Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Zpomalený notebook, pomalý prohlížeč, občas zamrzne

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
OndraVas
Návštěvník
Návštěvník
Příspěvky: 47
Registrován: 20 pro 2014 13:40

Zpomalený notebook, pomalý prohlížeč, občas zamrzne

#1 Příspěvek od OndraVas »

Ahoj, mohli byste se mi prosím na to podívat?:)
Log z FRST:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 20-12-2014
Ran by Ondra (administrator) on ONDRA-PC on 20-12-2014 13:51:15
Running from C:\Users\Ondra\Desktop
Loaded Profile: Ondra (Available profiles: Ondra)
Platform: Microsoft® Windows Vista™ Business Service Pack 2 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 9
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Hewlett-Packard) C:\Program Files\Hewlett-Packard\File Sanitizer\HPFSService.exe
(SafeBoot International) C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe
(ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe
(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe
(Hewlett-Packard Corporation) C:\Windows\System32\hpservice.exe
(Logitech, Inc.) C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\accoca.exe
(Andrea Electronics Corporation) C:\Windows\System32\AEADISRV.EXE
(Agere Systems) C:\Windows\System32\agrsmsvc.exe
(Hewlett-Packard Development Company, L.P) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe
(ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\acevents.exe
(InterVideo) C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
(PDF Complete Inc) C:\Program Files\PDF Complete\pdfsvc.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
(Microsoft Corporation) C:\Windows\System32\mobsync.exe
(Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\asghost.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\pthosttr.exe
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
( Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Logitech Inc.) C:\Program Files\logitech\SetPoint\LBTWiz.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\Core\smax4pnp.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Logitech, Inc.) C:\Program Files\logitech\SetPoint\SetPoint.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
() C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
( Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\VolCtrl.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Service.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Logitech, Inc.) C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Opera Software) C:\Program Files\Opera\opera.exe
(Microsoft Corporation) C:\Windows\System32\conime.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [StartCCC] => c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [61440 2008-01-21] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [accrdsub] => c:\Program Files\ActivIdentity\ActivClient\accrdsub.exe [293168 2007-05-16] (ActivIdentity)
HKLM\...\Run: [PTHOSTTR] => c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE [238984 2008-06-02] (Hewlett-Packard Development Company, L.P.)
HKLM\...\Run: [CognizanceTS] => rundll32.exe c:\PROGRA~1\HEWLET~1\IAM\Bin\ASTSVCC.dll,RegisterModule
HKLM\...\Run: [PDF Complete] => C:\Program Files\PDF Complete\pdfsty.exe [318488 2008-05-12] (PDF Complete Inc)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1045800 2008-03-27] (Synaptics, Inc.)
HKLM\...\Run: [hpWirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [488752 2008-04-15] (Hewlett-Packard Development Company, L.P.)
HKLM\...\Run: [HP Health Check Scheduler] => c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe [70912 2008-04-15] (Hewlett-Packard)
HKLM\...\Run: [QlbCtrl.exe] => C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [177456 2008-05-14] ( Hewlett-Packard Development Company, L.P.)
HKLM\...\Run: [SoundMAX] => C:\Program Files\Analog Devices\SoundMAX\soundmax.exe [3842048 2008-03-19] (Analog Devices, Inc.)
HKLM\...\Run: [Bluetooth Connection Assistant] => LBTWIZ.EXE -silent
HKLM\...\Run: [Kernel and Hardware Abstraction Layer] => C:\windows\KHALMNPR.EXE [76304 2008-02-29] (Logitech, Inc.)
HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM\...\Run: [SoundMAXPnP] => C:\Program Files\Analog Devices\Core\smax4pnp.exe [1314816 2008-04-04] (Analog Devices, Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-07-31] (AVAST Software)
HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
AppInit_DLLs: APSHook.dll => C:\windows\system32\APSHook.dll [76048 2008-03-25] (Bioscrypt Inc.)
Lsa: [Notification Packages] scecli ASWLNPkg
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Logitech SetPoint.lnk
ShortcutTarget: Logitech SetPoint.lnk -> C:\Program Files\logitech\SetPoint\SetPoint.exe (Logitech, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE= ... ll&pf=cmnb
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE= ... ll&pf=cmnb
HKU\S-1-5-21-2319226969-1122203107-1309984348-1004\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.centrum.cz/#utm_source=icq&u ... um=centrum
HKU\S-1-5-21-2319226969-1122203107-1309984348-1004\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE= ... ll&pf=cmnb
HKU\S-1-5-21-2319226969-1122203107-1309984348-1004\Software\Microsoft\Internet Explorer\Main,ICQ Search = http://search.icq.com/search/results.ph ... &ch_id=osd
URLSearchHook: HKLM - Default Value = {855F3B16-6D32-4fe6-8A56-BBB695989046}
URLSearchHook: HKLM - (No Name) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - No File
URLSearchHook: HKU\S-1-5-21-2319226969-1122203107-1309984348-1004 - (No Name) - {EEE6C35D-6118-11DC-9C72-001320C79847} - No File
SearchScopes: HKLM -> {41BE54D5-4ABD-4E9A-A9E6-8C4804E0FFDF} URL = http://slirsredirect.search.aol.com/sli ... bie7-cs-cz
SearchScopes: HKLM -> {EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C} URL = http://slirsredirect.search.aol.com/sli ... 0winampie7
SearchScopes: HKU\S-1-5-21-2319226969-1122203107-1309984348-1004 -> {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL = http://websearch.ask.com/redirect?clien ... 51488DEA62
SearchScopes: HKU\S-1-5-21-2319226969-1122203107-1309984348-1004 -> {41BE54D5-4ABD-4E9A-A9E6-8C4804E0FFDF} URL = http://slirsredirect.search.aol.com/sli ... bie7-cs-cz
SearchScopes: HKU\S-1-5-21-2319226969-1122203107-1309984348-1004 -> {6552C7DD-90A4-4387-B795-F8F96747DE19} URL = http://search.icq.com/search/results.ph ... &ch_id=osd
SearchScopes: HKU\S-1-5-21-2319226969-1122203107-1309984348-1004 -> {EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C} URL = http://slirsredirect.search.aol.com/sli ... 0winampie7
BHO: No Name -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> No File
BHO: BHO_Startup Class -> {3134413B-49B4-425C-98A5-893C1F195601} -> C:\Program Files\Hewlett-Packard\File Sanitizer\IEBHO.dll No File
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Credential Manager for HP ProtectTools -> {DF21F1DB-80C6-11D3-9483-B03D0EC10000} -> c:\Program Files\Hewlett-Packard\IAM\Bin\ItIEAddIn.dll (Bioscrypt Inc.)
Toolbar: HKLM - No Name - {0BF43445-2F28-4351-9252-17FE6E806AA0} - No File
Toolbar: HKU\S-1-5-21-2319226969-1122203107-1309984348-1004 -> No Name - {EEE6C35B-6118-11DC-9C72-001320C79847} - No File
Toolbar: HKU\S-1-5-21-2319226969-1122203107-1309984348-1004 -> No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/fl ... rashim.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog5 02 C:\windows\system32\napinsp.dll [50176] (Společnost Microsoft)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default
FF DefaultSearchUrl: hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.3.1&q=
FF SearchEngineOrder.1: Ask.com
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.seznam.cz/
FF Keyword.URL: hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.5.3&q=
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF32_15_0_0_246.dll ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @nullsoft.com/winampDetector;version=1 -> C:\Program Files\Winamp Detect\npwachk.dll (Nullsoft, Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF user.js: detected! => C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\user.js
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\askcom.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-1.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-10.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-11.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-12.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-13.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-14.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-15.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-16.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-17.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-18.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-19.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-2.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-20.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-21.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-22.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-23.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-24.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-25.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-26.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-27.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-28.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-29.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-3.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-30.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-31.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-32.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-33.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-34.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-35.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-36.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-37.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-38.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-39.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-4.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-40.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-41.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-42.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-43.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-44.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-45.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-46.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-47.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-48.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-49.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-5.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-50.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-51.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-6.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-7.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-8.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-9.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin.gif
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin.src
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin.xml
FF Extension: Centrum doménový pomocník - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\Extensions\centrumpomocnik@centrum.cz [2011-12-18]
FF Extension: Microsoft .NET Framework Assistant - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-06-29]
FF Extension: facebookvideo - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\Extensions\{43c35458-c907-439b-bcfd-07d373834689} [2010-06-29]
FF Extension: Centrum.cz nastavení - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} [2011-12-18]
FF Extension: Adblock Plus - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-11-04]
FF Extension: No Name - C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} [2014-12-01]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-02-28]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-10-07]
FF HKU\S-1-5-21-2319226969-1122203107-1309984348-1004\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
FF Extension: No Name - wrc@avast.com [Not Found]

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [bopakagnckmlgajfccecajhnimjiiedh] - No Path
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-29]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 accoca; c:\Program Files\ActivIdentity\ActivClient\accoca.exe [182576 2007-05-16] (ActivIdentity)
R2 ASBroker; c:\Program Files\Hewlett-Packard\IAM\Bin\ASWLNPkg.dll [111888 2008-05-21] (Bioscrypt Inc.)
R2 ASChannel; c:\Program Files\Hewlett-Packard\IAM\Bin\AsChnl.dll [137488 2008-05-21] (Bioscrypt Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-29] (AVAST Software)
R2 HP Health Check Service; c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [94208 2008-04-15] (Hewlett-Packard) [File not signed]
R2 HP ProtectTools Service; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe [18944 2008-06-02] (Hewlett-Packard Development Company, L.P) [File not signed]
R2 HpFkCryptService; c:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe [256512 2008-05-30] (SafeBoot International)
R2 HPFSService; C:\Program Files\Hewlett-Packard\File Sanitizer\HPFSService.exe [77824 2008-05-14] (Hewlett-Packard) [File not signed]
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [File not signed]
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [43520 2008-02-28] (Hewlett-Packard) [File not signed]
R2 pdfcDispatcher; C:\Program Files\PDF Complete\pdfsvc.exe [576024 2008-05-12] (PDF Complete Inc)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53248 2008-02-28] (Hewlett-Packard) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\windows\system32\drivers\aswHwid.sys [24184 2014-07-29] ()
R2 aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [67824 2014-07-29] (AVAST Software)
R1 AswRdr; C:\windows\system32\drivers\aswRdr.sys [55112 2014-07-29] (AVAST Software)
R0 aswRvrt; C:\windows\system32\Drivers\aswRvrt.sys [49944 2014-07-29] ()
R1 aswSnx; C:\windows\system32\drivers\aswSnx.sys [779536 2014-11-21] (AVAST Software)
R1 aswSP; C:\windows\system32\drivers\aswSP.sys [414520 2014-07-29] (AVAST Software)
R1 aswTdi; C:\windows\system32\drivers\aswTdi.sys [57800 2014-07-29] (AVAST Software)
R0 aswVmm; C:\windows\system32\Drivers\aswVmm.sys [192352 2014-07-29] ()
R0 FltMgr; C:\windows\System32\drivers\fltmgr.sys [190424 2009-04-11] (Společnost Microsoft)
R3 Ntfs; C:\windows\system32\Drivers\Ntfs.sys [1082232 2013-03-03] (Společnost Microsoft)
R1 RsvLock; C:\windows\system32\Drivers\RsvLock.sys [12496 2008-05-30] (SafeBoot International)
R0 SafeBoot; C:\windows\system32\Drivers\SafeBoot.sys [108752 2008-05-30] () [File not signed]
R0 SbAlg; C:\windows\system32\Drivers\SbAlg.sys [51376 2008-05-30] (SafeBoot N.V.)
R0 SbFsLock; C:\windows\system32\Drivers\SbFsLock.sys [12928 2008-05-30] (SafeBoot International)
R3 SNP2UVC; C:\windows\System32\DRIVERS\snp2uvc.sys [1804160 2008-04-10] ()
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-20 13:51 - 2014-12-20 13:53 - 00026014 _____ () C:\Users\Ondra\Desktop\FRST.txt
2014-12-20 13:50 - 2014-12-20 13:51 - 00000000 ____D () C:\FRST
2014-12-20 13:47 - 2014-12-20 13:47 - 01114112 _____ (Farbar) C:\Users\Ondra\Desktop\FRST.exe
2014-12-10 23:27 - 2014-11-04 01:19 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2014-12-10 23:26 - 2014-11-07 02:33 - 00974848 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2014-12-10 23:07 - 2014-12-03 03:06 - 00278528 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2014-12-10 19:30 - 2014-11-24 21:35 - 01139712 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-12-10 19:30 - 2014-11-24 21:34 - 01427968 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-12-10 19:30 - 2014-11-24 21:34 - 00231936 _____ (Microsoft Corporation) C:\windows\system32\url.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 01802752 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 00717824 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 00607744 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 00421376 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 00065536 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 00041472 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll
2014-12-10 19:30 - 2014-11-24 21:32 - 00353792 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-12-10 19:30 - 2014-11-24 21:32 - 00011776 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe
2014-12-10 19:30 - 2014-11-24 21:32 - 00010752 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe
2014-12-10 19:29 - 2014-11-24 21:44 - 00367104 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2014-12-10 19:29 - 2014-11-24 21:41 - 12369920 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-12-10 19:29 - 2014-11-24 21:40 - 01810944 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-12-10 19:29 - 2014-11-24 21:37 - 09740800 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-12-10 19:29 - 2014-11-24 21:35 - 01129472 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-12-10 19:29 - 2014-11-24 21:33 - 00142848 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-12-10 19:29 - 2014-11-24 21:32 - 02382848 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-12-10 19:29 - 2014-11-24 21:32 - 00223232 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-12-10 19:29 - 2014-11-24 21:32 - 00176640 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-12-10 19:29 - 2014-11-24 21:32 - 00073216 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-12-01 21:04 - 2014-12-01 21:05 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-11-21 21:59 - 2014-11-21 21:59 - 00000000 ____D () C:\Program Files\Marvell
2014-11-21 21:56 - 2014-11-21 22:00 - 00333352 _____ () C:\windows\ydi.log
2014-11-21 21:56 - 2014-11-21 22:00 - 00000415 ____R () C:\windows\YukonInstall.log
2014-11-21 21:54 - 2014-11-21 21:55 - 04010816 _____ (Hewlett-Packard Company ) C:\Users\Ondra\Desktop\sp44780.exe
2014-11-21 16:54 - 2014-11-21 16:54 - 00000000 ____D () C:\Program Files\Cisco
2014-11-20 17:19 - 2014-10-24 02:03 - 00499200 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2014-11-20 17:13 - 2014-11-21 16:52 - 00006656 _____ () C:\windows\system32\bcmwlrc.dll
2014-11-20 17:13 - 2014-11-20 17:13 - 00012022 _____ () C:\windows\bcm9582.tmp
2014-11-20 17:13 - 2014-11-20 17:13 - 00000000 ____D () C:\Users\Ondra\{97c3743f-fa48-414d-a734-e5967e69d84f}
2014-11-20 17:13 - 2014-11-20 17:13 - 00000000 ____D () C:\Program Files\Broadcom
2014-11-20 17:13 - 2014-11-20 17:12 - 03555328 _____ (Broadcom Corporation) C:\windows\system32\bcmihvui.dll
2014-11-20 17:13 - 2014-11-20 17:12 - 02661368 _____ (Broadcom Corporation) C:\windows\system32\Drivers\BCMWL6.SYS

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-20 13:46 - 2006-11-02 13:47 - 00003216 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-20 13:46 - 2006-11-02 13:47 - 00003216 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-20 13:39 - 2012-11-21 10:14 - 00000914 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-12-20 13:34 - 2008-09-10 21:10 - 01139025 _____ () C:\windows\WindowsUpdate.log
2014-12-20 12:05 - 2008-04-17 18:00 - 01640386 _____ () C:\windows\system32\PerfStringBackup.INI
2014-12-20 12:00 - 2008-08-04 11:10 - 00000000 ____D () C:\ProgramData\hpqLog
2014-12-20 12:00 - 2006-11-02 14:01 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-12-19 16:30 - 2006-11-02 14:01 - 00032610 _____ () C:\windows\Tasks\SCHEDLGU.TXT
2014-12-19 16:29 - 2008-09-10 21:10 - 00001076 _____ () C:\windows\bthservsdp.dat
2014-12-15 20:25 - 2008-09-15 19:32 - 00000052 _____ () C:\windows\system32\DOErrors.log
2014-12-15 17:52 - 2014-07-29 21:10 - 00001412 _____ () C:\windows\setupact.log
2014-12-11 19:35 - 2008-09-11 18:05 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\vlc
2014-12-11 16:33 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\rescache
2014-12-10 23:30 - 2008-08-04 11:38 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-12-10 23:22 - 2013-08-14 22:58 - 00000000 ____D () C:\windows\system32\MRT
2014-12-10 23:13 - 2006-11-02 11:24 - 109818608 _____ (Microsoft Corporation) C:\windows\system32\mrt.exe
2014-12-09 21:40 - 2012-11-21 10:14 - 00701104 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerApp.exe
2014-12-09 21:40 - 2011-11-21 21:48 - 00071344 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerCPLApp.cpl
2014-12-07 16:09 - 2008-09-11 16:37 - 00237568 _____ () C:\Users\Ondra\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-12-07 11:44 - 2008-09-11 18:45 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Skype
2014-12-05 17:28 - 2014-07-04 23:56 - 00000000 ____D () C:\Users\Ondra\Desktop\24-9
2014-12-02 20:31 - 2012-05-04 13:16 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-11-21 22:00 - 2008-09-10 12:26 - 00000000 ____D () C:\Users\Ondra
2014-11-21 21:43 - 2013-10-07 14:47 - 00779536 _____ (AVAST Software) C:\windows\system32\Drivers\aswsnx.sys
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\ja-JP
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\it-IT
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\hu-HU
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\hr-HR
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\he-IL
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\fr-FR
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\fi-FI
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\et-EE
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\el-GR
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\zh-TW
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\zh-HK
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\zh-CN
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\tr-TR
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\th-TH
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\sv-SE
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\sl-SI
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\sk-SK
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\ru-RU
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\ro-RO
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\pt-PT
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\pt-BR
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\pl-PL
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\nl-NL
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\nb-NO
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\lv-LV
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\lt-LT
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\ko-KR
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\de-DE
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\bg-BG
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\ar-SA
2014-11-20 17:12 - 2008-03-21 19:35 - 03866624 _____ (Broadcom Corporation) C:\windows\system32\bcmihvsrv.dll
2014-11-20 17:12 - 2008-03-21 19:35 - 00091376 _____ (Broadcom Corporation) C:\windows\system32\bcmwlcoi.dll

Files to move or delete:
====================
C:\ProgramData\atrjl1h.ctrl
C:\ProgramData\atrjl1h.pff
C:\Users\Ondra\infium9020pack.exe
C:\Users\Ondra\infium9022pack.exe
C:\Users\Ondra\install_flash_player.exe
C:\Users\Ondra\jre-6u13-windows-i586-p.exe
C:\Users\Ondra\Nero-9.0.9.4b_trial.exe
C:\Users\Ondra\Opera_1210_int_Setup.exe
C:\Users\Ondra\PictureMergeGeniusEn.exe
C:\Users\Ondra\qip8080.exe
C:\Users\Ondra\QuickTimeInstaller.exe
C:\Users\Ondra\setpoint424bt_v270v470_x64.exe
C:\Users\Ondra\vlc-0.9.8a-win32.exe
C:\Users\Ondra\wmpfirefoxplugin.exe


Some content of TEMP:
====================
C:\Users\Ondra\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Ondra\AppData\Local\Temp\~9453.exe
C:\Users\Ondra\AppData\Local\Temp\~BAE7.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\windows\explorer.exe => File is digitally signed
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-12-20 12:06

==================== End Of Log ============================

Předem děkuju za váš čas:)
Přílohy
Addition.rar
(5.59 KiB) Staženo 30 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119557
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

#2 Příspěvek od Rudy »

Zdravím!
Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://www.stahuj.centrum.cz/utility_a_ ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve >Scan< a potom na >Clean< (smazat)
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

OndraVas
Návštěvník
Návštěvník
Příspěvky: 47
Registrován: 20 pro 2014 13:40

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

#3 Příspěvek od OndraVas »

Log z AdwCleaner :

# AdwCleaner v4.105 - Report created 20/12/2014 at 14:22:40
# Updated 08/12/2014 by Xplode
# Database : 2014-12-16.1 [Live]
# Operating System : Windows Vista (TM) Business Service Pack 2 (32 bits)
# Username : Ondra - ONDRA-PC
# Running from : C:\Users\Ondra\Desktop\adwcleaner_4.105.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\ICQ\ICQToolbar
Folder Deleted : C:\Program Files\AskTBar
Folder Deleted : C:\Program Files\ICQ6Toolbar
Folder Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\Askcom.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin.gif
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin.src
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-1.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-10.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-11.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-12.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-13.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-14.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-15.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-16.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-17.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-18.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-19.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-2.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-20.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-21.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-22.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-23.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-24.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-25.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-3.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-26.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-27.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-28.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-29.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-30.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-31.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-32.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-33.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-34.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-35.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-36.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-37.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-38.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-4.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-5.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-6.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-7.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-8.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-9.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\user.js

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9AFB8248-617F-460D-9366-D71CDEDA3179}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EEE6C35B-6118-11DC-9C72-001320C79847}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{EEE6C35D-6118-11DC-9C72-001320C79847}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{41BE54D5-4ABD-4E9A-A9E6-8C4804E0FFDF}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{41BE54D5-4ABD-4E9A-A9E6-8C4804E0FFDF}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}
Key Deleted : HKCU\Software\YahooPartnerToolbar
Key Deleted : HKLM\SOFTWARE\AskTBar
Key Deleted : HKLM\SOFTWARE\ICQ\ICQToolbar
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}

***** [ Browsers ] *****

-\\ Internet Explorer v9.0.8112.16599

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]

-\\ Mozilla Firefox v34.0 (x86 cs)

[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("browser.search.defaultengine", "Ask.com");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("browser.search.defaulturl", "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.3.1&q=");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("browser.search.order.1", "Ask.com");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("extensions.enabledItems", "{43c35458-c907-439b-bcfd-07d373834689}:2.2.1,{800b5000-a755-47e1-992b-48a1c1357f07}:1.4.1,{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}:6.0.07,{CAFEEFAC-0016-0000-0011-A[...]
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.allowSendURL", false);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.defSearchChange", true);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.engineVerified", true);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.facebookSmilesAddonShowedPopup", true);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.firstTbRun", false);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.geolastmodified", 1410111752);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.history", "3%201%2F4%20to%20cmchris%20reevespearl%20jam%20hear%20the%20sirens%20recenzewordpad%20hledat%20slovo%20v%20textulep%C5%A1%C3%AD%20u%C5%BE%20to%20nebude%20hl%C3[...]
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.hpChange", true);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.icqgeo", 42);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.installTime", "1343243372");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.installsource", "1");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.newtab_most_visited_state", "0");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.newtab_recently_closed_state", "1");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.newtab_state", "1");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.numberOfSearches", 0);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.previousFFVersion", "32.0.1");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.skip_default_search", "no");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.suggestions", false);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.uniqueID", "125035307112503536711250424033738");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.usageStatstTimestamp", 1410639093);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.userEngineApproved", true);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.userHpApproved", true);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.version", "1.5.3");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherHideClicks", 0);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherMoreLinkClicks", 0);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherRedeemClicks", 0);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherWasShown", 0);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.xmlEnableHomePageDsGuard", false);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.xmlEnableSuggestions", false);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.xmlLanguage", "cs");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("keyword.URL", "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.5.3&q=");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("sweetim.toolbar.highlight.colors", "#FFFF00,#00FFE4,#5AFF00,#0087FF,#FFCC00,#FF00F0");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("sweetim.toolbar.logger.ConsoleHandler.MinReportLevel", "7");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("sweetim.toolbar.logger.FileHandler.FileName", "ff-toolbar.log");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("sweetim.toolbar.logger.FileHandler.MaxFileSize", "200000");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("sweetim.toolbar.logger.FileHandler.MinReportLevel", "7");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("sweetim.toolbar.mode.debug", "false");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("sweetim.toolbar.previous.keyword.URL", "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&q=");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("sweetim.toolbar.search.external", "<?xml version=\"1.0\"?><TOOLBAR><EXTERNAL_SEARCH engine=\"hxxp://*google.*\" param=\"q=\" /><EXTERNAL_SEARCH engine=\"hxxp://search.yahoo.com/*\" param=\"[...]
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("sweetim.toolbar.search.history.capacity", "10");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("sweetim.toolbar.simapp_id", "{08764AE1-C2F8-11DE-BA0E-0021866C74D5}");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("sweetim.toolbar.version", "1.0.0.10");

-\\ Opera v0.0.0.0


*************************

AdwCleaner[R0].txt - [12608 octets] - [20/12/2014 14:17:18]
AdwCleaner[S0].txt - [13090 octets] - [20/12/2014 14:22:40]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [13151 octets] ##########

OndraVas
Návštěvník
Návštěvník
Příspěvky: 47
Registrován: 20 pro 2014 13:40

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

#4 Příspěvek od OndraVas »

Tady je nový log z FRST:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 20-12-2014
Ran by Ondra (administrator) on ONDRA-PC on 20-12-2014 15:09:13
Running from C:\Users\Ondra\Desktop
Loaded Profile: Ondra (Available profiles: Ondra)
Platform: Microsoft® Windows Vista™ Business Service Pack 2 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 9
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Hewlett-Packard) C:\Program Files\Hewlett-Packard\File Sanitizer\HPFSService.exe
(SafeBoot International) C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe
(ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe
(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(Hewlett-Packard Corporation) C:\Windows\System32\hpservice.exe
(ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe
(Logitech, Inc.) C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\accoca.exe
(Andrea Electronics Corporation) C:\Windows\System32\AEADISRV.EXE
(Agere Systems) C:\Windows\System32\agrsmsvc.exe
(ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\acevents.exe
(Hewlett-Packard Development Company, L.P) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe
(InterVideo) C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
(PDF Complete Inc) C:\Program Files\PDF Complete\pdfsvc.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
(Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\asghost.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\pthosttr.exe
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
( Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
(Logitech Inc.) C:\Program Files\logitech\SetPoint\LBTWiz.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\Core\smax4pnp.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Logitech, Inc.) C:\Program Files\logitech\SetPoint\SetPoint.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
() C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
( Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\VolCtrl.exe
(Logitech, Inc.) C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Service.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Microsoft Corporation) C:\Windows\System32\conime.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [StartCCC] => c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [61440 2008-01-21] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [accrdsub] => c:\Program Files\ActivIdentity\ActivClient\accrdsub.exe [293168 2007-05-16] (ActivIdentity)
HKLM\...\Run: [PTHOSTTR] => c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE [238984 2008-06-02] (Hewlett-Packard Development Company, L.P.)
HKLM\...\Run: [CognizanceTS] => rundll32.exe c:\PROGRA~1\HEWLET~1\IAM\Bin\ASTSVCC.dll,RegisterModule
HKLM\...\Run: [PDF Complete] => C:\Program Files\PDF Complete\pdfsty.exe [318488 2008-05-12] (PDF Complete Inc)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1045800 2008-03-27] (Synaptics, Inc.)
HKLM\...\Run: [hpWirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [488752 2008-04-15] (Hewlett-Packard Development Company, L.P.)
HKLM\...\Run: [HP Health Check Scheduler] => c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe [70912 2008-04-15] (Hewlett-Packard)
HKLM\...\Run: [QlbCtrl.exe] => C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [177456 2008-05-14] ( Hewlett-Packard Development Company, L.P.)
HKLM\...\Run: [SoundMAX] => C:\Program Files\Analog Devices\SoundMAX\soundmax.exe [3842048 2008-03-19] (Analog Devices, Inc.)
HKLM\...\Run: [Bluetooth Connection Assistant] => LBTWIZ.EXE -silent
HKLM\...\Run: [Kernel and Hardware Abstraction Layer] => C:\windows\KHALMNPR.EXE [76304 2008-02-29] (Logitech, Inc.)
HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM\...\Run: [SoundMAXPnP] => C:\Program Files\Analog Devices\Core\smax4pnp.exe [1314816 2008-04-04] (Analog Devices, Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-07-31] (AVAST Software)
HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
AppInit_DLLs: APSHook.dll => C:\windows\system32\APSHook.dll [76048 2008-03-25] (Bioscrypt Inc.)
Lsa: [Notification Packages] scecli ASWLNPkg
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Logitech SetPoint.lnk
ShortcutTarget: Logitech SetPoint.lnk -> C:\Program Files\logitech\SetPoint\SetPoint.exe (Logitech, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE= ... ll&pf=cmnb
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE= ... ll&pf=cmnb
HKU\S-1-5-21-2319226969-1122203107-1309984348-1004\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.centrum.cz/#utm_source=icq&u ... um=centrum
HKU\S-1-5-21-2319226969-1122203107-1309984348-1004\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE= ... ll&pf=cmnb
URLSearchHook: HKLM - Default Value = {855F3B16-6D32-4fe6-8A56-BBB695989046}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: No Name -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> No File
BHO: BHO_Startup Class -> {3134413B-49B4-425C-98A5-893C1F195601} -> C:\Program Files\Hewlett-Packard\File Sanitizer\IEBHO.dll No File
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Credential Manager for HP ProtectTools -> {DF21F1DB-80C6-11D3-9483-B03D0EC10000} -> c:\Program Files\Hewlett-Packard\IAM\Bin\ItIEAddIn.dll (Bioscrypt Inc.)
Toolbar: HKLM - No Name - {0BF43445-2F28-4351-9252-17FE6E806AA0} - No File
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/fl ... rashim.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog5 02 C:\windows\system32\napinsp.dll [50176] (Společnost Microsoft)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF32_15_0_0_246.dll ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @nullsoft.com/winampDetector;version=1 -> C:\Program Files\Winamp Detect\npwachk.dll (Nullsoft, Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-39.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-40.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-41.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-42.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-43.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-44.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-45.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-46.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-47.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-48.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-49.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-50.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-51.xml
FF Extension: Centrum doménový pomocník - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\Extensions\centrumpomocnik@centrum.cz [2011-12-18]
FF Extension: Microsoft .NET Framework Assistant - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-06-29]
FF Extension: facebookvideo - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\Extensions\{43c35458-c907-439b-bcfd-07d373834689} [2010-06-29]
FF Extension: Adblock Plus - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-11-04]
FF Extension: No Name - C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} [2014-12-01]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-02-28]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-10-07]
FF HKU\S-1-5-21-2319226969-1122203107-1309984348-1004\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
FF Extension: No Name - wrc@avast.com [Not Found]

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [bopakagnckmlgajfccecajhnimjiiedh] - No Path
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-29]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 accoca; c:\Program Files\ActivIdentity\ActivClient\accoca.exe [182576 2007-05-16] (ActivIdentity)
R2 ASBroker; c:\Program Files\Hewlett-Packard\IAM\Bin\ASWLNPkg.dll [111888 2008-05-21] (Bioscrypt Inc.)
R2 ASChannel; c:\Program Files\Hewlett-Packard\IAM\Bin\AsChnl.dll [137488 2008-05-21] (Bioscrypt Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-29] (AVAST Software)
R2 HP Health Check Service; c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [94208 2008-04-15] (Hewlett-Packard) [File not signed]
R2 HP ProtectTools Service; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe [18944 2008-06-02] (Hewlett-Packard Development Company, L.P) [File not signed]
R2 HpFkCryptService; c:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe [256512 2008-05-30] (SafeBoot International)
R2 HPFSService; C:\Program Files\Hewlett-Packard\File Sanitizer\HPFSService.exe [77824 2008-05-14] (Hewlett-Packard) [File not signed]
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [File not signed]
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [43520 2008-02-28] (Hewlett-Packard) [File not signed]
R2 pdfcDispatcher; C:\Program Files\PDF Complete\pdfsvc.exe [576024 2008-05-12] (PDF Complete Inc)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53248 2008-02-28] (Hewlett-Packard) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\windows\system32\drivers\aswHwid.sys [24184 2014-07-29] ()
R2 aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [67824 2014-07-29] (AVAST Software)
R1 AswRdr; C:\windows\system32\drivers\aswRdr.sys [55112 2014-07-29] (AVAST Software)
R0 aswRvrt; C:\windows\system32\Drivers\aswRvrt.sys [49944 2014-07-29] ()
R1 aswSnx; C:\windows\system32\drivers\aswSnx.sys [779536 2014-11-21] (AVAST Software)
R1 aswSP; C:\windows\system32\drivers\aswSP.sys [414520 2014-07-29] (AVAST Software)
R1 aswTdi; C:\windows\system32\drivers\aswTdi.sys [57800 2014-07-29] (AVAST Software)
R0 aswVmm; C:\windows\system32\Drivers\aswVmm.sys [192352 2014-07-29] ()
R0 FltMgr; C:\windows\System32\drivers\fltmgr.sys [190424 2009-04-11] (Společnost Microsoft)
R3 Ntfs; C:\windows\system32\Drivers\Ntfs.sys [1082232 2013-03-03] (Společnost Microsoft)
R1 RsvLock; C:\windows\system32\Drivers\RsvLock.sys [12496 2008-05-30] (SafeBoot International)
R0 SafeBoot; C:\windows\system32\Drivers\SafeBoot.sys [108752 2008-05-30] () [File not signed]
R0 SbAlg; C:\windows\system32\Drivers\SbAlg.sys [51376 2008-05-30] (SafeBoot N.V.)
R0 SbFsLock; C:\windows\system32\Drivers\SbFsLock.sys [12928 2008-05-30] (SafeBoot International)
R3 SNP2UVC; C:\windows\System32\DRIVERS\snp2uvc.sys [1804160 2008-04-10] ()
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-20 14:17 - 2014-12-20 14:22 - 00000000 ____D () C:\AdwCleaner
2014-12-20 14:16 - 2014-12-20 14:16 - 02166272 _____ () C:\Users\Ondra\Desktop\adwcleaner_4.105.exe
2014-12-20 14:01 - 2014-12-20 14:01 - 00005721 _____ () C:\Users\Ondra\Desktop\Addition.rar
2014-12-20 13:54 - 2014-12-20 13:57 - 00019827 _____ () C:\Users\Ondra\Desktop\Addition.txt
2014-12-20 13:51 - 2014-12-20 15:09 - 00018656 _____ () C:\Users\Ondra\Desktop\FRST.txt
2014-12-20 13:50 - 2014-12-20 15:09 - 00000000 ____D () C:\FRST
2014-12-20 13:47 - 2014-12-20 13:47 - 01114112 _____ (Farbar) C:\Users\Ondra\Desktop\FRST.exe
2014-12-10 23:27 - 2014-11-04 01:19 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2014-12-10 23:26 - 2014-11-07 02:33 - 00974848 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2014-12-10 23:07 - 2014-12-03 03:06 - 00278528 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2014-12-10 19:30 - 2014-11-24 21:35 - 01139712 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-12-10 19:30 - 2014-11-24 21:34 - 01427968 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-12-10 19:30 - 2014-11-24 21:34 - 00231936 _____ (Microsoft Corporation) C:\windows\system32\url.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 01802752 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 00717824 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 00607744 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 00421376 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 00065536 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 00041472 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll
2014-12-10 19:30 - 2014-11-24 21:32 - 00353792 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-12-10 19:30 - 2014-11-24 21:32 - 00011776 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe
2014-12-10 19:30 - 2014-11-24 21:32 - 00010752 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe
2014-12-10 19:29 - 2014-11-24 21:44 - 00367104 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2014-12-10 19:29 - 2014-11-24 21:41 - 12369920 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-12-10 19:29 - 2014-11-24 21:40 - 01810944 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-12-10 19:29 - 2014-11-24 21:37 - 09740800 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-12-10 19:29 - 2014-11-24 21:35 - 01129472 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-12-10 19:29 - 2014-11-24 21:33 - 00142848 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-12-10 19:29 - 2014-11-24 21:32 - 02382848 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-12-10 19:29 - 2014-11-24 21:32 - 00223232 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-12-10 19:29 - 2014-11-24 21:32 - 00176640 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-12-10 19:29 - 2014-11-24 21:32 - 00073216 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-12-01 21:04 - 2014-12-01 21:05 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-11-21 21:59 - 2014-11-21 21:59 - 00000000 ____D () C:\Program Files\Marvell
2014-11-21 21:56 - 2014-11-21 22:00 - 00333352 _____ () C:\windows\ydi.log
2014-11-21 21:56 - 2014-11-21 22:00 - 00000415 ____R () C:\windows\YukonInstall.log
2014-11-21 21:54 - 2014-11-21 21:55 - 04010816 _____ (Hewlett-Packard Company ) C:\Users\Ondra\Desktop\sp44780.exe
2014-11-21 16:54 - 2014-11-21 16:54 - 00000000 ____D () C:\Program Files\Cisco
2014-11-20 17:19 - 2014-10-24 02:03 - 00499200 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2014-11-20 17:13 - 2014-11-21 16:52 - 00006656 _____ () C:\windows\system32\bcmwlrc.dll
2014-11-20 17:13 - 2014-11-20 17:13 - 00012022 _____ () C:\windows\bcm9582.tmp
2014-11-20 17:13 - 2014-11-20 17:13 - 00000000 ____D () C:\Users\Ondra\{97c3743f-fa48-414d-a734-e5967e69d84f}
2014-11-20 17:13 - 2014-11-20 17:13 - 00000000 ____D () C:\Program Files\Broadcom
2014-11-20 17:13 - 2014-11-20 17:12 - 03555328 _____ (Broadcom Corporation) C:\windows\system32\bcmihvui.dll
2014-11-20 17:13 - 2014-11-20 17:12 - 02661368 _____ (Broadcom Corporation) C:\windows\system32\Drivers\BCMWL6.SYS

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-20 14:39 - 2012-11-21 10:14 - 00000914 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-12-20 14:38 - 2008-09-10 21:10 - 01146740 _____ () C:\windows\WindowsUpdate.log
2014-12-20 14:33 - 2008-04-17 18:00 - 01640386 _____ () C:\windows\system32\PerfStringBackup.INI
2014-12-20 14:26 - 2008-08-04 11:10 - 00000000 ____D () C:\ProgramData\hpqLog
2014-12-20 14:26 - 2006-11-02 14:01 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-12-20 14:26 - 2006-11-02 13:47 - 00003216 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-20 14:26 - 2006-11-02 13:47 - 00003216 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-20 14:25 - 2014-07-29 21:06 - 00004352 _____ () C:\windows\PFRO.log
2014-12-20 14:23 - 2008-09-10 21:10 - 00001076 _____ () C:\windows\bthservsdp.dat
2014-12-20 14:23 - 2006-11-02 14:01 - 00032610 _____ () C:\windows\Tasks\SCHEDLGU.TXT
2014-12-20 14:22 - 2009-08-16 13:00 - 00000000 ____D () C:\ProgramData\ICQ
2014-12-15 20:25 - 2008-09-15 19:32 - 00000052 _____ () C:\windows\system32\DOErrors.log
2014-12-15 17:52 - 2014-07-29 21:10 - 00001412 _____ () C:\windows\setupact.log
2014-12-11 19:35 - 2008-09-11 18:05 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\vlc
2014-12-11 16:33 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\rescache
2014-12-10 23:30 - 2008-08-04 11:38 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-12-10 23:22 - 2013-08-14 22:58 - 00000000 ____D () C:\windows\system32\MRT
2014-12-10 23:13 - 2006-11-02 11:24 - 109818608 _____ (Microsoft Corporation) C:\windows\system32\mrt.exe
2014-12-09 21:40 - 2012-11-21 10:14 - 00701104 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerApp.exe
2014-12-09 21:40 - 2011-11-21 21:48 - 00071344 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerCPLApp.cpl
2014-12-07 16:09 - 2008-09-11 16:37 - 00237568 _____ () C:\Users\Ondra\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-12-07 11:44 - 2008-09-11 18:45 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Skype
2014-12-05 17:28 - 2014-07-04 23:56 - 00000000 ____D () C:\Users\Ondra\Desktop\24-9
2014-12-02 20:31 - 2012-05-04 13:16 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-11-21 22:00 - 2008-09-10 12:26 - 00000000 ____D () C:\Users\Ondra
2014-11-21 21:43 - 2013-10-07 14:47 - 00779536 _____ (AVAST Software) C:\windows\system32\Drivers\aswsnx.sys
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\ja-JP
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\it-IT
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\hu-HU
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\hr-HR
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\he-IL
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\fr-FR
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\fi-FI
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\et-EE
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\el-GR
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\zh-TW
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\zh-HK
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\zh-CN
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\tr-TR
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\th-TH
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\sv-SE
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\sl-SI
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\sk-SK
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\ru-RU
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\ro-RO
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\pt-PT
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\pt-BR
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\pl-PL
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\nl-NL
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\nb-NO
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\lv-LV
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\lt-LT
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\ko-KR
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\de-DE
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\bg-BG
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\ar-SA
2014-11-20 17:12 - 2008-03-21 19:35 - 03866624 _____ (Broadcom Corporation) C:\windows\system32\bcmihvsrv.dll
2014-11-20 17:12 - 2008-03-21 19:35 - 00091376 _____ (Broadcom Corporation) C:\windows\system32\bcmwlcoi.dll

Files to move or delete:
====================
C:\ProgramData\atrjl1h.ctrl
C:\ProgramData\atrjl1h.pff
C:\Users\Ondra\infium9020pack.exe
C:\Users\Ondra\infium9022pack.exe
C:\Users\Ondra\install_flash_player.exe
C:\Users\Ondra\jre-6u13-windows-i586-p.exe
C:\Users\Ondra\Nero-9.0.9.4b_trial.exe
C:\Users\Ondra\Opera_1210_int_Setup.exe
C:\Users\Ondra\PictureMergeGeniusEn.exe
C:\Users\Ondra\qip8080.exe
C:\Users\Ondra\QuickTimeInstaller.exe
C:\Users\Ondra\setpoint424bt_v270v470_x64.exe
C:\Users\Ondra\vlc-0.9.8a-win32.exe
C:\Users\Ondra\wmpfirefoxplugin.exe


Some content of TEMP:
====================
C:\Users\Ondra\AppData\Local\Temp\Quarantine.exe
C:\Users\Ondra\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Ondra\AppData\Local\Temp\sqlite3.dll
C:\Users\Ondra\AppData\Local\Temp\~9453.exe
C:\Users\Ondra\AppData\Local\Temp\~BAE7.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\windows\explorer.exe => File is digitally signed
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-12-20 14:39

==================== End Of Log ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119557
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

#5 Příspěvek od Rudy »

Prosím uživatele m0ple, aby nezasahoval do postu, není k tomu oprávněn.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119557
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

#6 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
C:\Program Files\McAfee Security Scan
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: No Name -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> No File
Toolbar: HKLM - No Name - {0BF43445-2F28-4351-9252-17FE6E806AA0} - No File
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-39.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-40.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-41.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-42.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-43.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-44.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-45.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-46.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-47.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-48.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-49.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-50.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-51.xml
FF Extension: No Name - C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} [2014-12-01]
FF HKU\S-1-5-21-2319226969-1122203107-1309984348-1004\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
FF Extension: No Name - wrc@avast.com [Not Found]
CHR HKLM\...\Chrome\Extension: [bopakagnckmlgajfccecajhnimjiiedh] - No Path
C:\windows\bcm9582.tmp
C:\Users\Ondra\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\ProgramData\atrjl1h.ctrl
C:\ProgramData\atrjl1h.pff
C:\Users\Ondra\infium9020pack.exe
C:\Users\Ondra\infium9022pack.exe
C:\Users\Ondra\install_flash_player.exe
C:\Users\Ondra\jre-6u13-windows-i586-p.exe
C:\Users\Ondra\Nero-9.0.9.4b_trial.exe
C:\Users\Ondra\Opera_1210_int_Setup.exe
C:\Users\Ondra\PictureMergeGeniusEn.exe
C:\Users\Ondra\qip8080.exe
C:\Users\Ondra\QuickTimeInstaller.exe
C:\Users\Ondra\setpoint424bt_v270v470_x64.exe
C:\Users\Ondra\vlc-0.9.8a-win32.exe
C:\Users\Ondra\wmpfirefoxplugin.exe
C:\Users\Ondra\AppData\Local\Temp
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
Pavuk29
VIP in memoriam
VIP in memoriam
Příspěvky: 6953
Registrován: 31 říj 2003 08:26
Bydliště: Banská Bystrica
Kontaktovat uživatele:

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

#7 Příspěvek od Pavuk29 »

m0ple píše:Ok, dejte nový log z FRST. ;)
Predpokladam, ze do topicu v sulade s pravidlami nasho fora uz vstupovat nebudete.
------------------------------------------------------------------------------------------------------------------------------
:!: PLS NEPISTE MI SZ, NA ICQ A MAILY S OTAZKAMI, PISTE DO FORA :!: :spam:
------------------------------------------------------------------------------------------------------------------------------
V pripadne akutnych problemov s chodom fora, :207: pripadne s inymi uzivatelmi, :whip: kontaktujte ma na ICQ alebo mailom :31: na pavuk29 zavinac forum.viry.cz. Byvam pri pocitaci casto aj ked nie som online na fore.
http://www.icq.com/people/267560078/
:183: hotline: http://forum.viry.cz/viewtopic.php?f=12&t=116821
:!: pravidla fora: http://forum.viry.cz/viewtopic.php?f=12&t=5601

OndraVas
Návštěvník
Návštěvník
Příspěvky: 47
Registrován: 20 pro 2014 13:40

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

#8 Příspěvek od OndraVas »

Tady je nový log:

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 20-12-2014
Ran by Ondra at 2014-12-20 17:47:29 Run:1
Running from C:\Users\Ondra\Desktop
Loaded Profile: Ondra (Available profiles: Ondra)
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
Start
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
C:\Program Files\McAfee Security Scan
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: No Name -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> No File
Toolbar: HKLM - No Name - {0BF43445-2F28-4351-9252-17FE6E806AA0} - No File
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-39.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-40.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-41.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-42.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-43.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-44.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-45.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-46.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-47.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-48.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-49.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-50.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-51.xml
FF Extension: No Name - C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} [2014-12-01]
FF HKU\S-1-5-21-2319226969-1122203107-1309984348-1004\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
FF Extension: No Name - wrc@avast.com [Not Found]
CHR HKLM\...\Chrome\Extension: [bopakagnckmlgajfccecajhnimjiiedh] - No Path
C:\windows\bcm9582.tmp
C:\Users\Ondra\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\ProgramData\atrjl1h.ctrl
C:\ProgramData\atrjl1h.pff
C:\Users\Ondra\infium9020pack.exe
C:\Users\Ondra\infium9022pack.exe
C:\Users\Ondra\install_flash_player.exe
C:\Users\Ondra\jre-6u13-windows-i586-p.exe
C:\Users\Ondra\Nero-9.0.9.4b_trial.exe
C:\Users\Ondra\Opera_1210_int_Setup.exe
C:\Users\Ondra\PictureMergeGeniusEn.exe
C:\Users\Ondra\qip8080.exe
C:\Users\Ondra\QuickTimeInstaller.exe
C:\Users\Ondra\setpoint424bt_v270v470_x64.exe
C:\Users\Ondra\vlc-0.9.8a-win32.exe
C:\Users\Ondra\wmpfirefoxplugin.exe
C:\Users\Ondra\AppData\Local\Temp
End
*****************

C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe => Moved successfully.
C:\Program Files\McAfee Security Scan => Moved successfully.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}" => Key deleted successfully.
HKCR\CLSID\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01} => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{0BF43445-2F28-4351-9252-17FE6E806AA0} => value deleted successfully.
HKCR\CLSID\{0BF43445-2F28-4351-9252-17FE6E806AA0} => Key not found.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-39.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-40.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-41.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-42.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-43.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-44.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-45.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-46.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-47.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-48.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-49.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-50.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-51.xml => Moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} => Moved successfully.
HKU\S-1-5-21-2319226969-1122203107-1309984348-1004\Software\Mozilla\Firefox\Extensions\\{e4f94d1e-2f53-401e-8885-681602c0ddd8} => value deleted successfully.
C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi => Moved successfully.
FF Extension: No Name - wrc@avast.com [Not Found] => not found.
"HKLM\SOFTWARE\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh" => Key deleted successfully.
C:\windows\bcm9582.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini => Moved successfully.
C:\ProgramData\atrjl1h.ctrl => Moved successfully.
C:\ProgramData\atrjl1h.pff => Moved successfully.
C:\Users\Ondra\infium9020pack.exe => Moved successfully.
C:\Users\Ondra\infium9022pack.exe => Moved successfully.
C:\Users\Ondra\install_flash_player.exe => Moved successfully.
C:\Users\Ondra\jre-6u13-windows-i586-p.exe => Moved successfully.
C:\Users\Ondra\Nero-9.0.9.4b_trial.exe => Moved successfully.
C:\Users\Ondra\Opera_1210_int_Setup.exe => Moved successfully.
C:\Users\Ondra\PictureMergeGeniusEn.exe => Moved successfully.
C:\Users\Ondra\qip8080.exe => Moved successfully.
C:\Users\Ondra\QuickTimeInstaller.exe => Moved successfully.
C:\Users\Ondra\setpoint424bt_v270v470_x64.exe => Moved successfully.
C:\Users\Ondra\vlc-0.9.8a-win32.exe => Moved successfully.
C:\Users\Ondra\wmpfirefoxplugin.exe => Moved successfully.

"C:\Users\Ondra\AppData\Local\Temp" directory move:

C:\Users\Ondra\AppData\Local\Temp\83d6.rra => Moved successfully.
Could not move "C:\Users\Ondra\AppData\Local\Temp\AdobeARM.log" => Scheduled to move on reboot.
C:\Users\Ondra\AppData\Local\Temp\AdobeARM_NotLocked.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\adwcleaner.db => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\AdwCleaner.jpg => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\ArmUI.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\au-descriptor-1.7.0_65-b20.xml => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\au-descriptor-1.7.0_71-b14.xml => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\AUCHECK_PARSER.txt => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\bcmwl.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\bcmwl.log.1 => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CFG7F4E.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CFGD807.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CFGFC88.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Cleaning.ico => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_lSPEPv2bb9WEgNQ => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_NfA1T2uR2mNWeCV => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\EULA.txt => Moved successfully.
Could not move "C:\Users\Ondra\AppData\Local\Temp\FXSAPIDebugLogFile.txt" => Scheduled to move on reboot.
C:\Users\Ondra\AppData\Local\Temp\F{0246CA20-776D-11D2-8010-00104B9B8592}0.xxx => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Install_EAP_Modules.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\JAUReg.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\JavaDeployReg.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\java_install.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\java_install_reg.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\jusched.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\MSIf6a5.LOG => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\MSIf6a6.LOG => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\nsmCFD4.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Ondra.bmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\plfC7D9.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Quarantine.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\RDC541.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\RDCEA4.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\RDE486.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Report.ico => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Scan.ico => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\SkypeSetup.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\sqlite3.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Uninstall.ico => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\WER1E0B.tmp.version.txt => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\wmsetup.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~9453.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~9453.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~BAE7.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~BAE7.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{CD8AAB5A-6267-4B9C-AA02-8CBAF149ACAC}\fpb.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{BD6FFF0F-1B48-415C-B83C-64F9B8649D7F}\fpb.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{A95C905E-C610-4F4C-A1DD-68DFA09E3850}\fpb.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{7BADF1AC-A536-4636-9E20-CB089C3488BE}\fpb.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\setup.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\_ispackdel.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\_Setup.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcm43xx.cat => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcm43xx64.cat => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmihvsrv.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmihvsrv64.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmihvui.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmihvui64.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmwl6.inf => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmwl6.sys => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmwl664.sys => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmwlcoi.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmwlcoi64.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmwliss.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmwls.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmwls32.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmwls64.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmwlu00.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\data1.cab => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\data1.hdr => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\EAP-FAST.msi => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\EAP-LEAP.msi => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\EAP-PEAP.msi => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\Inst_EAPModules.bat => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\IS.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\ISSetup.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\Launcher.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\layout.bin => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\Setup.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\Setup.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\setup.inx => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\Setup.iss => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\setup.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\SysInfo.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\Uninst_EAPModules.bat => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\_Setup.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\bcmwlrc.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\zh-TW\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\zh-HK\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\zh-CN\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\tr-TR\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\th-TH\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\sv-SE\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\sl-SI\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\sk-SK\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\ru-RU\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\ro-RO\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\pt-PT\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\pt-BR\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\pl-PL\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\nl-NL\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\nb-NO\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\lv-LV\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\lt-LT\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\ko-KR\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\ja-JP\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\it-IT\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\hu-HU\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\hr-HR\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\he-IL\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\fr-FR\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\fi-FI\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\et-EE\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\es-ES\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\en-US\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\el-GR\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\de-DE\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\da-DK\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\cs-CZ\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\bg-BG\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\ar-SA\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F519109-B4C7-43F8-B2D4-D34713C799B8}\fpb.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\corecomp.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\dotnetinstaller.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\bcmwls.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\default.pal => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\DIFxData.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\FontData.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\isrt.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\setup.inx => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\StringTable-0005-Czech.ips => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\VASData.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\_IsRes.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\_regValues => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6B9382B4-081F-4056-ACF2-2CB1136D3F1E}\fpb.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{178AD4B7-08AE-4CC1-9DCB-08EFF32770E8}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\bcmwls.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{178AD4B7-08AE-4CC1-9DCB-08EFF32770E8}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\_regValues => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temporary Internet Files\Content.IE5\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temporary Internet Files\Content.IE5\index.dat => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temporary Internet Files\Content.IE5\W79Q7QLZ\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temporary Internet Files\Content.IE5\VBPBQDZR\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temporary Internet Files\Content.IE5\I2YFYXRK\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temporary Internet Files\Content.IE5\4Y13TVI3\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temp3_4tmp00.zip\install.rdf => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temp3_1tmp00.zip\install.rdf => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temp2_4tmp00.zip\install.rdf => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temp2_1tmp00.zip\install.rdf => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temp1_4tmp00.zip\install.rdf => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temp1_1tmp00.zip\install.rdf => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Rar$DR01.775\Kapitán Amerika- Zimní voják\cptn.mkv => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Rar$DR01.775\Kapitán Amerika- Zimní voják\cptn.srt => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera-20141130222928\MemCrash.bin => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera-20141120222712\MemCrash.bin => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera-20141116152943\crash.txt => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera-20141116152924\MemCrash.bin => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera-20141105222306\MemCrash.bin => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera-20141101235110\MemCrash.bin => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera-20141021230337\MemCrash.bin => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera-20141012205608\MemCrash.bin => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera-20140803225902\MemCrash.bin => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera-20140802214457\MemCrash.bin => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\MozUpdater\bgupdate-1\updater.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\History\History.IE5\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\History\History.IE5\index.dat => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Cookies\index.dat => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\avastBCLTMP\{3134413b-49b4-425c-98a5-893c1f195601}.zip => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\avastBCLTMP\{4063be15-3b08-470d-a0d5-b37161cffd69}.zip => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\avastBCLTMP\firefox\{e4f94d1e-2f53-401e-8885-681602c0ddd8}\icon.png => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\avastBCLTMP\firefox\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}\icon.png => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\index.dat => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\PJ0RS83Q\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\IWH59ZT2\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\5UW7UESL\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\5UE0SSZW\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\acro_rd_dir\History\History.IE5\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\acro_rd_dir\History\History.IE5\index.dat => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\acro_rd_dir\Cookies\index.dat => Moved successfully.
Could not move "C:\Users\Ondra\AppData\Local\Temp" directory. => Scheduled to move on reboot.


=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-12-20 17:51:51)<=

C:\Users\Ondra\AppData\Local\Temp\AdobeARM.log => Is moved successfully.
C:\Users\Ondra\AppData\Local\Temp\FXSAPIDebugLogFile.txt => Is moved successfully.
C:\Users\Ondra\AppData\Local\Temp => Moved successfully.

==== End of Fixlog ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119557
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

#9 Příspěvek od Rudy »

Smazáno. Nastala nějuaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

OndraVas
Návštěvník
Návštěvník
Příspěvky: 47
Registrován: 20 pro 2014 13:40

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

#10 Příspěvek od OndraVas »

Ani moc ne

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119557
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

#11 Příspěvek od Rudy »

Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

OndraVas
Návštěvník
Návštěvník
Příspěvky: 47
Registrován: 20 pro 2014 13:40

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

#12 Příspěvek od OndraVas »

Scan jsem zkusil a dvakrát se mi při tom restartoval notebook. POkaždé to bylo při scanu c:\windows\system32\catsrv.dll

V historii - Application logs jsem pak dostal tohle, nevím, jestli to nějak pomůže.

Malwarebytes Anti-Malware
www.malwarebytes.org


Update, 20.12.2014 18:46:26, SYSTEM, ONDRA-PC, Manual, Remediation Database, 2013.10.16.1, 2014.12.6.1,
Update, 20.12.2014 18:46:26, SYSTEM, ONDRA-PC, Manual, Rootkit Database, 2014.11.18.1, 2014.12.14.1,
Update, 20.12.2014 18:46:47, SYSTEM, ONDRA-PC, Manual, Malware Database, 2014.11.20.6, 2014.12.20.4,

(end)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119557
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

#13 Příspěvek od Rudy »

Zkuste to v nouz. režimu.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

OndraVas
Návštěvník
Návštěvník
Příspěvky: 47
Registrován: 20 pro 2014 13:40

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

#14 Příspěvek od OndraVas »

Tak v nouzovém režimu se už podařilo:)

Tady je log

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 21.12.2014
Scan Time: 9:29:49
Logfile: Malwarebytes log.txt
Administrator: Yes

Version: 2.00.4.1028
Malware Database: v2014.12.20.04
Rootkit Database: v2014.12.14.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows Vista Service Pack 2
CPU: x86
File System: NTFS
User: Ondra

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 304003
Time Elapsed: 21 min, 18 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 1
PUP.Optional.InstalleRex, C:\Users\Ondra\Documents\haywire-cze-4663498.exe, , [ac681253cab2999d4bdba2af8c75c739],

Physical Sectors: 0
(No malicious items detected)


(end)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119557
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

#15 Příspěvek od Rudy »

Naleznou položku smažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno