-09-12 05:04 - 2014-08-18 23:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-09-12 05:04 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-09-12 05:04 - 2014-08-18 23:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-09-12 05:04 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-09-12 05:04 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-09-12 05:04 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-09-12 05:04 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-09-12 05:04 - 2014-08-18 23:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-09-12 05:04 - 2014-08-18 23:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-09-12 05:04 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-09-12 05:04 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-09-12 05:04 - 2014-08-18 23:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-09-12 05:04 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-09-12 05:04 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-09-12 05:04 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-09-12 05:04 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-09-12 05:04 - 2014-08-18 23:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-09-12 05:04 - 2014-08-18 23:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-09-12 05:04 - 2014-08-18 23:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-09-12 05:04 - 2014-08-18 23:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-09-12 05:04 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-09-12 05:04 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-09-12 05:04 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-09-12 05:04 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-09-12 05:04 - 2014-08-18 23:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-09-12 05:04 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-09-12 05:04 - 2014-08-18 23:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-09-12 05:04 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-09-12 05:04 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-09-12 05:04 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-09-12 05:04 - 2014-08-18 22:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-09-12 05:04 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-09-12 05:04 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-09-12 05:04 - 2014-08-18 22:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-09-12 05:04 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-09-12 01:56 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-09-12 01:56 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-09-12 01:56 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-09-12 01:56 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-09-12 01:56 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-09-11 18:45 - 2014-09-11 18:45 - 00000000 ____D () C:\Users\Ondra\Downloads\Dan Sperry - Technical Dove Tosses
2014-09-11 17:12 - 2014-09-11 17:12 - 17328816 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2014-09-08 17:19 - 2014-09-08 17:19 - 00000020 ___SH () C:\Users\DefaultAppPool\ntuser.ini
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Šablony
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Soubory cookie
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Poslední
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Okolní tiskárny
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Okolní síť
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Nabídka Start
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Dokumenty
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Obrázky
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Hudba
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Filmy
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Data aplikací
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\AppData\Local\Data aplikací
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 ____D () C:\Users\DefaultAppPool
2014-09-08 17:19 - 2014-04-16 23:47 - 00000000 ____D () C:\Users\DefaultAppPool\AppData\Local\Microsoft Help
2014-09-08 17:19 - 2014-01-24 19:32 - 00000000 ____D () C:\Users\DefaultAppPool\AppData\Roaming\Macromedia
2014-09-08 17:19 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-09-08 17:19 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-09-06 20:11 - 2014-09-06 20:12 - 01892361 _____ () C:\Users\Ondra\Downloads\Minecraft-1.8-Mac-and-Windows-Cracked-Launcher-[AUTO-UPDATES]-by-Racad.zip
2014-09-06 20:08 - 2014-09-06 20:09 - 00000000 ____D () C:\Users\Ondra\Downloads\Moon Taxi Immersion Bundle
2014-09-06 20:07 - 2014-09-06 20:07 - 00000833 _____ () C:\Users\Ondra\Desktop\BitTorrent.lnk
2014-09-06 20:07 - 2014-09-06 20:07 - 00000813 _____ () C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\BitTorrent.lnk
2014-09-06 20:00 - 2014-09-06 20:00 - 00000000 ____D () C:\Users\Ondra\Desktop\bin
2014-09-06 19:58 - 2014-09-06 20:00 - 00000000 ____D () C:\Users\Ondra\Downloads\New Folder
2014-09-06 19:55 - 2014-09-06 19:57 - 54613936 ____R () C:\Users\Ondra\Downloads\New Folder.rar
2014-09-06 19:52 - 2014-09-06 19:52 - 00017214 _____ () C:\Users\Ondra\Downloads\[CzT]Minecraft_1_8_Full_verze.torrent
2014-09-05 18:43 - 2014-09-05 18:43 - 09755449 _____ () C:\Users\Ondra\Downloads\g2addon-2_6.exe
2014-09-05 18:40 - 2014-09-05 18:40 - 03031183 _____ (${MOD_COMP}) C:\Users\Ondra\Downloads\gothic2_fix-2.6.0.0-rev2.exe
2014-09-05 18:40 - 2014-09-05 18:40 - 00092970 _____ () C:\Users\Ondra\Downloads\gothic2_playerkit-2.6f.exe
2014-09-05 18:30 - 2014-09-05 18:31 - 02210677 _____ (Gothicz NET - Komunita © 2014) C:\Users\Ondra\Downloads\g2notr-systempack-1.0.exe
2014-09-02 17:43 - 2014-09-02 17:54 - 172814918 _____ () C:\Users\Ondra\Downloads\The-Game---Jesus-Piece-(Deluxe-Edition)-[iTunes]-(2012-Album).rar
2014-08-29 22:02 - 2014-09-05 17:33 - 00000000 ___RD () C:\Users\Ondra\Disk Google
2014-08-29 22:02 - 2014-08-29 22:02 - 00001674 _____ () C:\Users\Ondra\Desktop\Disk Google.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002042 _____ () C:\Users\Public\Desktop\Google Slides.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002040 _____ () C:\Users\Public\Desktop\Google Sheets.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002030 _____ () C:\Users\Public\Desktop\Google Docs.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2014-08-29 21:57 - 2014-08-29 21:58 - 00895120 _____ (Google Inc.) C:\Users\Ondra\Downloads\googledrivesync.exe
2014-08-28 23:18 - 2014-09-18 11:34 - 00015768 _____ () C:\Users\Ondra\Desktop\Untitled.veg
2014-08-28 23:18 - 2014-08-28 23:18 - 00017920 _____ () C:\Users\Ondra\Desktop\Untitled.veg.bak
2014-08-28 18:46 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-28 18:46 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-28 18:46 - 2014-08-23 02:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-08-26 10:13 - 2014-08-26 10:32 - 159434083 _____ () C:\Users\Ondra\Downloads\Nightwish---2007---Dark-Passion-Play.zip
2014-08-24 22:21 - 2014-08-24 22:21 - 00030180 _____ () C:\Users\Ondra\Documents\hrt 2.dvds
2014-08-24 21:42 - 2014-08-24 21:44 - 17533715 _____ () C:\Users\Ondra\Documents\PRACHASTÁ.wmv
2014-08-24 21:20 - 2014-08-24 21:32 - 30205901 _____ () C:\Users\Ondra\Documents\POČASÍCKO.wmv
2014-08-24 21:19 - 2014-08-24 21:19 - 01011632 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv.sfap0
2014-08-24 21:19 - 2014-08-24 21:19 - 00007968 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv.sfk
2014-08-24 21:15 - 2014-08-24 21:16 - 02277475 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv
2014-08-24 21:02 - 2014-08-24 21:09 - 18421727 _____ () C:\Users\Ondra\Documents\fantomas.wmv
2014-08-24 20:40 - 2014-08-24 20:54 - 45574153 _____ () C:\Users\Ondra\Documents\PEPA.wmv
2014-08-24 20:37 - 2014-08-24 20:54 - 00009424 _____ () C:\Users\Ondra\Documents\reportáž.wmv.sfk
2014-08-24 20:37 - 2014-08-24 20:37 - 01198232 _____ () C:\Users\Ondra\Documents\reportáž.wmv.sfap0
2014-08-24 20:25 - 2014-08-24 20:28 - 04637481 _____ () C:\Users\Ondra\Documents\reportáž.wmv
2014-08-24 20:24 - 2014-08-24 20:28 - 00241688 _____ () C:\Users\Ondra\Desktop\pepa.veg
2014-08-24 20:24 - 2014-08-24 20:24 - 00258000 _____ () C:\Users\Ondra\Desktop\pepa.veg.bak
2014-08-23 18:19 - 2014-08-23 18:24 - 00000000 ____D () C:\Users\Ondra\Desktop\Half Life Pack (1)
2014-08-23 13:08 - 2014-08-23 13:08 - 00014016 _____ () C:\Users\Ondra\Downloads\[CzT]Half_Life_1_Pack_specialni_kompilace_.torrent
2014-08-22 13:52 - 2014-08-22 15:07 - 1809489232 ____R () C:\Users\Ondra\Downloads\Velký Gatsby (2013) CZdabing.mkv
2014-08-22 13:51 - 2014-08-22 13:51 - 00017817 _____ () C:\Users\Ondra\Downloads\[CzT]Velky_Gatsby_The_Great_Gatsby_2013_CZ_.torrent
2014-08-21 18:54 - 2014-08-21 18:54 - 04477658 _____ () C:\Users\Ondra\Downloads\Capture_20140821.wmv
2014-08-21 15:16 - 2014-09-14 15:37 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\vlc
2014-08-21 11:36 - 2014-08-21 11:36 - 00001066 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-08-21 11:36 - 2014-08-21 11:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2014-08-21 11:35 - 2014-08-21 11:35 - 00000000 ____D () C:\Program Files (x86)\VideoLAN
2014-08-21 11:33 - 2014-08-21 11:34 - 31206605 _____ () C:\Users\Ondra\Downloads\vlc-setup.exe
2014-08-21 11:31 - 2014-08-21 11:32 - 24740645 _____ () C:\Users\Ondra\Downloads\vlc-2.1.5-win32.exe.opdownload
2014-08-20 23:20 - 2014-08-20 23:20 - 00000000 ____D () C:\Users\Ondra\Documents\GomPlayer
2014-08-20 23:19 - 2014-08-25 14:55 - 00000000 ____D () C:\Program Files (x86)\GRETECH
2014-08-20 23:00 - 2014-08-21 11:30 - 00000000 ____D () C:\Users\Ondra\Downloads\22 Jump Street 2014 TS Xvid Ac3 5.1-MiLLENiUM
2014-08-20 22:57 - 2014-08-21 11:27 - 00000000 ____D () C:\Users\Ondra\Downloads\22 Jump Street 2014 titulky
2014-08-20 16:36 - 2014-08-20 16:42 - 00007304 _____ () C:\Users\Ondra\Downloads\News_Intro-Maximilien_-1801238420.mp3.sfk
2014-08-20 16:22 - 2014-08-20 16:24 - 24759649 _____ () C:\Users\Ondra\Downloads\Sony Vegas Pro 10 - TutorialzXD Intro 18.rar

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-19 21:13 - 2014-09-19 21:01 - 00016501 _____ () C:\Users\Ondra\Desktop\FRST.txt
2014-09-19 21:13 - 2014-01-07 18:41 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\BitTorrent
2014-09-19 21:12 - 2014-09-19 21:00 - 00000000 ____D () C:\FRST
2014-09-19 21:07 - 2014-09-19 21:07 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Downloads\trz260C.tmp
2014-09-19 21:07 - 2014-09-19 21:07 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Downloads\FRSTLauncher.exe
2014-09-19 21:07 - 2014-09-19 21:06 - 02105856 _____ (Farbar) C:\Users\Ondra\Downloads\FRST64.exe
2014-09-19 21:03 - 2014-07-02 15:37 - 00000896 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-09-19 21:00 - 2014-01-17 16:38 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Skype
2014-09-19 20:59 - 2014-09-19 21:05 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Desktop\trzA152.tmp
2014-09-19 20:59 - 2014-09-19 20:59 - 02105856 _____ (Farbar) C:\Users\Ondra\Desktop\FRST64.exe
2014-09-19 20:57 - 2014-09-19 20:58 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Desktop\trz3343.tmp
2014-09-19 20:56 - 2014-09-19 20:56 - 00080736 _____ () C:\Users\Ondra\Downloads\trz3C47.tmp
2014-09-19 20:40 - 2009-07-14 06:45 - 00025024 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-19 20:40 - 2009-07-14 06:45 - 00025024 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-19 19:51 - 2014-01-07 17:58 - 01654794 _____ () C:\Windows\WindowsUpdate.log
2014-09-19 19:05 - 2011-04-12 10:34 - 00743836 _____ () C:\Windows\system32\perfh005.dat
2014-09-19 19:05 - 2011-04-12 10:34 - 00175166 _____ () C:\Windows\system32\perfc005.dat
2014-09-19 19:05 - 2009-07-14 07:13 - 01798342 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-19 18:50 - 2014-09-19 17:18 - 00000000 ____D () C:\Users\Ondra\Desktop\2014 bordel
2014-09-19 18:44 - 2014-08-03 12:39 - 00000896 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2014-09-19 18:40 - 2014-08-03 12:40 - 00001602 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-1.job
2014-09-19 18:40 - 2014-08-03 12:40 - 00001482 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-5_user.job
2014-09-19 18:40 - 2014-08-03 12:40 - 00001468 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-5.job
2014-09-19 18:39 - 2014-08-03 12:39 - 00003788 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-11.job
2014-09-19 18:36 - 2014-08-03 12:39 - 00000892 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2014-09-19 18:36 - 2014-07-02 15:37 - 00000892 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-09-19 18:36 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-19 18:35 - 2014-09-19 18:34 - 00278208 _____ () C:\Windows\Minidump\091914-30685-01.dmp
2014-09-19 18:35 - 2014-09-17 16:01 - 00000280 _____ () C:\Windows\setupact.log
2014-09-19 18:34 - 2014-09-19 18:34 - 1212481607 _____ () C:\Windows\MEMORY.DMP
2014-09-19 18:34 - 2014-01-09 18:16 - 00000000 ____D () C:\Windows\Minidump
2014-09-19 16:13 - 2014-09-19 16:12 - 03249480 _____ (Unity Technologies ApS) C:\Users\Ondra\Downloads\UnityWebPlayer.exe
2014-09-19 16:13 - 2014-02-19 18:52 - 00000000 ____D () C:\Users\Ondra\AppData\Local\Unity
2014-09-19 14:47 - 2014-01-07 19:26 - 00000000 ____D () C:\Users\Ondra\AppData\Local\Adobe
2014-09-19 14:36 - 2009-07-14 07:08 - 00032574 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-09-19 14:31 - 2014-03-24 18:39 - 00000000 ____D () C:\ProgramData\ProductData
2014-09-19 14:31 - 2014-01-07 18:28 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-09-18 19:34 - 2014-09-18 19:34 - 00002165 _____ () C:\Users\Ondra\Desktop\Heroes of Might and Magic® IV.lnk
2014-09-18 19:34 - 2014-09-18 19:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\3DO
2014-09-18 19:34 - 2014-01-07 18:10 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-09-18 19:33 - 2014-09-18 19:33 - 00000000 ____D () C:\Program Files (x86)\3DO
2014-09-18 17:11 - 2014-07-02 18:51 - 00000000 ____D () C:\Program Files (x86)\Warcraft III
2014-09-18 17:10 - 2014-01-07 18:43 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\DAEMON Tools Lite
2014-09-18 17:04 - 2014-09-18 17:03 - 00000000 ____D () C:\Users\Ondra\Downloads\Heroes IV Complete
2014-09-18 17:01 - 2014-09-18 17:01 - 00011373 _____ () C:\Users\Ondra\Downloads\[CzT]Heroes_of_Might_and_Magic_IV_Complete_CZ_version (1).torrent
2014-09-18 17:01 - 2014-09-18 17:01 - 00011372 _____ () C:\Users\Ondra\Downloads\[CzT]Heroes_of_Might_and_Magic_IV_Complete_CZ_version.torrent
2014-09-18 11:34 - 2014-08-28 23:18 - 00015768 _____ () C:\Users\Ondra\Desktop\Untitled.veg
2014-09-18 11:33 - 2014-09-18 11:32 - 113591962 _____ () C:\Users\Ondra\Documents\Student magic.wav
2014-09-18 10:37 - 2014-09-18 10:37 - 00000000 ____D () C:\Users\Ondra\Documents\GTA Vice City User Files
2014-09-18 10:37 - 2014-01-10 15:22 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2014-09-18 10:27 - 2014-01-29 22:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2014-09-18 10:26 - 2014-09-18 10:26 - 00000000 ____D () C:\Program Files (x86)\Rockstar Games
2014-09-18 09:10 - 2014-09-18 08:28 - 1467198962 ____R () C:\Users\Ondra\Downloads\GTA Vice City.rar
2014-09-18 08:28 - 2014-09-18 08:28 - 00014540 _____ () C:\Users\Ondra\Downloads\[CzT]Grand_Theft_Auto_GTA_Vice_City_2003_CZ_.torrent
2014-09-17 19:00 - 2014-09-17 19:00 - 02680104 _____ () C:\Users\Ondra\Downloads\lips_brush_39752.zip
2014-09-17 16:08 - 2014-09-13 17:48 - 00003830 _____ () C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1410623299
2014-09-17 16:08 - 2014-08-02 15:41 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-09-17 16:08 - 2014-01-16 20:13 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-09-17 16:01 - 2014-09-17 16:01 - 00000584 _____ () C:\Windows\PFRO.log
2014-09-17 16:01 - 2014-09-17 16:01 - 00000000 _____ () C:\Windows\setuperr.log
2014-09-16 22:09 - 2014-09-14 12:08 - 00000000 ____D () C:\Users\Ondra\Documents\PcSetup
2014-09-16 22:09 - 2014-09-14 12:07 - 00000000 ____D () C:\ProgramData\VSO
2014-09-14 21:36 - 2014-09-14 15:33 - 00391084 _____ () C:\Users\Ondra\Documents\Betlémy.XtoDVD
2014-09-14 18:32 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-09-14 16:31 - 2014-09-14 14:15 - 00000000 ____D () C:\Users\Ondra\Documents\ConvertXtoDVD
2014-09-14 16:09 - 2014-09-14 16:09 - 00001317 _____ () C:\Users\Public\Desktop\Ashampoo Burning Studio 6 FREE.lnk
2014-09-14 16:09 - 2014-09-14 16:09 - 00000214 _____ () C:\Users\Public\Desktop\Your Software Deals.url
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Users\Ondra\AppData\Local\ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\ProgramData\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Program Files (x86)\Ashampoo
2014-09-14 16:02 - 2014-09-14 15:56 - 12891208 _____ (Ashampoo GmbH & Co. KG ) C:\Users\Ondra\Downloads\ashampoo_burning_studio_6_free_6.84_13471.exe
2014-09-14 15:51 - 2014-09-14 15:51 - 00001239 _____ () C:\Users\Ondra\Desktop\DVDVideoSoft Free Studio.lnk
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\Users\Ondra\Documents\DVDVideoSoft
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft
2014-09-14 15:50 - 2014-09-14 15:43 - 08152757 _____ (DVDVideoSoft Limited. ) C:\Users\Ondra\Downloads\FreeDVDVideoBurner.exe
2014-09-14 15:39 - 2011-04-12 10:45 - 00000000 ___RD () C:\Users\Public\Recorded TV
2014-09-14 15:37 - 2014-08-21 15:16 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\vlc
2014-09-14 15:29 - 2014-09-14 15:29 - 00000000 ____D () C:\ProgramData\vsosdk
2014-09-14 12:08 - 2014-09-14 12:08 - 00099384 _____ () C:\Users\Ondra\AppData\Roaming\inst.exe
2014-09-14 12:08 - 2014-09-14 12:08 - 00082816 _____ (VSO Software) C:\Users\Ondra\AppData\Roaming\pcouffin.sys
2014-09-14 12:08 - 2014-09-14 12:08 - 00007859 _____ () C:\Users\Ondra\AppData\Roaming\pcouffin.cat
2014-09-14 12:08 - 2014-09-14 12:08 - 00000055 _____ () C:\Users\Ondra\AppData\Roaming\pcouffin.log
2014-09-14 12:08 - 2014-09-14 12:08 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Vso
2014-09-14 12:07 - 2014-09-14 12:07 - 00001228 _____ () C:\Users\Ondra\Desktop\ConvertXToDVD 5.lnk
2014-09-14 12:07 - 2014-09-14 12:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VSO
2014-09-14 12:07 - 2014-09-14 12:07 - 00000000 ____D () C:\Program Files (x86)\VSO
2014-09-14 12:03 - 2014-09-14 11:50 - 00000000 ____D () C:\Users\Ondra\Downloads\VSO ConvertXtoDVD 5.2.0.13 Final
2014-09-14 11:49 - 2014-09-14 11:49 - 00018808 _____ () C:\Users\Ondra\Downloads\[CzT]VSO_ConvertXtoDVD_5_2_0_13_Final_CZ_EN_.torrent
2014-09-14 11:45 - 2014-09-14 11:44 - 00000000 ____D () C:\Users\Ondra\Desktop\dvd2013
2014-09-14 11:23 - 2014-09-14 11:22 - 00000000 ____D () C:\Users\Ondra\Desktop\OBRÁZKY 2013
2014-09-14 10:11 - 2014-09-14 09:27 - 91128531 _____ () C:\Users\Ondra\Downloads\The-Prophecy.avi
2014-09-14 09:47 - 2014-08-12 16:02 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\.minecraft
2014-09-14 09:45 - 2014-09-14 09:31 - 17732488 _____ (Adobe Systems Incorporated) C:\Users\Ondra\Downloads\flashplayer_12_ax_debug.exe
2014-09-14 09:37 - 2014-09-14 09:33 - 00000000 ____D () C:\Users\Ondra\pomalé
2014-09-14 09:33 - 2014-01-07 18:08 - 00000000 ____D () C:\Users\Ondra
2014-09-14 08:55 - 2014-09-14 08:55 - 00000000 _____ () C:\asc_rdflag
2014-09-14 08:55 - 2014-03-24 23:02 - 80441344 _____ () C:\Windows\system32\config\SOFTWARE.iodefrag.bak
2014-09-14 08:55 - 2014-03-24 23:02 - 00311296 _____ () C:\Windows\system32\config\DEFAULT.iodefrag.bak
2014-09-14 08:55 - 2014-03-24 23:02 - 00061440 _____ () C:\Windows\system32\config\SAM.iodefrag.bak
2014-09-14 08:55 - 2014-03-24 23:02 - 00024576 _____ () C:\Windows\system32\config\SECURITY.iodefrag.bak
2014-09-13 20:31 - 2014-09-13 20:31 - 00000093 _____ () C:\Users\Ondra\AppData\Local\fusioncache.dat
2014-09-13 19:53 - 2014-09-13 19:53 - 00000000 ____D () C:\Program Files (x86)\Cisco
2014-09-13 19:52 - 2014-09-13 19:52 - 00002136 _____ () C:\Users\Public\Desktop\REALTEK 11n USB Wireless LAN Utility.lnk
2014-09-13 19:52 - 2014-09-13 19:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REALTEK 11n USB Wireless LAN Utility
2014-09-13 19:52 - 2014-09-13 19:52 - 00000000 ____D () C:\Program Files (x86)\REALTEK
2014-09-13 19:10 - 2014-09-13 19:10 - 00001159 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-09-13 19:10 - 2014-09-13 19:10 - 00001147 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-09-13 19:10 - 2014-09-13 19:09 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-13 19:09 - 2014-05-10 08:38 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-09-13 19:08 - 2014-09-13 19:08 - 00004026 _____ () C:\Windows\System32\Tasks\LaunchSignup
2014-09-13 19:07 - 2014-09-13 19:07 - 00419488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-13 19:07 - 2014-09-13 19:07 - 00070304 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-13 19:07 - 2014-09-13 19:04 - 04140192 _____ (Adobe Systems Incorporated) C:\Users\Ondra\Downloads\adobe-flash-player_11.2.202.235nonIE.exe
2014-09-13 18:58 - 2014-09-13 18:57 - 00782000 _____ ( ) C:\Users\Ondra\Downloads\adobe_flash_player.exe
2014-09-13 17:48 - 2014-09-13 17:48 - 00001135 _____ () C:\Users\Public\Desktop\Opera.lnk
2014-09-13 17:48 - 2014-09-13 17:48 - 00001135 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2014-09-13 17:45 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-09-13 17:30 - 2014-07-02 15:36 - 00000000 ____D () C:\Program Files (x86)\Google
2014-09-13 17:30 - 2014-07-02 15:30 - 00000000 ____D () C:\Windows\SysWOW64\Adobe
2014-09-13 17:28 - 2014-01-07 18:09 - 00001393 _____ () C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-09-13 15:55 - 2014-01-07 18:36 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Mozilla
2014-09-13 15:54 - 2014-09-13 15:31 - 35100360 _____ () C:\Users\Ondra\Downloads\Firefox Setup 32.0.exe
2014-09-13 15:23 - 2014-09-13 15:22 - 00868360 _____ (Opera Software) C:\Users\Ondra\Downloads\Opera_NI_stable.exe
2014-09-12 20:39 - 2014-08-03 12:38 - 00000000 ____D () C:\Program Files (x86)\Apps Hat
2014-09-12 20:33 - 2014-05-03 09:26 - 00000000 ____D () C:\Program Files\PCDApp
2014-09-12 19:45 - 2014-08-03 12:40 - 00001876 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.job
2014-09-12 18:40 - 2014-08-03 12:40 - 00002636 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.job
2014-09-12 18:40 - 2014-08-03 12:40 - 00001926 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.job
2014-09-12 18:40 - 2014-08-03 12:40 - 00001364 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.job
2014-09-12 05:07 - 2014-01-16 21:02 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-09-11 18:45 - 2014-09-11 18:45 - 00000000 ____D () C:\Users\Ondra\Downloads\Dan Sperry - Technical Dove Tosses
2014-09-11 17:12 - 2014-09-11 17:12 - 17328816 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2014-09-08 17:19 - 2014-09-08 17:19 - 00000020 ___SH () C:\Users\DefaultAppPool\ntuser.ini
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Šablony
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Soubory cookie
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Poslední
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Okolní tiskárny
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Okolní síť
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Nabídka Start
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Dokumenty
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Obrázky
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Hudba
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Filmy
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Data aplikací
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\AppData\Local\Data aplikací
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 ____D () C:\Users\DefaultAppPool
2014-09-06 20:12 - 2014-09-06 20:11 - 01892361 _____ () C:\Users\Ondra\Downloads\Minecraft-1.8-Mac-and-Windows-Cracked-Launcher-[AUTO-UPDATES]-by-Racad.zip
2014-09-06 20:09 - 2014-09-06 20:08 - 00000000 ____D () C:\Users\Ondra\Downloads\Moon Taxi Immersion Bundle
2014-09-06 20:07 - 2014-09-06 20:07 - 00000833 _____ () C:\Users\Ondra\Desktop\BitTorrent.lnk
2014-09-06 20:07 - 2014-09-06 20:07 - 00000813 _____ () C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\BitTorrent.lnk
2014-09-06 20:00 - 2014-09-06 20:00 - 00000000 ____D () C:\Users\Ondra\Desktop\bin
2014-09-06 20:00 - 2014-09-06 19:58 - 00000000 ____D () C:\Users\Ondra\Downloads\New Folder
2014-09-06 19:57 - 2014-09-06 19:55 - 54613936 ____R () C:\Users\Ondra\Downloads\New Folder.rar
2014-09-06 19:52 - 2014-09-06 19:52 - 00017214 _____ () C:\Users\Ondra\Downloads\[CzT]Minecraft_1_8_Full_verze.torrent
2014-09-05 18:43 - 2014-09-05 18:43 - 09755449 _____ () C:\Users\Ondra\Downloads\g2addon-2_6.exe
2014-09-05 18:40 - 2014-09-05 18:40 - 03031183 _____ (${MOD_COMP}) C:\Users\Ondra\Downloads\gothic2_fix-2.6.0.0-rev2.exe
2014-09-05 18:40 - 2014-09-05 18:40 - 00092970 _____ () C:\Users\Ondra\Downloads\gothic2_playerkit-2.6f.exe
2014-09-05 18:33 - 2014-02-01 11:00 - 00000000 ____D () C:\Program Files (x86)\Piranha Bytes
2014-09-05 18:31 - 2014-09-05 18:30 - 02210677 _____ (Gothicz NET - Komunita © 2014) C:\Users\Ondra\Downloads\g2notr-systempack-1.0.exe
2014-09-05 17:33 - 2014-08-29 22:02 - 00000000 ___RD () C:\Users\Ondra\Disk Google
2014-09-02 17:54 - 2014-09-02 17:43 - 172814918 _____ () C:\Users\Ondra\Downloads\The-Game---Jesus-Piece-(Deluxe-Edition)-[iTunes]-(2012-Album).rar
2014-08-31 13:03 - 2009-07-14 06:45 - 05049960 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-08-29 22:02 - 2014-08-29 22:02 - 00001674 _____ () C:\Users\Ondra\Desktop\Disk Google.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002042 _____ () C:\Users\Public\Desktop\Google Slides.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002040 _____ () C:\Users\Public\Desktop\Google Sheets.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002030 _____ () C:\Users\Public\Desktop\Google Docs.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2014-08-29 22:01 - 2014-03-09 13:52 - 00000000 ____D () C:\Users\Ondra\AppData\Local\Google
2014-08-29 21:58 - 2014-08-29 21:57 - 00895120 _____ (Google Inc.) C:\Users\Ondra\Downloads\googledrivesync.exe
2014-08-29 21:58 - 2014-07-02 15:37 - 00003892 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-08-29 21:58 - 2014-07-02 15:37 - 00003640 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-08-28 23:18 - 2014-08-28 23:18 - 00017920 _____ () C:\Users\Ondra\Desktop\Untitled.veg.bak
2014-08-26 10:32 - 2014-08-26 10:13 - 159434083 _____ () C:\Users\Ondra\Downloads\Nightwish---2007---Dark-Passion-Play.zip
2014-08-25 15:09 - 2014-01-17 16:38 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-08-25 15:02 - 2014-01-11 17:37 - 00000000 ____D () C:\ProgramData\Sony
2014-08-25 15:02 - 2014-01-11 17:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2014-08-25 14:55 - 2014-08-20 23:19 - 00000000 ____D () C:\Program Files (x86)\GRETECH
2014-08-25 14:52 - 2014-01-08 20:54 - 00000000 ____D () C:\Program Files (x86)\IObit
2014-08-25 14:51 - 2014-08-16 17:43 - 00000000 ____D () C:\Program Files (x86)\Brany Skeldalu
2014-08-24 22:21 - 2014-08-24 22:21 - 00030180 _____ () C:\Users\Ondra\Documents\hrt 2.dvds
2014-08-24 21:44 - 2014-08-24 21:42 - 17533715 _____ () C:\Users\Ondra\Documents\PRACHASTÁ.wmv
2014-08-24 21:32 - 2014-08-24 21:20 - 30205901 _____ () C:\Users\Ondra\Documents\POČASÍCKO.wmv
2014-08-24 21:19 - 2014-08-24 21:19 - 01011632 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv.sfap0
2014-08-24 21:19 - 2014-08-24 21:19 - 00007968 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv.sfk
2014-08-24 21:16 - 2014-08-24 21:15 - 02277475 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv
2014-08-24 21:09 - 2014-08-24 21:02 - 18421727 _____ () C:\Users\Ondra\Documents\fantomas.wmv
2014-08-24 20:54 - 2014-08-24 20:40 - 45574153 _____ () C:\Users\Ondra\Documents\PEPA.wmv
2014-08-24 20:54 - 2014-08-24 20:37 - 00009424 _____ () C:\Users\Ondra\Documents\reportáž.wmv.sfk
2014-08-24 20:37 - 2014-08-24 20:37 - 01198232 _____ () C:\Users\Ondra\Documents\reportáž.wmv.sfap0
2014-08-24 20:28 - 2014-08-24 20:25 - 04637481 _____ () C:\Users\Ondra\Documents\reportáž.wmv
2014-08-24 20:28 - 2014-08-24 20:24 - 00241688 _____ () C:\Users\Ondra\Desktop\pepa.veg
2014-08-24 20:24 - 2014-08-24 20:24 - 00258000 _____ () C:\Users\Ondra\Desktop\pepa.veg.bak
2014-08-23 18:24 - 2014-08-23 18:19 - 00000000 ____D () C:\Users\Ondra\Desktop\Half Life Pack (1)
2014-08-23 13:08 - 2014-08-23 13:08 - 00014016 _____ () C:\Users\Ondra\Downloads\[CzT]Half_Life_1_Pack_specialni_kompilace_.torrent
2014-08-23 04:07 - 2014-08-28 18:46 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-23 03:45 - 2014-08-28 18:46 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-23 02:59 - 2014-08-28 18:46 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-08-22 15:07 - 2014-08-22 13:52 - 1809489232 ____R () C:\Users\Ondra\Downloads\Velký Gatsby (2013) CZdabing.mkv
2014-08-22 13:51 - 2014-08-22 13:51 - 00017817 _____ () C:\Users\Ondra\Downloads\[CzT]Velky_Gatsby_The_Great_Gatsby_2013_CZ_.torrent
2014-08-22 11:59 - 2014-08-08 21:15 - 00000000 ____D () C:\Users\Ondra\Desktop\Zapomenutá Pravda
2014-08-21 18:54 - 2014-08-21 18:54 - 04477658 _____ () C:\Users\Ondra\Downloads\Capture_20140821.wmv
2014-08-21 18:15 - 2014-01-17 16:38 - 00000000 ____D () C:\ProgramData\Skype
2014-08-21 11:36 - 2014-08-21 11:36 - 00001066 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-08-21 11:36 - 2014-08-21 11:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2014-08-21 11:35 - 2014-08-21 11:35 - 00000000 ____D () C:\Program Files (x86)\VideoLAN
2014-08-21 11:34 - 2014-08-21 11:33 - 31206605 _____ () C:\Users\Ondra\Downloads\vlc-setup.exe
2014-08-21 11:32 - 2014-08-21 11:31 - 24740645 _____ () C:\Users\Ondra\Downloads\vlc-2.1.5-win32.exe.opdownload
2014-08-21 11:30 - 2014-08-20 23:00 - 00000000 ____D () C:\Users\Ondra\Downloads\22 Jump Street 2014 TS Xvid Ac3 5.1-MiLLENiUM
2014-08-21 11:27 - 2014-08-20 22:57 - 00000000 ____D () C:\Users\Ondra\Downloads\22 Jump Street 2014 titulky
2014-08-21 09:36 - 2014-08-12 11:24 - 00000000 ____D () C:\Program Files (x86)\Valve
2014-08-21 09:27 - 2014-01-11 17:37 - 00000000 ____D () C:\Program Files (x86)\Sony
2014-08-20 23:24 - 2014-06-02 18:30 - 00000000 __SHD () C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2014-08-20 23:20 - 2014-08-20 23:20 - 00000000 ____D () C:\Users\Ondra\Documents\GomPlayer
2014-08-20 23:19 - 2014-06-02 18:28 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\OpenCandy
2014-08-20 19:31 - 2014-04-16 19:32 - 00000000 ____D () C:\Users\Ondra\AppData\Local\Game Dev Tycoon
2014-08-20 16:42 - 2014-08-20 16:36 - 00007304 _____ () C:\Users\Ondra\Downloads\News_Intro-Maximilien_-1801238420.mp3.sfk
2014-08-20 16:25 - 2014-01-07 18:23 - 00113528 _____ () C:\Users\Ondra\AppData\Local\GDIPFONTCACHEV1.DAT
2014-08-20 16:24 - 2014-08-20 16:22 - 24759649 _____ () C:\Users\Ondra\Downloads\Sony Vegas Pro 10 - TutorialzXD Intro 18.rar

Some content of TEMP:
====================
C:\Users\Ondra\AppData\Local\Temp\CloudBackup5829.exe
C:\Users\Ondra\AppData\Local\Temp\SIntf16.dll
C:\Users\Ondra\AppData\Local\Temp\SIntf32.dll
C:\Users\Ondra\AppData\Local\Temp\SIntfNT.dll
C:\Users\Ondra\AppData\Local\Temp\vcredist_x64.exe
C:\Users\Ondra\AppData\Local\Temp\war3_Install.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-09-16 17:15




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: () (Fixed) (Total:297.99 GB) (Free:68.19 GB) NTFS
Drive e: (DISK2) (CDROM) (Total:0.42 GB) (Free:0 GB) CDFS

Available physical RAM: 1122.61 MB
Total physical RAM: 3573.97 MB
Percentage of memory in use: 68%

==================== MBR and Partition Table ==================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 09225B87)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=298 GB) - (Type=07 NTFS)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-1.job => C:\Program Files (x86)\Apps Hat\Apps Hat-codedownloader.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-11.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-11.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-5.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-5_user.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.exeú/UzXVbGYj='Apps Hat' /RJtXNlqNn=48559 /VLtBCp='000820' /YlIEdT='0' /EJiOLewi='appshatmadness' /gKzzwjXKs=C415103B5CF443E4AD2B7DCE5C5CA1E5IE /UiMfg=86411a8da8bbcb510b30f6ba4068b8a9 /komTECIG=1_34_07_29 /GipKCg=1.34.7.29 /oxzwkVw=1407062321 /HyfScLolu=http://stats.infogenservice.com /AoEWZhoYb=http://errors.infogenservice.com /twfIanQ=http://js.infogenservice.com /EhfoJZqd=opera /kksEOXn /EwbjBAZa=Apps Hat /ifHpua7f937b1-1822-4e15-b817-3290385ebd30.dll /QGUGHMICl72ff3edf-b1ca-4260-822e-df33b957a044.dll /RJiEg117f4961-35a2-4fcf-a2ed-5d6306d1ff22-64.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.exe/frILTi /UzXVbGYj='Apps Hat' /RJtXNlqNn=48559 /VLtBCp='000820' /YlIEdT='0' /EJiOLewi='appshatmadness' /gKzzwjXKs=C415103B5CF443E4AD2B7DCE5C5CA1E5IE /UiMfg=86411a8da8bbcb510b30f6ba4068b8a9 /komTECIG=1_34_07_29 /GipKCg=1.34.7.29 /oxzwkVw=1407062321 /HyfScLolu=http://stats.infogenservice.com /AoEWZhoYb=http://errors.infogenservice.com /twfIanQ=http://js.infogenservice.com /EhfoJZqd=opera /kksEOXn /EwbjBAZa=Apps Hat /ifHpua7f937b1-1822-4e15-b817-3290385ebd30.dll /QGUGHMICl72ff3edf-b1ca-4260-822e-df33b957a044.dll /RJiEg117f4961-35a2-4fcf-a2ed-5d6306d1ff22-64.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Ondra\Desktop" je 34235 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeBridge
"C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced SystemCare 7
"C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon
"C:\Users\Ondra\AppData\Roaming\BitTorrent\BitTorrent.exe" /MINIMIZED [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GoogleDriveSync
"C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe" /autostart [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IObit Malware Fighter
"C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype
"C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony PC Companion
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard
Re�im ECHO je vypnut.


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Re: Prosím o kontrolu logu

Napsal: 19 zář 2014 21:19
od Rudy
Zdravím!
Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: Prosím o kontrolu logu

Napsal: 22 zář 2014 16:52
od LecoQ
# AdwCleaner v3.310 - Report created 22/09/2014 at 17:47:19
# Updated 12/09/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Ondra - ONDRA-PC
# Running from : C:\Users\Ondra\Desktop\adwcleaner_3.310.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : globalUpdate
[#] Service Deleted : globalUpdatem
[#] Service Deleted : ProtectMonitor
Service Deleted : {3f538614-b636-4023-9ec2-564ada4b07b3}w64
Service Deleted : {587cb346-a3d8-4884-b39b-f0ed918b6f96}w64

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\apn
Folder Deleted : C:\ProgramData\Conduit
Folder Deleted : C:\ProgramData\NCH Software
Folder Deleted : C:\ProgramData\Trymedia
Folder Deleted : C:\ProgramData\TAAkeTheiCooupon
Folder Deleted : C:\ProgramData\websAvee
Folder Deleted : C:\ProgramData\YoutubeAdblocker
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TornTV.com
Folder Deleted : C:\Program Files (x86)\Conduit
Folder Deleted : C:\Program Files (x86)\eSupport.com
Folder Deleted : C:\Program Files (x86)\globalUpdate
Folder Deleted : C:\Program Files (x86)\Gophoto.it
Folder Deleted : C:\Program Files (x86)\HulaToo
Folder Deleted : C:\Program Files (x86)\NCH Software
Folder Deleted : C:\Program Files (x86)\trolatunt
Folder Deleted : C:\Program Files (x86)\Common Files\DVDVideoSoft\TB
Folder Deleted : C:\Windows\SysWOW64\SearchProtect
Folder Deleted : C:\Program Files\PCDApp
Folder Deleted : C:\Users\Administrator\AppData\Local\torch
Folder Deleted : C:\Users\Guest\AppData\Local\torch
Folder Deleted : C:\Users\Ondra\AppData\Local\Conduit
Folder Deleted : C:\Users\Ondra\AppData\Local\eSupport.com
Folder Deleted : C:\Users\Ondra\AppData\Local\genienext
Folder Deleted : C:\Users\Ondra\AppData\Local\globalUpdate
Folder Deleted : C:\Users\Ondra\AppData\Local\Mobogenie
Folder Deleted : C:\Users\Ondra\AppData\Local\torch
Folder Deleted : C:\Users\Ondra\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\Ondra\AppData\Roaming\goforfiles
Folder Deleted : C:\Users\Ondra\AppData\Roaming\NCH Software
Folder Deleted : C:\Users\Ondra\AppData\Roaming\newnext.me
Folder Deleted : C:\Users\Ondra\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\Ondra\AppData\Roaming\Solvusoft
Folder Deleted : C:\Users\Ondra\AppData\Roaming\YourFileDownloader
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\eibddjpbcffnjghpneapnoadkcilhooo
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eibddjpbcffnjghpneapnoadkcilhooo
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfgjcgpehigcobhfglmldpegochjnnoi
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfgjcgpehigcobhfglmldpegochjnnoi
[!] Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\eibddjpbcffnjghpneapnoadkcilhooo
[!] Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eibddjpbcffnjghpneapnoadkcilhooo
[!] Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfgjcgpehigcobhfglmldpegochjnnoi
[!] Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfgjcgpehigcobhfglmldpegochjnnoi
File Deleted : C:\Windows\System32\roboot64.exe
File Deleted : C:\Windows\System32\drivers\{3f538614-b636-4023-9ec2-564ada4b07b3}w64.sys
File Deleted : C:\Windows\System32\drivers\{587cb346-a3d8-4884-b39b-f0ed918b6f96}w64.sys
File Deleted : C:\Users\Ondra\daemonprocess.txt

***** [ Scheduled Tasks ] *****

Task Deleted : globalUpdateUpdateTaskMachineCore
Task Deleted : globalUpdateUpdateTaskMachineUA
Task Deleted : GoforFilesUpdate
Task Deleted : LaunchSignup
Task Deleted : YourFile DownloaderUpdate
Task Deleted : 117f4961-35a2-4fcf-a2ed-5d6306d1ff22-1
Task Deleted : 117f4961-35a2-4fcf-a2ed-5d6306d1ff22-11
Task Deleted : 117f4961-35a2-4fcf-a2ed-5d6306d1ff22-5
Task Deleted : 117f4961-35a2-4fcf-a2ed-5d6306d1ff22-5_user

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\APN_ATU3__RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\APN_ATU3__RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\GoforFiles_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\GoforFiles_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Mobogenie_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Mobogenie_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Key Deleted : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5F189DF5-2D05-472B-9091-84D9848AE48B}{1a34a8e0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5F189DF5-2D05-472B-9091-84D9848AE48B}{84ef8d51}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{0BDDE35F-64F7-49C3-99B2-404E899C49F7}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{24236608-609C-42C5-B13C-A8A3EC921850}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{28B1A706-4B97-4EB1-8B32-125042685AD9}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{33575A26-D9CF-40C6-8A3E-116F17201C7F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4BDFD19F-93D7-49CE-B554-5C215FDC0136}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{7307CF0F-7173-4FBF-8649-B149916DD322}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{80A5E38C-5F6B-485F-BD97-0B5BE991FAD5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9544D727-A26F-4D57-AF38-4496088640EA}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{AC4C30BF-7D5F-4EAB-9C2A-454178F079AA}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{BC6F9C26-93EA-4C6D-A4A7-C1FA333B4BBE}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E975527B-ABE7-40B3-B5C1-385016913E3B}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EFA4B5B1-6C76-4B20-BCDB-D41A93E79053}
Key Deleted : HKCU\Software\1ClickDownload
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\eSupport.com
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\GoforFiles
Key Deleted : HKCU\Software\InstalledBrowserExtensions
Key Deleted : HKCU\Software\RegisteredApplicationsEx
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\SOFTWARE\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\SOFTWARE\{77D46E27-0E41-4478-87A6-AABE6FBCF252}
Key Deleted : HKLM\SOFTWARE\Conduit
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\GoforFiles
Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : HKLM\SOFTWARE\Trymedia Systems
Key Deleted : HKLM\SOFTWARE\YourFileDownloader
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{90120000-00B2-0405-0000-0000000FF1CE}
Key Deleted : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17280


-\\ Mozilla Firefox v32.0 (x86 cs)

[ File : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\hiufmblb.default\prefs.js ]


-\\ Google Chrome v

*************************

AdwCleaner[R0].txt - [13768 octets] - [22/09/2014 17:09:17]
AdwCleaner[S0].txt - [13098 octets] - [22/09/2014 17:47:19]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [13159 octets] ##########

Re: Prosím o kontrolu logu

Napsal: 22 zář 2014 18:14
od Rudy
Dejte nový log FRST.

Re: Prosím o kontrolu logu

Napsal: 22 zář 2014 18:29
od LecoQ
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-09-2014
Ran by Ondra (administrator) on ONDRA-PC on 22-09-2014 19:22:49
Running from C:\Users\Ondra\Desktop
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(BitTorrent Inc.) C:\Users\Ondra\AppData\Roaming\BitTorrent\BitTorrent.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Realtek) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtlService.exe
(Realtek Semiconductor Corp.) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtWLan.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Microsoft Corporation) C:\Windows\System32\audiodg.exe
(forum.viry.cz) C:\Users\Ondra\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-07-31] (AVAST Software)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\.DEFAULT\...\RunOnce: [SpUninstallDeleteDir] => rmdir /s /q "\SearchProtect"
HKU\S-1-5-21-3021103483-654499671-1049248257-1000\...\Run: [BitTorrent] => C:\Users\Ondra\AppData\Roaming\BitTorrent\BitTorrent.exe [1417048 2014-09-19] (BitTorrent Inc.)
HKU\S-1-5-21-3021103483-654499671-1049248257-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-3021103483-654499671-1049248257-1000\...\MountPoints2: {b5e37a76-77b6-11e3-be75-001c231b1ffb} - E:\_AUTORUN\AUTORUN.EXE
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ondra\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?ocid=iehp
SearchScopes: HKLM - {363B01D3-7E6F-43D2-8DEA-85993497B576} URL =
SearchScopes: HKCU - {363B01D3-7E6F-43D2-8DEA-85993497B576} URL = http://search.conduit.com/ResultsExt.as ... 25220&UM=2
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení k účtu Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Advanced SystemCare Browser Protection -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit)
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.4.0.1

FireFox:
========
FF ProfilePath: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\hiufmblb.default
FF SelectedSearchEngine: Google
FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_235.dll ()
FF Plugin-x32: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Ondra\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\NPOFF12.DLL (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-04-11]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-01-07]
FF Extension: No Name - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\hiufmblb.default\extensions\ascsurfingprotection@iobit.com [Not Found]
FF Extension: No Name - C:\Program Files (x86)\IObit Apps Toolbar\FF [Not Found]

Chrome:
=======
CHR HKCU\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\Ondra\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx [2014-08-29]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-18]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-18] (AVAST Software)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [File not signed]
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2152736 2014-05-04] (IObit)
R2 Realtek11nCU; C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtlService.exe [36864 2010-04-16] (Realtek) [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-21] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-07-18] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-07-18] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-07-18] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-07-18] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-07-18] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-07-18] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-07-18] (AVAST Software)
S3 aswTap; C:\Windows\System32\DRIVERS\aswTap.sys [44640 2014-01-07] (The OpenVPN Project)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-07-18] ()
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2014-01-10] ()
S3 cpudrv64; C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys [17864 2011-06-02] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-01-07] (Disc Soft Ltd)
R3 guardian2; C:\Windows\System32\Drivers\oz776x64.sys [87696 2014-06-06] (O2Micro)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2014-01-10] ()
S3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [748648 2010-06-15] (Realtek Semiconductor Corporation )
R3 RtlWlanu; C:\Windows\System32\DRIVERS\rtwlanu.sys [2976472 2014-06-06] (Realtek Semiconductor Corporation )
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [381440 2014-02-13] (Duplex Secure Ltd.)
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S2 SVKP; \??\C:\Windows\system32\SVKP.sys [X]
S3 WinRing0_1_2_0; \??\C:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-22 18:49 - 2014-09-22 18:49 - 00000010 _____ () C:\Users\Ondra\insta.txt
2014-09-22 17:12 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-09-22 17:09 - 2014-09-22 17:47 - 00000000 ____D () C:\AdwCleaner
2014-09-21 18:21 - 2003-05-09 15:24 - 00001371 _____ () C:\Users\Ondra\Desktop\grugtavccd.nfo
2014-09-21 18:21 - 2003-05-09 01:24 - 03088896 _____ () C:\Users\Ondra\Desktop\gta-vc.exe
2014-09-21 18:20 - 2014-09-21 18:20 - 01291997 _____ () C:\Users\Ondra\Downloads\grandtheftautovicecity-nocd-1_0-ENG.zip
2014-09-21 18:14 - 2014-09-21 18:14 - 00178800 _____ (Sony DADC Austria AG.) C:\Windows\SysWOW64\CmdLineExt_x64.dll
2014-09-21 12:56 - 2014-09-21 12:57 - 01373475 _____ () C:\Users\Ondra\Desktop\adwcleaner_3.310.exe
2014-09-21 10:48 - 2014-09-21 10:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-09-21 10:14 - 2014-09-21 10:14 - 00017264 _____ () C:\Users\Ondra\Desktop\stahování.htm
2014-09-19 21:07 - 2014-09-19 21:07 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Downloads\trz260C.tmp
2014-09-19 21:07 - 2014-09-19 21:07 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Desktop\FRSTLauncher.exe
2014-09-19 21:06 - 2014-09-19 21:07 - 02105856 _____ (Farbar) C:\Users\Ondra\Desktop\FRST64.exe
2014-09-19 21:05 - 2014-09-19 20:59 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Desktop\trzA152.tmp
2014-09-19 21:01 - 2014-09-22 19:23 - 00014272 _____ () C:\Users\Ondra\Desktop\FRST.txt
2014-09-19 21:00 - 2014-09-22 19:22 - 00000000 ____D () C:\FRST
2014-09-19 20:58 - 2014-09-19 20:57 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Desktop\trz3343.tmp
2014-09-19 20:56 - 2014-09-19 20:56 - 00080736 _____ () C:\Users\Ondra\Downloads\trz3C47.tmp
2014-09-19 18:34 - 2014-09-21 16:19 - 527306823 _____ () C:\Windows\MEMORY.DMP
2014-09-19 18:34 - 2014-09-19 18:35 - 00278208 _____ () C:\Windows\Minidump\091914-30685-01.dmp
2014-09-19 17:18 - 2014-09-21 11:02 - 00000000 ____D () C:\Users\Ondra\Desktop\2014 bordel
2014-09-19 16:12 - 2014-09-19 16:13 - 03249480 _____ (Unity Technologies ApS) C:\Users\Ondra\Downloads\UnityWebPlayer.exe
2014-09-18 19:34 - 2014-09-18 19:34 - 00002165 _____ () C:\Users\Ondra\Desktop\Heroes of Might and Magic® IV.lnk
2014-09-18 19:34 - 2014-09-18 19:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\3DO
2014-09-18 19:33 - 2014-09-18 19:33 - 00000000 ____D () C:\Program Files (x86)\3DO
2014-09-18 17:03 - 2014-09-18 17:04 - 00000000 ____D () C:\Users\Ondra\Downloads\Heroes IV Complete
2014-09-18 17:01 - 2014-09-18 17:01 - 00011373 _____ () C:\Users\Ondra\Downloads\[CzT]Heroes_of_Might_and_Magic_IV_Complete_CZ_version (1).torrent
2014-09-18 17:01 - 2014-09-18 17:01 - 00011372 _____ () C:\Users\Ondra\Downloads\[CzT]Heroes_of_Might_and_Magic_IV_Complete_CZ_version.torrent
2014-09-18 11:32 - 2014-09-18 11:33 - 113591962 _____ () C:\Users\Ondra\Documents\Student magic.wav
2014-09-18 10:37 - 2014-09-21 18:34 - 00000000 ____D () C:\Users\Ondra\Documents\GTA Vice City User Files
2014-09-18 10:26 - 2014-09-18 10:26 - 00000000 ____D () C:\Program Files (x86)\Rockstar Games
2014-09-18 10:22 - 2010-11-09 13:06 - 00000000 ____D () C:\Users\Ondra\Downloads\GTA Vice City
2014-09-18 08:28 - 2014-09-18 09:10 - 1467198962 ____R () C:\Users\Ondra\Downloads\GTA Vice City.rar
2014-09-18 08:28 - 2014-09-18 08:28 - 00014540 _____ () C:\Users\Ondra\Downloads\[CzT]Grand_Theft_Auto_GTA_Vice_City_2003_CZ_.torrent
2014-09-17 19:00 - 2014-09-17 19:00 - 02680104 _____ () C:\Users\Ondra\Downloads\lips_brush_39752.zip
2014-09-17 16:01 - 2014-09-22 17:49 - 00002138 _____ () C:\Windows\setupact.log
2014-09-17 16:01 - 2014-09-22 17:48 - 00002362 _____ () C:\Windows\PFRO.log
2014-09-17 16:01 - 2014-09-17 16:01 - 00000000 _____ () C:\Windows\setuperr.log
2014-09-14 16:09 - 2014-09-14 16:09 - 00001317 _____ () C:\Users\Public\Desktop\Ashampoo Burning Studio 6 FREE.lnk
2014-09-14 16:09 - 2014-09-14 16:09 - 00000214 _____ () C:\Users\Public\Desktop\Your Software Deals.url
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Users\Ondra\AppData\Local\ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\ProgramData\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Program Files (x86)\Ashampoo
2014-09-14 15:56 - 2014-09-14 16:02 - 12891208 _____ (Ashampoo GmbH & Co. KG ) C:\Users\Ondra\Downloads\ashampoo_burning_studio_6_free_6.84_13471.exe
2014-09-14 15:51 - 2014-09-14 15:51 - 00001239 _____ () C:\Users\Ondra\Desktop\DVDVideoSoft Free Studio.lnk
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\Users\Ondra\Documents\DVDVideoSoft
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft
2014-09-14 15:43 - 2014-09-14 15:50 - 08152757 _____ (DVDVideoSoft Limited. ) C:\Users\Ondra\Downloads\FreeDVDVideoBurner.exe
2014-09-14 15:33 - 2014-09-14 21:36 - 00391084 _____ () C:\Users\Ondra\Documents\Betlémy.XtoDVD
2014-09-14 15:29 - 2014-09-14 15:29 - 00000000 ____D () C:\ProgramData\vsosdk
2014-09-14 14:15 - 2014-09-14 16:31 - 00000000 ____D () C:\Users\Ondra\Documents\ConvertXtoDVD
2014-09-14 12:08 - 2014-09-16 22:09 - 00000000 ____D () C:\Users\Ondra\Documents\PcSetup
2014-09-14 12:08 - 2014-09-14 12:08 - 00099384 _____ () C:\Users\Ondra\AppData\Roaming\inst.exe
2014-09-14 12:08 - 2014-09-14 12:08 - 00082816 _____ (VSO Software) C:\Users\Ondra\AppData\Roaming\pcouffin.sys
2014-09-14 12:08 - 2014-09-14 12:08 - 00007859 _____ () C:\Users\Ondra\AppData\Roaming\pcouffin.cat
2014-09-14 12:08 - 2014-09-14 12:08 - 00000055 _____ () C:\Users\Ondra\AppData\Roaming\pcouffin.log
2014-09-14 12:08 - 2014-09-14 12:08 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Vso
2014-09-14 12:07 - 2014-09-16 22:09 - 00000000 ____D () C:\ProgramData\VSO
2014-09-14 12:07 - 2014-09-14 12:07 - 00001228 _____ () C:\Users\Ondra\Desktop\ConvertXToDVD 5.lnk
2014-09-14 12:07 - 2014-09-14 12:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VSO
2014-09-14 12:07 - 2014-09-14 12:07 - 00000000 ____D () C:\Program Files (x86)\VSO
2014-09-14 11:50 - 2014-09-14 12:03 - 00000000 ____D () C:\Users\Ondra\Downloads\VSO ConvertXtoDVD 5.2.0.13 Final
2014-09-14 11:49 - 2014-09-14 11:49 - 00018808 _____ () C:\Users\Ondra\Downloads\[CzT]VSO_ConvertXtoDVD_5_2_0_13_Final_CZ_EN_.torrent
2014-09-14 11:44 - 2014-09-14 11:45 - 00000000 ____D () C:\Users\Ondra\Desktop\dvd2013
2014-09-14 11:22 - 2014-09-14 11:23 - 00000000 ____D () C:\Users\Ondra\Desktop\OBRÁZKY 2013
2014-09-14 09:33 - 2014-09-14 09:37 - 00000000 ____D () C:\Users\Ondra\pomalé
2014-09-14 09:31 - 2014-09-14 09:45 - 17732488 _____ (Adobe Systems Incorporated) C:\Users\Ondra\Downloads\flashplayer_12_ax_debug.exe
2014-09-14 09:27 - 2014-09-14 10:11 - 91128531 _____ () C:\Users\Ondra\Downloads\The-Prophecy.avi
2014-09-14 08:55 - 2014-09-14 08:55 - 00000000 _____ () C:\asc_rdflag
2014-09-13 20:31 - 2014-09-13 20:31 - 00000093 _____ () C:\Users\Ondra\AppData\Local\fusioncache.dat
2014-09-13 19:53 - 2014-09-13 19:53 - 00000000 ____D () C:\Program Files (x86)\Cisco
2014-09-13 19:52 - 2014-09-13 19:52 - 00002136 _____ () C:\Users\Public\Desktop\REALTEK 11n USB Wireless LAN Utility.lnk
2014-09-13 19:52 - 2014-09-13 19:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REALTEK 11n USB Wireless LAN Utility
2014-09-13 19:52 - 2014-09-13 19:52 - 00000000 ____D () C:\Program Files (x86)\REALTEK
2014-09-13 19:52 - 2010-06-15 11:57 - 00748648 ____R (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtl8192cu.sys
2014-09-13 19:52 - 2009-04-02 10:27 - 00188416 _____ (Realtek Semiconductor Corp. ) C:\Windows\SysWOW64\RTLExtUI.dll
2014-09-13 19:52 - 2009-03-31 14:31 - 00380928 _____ (Realtek) C:\Windows\RtlUI2.exe
2014-09-13 19:52 - 2009-01-05 20:31 - 00000901 _____ () C:\Windows\RtlUI2.exe.manifest
2014-09-13 19:52 - 2008-07-01 12:31 - 00614400 _____ (Realtek Semiconductor Corp. ) C:\Windows\SysWOW64\Rtlihvs.dll
2014-09-13 19:10 - 2014-09-13 19:10 - 00001159 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-09-13 19:10 - 2014-09-13 19:10 - 00001147 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-09-13 19:09 - 2014-09-13 19:10 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-13 19:07 - 2014-09-13 19:07 - 00419488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-13 19:07 - 2014-09-13 19:07 - 00070304 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-13 19:04 - 2014-09-13 19:07 - 04140192 _____ (Adobe Systems Incorporated) C:\Users\Ondra\Downloads\adobe-flash-player_11.2.202.235nonIE.exe
2014-09-13 18:57 - 2014-09-13 18:58 - 00782000 _____ ( ) C:\Users\Ondra\Downloads\adobe_flash_player.exe
2014-09-13 17:48 - 2014-09-17 16:08 - 00003830 _____ () C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1410623299
2014-09-13 17:48 - 2014-09-13 17:48 - 00001135 _____ () C:\Users\Public\Desktop\Opera.lnk
2014-09-13 17:48 - 2014-09-13 17:48 - 00001135 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2014-09-13 15:31 - 2014-09-13 15:54 - 35100360 _____ () C:\Users\Ondra\Downloads\Firefox Setup 32.0.exe
2014-09-13 15:22 - 2014-09-13 15:23 - 00868360 _____ (Opera Software) C:\Users\Ondra\Downloads\Opera_NI_stable.exe
2014-09-12 05:04 - 2014-08-19 20:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-09-12 05:04 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-09-12 05:04 - 2014-08-19 01:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-09-12 05:04 - 2014-08-19 00:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-09-12 05:04 - 2014-08-19 00:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-09-12 05:04 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-09-12 05:04 - 2014-08-19 00:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-09-12 05:04 - 2014-08-19 00:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-09-12 05:04 - 2014-08-19 00:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-09-12 05:04 - 2014-08-19 00:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-09-12 05:04 - 2014-08-19 00:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-09-12 05:04 - 2014-08-19 00:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-09-12 05:04 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-09-12 05:04 - 2014-08-19 00:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-09-12 05:04 - 2014-08-19 00:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-09-12 05:04 - 2014-08-19 00:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-09-12 05:04 - 2014-08-19 00:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-09-12 05:04 - 2014-08-19 00:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-09-12 05:04 - 2014-08-19 00:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-09-12 05:04 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-09-12 05:04 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-09-12 05:04 - 2014-08-18 23:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-09-12 05:04 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-09-12 05:04 - 2014-08-18 23:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-09-12 05:04 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-09-12 05:04 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-09-12 05:04 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-09-12 05:04 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-09-12 05:04 - 2014-08-18 23:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-09-12 05:04 - 2014-08-18 23:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-09-12 05:04 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-09-12 05:04 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-09-12 05:04 - 2014-08-18 23:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-09-12 05:04 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-09-12 05:04 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-09-12 05:04 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-09-12 05:04 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-09-12 05:04 - 2014-08-18 23:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-09-12 05:04 - 2014-08-18 23:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-09-12 05:04 - 2014-08-18 23:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-09-12 05:04 - 2014-08-18 23:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-09-12 05:04 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-09-12 05:04 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-09-12 05:04 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-09-12 05:04 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-09-12 05:04 - 2014-08-18 23:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-09-12 05:04 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-09-12 05:04 - 2014-08-18 23:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-09-12 05:04 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-09-12 05:04 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-09-12 05:04 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-09-12 05:04 - 2014-08-18 22:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-09-12 05:04 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-09-12 05:04 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-09-12 05:04 - 2014-08-18 22:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-09-12 05:04 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-09-12 01:56 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-09-12 01:56 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-09-12 01:56 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-09-12 01:56 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-09-12 01:56 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-09-11 18:45 - 2014-09-11 18:45 - 00000000 ____D () C:\Users\Ondra\Downloads\Dan Sperry - Technical Dove Tosses
2014-09-11 17:12 - 2014-09-11 17:12 - 17328816 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2014-09-08 17:19 - 2014-09-08 17:19 - 00000020 ___SH () C:\Users\DefaultAppPool\ntuser.ini
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Šablony
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Soubory cookie
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Poslední
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Okolní tiskárny
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Okolní síť
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Nabídka Start
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Dokumenty
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Obrázky
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Hudba
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Filmy
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Data aplikací
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\AppData\Local\Data aplikací
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 ____D () C:\Users\DefaultAppPool
2014-09-08 17:19 - 2014-04-16 23:47 - 00000000 ____D () C:\Users\DefaultAppPool\AppData\Local\Microsoft Help
2014-09-08 17:19 - 2014-01-24 19:32 - 00000000 ____D () C:\Users\DefaultAppPool\AppData\Roaming\Macromedia
2014-09-08 17:19 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-09-08 17:19 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-09-06 20:11 - 2014-09-06 20:12 - 01892361 _____ () C:\Users\Ondra\Downloads\Minecraft-1.8-Mac-and-Windows-Cracked-Launcher-[AUTO-UPDATES]-by-Racad.zip
2014-09-06 20:08 - 2014-09-06 20:09 - 00000000 ____D () C:\Users\Ondra\Downloads\Moon Taxi Immersion Bundle
2014-09-06 20:07 - 2014-09-06 20:07 - 00000833 _____ () C:\Users\Ondra\Desktop\BitTorrent.lnk
2014-09-06 20:07 - 2014-09-06 20:07 - 00000813 _____ () C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\BitTorrent.lnk
2014-09-06 20:00 - 2014-09-06 20:00 - 00000000 ____D () C:\Users\Ondra\Desktop\bin
2014-09-06 19:58 - 2014-09-06 20:00 - 00000000 ____D () C:\Users\Ondra\Downloads\New Folder
2014-09-06 19:55 - 2014-09-06 19:57 - 54613936 ____R () C:\Users\Ondra\Downloads\New Folder.rar
2014-09-06 19:52 - 2014-09-06 19:52 - 00017214 _____ () C:\Users\Ondra\Downloads\[CzT]Minecraft_1_8_Full_verze.torrent
2014-09-05 18:43 - 2014-09-05 18:43 - 09755449 _____ () C:\Users\Ondra\Downloads\g2addon-2_6.exe
2014-09-05 18:40 - 2014-09-05 18:40 - 03031183 _____ (${MOD_COMP}) C:\Users\Ondra\Downloads\gothic2_fix-2.6.0.0-rev2.exe
2014-09-05 18:40 - 2014-09-05 18:40 - 00092970 _____ () C:\Users\Ondra\Downloads\gothic2_playerkit-2.6f.exe
2014-09-05 18:30 - 2014-09-05 18:31 - 02210677 _____ (Gothicz NET - Komunita © 2014) C:\Users\Ondra\Downloads\g2notr-systempack-1.0.exe
2014-09-02 17:43 - 2014-09-02 17:54 - 172814918 _____ () C:\Users\Ondra\Downloads\The-Game---Jesus-Piece-(Deluxe-Edition)-[iTunes]-(2012-Album).rar
2014-08-29 22:02 - 2014-09-05 17:33 - 00000000 ___RD () C:\Users\Ondra\Disk Google
2014-08-29 22:02 - 2014-08-29 22:02 - 00001674 _____ () C:\Users\Ondra\Desktop\Disk Google.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002042 _____ () C:\Users\Public\Desktop\Google Slides.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002040 _____ () C:\Users\Public\Desktop\Google Sheets.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002030 _____ () C:\Users\Public\Desktop\Google Docs.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2014-08-29 21:57 - 2014-08-29 21:58 - 00895120 _____ (Google Inc.) C:\Users\Ondra\Downloads\googledrivesync.exe
2014-08-28 23:18 - 2014-09-18 11:34 - 00015768 _____ () C:\Users\Ondra\Desktop\Untitled.veg
2014-08-28 23:18 - 2014-08-28 23:18 - 00017920 _____ () C:\Users\Ondra\Desktop\Untitled.veg.bak
2014-08-28 18:46 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-28 18:46 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-28 18:46 - 2014-08-23 02:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-08-26 10:13 - 2014-08-26 10:32 - 159434083 _____ () C:\Users\Ondra\Downloads\Nightwish---2007---Dark-Passion-Play.zip
2014-08-24 22:21 - 2014-08-24 22:21 - 00030180 _____ () C:\Users\Ondra\Documents\hrt 2.dvds
2014-08-24 21:42 - 2014-08-24 21:44 - 17533715 _____ () C:\Users\Ondra\Documents\PRACHASTÁ.wmv
2014-08-24 21:20 - 2014-08-24 21:32 - 30205901 _____ () C:\Users\Ondra\Documents\POČASÍCKO.wmv
2014-08-24 21:19 - 2014-08-24 21:19 - 01011632 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv.sfap0
2014-08-24 21:19 - 2014-08-24 21:19 - 00007968 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv.sfk
2014-08-24 21:15 - 2014-08-24 21:16 - 02277475 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv
2014-08-24 21:02 - 2014-08-24 21:09 - 18421727 _____ () C:\Users\Ondra\Documents\fantomas.wmv
2014-08-24 20:40 - 2014-08-24 20:54 - 45574153 _____ () C:\Users\Ondra\Documents\PEPA.wmv
2014-08-24 20:37 - 2014-08-24 20:54 - 00009424 _____ () C:\Users\Ondra\Documents\reportáž.wmv.sfk
2014-08-24 20:37 - 2014-08-24 20:37 - 01198232 _____ () C:\Users\Ondra\Documents\reportáž.wmv.sfap0
2014-08-24 20:25 - 2014-08-24 20:28 - 04637481 _____ () C:\Users\Ondra\Documents\reportáž.wmv
2014-08-24 20:24 - 2014-08-24 20:28 - 00241688 _____ () C:\Users\Ondra\Desktop\pepa.veg
2014-08-24 20:24 - 2014-08-24 20:24 - 00258000 _____ () C:\Users\Ondra\Desktop\pepa.veg.bak
2014-08-23 18:19 - 2014-08-23 18:24 - 00000000 ____D () C:\Users\Ondra\Desktop\Half Life Pack (1)
2014-08-23 13:08 - 2014-08-23 13:08 - 00014016 _____ () C:\Users\Ondra\Downloads\[CzT]Half_Life_1_Pack_specialni_kompilace_.torrent

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-22 19:23 - 2014-09-19 21:01 - 00014272 _____ () C:\Users\Ondra\Desktop\FRST.txt
2014-09-22 19:23 - 2014-01-07 18:41 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\BitTorrent
2014-09-22 19:22 - 2014-09-19 21:00 - 00000000 ____D () C:\FRST
2014-09-22 19:21 - 2014-01-17 16:38 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Skype
2014-09-22 19:03 - 2014-07-02 15:37 - 00000896 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-09-22 18:49 - 2014-09-22 18:49 - 00000010 _____ () C:\Users\Ondra\insta.txt
2014-09-22 18:49 - 2014-01-07 18:08 - 00000000 ____D () C:\Users\Ondra
2014-09-22 18:01 - 2011-04-12 10:34 - 00743836 _____ () C:\Windows\system32\perfh005.dat
2014-09-22 18:01 - 2011-04-12 10:34 - 00175166 _____ () C:\Windows\system32\perfc005.dat
2014-09-22 18:01 - 2009-07-14 07:13 - 01798342 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-22 17:50 - 2014-07-02 15:37 - 00000892 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-09-22 17:49 - 2014-09-17 16:01 - 00002138 _____ () C:\Windows\setupact.log
2014-09-22 17:49 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-22 17:48 - 2014-09-17 16:01 - 00002362 _____ () C:\Windows\PFRO.log
2014-09-22 17:48 - 2009-07-14 06:45 - 00025024 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-22 17:48 - 2009-07-14 06:45 - 00025024 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-22 17:47 - 2014-09-22 17:09 - 00000000 ____D () C:\AdwCleaner
2014-09-22 16:20 - 2014-01-07 19:26 - 00000000 ____D () C:\Users\Ondra\AppData\Local\Adobe
2014-09-22 16:11 - 2014-03-24 18:39 - 00000000 ____D () C:\ProgramData\ProductData
2014-09-22 16:11 - 2014-01-07 18:28 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-09-21 18:34 - 2014-09-18 10:37 - 00000000 ____D () C:\Users\Ondra\Documents\GTA Vice City User Files
2014-09-21 18:20 - 2014-09-21 18:20 - 01291997 _____ () C:\Users\Ondra\Downloads\grandtheftautovicecity-nocd-1_0-ENG.zip
2014-09-21 18:14 - 2014-09-21 18:14 - 00178800 _____ (Sony DADC Austria AG.) C:\Windows\SysWOW64\CmdLineExt_x64.dll
2014-09-21 16:19 - 2014-09-19 18:34 - 527306823 _____ () C:\Windows\MEMORY.DMP
2014-09-21 16:19 - 2014-01-09 18:16 - 00000000 ____D () C:\Windows\Minidump
2014-09-21 12:57 - 2014-09-21 12:56 - 01373475 _____ () C:\Users\Ondra\Desktop\adwcleaner_3.310.exe
2014-09-21 12:12 - 2014-08-21 15:16 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\vlc
2014-09-21 11:02 - 2014-09-19 17:18 - 00000000 ____D () C:\Users\Ondra\Desktop\2014 bordel
2014-09-21 10:48 - 2014-09-21 10:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-09-21 10:48 - 2014-01-17 16:38 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-09-21 10:48 - 2014-01-17 16:38 - 00000000 ____D () C:\ProgramData\Skype
2014-09-21 10:14 - 2014-09-21 10:14 - 00017264 _____ () C:\Users\Ondra\Desktop\stahování.htm
2014-09-19 22:10 - 2014-01-07 17:58 - 01655499 _____ () C:\Windows\WindowsUpdate.log
2014-09-19 21:07 - 2014-09-19 21:07 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Downloads\trz260C.tmp
2014-09-19 21:07 - 2014-09-19 21:07 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Desktop\FRSTLauncher.exe
2014-09-19 21:07 - 2014-09-19 21:06 - 02105856 _____ (Farbar) C:\Users\Ondra\Desktop\FRST64.exe
2014-09-19 20:59 - 2014-09-19 21:05 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Desktop\trzA152.tmp
2014-09-19 20:57 - 2014-09-19 20:58 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Desktop\trz3343.tmp
2014-09-19 20:56 - 2014-09-19 20:56 - 00080736 _____ () C:\Users\Ondra\Downloads\trz3C47.tmp
2014-09-19 18:35 - 2014-09-19 18:34 - 00278208 _____ () C:\Windows\Minidump\091914-30685-01.dmp
2014-09-19 16:13 - 2014-09-19 16:12 - 03249480 _____ (Unity Technologies ApS) C:\Users\Ondra\Downloads\UnityWebPlayer.exe
2014-09-19 16:13 - 2014-02-19 18:52 - 00000000 ____D () C:\Users\Ondra\AppData\Local\Unity
2014-09-19 14:36 - 2009-07-14 07:08 - 00032574 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-09-18 19:34 - 2014-09-18 19:34 - 00002165 _____ () C:\Users\Ondra\Desktop\Heroes of Might and Magic® IV.lnk
2014-09-18 19:34 - 2014-09-18 19:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\3DO
2014-09-18 19:34 - 2014-01-07 18:10 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-09-18 19:33 - 2014-09-18 19:33 - 00000000 ____D () C:\Program Files (x86)\3DO
2014-09-18 17:11 - 2014-07-02 18:51 - 00000000 ____D () C:\Program Files (x86)\Warcraft III
2014-09-18 17:10 - 2014-01-07 18:43 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\DAEMON Tools Lite
2014-09-18 17:04 - 2014-09-18 17:03 - 00000000 ____D () C:\Users\Ondra\Downloads\Heroes IV Complete
2014-09-18 17:01 - 2014-09-18 17:01 - 00011373 _____ () C:\Users\Ondra\Downloads\[CzT]Heroes_of_Might_and_Magic_IV_Complete_CZ_version (1).torrent
2014-09-18 17:01 - 2014-09-18 17:01 - 00011372 _____ () C:\Users\Ondra\Downloads\[CzT]Heroes_of_Might_and_Magic_IV_Complete_CZ_version.torrent
2014-09-18 11:34 - 2014-08-28 23:18 - 00015768 _____ () C:\Users\Ondra\Desktop\Untitled.veg
2014-09-18 11:33 - 2014-09-18 11:32 - 113591962 _____ () C:\Users\Ondra\Documents\Student magic.wav
2014-09-18 10:37 - 2014-01-10 15:22 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2014-09-18 10:27 - 2014-01-29 22:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2014-09-18 10:26 - 2014-09-18 10:26 - 00000000 ____D () C:\Program Files (x86)\Rockstar Games
2014-09-18 09:10 - 2014-09-18 08:28 - 1467198962 ____R () C:\Users\Ondra\Downloads\GTA Vice City.rar
2014-09-18 08:28 - 2014-09-18 08:28 - 00014540 _____ () C:\Users\Ondra\Downloads\[CzT]Grand_Theft_Auto_GTA_Vice_City_2003_CZ_.torrent
2014-09-17 19:00 - 2014-09-17 19:00 - 02680104 _____ () C:\Users\Ondra\Downloads\lips_brush_39752.zip
2014-09-17 16:08 - 2014-09-13 17:48 - 00003830 _____ () C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1410623299
2014-09-17 16:08 - 2014-08-02 15:41 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-09-17 16:08 - 2014-01-16 20:13 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-09-17 16:01 - 2014-09-17 16:01 - 00000000 _____ () C:\Windows\setuperr.log
2014-09-16 22:09 - 2014-09-14 12:08 - 00000000 ____D () C:\Users\Ondra\Documents\PcSetup
2014-09-16 22:09 - 2014-09-14 12:07 - 00000000 ____D () C:\ProgramData\VSO
2014-09-14 21:36 - 2014-09-14 15:33 - 00391084 _____ () C:\Users\Ondra\Documents\Betlémy.XtoDVD
2014-09-14 18:32 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-09-14 16:31 - 2014-09-14 14:15 - 00000000 ____D () C:\Users\Ondra\Documents\ConvertXtoDVD
2014-09-14 16:09 - 2014-09-14 16:09 - 00001317 _____ () C:\Users\Public\Desktop\Ashampoo Burning Studio 6 FREE.lnk
2014-09-14 16:09 - 2014-09-14 16:09 - 00000214 _____ () C:\Users\Public\Desktop\Your Software Deals.url
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Users\Ondra\AppData\Local\ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\ProgramData\Ashampoo
2014-09-14 16:09 - 2014-09-14 16:09 - 00000000 ____D () C:\Program Files (x86)\Ashampoo
2014-09-14 16:02 - 2014-09-14 15:56 - 12891208 _____ (Ashampoo GmbH & Co. KG ) C:\Users\Ondra\Downloads\ashampoo_burning_studio_6_free_6.84_13471.exe
2014-09-14 15:51 - 2014-09-14 15:51 - 00001239 _____ () C:\Users\Ondra\Desktop\DVDVideoSoft Free Studio.lnk
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\Users\Ondra\Documents\DVDVideoSoft
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2014-09-14 15:51 - 2014-09-14 15:51 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft
2014-09-14 15:50 - 2014-09-14 15:43 - 08152757 _____ (DVDVideoSoft Limited. ) C:\Users\Ondra\Downloads\FreeDVDVideoBurner.exe
2014-09-14 15:39 - 2011-04-12 10:45 - 00000000 ___RD () C:\Users\Public\Recorded TV
2014-09-14 15:29 - 2014-09-14 15:29 - 00000000 ____D () C:\ProgramData\vsosdk
2014-09-14 12:08 - 2014-09-14 12:08 - 00099384 _____ () C:\Users\Ondra\AppData\Roaming\inst.exe
2014-09-14 12:08 - 2014-09-14 12:08 - 00082816 _____ (VSO Software) C:\Users\Ondra\AppData\Roaming\pcouffin.sys
2014-09-14 12:08 - 2014-09-14 12:08 - 00007859 _____ () C:\Users\Ondra\AppData\Roaming\pcouffin.cat
2014-09-14 12:08 - 2014-09-14 12:08 - 00000055 _____ () C:\Users\Ondra\AppData\Roaming\pcouffin.log
2014-09-14 12:08 - 2014-09-14 12:08 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Vso
2014-09-14 12:07 - 2014-09-14 12:07 - 00001228 _____ () C:\Users\Ondra\Desktop\ConvertXToDVD 5.lnk
2014-09-14 12:07 - 2014-09-14 12:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VSO
2014-09-14 12:07 - 2014-09-14 12:07 - 00000000 ____D () C:\Program Files (x86)\VSO
2014-09-14 12:03 - 2014-09-14 11:50 - 00000000 ____D () C:\Users\Ondra\Downloads\VSO ConvertXtoDVD 5.2.0.13 Final
2014-09-14 11:49 - 2014-09-14 11:49 - 00018808 _____ () C:\Users\Ondra\Downloads\[CzT]VSO_ConvertXtoDVD_5_2_0_13_Final_CZ_EN_.torrent
2014-09-14 11:45 - 2014-09-14 11:44 - 00000000 ____D () C:\Users\Ondra\Desktop\dvd2013
2014-09-14 11:23 - 2014-09-14 11:22 - 00000000 ____D () C:\Users\Ondra\Desktop\OBRÁZKY 2013
2014-09-14 10:11 - 2014-09-14 09:27 - 91128531 _____ () C:\Users\Ondra\Downloads\The-Prophecy.avi
2014-09-14 09:47 - 2014-08-12 16:02 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\.minecraft
2014-09-14 09:45 - 2014-09-14 09:31 - 17732488 _____ (Adobe Systems Incorporated) C:\Users\Ondra\Downloads\flashplayer_12_ax_debug.exe
2014-09-14 09:37 - 2014-09-14 09:33 - 00000000 ____D () C:\Users\Ondra\pomalé
2014-09-14 08:55 - 2014-09-14 08:55 - 00000000 _____ () C:\asc_rdflag
2014-09-14 08:55 - 2014-03-24 23:02 - 80441344 _____ () C:\Windows\system32\config\SOFTWARE.iodefrag.bak
2014-09-14 08:55 - 2014-03-24 23:02 - 00311296 _____ () C:\Windows\system32\config\DEFAULT.iodefrag.bak
2014-09-14 08:55 - 2014-03-24 23:02 - 00061440 _____ () C:\Windows\system32\config\SAM.iodefrag.bak
2014-09-14 08:55 - 2014-03-24 23:02 - 00024576 _____ () C:\Windows\system32\config\SECURITY.iodefrag.bak
2014-09-13 20:31 - 2014-09-13 20:31 - 00000093 _____ () C:\Users\Ondra\AppData\Local\fusioncache.dat
2014-09-13 19:53 - 2014-09-13 19:53 - 00000000 ____D () C:\Program Files (x86)\Cisco
2014-09-13 19:52 - 2014-09-13 19:52 - 00002136 _____ () C:\Users\Public\Desktop\REALTEK 11n USB Wireless LAN Utility.lnk
2014-09-13 19:52 - 2014-09-13 19:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REALTEK 11n USB Wireless LAN Utility
2014-09-13 19:52 - 2014-09-13 19:52 - 00000000 ____D () C:\Program Files (x86)\REALTEK
2014-09-13 19:10 - 2014-09-13 19:10 - 00001159 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-09-13 19:10 - 2014-09-13 19:10 - 00001147 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-09-13 19:10 - 2014-09-13 19:09 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-13 19:09 - 2014-05-10 08:38 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-09-13 19:07 - 2014-09-13 19:07 - 00419488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-13 19:07 - 2014-09-13 19:07 - 00070304 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-13 19:07 - 2014-09-13 19:04 - 04140192 _____ (Adobe Systems Incorporated) C:\Users\Ondra\Downloads\adobe-flash-player_11.2.202.235nonIE.exe
2014-09-13 18:58 - 2014-09-13 18:57 - 00782000 _____ ( ) C:\Users\Ondra\Downloads\adobe_flash_player.exe
2014-09-13 17:48 - 2014-09-13 17:48 - 00001135 _____ () C:\Users\Public\Desktop\Opera.lnk
2014-09-13 17:48 - 2014-09-13 17:48 - 00001135 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2014-09-13 17:45 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-09-13 17:30 - 2014-07-02 15:36 - 00000000 ____D () C:\Program Files (x86)\Google
2014-09-13 17:30 - 2014-07-02 15:30 - 00000000 ____D () C:\Windows\SysWOW64\Adobe
2014-09-13 17:28 - 2014-01-07 18:09 - 00001393 _____ () C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-09-13 15:55 - 2014-01-07 18:36 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Mozilla
2014-09-13 15:54 - 2014-09-13 15:31 - 35100360 _____ () C:\Users\Ondra\Downloads\Firefox Setup 32.0.exe
2014-09-13 15:23 - 2014-09-13 15:22 - 00868360 _____ (Opera Software) C:\Users\Ondra\Downloads\Opera_NI_stable.exe
2014-09-12 20:39 - 2014-08-03 12:38 - 00000000 ____D () C:\Program Files (x86)\Apps Hat
2014-09-12 19:45 - 2014-08-03 12:40 - 00001876 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.job
2014-09-12 18:40 - 2014-08-03 12:40 - 00002636 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.job
2014-09-12 18:40 - 2014-08-03 12:40 - 00001926 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.job
2014-09-12 18:40 - 2014-08-03 12:40 - 00001364 _____ () C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.job
2014-09-12 05:07 - 2014-01-16 21:02 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-09-11 18:45 - 2014-09-11 18:45 - 00000000 ____D () C:\Users\Ondra\Downloads\Dan Sperry - Technical Dove Tosses
2014-09-11 17:12 - 2014-09-11 17:12 - 17328816 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2014-09-08 17:19 - 2014-09-08 17:19 - 00000020 ___SH () C:\Users\DefaultAppPool\ntuser.ini
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Šablony
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Soubory cookie
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Poslední
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Okolní tiskárny
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Okolní síť
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Nabídka Start
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Dokumenty
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Obrázky
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Hudba
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Documents\Filmy
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\Data aplikací
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 _SHDL () C:\Users\DefaultAppPool\AppData\Local\Data aplikací
2014-09-08 17:19 - 2014-09-08 17:19 - 00000000 ____D () C:\Users\DefaultAppPool
2014-09-06 20:12 - 2014-09-06 20:11 - 01892361 _____ () C:\Users\Ondra\Downloads\Minecraft-1.8-Mac-and-Windows-Cracked-Launcher-[AUTO-UPDATES]-by-Racad.zip
2014-09-06 20:09 - 2014-09-06 20:08 - 00000000 ____D () C:\Users\Ondra\Downloads\Moon Taxi Immersion Bundle
2014-09-06 20:07 - 2014-09-06 20:07 - 00000833 _____ () C:\Users\Ondra\Desktop\BitTorrent.lnk
2014-09-06 20:07 - 2014-09-06 20:07 - 00000813 _____ () C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\BitTorrent.lnk
2014-09-06 20:00 - 2014-09-06 20:00 - 00000000 ____D () C:\Users\Ondra\Desktop\bin
2014-09-06 20:00 - 2014-09-06 19:58 - 00000000 ____D () C:\Users\Ondra\Downloads\New Folder
2014-09-06 19:57 - 2014-09-06 19:55 - 54613936 ____R () C:\Users\Ondra\Downloads\New Folder.rar
2014-09-06 19:52 - 2014-09-06 19:52 - 00017214 _____ () C:\Users\Ondra\Downloads\[CzT]Minecraft_1_8_Full_verze.torrent
2014-09-05 18:43 - 2014-09-05 18:43 - 09755449 _____ () C:\Users\Ondra\Downloads\g2addon-2_6.exe
2014-09-05 18:40 - 2014-09-05 18:40 - 03031183 _____ (${MOD_COMP}) C:\Users\Ondra\Downloads\gothic2_fix-2.6.0.0-rev2.exe
2014-09-05 18:40 - 2014-09-05 18:40 - 00092970 _____ () C:\Users\Ondra\Downloads\gothic2_playerkit-2.6f.exe
2014-09-05 18:33 - 2014-02-01 11:00 - 00000000 ____D () C:\Program Files (x86)\Piranha Bytes
2014-09-05 18:31 - 2014-09-05 18:30 - 02210677 _____ (Gothicz NET - Komunita © 2014) C:\Users\Ondra\Downloads\g2notr-systempack-1.0.exe
2014-09-05 17:33 - 2014-08-29 22:02 - 00000000 ___RD () C:\Users\Ondra\Disk Google
2014-09-02 17:54 - 2014-09-02 17:43 - 172814918 _____ () C:\Users\Ondra\Downloads\The-Game---Jesus-Piece-(Deluxe-Edition)-[iTunes]-(2012-Album).rar
2014-08-31 13:03 - 2009-07-14 06:45 - 05049960 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-08-29 22:02 - 2014-08-29 22:02 - 00001674 _____ () C:\Users\Ondra\Desktop\Disk Google.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002042 _____ () C:\Users\Public\Desktop\Google Slides.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002040 _____ () C:\Users\Public\Desktop\Google Sheets.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00002030 _____ () C:\Users\Public\Desktop\Google Docs.lnk
2014-08-29 22:01 - 2014-08-29 22:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2014-08-29 22:01 - 2014-03-09 13:52 - 00000000 ____D () C:\Users\Ondra\AppData\Local\Google
2014-08-29 21:58 - 2014-08-29 21:57 - 00895120 _____ (Google Inc.) C:\Users\Ondra\Downloads\googledrivesync.exe
2014-08-29 21:58 - 2014-07-02 15:37 - 00003892 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-08-29 21:58 - 2014-07-02 15:37 - 00003640 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-08-28 23:18 - 2014-08-28 23:18 - 00017920 _____ () C:\Users\Ondra\Desktop\Untitled.veg.bak
2014-08-26 10:32 - 2014-08-26 10:13 - 159434083 _____ () C:\Users\Ondra\Downloads\Nightwish---2007---Dark-Passion-Play.zip
2014-08-25 15:02 - 2014-01-11 17:37 - 00000000 ____D () C:\ProgramData\Sony
2014-08-25 15:02 - 2014-01-11 17:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2014-08-25 14:55 - 2014-08-20 23:19 - 00000000 ____D () C:\Program Files (x86)\GRETECH
2014-08-25 14:52 - 2014-01-08 20:54 - 00000000 ____D () C:\Program Files (x86)\IObit
2014-08-25 14:51 - 2014-08-16 17:43 - 00000000 ____D () C:\Program Files (x86)\Brany Skeldalu
2014-08-24 22:21 - 2014-08-24 22:21 - 00030180 _____ () C:\Users\Ondra\Documents\hrt 2.dvds
2014-08-24 21:44 - 2014-08-24 21:42 - 17533715 _____ () C:\Users\Ondra\Documents\PRACHASTÁ.wmv
2014-08-24 21:32 - 2014-08-24 21:20 - 30205901 _____ () C:\Users\Ondra\Documents\POČASÍCKO.wmv
2014-08-24 21:19 - 2014-08-24 21:19 - 01011632 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv.sfap0
2014-08-24 21:19 - 2014-08-24 21:19 - 00007968 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv.sfk
2014-08-24 21:16 - 2014-08-24 21:15 - 02277475 _____ () C:\Users\Ondra\Documents\POČASÍ.wmv
2014-08-24 21:09 - 2014-08-24 21:02 - 18421727 _____ () C:\Users\Ondra\Documents\fantomas.wmv
2014-08-24 20:54 - 2014-08-24 20:40 - 45574153 _____ () C:\Users\Ondra\Documents\PEPA.wmv
2014-08-24 20:54 - 2014-08-24 20:37 - 00009424 _____ () C:\Users\Ondra\Documents\reportáž.wmv.sfk
2014-08-24 20:37 - 2014-08-24 20:37 - 01198232 _____ () C:\Users\Ondra\Documents\reportáž.wmv.sfap0
2014-08-24 20:28 - 2014-08-24 20:25 - 04637481 _____ () C:\Users\Ondra\Documents\reportáž.wmv
2014-08-24 20:28 - 2014-08-24 20:24 - 00241688 _____ () C:\Users\Ondra\Desktop\pepa.veg
2014-08-24 20:24 - 2014-08-24 20:24 - 00258000 _____ () C:\Users\Ondra\Desktop\pepa.veg.bak
2014-08-23 18:24 - 2014-08-23 18:19 - 00000000 ____D () C:\Users\Ondra\Desktop\Half Life Pack (1)
2014-08-23 13:08 - 2014-08-23 13:08 - 00014016 _____ () C:\Users\Ondra\Downloads\[CzT]Half_Life_1_Pack_specialni_kompilace_.torrent
2014-08-23 04:07 - 2014-08-28 18:46 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-23 03:45 - 2014-08-28 18:46 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-23 02:59 - 2014-08-28 18:46 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys

Some content of TEMP:
====================
C:\Users\Ondra\AppData\Local\Temp\CloudBackup5829.exe
C:\Users\Ondra\AppData\Local\Temp\Quarantine.exe
C:\Users\Ondra\AppData\Local\Temp\SIntf16.dll
C:\Users\Ondra\AppData\Local\Temp\SIntf32.dll
C:\Users\Ondra\AppData\Local\Temp\SIntfNT.dll
C:\Users\Ondra\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Ondra\AppData\Local\Temp\vcredist_x64.exe
C:\Users\Ondra\AppData\Local\Temp\war3_Install.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.exeú/UzXVbGYj='Apps Hat' /RJtXNlqNn=48559 /VLtBCp='000820' /YlIEdT='0' /EJiOLewi='appshatmadness' /gKzzwjXKs=C415103B5CF443E4AD2B7DCE5C5CA1E5IE /UiMfg=86411a8da8bbcb510b30f6ba4068b8a9 /komTECIG=1_34_07_29 /GipKCg=1.34.7.29 /oxzwkVw=1407062321 /HyfScLolu=http://stats.infogenservice.com /AoEWZhoYb=http://errors.infogenservice.com /twfIanQ=http://js.infogenservice.com /EhfoJZqd=opera /kksEOXn /EwbjBAZa=Apps Hat /ifHpua7f937b1-1822-4e15-b817-3290385ebd30.dll /QGUGHMICl72ff3edf-b1ca-4260-822e-df33b957a044.dll /RJiEg117f4961-35a2-4fcf-a2ed-5d6306d1ff22-64.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.exe/frILTi /UzXVbGYj='Apps Hat' /RJtXNlqNn=48559 /VLtBCp='000820' /YlIEdT='0' /EJiOLewi='appshatmadness' /gKzzwjXKs=C415103B5CF443E4AD2B7DCE5C5CA1E5IE /UiMfg=86411a8da8bbcb510b30f6ba4068b8a9 /komTECIG=1_34_07_29 /GipKCg=1.34.7.29 /oxzwkVw=1407062321 /HyfScLolu=http://stats.infogenservice.com /AoEWZhoYb=http://errors.infogenservice.com /twfIanQ=http://js.infogenservice.com /EhfoJZqd=opera /kksEOXn /EwbjBAZa=Apps Hat /ifHpua7f937b1-1822-4e15-b817-3290385ebd30.dll /QGUGHMICl72ff3edf-b1ca-4260-822e-df33b957a044.dll /RJiEg117f4961-35a2-4fcf-a2ed-5d6306d1ff22-64.exe <==== ATTENTION
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Ondra\Desktop" je 37538 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeBridge
"C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced SystemCare 7
"C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon
"C:\Users\Ondra\AppData\Roaming\BitTorrent\BitTorrent.exe" /MINIMIZED [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GoogleDriveSync
"C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe" /autostart [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IObit Malware Fighter
"C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype
"C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony PC Companion
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard
Re�im ECHO je vypnut.


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Re: Prosím o kontrolu logu

Napsal: 22 zář 2014 18:50
od Rudy
Otevřte poznámkový blok a zkopírujte do něj:
Start
SearchScopes: HKCU - {363B01D3-7E6F-43D2-8DEA-85993497B576} URL = http://search.conduit.com/ResultsExt.as ... 25220&UM=2
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
FF Extension: No Name - C:\Program Files (x86)\IObit Apps Toolbar\FF [Not Found]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.job
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.job
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.job
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.job
C:\Users\Ondra\AppData\Local\Temp
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.exeú/UzXVbGYj='Apps Hat' /RJtXNlqNn=48559 /VLtBCp='000820' /YlIEdT='0' /EJiOLewi='appshatmadness' /gKzzwjXKs=C415103B5CF443E4AD2B7DCE5C5CA1E5IE /UiMfg=86411a8da8bbcb510b30f6ba4068b8a9 /komTECIG=1_34_07_29 /GipKCg=1.34.7.29 /oxzwkVw=1407062321 /HyfScLolu=http://stats.infogenservice.com /AoEWZhoYb=http://errors.infogenservice.com /twfIanQ=http://js.infogenservice.com /EhfoJZqd=opera /kksEOXn /EwbjBAZa=Apps Hat /ifHpua7f937b1-1822-4e15-b817-3290385ebd30.dll /QGUGHMICl72ff3edf-b1ca-4260-822e-df33b957a044.dll /RJiEg117f4961-35a2-4fcf-a2ed-5d6306d1ff22-64.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.exe/frILTi /UzXVbGYj='Apps Hat' /RJtXNlqNn=48559 /VLtBCp='000820' /YlIEdT='0' /EJiOLewi='appshatmadness' /gKzzwjXKs=C415103B5CF443E4AD2B7DCE5C5CA1E5IE /UiMfg=86411a8da8bbcb510b30f6ba4068b8a9 /komTECIG=1_34_07_29 /GipKCg=1.34.7.29 /oxzwkVw=1407062321 /HyfScLolu=http://stats.infogenservice.com /AoEWZhoYb=http://errors.infogenservice.com /twfIanQ=http://js.infogenservice.com /EhfoJZqd=opera /kksEOXn /EwbjBAZa=Apps Hat /ifHpua7f937b1-1822-4e15-b817-3290385ebd30.dll /QGUGHMICl72ff3edf-b1ca-4260-822e-df33b957a044.dll /RJiEg117f4961-35a2-4fcf-a2ed-5d6306d1ff22-64.exe <==== ATTENTION
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Na ploše máte příliš mnoho dat (37,5GB), což může zpomalovat start. Vytvořte třeba v C:\Users\Ondra nový adresář, kam všechna svá data přesuňte a pro snazší přístup na ploše vytvořte zástupce.

Re: Prosím o kontrolu logu

Napsal: 22 zář 2014 19:03
od LecoQ
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 12-09-2014
Ran by Ondra at 2014-09-22 19:57:04 Run:1
Running from C:\Users\Ondra\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
SearchScopes: HKCU - {363B01D3-7E6F-43D2-8DEA-85993497B576} URL = http://search.conduit.com/ResultsExt.as ... 25220&UM=2
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
FF Extension: No Name - C:\Program Files (x86)\IObit Apps Toolbar\FF [Not Found]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.job
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.job
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.job
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.job
C:\Users\Ondra\AppData\Local\Temp
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.exeú/UzXVbGYj='Apps Hat' /RJtXNlqNn=48559 /VLtBCp='000820' /YlIEdT='0' /EJiOLewi='appshatmadness' /gKzzwjXKs=C415103B5CF443E4AD2B7DCE5C5CA1E5IE /UiMfg=86411a8da8bbcb510b30f6ba4068b8a9 /komTECIG=1_34_07_29 /GipKCg=1.34.7.29 /oxzwkVw=1407062321 /HyfScLolu=http://stats.infogenservice.com /AoEWZhoYb=http://errors.infogenservice.com /twfIanQ=http://js.infogenservice.com /EhfoJZqd=opera /kksEOXn /EwbjBAZa=Apps Hat /ifHpua7f937b1-1822-4e15-b817-3290385ebd30.dll /QGUGHMICl72ff3edf-b1ca-4260-822e-df33b957a044.dll /RJiEg117f4961-35a2-4fcf-a2ed-5d6306d1ff22-64.exe <==== ATTENTION
Task: C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.job => C:\Program Files (x86)\Apps Hat\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.exe/frILTi /UzXVbGYj='Apps Hat' /RJtXNlqNn=48559 /VLtBCp='000820' /YlIEdT='0' /EJiOLewi='appshatmadness' /gKzzwjXKs=C415103B5CF443E4AD2B7DCE5C5CA1E5IE /UiMfg=86411a8da8bbcb510b30f6ba4068b8a9 /komTECIG=1_34_07_29 /GipKCg=1.34.7.29 /oxzwkVw=1407062321 /HyfScLolu=http://stats.infogenservice.com /AoEWZhoYb=http://errors.infogenservice.com /twfIanQ=http://js.infogenservice.com /EhfoJZqd=opera /kksEOXn /EwbjBAZa=Apps Hat /ifHpua7f937b1-1822-4e15-b817-3290385ebd30.dll /QGUGHMICl72ff3edf-b1ca-4260-822e-df33b957a044.dll /RJiEg117f4961-35a2-4fcf-a2ed-5d6306d1ff22-64.exe <==== ATTENTION
End
*****************

"HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{363B01D3-7E6F-43D2-8DEA-85993497B576}" => Key deleted successfully.
"HKCR\CLSID\{363B01D3-7E6F-43D2-8DEA-85993497B576}" => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => value deleted successfully.
"HKCR\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}" => Key not found.
C:\Program Files (x86)\IObit Apps Toolbar\FF not found.
"HKLM\SOFTWARE\Policies\Google" => Key deleted successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.job => Moved successfully.
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.job => Moved successfully.
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.job => Moved successfully.
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.job => Moved successfully.

"C:\Users\Ondra\AppData\Local\Temp" directory move:

C:\Users\Ondra\AppData\Local\Temp\28322667.od => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\9BA95F3B-C8BC-4C0D-8159-BB9D4A1EF567.Diagnose.Admin.0.etl => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\AdobeARM.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\AdwCleaner.jpg => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\amt3.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\atcMRUList.idx => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\atc_DownloadsBackupMain.lst => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\atc_MP3Backup.lst => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\boost197250.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\boost320056.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\boost334568.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\boost563426.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CFG3F53.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CFG7051.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CFG8067.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CFG9213.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CFG9ED0.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CFGA075.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\chrome_installer.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Cleaning.ico => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Click.wav => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CloudBackup5829.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CProgram Files (x86)Opera24.0.1558.53opera_autoupdate.download.lock => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CProgram Files (x86)Opera24.0.1558.53opera_autoupdate.metrics.lock => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CProgram Files (x86)Opera24.0.1558.53_0opera_autoupdate.download.lock => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CProgram Files (x86)Opera24.0.1558.53_0opera_autoupdate.metrics.lock => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CProgram Files (x86)Opera24.0.1558.61opera_autoupdate.download.lock => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CProgram Files (x86)Opera24.0.1558.61opera_autoupdate.metrics.lock => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CVR2B5C.tmp.cvr => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\D87DF9F1-AA9D-4DE7-971B-C0FFE50FB532.Diagnose.Admin.0.etl => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\dd_vcredistMSI6278.txt => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\dd_vcredistUI6278.txt => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Donate.ico => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\dvdstyler.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_5cc1aAsnb0CzQPf => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_7dx0c4VMUlAUWmQ => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_C8z1eE2LCdD4gus => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_HseCSwDZVuvIDbl => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_J7lnkKzR3JcLgDI => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_KmxB36mQ6VH8icP => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_L1LCjFp7sehY48g => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_NVmRl75knaFtbRr => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_oM0QI2vBlgpEPWw => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_S5YFSeEQbEkISoa => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_XkK6JWiWF6p0E10 => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_zgEcXRHOgpa1xo8 => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\EULA.txt => Moved successfully.
Could not move "C:\Users\Ondra\AppData\Local\Temp\FXSAPIDebugLogFile.txt" => Scheduled to move on reboot.
C:\Users\Ondra\AppData\Local\Temp\log.txt => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\mpbtrk.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\oobelib.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera-crashlog-3344-1.txt => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera_crashreporter.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera_installer_20140913172828.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera_installer_20140913174809.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\PDApp.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Quarantine.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Report.ico => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Scan.ico => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\SIntf16.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\SIntf32.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\SIntfNT.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\SkypeSetup.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\swtag.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Uninstall.ico => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\vcredist_x64.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\war3_Install.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\wmplog00.sqm => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\wmsetup.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~2711.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~5C16.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~5F91.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~911A.bat => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~911A.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~A68D.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~DA88.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~DFE74E9CD999317B95.TMP => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~nsu.tmp\Au_.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{E8DBCEBF-B5BE-4D25-A501-F14B09D9F53B}\{EC8F71AD-B5E7-4D4A-A69C-CE78CCF4B8FF}\Win7.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{AFE6D066-033E-4D95-B34B-A29271CAEF66}\{EC8F71AD-B5E7-4D4A-A69C-CE78CCF4B8FF}\Win7.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{13EE01AC-7BE0-4C6D-B012-7462D9555432}\Setup.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\UnityWebPlayer\UnityWebPlayerUpdate.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Opera NetInstaller\net_installer.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\is-PQTK2.tmp\UninstallPromote.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\is-PQTK2.tmp\_isetup\_setup64.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\is-PQTK2.tmp\_isetup\_shfoldr.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\is-9R4SM.tmp\UninstallPromote.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\is-9R4SM.tmp\_isetup\_setup64.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\is-9R4SM.tmp\_isetup\_shfoldr.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\avastBCLTMP\default\Web Data => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\avastBCLTMP\chrome\Default\Web Data => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\6502\ProjectOnUninstall.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\6502\taskmgr.dll => Moved successfully.
Could not move "C:\Users\Ondra\AppData\Local\Temp" directory. => Scheduled to move on reboot.

C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-2.job not found.
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-4.job not found.
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-6.job not found.
C:\Windows\Tasks\117f4961-35a2-4fcf-a2ed-5d6306d1ff22-7.job not found.

=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-09-22 20:00:27)<=

C:\Users\Ondra\AppData\Local\Temp\FXSAPIDebugLogFile.txt => Is moved successfully.
C:\Users\Ondra\AppData\Local\Temp => Moved successfully.

==== End of Fixlog ====

Re: Prosím o kontrolu logu

Napsal: 22 zář 2014 20:15
od Rudy
Smazáno. Nastala nějaká změna?

Re: Prosím o kontrolu logu

Napsal: 22 zář 2014 20:23
od LecoQ
Zatížení je nižší a počítač rychlejší. Díky :).

Re: Prosím o kontrolu logu

Napsal: 22 zář 2014 20:32
od Rudy
Rádo se stalo! :)