Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 08-11-2014
Ran by Kuba (administrator) on KUBA-HP on 08-11-2014 12:02:46
Running from C:\Users\Kuba\AppData\Local\Temp
Loaded Profile: Kuba (Available profiles: Kuba)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 9
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\vsserv.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(Advanced Micro Devices) C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\bdagent.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Electronic Arts) C:\Program Files (x86)\Origin\Origin.exe
() C:\Users\Kuba\AppData\Roaming\ACEStream\engine\ace_engine.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender Safebox\safeboxservice.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
() C:\Users\Kuba\AppData\Roaming\ACEStream\updater\ace_update.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Health Check\HPHC_Service.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6602856 2011-01-11] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2480936 2010-12-21] (Synaptics Incorporated)
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [627360 2011-04-13] (Atheros Communications)
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [379552 2011-04-13] (Atheros Commnucations)
HKLM\...\Run: [HPWirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe [363064 2010-07-21] (Hewlett-Packard Company)
HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender\bdagent.exe [1754424 2014-10-08] (Bitdefender)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [112512 2010-03-13] (Microsoft Corporation)
HKLM\...\Run: [AutoKMS] => C:\Windows\AutoKMS.exe [615936 2014-11-03] ()
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-03-04] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [HP Quick Launch] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [586296 2010-11-09] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [656920 2011-02-01] (PDF Complete Inc)
HKLM-x32\...\Run: [HPOSD] => C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [318520 2010-12-13] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKU\S-1-5-21-1617569673-3034970362-4137664275-1002\...\Run: [Bitdefender Wallet Agent] => C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [568400 2014-08-05] (Bitdefender)
HKU\S-1-5-21-1617569673-3034970362-4137664275-1002\...\Run: [Bitdefender Wallet] => C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe [1002048 2014-08-05] (Bitdefender)
HKU\S-1-5-21-1617569673-3034970362-4137664275-1002\...\Run: [Bitdefender Wallet Application Agent] => C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe [615256 2014-08-05] (Bitdefender)
HKU\S-1-5-21-1617569673-3034970362-4137664275-1002\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-1617569673-3034970362-4137664275-1002\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3618648 2014-11-04] (Electronic Arts)
HKU\S-1-5-21-1617569673-3034970362-4137664275-1002\...\Run: [AceStream] => C:\Users\Kuba\AppData\Roaming\ACEStream\engine\ace_engine.exe [23984 2014-10-31] ()
HKU\S-1-5-18\...\Run: [Bitdefender Wallet Agent] => C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [568400 2014-08-05] (Bitdefender)
HKU\S-1-5-18\...\Run: [Bitdefender Wallet] => C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe [1002048 2014-08-05] (Bitdefender)
HKU\S-1-5-18\...\Run: [Bitdefender Wallet Application Agent] => C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe [615256 2014-08-05] (Bitdefender)
ShellIconOverlayIdentifiers: [__SafeBox1] -> {152C96EB-288E-4EDC-B7C6-D21F8250ADF3} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll (Bitdefender)
ShellIconOverlayIdentifiers: [__SafeBox2] -> {342DAA0B-D796-460D-8566-901E08A1CCAD} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll (Bitdefender)
ShellIconOverlayIdentifiers: [__SafeBox3] -> {57595DAE-1AE1-4D97-A49E-67CBB53B52DF} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll (Bitdefender)
ShellIconOverlayIdentifiers: [__SafeBox4] -> {33816773-98AE-4723-ADE0-EBE54C8B5A67} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll (Bitdefender)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {2fa28606-de77-4029-af96-b231e3b8f827} URL =
http://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - {2fa28606-de77-4029-af96-b231e3b8f827} URL =
http://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF
SearchScopes: HKCU - {2fa28606-de77-4029-af96-b231e3b8f827} URL =
http://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF
BHO: Bitdefender Wallet -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender\pmbxie.dll (Bitdefender)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Bitdefender Wallet -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxie.dll (Bitdefender)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.10.1
FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\new_plugin\npjp2.dll No File
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF Plugin HKCU: @acestream.net/acestreamplugin,version=3.0.3 -> C:\Users\Kuba\AppData\Roaming\ACEStream\player\npace_plugin.dll (Innovative Digital Technologies)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Kuba\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF HKLM\...\Thunderbird\Extensions: [
bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\bdtbext
FF Extension: bdToolbar - C:\Program Files\Bitdefender\Bitdefender\bdtbext [2014-10-30]
FF HKLM-x32\...\Firefox\Extensions: [
ffpwdman@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\Antispam32\ffpwdman
FF Extension: Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender\Antispam32\ffpwdman [2014-10-30]
FF HKLM-x32\...\Thunderbird\Extensions: [
bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\bdtbext
Chrome:
=======
CHR HKLM-x32\...\Chrome\Extension: [ccahoghmggldkcdjiebjkidpfongdfbl] - C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxcr.crx [2014-10-30]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [354304 2011-03-04] (Advanced Micro Devices, Inc.) [File not signed]
R2 AMD Reservation Manager; C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe [194496 2010-06-17] (Advanced Micro Devices)
R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [146592 2011-04-13] (Atheros) [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [77984 2011-04-13] (Atheros Commnucations) [File not signed]
S4 BdDesktopParental; C:\Program Files\Bitdefender\Bitdefender\bdparentalservice.exe [77632 2014-08-05] (Bitdefender)
R2 HPAuto; C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe [682040 2011-02-16] (Hewlett-Packard)
R2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [1817088 2010-12-28] (Realsil Microelectronics Inc.) [File not signed]
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1900400 2014-11-04] (Electronic Arts)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1127448 2011-02-01] (PDF Complete Inc)
R2 SafeBox; C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe [94624 2013-07-08] (Bitdefender)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe [67320 2014-08-05] (Bitdefender)
R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender\vsserv.exe [1536624 2014-10-08] (Bitdefender)
S2 XobniService; C:\Program Files (x86)\Xobni\XobniService.exe [62184 2011-02-25] (Xobni Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [1260120 2014-05-16] (BitDefender)
R3 avchv; C:\Windows\System32\DRIVERS\avchv.sys [261056 2012-11-02] (BitDefender)
S3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [647752 2014-05-16] (BitDefender)
R1 BdfNdisf; c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys [93600 2013-11-13] (BitDefender LLC)
R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [103504 2011-11-14] (BitDefender LLC)
S3 bdfwfpf_pc; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys [121928 2013-07-02] (Bitdefender SRL)
S3 BDSandBox; C:\Windows\system32\drivers\bdsandbox.sys [82824 2013-11-04] (BitDefender SRL)
R1 BDVEDISK; C:\Windows\System32\DRIVERS\bdvedisk.sys [76944 2012-04-17] (BitDefender)
R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [150256 2013-08-23] (BitDefender LLC)
S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [419616 2014-07-02] (BitDefender S.R.L.)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-08 11:36 - 2014-11-08 11:36 - 00275040 _____ () C:\Windows\Minidump\110814-29702-01.dmp
2014-11-08 11:36 - 2014-11-08 11:36 - 00000000 ____D () C:\Windows\Minidump
2014-11-08 11:35 - 2014-11-08 11:35 - 239822881 _____ () C:\Windows\MEMORY.DMP
2014-11-08 10:33 - 2014-11-08 20:04 - 00000000 ____D () C:\Users\Kuba\Downloads\NHL 09
2014-11-08 10:32 - 2014-11-08 10:32 - 00110299 _____ () C:\Users\Kuba\Desktop\[CzT]NHL_09_komplet_cesky.torrent
2014-11-08 08:17 - 2014-11-08 08:25 - 00000000 ____D () C:\AdwCleaner
2014-11-07 22:01 - 2014-11-08 20:04 - 00000000 ____D () C:\Program Files (x86)\CrystalDiskInfo
2014-11-07 21:29 - 2014-11-08 12:02 - 00000000 ____D () C:\FRST
2014-11-07 20:40 - 2014-11-07 20:40 - 10348926 _____ () C:\Users\Kuba\Desktop\com.melodis.midomiMusicIdentifier.freemium-6.2.0-APK4Fun.com.apk
2014-11-06 15:14 - 2014-11-06 15:14 - 00787239 _____ () C:\Users\Kuba\Desktop\OptiFine_1.7.2_HD_D3.jar
2014-11-05 21:58 - 2014-11-05 21:58 - 00000000 ____D () C:\Users\Kuba\AppData\Local\Apps\2.0
2014-11-05 17:05 - 2014-11-05 17:18 - 00000000 ____D () C:\Users\Kuba\Downloads\FIXIVMWM300AIO
2014-11-04 21:27 - 2014-11-08 20:33 - 00000000 ____D () C:\Users\Kuba\AppData\Roaming\.ACEStream
2014-11-04 21:27 - 2014-11-04 21:28 - 00000000 ___HD () C:\_acestream_cache_
2014-11-04 21:26 - 2014-11-08 20:34 - 00000000 ____D () C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ace Stream Media
2014-11-04 21:26 - 2014-11-04 21:26 - 00001957 _____ () C:\Users\Kuba\Desktop\Ace Player.lnk
2014-11-04 21:25 - 2014-11-08 20:34 - 00000000 ____D () C:\Users\Kuba\AppData\Roaming\ACEStream
2014-11-04 20:52 - 2014-11-08 20:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SopCast
2014-11-04 20:52 - 2014-11-08 20:33 - 00000000 ____D () C:\Program Files (x86)\SopCast
2014-11-04 20:52 - 2014-11-04 20:52 - 00000995 _____ () C:\Users\Kuba\Desktop\SopCast.lnk
2014-11-04 20:52 - 2014-11-04 20:52 - 00000000 ____D () C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SopCast
2014-11-03 19:51 - 2014-11-03 19:51 - 00615936 _____ () C:\Windows\AutoKMS.exe
2014-11-03 19:51 - 2014-11-03 19:51 - 00000161 _____ () C:\Windows\AutoKMS.ini
2014-11-03 19:42 - 2014-11-08 20:34 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2014-11-03 19:39 - 2014-11-08 20:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2014-11-03 19:39 - 2014-11-08 20:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2014-11-03 19:39 - 2014-11-08 20:33 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2014-11-03 19:38 - 2014-11-08 20:33 - 00000000 ____D () C:\Program Files\Microsoft Synchronization Services
2014-11-03 19:37 - 2014-11-08 20:28 - 00000000 ____D () C:\Program Files\Microsoft Sync Framework
2014-11-03 19:37 - 2014-11-08 20:28 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2014-11-03 19:35 - 2014-11-08 20:33 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 8
2014-11-03 19:33 - 2014-11-08 20:34 - 00000000 ____D () C:\Windows\SHELLNEW
2014-11-03 19:33 - 2014-11-08 20:27 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-11-03 19:33 - 2014-11-08 20:27 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2014-11-03 19:33 - 2014-11-08 20:25 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2014-11-03 19:33 - 2014-11-03 19:44 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-11-03 19:33 - 2014-11-03 19:33 - 00000000 ____D () C:\Users\Kuba\AppData\Local\Microsoft Help
2014-11-03 19:32 - 2014-11-08 20:23 - 00000000 __RHD () C:\MSOCache
2014-11-03 19:07 - 2014-11-08 20:30 - 00000000 ____D () C:\Users\Kuba\Downloads\Office 2010 CZ 32 bit, 64 bit
2014-11-02 21:00 - 2014-11-03 21:43 - 05560827 _____ () C:\Users\Kuba\Desktop\šablonafrosty.psd
2014-11-02 20:54 - 2014-11-04 20:19 - 10374371 _____ () C:\Users\Kuba\Desktop\sestava pro ATL – obnovený – obnovený1.psd
2014-11-02 20:51 - 2014-11-02 20:51 - 00000132 _____ () C:\Users\Kuba\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2014-11-02 10:34 - 2014-11-02 10:34 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-11-02 10:09 - 2014-11-08 20:33 - 00000000 ____D () C:\Users\Kuba\AppData\Local\Unity
2014-11-02 09:28 - 2014-11-08 20:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2014-11-02 09:28 - 2014-11-02 09:28 - 00000983 _____ () C:\Users\Public\Desktop\Origin.lnk
2014-11-01 20:16 - 2014-11-01 20:16 - 00001211 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS6.lnk
2014-11-01 20:15 - 2014-11-01 20:15 - 00001173 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS6.lnk
2014-11-01 20:15 - 2014-11-01 20:15 - 00001037 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS6 (64bit).lnk
2014-11-01 20:13 - 2014-11-01 20:13 - 00001523 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ExtendScript Toolkit CS6.lnk
2014-11-01 20:13 - 2014-11-01 20:13 - 00001357 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CS6.lnk
2014-11-01 19:58 - 2014-11-08 20:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-11-01 19:42 - 2014-11-08 20:34 - 00000000 ____D () C:\Users\Kuba\Downloads\Adobe Photoshop CS6 13.0 Final CZ
2014-11-01 19:35 - 2014-11-01 19:35 - 00703151 _____ () C:\ProgramData\1414866462.bdinstall.bin
2014-11-01 19:35 - 2014-11-01 19:35 - 00000385 _____ () C:\Windows\system32\user_gensett.xml
2014-11-01 19:34 - 2014-11-08 20:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender
2014-11-01 19:34 - 2014-11-01 19:34 - 00002071 _____ () C:\Users\Public\Desktop\Bitdefender Total Security.lnk
2014-11-01 19:34 - 2014-11-01 19:34 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_avchv_01009.Wdf
2014-11-01 19:34 - 2014-05-16 13:04 - 00647752 _____ (BitDefender) C:\Windows\system32\Drivers\avckf.sys
2014-11-01 19:34 - 2014-05-16 13:01 - 01260120 _____ (BitDefender) C:\Windows\system32\Drivers\avc3.sys
2014-11-01 19:34 - 2013-11-13 15:41 - 00093600 _____ (BitDefender LLC) C:\Windows\system32\Drivers\BdfNdisf6.sys
2014-11-01 19:34 - 2013-11-04 15:47 - 00082824 _____ (BitDefender SRL) C:\Windows\system32\Drivers\bdsandbox.sys
2014-11-01 19:34 - 2013-11-04 15:47 - 00074512 _____ (BitDefender SRL) C:\Windows\SysWOW64\bdsandboxuiskin32.dll
2014-11-01 19:34 - 2012-11-02 13:17 - 00261056 _____ (BitDefender) C:\Windows\system32\Drivers\avchv.sys
2014-11-01 19:34 - 2012-04-17 14:34 - 00076944 _____ (BitDefender) C:\Windows\system32\Drivers\bdvedisk.sys
2014-11-01 19:34 - 2007-04-11 11:11 - 00511328 _____ (Microsoft Corporation) C:\Windows\capicom.dll
2014-11-01 19:32 - 2014-11-01 19:34 - 00253404 ____H () C:\bdr-ld01
2014-11-01 19:32 - 2014-11-01 19:34 - 00009216 ____H () C:\bdr-ld01.mbr
2014-11-01 19:32 - 2013-09-24 16:38 - 46879860 ____H () C:\bdr-im01.gz
2014-11-01 19:32 - 2013-08-13 13:38 - 03271472 ____H () C:\bdr-bz01
2014-11-01 19:27 - 2014-11-01 20:04 - 00074512 _____ (BitDefender SRL) C:\Windows\system32\bdsandboxuiskin32.dll
2014-11-01 19:27 - 2014-07-02 16:47 - 00419616 _____ (BitDefender S.R.L.) C:\Windows\system32\Drivers\trufos.sys
2014-11-01 19:27 - 2013-11-04 15:47 - 00084848 _____ (BitDefender SRL) C:\Windows\system32\BDSandBoxUISkin.dll
2014-11-01 19:27 - 2013-11-04 15:46 - 00034384 _____ (BitDefender SRL) C:\Windows\system32\BDSandBoxUH.dll
2014-11-01 19:27 - 2013-08-23 12:48 - 00150256 _____ (BitDefender LLC) C:\Windows\system32\Drivers\gzflt.sys
2014-11-01 19:13 - 2014-11-01 19:12 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-11-01 19:12 - 2014-11-08 20:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-11-01 19:07 - 2014-11-08 20:34 - 00000000 ____D () C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft
2014-11-01 19:07 - 2014-11-08 20:29 - 00000000 ____D () C:\Users\Kuba\AppData\Roaming\.minecraft
2014-11-01 19:07 - 2014-11-01 19:07 - 00002118 _____ () C:\Users\Kuba\Desktop\Minecraft.lnk
2014-11-01 19:04 - 2014-11-08 20:34 - 00000000 ____D () C:\Users\Kuba\Downloads\Minecraft 1.7.9 by TeamExtremeMc.com
2014-11-01 19:03 - 2014-11-01 19:03 - 00000000 ____D () C:\Users\Kuba\Downloads\Minecraft (ALL VERSIONS) Cracked Launcher [AUTO-UPDATES]
2014-11-01 18:58 - 2014-11-08 20:34 - 00000000 ____D () C:\Users\Kuba\AppData\Roaming\BANDISOFT
2014-11-01 18:58 - 2014-11-01 18:58 - 00000000 ____D () C:\Users\Kuba\Documents\Bandicam
2014-11-01 18:57 - 2014-11-08 20:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bandicam
2014-11-01 18:57 - 2014-11-08 20:33 - 00000000 ____D () C:\Program Files (x86)\BandiMPEG1
2014-11-01 18:57 - 2014-11-08 20:33 - 00000000 ____D () C:\Program Files (x86)\Bandicam
2014-11-01 18:57 - 2014-11-01 18:57 - 00000992 _____ () C:\Users\Kuba\Desktop\Bandicam.lnk
2014-11-01 18:48 - 2014-11-01 18:48 - 00000927 _____ () C:\Users\Kuba\Desktop\µTorrent.lnk
2014-11-01 18:47 - 2014-11-01 18:47 - 00003578 _____ () C:\Windows\System32\Tasks\Maxthon Update
2014-11-01 18:47 - 2014-11-01 18:47 - 00001085 _____ () C:\Users\Public\Desktop\Maxthon Cloud Browser.lnk
2014-11-01 18:45 - 2014-11-08 11:44 - 00003962 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{C1F0F61D-949C-4D56-9582-52542037A58D}
2014-11-01 18:44 - 2014-11-01 18:44 - 00001427 _____ () C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-11-01 18:44 - 2014-11-01 18:44 - 00001393 _____ () C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2014-11-01 18:43 - 2014-11-01 18:43 - 00003512 _____ () C:\Windows\System32\Tasks\Registration
2014-11-01 17:21 - 2014-11-01 17:56 - 00000000 ____D () C:\Users\Kuba\Downloads\Adobe Photoshop CC 14.0 Final Multilanguage
2014-11-01 11:33 - 2014-11-08 20:33 - 00000000 ____D () C:\Users\Kuba\AppData\Local\WinZip
2014-11-01 08:35 - 2014-11-08 20:34 - 00000000 ____D () C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent
2014-11-01 08:25 - 2014-11-08 20:29 - 00000000 ____D () C:\Users\Kuba\AppData\Local\RemEngine
2014-11-01 08:24 - 2014-11-08 20:28 - 00000000 ____D () C:\Users\Kuba\AppData\Local\Hewlett-Packard_Company
2014-11-01 08:01 - 2014-11-08 20:25 - 00000000 ____D () C:\Program Files (x86)\Origin Games
2014-11-01 08:00 - 2014-11-06 14:12 - 00000000 ____D () C:\Users\Kuba\AppData\Roaming\Origin
2014-11-01 07:58 - 2014-11-01 08:01 - 00000000 ____D () C:\Users\Kuba\AppData\Local\Origin
2014-11-01 07:41 - 2014-11-01 08:15 - 2887221248 _____ () C:\Users\Kuba\Downloads\Left 4 Dead 2 + DLC Non-Steam (v2.1.0.5).iso
2014-11-01 07:32 - 2014-11-08 11:40 - 00000000 ____D () C:\Program Files (x86)\Origin
2014-11-01 07:32 - 2014-11-08 08:34 - 00000000 ____D () C:\ProgramData\Origin
2014-11-01 07:32 - 2014-11-01 07:32 - 00000000 ____D () C:\ProgramData\Electronic Arts
2014-10-31 19:27 - 2014-10-31 19:27 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe
2014-10-31 19:25 - 2014-11-08 20:26 - 00000000 ____D () C:\Program Files\Adobe
2014-10-31 19:23 - 2014-11-08 20:24 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-10-31 19:21 - 2014-11-08 20:33 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-10-31 19:14 - 2014-11-08 20:29 - 00000000 ____D () C:\Users\Kuba\AppData\Local\Skype
2014-10-31 19:14 - 2014-10-31 19:27 - 00000000 ____D () C:\ProgramData\Adobe
2014-10-31 19:13 - 2014-11-01 20:30 - 00000000 ____D () C:\Users\Kuba\AppData\Local\Adobe
2014-10-31 19:11 - 2014-11-08 20:34 - 00000000 ____D () C:\Users\Kuba\AppData\Roaming\Skype
2014-10-31 18:19 - 2014-10-31 18:19 - 00000000 ____D () C:\Users\Kuba\AppData\Roaming\java
2014-10-31 18:05 - 2014-11-08 20:28 - 00000000 ____D () C:\ProgramData\Oracle
2014-10-30 21:44 - 2014-11-03 16:50 - 00000000 ____D () C:\Users\Kuba\AppData\Local\CrashDumps
2014-10-30 21:29 - 2014-10-30 21:29 - 00000000 ____D () C:\Users\Kuba\AppData\Roaming\WinRAR
2014-10-30 21:07 - 2014-11-06 23:07 - 00000000 ____D () C:\Program Files\WinRAR
2014-10-30 21:06 - 2014-10-30 21:08 - 00000000 ____D () C:\Users\Kuba\Downloads\photoshop
2014-10-30 20:41 - 2014-10-30 20:41 - 00655873 _____ () C:\ProgramData\1414697396.bdinstall.bin
2014-10-30 20:41 - 2014-10-30 20:41 - 00000385 _____ () C:\Users\Kuba\AppData\Roaminguser_gensett.xml
2014-10-30 20:40 - 2014-11-01 19:34 - 00000684 ____H () C:\bdr-cf01
2014-10-30 20:40 - 2014-10-30 20:41 - 00000000 ____D () C:\ProgramData\BDLogging
2014-10-30 20:38 - 2014-10-30 20:41 - 00000000 ____D () C:\Users\Kuba\AppData\Roaming\Bitdefender
2014-10-30 20:30 - 2014-11-08 20:28 - 00000000 ____D () C:\ProgramData\Bitdefender
2014-10-30 20:30 - 2014-11-08 20:26 - 00000000 ____D () C:\Program Files\Bitdefender
2014-10-30 20:29 - 2014-11-08 20:27 - 00000000 ____D () C:\Program Files\Common Files\Bitdefender
2014-10-30 20:29 - 2014-10-30 20:29 - 00000000 ____D () C:\Users\Kuba\AppData\Roaming\QuickScan
2014-10-30 18:41 - 2014-11-08 20:34 - 00000000 ____D () C:\Users\Kuba\Downloads\Minecraft 1.7.2 by TeamExtremeMc.com
2014-10-30 18:08 - 2014-11-08 20:34 - 00000000 ____D () C:\Users\Kuba\Downloads\Bitdefender Total Security 2014 x32 & x64
2014-10-30 18:07 - 2014-11-08 20:34 - 00000000 ____D () C:\Users\Kuba\AppData\Roaming\uTorrent
2014-10-30 18:06 - 2014-10-30 18:06 - 00000000 ____D () C:\Users\Kuba\AppData\Roaming\Macromedia
2014-10-30 18:04 - 2014-11-08 20:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maxthon Cloud Browser
2014-10-30 18:04 - 2014-11-08 20:29 - 00000000 ____D () C:\Users\Kuba\AppData\Roaming\Maxthon3
2014-10-30 18:04 - 2014-11-08 20:25 - 00000000 ____D () C:\Program Files (x86)\Maxthon
2014-10-30 18:03 - 2014-11-08 20:34 - 00000000 ____D () C:\Users\Kuba\AppData\Roaming\Adobe
2014-10-30 18:03 - 2014-10-30 18:03 - 00000000 ____D () C:\Users\Kuba\AppData\Roaming\ATI
2014-10-30 18:03 - 2014-10-30 18:03 - 00000000 ____D () C:\Users\Kuba\AppData\Local\ATI
2014-10-30 18:03 - 2014-10-30 18:03 - 00000000 ____D () C:\Users\Kuba\AppData\Local\AMD
2014-10-30 18:02 - 2014-11-08 11:40 - 00000000 ____D () C:\Users\Kuba\Documents\Bluetooth Folder
2014-10-30 18:02 - 2014-10-30 18:02 - 00000000 ____D () C:\Users\Kuba\AppData\Roaming\Synaptics
2014-10-30 18:02 - 2014-10-30 18:02 - 00000000 ____D () C:\Users\Kuba\AppData\Local\PDFC
2014-10-30 18:02 - 2014-10-30 18:02 - 00000000 ____D () C:\Users\Kuba\AppData\Local\BMExplorer
2014-10-30 18:01 - 2014-10-30 18:01 - 00000000 ____D () C:\Users\Kuba\AppData\Roaming\hpqlog
2014-10-30 18:01 - 2014-10-30 18:01 - 00000000 ____D () C:\Users\Kuba\AppData\Local\VirtualStore
2014-10-30 18:00 - 2014-11-03 19:49 - 00109224 _____ () C:\Users\Kuba\AppData\Local\GDIPFONTCACHEV1.DAT
2014-10-30 17:59 - 2014-11-08 20:28 - 00000000 ____D () C:\Users\Kuba\AppData\Local\Hewlett-Packard
2014-10-30 17:59 - 2014-10-30 17:59 - 00000000 ____D () C:\Users\Kuba\AppData\Roaming\Hewlett-Packard
2014-10-30 17:58 - 2014-11-08 20:33 - 00000000 ____D () C:\Program Files (x86)\WinZip
2014-10-30 17:58 - 2014-10-30 17:58 - 00000000 ____D () C:\ProgramData\WinZip
2014-10-30 17:58 - 2014-10-30 17:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2014-10-30 17:57 - 2014-11-08 11:36 - 00000000 ____D () C:\Users\Kuba
2014-10-30 17:57 - 2014-10-30 17:57 - 00000020 ___SH () C:\Users\Kuba\ntuser.ini
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Public\Documents\Obrázky
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Public\Documents\Hudba
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Public\Documents\Filmy
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Kuba\Šablony
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Kuba\Soubory cookie
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Kuba\Poslední
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Kuba\Okolní tiskárny
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Kuba\Okolní síť
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Kuba\Nabídka Start
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Kuba\Dokumenty
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Kuba\Documents\Obrázky
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Kuba\Documents\Hudba
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Kuba\Documents\Filmy
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Kuba\Data aplikací
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Kuba\AppData\Local\Data aplikací
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Default\Šablony
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Default\Soubory cookie
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Default\Poslední
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Default\Okolní tiskárny
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Default\Okolní síť
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Default\Nabídka Start
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Default\Dokumenty
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Default\Documents\Obrázky
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Default\Documents\Hudba
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Default\Documents\Filmy
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Default\Data aplikací
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Data aplikací
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\ProgramData\Šablony
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\ProgramData\Plocha
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\ProgramData\Oblíbené položky
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\ProgramData\Nabídka Start
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\ProgramData\Dokumenty
2014-10-30 17:57 - 2014-10-30 17:57 - 00000000 _SHDL () C:\ProgramData\Data aplikací
2014-10-30 17:57 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-10-30 17:57 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-08 20:34 - 2011-08-03 10:53 - 00000000 ____D () C:\Windows\System32\Tasks\Hewlett-Packard
2014-11-08 20:34 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Sidebar
2014-11-08 20:34 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2014-11-08 20:34 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Defender
2014-11-08 20:34 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\DVD Maker
2014-11-08 20:34 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Public\Libraries
2014-11-08 20:34 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\com
2014-11-08 20:34 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Speech
2014-11-08 20:34 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Setup
2014-11-08 20:34 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\com
2014-11-08 20:34 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\AdvancedInstallers
2014-11-08 20:34 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\servicing
2014-11-08 20:34 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\AppCompat
2014-11-08 20:33 - 2011-09-28 16:43 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Internet Security
2014-11-08 20:33 - 2011-09-28 16:30 - 00000000 ____D () C:\Program Files (x86)\Bluetooth Suite
2014-11-08 20:33 - 2011-09-28 16:28 - 00000000 ____D () C:\ProgramData\Atheros
2014-11-08 20:33 - 2011-08-03 10:47 - 00000000 ____D () C:\Program Files (x86)\Xobni
2014-11-08 20:33 - 2011-08-03 10:44 - 00000000 ____D () C:\Program Files (x86)\Windows Live
2014-11-08 20:33 - 2011-08-03 10:43 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Online Services
2014-11-08 20:33 - 2011-08-03 10:43 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-11-08 20:33 - 2011-08-03 10:43 - 00000000 ____D () C:\ProgramData\Skype
2014-11-08 20:33 - 2011-08-03 10:43 - 00000000 ____D () C:\ProgramData\Hewlett-Packard
2014-11-08 20:33 - 2011-08-03 10:42 - 00000000 ____D () C:\Program Files (x86)\PDF Complete
2014-11-08 20:33 - 2011-08-03 10:28 - 00000000 ____D () C:\Program Files (x86)\HP Games
2014-11-08 20:33 - 2011-08-03 10:27 - 00000000 ___RD () C:\Program Files (x86)\Online Services
2014-11-08 20:33 - 2011-08-03 10:27 - 00000000 ____D () C:\ProgramData\WildTangent
2014-11-08 20:33 - 2011-08-03 10:24 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard
2014-11-08 20:33 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Sidebar
2014-11-08 20:33 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2014-11-08 20:33 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\System
2014-11-08 20:33 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2014-11-08 20:32 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration
2014-11-08 20:28 - 2011-02-10 20:23 - 00000000 ____D () C:\SWSetup
2014-11-08 20:25 - 2011-08-03 10:41 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-11-08 20:24 - 2011-08-03 10:49 - 00000000 ____D () C:\Program Files (x86)\Java
2014-11-08 20:17 - 2011-09-29 02:14 - 00000000 ___RD () C:\Users\Public\Recorded TV
2014-11-08 20:14 - 2011-08-03 10:50 - 00000000 ____D () C:\Program Files\Java
2014-11-08 11:44 - 2009-07-14 05:45 - 00031856 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-08 11:44 - 2009-07-14 05:45 - 00031856 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-08 11:42 - 2011-08-03 19:29 - 00622660 _____ () C:\Windows\system32\perfh005.dat
2014-11-08 11:42 - 2011-08-03 19:29 - 00118810 _____ () C:\Windows\system32\perfc005.dat
2014-11-08 11:42 - 2009-07-14 06:13 - 01445734 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-08 11:37 - 2011-08-03 10:42 - 00000000 ____D () C:\ProgramData\PDFC
2014-11-08 11:36 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-08 11:36 - 2009-07-14 05:51 - 00046879 _____ () C:\Windows\setupact.log
2014-11-05 16:25 - 2011-09-28 16:20 - 00116033 _____ () C:\Windows\WindowsUpdate.log
2014-11-03 21:45 - 2009-07-14 05:45 - 05036648 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-11-03 21:44 - 2010-11-21 04:47 - 00031060 _____ () C:\Windows\PFRO.log
2014-11-03 19:34 - 2009-07-14 03:34 - 00000478 _____ () C:\Windows\win.ini
2014-11-01 19:17 - 2011-09-28 16:43 - 00000000 ____D () C:\ProgramData\Norton
2014-11-01 19:12 - 2011-08-03 10:50 - 00272296 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-11-01 19:12 - 2011-08-03 10:50 - 00176552 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-11-01 19:12 - 2011-08-03 10:50 - 00176552 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-10-31 02:49 - 2009-07-14 06:38 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG
2014-10-31 02:49 - 2009-07-14 06:32 - 00028672 _____ () C:\Windows\system32\config\BCD-Template
2014-10-30 17:58 - 2011-02-10 20:23 - 00000000 ___HD () C:\SYSTEM.SAV
2014-10-30 17:58 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\restore
2014-10-30 17:58 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Recovery
2014-10-30 17:58 - 2007-01-02 02:32 - 00000000 __SHD () C:\Recovery
2014-10-30 17:57 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default
2014-10-30 17:57 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Windows NT
2014-10-30 17:56 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-10-30 16:54 - 2007-01-02 02:25 - 00000000 ____D () C:\Windows\Panther
Some content of TEMP:
====================
C:\Users\Kuba\AppData\Local\Temp\Ace_Stream_Media_3.0.3.exe
C:\Users\Kuba\AppData\Local\Temp\bdcamsetup.exe
C:\Users\Kuba\AppData\Local\Temp\bdfilters.dll
C:\Users\Kuba\AppData\Local\Temp\chromeinstall-8u25.exe
C:\Users\Kuba\AppData\Local\Temp\FRST64.exe
C:\Users\Kuba\AppData\Local\Temp\hijackthis.exe
C:\Users\Kuba\AppData\Local\Temp\Norton_Removal_Tool.exe
C:\Users\Kuba\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Kuba\AppData\Local\Temp\Uninstall.exe
C:\Users\Kuba\AppData\Local\Temp\UnityWebPlayer.exe
C:\Users\Kuba\AppData\Local\Temp\uTorrent221.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-11-08 11:58
==================== End Of Log ============================
+ Zasekl se mi prohlížeč a musel jsem natvrdo vypnout ntb a pak po restartu ve složce jsem našel soubor -
http://leteckaposta.cz/265909288