Stránka 1 z 2

delay.exe a YTAHelper.exe mi vytěžují procesor

Napsal: 02 říj 2014 19:55
od tomorn
Ahoj,
prosím o pomoc při řešení mého problému. Procesy delay.exe a YTAHelper.exe mi každý zatěžují celé jádro procesoru.
v nedávné době jsem řešil problémy s viry, které se mi podařilo snad zlikvidovat, v současné době mi avast nehlásí žádnou hrozbu. Spybot taky nic a v ccleaneru jsem taky nic neviděl.
Možná jsem svým zásahem proti virům něco nechtěně udělal.
Ve správci úloh mají oba programy stejnou ikonu jako měl odstraněný program ytoutubeakcelerator, který se mi podařilo odstranit.
Mám aktualizovaný Win 8.1.
Disk nehrabe víc než je nezbytně nutné a oba programy zabírají do 0,5 MB operační paměti.

Díky za pomoc.

Re: delay.exe a YTAHelper.exe mi vytěžují procesor

Napsal: 02 říj 2014 20:22
od vyosek
Zdravim :)

:arrow: Dejte log z FRST http://forum.viry.cz/viewtopic.php?f=13&t=133100 a budem moudrejsi

Re: delay.exe a YTAHelper.exe mi vytěžují procesor

Napsal: 02 říj 2014 20:48
od tomorn
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-10-2014 01
Ran by tomorn (administrator) on TOMAS-THINK on 02-10-2014 21:41:23
Running from C:\Users\tomorn\Desktop
Loaded Profile: tomorn (Available profiles: tomorn)
Platform: Windows 8.1 Pro (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Schneider Electric) C:\Program Files (x86)\APC\PowerChute Personal Edition\mainserv.exe
(Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe
(Lenovo Group Limited) C:\Program Files\lenovo\SettingsDependency\SettingsService.exe
(LENOVO INCORPORATED.) C:\Program Files\lenovo\iMController\SystemAgentService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(Schneider Electric) C:\Program Files (x86)\APC\PowerChute Personal Edition\dataserv.exe
() C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe
(Lenovo) C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
() C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Lenovo.) C:\Windows\System32\TpShocks.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Lenovo Group Limited) C:\Program Files\lenovo\Password Manager\password_manager.exe
(Lenovo) C:\Program Files\lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe
(Lenovo Group Limited) C:\Program Files (x86)\Lenovo\Password Manager\pwm_ie_helper_desktop.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
(Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe
(Lenovo Group Limited) C:\Program Files (x86)\Lenovo\Password Manager\pwm_ie_helper_metro.exe
(Lenovo Group Limited) C:\Program Files (x86)\Lenovo\Password Manager\password_manager.exe
() C:\Users\tomorn\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\tomorn\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(Logitech, Inc.) C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Pražská softwarová s.r.o.) C:\CPP\CppKalkulacky\CppCalcServer.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\HpqSRmon.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Schneider Electric) C:\Program Files (x86)\APC\PowerChute Personal Edition\apcsystray.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Lenovo Corporation) C:\Program Files\lenovo\Communications Utility\TpKnrres.exe
(Opera Software) C:\Program Files\Opera x64\opera.exe
() C:\Users\tomorn\AppData\Local\Installer\Installshopperpro_31614\delay.exe
(Goobzo LTD) C:\Program Files (x86)\YTAHelper\YTAHelper.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(forum.viry.cz) C:\Users\tomorn\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [TpShocks] => C:\WINDOWS\system32\TpShocks.exe [384344 2014-02-17] (Lenovo.)
HKLM\...\Run: [PasswordManager] => C:\Program Files\Lenovo\Password Manager\password_manager.exe [1665824 2014-06-23] (Lenovo Group Limited)
HKLM\...\Run: [LnvMobHotspotClient] => C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe [938032 2014-03-05] (Lenovo)
HKLM\...\Run: [LENOVO.TPKNRRES] => rundll32.exe "C:\Program Files\Lenovo\Communications Utility\LibStartStub.dll",AVStartupStub
HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3100440 2014-05-19] (Logitech, Inc.)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-08-01] (AVAST Software)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [35696 2009-02-27] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Display] => C:\Program Files (x86)\APC\PowerChute Personal Edition\DataCollectionLauncher.exe [284024 2011-08-24] (Schneider Electric)
HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150016 2008-08-20] (Hewlett-Packard)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-1076011386-52816415-3729311051-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1076011386-52816415-3729311051-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\tomorn\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-1076011386-52816415-3729311051-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\tomorn\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
AppInit_DLLs: C:\Program Files (x86)\SO_Booster\Assistant_x64.dll => C:\Program Files (x86)\SO_Booster\Assistant_x64.dll File Not Found
AppInit_DLLs-x32: c:\progra~2\so_boo~1\assist~1.dll => "c:\progra~2\so_boo~1\assist~1.dll" File Not Found
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\APC UPS Status.lnk
ShortcutTarget: APC UPS Status.lnk -> C:\Program Files (x86)\APC\PowerChute Personal Edition\Display.exe (Schneider Electric)
Startup: C:\Users\tomorn\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CPP - CalcServer.lnk
ShortcutTarget: CPP - CalcServer.lnk -> C:\CPP\CppKalkulacky\CppCalcServer.exe (Pražská softwarová s.r.o.)
ShellIconOverlayIdentifiers: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BootExecute: autocheck autochk * sdnclean64.exe
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13415
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
SearchScopes: HKCU - {14579F23-A5A0-4F3D-9E90-3DD5FD1C6E1B} URL = http://www.novinky.cz/hledej?w={searchT ... arch_13415
SearchScopes: HKCU - {314F55F3-3212-45C1-A39A-5ADDB8B1A4AD} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_13415
SearchScopes: HKCU - {392D204A-C60C-49A7-BB4B-E937F2737D5D} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKCU - {4100BC4D-C4A1-4F69-9984-1463D2A6C082} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKCU - {4401D234-3176-4A54-849F-FD22C5D8C3F0} URL = http://encyklopedie.seznam.cz/search?q= ... arch_13415
SearchScopes: HKCU - {4664258D-8806-4EDC-9EF9-DD9DDC441092} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_13415
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={sear
SearchScopes: HKCU - {94800920-E74E-4085-BF01-586E6E4E1B2F} URL = http://search.seznam.cz/?q={searchTerms ... arch_13415
SearchScopes: HKCU - {B67A06F3-8775-43A5-AB21-544D12D06B1D} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13415
SearchScopes: HKCU - {E2302477-A84F-4BBF-80F9-F89A17D36F96} URL = http://www.mapy.cz/?query={searchTerms} ... arch_13415
BHO: Senses -> {11111111-1111-1111-1111-110611191115} -> C:\Program Files (x86)\Senses\Senses-bho64.dll (Object Browser)
BHO: iWebar -> {11111111-1111-1111-1111-110611511123} -> C:\Program Files (x86)\iWebar\iWebar-bho64.dll (iWebar)
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll (Logitech, Inc.)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: YTAHelper -> {FCE3FA8B-BA81-467C-81D8-E43C00D1BC71} -> C:\ProgramData\YTAHelper\YTAHelper64.dll (Goobzo Ltd.)
BHO-x32: Senses -> {11111111-1111-1111-1111-110611191115} -> C:\Program Files (x86)\Senses\Senses-bho.dll (Object Browser)
BHO-x32: iWebar -> {11111111-1111-1111-1111-110611511123} -> C:\Program Files (x86)\iWebar\iWebar-bho.dll (iWebar)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll (Logitech, Inc.)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: YTAHelper -> {FCE3FA8B-BA81-467C-81D8-E43C00D1BC71} -> C:\ProgramData\YTAHelper\YTAHelper.dll (Goobzo Ltd.)
Winsock: Catalog9 01 C:\Program Files (x86)\YouTube Accelerator\ytalsp.dll [177512] (GOOBZO)
Winsock: Catalog9 02 C:\Program Files (x86)\YouTube Accelerator\ytalsp.dll [177512] (GOOBZO)
Winsock: Catalog9 03 C:\Program Files (x86)\YouTube Accelerator\ytalsp.dll [177512] (GOOBZO)
Winsock: Catalog9 04 C:\Program Files (x86)\YouTube Accelerator\ytalsp.dll [177512] (GOOBZO)
Winsock: Catalog9 05 C:\Program Files (x86)\YouTube Accelerator\ytalsp.dll [177512] (GOOBZO)
Winsock: Catalog9 06 C:\Program Files (x86)\YouTube Accelerator\ytalsp.dll [177512] (GOOBZO)
Winsock: Catalog9 07 C:\Program Files (x86)\YouTube Accelerator\ytalsp.dll [177512] (GOOBZO)
Winsock: Catalog9 08 C:\Program Files (x86)\YouTube Accelerator\ytalsp.dll [177512] (GOOBZO)
Winsock: Catalog9 09 C:\Program Files (x86)\YouTube Accelerator\ytalsp.dll [177512] (GOOBZO)
Winsock: Catalog9 10 C:\Program Files (x86)\YouTube Accelerator\ytalsp.dll [177512] (GOOBZO)
Winsock: Catalog9 11 C:\Program Files (x86)\YouTube Accelerator\ytalsp.dll [177512] (GOOBZO)
Winsock: Catalog9 23 C:\Program Files (x86)\YouTube Accelerator\ytalsp.dll [177512] (GOOBZO)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\tomorn\AppData\Roaming\Mozilla\Firefox\Profiles\4dv2f4g5.default
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()
FF Plugin: @java.com/DTPlugin,version=10.60.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.60.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll No File
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF user.js: detected! => C:\Users\tomorn\AppData\Roaming\Mozilla\Firefox\Profiles\4dv2f4g5.default\user.js
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Apps Hat - C:\Users\tomorn\AppData\Roaming\Mozilla\Firefox\Profiles\4dv2f4g5.default\Extensions\39ed7c16-185d-4f88-b976-666d4928ba01@fe4550c1-7a4f-4a62-ad1c-45e0afdf81a4.com [2014-09-30]
FF Extension: iWebar - C:\Users\tomorn\AppData\Roaming\Mozilla\Firefox\Profiles\4dv2f4g5.default\Extensions\ROUAILDE73397174@UXGZI17268980.com [2014-10-01]
FF Extension: Senses - C:\Users\tomorn\AppData\Roaming\Mozilla\Firefox\Profiles\4dv2f4g5.default\Extensions\warnerroberts@hotmail.com [2014-09-30]
FF Extension: Youtube Accelerator Helper - C:\Users\tomorn\AppData\Roaming\Mozilla\Firefox\Profiles\4dv2f4g5.default\Extensions\{4C59F3E5-BBD0-4344-8DD2-30866FA0B31E} [2014-09-30]
FF Extension: Seznam lištička - C:\Users\tomorn\AppData\Roaming\Mozilla\Firefox\Profiles\4dv2f4g5.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2014-09-30]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-06-22]
FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
FF Extension: Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2014-06-23]
FF HKCU\...\Firefox\Extensions: [{F74D5734-46F5-4B16-96F0-1E7FBF41B750}] - C:\Program Files (x86)\Lenovo\Password Manager\PWM Firefox Extension\2.0b12
FF Extension: ThinkVantage Password Manager - C:\Program Files (x86)\Lenovo\Password Manager\PWM Firefox Extension\2.0b12 [2014-06-22]

Chrome:
=======
CHR HomePage: Default -> hxxp://www.seznam.cz/?clid=13415
CHR NewTab: Default -> "chrome-extension://olfeabkoenfaoljndfecamgilllcpiak/core/chrome/content/speedDial/speedDial.html"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-22]
CHR Extension: (Disk Google) - C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-22]
CHR Extension: (Seznam Lištička - Email) - C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2014-09-30]
CHR Extension: (YouTube) - C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-22]
CHR Extension: (Vyhledávání Google) - C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-22]
CHR Extension: (Peněženka Google) - C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-22]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2014-09-30]
CHR Extension: (Gmail) - C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-06-22]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-15]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 APC Data Service; C:\Program Files (x86)\APC\PowerChute Personal Edition\dataserv.exe [21880 2011-08-24] (Schneider Electric)
R2 APC UPS Service; C:\Program Files (x86)\APC\PowerChute Personal Edition\mainserv.exe [705912 2011-08-24] (Schneider Electric)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-15] (AVAST Software)
S3 AVControlCenter; C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe [599024 2014-06-23] (Lenovo Corporation)
R2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2255064 2013-10-28] (Broadcom Corporation.)
S3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [248832 2009-05-18] (Hewlett-Packard Co.) [File not signed]
S3 KeyIso; C:\Windows\SysWOW64\keyiso.dll [44032 2013-08-22] (Microsoft Corporation)
S3 Lenovo EasyPlus Hotspot; C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe [559872 2014-08-06] (Lenovo)
R2 Lenovo Settings Service; C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe [2012720 2014-05-13] (Lenovo Group Limited)
R2 Lenovo System Agent Service; C:\Program Files\Lenovo\iMController\SystemAgentService.exe [584960 2014-08-18] (LENOVO INCORPORATED.)
S3 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [709616 2014-06-23] (Lenovo Corporation)
S3 lfsvc; C:\Windows\SysWOW64\GeofenceMonitorService.dll [357376 2014-06-22] (Microsoft Corporation)
S3 LnvHotSpotSvc; C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe [474160 2014-03-05] (Lenovo)
R2 LocationTaskManager; C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe [470000 2014-06-10] ()
S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [1663880 2014-05-06] ()
S3 Netlogon; C:\Windows\SysWOW64\netlogon.dll [688640 2014-06-22] (Microsoft Corporation)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
S2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [558592 2013-10-20] () [File not signed]
S3 smphost; C:\Windows\SysWOW64\smphost.dll [11776 2013-08-22] (Microsoft Corporation)
S3 StorSvc; C:\Windows\SysWOW64\storsvc.dll [18944 2013-08-22] (Microsoft Corporation)
S3 SUService; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [24560 2014-04-24] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-06-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-06-22] (Microsoft Corporation)
S2 YouTubeAcceleratorService; C:\PROGRA~2\YOUTUB~1\YouTubeAcceleratorService.exe -start -scm [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-07-15] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-07-15] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-07-15] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-07-15] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-07-15] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-07-15] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-07-15] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-07-15] ()
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-10-28] (Broadcom Corporation.)
R3 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-06-22] (Disc Soft Ltd)
S3 NANMp50; C:\Windows\System32\Drivers\NANMp50.sys [46776 2010-03-25] (Printing Communications Assoc., Inc. (PCAUSA))
S3 NANSp50; C:\Windows\System32\Drivers\NANSp50.sys [45752 2010-03-25] (Printing Communications Assoc., Inc. (PCAUSA))
R3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [1936088 2013-07-31] (Realtek Semiconductor Corporation )
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [45296 2014-07-28] (Synaptics Incorporated)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-06-22] (Microsoft Corporation)
R1 {00c97d86-accb-4288-9972-6d929c1fe93a}Gw64; C:\Windows\System32\drivers\{00c97d86-accb-4288-9972-6d929c1fe93a}Gw64.sys [48720 2014-09-30] (StdLib)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-02 21:41 - 2014-10-02 21:42 - 00026284 _____ () C:\Users\tomorn\Desktop\FRST.txt
2014-10-02 21:40 - 2014-10-02 21:41 - 00000000 ____D () C:\FRST
2014-10-02 21:38 - 2014-10-02 21:38 - 00112640 _____ (forum.viry.cz) C:\Users\tomorn\Desktop\FRSTLauncher.exe
2014-10-02 21:35 - 2014-10-02 21:36 - 02108928 _____ (Farbar) C:\Users\tomorn\Desktop\FRST64.exe
2014-10-02 21:32 - 2014-10-02 21:33 - 00000000 ____D () C:\rsit
2014-10-02 21:32 - 2014-10-02 21:32 - 00000000 ____D () C:\Program Files\trend micro
2014-10-02 21:29 - 2014-10-02 21:39 - 00000000 ____D () C:\Users\tomorn\Desktop\optimalizace windows
2014-10-02 20:20 - 2014-10-02 20:19 - 00450770 ____R () C:\WINDOWS\system32\Drivers\etc\hosts.20141002-202038.backup
2014-10-02 20:19 - 2014-10-01 21:00 - 00450712 ____R () C:\WINDOWS\system32\Drivers\etc\hosts.20141002-201936.backup
2014-10-02 20:12 - 2014-10-02 20:12 - 00000000 ____D () C:\WINDOWS\System32\Tasks\Safer-Networking
2014-10-02 20:11 - 2014-10-02 20:15 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-10-02 20:11 - 2014-10-02 20:11 - 00001403 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-10-02 20:11 - 2014-10-02 20:11 - 00001391 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2014-10-02 20:11 - 2014-10-02 20:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-10-02 20:11 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\WINDOWS\system32\sdnclean64.exe
2014-10-01 21:00 - 2013-08-22 15:25 - 00000824 _____ () C:\WINDOWS\system32\Drivers\etc\hosts.20141001-210014.backup
2014-10-01 20:52 - 2014-10-02 21:02 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-10-01 20:52 - 2014-10-02 20:11 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy
2014-10-01 14:19 - 2014-10-01 14:19 - 00000448 _____ () C:\Users\tomorn\Desktop\AutoPico.log
2014-10-01 10:52 - 2014-10-01 10:52 - 00000000 _____ () C:\autoexec.bat
2014-10-01 10:50 - 2014-10-01 10:50 - 00051496 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\stflt.sys
2014-10-01 10:50 - 2014-10-01 10:50 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-10-01 10:49 - 2014-10-01 21:13 - 00000000 ____D () C:\Program Files (x86)\Spyware Terminator
2014-10-01 10:49 - 2014-10-01 20:51 - 00000000 ____D () C:\WINDOWS\1F7E4FF9D2E542589AE1E16E6CB3252A.TMP
2014-10-01 06:18 - 2014-10-02 09:42 - 00001341 _____ () C:\WINDOWS\setupact.log
2014-10-01 06:18 - 2014-10-01 06:18 - 00000000 _____ () C:\WINDOWS\setuperr.log
2014-10-01 06:15 - 2014-10-02 18:15 - 00003776 _____ () C:\WINDOWS\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-1.job
2014-10-01 06:15 - 2014-10-02 18:15 - 00002786 _____ () C:\WINDOWS\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-5_user.job
2014-10-01 06:15 - 2014-10-02 18:15 - 00002786 _____ () C:\WINDOWS\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-5.job
2014-10-01 06:15 - 2014-10-02 18:15 - 00002442 _____ () C:\WINDOWS\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-2.job
2014-10-01 06:15 - 2014-10-01 06:15 - 00006780 _____ () C:\WINDOWS\System32\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-1
2014-10-01 06:15 - 2014-10-01 06:15 - 00005790 _____ () C:\WINDOWS\System32\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-5
2014-10-01 06:15 - 2014-10-01 06:15 - 00005446 _____ () C:\WINDOWS\System32\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-2
2014-10-01 06:14 - 2014-10-02 21:19 - 00004490 _____ () C:\WINDOWS\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-6.job
2014-10-01 06:14 - 2014-10-02 21:19 - 00004490 _____ () C:\WINDOWS\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-6.job
2014-10-01 06:14 - 2014-10-02 19:44 - 00001364 _____ () C:\WINDOWS\Tasks\MFZWJ.job
2014-10-01 06:14 - 2014-10-02 18:14 - 00005516 _____ () C:\WINDOWS\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-11.job
2014-10-01 06:14 - 2014-10-02 18:14 - 00005180 _____ () C:\WINDOWS\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-11.job
2014-10-01 06:14 - 2014-10-02 18:14 - 00004490 _____ () C:\WINDOWS\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-4.job
2014-10-01 06:14 - 2014-10-02 18:14 - 00004490 _____ () C:\WINDOWS\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-4.job
2014-10-01 06:14 - 2014-10-02 18:14 - 00004154 _____ () C:\WINDOWS\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-7.job
2014-10-01 06:14 - 2014-10-02 18:14 - 00004154 _____ () C:\WINDOWS\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-7.job
2014-10-01 06:14 - 2014-10-02 18:14 - 00003776 _____ () C:\WINDOWS\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-1.job
2014-10-01 06:14 - 2014-10-02 18:14 - 00002786 _____ () C:\WINDOWS\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-5_user.job
2014-10-01 06:14 - 2014-10-02 18:14 - 00002786 _____ () C:\WINDOWS\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-5.job
2014-10-01 06:14 - 2014-10-02 18:14 - 00002442 _____ () C:\WINDOWS\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-2.job
2014-10-01 06:14 - 2014-10-02 16:34 - 00001714 _____ () C:\WINDOWS\Tasks\THAGUQRU.job
2014-10-01 06:14 - 2014-10-01 06:15 - 00000000 ____D () C:\Program Files (x86)\iWebar
2014-10-01 06:14 - 2014-10-01 06:14 - 01980832 _____ (Object Browser) C:\Users\tomorn\AppData\Roaming\THAGUQRU.exe
2014-10-01 06:14 - 2014-10-01 06:14 - 01529248 _____ (Object Browser) C:\Users\tomorn\AppData\Roaming\MFZWJ.exe
2014-10-01 06:14 - 2014-10-01 06:14 - 00008520 _____ () C:\WINDOWS\System32\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-11
2014-10-01 06:14 - 2014-10-01 06:14 - 00008184 _____ () C:\WINDOWS\System32\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-11
2014-10-01 06:14 - 2014-10-01 06:14 - 00007494 _____ () C:\WINDOWS\System32\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-6
2014-10-01 06:14 - 2014-10-01 06:14 - 00007494 _____ () C:\WINDOWS\System32\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-4
2014-10-01 06:14 - 2014-10-01 06:14 - 00007494 _____ () C:\WINDOWS\System32\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-6
2014-10-01 06:14 - 2014-10-01 06:14 - 00007494 _____ () C:\WINDOWS\System32\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-4
2014-10-01 06:14 - 2014-10-01 06:14 - 00007158 _____ () C:\WINDOWS\System32\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-7
2014-10-01 06:14 - 2014-10-01 06:14 - 00007158 _____ () C:\WINDOWS\System32\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-7
2014-10-01 06:14 - 2014-10-01 06:14 - 00006780 _____ () C:\WINDOWS\System32\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-1
2014-10-01 06:14 - 2014-10-01 06:14 - 00005790 _____ () C:\WINDOWS\System32\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-5
2014-10-01 06:14 - 2014-10-01 06:14 - 00005446 _____ () C:\WINDOWS\System32\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-2
2014-10-01 06:14 - 2014-10-01 06:14 - 00004730 _____ () C:\WINDOWS\System32\Tasks\THAGUQRU
2014-10-01 06:14 - 2014-10-01 06:14 - 00004378 _____ () C:\WINDOWS\System32\Tasks\MFZWJ
2014-10-01 06:13 - 2014-10-02 18:14 - 00003810 _____ () C:\WINDOWS\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-3.job
2014-10-01 06:13 - 2014-10-01 06:14 - 00006814 _____ () C:\WINDOWS\System32\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-3
2014-10-01 00:56 - 2014-10-02 09:55 - 00270409 _____ () C:\WINDOWS\WindowsUpdate.log
2014-10-01 00:53 - 2014-10-01 11:57 - 00004572 _____ () C:\WINDOWS\PFRO.log
2014-09-30 20:11 - 2014-09-30 20:11 - 00004334 _____ () C:\WINDOWS\System32\Tasks\Installer_shopperpro
2014-09-30 19:13 - 2014-09-30 20:31 - 00002446 _____ () C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-5_user.job
2014-09-30 19:13 - 2014-09-30 20:31 - 00002446 _____ () C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-5.job
2014-09-30 19:12 - 2014-10-01 00:54 - 00003470 _____ () C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-6.job
2014-09-30 19:12 - 2014-09-30 20:31 - 00004494 _____ () C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-4.job
2014-09-30 19:12 - 2014-09-30 20:30 - 00003134 _____ () C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-7.job
2014-09-30 19:12 - 2014-09-30 20:30 - 00002760 _____ () C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-1.job
2014-09-30 19:12 - 2014-09-30 20:30 - 00002110 _____ () C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-2.job
2014-09-30 19:11 - 2014-09-30 21:57 - 00000000 ____D () C:\Program Files (x86)\Apps Hat
2014-09-30 19:11 - 2014-09-30 20:31 - 00004496 _____ () C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-11.job
2014-09-30 19:03 - 2014-10-02 19:03 - 00003096 _____ () C:\WINDOWS\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-1.job
2014-09-30 19:03 - 2014-10-02 19:03 - 00002786 _____ () C:\WINDOWS\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-5_user.job
2014-09-30 19:03 - 2014-10-02 19:03 - 00002786 _____ () C:\WINDOWS\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-5.job
2014-09-30 19:03 - 2014-10-02 19:03 - 00002442 _____ () C:\WINDOWS\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-2.job
2014-09-30 19:03 - 2014-10-02 19:03 - 00001358 _____ () C:\WINDOWS\Tasks\QF.job
2014-09-30 19:03 - 2014-09-30 19:03 - 01522592 _____ (Object Browser) C:\Users\tomorn\AppData\Roaming\QF.exe
2014-09-30 19:03 - 2014-09-30 19:03 - 00006100 _____ () C:\WINDOWS\System32\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-1
2014-09-30 19:03 - 2014-09-30 19:03 - 00005790 _____ () C:\WINDOWS\System32\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-5
2014-09-30 19:03 - 2014-09-30 19:03 - 00005446 _____ () C:\WINDOWS\System32\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-2
2014-09-30 19:03 - 2014-09-30 19:03 - 00004374 _____ () C:\WINDOWS\System32\Tasks\QF
2014-09-30 19:02 - 2014-10-02 21:07 - 00003810 _____ () C:\WINDOWS\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-6.job
2014-09-30 19:02 - 2014-10-02 19:02 - 00003810 _____ () C:\WINDOWS\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-4.job
2014-09-30 19:02 - 2014-10-02 19:02 - 00003466 _____ () C:\WINDOWS\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-7.job
2014-09-30 19:02 - 2014-09-30 19:02 - 00006814 _____ () C:\WINDOWS\System32\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-6
2014-09-30 19:02 - 2014-09-30 19:02 - 00006814 _____ () C:\WINDOWS\System32\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-4
2014-09-30 19:02 - 2014-09-30 19:02 - 00006470 _____ () C:\WINDOWS\System32\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-7
2014-09-30 19:01 - 2014-10-02 19:01 - 00004836 _____ () C:\WINDOWS\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-11.job
2014-09-30 19:01 - 2014-10-02 19:01 - 00003466 _____ () C:\WINDOWS\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-3.job
2014-09-30 19:01 - 2014-10-02 19:01 - 00001714 _____ () C:\WINDOWS\Tasks\LXTRRLNZ.job
2014-09-30 19:01 - 2014-10-01 06:14 - 00000000 ____D () C:\Program Files (x86)\Senses
2014-09-30 19:01 - 2014-09-30 19:01 - 01971104 _____ (Object Browser) C:\Users\tomorn\AppData\Roaming\LXTRRLNZ.exe
2014-09-30 19:01 - 2014-09-30 19:01 - 00007840 _____ () C:\WINDOWS\System32\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-11
2014-09-30 19:01 - 2014-09-30 19:01 - 00006470 _____ () C:\WINDOWS\System32\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-3
2014-09-30 19:01 - 2014-09-30 19:01 - 00004730 _____ () C:\WINDOWS\System32\Tasks\LXTRRLNZ
2014-09-30 19:01 - 2014-09-30 19:01 - 00000000 ____D () C:\Users\tomorn\AppData\Local\globalUpdate
2014-09-30 19:01 - 2014-09-30 19:01 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2014-09-30 18:55 - 2014-09-30 08:45 - 00048720 _____ (StdLib) C:\WINDOWS\system32\Drivers\{00c97d86-accb-4288-9972-6d929c1fe93a}Gw64.sys
2014-09-30 18:52 - 2014-09-30 18:52 - 00000000 ____D () C:\Users\tomorn\Desktop\novicorpwintoflash0.8.0009betaportable
2014-09-30 18:51 - 2014-10-01 20:42 - 00000000 ____D () C:\Program Files (x86)\YouTube Accelerator
2014-09-30 18:51 - 2014-10-01 20:24 - 00000000 ____D () C:\ProgramData\TEMP
2014-09-30 18:51 - 2014-09-30 18:51 - 00004560 _____ () C:\WINDOWS\System32\Tasks\YTAHelper
2014-09-30 18:51 - 2014-09-30 18:51 - 00001158 _____ () C:\Users\tomorn\Desktop\YouTube Accelerator.lnk
2014-09-30 18:51 - 2014-09-30 18:51 - 00000000 ____D () C:\Users\Public\Documents\YTAHelper
2014-09-30 18:51 - 2014-09-30 18:51 - 00000000 ____D () C:\Users\Public\Documents\GOOBZO
2014-09-30 18:51 - 2014-09-30 18:51 - 00000000 ____D () C:\ProgramData\YTAHelper
2014-09-30 18:51 - 2014-09-30 18:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YouTube Accelerator
2014-09-30 18:51 - 2014-09-30 18:51 - 00000000 ____D () C:\Program Files (x86)\YTAHelper
2014-09-30 18:50 - 2014-10-01 00:53 - 00000000 ____D () C:\Program Files (x86)\PodoWeb
2014-09-30 18:50 - 2014-09-30 18:50 - 00172032 _____ (Jin Hui E-mail: jinhui@jcomsoft.com Web: http://www.jcomsoft.com) C:\WINDOWS\SysWOW64\AniGIF.ocx
2014-09-30 18:50 - 2014-09-30 18:50 - 00000000 ____D () C:\Users\tomorn\AppData\Local\CrashRpt
2014-09-30 18:49 - 2014-09-30 18:49 - 00000000 ____D () C:\Program Files (x86)\Seznam.cz
2014-09-30 18:48 - 2014-10-02 09:38 - 00000000 ____D () C:\Users\tomorn\AppData\Roaming\Seznam.cz
2014-09-30 18:48 - 2014-09-30 18:48 - 34082966 _____ () C:\Users\tomorn\Desktop\novicorpwintoflash0.8.0009betaportable.zip
2014-09-29 09:22 - 2014-09-29 11:43 - 400630769 _____ () C:\Users\tomorn\Downloads\4349_bobbi_littleguy_dominator_hi.mp4
2014-09-27 09:27 - 2014-09-27 14:54 - 602001715 _____ () C:\Users\tomorn\Downloads\4611__hi.mp4
2014-09-26 20:48 - 2014-08-15 00:36 - 00014848 _____ () C:\WINDOWS\system32\SppExtComObjHook.dll
2014-09-26 20:48 - 2014-08-15 00:36 - 00004608 _____ () C:\WINDOWS\system32\SppExtComObjPatcher.exe
2014-09-26 20:46 - 2014-08-16 19:59 - 00000000 ____D () C:\Users\tomorn\Desktop\kms
2014-09-26 20:09 - 2014-09-26 23:43 - 389858653 _____ () C:\Users\tomorn\Downloads\12593_felony_rain_hi.mp4
2014-09-26 19:37 - 2014-09-26 19:37 - 00001696 _____ () C:\Users\Public\Desktop\Defraggler.lnk
2014-09-26 19:37 - 2014-09-26 19:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler
2014-09-26 19:37 - 2014-09-26 19:37 - 00000000 ____D () C:\Program Files\Defraggler
2014-09-26 16:05 - 2014-09-26 16:05 - 00000938 _____ () C:\Users\tomorn\Desktop\HD Tune.lnk
2014-09-26 16:05 - 2014-09-26 16:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune
2014-09-26 16:05 - 2014-09-26 16:05 - 00000000 ____D () C:\Program Files (x86)\HD Tune
2014-09-26 09:13 - 2014-10-02 09:35 - 00003754 _____ () C:\WINDOWS\System32\Tasks\AutoKMS
2014-09-25 09:58 - 2014-09-25 11:27 - 162973011 _____ () C:\Users\tomorn\Downloads\12592_felony_rain_hi.mp4
2014-09-18 16:51 - 2014-09-21 19:47 - 00000146 _____ () C:\Users\tomorn\Desktop\BALÍKY.txt
2014-09-18 11:06 - 2014-09-18 11:06 - 00000845 _____ () C:\Users\Public\Desktop\CPUID CPU-Z.lnk
2014-09-18 11:06 - 2014-09-18 11:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2014-09-18 11:06 - 2014-09-18 11:06 - 00000000 ____D () C:\Program Files\CPUID
2014-09-17 23:26 - 2014-09-26 23:30 - 00003836 _____ () C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1403474014
2014-09-14 22:10 - 2014-07-24 17:20 - 21266336 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2014-09-14 22:10 - 2014-07-24 17:07 - 07424320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2014-09-14 22:10 - 2014-07-24 17:03 - 02141920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2014-09-14 22:10 - 2014-07-24 17:03 - 00818624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-09-14 22:10 - 2014-07-24 16:57 - 02515264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2014-09-14 22:10 - 2014-07-24 15:46 - 18760328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2014-09-14 22:10 - 2014-07-24 15:36 - 02145472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2014-09-14 22:10 - 2014-07-24 15:36 - 00674512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2014-09-14 22:10 - 2014-07-24 11:44 - 16874496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2014-09-14 22:10 - 2014-07-24 11:16 - 12730880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2014-09-14 22:10 - 2014-07-24 10:53 - 01261056 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2014-09-14 22:10 - 2014-07-24 10:32 - 01532416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2014-09-14 22:10 - 2014-07-24 10:27 - 00907776 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2014-09-14 22:10 - 2014-07-24 10:21 - 01231872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2014-09-14 22:10 - 2014-07-24 10:10 - 01029632 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2014-09-14 22:10 - 2014-07-24 09:46 - 08652800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2014-09-14 22:10 - 2014-07-24 09:43 - 02696704 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2014-09-14 22:10 - 2014-07-24 09:39 - 02642944 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2014-09-14 22:10 - 2014-07-24 09:38 - 06649344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2014-09-14 22:10 - 2014-07-24 09:38 - 05777408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2014-09-14 22:10 - 2014-07-24 09:30 - 02318336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2014-09-14 22:10 - 2014-07-24 09:28 - 01600000 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2014-09-14 22:10 - 2014-06-14 08:03 - 02389504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2014-09-14 22:10 - 2014-06-14 07:46 - 02071552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2014-09-14 22:09 - 2014-07-24 17:28 - 00468288 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2014-09-14 22:09 - 2014-07-24 17:28 - 00419648 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys
2014-09-14 22:09 - 2014-07-24 17:28 - 00412992 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2014-09-14 22:09 - 2014-07-24 17:28 - 00280384 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2014-09-14 22:09 - 2014-07-24 17:28 - 00143680 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbccgp.sys
2014-09-14 22:09 - 2014-07-24 17:25 - 00054752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2014-09-14 22:09 - 2014-07-24 17:23 - 01519488 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2014-09-14 22:09 - 2014-07-24 17:23 - 00125472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2014-09-14 22:09 - 2014-07-24 17:20 - 00645592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2014-09-14 22:09 - 2014-07-24 17:20 - 00263400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2014-09-14 22:09 - 2014-07-24 17:16 - 02574208 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL
2014-09-14 22:09 - 2014-07-24 17:16 - 00211216 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVol.exe
2014-09-14 22:09 - 2014-07-24 17:07 - 02009920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2014-09-14 22:09 - 2014-07-24 17:05 - 01660048 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2014-09-14 22:09 - 2014-07-24 17:05 - 01519560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2014-09-14 22:09 - 2014-07-24 17:05 - 01488008 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2014-09-14 22:09 - 2014-07-24 17:05 - 01356840 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2014-09-14 22:09 - 2014-07-24 17:03 - 00882136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2014-09-14 22:09 - 2014-07-24 17:03 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2014-09-14 22:09 - 2014-07-24 17:03 - 00233888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2014-09-14 22:09 - 2014-07-24 17:03 - 00205512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mftranscode.dll
2014-09-14 22:09 - 2014-07-24 16:57 - 00475968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2014-09-14 22:09 - 2014-07-24 15:50 - 00098048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2014-09-14 22:09 - 2014-07-24 15:48 - 02410976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVDECOD.DLL
2014-09-14 22:09 - 2014-07-24 15:48 - 00180208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVol.exe
2014-09-14 22:09 - 2014-07-24 15:46 - 00477200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2014-09-14 22:09 - 2014-07-24 15:36 - 00707536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2014-09-14 22:09 - 2014-07-24 15:36 - 00355800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2014-09-14 22:09 - 2014-07-24 15:36 - 00180720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mftranscode.dll
2014-09-14 22:09 - 2014-07-24 13:46 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys
2014-09-14 22:09 - 2014-07-24 13:45 - 00076800 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys
2014-09-14 22:09 - 2014-07-24 13:44 - 00674816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2014-09-14 22:09 - 2014-07-24 13:43 - 00412160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2014-09-14 22:09 - 2014-07-24 13:42 - 01200640 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2014-09-14 22:09 - 2014-07-24 13:42 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2014-09-14 22:09 - 2014-07-24 13:42 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\NdisImPlatform.sys
2014-09-14 22:09 - 2014-07-24 13:41 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2014-09-14 22:09 - 2014-07-24 13:33 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2014-09-14 22:09 - 2014-07-24 13:33 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2014-09-14 22:09 - 2014-07-24 13:06 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasnap.dll
2014-09-14 22:09 - 2014-07-24 13:05 - 00287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2014-09-14 22:09 - 2014-07-24 13:05 - 00226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebClnt.dll
2014-09-14 22:09 - 2014-07-24 12:49 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersGPExt.dll
2014-09-14 22:09 - 2014-07-24 12:20 - 02050560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2014-09-14 22:09 - 2014-07-24 12:18 - 01089024 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpedit.dll
2014-09-14 22:09 - 2014-07-24 12:12 - 00878592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll
2014-09-14 22:09 - 2014-07-24 12:10 - 01844224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2014-09-14 22:09 - 2014-07-24 12:10 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2014-09-14 22:09 - 2014-07-24 12:10 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebClnt.dll
2014-09-14 22:09 - 2014-07-24 12:10 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iasnap.dll
2014-09-14 22:09 - 2014-07-24 12:09 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll
2014-09-14 22:09 - 2014-07-24 12:06 - 00438272 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2014-09-14 22:09 - 2014-07-24 12:05 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll
2014-09-14 22:09 - 2014-07-24 11:58 - 00785408 _____ (Microsoft Corporation) C:\WINDOWS\system32\pmcsnap.dll
2014-09-14 22:09 - 2014-07-24 11:54 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ppcsnap.dll
2014-09-14 22:09 - 2014-07-24 11:53 - 00215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\prnntfy.dll
2014-09-14 22:09 - 2014-07-24 11:52 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2014-09-14 22:09 - 2014-07-24 11:40 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs.dll
2014-09-14 22:09 - 2014-07-24 11:39 - 00770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll
2014-09-14 22:09 - 2014-07-24 11:33 - 01741824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2014-09-14 22:09 - 2014-07-24 11:32 - 01048064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpedit.dll
2014-09-14 22:09 - 2014-07-24 11:27 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll
2014-09-14 22:09 - 2014-07-24 11:27 - 00779264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\osk.exe
2014-09-14 22:09 - 2014-07-24 11:24 - 01817088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll
2014-09-14 22:09 - 2014-07-24 11:23 - 00328704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2014-09-14 22:09 - 2014-07-24 11:21 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll
2014-09-14 22:09 - 2014-07-24 11:18 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2014-09-14 22:09 - 2014-07-24 11:13 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prnntfy.dll
2014-09-14 22:09 - 2014-07-24 11:12 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2014-09-14 22:09 - 2014-07-24 11:11 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\conhost.exe
2014-09-14 22:09 - 2014-07-24 11:11 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll
2014-09-14 22:09 - 2014-07-24 11:10 - 00540672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2014-09-14 22:09 - 2014-07-24 11:09 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll
2014-09-14 22:09 - 2014-07-24 11:03 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll
2014-09-14 22:09 - 2014-07-24 11:02 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2014-09-14 22:09 - 2014-07-24 10:53 - 00449536 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2014-09-14 22:09 - 2014-07-24 10:49 - 01287680 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2014-09-14 22:09 - 2014-07-24 10:49 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2014-09-14 22:09 - 2014-07-24 10:49 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhsvc.dll
2014-09-14 22:09 - 2014-07-24 10:48 - 00659968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2014-09-14 22:09 - 2014-07-24 10:47 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2014-09-14 22:09 - 2014-07-24 10:43 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshbth.dll
2014-09-14 22:09 - 2014-07-24 10:39 - 02397184 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2014-09-14 22:09 - 2014-07-24 10:38 - 00371200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2014-09-14 22:09 - 2014-07-24 10:30 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2014-09-14 22:09 - 2014-07-24 10:29 - 00439296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2014-09-14 22:09 - 2014-07-24 10:28 - 00595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2014-09-14 22:09 - 2014-07-24 10:23 - 01404416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2014-09-14 22:09 - 2014-07-24 10:22 - 00487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2014-09-14 22:09 - 2014-07-24 10:21 - 00302080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll
2014-09-14 22:09 - 2014-07-24 10:20 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiapi.dll
2014-09-14 22:09 - 2014-07-24 10:19 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2014-09-14 22:09 - 2014-07-24 10:18 - 00795136 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2014-09-14 22:09 - 2014-07-24 10:16 - 00505344 _____ (Microsoft Corporation) C:\WINDOWS\system32\VAN.dll
2014-09-14 22:09 - 2014-07-24 10:16 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2014-09-14 22:09 - 2014-07-24 10:15 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2014-09-14 22:09 - 2014-07-24 10:15 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2014-09-14 22:09 - 2014-07-24 10:15 - 00432128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2014-09-14 22:09 - 2014-07-24 10:10 - 00889344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2014-09-14 22:09 - 2014-07-24 10:10 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2014-09-14 22:09 - 2014-07-24 10:10 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2014-09-14 22:09 - 2014-07-24 10:08 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2014-09-14 22:09 - 2014-07-24 10:08 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiapi.dll
2014-09-14 22:09 - 2014-07-24 10:07 - 01705472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2014-09-14 22:09 - 2014-07-24 10:05 - 00448000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VAN.dll
2014-09-14 22:09 - 2014-07-24 10:04 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2014-09-14 22:09 - 2014-07-24 10:02 - 03465216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2014-09-14 22:09 - 2014-07-24 10:01 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2014-09-14 22:09 - 2014-07-24 10:01 - 01992192 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2014-09-14 22:09 - 2014-07-24 10:01 - 01126912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2014-09-14 22:09 - 2014-07-24 09:58 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2014-09-14 22:09 - 2014-07-24 09:58 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll
2014-09-14 22:09 - 2014-07-24 09:54 - 01290752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
2014-09-14 22:09 - 2014-07-24 09:50 - 01182208 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.dll
2014-09-14 22:09 - 2014-07-24 09:50 - 00923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2014-09-14 22:09 - 2014-07-24 09:49 - 00263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafPrintProvider.dll
2014-09-14 22:09 - 2014-07-24 09:47 - 00576512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2014-09-14 22:09 - 2014-07-24 09:44 - 01057792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\printui.dll
2014-09-14 22:09 - 2014-07-24 09:43 - 00756224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2014-09-14 22:09 - 2014-07-24 09:43 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafPrintProvider.dll
2014-09-14 22:09 - 2014-07-24 09:41 - 00459264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2014-09-14 22:09 - 2014-07-24 09:33 - 03360768 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2014-09-14 22:09 - 2014-07-24 06:11 - 00513544 _____ () C:\WINDOWS\SysWOW64\locale.nls
2014-09-14 22:09 - 2014-07-24 06:11 - 00513544 _____ () C:\WINDOWS\system32\locale.nls
2014-09-14 22:09 - 2014-07-12 07:55 - 00268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wisp.dll
2014-09-14 22:09 - 2014-07-12 06:58 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wisp.dll
2014-09-14 22:09 - 2014-07-12 06:13 - 01417216 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-09-14 22:09 - 2014-07-04 14:59 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2014-09-14 22:09 - 2014-07-04 12:29 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll
2014-09-14 22:09 - 2014-07-04 12:20 - 01656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2014-09-14 22:09 - 2014-07-04 12:06 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxSip.dll
2014-09-14 22:09 - 2014-07-04 11:30 - 00544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2014-09-14 22:09 - 2014-07-04 11:27 - 00474112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2014-09-14 22:09 - 2014-06-27 08:22 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2014-09-14 22:09 - 2014-06-26 02:32 - 01029632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2014-09-14 22:09 - 2014-06-26 02:29 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dab.dll
2014-09-14 22:09 - 2014-06-20 01:37 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2014-09-14 22:09 - 2014-06-19 04:13 - 00310080 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2014-09-14 22:09 - 2014-06-07 14:46 - 00216368 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2014-09-14 22:09 - 2014-06-07 12:20 - 00189016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll
2014-09-14 22:09 - 2014-06-05 16:00 - 01118040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2014-09-14 22:09 - 2014-06-05 12:18 - 01018368 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll
2014-09-14 22:09 - 2014-06-05 11:42 - 00889856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll
2014-09-14 22:09 - 2014-05-31 07:00 - 01463808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2014-09-14 22:09 - 2014-05-31 06:18 - 01319936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2014-09-14 22:09 - 2014-05-29 08:23 - 00427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2014-09-14 22:09 - 2014-05-29 07:25 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2014-09-14 22:09 - 2014-05-29 07:20 - 00427520 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2014-09-14 22:09 - 2014-05-26 09:26 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2014-09-14 22:09 - 2014-05-10 12:12 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2014-09-14 22:09 - 2014-05-10 10:46 - 00335680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2014-09-14 22:09 - 2014-05-06 06:41 - 00486744 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll
2014-09-14 22:09 - 2014-05-06 02:55 - 00391000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll
2014-09-14 22:09 - 2014-03-25 04:27 - 00160600 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmmbase.dll
2014-09-14 22:09 - 2014-03-25 04:27 - 00123920 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmm.dll
2014-09-14 22:09 - 2014-03-25 03:20 - 00128568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmm.dll
2014-09-14 22:09 - 2014-03-25 03:20 - 00127544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmmbase.dll
2014-09-14 22:08 - 2014-07-24 13:51 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDRUM.DLL
2014-09-14 22:08 - 2014-07-24 13:51 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDYAK.DLL
2014-09-14 22:08 - 2014-07-24 13:51 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTT102.DLL
2014-09-14 22:08 - 2014-07-24 13:51 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTAT.DLL
2014-09-14 22:08 - 2014-07-24 13:51 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDRU1.DLL
2014-09-14 22:08 - 2014-07-24 13:51 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDBASH.DLL
2014-09-14 22:08 - 2014-07-24 13:51 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDRU.DLL
2014-09-14 22:08 - 2014-07-24 13:47 - 00132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2014-09-14 22:08 - 2014-07-24 13:41 - 00118272 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthpan.sys
2014-09-14 22:08 - 2014-07-24 13:22 - 00308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll
2014-09-14 22:08 - 2014-07-24 12:52 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDYAK.DLL
2014-09-14 22:08 - 2014-07-24 12:52 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDTT102.DLL
2014-09-14 22:08 - 2014-07-24 12:52 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDTAT.DLL
2014-09-14 22:08 - 2014-07-24 12:51 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDRUM.DLL
2014-09-14 22:08 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDRU1.DLL
2014-09-14 22:08 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDBASH.DLL
2014-09-14 22:08 - 2014-07-24 12:51 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDRU.DLL
2014-09-14 22:08 - 2014-07-24 12:33 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2014-09-14 22:08 - 2014-07-24 12:32 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\powercfg.cpl
2014-09-14 22:08 - 2014-07-24 11:42 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\powercfg.cpl
2014-09-14 22:08 - 2014-07-24 11:25 - 00832512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActionCenter.dll
2014-09-14 22:08 - 2014-07-24 11:14 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2014-09-14 22:08 - 2014-07-24 11:04 - 00492032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll
2014-09-14 22:08 - 2014-07-24 11:04 - 00183808 _____ (Microsoft Corp.) C:\WINDOWS\system32\Defrag.exe
2014-09-14 22:08 - 2014-07-24 10:58 - 00105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2014-09-14 22:08 - 2014-07-24 10:49 - 01361408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2014-09-14 22:08 - 2014-07-24 10:36 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll
2014-09-14 22:08 - 2014-07-24 10:24 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-09-14 22:08 - 2014-07-24 10:18 - 01144320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2014-09-14 22:08 - 2014-07-24 10:18 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2014-09-14 22:08 - 2014-07-24 10:13 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
2014-09-14 22:08 - 2014-07-24 10:12 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-09-14 22:08 - 2014-07-24 10:06 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2014-09-14 22:08 - 2014-07-24 10:00 - 02100736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2014-09-14 22:08 - 2014-07-12 07:23 - 00436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2014-09-14 22:08 - 2014-07-12 06:33 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2014-09-14 22:08 - 2014-07-10 01:19 - 00387391 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2014-09-14 22:08 - 2014-07-04 12:00 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2014-09-14 22:08 - 2014-05-29 06:36 - 00344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2014-09-14 21:58 - 2014-08-23 09:48 - 02374784 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2014-09-14 21:58 - 2014-08-23 09:13 - 02084520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2014-09-14 21:58 - 2014-08-23 08:10 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UXInit.dll
2014-09-14 21:58 - 2014-08-23 07:32 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UXInit.dll
2014-09-14 21:58 - 2014-08-23 06:44 - 02860032 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2014-09-14 21:58 - 2014-08-23 06:34 - 13423104 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2014-09-14 21:58 - 2014-08-23 06:33 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2014-09-14 21:58 - 2014-08-23 06:31 - 01038336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2014-09-14 21:58 - 2014-08-23 06:20 - 11818496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2014-09-14 21:56 - 2014-07-30 03:56 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll
2014-09-14 21:56 - 2014-07-29 07:22 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcpmon.dll
2014-09-14 21:46 - 2014-08-15 02:36 - 00146752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpioclx.sys
2014-09-13 17:39 - 2014-09-13 18:20 - 00000000 ____D () C:\Users\tomorn\Desktop\asus F5R
2014-09-13 16:15 - 2014-09-30 17:02 - 00000000 ____D () C:\Users\tomorn\Desktop\zaloha Ondra
2014-09-11 20:23 - 2014-08-16 04:40 - 23591424 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-09-11 20:23 - 2014-08-16 04:04 - 17455104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-09-11 20:23 - 2014-08-16 04:00 - 05833728 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-09-11 20:23 - 2014-08-16 04:00 - 02793984 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-09-11 20:23 - 2014-08-16 03:56 - 00547328 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2014-09-11 20:23 - 2014-08-16 03:54 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2014-09-11 20:23 - 2014-08-16 03:45 - 04232704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-09-11 20:23 - 2014-08-16 03:43 - 00758272 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2014-09-11 20:23 - 2014-08-16 03:32 - 00446464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2014-09-11 20:23 - 2014-08-16 03:25 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-09-11 20:23 - 2014-08-16 03:22 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2014-09-11 20:23 - 2014-08-16 03:20 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2014-09-11 20:23 - 2014-08-16 03:19 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-09-11 20:23 - 2014-08-16 03:18 - 02185728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-09-11 20:23 - 2014-08-16 03:18 - 00289280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2014-09-11 20:23 - 2014-08-16 03:11 - 00597504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2014-09-11 20:23 - 2014-08-16 03:06 - 00359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-09-11 20:23 - 2014-08-16 03:05 - 00727040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-09-11 20:23 - 2014-08-16 03:05 - 00707072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-09-11 20:23 - 2014-08-16 03:03 - 02104832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-09-11 20:23 - 2014-08-16 03:03 - 00365056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2014-09-11 20:23 - 2014-08-16 02:58 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JavaScriptCollectionAgent.dll
2014-09-11 20:23 - 2014-08-16 02:56 - 02310656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-09-11 20:23 - 2014-08-16 02:53 - 13588480 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-09-11 20:23 - 2014-08-16 02:53 - 00243200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2014-09-11 20:23 - 2014-08-16 02:53 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-09-11 20:23 - 2014-08-16 02:51 - 11769856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-09-11 20:23 - 2014-08-16 02:45 - 00603136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-09-11 20:23 - 2014-08-16 02:44 - 02014208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-09-11 20:23 - 2014-08-16 02:44 - 00312320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2014-09-11 20:23 - 2014-08-16 02:34 - 01447424 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-09-11 20:23 - 2014-08-16 02:20 - 01812992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-09-11 20:23 - 2014-08-16 02:18 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-09-11 20:23 - 2014-08-16 02:14 - 01190400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-09-11 20:23 - 2014-08-16 02:12 - 00678400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-09-11 20:23 - 2014-05-30 11:28 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2014-09-11 20:23 - 2014-05-30 10:43 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2014-09-11 20:23 - 2014-02-06 13:30 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2014-09-11 20:23 - 2014-02-06 13:30 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll
2014-09-11 20:23 - 2014-02-06 13:07 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2014-09-11 20:23 - 2014-02-06 13:06 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll
2014-09-11 20:23 - 2014-02-06 12:56 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2014-09-11 20:23 - 2014-02-06 12:49 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe
2014-09-11 20:23 - 2014-02-06 12:48 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe
2014-09-11 20:23 - 2014-02-06 12:20 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2014-09-11 20:23 - 2014-02-06 12:17 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2014-09-11 20:23 - 2014-02-06 12:00 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll
2014-09-11 20:23 - 2014-02-06 11:52 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2014-09-11 20:23 - 2014-02-06 11:52 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2014-09-11 20:23 - 2014-02-06 11:47 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe
2014-09-11 20:23 - 2014-02-06 11:25 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2014-09-11 03:00 - 2014-07-24 05:20 - 00875688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll
2014-09-11 03:00 - 2014-07-24 05:20 - 00869544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr120_clr0400.dll
2014-09-11 02:58 - 2014-08-02 02:18 - 01212928 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2014-09-10 17:38 - 2014-10-02 17:29 - 00004963 _____ () C:\WINDOWS\system32\AutoPico.log
2014-09-09 11:55 - 2014-09-09 11:55 - 00001216 _____ () C:\Users\Public\Desktop\SHAREit.lnk
2014-09-09 11:55 - 2014-07-28 12:25 - 00536304 _____ (Synaptics Incorporated) C:\WINDOWS\SysWOW64\SynCOM.dll
2014-09-09 11:55 - 2014-07-28 12:25 - 00461552 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\SynTP.sys
2014-09-09 11:55 - 2014-07-28 12:25 - 00224496 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPAPI.dll
2014-09-09 11:55 - 2014-07-28 12:25 - 00173808 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPCo14.dll
2014-09-09 11:55 - 2014-07-28 12:25 - 00114416 _____ (Synaptics Incorporated) C:\WINDOWS\SysWOW64\SynTPCOM.dll
2014-09-09 11:55 - 2014-07-28 12:25 - 00045296 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_Intel.sys
2014-09-08 20:33 - 2014-09-08 21:14 - 00753769 _____ () C:\Users\tomorn\Desktop\PSC upravy.xlsm
2014-09-08 20:33 - 2014-09-08 12:28 - 00015231 _____ () C:\Users\tomorn\Desktop\PSC.xlsm
2014-09-08 15:36 - 2014-09-08 15:36 - 00000355 _____ () C:\Users\tomorn\Desktop\Module1.bas
2014-09-02 00:22 - 2014-09-02 00:22 - 00000000 ____D () C:\Users\tomorn\AppData\Local\IsolatedStorage
2014-09-02 00:10 - 2014-09-02 00:15 - 00000000 ____D () C:\Users\tomorn\AppData\Roaming\HypoKalk

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-02 21:33 - 2014-06-22 23:23 - 00000976 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-10-02 21:30 - 2014-06-22 18:09 - 00007628 _____ () C:\Users\tomorn\AppData\Local\Resmon.ResmonCfg
2014-10-02 21:30 - 2014-06-22 10:59 - 00000000 ____D () C:\Users\tomorn\Documents\Soubory aplikace Outlook
2014-10-02 21:02 - 2014-06-22 09:48 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-10-02 21:00 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-10-02 20:16 - 2014-06-21 23:23 - 00003594 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1076011386-52816415-3729311051-1001
2014-10-02 18:25 - 2014-03-18 17:33 - 01745984 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-10-02 18:25 - 2014-03-18 16:54 - 00739924 _____ () C:\WINDOWS\system32\perfh005.dat
2014-10-02 18:25 - 2014-03-18 16:54 - 00151610 _____ () C:\WINDOWS\system32\perfc005.dat
2014-10-02 12:21 - 2014-06-22 08:38 - 00000000 ____D () C:\install
2014-10-02 09:33 - 2014-06-22 08:34 - 00000000 ___DO () C:\Users\tomorn\OneDrive
2014-10-02 09:32 - 2014-06-22 23:23 - 00000972 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-10-01 23:44 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-10-01 21:14 - 2014-06-22 18:14 - 00005927 _____ () C:\WINDOWS\system32\Service_KMS.log
2014-10-01 21:13 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-10-01 20:25 - 2014-06-22 09:39 - 00004182 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update
2014-10-01 17:35 - 2014-06-25 02:33 - 00000000 ____D () C:\Users\tomorn\AppData\Roaming\TeamViewer
2014-10-01 17:30 - 2014-06-22 04:10 - 00000000 ____D () C:\Users\tomorn
2014-09-30 20:34 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2014-09-30 20:33 - 2014-06-22 09:58 - 00000000 ____D () C:\ProgramData\save On
2014-09-30 19:37 - 2014-06-22 10:19 - 00000000 ____D () C:\Users\tomorn\AppData\Roaming\DAEMON Tools Lite
2014-09-30 18:55 - 2013-08-22 15:25 - 00000269 _____ () C:\WINDOWS\win.ini
2014-09-30 18:45 - 2014-06-22 09:58 - 00000548 __RSH () C:\ProgramData\ntuser.pol
2014-09-29 15:06 - 2014-06-22 21:14 - 00000000 ____D () C:\ProgramData\firebird
2014-09-29 14:08 - 2014-06-22 21:06 - 00000000 ____D () C:\Users\tomorn\AppData\Local\Deployment
2014-09-29 12:59 - 2014-06-21 23:17 - 00000000 ____D () C:\Users\tomorn\AppData\Local\Packages
2014-09-28 19:41 - 2014-08-27 10:57 - 00000000 ____D () C:\Users\tomorn\Desktop\Lenovo S660 zaloha
2014-09-27 12:54 - 2014-06-24 13:31 - 00000000 ____D () C:\Users\tomorn\AppData\Roaming\ViberPC
2014-09-27 12:54 - 2014-06-24 13:29 - 00000000 ____D () C:\Users\tomorn\AppData\Local\Viber
2014-09-26 23:43 - 2014-06-22 09:58 - 00000000 ____D () C:\sdílená
2014-09-26 23:30 - 2014-06-22 23:53 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-09-26 18:02 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-09-25 13:30 - 2014-06-22 10:31 - 00000000 ____D () C:\Users\tomorn\Documents\Partners
2014-09-24 15:02 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2014-09-23 09:26 - 2014-06-22 08:34 - 00002228 ____H () C:\Users\tomorn\Documents\Default.rdp
2014-09-23 08:29 - 2013-08-22 16:44 - 00484088 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-09-23 00:55 - 2014-08-26 15:08 - 00000000 ____D () C:\Users\tomorn\AppData\Local\Adobe
2014-09-17 21:15 - 2014-06-22 10:30 - 00000000 ____D () C:\Users\tomorn\Documents\AXAStudio
2014-09-17 16:00 - 2014-06-22 08:53 - 00000000 ____D () C:\ostatni
2014-09-16 08:17 - 2014-06-22 10:30 - 00000000 ____D () C:\Users\tomorn\Documents\Moje naskenované obrázky
2014-09-15 22:55 - 2014-06-22 10:25 - 00001118 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk
2014-09-15 22:55 - 2014-06-22 10:25 - 00001106 _____ () C:\Users\Public\Desktop\TeamViewer 9.lnk
2014-09-15 19:43 - 2014-03-18 17:10 - 00000000 ____D () C:\Program Files\Windows Journal
2014-09-15 19:43 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-09-15 19:43 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-09-15 19:43 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-09-15 19:43 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\WinStore
2014-09-15 19:43 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\setup
2014-09-15 19:42 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel
2014-09-15 19:42 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\InputMethod
2014-09-15 19:42 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\setup
2014-09-15 19:42 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions
2014-09-15 19:42 - 2013-08-22 15:36 - 00000000 ____D () C:\WINDOWS\system32\oobe
2014-09-15 13:18 - 2014-06-22 11:29 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-09-15 13:16 - 2014-06-22 11:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2014-09-14 19:41 - 2014-06-21 23:35 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-09-14 19:30 - 2014-06-21 23:35 - 101694776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-09-12 09:50 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2014-09-09 21:06 - 2014-06-22 09:48 - 00003802 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2014-09-09 11:56 - 2014-06-22 00:04 - 00002982 _____ () C:\WINDOWS\System32\Tasks\Synaptics TouchPad Enhancements
2014-09-09 11:55 - 2014-06-22 23:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
2014-09-09 11:53 - 2014-07-08 21:45 - 00000000 ____D () C:\Users\tomorn\Desktop\TISK
2014-09-06 15:58 - 2014-08-16 17:40 - 00000000 ____D () C:\Program Files (x86)\KA10
2014-09-02 22:06 - 2013-08-22 17:38 - 00706016 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-09-02 22:06 - 2013-08-22 17:38 - 00105440 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

Task: C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-1.job => C:\Program Files (x86)\Apps Hat\Apps Hat-codedownloader.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-11.job => C:\Program Files (x86)\Apps Hat\36316498-b3d9-47dd-98ae-f60936fb007c-11.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-2.job => C:\Program Files (x86)\Apps Hat\36316498-b3d9-47dd-98ae-f60936fb007c-2.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-4.job => C:\Program Files (x86)\Apps Hat\36316498-b3d9-47dd-98ae-f60936fb007c-4.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-5.job => C:\Program Files (x86)\Apps Hat\36316498-b3d9-47dd-98ae-f60936fb007c-5.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-5_user.job => C:\Program Files (x86)\Apps Hat\36316498-b3d9-47dd-98ae-f60936fb007c-5.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-6.job => C:\Program Files (x86)\Apps Hat\36316498-b3d9-47dd-98ae-f60936fb007c-6.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-7.job => C:\Program Files (x86)\Apps Hat\36316498-b3d9-47dd-98ae-f60936fb007c-7.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-1.job => C:\Program Files (x86)\Senses\Senses-codedownloader.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-11.job => C:\Program Files (x86)\Senses\4696d05c-2f34-43ae-be32-b1dc97f8c184-11.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-2.job => C:\Program Files (x86)\Senses\4696d05c-2f34-43ae-be32-b1dc97f8c184-2.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-3.job => C:\Program Files (x86)\Senses\4696d05c-2f34-43ae-be32-b1dc97f8c184-3.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-4.job => C:\Program Files (x86)\Senses\4696d05c-2f34-43ae-be32-b1dc97f8c184-4.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-5.job => C:\Program Files (x86)\Senses\4696d05c-2f34-43ae-be32-b1dc97f8c184-5.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-5_user.job => C:\Program Files (x86)\Senses\4696d05c-2f34-43ae-be32-b1dc97f8c184-5.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-6.job => C:\Program Files (x86)\Senses\4696d05c-2f34-43ae-be32-b1dc97f8c184-6.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-7.job => C:\Program Files (x86)\Senses\4696d05c-2f34-43ae-be32-b1dc97f8c184-7.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-1.job => C:\Program Files (x86)\Senses\Senses-codedownloader.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-11.job => C:\Program Files (x86)\Senses\750c5dcd-6196-41c8-8413-bc3f26858244-11.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-2.job => C:\Program Files (x86)\Senses\750c5dcd-6196-41c8-8413-bc3f26858244-2.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-3.job => C:\Program Files (x86)\Senses\750c5dcd-6196-41c8-8413-bc3f26858244-3.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-4.job => C:\Program Files (x86)\Senses\750c5dcd-6196-41c8-8413-bc3f26858244-4.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-5.job => C:\Program Files (x86)\Senses\750c5dcd-6196-41c8-8413-bc3f26858244-5.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-5_user.job => C:\Program Files (x86)\Senses\750c5dcd-6196-41c8-8413-bc3f26858244-5.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-6.job => C:\Program Files (x86)\Senses\750c5dcd-6196-41c8-8413-bc3f26858244-6.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\750c5dcd-6196-41c8-8413-bc3f26858244-7.job => C:\Program Files (x86)\Senses\750c5dcd-6196-41c8-8413-bc3f26858244-7.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-1.job => C:\Program Files (x86)\iWebar\iWebar-codedownloader.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-11.job => C:\Program Files (x86)\iWebar\dbf26583-1bb8-46c0-8f12-43b9c757100e-11.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-2.job => C:\Program Files (x86)\iWebar\dbf26583-1bb8-46c0-8f12-43b9c757100e-2.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-4.job => C:\Program Files (x86)\iWebar\dbf26583-1bb8-46c0-8f12-43b9c757100e-4.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-5.job => C:\Program Files (x86)\iWebar\dbf26583-1bb8-46c0-8f12-43b9c757100e-5.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-5_user.job => C:\Program Files (x86)\iWebar\dbf26583-1bb8-46c0-8f12-43b9c757100e-5.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-6.job => C:\Program Files (x86)\iWebar\dbf26583-1bb8-46c0-8f12-43b9c757100e-6.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\dbf26583-1bb8-46c0-8f12-43b9c757100e-7.job => C:\Program Files (x86)\iWebar\dbf26583-1bb8-46c0-8f12-43b9c757100e-7.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\LXTRRLNZ.job => C:\Users\tomorn\AppData\Roaming\LXTRRLNZ.exe
Task: C:\WINDOWS\Tasks\MFZWJ.job => C:\Users\tomorn\AppData\Roaming\MFZWJ.exe
Task: C:\WINDOWS\Tasks\QF.job => C:\Users\tomorn\AppData\Roaming\QF.exe
Task: C:\WINDOWS\Tasks\THAGUQRU.job => C:\Users\tomorn\AppData\Roaming\THAGUQRU.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\tomorn\Desktop" je 20190 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\\Program Files (x86)\\Spybot - Search & Destroy 2\\SDTray.exe"="C:\\Program Files (x86)\\Spybot - Search & Destroy 2\\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"C:\\Program Files (x86)\\Spybot - Search & Destroy 2\\SDFSSvc.exe"="C:\\Program Files (x86)\\Spybot - Search & Destroy 2\\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\\Program Files (x86)\\Spybot - Search & Destroy 2\\SDUpdate.exe"="C:\\Program Files (x86)\\Spybot - Search & Destroy 2\\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\\Program Files (x86)\\Spybot - Search & Destroy 2\\SDUpdSvc.exe"="C:\\Program Files (x86)\\Spybot - Search & Destroy 2\\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Re: delay.exe a YTAHelper.exe mi vytěžují procesor

Napsal: 02 říj 2014 21:01
od vyosek
:arrow: Odinstalujte Spybot - Search & Destroy - program ma uz nejlepsi leta davno za sebou a posledni cca 3 roky neni schopen celit aktualnim hrozbam

:arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte

Re: delay.exe a YTAHelper.exe mi vytěžují procesor

Napsal: 02 říj 2014 21:25
od tomorn
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.2.6 (10.02.2014:1)
OS: Windows 8.1 Pro x64
Ran by tomorn on źt 02. 10. 2014 at 22:15:34,40
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0048559.BHO
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0048559.BHO.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0048559.Sandbox
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0048559.Sandbox.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{11111111-1111-1111-1111-110611191115}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{11111111-1111-1111-1111-110611511123}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{22222222-2222-2222-2222-220622192215}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{22222222-2222-2222-2222-220622512223}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{55555555-5555-5555-5555-550455855559}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{55555555-5555-5555-5555-550655195515}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{55555555-5555-5555-5555-550655515523}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{66666666-6666-6666-6666-660466856659}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{66666666-6666-6666-6666-660666196615}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{66666666-6666-6666-6666-660666516623}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{44444444-4444-4444-4444-440444854459}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{44444444-4444-4444-4444-440644194415}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{44444444-4444-4444-4444-440644514423}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{11111111-1111-1111-1111-110611191115}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{11111111-1111-1111-1111-110611511123}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{22222222-2222-2222-2222-220622192215}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{22222222-2222-2222-2222-220622512223}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{55555555-5555-5555-5555-550455855559}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{55555555-5555-5555-5555-550655195515}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{55555555-5555-5555-5555-550655515523}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{66666666-6666-6666-6666-660466856659}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{66666666-6666-6666-6666-660666196615}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{66666666-6666-6666-6666-660666516623}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{44444444-4444-4444-4444-440444854459}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{44444444-4444-4444-4444-440644194415}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{44444444-4444-4444-4444-440644514423}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0048559.BHO
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0048559.BHO.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0048559.Sandbox
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0048559.Sandbox.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Interface\{55555555-5555-5555-5555-550455855559}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Interface\{55555555-5555-5555-5555-550655195515}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Interface\{55555555-5555-5555-5555-550655515523}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Interface\{66666666-6666-6666-6666-660466856659}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Interface\{66666666-6666-6666-6666-660666196615}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Interface\{66666666-6666-6666-6666-660666516623}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\TypeLib\{44444444-4444-4444-4444-440444854459}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\TypeLib\{44444444-4444-4444-4444-440644194415}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\TypeLib\{44444444-4444-4444-4444-440644514423}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110611191115}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110611511123}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\Interface\{55555555-5555-5555-5555-550455855559}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\Interface\{55555555-5555-5555-5555-550655195515}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\Interface\{55555555-5555-5555-5555-550655515523}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\Interface\{66666666-6666-6666-6666-660466856659}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\Interface\{66666666-6666-6666-6666-660666196615}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\Interface\{66666666-6666-6666-6666-660666516623}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\TypeLib\{44444444-4444-4444-4444-440444854459}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\TypeLib\{44444444-4444-4444-4444-440644194415}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\TypeLib\{44444444-4444-4444-4444-440644514423}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191115}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611511123}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{94800920-E74E-4085-BF01-586E6E4E1B2F}



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\systweak"
Successfully deleted: [Folder] "C:\Users\tomorn\AppData\Roaming\systweak"
Successfully deleted: [Folder] "C:\Users\tomorn\appdata\local\torch"
Successfully deleted: [Folder] "C:\Program Files (x86)\apps hat"



~~~ FireFox

Successfully deleted: [File] C:\Users\tomorn\AppData\Roaming\mozilla\firefox\profiles\4dv2f4g5.default\user.js



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on źt 02. 10. 2014 at 22:21:51,57
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Re: delay.exe a YTAHelper.exe mi vytěžují procesor

Napsal: 02 říj 2014 21:36
od tomorn
# AdwCleaner v3.311 - Report created 02/10/2014 at 22:28:15
# Updated 30/09/2014 by Xplode
# Operating System : Windows 8.1 Pro (64 bits)
# Username : tomorn - TOMAS-THINK
# Running from : C:\Users\tomorn\Desktop\adwcleaner_3.311.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : YouTubeAcceleratorService
Service Deleted : {00c97d86-accb-4288-9972-6d929c1fe93a}Gw64

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\YTAHelper
Folder Deleted : C:\ProgramData\save On
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YouTube Accelerator
Folder Deleted : C:\Program Files (x86)\globalUpdate
Folder Deleted : C:\Program Files (x86)\iWebar
Folder Deleted : C:\Program Files (x86)\PodoWeb
Folder Deleted : C:\Program Files (x86)\SO_Booster
Folder Deleted : C:\Program Files (x86)\YouTube Accelerator
Folder Deleted : C:\Program Files (x86)\YTAHelper
Folder Deleted : C:\Program Files (x86)\save On
Folder Deleted : C:\Program Files (x86)\Senses
Folder Deleted : C:\Users\Administrator\AppData\Local\Chromatic Browser
Folder Deleted : C:\Users\Administrator\AppData\Local\torch
Folder Deleted : C:\Users\Guest\AppData\Local\Chromatic Browser
Folder Deleted : C:\Users\Guest\AppData\Local\torch
Folder Deleted : C:\Users\Public\Documents\Goobzo
Folder Deleted : C:\Users\Public\Documents\YTAHelper
Folder Deleted : C:\Users\tomorn\AppData\Local\Chromatic Browser
Folder Deleted : C:\Users\tomorn\AppData\Local\globalUpdate
Folder Deleted : C:\Users\tomorn\AppData\LocalLow\Goobzo
Folder Deleted : C:\Users\tomorn\AppData\LocalLow\iWebar
Folder Deleted : C:\Users\tomorn\AppData\LocalLow\Senses
Folder Deleted : C:\Users\tomorn\AppData\Roaming\Mozilla\Firefox\Profiles\4dv2f4g5.default\Extensions\{4C59F3E5-BBD0-4344-8DD2-30866FA0B31E}
Folder Deleted : C:\Users\tomorn\AppData\Roaming\Mozilla\Firefox\Profiles\4dv2f4g5.default\Extensions\ROUAILDE73397174@UXGZI17268980.com
Folder Deleted : C:\Users\tomorn\AppData\Roaming\Mozilla\Firefox\Profiles\4dv2f4g5.default\Extensions\warnerroberts@hotmail.com
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejgdjlfkeddnbcnkkajchngbegakfdpb
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejgdjlfkeddnbcnkkajchngbegakfdpb
[!] Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejgdjlfkeddnbcnkkajchngbegakfdpb
[!] Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejgdjlfkeddnbcnkkajchngbegakfdpb
File Deleted : C:\WINDOWS\System32\roboot64.exe
File Deleted : C:\WINDOWS\System32\drivers\{00c97d86-accb-4288-9972-6d929c1fe93a}Gw64.sys
File Deleted : C:\Users\tomorn\Desktop\YouTube Accelerator.lnk

***** [ Scheduled Tasks ] *****

Task Deleted : ASP
Task Deleted : YTAHelper
Task Deleted : 4696d05c-2f34-43ae-be32-b1dc97f8c184-1
Task Deleted : 4696d05c-2f34-43ae-be32-b1dc97f8c184-11
Task Deleted : 4696d05c-2f34-43ae-be32-b1dc97f8c184-2
Task Deleted : 4696d05c-2f34-43ae-be32-b1dc97f8c184-3
Task Deleted : 4696d05c-2f34-43ae-be32-b1dc97f8c184-4
Task Deleted : 4696d05c-2f34-43ae-be32-b1dc97f8c184-5
Task Deleted : 4696d05c-2f34-43ae-be32-b1dc97f8c184-5_user
Task Deleted : 4696d05c-2f34-43ae-be32-b1dc97f8c184-6
Task Deleted : 4696d05c-2f34-43ae-be32-b1dc97f8c184-7
Task Deleted : 750c5dcd-6196-41c8-8413-bc3f26858244-1
Task Deleted : 750c5dcd-6196-41c8-8413-bc3f26858244-11
Task Deleted : 750c5dcd-6196-41c8-8413-bc3f26858244-2
Task Deleted : 750c5dcd-6196-41c8-8413-bc3f26858244-3
Task Deleted : 750c5dcd-6196-41c8-8413-bc3f26858244-4
Task Deleted : 750c5dcd-6196-41c8-8413-bc3f26858244-5
Task Deleted : 750c5dcd-6196-41c8-8413-bc3f26858244-5_user
Task Deleted : 750c5dcd-6196-41c8-8413-bc3f26858244-6
Task Deleted : 750c5dcd-6196-41c8-8413-bc3f26858244-7
Task Deleted : dbf26583-1bb8-46c0-8f12-43b9c757100e-1
Task Deleted : dbf26583-1bb8-46c0-8f12-43b9c757100e-11
Task Deleted : dbf26583-1bb8-46c0-8f12-43b9c757100e-2
Task Deleted : dbf26583-1bb8-46c0-8f12-43b9c757100e-4
Task Deleted : dbf26583-1bb8-46c0-8f12-43b9c757100e-5
Task Deleted : dbf26583-1bb8-46c0-8f12-43b9c757100e-5_user
Task Deleted : dbf26583-1bb8-46c0-8f12-43b9c757100e-6
Task Deleted : dbf26583-1bb8-46c0-8f12-43b9c757100e-7

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Key Deleted : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{58FDA6AF-67D8-4198-B7CD-94B17532C8D5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8FB1A663-2820-468B-95C4-5060A4C5F413}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\Goobzo
Key Deleted : HKCU\Software\InstalledBrowserExtensions
Key Deleted : HKCU\Software\RegisteredApplicationsEx
Key Deleted : HKCU\Software\systweak
Key Deleted : HKCU\Software\AppDataLow\Software\iWebar
Key Deleted : HKCU\Software\AppDataLow\Software\Senses
Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\SOFTWARE\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\SOFTWARE\{77D46E27-0E41-4478-87A6-AABE6FBCF252}
Key Deleted : HKLM\SOFTWARE\Conduit
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\Goobzo
Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : HKLM\SOFTWARE\iWebar
Key Deleted : HKLM\SOFTWARE\iWebar-nv
Key Deleted : HKLM\SOFTWARE\Senses-nv
Key Deleted : HKLM\SOFTWARE\systweak
Key Deleted : HKLM\SOFTWARE\Senses
Key Deleted : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Data Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~2\so_boo~1\assist~1.dll
Data Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - (x86)\SO_Booster\Assistant_x64.dll

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17278


-\\ Mozilla Firefox v30.0 (cs)

[ File : C:\Users\tomorn\AppData\Roaming\Mozilla\Firefox\Profiles\4dv2f4g5.default\prefs.js ]


-\\ Google Chrome v35.0.1916.153

[ File : C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [12253 octets] - [02/10/2014 22:26:23]
AdwCleaner[S0].txt - [11467 octets] - [02/10/2014 22:28:15]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [11528 octets] ##########

Re: delay.exe a YTAHelper.exe mi vytěžují procesor

Napsal: 02 říj 2014 22:00
od vyosek
:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    emptyclsid;
    iedefaults;
    FFdefaults;
    CHRdefaults;
    emptyalltemp;
    resethosts;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem

Re: delay.exe a YTAHelper.exe mi vytěžují procesor

Napsal: 02 říj 2014 22:46
od tomorn
Zoek.exe v5.0.0.0 Updated 30-09-2014
Tool run by tomorn on źt 02. 10. 2014 at 23:05:27,56.
Microsoft Windows 8.1 Pro 6.3.9600 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\tomorn\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

2. 10. 2014 23:08:23 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost

==== Deleting CLSID Registry Keys ======================

HKEY_CLASSES_ROOT\CLSID\{11111111-1111-1111-1111-110611191115} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191115} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{11111111-1111-1111-1111-110611511123} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611511123} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\tomorn\AppData\Roaming\Mozilla\Firefox\Profiles\4dv2f4g5.default\prefs.js:

Added to C:\Users\tomorn\AppData\Roaming\Mozilla\Firefox\Profiles\4dv2f4g5.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

==== Deleting Files \ Folders ======================

C:\PROGRA~2\Mozilla Firefox\defaults\preferences\pref.js deleted
C:\PCPE Setup.exe deleted
C:\PROGRA~3\ShopperPro deleted
C:\PROGRA~3\InstallMate deleted
C:\Users\tomorn\AppData\Local\Installer deleted
C:\Users\tomorn\AppData\Local\CrashRpt deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-1.job deleted
C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-11.job deleted
C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-2.job deleted
C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-4.job deleted
C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-5.job deleted
C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-5_user.job deleted
C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-6.job deleted
C:\WINDOWS\Tasks\36316498-b3d9-47dd-98ae-f60936fb007c-7.job deleted
C:\Users\Public\Documents\ShopperPro deleted
C:\WINDOWS\tasks\LXTRRLNZ.job deleted
C:\windows\SysNative\tasks\LXTRRLNZ deleted
C:\WINDOWS\tasks\MFZWJ.job deleted
C:\windows\SysNative\tasks\MFZWJ deleted
C:\WINDOWS\tasks\QF.job deleted
C:\windows\SysNative\tasks\QF deleted
C:\WINDOWS\tasks\THAGUQRU.job deleted
C:\windows\SysNative\tasks\THAGUQRU deleted
C:\WINDOWS\wininit.ini deleted
C:\windows\SysNative\Tasks\SPBIW_UpdateTask_Time_333936353138343439382d5a376c5a4a6c573250344141 deleted
C:\windows\SysNative\Tasks\SPDriver deleted
C:\windows\SysNative\tasks\ShopperPro deleted
C:\windows\SysNative\tasks\ShopperProJSUpd deleted
C:\WINDOWS\SysWOW64\AniGIF.ocx deleted
C:\Users\tomorn\AppData\Roaming\LXTRRLNZ.exe deleted
C:\Users\tomorn\AppData\Roaming\MFZWJ.exe deleted
C:\Users\tomorn\AppData\Roaming\QF.exe deleted
C:\Users\tomorn\AppData\Roaming\THAGUQRU.exe deleted
C:\Users\tomorn\AppData\Roaming\Mozilla\Firefox\Profiles\4dv2f4g5.default\extensions\39ed7c16-185d-4f88-b976-666d4928ba01@fe4550c1-7a4f-4a62-ad1c-45e0afdf81a4.com deleted
"C:\PROGRA~3\d6d9edf2edb4f89e\{993EA8F6-6E55-7E4E-39DE-5796E3226DB9}.20140622095825" deleted
"C:\PROGRA~3\d6d9edf2edb4f89e\{993EA8F6-6E55-7E4E-39DE-5796E3226DB9}.20140622095847" deleted
"C:\PROGRA~3\d6d9edf2edb4f89e" deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"{F003DA68-8256-4b37-A6C4-350FA04494DF}"="C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt" [23. 06. 2014 09:23]
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"{F74D5734-46F5-4B16-96F0-1E7FBF41B750}"="C:\Program Files (x86)\Lenovo\Password Manager\PWM Firefox Extension\2.0b12" [08. 07. 2014 19:56]

==== Firefox Extensions ======================

ProfilePath: C:\Users\tomorn\AppData\Roaming\Mozilla\Firefox\Profiles\4dv2f4g5.default
- Shopper-Pro - %ProfilePath%\extensions\{746505DC-0E21-4667-97F8-72EA6BCF5EEF}
- Seznam litika - %ProfilePath%\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}

AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\tomorn\AppData\Roaming\Mozilla\Firefox\Profiles\4dv2f4g5.default
DFC9460CC37E5C414DC4680B10C19E7A - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll - Shockwave Flash


==== Deleted Firefox Extensions ======================

C:\Users\tomorn\AppData\Roaming\Mozilla\Firefox\Profiles\4dv2f4g5.default\extensions\{746505DC-0E21-4667-97F8-72EA6BCF5EEF} deleted

==== Chromium Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[15. 07. 2014 13:08]
lpdfbkehegfmedglgemnhbnpmfmioggj - No path found[]

save onn - Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ejgdjlfkeddnbcnkkajchngbegakfdpb
save onn - Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ejgdjlfkeddnbcnkkajchngbegakfdpb
save onn - Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ejgdjlfkeddnbcnkkajchngbegakfdpb
save onn - Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ejgdjlfkeddnbcnkkajchngbegakfdpb
save onn - tomorn\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ejgdjlfkeddnbcnkkajchngbegakfdpb
Seznam Lištička - Email - tomorn\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig
Seznam Lištička - Rychlá volba - tomorn\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak
save onn - tomorn\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ejgdjlfkeddnbcnkkajchngbegakfdpb
iWebar - tomorn\AppData\Roaming\Opera Software\Opera Stable\Extensions\gnjbfdmiommbcdfigaefehgdndnpeech
Senses - tomorn\AppData\Roaming\Opera Software\Opera Stable\Extensions\jhapbopfchfogphiimjbhodmgnppoigk
Apps Hat - tomorn\AppData\Roaming\Opera Software\Opera Stable\Extensions\pbffpbffjfiigoledmkcibcbadpbenec

==== Chromium Startpages ======================

C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default\Preferences
"homepage": "http://www.seznam.cz/?clid=13415",


==== Chromium Fix ======================

C:\Users\tomorn\AppData\Roaming\Opera Software\Opera Stable\Local Storage\https_www.superfish.com_0.localstorage deleted successfully
C:\Users\tomorn\AppData\Roaming\Opera Software\Opera Stable\Local Storage\https_www.superfish.com_0.localstorage-journal deleted successfully
C:\Users\tomorn\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_www.superfish.com_0.localstorage deleted successfully
C:\Users\tomorn\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_www.superfish.com_0.localstorage-journal deleted successfully
C:\Users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ejgdjlfkeddnbcnkkajchngbegakfdpb deleted successfully
C:\Users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ejgdjlfkeddnbcnkkajchngbegakfdpb deleted successfully
C:\Users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ejgdjlfkeddnbcnkkajchngbegakfdpb deleted successfully
C:\Users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ejgdjlfkeddnbcnkkajchngbegakfdpb deleted successfully
C:\Users\tomorn\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ejgdjlfkeddnbcnkkajchngbegakfdpb deleted successfully
C:\Users\tomorn\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ejgdjlfkeddnbcnkkajchngbegakfdpb deleted successfully
C:\Users\tomorn\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\gnjbfdmiommbcdfigaefehgdndnpeech deleted successfully
C:\Users\tomorn\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\gnjbfdmiommbcdfigaefehgdndnpeech deleted successfully
C:\Users\tomorn\AppData\Roaming\Opera Software\Opera Stable\Extensions\gnjbfdmiommbcdfigaefehgdndnpeech deleted successfully
C:\Users\tomorn\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_gnjbfdmiommbcdfigaefehgdndnpeech_0.localstorage deleted successfully
C:\Users\tomorn\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_gnjbfdmiommbcdfigaefehgdndnpeech_0.localstorage-journal deleted successfully
C:\Users\tomorn\AppData\Roaming\Opera Software\Opera Stable\databases\chrome-extension_gnjbfdmiommbcdfigaefehgdndnpeech_0 deleted successfully
C:\Users\tomorn\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\gnjbfdmiommbcdfigaefehgdndnpeech deleted successfully
C:\Users\tomorn\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jhapbopfchfogphiimjbhodmgnppoigk deleted successfully
C:\Users\tomorn\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jhapbopfchfogphiimjbhodmgnppoigk deleted successfully
C:\Users\tomorn\AppData\Roaming\Opera Software\Opera Stable\Extensions\jhapbopfchfogphiimjbhodmgnppoigk deleted successfully
C:\Users\tomorn\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_jhapbopfchfogphiimjbhodmgnppoigk_0.localstorage deleted successfully
C:\Users\tomorn\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_jhapbopfchfogphiimjbhodmgnppoigk_0.localstorage-journal deleted successfully
C:\Users\tomorn\AppData\Roaming\Opera Software\Opera Stable\databases\chrome-extension_jhapbopfchfogphiimjbhodmgnppoigk_0 deleted successfully
C:\Users\tomorn\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\jhapbopfchfogphiimjbhodmgnppoigk deleted successfully
C:\Users\tomorn\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbffpbffjfiigoledmkcibcbadpbenec deleted successfully
C:\Users\tomorn\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pbffpbffjfiigoledmkcibcbadpbenec deleted successfully
C:\Users\tomorn\AppData\Roaming\Opera Software\Opera Stable\Extensions\pbffpbffjfiigoledmkcibcbadpbenec deleted successfully
C:\Users\tomorn\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_pbffpbffjfiigoledmkcibcbadpbenec_0.localstorage deleted successfully
C:\Users\tomorn\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_pbffpbffjfiigoledmkcibcbadpbenec_0.localstorage-journal deleted successfully
C:\Users\tomorn\AppData\Roaming\Opera Software\Opera Stable\databases\chrome-extension_pbffpbffjfiigoledmkcibcbadpbenec_0 deleted successfully
C:\Users\tomorn\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\pbffpbffjfiigoledmkcibcbadpbenec deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/?clid=13415"
"Search Page"="http://www.google.com"
"Search Bar"="http://www.google.com/ie"
"Default_Search_URL"="http://www.google.com/ie"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
@="http://www.google.com/search?q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"SearchAssistant"="http://www.google.com/ie"
"Default_Search_URL"="http://www.google.com/ie"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://www.seznam.cz/?clid=13415"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/ ... chasst.htm"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
{14579F23-A5A0-4F3D-9E90-3DD5FD1C6E1B} Novinky.cz Url="http://www.novinky.cz/hledej?w={searchT ... arch_13415"
{314F55F3-3212-45C1-A39A-5ADDB8B1A4AD} Firmy.cz Url="http://www.firmy.cz/?q={searchTerms}&so ... arch_13415"
{392D204A-C60C-49A7-BB4B-E937F2737D5D} Slovnˇk EN/CZ Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_13415"
{4100BC4D-C4A1-4F69-9984-1463D2A6C082} Slovnˇk CZ/EN Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_13415"
{4401D234-3176-4A54-849F-FD22C5D8C3F0} Encyklopedie Seznam Url="http://encyklopedie.seznam.cz/search?q= ... arch_13415"
{4664258D-8806-4EDC-9EF9-DD9DDC441092} Seznam TV Program Url="http://tv.seznam.cz/hledej?w={searchTer ... arch_13415"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Goo Url="http://www.google.com/search?q={sear"
{7B6D529C-4B1F-4752-929A-D4B4736F1381} Google Url="http://www.google.com/search?q={searchT ... f8&oe=utf8"
{B67A06F3-8775-43A5-AB21-544D12D06B1D} Zbo§ˇ.cz Url="http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13415"
{E2302477-A84F-4BBF-80F9-F89A17D36F96} Mapy.cz Url="http://www.mapy.cz/?query={searchTerms} ... arch_13415"

==== Reset Google Chrome ======================

C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default\preferences was reset successfully
C:\Users\tomorn\AppData\Roaming\Opera Software\Opera Stable\Preferences was reset successfully
C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\tomorn\AppData\Roaming\Opera Software\Opera Stable\Web Data was reset successfully

==== Deleting CLSID Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\lpdfbkehegfmedglgemnhbnpmfmioggj deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ShopperPro deleted successfully

==== Empty IE Cache ======================

C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\tomorn\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\tomorn\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

No FireFox Cache found

==== Empty Chrome Cache ======================

C:\Users\tomorn\AppData\Local\Opera Software\Opera Stable\Cache emptied successfully
C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=476 folders=95 30616352 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\tomorn\AppData\Local\Temp will be emptied at reboot
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied
C:\Users\tomorn\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on źt 02. 10. 2014 at 23:41:10,03 ======================

Re: delay.exe a YTAHelper.exe mi vytěžují procesor

Napsal: 03 říj 2014 08:52
od vyosek
Poprosim o novy log z FRST

Re: delay.exe a YTAHelper.exe mi vytěžují procesor

Napsal: 03 říj 2014 09:37
od tomorn
Log je nějaký krátký:





===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================

AlternateDataStreams: C:\ProgramData\TEMP:56E2E879
AlternateDataStreams: C:\Users\tomorn\OneDrive:ms-properties

==================== Security Center ==================

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\tomorn\Desktop" je 20196 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Re: delay.exe a YTAHelper.exe mi vytěžují procesor

Napsal: 03 říj 2014 09:47
od vyosek
Spustte jen samotny FRST a dejte Scan, log pak sem

Re: delay.exe a YTAHelper.exe mi vytěžují procesor

Napsal: 03 říj 2014 09:54
od tomorn
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-10-2014
Ran by tomorn (administrator) on TOMAS-THINK on 03-10-2014 10:52:29
Running from C:\Users\tomorn\Desktop
Loaded Profile: tomorn (Available profiles: tomorn)
Platform: Windows 8.1 Pro (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Schneider Electric) C:\Program Files (x86)\APC\PowerChute Personal Edition\mainserv.exe
(Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Lenovo Group Limited) C:\Program Files\lenovo\SettingsDependency\SettingsService.exe
(LENOVO INCORPORATED.) C:\Program Files\lenovo\iMController\SystemAgentService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(Schneider Electric) C:\Program Files (x86)\APC\PowerChute Personal Edition\dataserv.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Lenovo.) C:\Windows\System32\TpShocks.exe
(Opera Software) C:\Program Files\Opera x64\opera.exe
(Lenovo Group Limited) C:\Program Files\lenovo\Password Manager\password_manager.exe
(Lenovo) C:\Program Files\lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe
(Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe
(Lenovo Group Limited) C:\Program Files (x86)\Lenovo\Password Manager\pwm_ie_helper_desktop.exe
(Lenovo Group Limited) C:\Program Files (x86)\Lenovo\Password Manager\pwm_ie_helper_metro.exe
(Lenovo Group Limited) C:\Program Files (x86)\Lenovo\Password Manager\password_manager.exe
() C:\Users\tomorn\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\tomorn\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(Pražská softwarová s.r.o.) C:\CPP\CppKalkulacky\CppCalcServer.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Schneider Electric) C:\Program Files (x86)\APC\PowerChute Personal Edition\apcsystray.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\HpqSRmon.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Logitech, Inc.) C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe
() C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe
(Lenovo Corporation) C:\Program Files\lenovo\Communications Utility\TpKnrres.exe
() C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe
(Lenovo) C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20605_x64__8wekyb3d8bbwe\livecomm.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [TpShocks] => C:\WINDOWS\system32\TpShocks.exe [384344 2014-02-17] (Lenovo.)
HKLM\...\Run: [PasswordManager] => C:\Program Files\Lenovo\Password Manager\password_manager.exe [1665824 2014-06-23] (Lenovo Group Limited)
HKLM\...\Run: [LnvMobHotspotClient] => C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe [938032 2014-03-05] (Lenovo)
HKLM\...\Run: [LENOVO.TPKNRRES] => rundll32.exe "C:\Program Files\Lenovo\Communications Utility\LibStartStub.dll",AVStartupStub
HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3100440 2014-05-19] (Logitech, Inc.)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-08-01] (AVAST Software)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [35696 2009-02-27] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Display] => C:\Program Files (x86)\APC\PowerChute Personal Edition\DataCollectionLauncher.exe [284024 2011-08-24] (Schneider Electric)
HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150016 2008-08-20] (Hewlett-Packard)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1323\jsdrv.exe [3211776 2014-09-30] ()
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
HKU\S-1-5-21-1076011386-52816415-3729311051-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1076011386-52816415-3729311051-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\tomorn\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-1076011386-52816415-3729311051-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\tomorn\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-1076011386-52816415-3729311051-1001\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1323\jsdrv.exe [3211776 2014-09-30] ()
AppInit_DLLs: C:\Program Files => C:\Program Files [0 2014-10-02] ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\APC UPS Status.lnk
ShortcutTarget: APC UPS Status.lnk -> C:\Program Files (x86)\APC\PowerChute Personal Edition\Display.exe (Schneider Electric)
Startup: C:\Users\tomorn\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CPP - CalcServer.lnk
ShortcutTarget: CPP - CalcServer.lnk -> C:\CPP\CppKalkulacky\CppCalcServer.exe (Pražská softwarová s.r.o.)
ShellIconOverlayIdentifiers: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BootExecute: autocheck autochk * sdnclean64.exe
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13415
SearchScopes: HKCU - DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {14579F23-A5A0-4F3D-9E90-3DD5FD1C6E1B} URL = http://www.novinky.cz/hledej?w={searchT ... arch_13415
SearchScopes: HKCU - {314F55F3-3212-45C1-A39A-5ADDB8B1A4AD} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_13415
SearchScopes: HKCU - {392D204A-C60C-49A7-BB4B-E937F2737D5D} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKCU - {4100BC4D-C4A1-4F69-9984-1463D2A6C082} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKCU - {4401D234-3176-4A54-849F-FD22C5D8C3F0} URL = http://encyklopedie.seznam.cz/search?q= ... arch_13415
SearchScopes: HKCU - {4664258D-8806-4EDC-9EF9-DD9DDC441092} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_13415
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={sear
SearchScopes: HKCU - {B67A06F3-8775-43A5-AB21-544D12D06B1D} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13415
SearchScopes: HKCU - {E2302477-A84F-4BBF-80F9-F89A17D36F96} URL = http://www.mapy.cz/?query={searchTerms} ... arch_13415
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll (Logitech, Inc.)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll (Logitech, Inc.)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\tomorn\AppData\Roaming\Mozilla\Firefox\Profiles\4dv2f4g5.default
FF NewTab: hxxp://www.google.com/
FF DefaultSearchEngine: Google
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.google.com
FF Keyword.URL: hxxp://www.google.com/search?btnG=Google+Search&q=
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()
FF Plugin: @java.com/DTPlugin,version=10.60.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.60.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Seznam lištička - C:\Users\tomorn\AppData\Roaming\Mozilla\Firefox\Profiles\4dv2f4g5.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2014-09-30]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-06-22]
FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
FF Extension: Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2014-06-23]
FF HKCU\...\Firefox\Extensions: [{F74D5734-46F5-4B16-96F0-1E7FBF41B750}] - C:\Program Files (x86)\Lenovo\Password Manager\PWM Firefox Extension\2.0b12
FF Extension: ThinkVantage Password Manager - C:\Program Files (x86)\Lenovo\Password Manager\PWM Firefox Extension\2.0b12 [2014-06-22]

Chrome:
=======
CHR Profile: C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-22]
CHR Extension: (Google Drive) - C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-22]
CHR Extension: (Seznam Lištička - Email) - C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2014-09-30]
CHR Extension: (YouTube) - C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-22]
CHR Extension: (Google Search) - C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-22]
CHR Extension: (Google Wallet) - C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-22]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2014-09-30]
CHR Extension: (Gmail) - C:\Users\tomorn\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-06-22]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-15]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 APC Data Service; C:\Program Files (x86)\APC\PowerChute Personal Edition\dataserv.exe [21880 2011-08-24] (Schneider Electric)
R2 APC UPS Service; C:\Program Files (x86)\APC\PowerChute Personal Edition\mainserv.exe [705912 2011-08-24] (Schneider Electric)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-15] (AVAST Software)
S3 AVControlCenter; C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe [599024 2014-06-23] (Lenovo Corporation)
R2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2255064 2013-10-28] (Broadcom Corporation.)
S3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [248832 2009-05-18] (Hewlett-Packard Co.) [File not signed]
S3 KeyIso; C:\Windows\SysWOW64\keyiso.dll [44032 2013-08-22] (Microsoft Corporation)
S3 Lenovo EasyPlus Hotspot; C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe [559872 2014-08-06] (Lenovo)
R2 Lenovo Settings Service; C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe [2012720 2014-05-13] (Lenovo Group Limited)
R2 Lenovo System Agent Service; C:\Program Files\Lenovo\iMController\SystemAgentService.exe [584960 2014-08-18] (LENOVO INCORPORATED.)
S3 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [709616 2014-06-23] (Lenovo Corporation)
S3 lfsvc; C:\Windows\SysWOW64\GeofenceMonitorService.dll [357376 2014-06-22] (Microsoft Corporation)
S3 LnvHotSpotSvc; C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe [474160 2014-03-05] (Lenovo)
R2 LocationTaskManager; C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe [470000 2014-06-10] ()
S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [1663880 2014-05-06] ()
S3 Netlogon; C:\Windows\SysWOW64\netlogon.dll [688640 2014-06-22] (Microsoft Corporation)
S2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [558592 2013-10-20] () [File not signed]
S3 smphost; C:\Windows\SysWOW64\smphost.dll [11776 2013-08-22] (Microsoft Corporation)
S3 StorSvc; C:\Windows\SysWOW64\storsvc.dll [18944 2013-08-22] (Microsoft Corporation)
S3 SUService; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [24560 2014-04-24] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-06-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-06-22] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-07-15] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-07-15] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-07-15] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-07-15] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-07-15] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-07-15] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-07-15] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-07-15] ()
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-10-28] (Broadcom Corporation.)
R3 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-06-22] (Disc Soft Ltd)
S3 NANMp50; C:\Windows\System32\Drivers\NANMp50.sys [46776 2010-03-25] (Printing Communications Assoc., Inc. (PCAUSA))
S3 NANSp50; C:\Windows\System32\Drivers\NANSp50.sys [45752 2010-03-25] (Printing Communications Assoc., Inc. (PCAUSA))
R3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [1936088 2013-07-31] (Realtek Semiconductor Corporation )
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [45296 2014-07-28] (Synaptics Incorporated)
S3 SPBIUpdd; C:\Program Files\Common Files\ShopperPro\spbiw.sys [41856 2014-09-30] ()
R2 SPDRIVER_1.37.0.1323; C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1323\jsdrv.sys [52584 2014-09-30] ()
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-06-22] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-03 10:33 - 2014-10-03 10:52 - 00021901 _____ () C:\Users\tomorn\Desktop\FRST.txt
2014-10-03 10:32 - 2014-10-03 10:33 - 00045395 _____ () C:\Users\tomorn\Desktop\Addition.txt
2014-10-03 10:30 - 2014-10-03 10:30 - 00000000 ____D () C:\Users\tomorn\Desktop\FRST-OlderVersion
2014-10-02 23:41 - 2014-10-02 23:41 - 00000000 ____D () C:\Users\Public\Documents\ShopperPro
2014-10-02 23:26 - 2014-10-02 23:05 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2014-10-02 23:13 - 2014-10-02 23:15 - 00000000 ____D () C:\Program Files\Common Files\ShopperPro
2014-10-02 23:12 - 2014-10-02 23:12 - 00000000 ____D () C:\Program Files (x86)\ShopperPro
2014-10-02 23:07 - 2014-10-02 23:41 - 00019086 _____ () C:\zoek-results.log
2014-10-02 23:05 - 2014-10-02 23:24 - 00000000 ____D () C:\zoek_backup
2014-10-02 23:05 - 2014-10-02 23:05 - 01290752 _____ () C:\Users\tomorn\Desktop\zoek.exe
2014-10-02 22:28 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\SysWOW64\sqlite3.dll
2014-10-02 22:26 - 2014-10-02 22:28 - 00000000 ____D () C:\AdwCleaner
2014-10-02 22:25 - 2014-10-02 22:25 - 01375089 _____ () C:\Users\tomorn\Desktop\adwcleaner_3.311.exe
2014-10-02 22:21 - 2014-10-02 22:21 - 00007710 _____ () C:\Users\tomorn\Desktop\JRT.txt
2014-10-02 22:15 - 2014-10-02 22:15 - 00000000 ____D () C:\WINDOWS\ERUNT
2014-10-02 22:14 - 2014-10-02 22:14 - 01701755 _____ (Thisisu) C:\Users\tomorn\Desktop\JRT.exe
2014-10-02 21:40 - 2014-10-03 10:52 - 00000000 ____D () C:\FRST
2014-10-02 21:35 - 2014-10-03 10:30 - 02109440 _____ (Farbar) C:\Users\tomorn\Desktop\FRST64.exe
2014-10-02 21:32 - 2014-10-02 21:33 - 00000000 ____D () C:\rsit
2014-10-02 21:32 - 2014-10-02 21:32 - 00000000 ____D () C:\Program Files\trend micro
2014-10-02 21:29 - 2014-10-02 21:39 - 00000000 ____D () C:\Users\tomorn\Desktop\optimalizace windows
2014-10-02 20:20 - 2014-10-02 20:19 - 00450770 ____R () C:\WINDOWS\system32\Drivers\etc\hosts.20141002-202038.backup
2014-10-02 20:19 - 2014-10-01 21:00 - 00450712 ____R () C:\WINDOWS\system32\Drivers\etc\hosts.20141002-201936.backup
2014-10-02 20:12 - 2014-10-02 20:12 - 00000000 ____D () C:\WINDOWS\System32\Tasks\Safer-Networking
2014-10-02 20:11 - 2014-10-02 22:09 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-10-01 21:00 - 2013-08-22 15:25 - 00000824 _____ () C:\WINDOWS\system32\Drivers\etc\hosts.20141001-210014.backup
2014-10-01 20:52 - 2014-10-02 21:02 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-10-01 20:52 - 2014-10-02 20:11 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy
2014-10-01 14:19 - 2014-10-01 14:19 - 00000448 _____ () C:\Users\tomorn\Desktop\AutoPico.log
2014-10-01 10:52 - 2014-10-01 10:52 - 00000000 _____ () C:\autoexec.bat
2014-10-01 10:50 - 2014-10-01 10:50 - 00051496 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\stflt.sys
2014-10-01 10:50 - 2014-10-01 10:50 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-10-01 10:49 - 2014-10-01 21:13 - 00000000 ____D () C:\Program Files (x86)\Spyware Terminator
2014-10-01 10:49 - 2014-10-01 20:51 - 00000000 ____D () C:\WINDOWS\1F7E4FF9D2E542589AE1E16E6CB3252A.TMP
2014-10-01 06:18 - 2014-10-03 10:32 - 00002086 _____ () C:\WINDOWS\setupact.log
2014-10-01 06:18 - 2014-10-01 06:18 - 00000000 _____ () C:\WINDOWS\setuperr.log
2014-10-01 00:56 - 2014-10-03 10:46 - 00344885 _____ () C:\WINDOWS\WindowsUpdate.log
2014-10-01 00:53 - 2014-10-02 23:35 - 00009050 _____ () C:\WINDOWS\PFRO.log
2014-09-30 18:52 - 2014-09-30 18:52 - 00000000 ____D () C:\Users\tomorn\Desktop\novicorpwintoflash0.8.0009betaportable
2014-09-30 18:51 - 2014-10-01 20:24 - 00000000 ____D () C:\ProgramData\TEMP
2014-09-30 18:49 - 2014-09-30 18:49 - 00000000 ____D () C:\Program Files (x86)\Seznam.cz
2014-09-30 18:48 - 2014-10-03 10:29 - 00000000 ____D () C:\Users\tomorn\AppData\Roaming\Seznam.cz
2014-09-30 18:48 - 2014-09-30 18:48 - 34082966 _____ () C:\Users\tomorn\Desktop\novicorpwintoflash0.8.0009betaportable.zip
2014-09-29 09:22 - 2014-09-29 11:43 - 400630769 _____ () C:\Users\tomorn\Downloads\4349_bobbi_littleguy_dominator_hi.mp4
2014-09-27 09:27 - 2014-09-27 14:54 - 602001715 _____ () C:\Users\tomorn\Downloads\4611__hi.mp4
2014-09-26 20:48 - 2014-08-15 00:36 - 00014848 _____ () C:\WINDOWS\system32\SppExtComObjHook.dll
2014-09-26 20:48 - 2014-08-15 00:36 - 00004608 _____ () C:\WINDOWS\system32\SppExtComObjPatcher.exe
2014-09-26 20:46 - 2014-08-16 19:59 - 00000000 ____D () C:\Users\tomorn\Desktop\kms
2014-09-26 20:09 - 2014-09-26 23:43 - 389858653 _____ () C:\Users\tomorn\Downloads\12593_felony_rain_hi.mp4
2014-09-26 19:37 - 2014-09-26 19:37 - 00001696 _____ () C:\Users\Public\Desktop\Defraggler.lnk
2014-09-26 19:37 - 2014-09-26 19:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler
2014-09-26 19:37 - 2014-09-26 19:37 - 00000000 ____D () C:\Program Files\Defraggler
2014-09-26 16:05 - 2014-09-26 16:05 - 00000938 _____ () C:\Users\tomorn\Desktop\HD Tune.lnk
2014-09-26 16:05 - 2014-09-26 16:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune
2014-09-26 16:05 - 2014-09-26 16:05 - 00000000 ____D () C:\Program Files (x86)\HD Tune
2014-09-26 09:13 - 2014-10-03 10:26 - 00003756 _____ () C:\WINDOWS\System32\Tasks\AutoKMS
2014-09-25 09:58 - 2014-09-25 11:27 - 162973011 _____ () C:\Users\tomorn\Downloads\12592_felony_rain_hi.mp4
2014-09-18 16:51 - 2014-09-21 19:47 - 00000146 _____ () C:\Users\tomorn\Desktop\BALÍKY.txt
2014-09-18 11:06 - 2014-09-18 11:06 - 00000845 _____ () C:\Users\Public\Desktop\CPUID CPU-Z.lnk
2014-09-18 11:06 - 2014-09-18 11:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2014-09-18 11:06 - 2014-09-18 11:06 - 00000000 ____D () C:\Program Files\CPUID
2014-09-17 23:26 - 2014-09-26 23:30 - 00003836 _____ () C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1403474014
2014-09-14 22:10 - 2014-07-24 17:20 - 21266336 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2014-09-14 22:10 - 2014-07-24 17:07 - 07424320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2014-09-14 22:10 - 2014-07-24 17:03 - 02141920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2014-09-14 22:10 - 2014-07-24 17:03 - 00818624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-09-14 22:10 - 2014-07-24 16:57 - 02515264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2014-09-14 22:10 - 2014-07-24 15:46 - 18760328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2014-09-14 22:10 - 2014-07-24 15:36 - 02145472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2014-09-14 22:10 - 2014-07-24 15:36 - 00674512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2014-09-14 22:10 - 2014-07-24 11:44 - 16874496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2014-09-14 22:10 - 2014-07-24 11:16 - 12730880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2014-09-14 22:10 - 2014-07-24 10:53 - 01261056 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2014-09-14 22:10 - 2014-07-24 10:32 - 01532416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2014-09-14 22:10 - 2014-07-24 10:27 - 00907776 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2014-09-14 22:10 - 2014-07-24 10:21 - 01231872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2014-09-14 22:10 - 2014-07-24 10:10 - 01029632 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2014-09-14 22:10 - 2014-07-24 09:46 - 08652800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2014-09-14 22:10 - 2014-07-24 09:43 - 02696704 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2014-09-14 22:10 - 2014-07-24 09:39 - 02642944 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2014-09-14 22:10 - 2014-07-24 09:38 - 06649344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2014-09-14 22:10 - 2014-07-24 09:38 - 05777408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2014-09-14 22:10 - 2014-07-24 09:30 - 02318336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2014-09-14 22:10 - 2014-07-24 09:28 - 01600000 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2014-09-14 22:10 - 2014-06-14 08:03 - 02389504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2014-09-14 22:10 - 2014-06-14 07:46 - 02071552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2014-09-14 22:09 - 2014-07-24 17:28 - 00468288 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2014-09-14 22:09 - 2014-07-24 17:28 - 00419648 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys
2014-09-14 22:09 - 2014-07-24 17:28 - 00412992 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2014-09-14 22:09 - 2014-07-24 17:28 - 00280384 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2014-09-14 22:09 - 2014-07-24 17:28 - 00143680 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbccgp.sys
2014-09-14 22:09 - 2014-07-24 17:25 - 00054752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2014-09-14 22:09 - 2014-07-24 17:23 - 01519488 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2014-09-14 22:09 - 2014-07-24 17:23 - 00125472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2014-09-14 22:09 - 2014-07-24 17:20 - 00645592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2014-09-14 22:09 - 2014-07-24 17:20 - 00263400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2014-09-14 22:09 - 2014-07-24 17:16 - 02574208 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL
2014-09-14 22:09 - 2014-07-24 17:16 - 00211216 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVol.exe
2014-09-14 22:09 - 2014-07-24 17:07 - 02009920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2014-09-14 22:09 - 2014-07-24 17:05 - 01660048 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2014-09-14 22:09 - 2014-07-24 17:05 - 01519560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2014-09-14 22:09 - 2014-07-24 17:05 - 01488008 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2014-09-14 22:09 - 2014-07-24 17:05 - 01356840 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2014-09-14 22:09 - 2014-07-24 17:03 - 00882136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2014-09-14 22:09 - 2014-07-24 17:03 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2014-09-14 22:09 - 2014-07-24 17:03 - 00233888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2014-09-14 22:09 - 2014-07-24 17:03 - 00205512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mftranscode.dll
2014-09-14 22:09 - 2014-07-24 16:57 - 00475968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2014-09-14 22:09 - 2014-07-24 15:50 - 00098048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2014-09-14 22:09 - 2014-07-24 15:48 - 02410976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVDECOD.DLL
2014-09-14 22:09 - 2014-07-24 15:48 - 00180208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVol.exe
2014-09-14 22:09 - 2014-07-24 15:46 - 00477200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2014-09-14 22:09 - 2014-07-24 15:36 - 00707536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2014-09-14 22:09 - 2014-07-24 15:36 - 00355800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2014-09-14 22:09 - 2014-07-24 15:36 - 00180720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mftranscode.dll
2014-09-14 22:09 - 2014-07-24 13:46 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys
2014-09-14 22:09 - 2014-07-24 13:45 - 00076800 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys
2014-09-14 22:09 - 2014-07-24 13:44 - 00674816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2014-09-14 22:09 - 2014-07-24 13:43 - 00412160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2014-09-14 22:09 - 2014-07-24 13:42 - 01200640 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2014-09-14 22:09 - 2014-07-24 13:42 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2014-09-14 22:09 - 2014-07-24 13:42 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\NdisImPlatform.sys
2014-09-14 22:09 - 2014-07-24 13:41 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2014-09-14 22:09 - 2014-07-24 13:33 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2014-09-14 22:09 - 2014-07-24 13:33 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2014-09-14 22:09 - 2014-07-24 13:06 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasnap.dll
2014-09-14 22:09 - 2014-07-24 13:05 - 00287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2014-09-14 22:09 - 2014-07-24 13:05 - 00226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebClnt.dll
2014-09-14 22:09 - 2014-07-24 12:49 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersGPExt.dll
2014-09-14 22:09 - 2014-07-24 12:20 - 02050560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2014-09-14 22:09 - 2014-07-24 12:18 - 01089024 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpedit.dll
2014-09-14 22:09 - 2014-07-24 12:12 - 00878592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll
2014-09-14 22:09 - 2014-07-24 12:10 - 01844224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2014-09-14 22:09 - 2014-07-24 12:10 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2014-09-14 22:09 - 2014-07-24 12:10 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebClnt.dll
2014-09-14 22:09 - 2014-07-24 12:10 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iasnap.dll
2014-09-14 22:09 - 2014-07-24 12:09 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll
2014-09-14 22:09 - 2014-07-24 12:06 - 00438272 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2014-09-14 22:09 - 2014-07-24 12:05 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll
2014-09-14 22:09 - 2014-07-24 11:58 - 00785408 _____ (Microsoft Corporation) C:\WINDOWS\system32\pmcsnap.dll
2014-09-14 22:09 - 2014-07-24 11:54 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ppcsnap.dll
2014-09-14 22:09 - 2014-07-24 11:53 - 00215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\prnntfy.dll
2014-09-14 22:09 - 2014-07-24 11:52 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2014-09-14 22:09 - 2014-07-24 11:40 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs.dll
2014-09-14 22:09 - 2014-07-24 11:39 - 00770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll
2014-09-14 22:09 - 2014-07-24 11:33 - 01741824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2014-09-14 22:09 - 2014-07-24 11:32 - 01048064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpedit.dll
2014-09-14 22:09 - 2014-07-24 11:27 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll
2014-09-14 22:09 - 2014-07-24 11:27 - 00779264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\osk.exe
2014-09-14 22:09 - 2014-07-24 11:24 - 01817088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll
2014-09-14 22:09 - 2014-07-24 11:23 - 00328704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2014-09-14 22:09 - 2014-07-24 11:21 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll
2014-09-14 22:09 - 2014-07-24 11:18 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2014-09-14 22:09 - 2014-07-24 11:13 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prnntfy.dll
2014-09-14 22:09 - 2014-07-24 11:12 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2014-09-14 22:09 - 2014-07-24 11:11 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\conhost.exe
2014-09-14 22:09 - 2014-07-24 11:11 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll
2014-09-14 22:09 - 2014-07-24 11:10 - 00540672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2014-09-14 22:09 - 2014-07-24 11:09 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll
2014-09-14 22:09 - 2014-07-24 11:03 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll
2014-09-14 22:09 - 2014-07-24 11:02 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2014-09-14 22:09 - 2014-07-24 10:53 - 00449536 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2014-09-14 22:09 - 2014-07-24 10:49 - 01287680 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2014-09-14 22:09 - 2014-07-24 10:49 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2014-09-14 22:09 - 2014-07-24 10:49 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhsvc.dll
2014-09-14 22:09 - 2014-07-24 10:48 - 00659968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2014-09-14 22:09 - 2014-07-24 10:47 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2014-09-14 22:09 - 2014-07-24 10:43 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshbth.dll
2014-09-14 22:09 - 2014-07-24 10:39 - 02397184 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2014-09-14 22:09 - 2014-07-24 10:38 - 00371200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2014-09-14 22:09 - 2014-07-24 10:30 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2014-09-14 22:09 - 2014-07-24 10:29 - 00439296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2014-09-14 22:09 - 2014-07-24 10:28 - 00595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2014-09-14 22:09 - 2014-07-24 10:23 - 01404416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2014-09-14 22:09 - 2014-07-24 10:22 - 00487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2014-09-14 22:09 - 2014-07-24 10:21 - 00302080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll
2014-09-14 22:09 - 2014-07-24 10:20 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiapi.dll
2014-09-14 22:09 - 2014-07-24 10:19 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2014-09-14 22:09 - 2014-07-24 10:18 - 00795136 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2014-09-14 22:09 - 2014-07-24 10:16 - 00505344 _____ (Microsoft Corporation) C:\WINDOWS\system32\VAN.dll
2014-09-14 22:09 - 2014-07-24 10:16 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2014-09-14 22:09 - 2014-07-24 10:15 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2014-09-14 22:09 - 2014-07-24 10:15 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2014-09-14 22:09 - 2014-07-24 10:15 - 00432128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2014-09-14 22:09 - 2014-07-24 10:10 - 00889344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2014-09-14 22:09 - 2014-07-24 10:10 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2014-09-14 22:09 - 2014-07-24 10:10 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2014-09-14 22:09 - 2014-07-24 10:08 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2014-09-14 22:09 - 2014-07-24 10:08 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiapi.dll
2014-09-14 22:09 - 2014-07-24 10:07 - 01705472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2014-09-14 22:09 - 2014-07-24 10:05 - 00448000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VAN.dll
2014-09-14 22:09 - 2014-07-24 10:04 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2014-09-14 22:09 - 2014-07-24 10:02 - 03465216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2014-09-14 22:09 - 2014-07-24 10:01 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2014-09-14 22:09 - 2014-07-24 10:01 - 01992192 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2014-09-14 22:09 - 2014-07-24 10:01 - 01126912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2014-09-14 22:09 - 2014-07-24 09:58 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2014-09-14 22:09 - 2014-07-24 09:58 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll
2014-09-14 22:09 - 2014-07-24 09:54 - 01290752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
2014-09-14 22:09 - 2014-07-24 09:50 - 01182208 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.dll
2014-09-14 22:09 - 2014-07-24 09:50 - 00923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2014-09-14 22:09 - 2014-07-24 09:49 - 00263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafPrintProvider.dll
2014-09-14 22:09 - 2014-07-24 09:47 - 00576512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2014-09-14 22:09 - 2014-07-24 09:44 - 01057792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\printui.dll
2014-09-14 22:09 - 2014-07-24 09:43 - 00756224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2014-09-14 22:09 - 2014-07-24 09:43 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafPrintProvider.dll
2014-09-14 22:09 - 2014-07-24 09:41 - 00459264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2014-09-14 22:09 - 2014-07-24 09:33 - 03360768 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2014-09-14 22:09 - 2014-07-24 06:11 - 00513544 _____ () C:\WINDOWS\SysWOW64\locale.nls
2014-09-14 22:09 - 2014-07-24 06:11 - 00513544 _____ () C:\WINDOWS\system32\locale.nls
2014-09-14 22:09 - 2014-07-12 07:55 - 00268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wisp.dll
2014-09-14 22:09 - 2014-07-12 06:58 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wisp.dll
2014-09-14 22:09 - 2014-07-12 06:13 - 01417216 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-09-14 22:09 - 2014-07-04 14:59 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2014-09-14 22:09 - 2014-07-04 12:29 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll
2014-09-14 22:09 - 2014-07-04 12:20 - 01656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2014-09-14 22:09 - 2014-07-04 12:06 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxSip.dll
2014-09-14 22:09 - 2014-07-04 11:30 - 00544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2014-09-14 22:09 - 2014-07-04 11:27 - 00474112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2014-09-14 22:09 - 2014-06-27 08:22 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2014-09-14 22:09 - 2014-06-26 02:32 - 01029632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2014-09-14 22:09 - 2014-06-26 02:29 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dab.dll
2014-09-14 22:09 - 2014-06-20 01:37 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2014-09-14 22:09 - 2014-06-19 04:13 - 00310080 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2014-09-14 22:09 - 2014-06-07 14:46 - 00216368 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2014-09-14 22:09 - 2014-06-07 12:20 - 00189016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll
2014-09-14 22:09 - 2014-06-05 16:00 - 01118040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2014-09-14 22:09 - 2014-06-05 12:18 - 01018368 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll
2014-09-14 22:09 - 2014-06-05 11:42 - 00889856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll
2014-09-14 22:09 - 2014-05-31 07:00 - 01463808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2014-09-14 22:09 - 2014-05-31 06:18 - 01319936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2014-09-14 22:09 - 2014-05-29 08:23 - 00427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2014-09-14 22:09 - 2014-05-29 07:25 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2014-09-14 22:09 - 2014-05-29 07:20 - 00427520 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2014-09-14 22:09 - 2014-05-26 09:26 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2014-09-14 22:09 - 2014-05-10 12:12 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2014-09-14 22:09 - 2014-05-10 10:46 - 00335680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2014-09-14 22:09 - 2014-05-06 06:41 - 00486744 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll
2014-09-14 22:09 - 2014-05-06 02:55 - 00391000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll
2014-09-14 22:09 - 2014-03-25 04:27 - 00160600 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmmbase.dll
2014-09-14 22:09 - 2014-03-25 04:27 - 00123920 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmm.dll
2014-09-14 22:09 - 2014-03-25 03:20 - 00128568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmm.dll
2014-09-14 22:09 - 2014-03-25 03:20 - 00127544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmmbase.dll
2014-09-14 22:08 - 2014-07-24 13:51 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDRUM.DLL
2014-09-14 22:08 - 2014-07-24 13:51 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDYAK.DLL
2014-09-14 22:08 - 2014-07-24 13:51 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTT102.DLL
2014-09-14 22:08 - 2014-07-24 13:51 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTAT.DLL
2014-09-14 22:08 - 2014-07-24 13:51 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDRU1.DLL
2014-09-14 22:08 - 2014-07-24 13:51 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDBASH.DLL
2014-09-14 22:08 - 2014-07-24 13:51 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDRU.DLL
2014-09-14 22:08 - 2014-07-24 13:47 - 00132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2014-09-14 22:08 - 2014-07-24 13:41 - 00118272 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthpan.sys
2014-09-14 22:08 - 2014-07-24 13:22 - 00308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll
2014-09-14 22:08 - 2014-07-24 12:52 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDYAK.DLL
2014-09-14 22:08 - 2014-07-24 12:52 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDTT102.DLL
2014-09-14 22:08 - 2014-07-24 12:52 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDTAT.DLL
2014-09-14 22:08 - 2014-07-24 12:51 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDRUM.DLL
2014-09-14 22:08 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDRU1.DLL
2014-09-14 22:08 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDBASH.DLL
2014-09-14 22:08 - 2014-07-24 12:51 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDRU.DLL
2014-09-14 22:08 - 2014-07-24 12:33 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2014-09-14 22:08 - 2014-07-24 12:32 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\powercfg.cpl
2014-09-14 22:08 - 2014-07-24 11:42 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\powercfg.cpl
2014-09-14 22:08 - 2014-07-24 11:25 - 00832512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActionCenter.dll
2014-09-14 22:08 - 2014-07-24 11:14 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2014-09-14 22:08 - 2014-07-24 11:04 - 00492032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll
2014-09-14 22:08 - 2014-07-24 11:04 - 00183808 _____ (Microsoft Corp.) C:\WINDOWS\system32\Defrag.exe
2014-09-14 22:08 - 2014-07-24 10:58 - 00105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2014-09-14 22:08 - 2014-07-24 10:49 - 01361408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2014-09-14 22:08 - 2014-07-24 10:36 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll
2014-09-14 22:08 - 2014-07-24 10:24 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-09-14 22:08 - 2014-07-24 10:18 - 01144320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2014-09-14 22:08 - 2014-07-24 10:18 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2014-09-14 22:08 - 2014-07-24 10:13 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
2014-09-14 22:08 - 2014-07-24 10:12 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-09-14 22:08 - 2014-07-24 10:06 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2014-09-14 22:08 - 2014-07-24 10:00 - 02100736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2014-09-14 22:08 - 2014-07-12 07:23 - 00436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2014-09-14 22:08 - 2014-07-12 06:33 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2014-09-14 22:08 - 2014-07-10 01:19 - 00387391 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2014-09-14 22:08 - 2014-07-04 12:00 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2014-09-14 22:08 - 2014-05-29 06:36 - 00344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2014-09-14 21:58 - 2014-08-23 09:48 - 02374784 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2014-09-14 21:58 - 2014-08-23 09:13 - 02084520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2014-09-14 21:58 - 2014-08-23 08:10 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UXInit.dll
2014-09-14 21:58 - 2014-08-23 07:32 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UXInit.dll
2014-09-14 21:58 - 2014-08-23 06:44 - 02860032 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2014-09-14 21:58 - 2014-08-23 06:34 - 13423104 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2014-09-14 21:58 - 2014-08-23 06:33 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2014-09-14 21:58 - 2014-08-23 06:31 - 01038336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2014-09-14 21:58 - 2014-08-23 06:20 - 11818496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2014-09-14 21:56 - 2014-07-30 03:56 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll
2014-09-14 21:56 - 2014-07-29 07:22 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcpmon.dll
2014-09-14 21:46 - 2014-08-15 02:36 - 00146752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpioclx.sys
2014-09-13 17:39 - 2014-09-13 18:20 - 00000000 ____D () C:\Users\tomorn\Desktop\asus F5R
2014-09-13 16:15 - 2014-09-30 17:02 - 00000000 ____D () C:\Users\tomorn\Desktop\zaloha Ondra
2014-09-11 20:23 - 2014-08-16 04:40 - 23591424 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-09-11 20:23 - 2014-08-16 04:04 - 17455104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-09-11 20:23 - 2014-08-16 04:00 - 05833728 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-09-11 20:23 - 2014-08-16 04:00 - 02793984 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-09-11 20:23 - 2014-08-16 03:56 - 00547328 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2014-09-11 20:23 - 2014-08-16 03:54 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2014-09-11 20:23 - 2014-08-16 03:45 - 04232704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-09-11 20:23 - 2014-08-16 03:43 - 00758272 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2014-09-11 20:23 - 2014-08-16 03:32 - 00446464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2014-09-11 20:23 - 2014-08-16 03:25 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-09-11 20:23 - 2014-08-16 03:22 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2014-09-11 20:23 - 2014-08-16 03:20 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2014-09-11 20:23 - 2014-08-16 03:19 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-09-11 20:23 - 2014-08-16 03:18 - 02185728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-09-11 20:23 - 2014-08-16 03:18 - 00289280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2014-09-11 20:23 - 2014-08-16 03:11 - 00597504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2014-09-11 20:23 - 2014-08-16 03:06 - 00359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-09-11 20:23 - 2014-08-16 03:05 - 00727040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-09-11 20:23 - 2014-08-16 03:05 - 00707072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-09-11 20:23 - 2014-08-16 03:03 - 02104832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-09-11 20:23 - 2014-08-16 03:03 - 00365056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2014-09-11 20:23 - 2014-08-16 02:58 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JavaScriptCollectionAgent.dll
2014-09-11 20:23 - 2014-08-16 02:56 - 02310656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-09-11 20:23 - 2014-08-16 02:53 - 13588480 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-09-11 20:23 - 2014-08-16 02:53 - 00243200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2014-09-11 20:23 - 2014-08-16 02:53 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-09-11 20:23 - 2014-08-16 02:51 - 11769856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-09-11 20:23 - 2014-08-16 02:45 - 00603136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-09-11 20:23 - 2014-08-16 02:44 - 02014208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-09-11 20:23 - 2014-08-16 02:44 - 00312320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2014-09-11 20:23 - 2014-08-16 02:34 - 01447424 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-09-11 20:23 - 2014-08-16 02:20 - 01812992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-09-11 20:23 - 2014-08-16 02:18 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-09-11 20:23 - 2014-08-16 02:14 - 01190400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-09-11 20:23 - 2014-08-16 02:12 - 00678400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-09-11 20:23 - 2014-05-30 11:28 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2014-09-11 20:23 - 2014-05-30 10:43 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2014-09-11 20:23 - 2014-02-06 13:30 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2014-09-11 20:23 - 2014-02-06 13:30 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll
2014-09-11 20:23 - 2014-02-06 13:07 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2014-09-11 20:23 - 2014-02-06 13:06 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll
2014-09-11 20:23 - 2014-02-06 12:56 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2014-09-11 20:23 - 2014-02-06 12:49 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe
2014-09-11 20:23 - 2014-02-06 12:48 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe
2014-09-11 20:23 - 2014-02-06 12:20 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2014-09-11 20:23 - 2014-02-06 12:17 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2014-09-11 20:23 - 2014-02-06 12:00 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll
2014-09-11 20:23 - 2014-02-06 11:52 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2014-09-11 20:23 - 2014-02-06 11:52 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2014-09-11 20:23 - 2014-02-06 11:47 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe
2014-09-11 20:23 - 2014-02-06 11:25 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2014-09-11 03:00 - 2014-07-24 05:20 - 00875688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll
2014-09-11 03:00 - 2014-07-24 05:20 - 00869544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr120_clr0400.dll
2014-09-11 02:58 - 2014-08-02 02:18 - 01212928 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2014-09-10 17:38 - 2014-10-02 17:29 - 00004963 _____ () C:\WINDOWS\system32\AutoPico.log
2014-09-09 11:55 - 2014-09-09 11:55 - 00001216 _____ () C:\Users\Public\Desktop\SHAREit.lnk
2014-09-09 11:55 - 2014-07-28 12:25 - 00536304 _____ (Synaptics Incorporated) C:\WINDOWS\SysWOW64\SynCOM.dll
2014-09-09 11:55 - 2014-07-28 12:25 - 00461552 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\SynTP.sys
2014-09-09 11:55 - 2014-07-28 12:25 - 00224496 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPAPI.dll
2014-09-09 11:55 - 2014-07-28 12:25 - 00173808 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPCo14.dll
2014-09-09 11:55 - 2014-07-28 12:25 - 00114416 _____ (Synaptics Incorporated) C:\WINDOWS\SysWOW64\SynTPCOM.dll
2014-09-09 11:55 - 2014-07-28 12:25 - 00045296 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_Intel.sys
2014-09-08 20:33 - 2014-09-08 21:14 - 00753769 _____ () C:\Users\tomorn\Desktop\PSC upravy.xlsm
2014-09-08 20:33 - 2014-09-08 12:28 - 00015231 _____ () C:\Users\tomorn\Desktop\PSC.xlsm
2014-09-08 15:36 - 2014-09-08 15:36 - 00000355 _____ () C:\Users\tomorn\Desktop\Module1.bas

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-03 10:33 - 2014-06-22 23:23 - 00000976 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-10-03 10:31 - 2014-06-21 23:23 - 00003594 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1076011386-52816415-3729311051-1001
2014-10-03 10:26 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-10-03 10:25 - 2014-06-22 08:34 - 00000000 ___DO () C:\Users\tomorn\OneDrive
2014-10-03 10:24 - 2014-06-22 09:39 - 00004182 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update
2014-10-03 10:23 - 2014-06-22 18:14 - 00006104 _____ () C:\WINDOWS\system32\Service_KMS.log
2014-10-03 10:22 - 2014-06-22 23:23 - 00000972 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-10-03 10:22 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-10-03 00:20 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2014-10-03 00:02 - 2014-06-22 09:48 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-10-03 00:00 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-10-02 23:52 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2014-10-02 22:17 - 2014-03-18 17:33 - 01745984 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-10-02 22:17 - 2014-03-18 16:54 - 00739924 _____ () C:\WINDOWS\system32\perfh005.dat
2014-10-02 22:17 - 2014-03-18 16:54 - 00151610 _____ () C:\WINDOWS\system32\perfc005.dat
2014-10-02 21:30 - 2014-06-22 18:09 - 00007628 _____ () C:\Users\tomorn\AppData\Local\Resmon.ResmonCfg
2014-10-02 21:30 - 2014-06-22 10:59 - 00000000 ____D () C:\Users\tomorn\Documents\Soubory aplikace Outlook
2014-10-02 12:21 - 2014-06-22 08:38 - 00000000 ____D () C:\install
2014-10-01 17:35 - 2014-06-25 02:33 - 00000000 ____D () C:\Users\tomorn\AppData\Roaming\TeamViewer
2014-10-01 17:30 - 2014-06-22 04:10 - 00000000 ____D () C:\Users\tomorn
2014-09-30 19:37 - 2014-06-22 10:19 - 00000000 ____D () C:\Users\tomorn\AppData\Roaming\DAEMON Tools Lite
2014-09-30 18:55 - 2013-08-22 15:25 - 00000269 _____ () C:\WINDOWS\win.ini
2014-09-30 18:45 - 2014-06-22 09:58 - 00000548 __RSH () C:\ProgramData\ntuser.pol
2014-09-29 15:06 - 2014-06-22 21:14 - 00000000 ____D () C:\ProgramData\firebird
2014-09-29 14:08 - 2014-06-22 21:06 - 00000000 ____D () C:\Users\tomorn\AppData\Local\Deployment
2014-09-29 12:59 - 2014-06-21 23:17 - 00000000 ____D () C:\Users\tomorn\AppData\Local\Packages
2014-09-28 19:41 - 2014-08-27 10:57 - 00000000 ____D () C:\Users\tomorn\Desktop\Lenovo S660 zaloha
2014-09-27 12:54 - 2014-06-24 13:31 - 00000000 ____D () C:\Users\tomorn\AppData\Roaming\ViberPC
2014-09-27 12:54 - 2014-06-24 13:29 - 00000000 ____D () C:\Users\tomorn\AppData\Local\Viber
2014-09-26 23:43 - 2014-06-22 09:58 - 00000000 ____D () C:\sdílená
2014-09-26 23:30 - 2014-06-22 23:53 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-09-26 18:02 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-09-25 13:30 - 2014-06-22 10:31 - 00000000 ____D () C:\Users\tomorn\Documents\Partners
2014-09-24 15:02 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2014-09-23 09:26 - 2014-06-22 08:34 - 00002228 ____H () C:\Users\tomorn\Documents\Default.rdp
2014-09-23 08:29 - 2013-08-22 16:44 - 00484088 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-09-23 00:55 - 2014-08-26 15:08 - 00000000 ____D () C:\Users\tomorn\AppData\Local\Adobe
2014-09-17 21:15 - 2014-06-22 10:30 - 00000000 ____D () C:\Users\tomorn\Documents\AXAStudio
2014-09-17 16:00 - 2014-06-22 08:53 - 00000000 ____D () C:\ostatni
2014-09-16 08:17 - 2014-06-22 10:30 - 00000000 ____D () C:\Users\tomorn\Documents\Moje naskenované obrázky
2014-09-15 22:55 - 2014-06-22 10:25 - 00001118 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk
2014-09-15 22:55 - 2014-06-22 10:25 - 00001106 _____ () C:\Users\Public\Desktop\TeamViewer 9.lnk
2014-09-15 19:43 - 2014-03-18 17:10 - 00000000 ____D () C:\Program Files\Windows Journal
2014-09-15 19:43 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-09-15 19:43 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-09-15 19:43 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-09-15 19:43 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\WinStore
2014-09-15 19:43 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\setup
2014-09-15 19:42 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel
2014-09-15 19:42 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\InputMethod
2014-09-15 19:42 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\setup
2014-09-15 19:42 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions
2014-09-15 19:42 - 2013-08-22 15:36 - 00000000 ____D () C:\WINDOWS\system32\oobe
2014-09-15 13:18 - 2014-06-22 11:29 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-09-15 13:16 - 2014-06-22 11:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2014-09-14 19:41 - 2014-06-21 23:35 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-09-14 19:30 - 2014-06-21 23:35 - 101694776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-09-09 21:06 - 2014-06-22 09:48 - 00003802 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2014-09-09 11:56 - 2014-06-22 00:04 - 00002982 _____ () C:\WINDOWS\System32\Tasks\Synaptics TouchPad Enhancements
2014-09-09 11:55 - 2014-06-22 23:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
2014-09-09 11:53 - 2014-07-08 21:45 - 00000000 ____D () C:\Users\tomorn\Desktop\TISK
2014-09-06 15:58 - 2014-08-16 17:40 - 00000000 ____D () C:\Program Files (x86)\KA10

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-09-30 12:42

==================== End Of Log ============================

Re: delay.exe a YTAHelper.exe mi vytěžují procesor

Napsal: 03 říj 2014 16:18
od vyosek
:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    CloseProcesses:
    
    HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [35696 2009-02-27] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [] => [X]
    HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
    HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
    HKLM-x32\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1323\jsdrv.exe [3211776 2014-09-30] ()
    HKU\S-1-5-21-1076011386-52816415-3729311051-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
    HKU\S-1-5-21-1076011386-52816415-3729311051-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\tomorn\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
    HKU\S-1-5-21-1076011386-52816415-3729311051-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\tomorn\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
    HKU\S-1-5-21-1076011386-52816415-3729311051-1001\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1323\jsdrv.exe [3211776 2014-09-30] ()
    AppInit_DLLs: C:\Program Files => C:\Program Files [0 2014-10-02] ()
    GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
    
    CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
    
    2014-10-03 10:33 - 2014-10-03 10:52 - 00021901 _____ () C:\Users\tomorn\Desktop\FRST.txt
    2014-10-03 10:32 - 2014-10-03 10:33 - 00045395 _____ () C:\Users\tomorn\Desktop\Addition.txt
    2014-10-03 10:30 - 2014-10-03 10:30 - 00000000 ____D () C:\Users\tomorn\Desktop\FRST-OlderVersion
    2014-10-02 23:41 - 2014-10-02 23:41 - 00000000 ____D () C:\Users\Public\Documents\ShopperPro
    2014-10-02 23:26 - 2014-10-02 23:05 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
    2014-10-02 23:13 - 2014-10-02 23:15 - 00000000 ____D () C:\Program Files\Common Files\ShopperPro
    2014-10-02 23:12 - 2014-10-02 23:12 - 00000000 ____D () C:\Program Files (x86)\ShopperPro
    2014-10-02 23:07 - 2014-10-02 23:41 - 00019086 _____ () C:\zoek-results.log
    2014-10-02 23:05 - 2014-10-02 23:24 - 00000000 ____D () C:\zoek_backup
    2014-10-02 23:05 - 2014-10-02 23:05 - 01290752 _____ () C:\Users\tomorn\Desktop\zoek.exe
    2014-10-02 22:28 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\SysWOW64\sqlite3.dll
    2014-10-02 22:26 - 2014-10-02 22:28 - 00000000 ____D () C:\AdwCleaner
    2014-10-02 22:25 - 2014-10-02 22:25 - 01375089 _____ () C:\Users\tomorn\Desktop\adwcleaner_3.311.exe
    2014-10-02 22:21 - 2014-10-02 22:21 - 00007710 _____ () C:\Users\tomorn\Desktop\JRT.txt
    2014-10-02 22:15 - 2014-10-02 22:15 - 00000000 ____D () C:\WINDOWS\ERUNT
    2014-10-02 22:14 - 2014-10-02 22:14 - 01701755 _____ (Thisisu) C:\Users\tomorn\Desktop\JRT.exe
    C:\Program Files (x86)\ShopperPro
    2014-10-02 20:20 - 2014-10-02 20:19 - 00450770 ____R () C:\WINDOWS\system32\Drivers\etc\hosts.20141002-202038.backup
    2014-10-02 20:19 - 2014-10-01 21:00 - 00450712 ____R () C:\WINDOWS\system32\Drivers\etc\hosts.20141002-201936.backup
    2014-10-02 20:12 - 2014-10-02 20:12 - 00000000 ____D () C:\WINDOWS\System32\Tasks\Safer-Networking
    2014-10-02 20:11 - 2014-10-02 22:09 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
    2014-10-01 21:00 - 2013-08-22 15:25 - 00000824 _____ () C:\WINDOWS\system32\Drivers\etc\hosts.20141001-210014.backup
    2014-10-01 20:52 - 2014-10-02 21:02 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
    2014-10-01 20:52 - 2014-10-02 20:11 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy
    2014-10-01 10:50 - 2014-10-01 10:50 - 00000000 ____D () C:\Program Files\Enigma Software Group
    2014-10-01 10:49 - 2014-10-01 21:13 - 00000000 ____D () C:\Program Files (x86)\Spyware Terminator
    2014-10-01 10:49 - 2014-10-01 20:51 - 00000000 ____D () C:\WINDOWS\1F7E4FF9D2E542589AE1E16E6CB3252A.TMP
    2014-09-26 09:13 - 2014-10-03 10:26 - 00003756 _____ () C:\WINDOWS\System32\Tasks\AutoKMS
    2014-10-03 10:23 - 2014-06-22 18:14 - 00006104 _____ () C:\WINDOWS\system32\Service_KMS.log
    
    Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    
    AlternateDataStreams: C:\ProgramData\TEMP:56E2E879
    
    Hosts:
    EmptyTemp:
    Reboot:
    End
    
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt

Re: delay.exe a YTAHelper.exe mi vytěžují procesor

Napsal: 03 říj 2014 17:00
od tomorn
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 02-10-2014
Ran by tomorn at 2014-10-03 17:46:24 Run:1
Running from C:\Users\tomorn\Desktop
Loaded Profile: tomorn (Available profiles: tomorn)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
CloseProcesses:

HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [35696 2009-02-27] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1323\jsdrv.exe [3211776 2014-09-30] ()
HKU\S-1-5-21-1076011386-52816415-3729311051-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1076011386-52816415-3729311051-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\tomorn\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-1076011386-52816415-3729311051-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\tomorn\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-1076011386-52816415-3729311051-1001\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1323\jsdrv.exe [3211776 2014-09-30] ()
AppInit_DLLs: C:\Program Files => C:\Program Files [0 2014-10-02] ()
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION

CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

2014-10-03 10:33 - 2014-10-03 10:52 - 00021901 _____ () C:\Users\tomorn\Desktop\FRST.txt
2014-10-03 10:32 - 2014-10-03 10:33 - 00045395 _____ () C:\Users\tomorn\Desktop\Addition.txt
2014-10-03 10:30 - 2014-10-03 10:30 - 00000000 ____D () C:\Users\tomorn\Desktop\FRST-OlderVersion
2014-10-02 23:41 - 2014-10-02 23:41 - 00000000 ____D () C:\Users\Public\Documents\ShopperPro
2014-10-02 23:26 - 2014-10-02 23:05 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2014-10-02 23:13 - 2014-10-02 23:15 - 00000000 ____D () C:\Program Files\Common Files\ShopperPro
2014-10-02 23:12 - 2014-10-02 23:12 - 00000000 ____D () C:\Program Files (x86)\ShopperPro
2014-10-02 23:07 - 2014-10-02 23:41 - 00019086 _____ () C:\zoek-results.log
2014-10-02 23:05 - 2014-10-02 23:24 - 00000000 ____D () C:\zoek_backup
2014-10-02 23:05 - 2014-10-02 23:05 - 01290752 _____ () C:\Users\tomorn\Desktop\zoek.exe
2014-10-02 22:28 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\SysWOW64\sqlite3.dll
2014-10-02 22:26 - 2014-10-02 22:28 - 00000000 ____D () C:\AdwCleaner
2014-10-02 22:25 - 2014-10-02 22:25 - 01375089 _____ () C:\Users\tomorn\Desktop\adwcleaner_3.311.exe
2014-10-02 22:21 - 2014-10-02 22:21 - 00007710 _____ () C:\Users\tomorn\Desktop\JRT.txt
2014-10-02 22:15 - 2014-10-02 22:15 - 00000000 ____D () C:\WINDOWS\ERUNT
2014-10-02 22:14 - 2014-10-02 22:14 - 01701755 _____ (Thisisu) C:\Users\tomorn\Desktop\JRT.exe
C:\Program Files (x86)\ShopperPro
2014-10-02 20:20 - 2014-10-02 20:19 - 00450770 ____R () C:\WINDOWS\system32\Drivers\etc\hosts.20141002-202038.backup
2014-10-02 20:19 - 2014-10-01 21:00 - 00450712 ____R () C:\WINDOWS\system32\Drivers\etc\hosts.20141002-201936.backup
2014-10-02 20:12 - 2014-10-02 20:12 - 00000000 ____D () C:\WINDOWS\System32\Tasks\Safer-Networking
2014-10-02 20:11 - 2014-10-02 22:09 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-10-01 21:00 - 2013-08-22 15:25 - 00000824 _____ () C:\WINDOWS\system32\Drivers\etc\hosts.20141001-210014.backup
2014-10-01 20:52 - 2014-10-02 21:02 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-10-01 20:52 - 2014-10-02 20:11 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy
2014-10-01 10:50 - 2014-10-01 10:50 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-10-01 10:49 - 2014-10-01 21:13 - 00000000 ____D () C:\Program Files (x86)\Spyware Terminator
2014-10-01 10:49 - 2014-10-01 20:51 - 00000000 ____D () C:\WINDOWS\1F7E4FF9D2E542589AE1E16E6CB3252A.TMP
2014-09-26 09:13 - 2014-10-03 10:26 - 00003756 _____ () C:\WINDOWS\System32\Tasks\AutoKMS
2014-10-03 10:23 - 2014-06-22 18:14 - 00006104 _____ () C:\WINDOWS\system32\Service_KMS.log

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

AlternateDataStreams: C:\ProgramData\TEMP:56E2E879

Hosts:
EmptyTemp:
Reboot:
End
*****************

Processes closed successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\HP Software Update => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\seznam-listicka-distribuce => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SPDriver => value deleted successfully.
HKU\S-1-5-21-1076011386-52816415-3729311051-1001\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value deleted successfully.
HKU\S-1-5-21-1076011386-52816415-3729311051-1001\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.autoupdate => value deleted successfully.
HKU\S-1-5-21-1076011386-52816415-3729311051-1001\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.szndesktop => value deleted successfully.
HKU\S-1-5-21-1076011386-52816415-3729311051-1001\Software\Microsoft\Windows\CurrentVersion\Run\\SPDriver => value deleted successfully.
"C:\Program Files" => Value Data removed successfully.
C:\WINDOWS\system32\GroupPolicy\Machine => Moved successfully.
C:\WINDOWS\system32\GroupPolicy\GPT.ini => Moved successfully.
"HKLM\SOFTWARE\Policies\Google" => Key deleted successfully.
C:\Users\tomorn\Desktop\FRST.txt => Moved successfully.
C:\Users\tomorn\Desktop\Addition.txt => Moved successfully.
C:\Users\tomorn\Desktop\FRST-OlderVersion => Moved successfully.
C:\Users\Public\Documents\ShopperPro => Moved successfully.
C:\WINDOWS\zoek-delete.exe => Moved successfully.
C:\Program Files\Common Files\ShopperPro => Moved successfully.
C:\Program Files (x86)\ShopperPro => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\tomorn\Desktop\zoek.exe => Moved successfully.
C:\WINDOWS\SysWOW64\sqlite3.dll => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Users\tomorn\Desktop\adwcleaner_3.311.exe => Moved successfully.
C:\Users\tomorn\Desktop\JRT.txt => Moved successfully.
C:\WINDOWS\ERUNT => Moved successfully.
C:\Users\tomorn\Desktop\JRT.exe => Moved successfully.
"C:\Program Files (x86)\ShopperPro" => File/Directory not found.
C:\WINDOWS\system32\Drivers\etc\hosts.20141002-202038.backup => Moved successfully.
C:\WINDOWS\system32\Drivers\etc\hosts.20141002-201936.backup => Moved successfully.
C:\WINDOWS\System32\Tasks\Safer-Networking => Moved successfully.
C:\Program Files (x86)\Spybot - Search & Destroy 2 => Moved successfully.
C:\WINDOWS\system32\Drivers\etc\hosts.20141001-210014.backup => Moved successfully.
C:\ProgramData\Spybot - Search & Destroy => Moved successfully.
C:\Program Files (x86)\Spybot - Search & Destroy => Moved successfully.
C:\Program Files\Enigma Software Group => Moved successfully.
C:\Program Files (x86)\Spyware Terminator => Moved successfully.
C:\WINDOWS\1F7E4FF9D2E542589AE1E16E6CB3252A.TMP => Moved successfully.
C:\WINDOWS\System32\Tasks\AutoKMS => Moved successfully.
C:\WINDOWS\system32\Service_KMS.log => Moved successfully.
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\ProgramData\TEMP => ":56E2E879" ADS removed successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 68.8 MB temporary data.


The system needed a reboot.

==== End of Fixlog ====

Re: delay.exe a YTAHelper.exe mi vytěžují procesor

Napsal: 04 říj 2014 08:03
od vyosek
Tak jeste uklidime :James008:

:arrow: T-Cleaner http://vyosek.tym.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|