Stránka 1 z 2

Zpomalený notebook, pomalý prohlížeč, občas zamrzne

Napsal: 20 pro 2014 14:03
od OndraVas
Ahoj, mohli byste se mi prosím na to podívat?:)
Log z FRST:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 20-12-2014
Ran by Ondra (administrator) on ONDRA-PC on 20-12-2014 13:51:15
Running from C:\Users\Ondra\Desktop
Loaded Profile: Ondra (Available profiles: Ondra)
Platform: Microsoft® Windows Vista™ Business Service Pack 2 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 9
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Hewlett-Packard) C:\Program Files\Hewlett-Packard\File Sanitizer\HPFSService.exe
(SafeBoot International) C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe
(ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe
(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe
(Hewlett-Packard Corporation) C:\Windows\System32\hpservice.exe
(Logitech, Inc.) C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\accoca.exe
(Andrea Electronics Corporation) C:\Windows\System32\AEADISRV.EXE
(Agere Systems) C:\Windows\System32\agrsmsvc.exe
(Hewlett-Packard Development Company, L.P) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe
(ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\acevents.exe
(InterVideo) C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
(PDF Complete Inc) C:\Program Files\PDF Complete\pdfsvc.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
(Microsoft Corporation) C:\Windows\System32\mobsync.exe
(Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\asghost.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\pthosttr.exe
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
( Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Logitech Inc.) C:\Program Files\logitech\SetPoint\LBTWiz.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\Core\smax4pnp.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Logitech, Inc.) C:\Program Files\logitech\SetPoint\SetPoint.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
() C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
( Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\VolCtrl.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Service.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Logitech, Inc.) C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Opera Software) C:\Program Files\Opera\opera.exe
(Microsoft Corporation) C:\Windows\System32\conime.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [StartCCC] => c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [61440 2008-01-21] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [accrdsub] => c:\Program Files\ActivIdentity\ActivClient\accrdsub.exe [293168 2007-05-16] (ActivIdentity)
HKLM\...\Run: [PTHOSTTR] => c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE [238984 2008-06-02] (Hewlett-Packard Development Company, L.P.)
HKLM\...\Run: [CognizanceTS] => rundll32.exe c:\PROGRA~1\HEWLET~1\IAM\Bin\ASTSVCC.dll,RegisterModule
HKLM\...\Run: [PDF Complete] => C:\Program Files\PDF Complete\pdfsty.exe [318488 2008-05-12] (PDF Complete Inc)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1045800 2008-03-27] (Synaptics, Inc.)
HKLM\...\Run: [hpWirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [488752 2008-04-15] (Hewlett-Packard Development Company, L.P.)
HKLM\...\Run: [HP Health Check Scheduler] => c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe [70912 2008-04-15] (Hewlett-Packard)
HKLM\...\Run: [QlbCtrl.exe] => C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [177456 2008-05-14] ( Hewlett-Packard Development Company, L.P.)
HKLM\...\Run: [SoundMAX] => C:\Program Files\Analog Devices\SoundMAX\soundmax.exe [3842048 2008-03-19] (Analog Devices, Inc.)
HKLM\...\Run: [Bluetooth Connection Assistant] => LBTWIZ.EXE -silent
HKLM\...\Run: [Kernel and Hardware Abstraction Layer] => C:\windows\KHALMNPR.EXE [76304 2008-02-29] (Logitech, Inc.)
HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM\...\Run: [SoundMAXPnP] => C:\Program Files\Analog Devices\Core\smax4pnp.exe [1314816 2008-04-04] (Analog Devices, Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-07-31] (AVAST Software)
HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
AppInit_DLLs: APSHook.dll => C:\windows\system32\APSHook.dll [76048 2008-03-25] (Bioscrypt Inc.)
Lsa: [Notification Packages] scecli ASWLNPkg
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Logitech SetPoint.lnk
ShortcutTarget: Logitech SetPoint.lnk -> C:\Program Files\logitech\SetPoint\SetPoint.exe (Logitech, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE= ... ll&pf=cmnb
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE= ... ll&pf=cmnb
HKU\S-1-5-21-2319226969-1122203107-1309984348-1004\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.centrum.cz/#utm_source=icq&u ... um=centrum
HKU\S-1-5-21-2319226969-1122203107-1309984348-1004\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE= ... ll&pf=cmnb
HKU\S-1-5-21-2319226969-1122203107-1309984348-1004\Software\Microsoft\Internet Explorer\Main,ICQ Search = http://search.icq.com/search/results.ph ... &ch_id=osd
URLSearchHook: HKLM - Default Value = {855F3B16-6D32-4fe6-8A56-BBB695989046}
URLSearchHook: HKLM - (No Name) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - No File
URLSearchHook: HKU\S-1-5-21-2319226969-1122203107-1309984348-1004 - (No Name) - {EEE6C35D-6118-11DC-9C72-001320C79847} - No File
SearchScopes: HKLM -> {41BE54D5-4ABD-4E9A-A9E6-8C4804E0FFDF} URL = http://slirsredirect.search.aol.com/sli ... bie7-cs-cz
SearchScopes: HKLM -> {EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C} URL = http://slirsredirect.search.aol.com/sli ... 0winampie7
SearchScopes: HKU\S-1-5-21-2319226969-1122203107-1309984348-1004 -> {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL = http://websearch.ask.com/redirect?clien ... 51488DEA62
SearchScopes: HKU\S-1-5-21-2319226969-1122203107-1309984348-1004 -> {41BE54D5-4ABD-4E9A-A9E6-8C4804E0FFDF} URL = http://slirsredirect.search.aol.com/sli ... bie7-cs-cz
SearchScopes: HKU\S-1-5-21-2319226969-1122203107-1309984348-1004 -> {6552C7DD-90A4-4387-B795-F8F96747DE19} URL = http://search.icq.com/search/results.ph ... &ch_id=osd
SearchScopes: HKU\S-1-5-21-2319226969-1122203107-1309984348-1004 -> {EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C} URL = http://slirsredirect.search.aol.com/sli ... 0winampie7
BHO: No Name -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> No File
BHO: BHO_Startup Class -> {3134413B-49B4-425C-98A5-893C1F195601} -> C:\Program Files\Hewlett-Packard\File Sanitizer\IEBHO.dll No File
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Credential Manager for HP ProtectTools -> {DF21F1DB-80C6-11D3-9483-B03D0EC10000} -> c:\Program Files\Hewlett-Packard\IAM\Bin\ItIEAddIn.dll (Bioscrypt Inc.)
Toolbar: HKLM - No Name - {0BF43445-2F28-4351-9252-17FE6E806AA0} - No File
Toolbar: HKU\S-1-5-21-2319226969-1122203107-1309984348-1004 -> No Name - {EEE6C35B-6118-11DC-9C72-001320C79847} - No File
Toolbar: HKU\S-1-5-21-2319226969-1122203107-1309984348-1004 -> No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/fl ... rashim.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog5 02 C:\windows\system32\napinsp.dll [50176] (Společnost Microsoft)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default
FF DefaultSearchUrl: hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.3.1&q=
FF SearchEngineOrder.1: Ask.com
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.seznam.cz/
FF Keyword.URL: hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.5.3&q=
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF32_15_0_0_246.dll ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @nullsoft.com/winampDetector;version=1 -> C:\Program Files\Winamp Detect\npwachk.dll (Nullsoft, Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF user.js: detected! => C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\user.js
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\askcom.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-1.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-10.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-11.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-12.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-13.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-14.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-15.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-16.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-17.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-18.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-19.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-2.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-20.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-21.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-22.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-23.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-24.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-25.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-26.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-27.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-28.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-29.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-3.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-30.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-31.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-32.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-33.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-34.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-35.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-36.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-37.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-38.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-39.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-4.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-40.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-41.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-42.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-43.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-44.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-45.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-46.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-47.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-48.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-49.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-5.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-50.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-51.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-6.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-7.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-8.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-9.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin.gif
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin.src
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin.xml
FF Extension: Centrum doménový pomocník - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\Extensions\centrumpomocnik@centrum.cz [2011-12-18]
FF Extension: Microsoft .NET Framework Assistant - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-06-29]
FF Extension: facebookvideo - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\Extensions\{43c35458-c907-439b-bcfd-07d373834689} [2010-06-29]
FF Extension: Centrum.cz nastavení - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} [2011-12-18]
FF Extension: Adblock Plus - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-11-04]
FF Extension: No Name - C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} [2014-12-01]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-02-28]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-10-07]
FF HKU\S-1-5-21-2319226969-1122203107-1309984348-1004\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
FF Extension: No Name - wrc@avast.com [Not Found]

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [bopakagnckmlgajfccecajhnimjiiedh] - No Path
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-29]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 accoca; c:\Program Files\ActivIdentity\ActivClient\accoca.exe [182576 2007-05-16] (ActivIdentity)
R2 ASBroker; c:\Program Files\Hewlett-Packard\IAM\Bin\ASWLNPkg.dll [111888 2008-05-21] (Bioscrypt Inc.)
R2 ASChannel; c:\Program Files\Hewlett-Packard\IAM\Bin\AsChnl.dll [137488 2008-05-21] (Bioscrypt Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-29] (AVAST Software)
R2 HP Health Check Service; c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [94208 2008-04-15] (Hewlett-Packard) [File not signed]
R2 HP ProtectTools Service; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe [18944 2008-06-02] (Hewlett-Packard Development Company, L.P) [File not signed]
R2 HpFkCryptService; c:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe [256512 2008-05-30] (SafeBoot International)
R2 HPFSService; C:\Program Files\Hewlett-Packard\File Sanitizer\HPFSService.exe [77824 2008-05-14] (Hewlett-Packard) [File not signed]
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [File not signed]
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [43520 2008-02-28] (Hewlett-Packard) [File not signed]
R2 pdfcDispatcher; C:\Program Files\PDF Complete\pdfsvc.exe [576024 2008-05-12] (PDF Complete Inc)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53248 2008-02-28] (Hewlett-Packard) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\windows\system32\drivers\aswHwid.sys [24184 2014-07-29] ()
R2 aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [67824 2014-07-29] (AVAST Software)
R1 AswRdr; C:\windows\system32\drivers\aswRdr.sys [55112 2014-07-29] (AVAST Software)
R0 aswRvrt; C:\windows\system32\Drivers\aswRvrt.sys [49944 2014-07-29] ()
R1 aswSnx; C:\windows\system32\drivers\aswSnx.sys [779536 2014-11-21] (AVAST Software)
R1 aswSP; C:\windows\system32\drivers\aswSP.sys [414520 2014-07-29] (AVAST Software)
R1 aswTdi; C:\windows\system32\drivers\aswTdi.sys [57800 2014-07-29] (AVAST Software)
R0 aswVmm; C:\windows\system32\Drivers\aswVmm.sys [192352 2014-07-29] ()
R0 FltMgr; C:\windows\System32\drivers\fltmgr.sys [190424 2009-04-11] (Společnost Microsoft)
R3 Ntfs; C:\windows\system32\Drivers\Ntfs.sys [1082232 2013-03-03] (Společnost Microsoft)
R1 RsvLock; C:\windows\system32\Drivers\RsvLock.sys [12496 2008-05-30] (SafeBoot International)
R0 SafeBoot; C:\windows\system32\Drivers\SafeBoot.sys [108752 2008-05-30] () [File not signed]
R0 SbAlg; C:\windows\system32\Drivers\SbAlg.sys [51376 2008-05-30] (SafeBoot N.V.)
R0 SbFsLock; C:\windows\system32\Drivers\SbFsLock.sys [12928 2008-05-30] (SafeBoot International)
R3 SNP2UVC; C:\windows\System32\DRIVERS\snp2uvc.sys [1804160 2008-04-10] ()
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-20 13:51 - 2014-12-20 13:53 - 00026014 _____ () C:\Users\Ondra\Desktop\FRST.txt
2014-12-20 13:50 - 2014-12-20 13:51 - 00000000 ____D () C:\FRST
2014-12-20 13:47 - 2014-12-20 13:47 - 01114112 _____ (Farbar) C:\Users\Ondra\Desktop\FRST.exe
2014-12-10 23:27 - 2014-11-04 01:19 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2014-12-10 23:26 - 2014-11-07 02:33 - 00974848 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2014-12-10 23:07 - 2014-12-03 03:06 - 00278528 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2014-12-10 19:30 - 2014-11-24 21:35 - 01139712 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-12-10 19:30 - 2014-11-24 21:34 - 01427968 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-12-10 19:30 - 2014-11-24 21:34 - 00231936 _____ (Microsoft Corporation) C:\windows\system32\url.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 01802752 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 00717824 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 00607744 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 00421376 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 00065536 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 00041472 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll
2014-12-10 19:30 - 2014-11-24 21:32 - 00353792 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-12-10 19:30 - 2014-11-24 21:32 - 00011776 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe
2014-12-10 19:30 - 2014-11-24 21:32 - 00010752 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe
2014-12-10 19:29 - 2014-11-24 21:44 - 00367104 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2014-12-10 19:29 - 2014-11-24 21:41 - 12369920 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-12-10 19:29 - 2014-11-24 21:40 - 01810944 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-12-10 19:29 - 2014-11-24 21:37 - 09740800 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-12-10 19:29 - 2014-11-24 21:35 - 01129472 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-12-10 19:29 - 2014-11-24 21:33 - 00142848 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-12-10 19:29 - 2014-11-24 21:32 - 02382848 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-12-10 19:29 - 2014-11-24 21:32 - 00223232 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-12-10 19:29 - 2014-11-24 21:32 - 00176640 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-12-10 19:29 - 2014-11-24 21:32 - 00073216 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-12-01 21:04 - 2014-12-01 21:05 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-11-21 21:59 - 2014-11-21 21:59 - 00000000 ____D () C:\Program Files\Marvell
2014-11-21 21:56 - 2014-11-21 22:00 - 00333352 _____ () C:\windows\ydi.log
2014-11-21 21:56 - 2014-11-21 22:00 - 00000415 ____R () C:\windows\YukonInstall.log
2014-11-21 21:54 - 2014-11-21 21:55 - 04010816 _____ (Hewlett-Packard Company ) C:\Users\Ondra\Desktop\sp44780.exe
2014-11-21 16:54 - 2014-11-21 16:54 - 00000000 ____D () C:\Program Files\Cisco
2014-11-20 17:19 - 2014-10-24 02:03 - 00499200 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2014-11-20 17:13 - 2014-11-21 16:52 - 00006656 _____ () C:\windows\system32\bcmwlrc.dll
2014-11-20 17:13 - 2014-11-20 17:13 - 00012022 _____ () C:\windows\bcm9582.tmp
2014-11-20 17:13 - 2014-11-20 17:13 - 00000000 ____D () C:\Users\Ondra\{97c3743f-fa48-414d-a734-e5967e69d84f}
2014-11-20 17:13 - 2014-11-20 17:13 - 00000000 ____D () C:\Program Files\Broadcom
2014-11-20 17:13 - 2014-11-20 17:12 - 03555328 _____ (Broadcom Corporation) C:\windows\system32\bcmihvui.dll
2014-11-20 17:13 - 2014-11-20 17:12 - 02661368 _____ (Broadcom Corporation) C:\windows\system32\Drivers\BCMWL6.SYS

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-20 13:46 - 2006-11-02 13:47 - 00003216 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-20 13:46 - 2006-11-02 13:47 - 00003216 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-20 13:39 - 2012-11-21 10:14 - 00000914 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-12-20 13:34 - 2008-09-10 21:10 - 01139025 _____ () C:\windows\WindowsUpdate.log
2014-12-20 12:05 - 2008-04-17 18:00 - 01640386 _____ () C:\windows\system32\PerfStringBackup.INI
2014-12-20 12:00 - 2008-08-04 11:10 - 00000000 ____D () C:\ProgramData\hpqLog
2014-12-20 12:00 - 2006-11-02 14:01 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-12-19 16:30 - 2006-11-02 14:01 - 00032610 _____ () C:\windows\Tasks\SCHEDLGU.TXT
2014-12-19 16:29 - 2008-09-10 21:10 - 00001076 _____ () C:\windows\bthservsdp.dat
2014-12-15 20:25 - 2008-09-15 19:32 - 00000052 _____ () C:\windows\system32\DOErrors.log
2014-12-15 17:52 - 2014-07-29 21:10 - 00001412 _____ () C:\windows\setupact.log
2014-12-11 19:35 - 2008-09-11 18:05 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\vlc
2014-12-11 16:33 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\rescache
2014-12-10 23:30 - 2008-08-04 11:38 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-12-10 23:22 - 2013-08-14 22:58 - 00000000 ____D () C:\windows\system32\MRT
2014-12-10 23:13 - 2006-11-02 11:24 - 109818608 _____ (Microsoft Corporation) C:\windows\system32\mrt.exe
2014-12-09 21:40 - 2012-11-21 10:14 - 00701104 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerApp.exe
2014-12-09 21:40 - 2011-11-21 21:48 - 00071344 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerCPLApp.cpl
2014-12-07 16:09 - 2008-09-11 16:37 - 00237568 _____ () C:\Users\Ondra\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-12-07 11:44 - 2008-09-11 18:45 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Skype
2014-12-05 17:28 - 2014-07-04 23:56 - 00000000 ____D () C:\Users\Ondra\Desktop\24-9
2014-12-02 20:31 - 2012-05-04 13:16 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-11-21 22:00 - 2008-09-10 12:26 - 00000000 ____D () C:\Users\Ondra
2014-11-21 21:43 - 2013-10-07 14:47 - 00779536 _____ (AVAST Software) C:\windows\system32\Drivers\aswsnx.sys
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\ja-JP
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\it-IT
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\hu-HU
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\hr-HR
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\he-IL
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\fr-FR
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\fi-FI
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\et-EE
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\el-GR
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\zh-TW
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\zh-HK
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\zh-CN
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\tr-TR
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\th-TH
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\sv-SE
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\sl-SI
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\sk-SK
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\ru-RU
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\ro-RO
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\pt-PT
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\pt-BR
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\pl-PL
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\nl-NL
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\nb-NO
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\lv-LV
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\lt-LT
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\ko-KR
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\de-DE
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\bg-BG
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\ar-SA
2014-11-20 17:12 - 2008-03-21 19:35 - 03866624 _____ (Broadcom Corporation) C:\windows\system32\bcmihvsrv.dll
2014-11-20 17:12 - 2008-03-21 19:35 - 00091376 _____ (Broadcom Corporation) C:\windows\system32\bcmwlcoi.dll

Files to move or delete:
====================
C:\ProgramData\atrjl1h.ctrl
C:\ProgramData\atrjl1h.pff
C:\Users\Ondra\infium9020pack.exe
C:\Users\Ondra\infium9022pack.exe
C:\Users\Ondra\install_flash_player.exe
C:\Users\Ondra\jre-6u13-windows-i586-p.exe
C:\Users\Ondra\Nero-9.0.9.4b_trial.exe
C:\Users\Ondra\Opera_1210_int_Setup.exe
C:\Users\Ondra\PictureMergeGeniusEn.exe
C:\Users\Ondra\qip8080.exe
C:\Users\Ondra\QuickTimeInstaller.exe
C:\Users\Ondra\setpoint424bt_v270v470_x64.exe
C:\Users\Ondra\vlc-0.9.8a-win32.exe
C:\Users\Ondra\wmpfirefoxplugin.exe


Some content of TEMP:
====================
C:\Users\Ondra\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Ondra\AppData\Local\Temp\~9453.exe
C:\Users\Ondra\AppData\Local\Temp\~BAE7.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\windows\explorer.exe => File is digitally signed
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-12-20 12:06

==================== End Of Log ============================

Předem děkuju za váš čas:)

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

Napsal: 20 pro 2014 14:09
od Rudy
Zdravím!
Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://www.stahuj.centrum.cz/utility_a_ ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve >Scan< a potom na >Clean< (smazat)
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

Napsal: 20 pro 2014 14:32
od OndraVas
Log z AdwCleaner :

# AdwCleaner v4.105 - Report created 20/12/2014 at 14:22:40
# Updated 08/12/2014 by Xplode
# Database : 2014-12-16.1 [Live]
# Operating System : Windows Vista (TM) Business Service Pack 2 (32 bits)
# Username : Ondra - ONDRA-PC
# Running from : C:\Users\Ondra\Desktop\adwcleaner_4.105.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\ICQ\ICQToolbar
Folder Deleted : C:\Program Files\AskTBar
Folder Deleted : C:\Program Files\ICQ6Toolbar
Folder Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\Askcom.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin.gif
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin.src
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-1.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-10.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-11.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-12.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-13.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-14.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-15.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-16.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-17.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-18.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-19.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-2.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-20.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-21.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-22.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-23.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-24.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-25.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-3.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-26.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-27.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-28.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-29.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-30.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-31.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-32.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-33.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-34.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-35.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-36.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-37.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-38.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-4.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-5.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-6.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-7.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-8.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-9.xml
File Deleted : C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\user.js

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9AFB8248-617F-460D-9366-D71CDEDA3179}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EEE6C35B-6118-11DC-9C72-001320C79847}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{EEE6C35D-6118-11DC-9C72-001320C79847}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{41BE54D5-4ABD-4E9A-A9E6-8C4804E0FFDF}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{41BE54D5-4ABD-4E9A-A9E6-8C4804E0FFDF}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}
Key Deleted : HKCU\Software\YahooPartnerToolbar
Key Deleted : HKLM\SOFTWARE\AskTBar
Key Deleted : HKLM\SOFTWARE\ICQ\ICQToolbar
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}

***** [ Browsers ] *****

-\\ Internet Explorer v9.0.8112.16599

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]

-\\ Mozilla Firefox v34.0 (x86 cs)

[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("browser.search.defaultengine", "Ask.com");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("browser.search.defaulturl", "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.3.1&q=");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("browser.search.order.1", "Ask.com");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("extensions.enabledItems", "{43c35458-c907-439b-bcfd-07d373834689}:2.2.1,{800b5000-a755-47e1-992b-48a1c1357f07}:1.4.1,{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}:6.0.07,{CAFEEFAC-0016-0000-0011-A[...]
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.allowSendURL", false);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.defSearchChange", true);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.engineVerified", true);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.facebookSmilesAddonShowedPopup", true);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.firstTbRun", false);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.geolastmodified", 1410111752);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.history", "3%201%2F4%20to%20cmchris%20reevespearl%20jam%20hear%20the%20sirens%20recenzewordpad%20hledat%20slovo%20v%20textulep%C5%A1%C3%AD%20u%C5%BE%20to%20nebude%20hl%C3[...]
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.hpChange", true);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.icqgeo", 42);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.installTime", "1343243372");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.installsource", "1");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.newtab_most_visited_state", "0");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.newtab_recently_closed_state", "1");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.newtab_state", "1");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.numberOfSearches", 0);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.previousFFVersion", "32.0.1");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.skip_default_search", "no");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.suggestions", false);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.uniqueID", "125035307112503536711250424033738");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.usageStatstTimestamp", 1410639093);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.userEngineApproved", true);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.userHpApproved", true);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.version", "1.5.3");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherHideClicks", 0);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherMoreLinkClicks", 0);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherRedeemClicks", 0);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherWasShown", 0);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.xmlEnableHomePageDsGuard", false);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.xmlEnableSuggestions", false);
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.xmlLanguage", "cs");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("keyword.URL", "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.5.3&q=");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("sweetim.toolbar.highlight.colors", "#FFFF00,#00FFE4,#5AFF00,#0087FF,#FFCC00,#FF00F0");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("sweetim.toolbar.logger.ConsoleHandler.MinReportLevel", "7");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("sweetim.toolbar.logger.FileHandler.FileName", "ff-toolbar.log");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("sweetim.toolbar.logger.FileHandler.MaxFileSize", "200000");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("sweetim.toolbar.logger.FileHandler.MinReportLevel", "7");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("sweetim.toolbar.mode.debug", "false");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("sweetim.toolbar.previous.keyword.URL", "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&q=");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("sweetim.toolbar.search.external", "<?xml version=\"1.0\"?><TOOLBAR><EXTERNAL_SEARCH engine=\"hxxp://*google.*\" param=\"q=\" /><EXTERNAL_SEARCH engine=\"hxxp://search.yahoo.com/*\" param=\"[...]
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("sweetim.toolbar.search.history.capacity", "10");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("sweetim.toolbar.simapp_id", "{08764AE1-C2F8-11DE-BA0E-0021866C74D5}");
[0q67e3a2.default\prefs.js] - Line Deleted : user_pref("sweetim.toolbar.version", "1.0.0.10");

-\\ Opera v0.0.0.0


*************************

AdwCleaner[R0].txt - [12608 octets] - [20/12/2014 14:17:18]
AdwCleaner[S0].txt - [13090 octets] - [20/12/2014 14:22:40]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [13151 octets] ##########

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

Napsal: 20 pro 2014 15:16
od OndraVas
Tady je nový log z FRST:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 20-12-2014
Ran by Ondra (administrator) on ONDRA-PC on 20-12-2014 15:09:13
Running from C:\Users\Ondra\Desktop
Loaded Profile: Ondra (Available profiles: Ondra)
Platform: Microsoft® Windows Vista™ Business Service Pack 2 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 9
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Hewlett-Packard) C:\Program Files\Hewlett-Packard\File Sanitizer\HPFSService.exe
(SafeBoot International) C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe
(ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe
(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(Hewlett-Packard Corporation) C:\Windows\System32\hpservice.exe
(ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe
(Logitech, Inc.) C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\accoca.exe
(Andrea Electronics Corporation) C:\Windows\System32\AEADISRV.EXE
(Agere Systems) C:\Windows\System32\agrsmsvc.exe
(ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\acevents.exe
(Hewlett-Packard Development Company, L.P) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe
(InterVideo) C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
(PDF Complete Inc) C:\Program Files\PDF Complete\pdfsvc.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
(Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\asghost.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\pthosttr.exe
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
( Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
(Logitech Inc.) C:\Program Files\logitech\SetPoint\LBTWiz.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\Core\smax4pnp.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Logitech, Inc.) C:\Program Files\logitech\SetPoint\SetPoint.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
() C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
( Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\VolCtrl.exe
(Logitech, Inc.) C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Service.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Microsoft Corporation) C:\Windows\System32\conime.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [StartCCC] => c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [61440 2008-01-21] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [accrdsub] => c:\Program Files\ActivIdentity\ActivClient\accrdsub.exe [293168 2007-05-16] (ActivIdentity)
HKLM\...\Run: [PTHOSTTR] => c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE [238984 2008-06-02] (Hewlett-Packard Development Company, L.P.)
HKLM\...\Run: [CognizanceTS] => rundll32.exe c:\PROGRA~1\HEWLET~1\IAM\Bin\ASTSVCC.dll,RegisterModule
HKLM\...\Run: [PDF Complete] => C:\Program Files\PDF Complete\pdfsty.exe [318488 2008-05-12] (PDF Complete Inc)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1045800 2008-03-27] (Synaptics, Inc.)
HKLM\...\Run: [hpWirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [488752 2008-04-15] (Hewlett-Packard Development Company, L.P.)
HKLM\...\Run: [HP Health Check Scheduler] => c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe [70912 2008-04-15] (Hewlett-Packard)
HKLM\...\Run: [QlbCtrl.exe] => C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [177456 2008-05-14] ( Hewlett-Packard Development Company, L.P.)
HKLM\...\Run: [SoundMAX] => C:\Program Files\Analog Devices\SoundMAX\soundmax.exe [3842048 2008-03-19] (Analog Devices, Inc.)
HKLM\...\Run: [Bluetooth Connection Assistant] => LBTWIZ.EXE -silent
HKLM\...\Run: [Kernel and Hardware Abstraction Layer] => C:\windows\KHALMNPR.EXE [76304 2008-02-29] (Logitech, Inc.)
HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM\...\Run: [SoundMAXPnP] => C:\Program Files\Analog Devices\Core\smax4pnp.exe [1314816 2008-04-04] (Analog Devices, Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-07-31] (AVAST Software)
HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
AppInit_DLLs: APSHook.dll => C:\windows\system32\APSHook.dll [76048 2008-03-25] (Bioscrypt Inc.)
Lsa: [Notification Packages] scecli ASWLNPkg
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Logitech SetPoint.lnk
ShortcutTarget: Logitech SetPoint.lnk -> C:\Program Files\logitech\SetPoint\SetPoint.exe (Logitech, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE= ... ll&pf=cmnb
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE= ... ll&pf=cmnb
HKU\S-1-5-21-2319226969-1122203107-1309984348-1004\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.centrum.cz/#utm_source=icq&u ... um=centrum
HKU\S-1-5-21-2319226969-1122203107-1309984348-1004\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE= ... ll&pf=cmnb
URLSearchHook: HKLM - Default Value = {855F3B16-6D32-4fe6-8A56-BBB695989046}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: No Name -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> No File
BHO: BHO_Startup Class -> {3134413B-49B4-425C-98A5-893C1F195601} -> C:\Program Files\Hewlett-Packard\File Sanitizer\IEBHO.dll No File
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Credential Manager for HP ProtectTools -> {DF21F1DB-80C6-11D3-9483-B03D0EC10000} -> c:\Program Files\Hewlett-Packard\IAM\Bin\ItIEAddIn.dll (Bioscrypt Inc.)
Toolbar: HKLM - No Name - {0BF43445-2F28-4351-9252-17FE6E806AA0} - No File
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/fl ... rashim.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog5 02 C:\windows\system32\napinsp.dll [50176] (Společnost Microsoft)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF32_15_0_0_246.dll ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @nullsoft.com/winampDetector;version=1 -> C:\Program Files\Winamp Detect\npwachk.dll (Nullsoft, Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-39.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-40.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-41.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-42.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-43.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-44.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-45.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-46.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-47.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-48.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-49.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-50.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-51.xml
FF Extension: Centrum doménový pomocník - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\Extensions\centrumpomocnik@centrum.cz [2011-12-18]
FF Extension: Microsoft .NET Framework Assistant - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-06-29]
FF Extension: facebookvideo - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\Extensions\{43c35458-c907-439b-bcfd-07d373834689} [2010-06-29]
FF Extension: Adblock Plus - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-11-04]
FF Extension: No Name - C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} [2014-12-01]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-02-28]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-10-07]
FF HKU\S-1-5-21-2319226969-1122203107-1309984348-1004\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
FF Extension: No Name - wrc@avast.com [Not Found]

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [bopakagnckmlgajfccecajhnimjiiedh] - No Path
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-29]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 accoca; c:\Program Files\ActivIdentity\ActivClient\accoca.exe [182576 2007-05-16] (ActivIdentity)
R2 ASBroker; c:\Program Files\Hewlett-Packard\IAM\Bin\ASWLNPkg.dll [111888 2008-05-21] (Bioscrypt Inc.)
R2 ASChannel; c:\Program Files\Hewlett-Packard\IAM\Bin\AsChnl.dll [137488 2008-05-21] (Bioscrypt Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-29] (AVAST Software)
R2 HP Health Check Service; c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [94208 2008-04-15] (Hewlett-Packard) [File not signed]
R2 HP ProtectTools Service; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe [18944 2008-06-02] (Hewlett-Packard Development Company, L.P) [File not signed]
R2 HpFkCryptService; c:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe [256512 2008-05-30] (SafeBoot International)
R2 HPFSService; C:\Program Files\Hewlett-Packard\File Sanitizer\HPFSService.exe [77824 2008-05-14] (Hewlett-Packard) [File not signed]
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [File not signed]
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [43520 2008-02-28] (Hewlett-Packard) [File not signed]
R2 pdfcDispatcher; C:\Program Files\PDF Complete\pdfsvc.exe [576024 2008-05-12] (PDF Complete Inc)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53248 2008-02-28] (Hewlett-Packard) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\windows\system32\drivers\aswHwid.sys [24184 2014-07-29] ()
R2 aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [67824 2014-07-29] (AVAST Software)
R1 AswRdr; C:\windows\system32\drivers\aswRdr.sys [55112 2014-07-29] (AVAST Software)
R0 aswRvrt; C:\windows\system32\Drivers\aswRvrt.sys [49944 2014-07-29] ()
R1 aswSnx; C:\windows\system32\drivers\aswSnx.sys [779536 2014-11-21] (AVAST Software)
R1 aswSP; C:\windows\system32\drivers\aswSP.sys [414520 2014-07-29] (AVAST Software)
R1 aswTdi; C:\windows\system32\drivers\aswTdi.sys [57800 2014-07-29] (AVAST Software)
R0 aswVmm; C:\windows\system32\Drivers\aswVmm.sys [192352 2014-07-29] ()
R0 FltMgr; C:\windows\System32\drivers\fltmgr.sys [190424 2009-04-11] (Společnost Microsoft)
R3 Ntfs; C:\windows\system32\Drivers\Ntfs.sys [1082232 2013-03-03] (Společnost Microsoft)
R1 RsvLock; C:\windows\system32\Drivers\RsvLock.sys [12496 2008-05-30] (SafeBoot International)
R0 SafeBoot; C:\windows\system32\Drivers\SafeBoot.sys [108752 2008-05-30] () [File not signed]
R0 SbAlg; C:\windows\system32\Drivers\SbAlg.sys [51376 2008-05-30] (SafeBoot N.V.)
R0 SbFsLock; C:\windows\system32\Drivers\SbFsLock.sys [12928 2008-05-30] (SafeBoot International)
R3 SNP2UVC; C:\windows\System32\DRIVERS\snp2uvc.sys [1804160 2008-04-10] ()
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-20 14:17 - 2014-12-20 14:22 - 00000000 ____D () C:\AdwCleaner
2014-12-20 14:16 - 2014-12-20 14:16 - 02166272 _____ () C:\Users\Ondra\Desktop\adwcleaner_4.105.exe
2014-12-20 14:01 - 2014-12-20 14:01 - 00005721 _____ () C:\Users\Ondra\Desktop\Addition.rar
2014-12-20 13:54 - 2014-12-20 13:57 - 00019827 _____ () C:\Users\Ondra\Desktop\Addition.txt
2014-12-20 13:51 - 2014-12-20 15:09 - 00018656 _____ () C:\Users\Ondra\Desktop\FRST.txt
2014-12-20 13:50 - 2014-12-20 15:09 - 00000000 ____D () C:\FRST
2014-12-20 13:47 - 2014-12-20 13:47 - 01114112 _____ (Farbar) C:\Users\Ondra\Desktop\FRST.exe
2014-12-10 23:27 - 2014-11-04 01:19 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2014-12-10 23:26 - 2014-11-07 02:33 - 00974848 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2014-12-10 23:07 - 2014-12-03 03:06 - 00278528 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2014-12-10 19:30 - 2014-11-24 21:35 - 01139712 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-12-10 19:30 - 2014-11-24 21:34 - 01427968 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-12-10 19:30 - 2014-11-24 21:34 - 00231936 _____ (Microsoft Corporation) C:\windows\system32\url.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 01802752 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 00717824 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 00607744 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 00421376 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 00065536 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-12-10 19:30 - 2014-11-24 21:33 - 00041472 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll
2014-12-10 19:30 - 2014-11-24 21:32 - 00353792 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-12-10 19:30 - 2014-11-24 21:32 - 00011776 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe
2014-12-10 19:30 - 2014-11-24 21:32 - 00010752 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe
2014-12-10 19:29 - 2014-11-24 21:44 - 00367104 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2014-12-10 19:29 - 2014-11-24 21:41 - 12369920 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-12-10 19:29 - 2014-11-24 21:40 - 01810944 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-12-10 19:29 - 2014-11-24 21:37 - 09740800 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-12-10 19:29 - 2014-11-24 21:35 - 01129472 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-12-10 19:29 - 2014-11-24 21:33 - 00142848 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-12-10 19:29 - 2014-11-24 21:32 - 02382848 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-12-10 19:29 - 2014-11-24 21:32 - 00223232 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-12-10 19:29 - 2014-11-24 21:32 - 00176640 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-12-10 19:29 - 2014-11-24 21:32 - 00073216 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-12-01 21:04 - 2014-12-01 21:05 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-11-21 21:59 - 2014-11-21 21:59 - 00000000 ____D () C:\Program Files\Marvell
2014-11-21 21:56 - 2014-11-21 22:00 - 00333352 _____ () C:\windows\ydi.log
2014-11-21 21:56 - 2014-11-21 22:00 - 00000415 ____R () C:\windows\YukonInstall.log
2014-11-21 21:54 - 2014-11-21 21:55 - 04010816 _____ (Hewlett-Packard Company ) C:\Users\Ondra\Desktop\sp44780.exe
2014-11-21 16:54 - 2014-11-21 16:54 - 00000000 ____D () C:\Program Files\Cisco
2014-11-20 17:19 - 2014-10-24 02:03 - 00499200 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2014-11-20 17:13 - 2014-11-21 16:52 - 00006656 _____ () C:\windows\system32\bcmwlrc.dll
2014-11-20 17:13 - 2014-11-20 17:13 - 00012022 _____ () C:\windows\bcm9582.tmp
2014-11-20 17:13 - 2014-11-20 17:13 - 00000000 ____D () C:\Users\Ondra\{97c3743f-fa48-414d-a734-e5967e69d84f}
2014-11-20 17:13 - 2014-11-20 17:13 - 00000000 ____D () C:\Program Files\Broadcom
2014-11-20 17:13 - 2014-11-20 17:12 - 03555328 _____ (Broadcom Corporation) C:\windows\system32\bcmihvui.dll
2014-11-20 17:13 - 2014-11-20 17:12 - 02661368 _____ (Broadcom Corporation) C:\windows\system32\Drivers\BCMWL6.SYS

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-20 14:39 - 2012-11-21 10:14 - 00000914 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-12-20 14:38 - 2008-09-10 21:10 - 01146740 _____ () C:\windows\WindowsUpdate.log
2014-12-20 14:33 - 2008-04-17 18:00 - 01640386 _____ () C:\windows\system32\PerfStringBackup.INI
2014-12-20 14:26 - 2008-08-04 11:10 - 00000000 ____D () C:\ProgramData\hpqLog
2014-12-20 14:26 - 2006-11-02 14:01 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-12-20 14:26 - 2006-11-02 13:47 - 00003216 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-20 14:26 - 2006-11-02 13:47 - 00003216 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-20 14:25 - 2014-07-29 21:06 - 00004352 _____ () C:\windows\PFRO.log
2014-12-20 14:23 - 2008-09-10 21:10 - 00001076 _____ () C:\windows\bthservsdp.dat
2014-12-20 14:23 - 2006-11-02 14:01 - 00032610 _____ () C:\windows\Tasks\SCHEDLGU.TXT
2014-12-20 14:22 - 2009-08-16 13:00 - 00000000 ____D () C:\ProgramData\ICQ
2014-12-15 20:25 - 2008-09-15 19:32 - 00000052 _____ () C:\windows\system32\DOErrors.log
2014-12-15 17:52 - 2014-07-29 21:10 - 00001412 _____ () C:\windows\setupact.log
2014-12-11 19:35 - 2008-09-11 18:05 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\vlc
2014-12-11 16:33 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\rescache
2014-12-10 23:30 - 2008-08-04 11:38 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-12-10 23:22 - 2013-08-14 22:58 - 00000000 ____D () C:\windows\system32\MRT
2014-12-10 23:13 - 2006-11-02 11:24 - 109818608 _____ (Microsoft Corporation) C:\windows\system32\mrt.exe
2014-12-09 21:40 - 2012-11-21 10:14 - 00701104 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerApp.exe
2014-12-09 21:40 - 2011-11-21 21:48 - 00071344 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerCPLApp.cpl
2014-12-07 16:09 - 2008-09-11 16:37 - 00237568 _____ () C:\Users\Ondra\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-12-07 11:44 - 2008-09-11 18:45 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Skype
2014-12-05 17:28 - 2014-07-04 23:56 - 00000000 ____D () C:\Users\Ondra\Desktop\24-9
2014-12-02 20:31 - 2012-05-04 13:16 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-11-21 22:00 - 2008-09-10 12:26 - 00000000 ____D () C:\Users\Ondra
2014-11-21 21:43 - 2013-10-07 14:47 - 00779536 _____ (AVAST Software) C:\windows\system32\Drivers\aswsnx.sys
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\ja-JP
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\it-IT
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\hu-HU
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\hr-HR
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\he-IL
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\fr-FR
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\fi-FI
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\et-EE
2014-11-21 16:53 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\el-GR
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\zh-TW
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\zh-HK
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\zh-CN
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\tr-TR
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\th-TH
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\sv-SE
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\sl-SI
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\sk-SK
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\ru-RU
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\ro-RO
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\pt-PT
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\pt-BR
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\pl-PL
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\nl-NL
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\nb-NO
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\lv-LV
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\lt-LT
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\ko-KR
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\de-DE
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\bg-BG
2014-11-21 16:52 - 2006-11-02 12:18 - 00000000 ____D () C:\windows\system32\ar-SA
2014-11-20 17:12 - 2008-03-21 19:35 - 03866624 _____ (Broadcom Corporation) C:\windows\system32\bcmihvsrv.dll
2014-11-20 17:12 - 2008-03-21 19:35 - 00091376 _____ (Broadcom Corporation) C:\windows\system32\bcmwlcoi.dll

Files to move or delete:
====================
C:\ProgramData\atrjl1h.ctrl
C:\ProgramData\atrjl1h.pff
C:\Users\Ondra\infium9020pack.exe
C:\Users\Ondra\infium9022pack.exe
C:\Users\Ondra\install_flash_player.exe
C:\Users\Ondra\jre-6u13-windows-i586-p.exe
C:\Users\Ondra\Nero-9.0.9.4b_trial.exe
C:\Users\Ondra\Opera_1210_int_Setup.exe
C:\Users\Ondra\PictureMergeGeniusEn.exe
C:\Users\Ondra\qip8080.exe
C:\Users\Ondra\QuickTimeInstaller.exe
C:\Users\Ondra\setpoint424bt_v270v470_x64.exe
C:\Users\Ondra\vlc-0.9.8a-win32.exe
C:\Users\Ondra\wmpfirefoxplugin.exe


Some content of TEMP:
====================
C:\Users\Ondra\AppData\Local\Temp\Quarantine.exe
C:\Users\Ondra\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Ondra\AppData\Local\Temp\sqlite3.dll
C:\Users\Ondra\AppData\Local\Temp\~9453.exe
C:\Users\Ondra\AppData\Local\Temp\~BAE7.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\windows\explorer.exe => File is digitally signed
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-12-20 14:39

==================== End Of Log ============================

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

Napsal: 20 pro 2014 17:28
od Rudy
Prosím uživatele m0ple, aby nezasahoval do postu, není k tomu oprávněn.

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

Napsal: 20 pro 2014 17:35
od Rudy
Otevřte poznámkový blok a zkopírujte do něj:
Start
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
C:\Program Files\McAfee Security Scan
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: No Name -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> No File
Toolbar: HKLM - No Name - {0BF43445-2F28-4351-9252-17FE6E806AA0} - No File
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-39.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-40.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-41.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-42.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-43.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-44.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-45.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-46.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-47.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-48.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-49.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-50.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-51.xml
FF Extension: No Name - C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} [2014-12-01]
FF HKU\S-1-5-21-2319226969-1122203107-1309984348-1004\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
FF Extension: No Name - wrc@avast.com [Not Found]
CHR HKLM\...\Chrome\Extension: [bopakagnckmlgajfccecajhnimjiiedh] - No Path
C:\windows\bcm9582.tmp
C:\Users\Ondra\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\ProgramData\atrjl1h.ctrl
C:\ProgramData\atrjl1h.pff
C:\Users\Ondra\infium9020pack.exe
C:\Users\Ondra\infium9022pack.exe
C:\Users\Ondra\install_flash_player.exe
C:\Users\Ondra\jre-6u13-windows-i586-p.exe
C:\Users\Ondra\Nero-9.0.9.4b_trial.exe
C:\Users\Ondra\Opera_1210_int_Setup.exe
C:\Users\Ondra\PictureMergeGeniusEn.exe
C:\Users\Ondra\qip8080.exe
C:\Users\Ondra\QuickTimeInstaller.exe
C:\Users\Ondra\setpoint424bt_v270v470_x64.exe
C:\Users\Ondra\vlc-0.9.8a-win32.exe
C:\Users\Ondra\wmpfirefoxplugin.exe
C:\Users\Ondra\AppData\Local\Temp
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

Napsal: 20 pro 2014 17:48
od Pavuk29
m0ple píše:Ok, dejte nový log z FRST. ;)
Predpokladam, ze do topicu v sulade s pravidlami nasho fora uz vstupovat nebudete.

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

Napsal: 20 pro 2014 17:55
od OndraVas
Tady je nový log:

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 20-12-2014
Ran by Ondra at 2014-12-20 17:47:29 Run:1
Running from C:\Users\Ondra\Desktop
Loaded Profile: Ondra (Available profiles: Ondra)
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
Start
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
C:\Program Files\McAfee Security Scan
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: No Name -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> No File
Toolbar: HKLM - No Name - {0BF43445-2F28-4351-9252-17FE6E806AA0} - No File
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-39.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-40.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-41.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-42.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-43.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-44.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-45.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-46.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-47.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-48.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-49.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-50.xml
FF SearchPlugin: C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-51.xml
FF Extension: No Name - C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} [2014-12-01]
FF HKU\S-1-5-21-2319226969-1122203107-1309984348-1004\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
FF Extension: No Name - wrc@avast.com [Not Found]
CHR HKLM\...\Chrome\Extension: [bopakagnckmlgajfccecajhnimjiiedh] - No Path
C:\windows\bcm9582.tmp
C:\Users\Ondra\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\ProgramData\atrjl1h.ctrl
C:\ProgramData\atrjl1h.pff
C:\Users\Ondra\infium9020pack.exe
C:\Users\Ondra\infium9022pack.exe
C:\Users\Ondra\install_flash_player.exe
C:\Users\Ondra\jre-6u13-windows-i586-p.exe
C:\Users\Ondra\Nero-9.0.9.4b_trial.exe
C:\Users\Ondra\Opera_1210_int_Setup.exe
C:\Users\Ondra\PictureMergeGeniusEn.exe
C:\Users\Ondra\qip8080.exe
C:\Users\Ondra\QuickTimeInstaller.exe
C:\Users\Ondra\setpoint424bt_v270v470_x64.exe
C:\Users\Ondra\vlc-0.9.8a-win32.exe
C:\Users\Ondra\wmpfirefoxplugin.exe
C:\Users\Ondra\AppData\Local\Temp
End
*****************

C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe => Moved successfully.
C:\Program Files\McAfee Security Scan => Moved successfully.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}" => Key deleted successfully.
HKCR\CLSID\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01} => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{0BF43445-2F28-4351-9252-17FE6E806AA0} => value deleted successfully.
HKCR\CLSID\{0BF43445-2F28-4351-9252-17FE6E806AA0} => Key not found.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-39.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-40.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-41.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-42.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-43.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-44.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-45.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-46.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-47.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-48.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-49.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-50.xml => Moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\0q67e3a2.default\searchplugins\icqplugin-51.xml => Moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} => Moved successfully.
HKU\S-1-5-21-2319226969-1122203107-1309984348-1004\Software\Mozilla\Firefox\Extensions\\{e4f94d1e-2f53-401e-8885-681602c0ddd8} => value deleted successfully.
C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi => Moved successfully.
FF Extension: No Name - wrc@avast.com [Not Found] => not found.
"HKLM\SOFTWARE\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh" => Key deleted successfully.
C:\windows\bcm9582.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini => Moved successfully.
C:\ProgramData\atrjl1h.ctrl => Moved successfully.
C:\ProgramData\atrjl1h.pff => Moved successfully.
C:\Users\Ondra\infium9020pack.exe => Moved successfully.
C:\Users\Ondra\infium9022pack.exe => Moved successfully.
C:\Users\Ondra\install_flash_player.exe => Moved successfully.
C:\Users\Ondra\jre-6u13-windows-i586-p.exe => Moved successfully.
C:\Users\Ondra\Nero-9.0.9.4b_trial.exe => Moved successfully.
C:\Users\Ondra\Opera_1210_int_Setup.exe => Moved successfully.
C:\Users\Ondra\PictureMergeGeniusEn.exe => Moved successfully.
C:\Users\Ondra\qip8080.exe => Moved successfully.
C:\Users\Ondra\QuickTimeInstaller.exe => Moved successfully.
C:\Users\Ondra\setpoint424bt_v270v470_x64.exe => Moved successfully.
C:\Users\Ondra\vlc-0.9.8a-win32.exe => Moved successfully.
C:\Users\Ondra\wmpfirefoxplugin.exe => Moved successfully.

"C:\Users\Ondra\AppData\Local\Temp" directory move:

C:\Users\Ondra\AppData\Local\Temp\83d6.rra => Moved successfully.
Could not move "C:\Users\Ondra\AppData\Local\Temp\AdobeARM.log" => Scheduled to move on reboot.
C:\Users\Ondra\AppData\Local\Temp\AdobeARM_NotLocked.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\adwcleaner.db => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\AdwCleaner.jpg => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\ArmUI.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\au-descriptor-1.7.0_65-b20.xml => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\au-descriptor-1.7.0_71-b14.xml => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\AUCHECK_PARSER.txt => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\bcmwl.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\bcmwl.log.1 => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CFG7F4E.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CFGD807.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\CFGFC88.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Cleaning.ico => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_lSPEPv2bb9WEgNQ => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\etilqs_NfA1T2uR2mNWeCV => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\EULA.txt => Moved successfully.
Could not move "C:\Users\Ondra\AppData\Local\Temp\FXSAPIDebugLogFile.txt" => Scheduled to move on reboot.
C:\Users\Ondra\AppData\Local\Temp\F{0246CA20-776D-11D2-8010-00104B9B8592}0.xxx => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Install_EAP_Modules.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\JAUReg.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\JavaDeployReg.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\java_install.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\java_install_reg.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\jusched.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\MSIf6a5.LOG => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\MSIf6a6.LOG => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\nsmCFD4.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Ondra.bmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\plfC7D9.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Quarantine.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\RDC541.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\RDCEA4.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\RDE486.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Report.ico => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Scan.ico => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\SkypeSetup.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\sqlite3.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Uninstall.ico => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\WER1E0B.tmp.version.txt => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\wmsetup.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~9453.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~9453.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~BAE7.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\~BAE7.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{CD8AAB5A-6267-4B9C-AA02-8CBAF149ACAC}\fpb.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{BD6FFF0F-1B48-415C-B83C-64F9B8649D7F}\fpb.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{A95C905E-C610-4F4C-A1DD-68DFA09E3850}\fpb.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{7BADF1AC-A536-4636-9E20-CB089C3488BE}\fpb.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\setup.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\_ispackdel.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\_Setup.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcm43xx.cat => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcm43xx64.cat => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmihvsrv.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmihvsrv64.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmihvui.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmihvui64.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmwl6.inf => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmwl6.sys => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmwl664.sys => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmwlcoi.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmwlcoi64.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmwliss.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmwls.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmwls32.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmwls64.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\bcmwlu00.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\data1.cab => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\data1.hdr => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\EAP-FAST.msi => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\EAP-LEAP.msi => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\EAP-PEAP.msi => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\Inst_EAPModules.bat => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\IS.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\ISSetup.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\Launcher.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\layout.bin => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\Setup.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\Setup.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\setup.inx => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\Setup.iss => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\setup.log => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\SysInfo.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\Uninst_EAPModules.bat => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\_Setup.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\bcmwlrc.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\zh-TW\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\zh-HK\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\zh-CN\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\tr-TR\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\th-TH\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\sv-SE\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\sl-SI\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\sk-SK\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\ru-RU\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\ro-RO\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\pt-PT\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\pt-BR\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\pl-PL\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\nl-NL\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\nb-NO\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\lv-LV\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\lt-LT\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\ko-KR\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\ja-JP\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\it-IT\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\hu-HU\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\hr-HR\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\he-IL\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\fr-FR\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\fi-FI\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\et-EE\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\es-ES\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\en-US\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\el-GR\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\de-DE\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\da-DK\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\cs-CZ\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\bg-BG\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F7EB5E7-2E1F-4A20-8FE3-7F7DB603BE79}\Disk1\MUI\ar-SA\bcmwlrc.dll.mui => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6F519109-B4C7-43F8-B2D4-D34713C799B8}\fpb.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\corecomp.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\dotnetinstaller.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\bcmwls.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\default.pal => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\DIFxData.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\FontData.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\isrt.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\setup.inx => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\StringTable-0005-Czech.ips => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\VASData.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\_IsRes.dll => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6DEE7F7C-B150-4EEF-A172-113DDE768201}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\_regValues => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{6B9382B4-081F-4056-ACF2-2CB1136D3F1E}\fpb.tmp => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{178AD4B7-08AE-4CC1-9DCB-08EFF32770E8}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\bcmwls.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\{178AD4B7-08AE-4CC1-9DCB-08EFF32770E8}\{F16DD1B4-4933-4019-BC07-A9BF18830338}\_regValues => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temporary Internet Files\Content.IE5\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temporary Internet Files\Content.IE5\index.dat => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temporary Internet Files\Content.IE5\W79Q7QLZ\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temporary Internet Files\Content.IE5\VBPBQDZR\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temporary Internet Files\Content.IE5\I2YFYXRK\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temporary Internet Files\Content.IE5\4Y13TVI3\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temp3_4tmp00.zip\install.rdf => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temp3_1tmp00.zip\install.rdf => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temp2_4tmp00.zip\install.rdf => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temp2_1tmp00.zip\install.rdf => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temp1_4tmp00.zip\install.rdf => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Temp1_1tmp00.zip\install.rdf => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Rar$DR01.775\Kapitán Amerika- Zimní voják\cptn.mkv => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Rar$DR01.775\Kapitán Amerika- Zimní voják\cptn.srt => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera-20141130222928\MemCrash.bin => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera-20141120222712\MemCrash.bin => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera-20141116152943\crash.txt => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera-20141116152924\MemCrash.bin => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera-20141105222306\MemCrash.bin => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera-20141101235110\MemCrash.bin => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera-20141021230337\MemCrash.bin => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera-20141012205608\MemCrash.bin => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera-20140803225902\MemCrash.bin => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\opera-20140802214457\MemCrash.bin => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\MozUpdater\bgupdate-1\updater.exe => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\History\History.IE5\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\History\History.IE5\index.dat => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\Cookies\index.dat => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\avastBCLTMP\{3134413b-49b4-425c-98a5-893c1f195601}.zip => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\avastBCLTMP\{4063be15-3b08-470d-a0d5-b37161cffd69}.zip => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\avastBCLTMP\firefox\{e4f94d1e-2f53-401e-8885-681602c0ddd8}\icon.png => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\avastBCLTMP\firefox\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}\icon.png => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\index.dat => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\PJ0RS83Q\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\IWH59ZT2\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\5UW7UESL\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\5UE0SSZW\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\acro_rd_dir\History\History.IE5\desktop.ini => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\acro_rd_dir\History\History.IE5\index.dat => Moved successfully.
C:\Users\Ondra\AppData\Local\Temp\acro_rd_dir\Cookies\index.dat => Moved successfully.
Could not move "C:\Users\Ondra\AppData\Local\Temp" directory. => Scheduled to move on reboot.


=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-12-20 17:51:51)<=

C:\Users\Ondra\AppData\Local\Temp\AdobeARM.log => Is moved successfully.
C:\Users\Ondra\AppData\Local\Temp\FXSAPIDebugLogFile.txt => Is moved successfully.
C:\Users\Ondra\AppData\Local\Temp => Moved successfully.

==== End of Fixlog ====

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

Napsal: 20 pro 2014 17:56
od Rudy
Smazáno. Nastala nějuaká změna?

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

Napsal: 20 pro 2014 18:07
od OndraVas
Ani moc ne

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

Napsal: 20 pro 2014 18:12
od Rudy
Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

Napsal: 20 pro 2014 20:12
od OndraVas
Scan jsem zkusil a dvakrát se mi při tom restartoval notebook. POkaždé to bylo při scanu c:\windows\system32\catsrv.dll

V historii - Application logs jsem pak dostal tohle, nevím, jestli to nějak pomůže.

Malwarebytes Anti-Malware
www.malwarebytes.org


Update, 20.12.2014 18:46:26, SYSTEM, ONDRA-PC, Manual, Remediation Database, 2013.10.16.1, 2014.12.6.1,
Update, 20.12.2014 18:46:26, SYSTEM, ONDRA-PC, Manual, Rootkit Database, 2014.11.18.1, 2014.12.14.1,
Update, 20.12.2014 18:46:47, SYSTEM, ONDRA-PC, Manual, Malware Database, 2014.11.20.6, 2014.12.20.4,

(end)

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

Napsal: 20 pro 2014 20:58
od Rudy
Zkuste to v nouz. režimu.

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

Napsal: 21 pro 2014 09:54
od OndraVas
Tak v nouzovém režimu se už podařilo:)

Tady je log

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 21.12.2014
Scan Time: 9:29:49
Logfile: Malwarebytes log.txt
Administrator: Yes

Version: 2.00.4.1028
Malware Database: v2014.12.20.04
Rootkit Database: v2014.12.14.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows Vista Service Pack 2
CPU: x86
File System: NTFS
User: Ondra

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 304003
Time Elapsed: 21 min, 18 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 1
PUP.Optional.InstalleRex, C:\Users\Ondra\Documents\haywire-cze-4663498.exe, , [ac681253cab2999d4bdba2af8c75c739],

Physical Sectors: 0
(No malicious items detected)


(end)

Re: Zpomalený notebook, pomalý prohlížeč, občas zamrzne

Napsal: 21 pro 2014 11:22
od Rudy
Naleznou položku smažte.