Asus zamrza po zapnutí se nechce zapnout obraz
Napsal: 26 pro 2014 14:54
ahoj lidi mám tu pro vás další oříšek
mám tu notebook Asus K50AD
občas počítači zamrzne touchpad nebo uplně zamrzne
po vypnutí a znovu zapnutí nenaběhne vůbec obrazovka
prosím o kontrolu logu a nebo radu kde bych sehnal nakou ulitku na diagnostiku zakladove desky konkretně jestli bych mohl zjistit jestli nejní grafickaá karta v haji ale pak nechapu to zamrzaní díky
Logfile of random's system information tool 1.10 (written by random/random)
Run by Verunka at 2014-12-26 14:49:49
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 66 GB (14%) free of 462 GB
Total RAM: 3327 MB (67% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:50:26, on 26.12.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17496)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\ControlDeck\ControlDeckStartUp.exe
C:\Program Files\P4G\BatteryLife.exe
C:\Program Files\ASUS\Splendid\ACMON.exe
C:\Windows\System32\ACEngSvr.exe
C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\HP\HP Software Update\hpwuschd2.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Opera\26.0.1656.60\opera.exe
C:\Program Files\Opera\26.0.1656.60\opera_crashreporter.exe
C:\Program Files\Opera\26.0.1656.60\opera.exe
C:\Program Files\Opera\26.0.1656.60\opera.exe
C:\Program Files\Opera\26.0.1656.60\opera.exe
C:\Program Files\Opera\26.0.1656.60\opera.exe
C:\Program Files\Opera\26.0.1656.60\opera.exe
C:\Program Files\Opera\26.0.1656.60\opera.exe
C:\Program Files\Opera\26.0.1656.60\opera.exe
C:\Program Files\Opera\26.0.1656.60\opera.exe
C:\Program Files\Opera\26.0.1656.60\opera.exe
C:\Program Files\Opera\26.0.1656.60\opera.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Verunka\Desktop\RSIT.exe
C:\Program Files\trend micro\Verunka.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://g.msn.com/1ewenusDefaultPack/UP97_FRPage
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [HControlUser] C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [AmIcoSinglun] C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [EPSON Stylus DX4400 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE /FU "C:\Windows\TEMP\E_S2D33.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Verunka\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) - SEIKO EPSON CORPORATION - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
--
End of file - 7281 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1276228741-272193672-2108438865-1000Core.job - C:\Users\Verunka\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1276228741-272193672-2108438865-1000UA.job - C:\Users\Verunka\AppData\Local\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-05-24 336384]
"HControlUser"=C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"ATKOSD2"=C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [2009-08-17 6859392]
"AmIcoSinglun"=C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe [2009-09-01 233472]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2014-08-22 974432]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2011-10-28 49208]
""= []
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2007-03-01 153136]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-11-20 1021128]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"EPSON Stylus DX4400 Series"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]
"Facebook Update"=C:\Users\Verunka\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-27 138096]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-06-27 152872]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-11-20 1021128]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2007-03-01 153136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Setwallpaper]
c:\programdata\SetWallpaper.cmd []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk]
C:\PROGRA~1\MCAFEE~1\202B13~1.181\SSSCHE~1.EXE []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Verunka^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk]
C:\PROGRA~1\MICROS~2\Office12\ONENOTEM.EXE [2009-02-26 97680]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.l3fhg"=mp3fhg.acm
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"VIDC.FFDS"=ff_vfw.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-12-18 18:55:48 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2014-12-18 18:55:22 ----A---- C:\Windows\system32\drivers\mwac.sys
2014-12-18 18:55:22 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2014-12-18 18:55:22 ----A---- C:\Windows\system32\drivers\mbam.sys
2014-12-18 18:55:21 ----D---- C:\Program Files\Malwarebytes Anti-Malware
2014-12-11 03:33:18 ----D---- C:\Windows\system32\appraiser
2014-12-10 07:37:00 ----A---- C:\Windows\system32\drivers\tdx.sys
2014-12-10 07:36:56 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-12-10 07:36:51 ----A---- C:\Windows\system32\aitstatic.exe
2014-12-10 07:36:50 ----A---- C:\Windows\system32\appraiser.dll
2014-12-10 07:36:50 ----A---- C:\Windows\system32\aepic.dll
2014-12-10 07:36:50 ----A---- C:\Windows\system32\aeinv.dll
2014-12-10 07:36:49 ----A---- C:\Windows\system32\invagent.dll
2014-12-10 07:36:48 ----A---- C:\Windows\system32\generaltel.dll
2014-12-10 07:36:48 ----A---- C:\Windows\system32\devinv.dll
2014-12-10 07:36:47 ----A---- C:\Windows\system32\aepdu.dll
2014-12-10 07:36:38 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-12-10 07:36:37 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-12-10 07:36:37 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-12-10 07:36:36 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-12-10 07:36:36 ----A---- C:\Windows\system32\jsproxy.dll
2014-12-10 07:36:36 ----A---- C:\Windows\system32\jscript9diag.dll
2014-12-10 07:36:36 ----A---- C:\Windows\system32\ieUnatt.exe
2014-12-10 07:36:35 ----A---- C:\Windows\system32\wininet.dll
2014-12-10 07:36:35 ----A---- C:\Windows\system32\vbscript.dll
2014-12-10 07:36:35 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-12-10 07:36:35 ----A---- C:\Windows\system32\dxtmsft.dll
2014-12-10 07:36:32 ----A---- C:\Windows\system32\dxtrans.dll
2014-12-10 07:36:31 ----A---- C:\Windows\system32\ieui.dll
2014-12-10 07:36:29 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-12-10 07:36:29 ----A---- C:\Windows\system32\mshtmled.dll
2014-12-10 07:36:28 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-12-10 07:36:28 ----A---- C:\Windows\system32\iertutil.dll
2014-12-10 07:36:25 ----A---- C:\Windows\system32\jscript9.dll
2014-12-10 07:36:24 ----A---- C:\Windows\system32\mshtml.dll
2014-12-10 07:36:22 ----A---- C:\Windows\system32\iernonce.dll
2014-12-10 07:36:22 ----A---- C:\Windows\system32\iedkcs32.dll
2014-12-10 07:36:22 ----A---- C:\Windows\system32\ie4uinit.exe
2014-12-10 07:36:20 ----A---- C:\Windows\system32\urlmon.dll
2014-12-10 07:36:20 ----A---- C:\Windows\system32\ieapfltr.dll
2014-12-10 07:36:19 ----A---- C:\Windows\system32\msfeeds.dll
2014-12-10 07:36:14 ----A---- C:\Windows\system32\msrating.dll
2014-12-10 07:36:14 ----A---- C:\Windows\system32\iesetup.dll
2014-12-10 07:36:13 ----A---- C:\Windows\system32\ieframe.dll
2014-12-10 07:33:30 ----A---- C:\Windows\system32\crypt32.dll
2014-12-10 07:33:11 ----A---- C:\Windows\system32\tzres.dll
2014-12-10 07:32:15 ----A---- C:\Windows\system32\charmap.exe
2014-12-10 07:32:11 ----A---- C:\Windows\system32\WsmSvc.dll
2014-12-10 07:32:11 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2014-12-10 07:32:10 ----A---- C:\Windows\system32\WsmWmiPl.dll
2014-12-10 07:32:10 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2014-12-10 07:32:05 ----A---- C:\Windows\system32\WsmAuto.dll
2014-12-05 10:54:04 ----D---- C:\Program Files\Adobe
======List of files/folders modified in the last 1 month======
2014-12-26 14:50:22 ----D---- C:\Windows\Prefetch
2014-12-26 14:50:13 ----D---- C:\Program Files\trend micro
2014-12-26 14:49:40 ----D---- C:\Windows\Temp
2014-12-25 18:52:02 ----D---- C:\Windows\System32
2014-12-25 18:52:02 ----D---- C:\Windows\inf
2014-12-25 18:52:02 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-12-25 18:39:56 ----SHD---- C:\System Volume Information
2014-12-24 12:07:36 ----D---- C:\Windows\system32\config
2014-12-24 11:57:00 ----A---- C:\Windows\system32\acovcnt.exe
2014-12-24 11:56:42 ----D---- C:\Windows\system32\Tasks
2014-12-22 20:42:53 ----D---- C:\Windows
2014-12-22 20:42:38 ----D---- C:\Windows\system32\drivers
2014-12-22 20:42:38 ----D---- C:\Windows\log
2014-12-18 19:16:09 ----RD---- C:\Program Files
2014-12-18 19:16:09 ----HD---- C:\ProgramData
2014-12-18 18:17:30 ----D---- C:\Windows\Minidump
2014-12-18 08:22:50 ----D---- C:\Program Files\Opera
2014-12-13 16:16:55 ----D---- C:\AdwCleaner
2014-12-13 16:16:51 ----A---- C:\Windows\win.ini
2014-12-12 17:09:48 ----D---- C:\Windows\debug
2014-12-12 11:30:43 ----D---- C:\Windows\system32\catroot
2014-12-11 18:09:06 ----SHD---- C:\Windows\Installer
2014-12-11 18:09:02 ----D---- C:\Windows\system32\DriverStore
2014-12-11 18:08:54 ----D---- C:\Program Files\Common Files
2014-12-11 18:08:02 ----D---- C:\ProgramData\Apple
2014-12-11 12:09:33 ----D---- C:\Windows\system32\GroupPolicy
2014-12-11 10:29:09 ----D---- C:\ProgramData\B0FFCDD9-5261-4e59-B29A-17A4FABDEBAB
2014-12-11 10:27:02 ----DC---- C:\Windows\system32\DRVSTORE
2014-12-11 04:13:52 ----D---- C:\Windows\rescache
2014-12-11 03:37:16 ----D---- C:\Windows\winsxs
2014-12-11 03:33:28 ----D---- C:\Windows\AppCompat
2014-12-11 03:33:27 ----SD---- C:\Windows\system32\CompatTel
2014-12-11 03:33:15 ----SD---- C:\ProgramData\Microsoft
2014-12-11 03:33:13 ----D---- C:\Windows\PolicyDefinitions
2014-12-11 03:33:12 ----D---- C:\Windows\system32\cs-CZ
2014-12-11 03:33:11 ----D---- C:\Windows\system32\en-US
2014-12-11 03:32:58 ----D---- C:\Program Files\Internet Explorer
2014-12-11 03:16:48 ----D---- C:\ProgramData\Microsoft Help
2014-12-11 03:07:59 ----D---- C:\Windows\system32\MRT
2014-12-11 03:04:14 ----A---- C:\Windows\system32\MRT.exe
2014-12-10 11:49:19 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2014-12-10 07:29:52 ----D---- C:\Windows\system32\catroot2
2014-12-05 10:54:09 ----D---- C:\ProgramData\Adobe
2014-12-05 10:54:07 ----D---- C:\Program Files\Common Files\Adobe
2014-12-04 15:13:39 ----D---- C:\Windows\Microsoft.NET
2014-12-04 15:05:05 ----SD---- C:\Users\Verunka\AppData\Roaming\Microsoft
2014-12-04 15:04:22 ----RSD---- C:\Windows\assembly
2014-11-28 08:45:24 ----D---- C:\Windows\system32\FxsTmp
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-07-17 231800]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 MpKsl03703071;MpKsl03703071; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{46D24BB3-C2C9-42DB-93E2-A615F696D526}\MpKsl03703071.sys []
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 ASMMAP;ASMMAP; \??\C:\Program Files\ATKGFNEX\ASMMAP.sys [2007-07-24 13880]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-07-17 95920]
R3 amdiox86;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox86.sys [2010-02-18 37944]
R3 AmUStor;AM USB Stroage Driver; C:\Windows\system32\drivers\AmUStor.SYS [2009-08-21 27136]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2009-10-05 1221632]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-08-18 4994560]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2009-05-13 14392]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-07-13 139776]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-06-16 89856]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2009-09-10 102912]
S3 hwusbdev;Huawei DataCard USB PNP Device; C:\Windows\system32\DRIVERS\ewusbdev.sys [2009-10-12 101120]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\netw5v32.sys [2009-07-13 4231168]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmb.sys [2011-08-17 18176]
S3 NPF;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2010-06-25 35088]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 84992]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2009-07-13 1068032]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-06-16 184192]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2014-08-15 45056]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 36352]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;SAMSUNG Android USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-03 81088]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2009-08-18 176128]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-05-24 294400]
R2 ASLDRService;ASLDR Service; C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe [2009-06-15 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-08-07 94208]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504]
R2 EPSON_PM_RPCV4_01;EPSON V3 Service4(01); C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE [2007-01-11 113664]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2014-08-22 22192]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2014-08-22 288120]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2007-06-27 279848]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-10 267440]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-11-22 102912]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-06-29 800040]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-04-14 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
Log odstraněn kvůli lepší čitelnosti z code - Roli
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 26-12-2014
Ran by Verunka (administrator) on VERUNKA-PC on 26-12-2014 14:51:28
Running from C:\Users\Verunka\Desktop
Loaded Profile: Verunka (Available profiles: Verunka)
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\AsLdrSrv.exe
() C:\Program Files\ATKGFNEX\GFNEXSrv.exe
() C:\Program Files\ASUS\ControlDeck\ControlDeckStartUp.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(ATK) C:\Program Files\P4G\BatteryLife.exe
(ATK) C:\Program Files\ASUS\Splendid\ACMON.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\HControl.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\ATKOSD.exe
(SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE
(ASUSTeK) C:\Windows\System32\ACEngSvr.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\WDC.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ASUS) C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
(AlcorMicro Co., Ltd.) C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(Hewlett-Packard) C:\Program Files\HP\HP Software Update\hpwuschd2.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Nero AG) C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
(Nero AG) C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
(Nero AG) C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
() C:\Program Files\Opera\26.0.1656.60\opera_crashreporter.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-05-24] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [HControlUser] => C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM\...\Run: [ATKOSD2] => C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [6859392 2009-08-17] (ASUS)
HKLM\...\Run: [AmIcoSinglun] => C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe [233472 2009-09-01] (AlcorMicro Co., Ltd.)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [974432 2014-08-22] (Microsoft Corporation)
HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM\...\Run: [HP Software Update] => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [49208 2011-10-28] (Hewlett-Packard)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-11-20] (Adobe Systems Incorporated)
HKU\S-1-5-21-1276228741-272193672-2108438865-1000\...\Run: [EPSON Stylus DX4400 Series] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [180736 2007-03-01] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-1276228741-272193672-2108438865-1000\...\Run: [Facebook Update] => C:\Users\Verunka\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-08-27] (Facebook Inc.)
HKU\S-1-5-21-1276228741-272193672-2108438865-1000\...\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] => C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [152872 2007-06-27] (Nero AG)
HKU\S-1-5-21-1276228741-272193672-2108438865-1000\...\MountPoints2: {4361f93c-d39b-11e0-acb8-e0cb4e638e7f} - "E:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-1276228741-272193672-2108438865-1000\...\MountPoints2: {4bfa2472-d4b4-11e0-a9a3-e0cb4e638e7f} - E:\Autorun.exe
HKU\S-1-5-21-1276228741-272193672-2108438865-1000\...\MountPoints2: {4bfa247d-d4b4-11e0-a9a3-e0cb4e638e7f} - E:\Autorun.exe
HKU\S-1-5-21-1276228741-272193672-2108438865-1000\...\MountPoints2: {4bfa248e-d4b4-11e0-a9a3-e0cb4e638e7f} - E:\Autorun.exe
HKU\S-1-5-21-1276228741-272193672-2108438865-1000\...\MountPoints2: {4bfa24b6-d4b4-11e0-a9a3-e0cb4e638e7f} - E:\Autorun.exe
HKU\S-1-5-21-1276228741-272193672-2108438865-1000\...\MountPoints2: {4bfa24d5-d4b4-11e0-a9a3-e0cb4e638e7f} - G:\Autorun.exe
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [280576 2013-05-18] (Microsoft Corporation)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-1276228741-272193672-2108438865-1000\Software\Microsoft\Internet Explorer\Main,First Home Page = http://g.msn.com/1ewenusDefaultPack/UP97_FRPage
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1276228741-272193672-2108438865-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-1276228741-272193672-2108438865-1000 -> {87E76380-BF9E-42A2-B3EB-4FF6AFED0381} URL = https://search.yahoo.com/search?fr=chr- ... earchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\Verunka\AppData\Roaming\Mozilla\Firefox\Profiles\20boljp9.default
FF NewTab: hxxp://www.google.com/
FF DefaultSearchUrl: hxxp://www.google.com/search?btnG=Google+Search&q=
FF SearchEngineOrder.1: Google
FF SearchEngineOrder.3: Bing
FF Homepage: hxxp://www.google.com
FF DefaultSearchEngine: Yahoo!
FF SelectedSearchEngine: Yahoo!
FF Keyword.URL: https://search.yahoo.com/search?fr=gree ... =501549&p=
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_15_0_0_246.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1276228741-272193672-2108438865-1000: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Verunka\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF SearchPlugin: C:\Users\Verunka\AppData\Roaming\Mozilla\Firefox\Profiles\20boljp9.default\searchplugins\yahoo_ff.xml
Chrome:
=======
CHR Plugin: (Shockwave Flash) - C:\Users\Verunka\AppData\Local\Google\Chrome\Application\15.0.874.102\gcswf32.dll ()
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32_15_0_0_152.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll No File
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Users\Verunka\AppData\Local\Google\Chrome\Application\15.0.874.102\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Users\Verunka\AppData\Local\Google\Chrome\Application\15.0.874.102\pdf.dll ()
CHR Plugin: (Facebook Video Calling Plugin) - C:\Users\Verunka\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
CHR Plugin: (Default Plug-in) - default_plugin No File
CHR Profile: C:\Users\Verunka\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Techgile) - C:\Users\Verunka\AppData\Local\Google\Chrome\User Data\Default\Extensions\lebajhdnpglaboiijodgbloglmddhhag [2014-12-11]
CHR StartMenuInternet: Google Chrome - C:\Users\Verunka\AppData\Local\Google\Chrome\Application\chrome.exe
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [294400 2011-05-24] (Advanced Micro Devices, Inc.) [File not signed]
R2 ASLDRService; C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe [84536 2009-06-15] (ASUS)
R2 ATKGFNEXSrv; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [94208 2007-08-07] () [File not signed]
R2 EPSON_PM_RPCV4_01; C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE [113664 2007-01-11] (SEIKO EPSON CORPORATION)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22192 2014-08-22] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [288120 2014-08-22] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R3 AmUStor; C:\Windows\System32\drivers\AmUStor.SYS [27136 2009-08-21] (Alcor Micro, Corp.)
R2 ASMMAP; C:\Program Files\ATKGFNEX\ASMMAP.sys [13880 2007-07-24] ()
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [231800 2014-07-17] (Microsoft Corporation)
R3 MTsensor; C:\Windows\System32\DRIVERS\ATKACPI.sys [14392 2009-05-13] (ASUS)
S3 NPF; C:\Windows\System32\drivers\npf.sys [35088 2010-06-25] (CACE Technologies, Inc.)
S3 USBAAPL; C:\Windows\System32\Drivers\usbaapl.sys [45056 2014-08-15] (Apple, Inc.) [File not signed]
U5 ewusbnet; C:\Windows\System32\Drivers\ewusbnet.sys [198656 2009-10-21] (Huawei Technologies Co., Ltd.)
R1 MpKsl03703071; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{46D24BB3-C2C9-42DB-93E2-A615F696D526}\MpKsl03703071.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-26 14:51 - 2014-12-26 14:52 - 00012243 _____ () C:\Users\Verunka\Desktop\FRST.txt
2014-12-26 14:45 - 2014-12-26 14:45 - 01114112 _____ (Farbar) C:\Users\Verunka\Desktop\FRST.exe
2014-12-26 14:44 - 2014-12-26 14:44 - 01107968 _____ () C:\Users\Verunka\Desktop\RSIT.exe
2014-12-23 10:32 - 2014-12-04 11:58 - 00000000 ____D () C:\Users\Verunka\Downloads\Nejmilejší české vánoční koledy
2014-12-23 09:32 - 2014-12-23 09:38 - 90340779 _____ () C:\Users\Verunka\Downloads\Nejmilejší-české-vánoční-koledy.rar
2014-12-22 20:42 - 2014-12-24 11:56 - 00004806 _____ () C:\Windows\PFRO.log
2014-12-22 20:42 - 2014-12-24 11:56 - 00000112 _____ () C:\Windows\setupact.log
2014-12-22 20:42 - 2014-12-22 20:42 - 00000000 _____ () C:\Windows\setuperr.log
2014-12-22 05:07 - 2014-12-22 05:18 - 00000000 ____D () C:\Users\Verunka\Desktop\FOTO DĚDA
2014-12-20 11:53 - 2014-12-20 14:58 - 3280772144 _____ () C:\Users\Verunka\Downloads\Legendární-parta-cz.mkv
2014-12-20 08:43 - 2014-12-20 10:31 - 1926575963 _____ () C:\Users\Verunka\Downloads\Tři-bratři-(2014)---DVDrip.mkv
2014-12-19 19:14 - 2014-12-19 20:25 - 1228639130 _____ () C:\Users\Verunka\Downloads\Příjde-letos-Ježíšek-DVDRip.XViD.avi
2014-12-18 19:05 - 2014-12-18 19:06 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Verunka\Downloads\mbam-setup-2.0.4.1028.exe
2014-12-18 18:55 - 2014-12-18 18:56 - 00114904 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-12-18 18:55 - 2014-12-18 18:55 - 00001062 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-12-18 18:55 - 2014-12-18 18:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-12-18 18:55 - 2014-12-18 18:55 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2014-12-18 18:55 - 2014-11-21 06:14 - 00075480 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-12-18 18:55 - 2014-11-21 06:14 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-12-18 18:55 - 2014-11-21 06:14 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-12-18 18:53 - 2014-12-18 19:03 - 07806620 _____ (Malwarebytes Corporation ) C:\Users\Verunka\Downloads\mbam-setup-2.0.4.1028.exe.opdownload
2014-12-18 18:53 - 2014-12-18 18:54 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Verunka\Downloads\mbam-setup-2.0.4.1028 (1).exe
2014-12-15 10:49 - 2014-12-15 10:49 - 02348753 _____ () C:\Users\Verunka\Downloads\po rannu.wma
2014-12-15 10:46 - 2014-12-15 10:46 - 01239723 _____ () C:\Users\Verunka\Downloads\začátky.wma
2014-12-15 10:30 - 2014-12-15 11:04 - 605152518 _____ () C:\Users\Verunka\Downloads\hudba-do-auta-MP3-21.12.2011-(všehochuť,-hip-hop-ne!).zip
2014-12-15 09:45 - 2014-12-15 09:45 - 01800180 _____ () C:\Users\Verunka\Downloads\icq_rfrset_notify.exe.opdownload
2014-12-14 12:00 - 2014-12-14 12:05 - 91749775 _____ () C:\Users\Verunka\Downloads\Ludovky-do-auta.rar
2014-12-14 11:44 - 2014-12-14 11:50 - 62582570 _____ () C:\Users\Verunka\Downloads\Hudba-do-auta-2013-MAX-.rar
2014-12-14 11:31 - 2014-12-14 11:39 - 145496773 _____ () C:\Users\Verunka\Downloads\hudba-do-auta.rar
2014-12-13 16:13 - 2014-12-13 16:13 - 02166272 _____ () C:\Users\Verunka\Desktop\AdwCleaner.exe
2014-12-12 17:35 - 2014-12-12 17:35 - 00005550 _____ () C:\Users\Verunka\Downloads\smime.p7s
2014-12-12 11:32 - 2014-12-12 11:32 - 00000270 __RSH () C:\ProgramData\ntuser.pol
2014-12-11 11:27 - 2014-12-11 11:27 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01007.Wdf
2014-12-11 11:12 - 2014-12-11 11:12 - 00000000 ____D () C:\Users\Verunka\.android
2014-12-11 11:05 - 2014-12-11 12:32 - 00000000 ____D () C:\Users\Verunka\Desktop\MyPhoneExplorer portable
2014-12-11 10:23 - 2014-12-11 10:23 - 07403840 _____ () C:\Users\Verunka\Downloads\MyPhoneExplorer_Setup_1.8.6.exe
2014-12-11 08:41 - 2014-12-11 08:41 - 01692108 _____ () C:\Users\Verunka\Downloads\PhoneCopy.apk
2014-12-11 03:33 - 2014-12-11 03:33 - 00000000 ____D () C:\Windows\system32\appraiser
2014-12-10 08:06 - 2014-12-10 09:38 - 1647907776 _____ () C:\Users\Verunka\Downloads\Doly-krále-Šalamouna-1-HQ.avi
2014-12-10 07:37 - 2014-11-11 02:32 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2014-12-10 07:36 - 2014-12-04 05:38 - 00728576 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2014-12-10 07:36 - 2014-12-04 05:38 - 00610304 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2014-12-10 07:36 - 2014-12-04 05:38 - 00337920 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-12-10 07:36 - 2014-12-04 05:38 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2014-12-10 07:36 - 2014-12-04 05:38 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-12-10 07:36 - 2014-12-04 05:38 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2014-12-10 07:36 - 2014-12-04 05:34 - 00873984 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-12-10 07:36 - 2014-12-02 00:28 - 01160872 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2014-12-10 07:36 - 2014-11-27 02:10 - 00342200 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-12-10 07:36 - 2014-11-22 03:22 - 19749376 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-12-10 07:36 - 2014-11-22 03:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-12-10 07:36 - 2014-11-22 03:20 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-12-10 07:36 - 2014-11-22 03:07 - 00501248 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-12-10 07:36 - 2014-11-22 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-12-10 07:36 - 2014-11-22 03:06 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-12-10 07:36 - 2014-11-22 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-12-10 07:36 - 2014-11-22 03:01 - 02277888 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-12-10 07:36 - 2014-11-22 02:59 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-12-10 07:36 - 2014-11-22 02:58 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-12-10 07:36 - 2014-11-22 02:56 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-12-10 07:36 - 2014-11-22 02:55 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-12-10 07:36 - 2014-11-22 02:55 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-12-10 07:36 - 2014-11-22 02:54 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-12-10 07:36 - 2014-11-22 02:48 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-12-10 07:36 - 2014-11-22 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-12-10 07:36 - 2014-11-22 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-12-10 07:36 - 2014-11-22 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-12-10 07:36 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-12-10 07:36 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-12-10 07:36 - 2014-11-22 02:29 - 04299264 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-12-10 07:36 - 2014-11-22 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-12-10 07:36 - 2014-11-22 02:23 - 00684544 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-12-10 07:36 - 2014-11-22 02:22 - 02052096 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-12-10 07:36 - 2014-11-22 02:21 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-12-10 07:36 - 2014-11-22 02:13 - 12836864 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-12-10 07:36 - 2014-11-22 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-12-10 07:36 - 2014-11-22 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-12-10 07:36 - 2014-11-22 01:54 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-12-10 07:36 - 2014-11-11 03:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-12-10 07:33 - 2014-11-08 03:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-12-10 07:33 - 2014-10-30 02:46 - 01174528 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-12-10 07:32 - 2014-10-30 02:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2014-12-10 07:32 - 2014-10-03 02:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2014-12-10 07:32 - 2014-10-03 02:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2014-12-10 07:32 - 2014-10-03 02:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2014-12-10 07:32 - 2014-10-03 02:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2014-12-10 07:32 - 2014-10-03 02:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2014-12-10 06:59 - 2014-12-10 07:57 - 1032841798 _____ () C:\Users\Verunka\Downloads\Sněhurka--Mirror-Mirror-(2012).avi
2014-12-08 12:03 - 2014-12-08 15:05 - 1696173081 _____ () C:\Users\Verunka\Downloads\Salt-cz.avi
2014-12-06 14:52 - 2014-12-06 18:38 - 2096419282 _____ () C:\Users\Verunka\Downloads\Princezna-ze-mlejna-2-cz-(2000)-HD.avi
2014-12-06 14:52 - 2013-08-24 22:08 - 00000000 ____D () C:\Users\Verunka\Downloads\Byl jednou jeden... vynálezce (1994)
2014-12-06 09:57 - 2014-12-06 14:10 - 226370441 _____ () C:\Users\Verunka\Downloads\Byl-jednou-jeden...-vynalezce-(1994)---xvid,-480x272,-CZ.rar
2014-12-05 10:54 - 2014-12-10 11:43 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-12-05 10:54 - 2014-12-05 10:54 - 00001991 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk
2014-12-05 10:54 - 2014-12-05 10:54 - 00000000 ____D () C:\Program Files\Adobe
2014-12-04 11:19 - 2014-12-04 14:14 - 1579972656 _____ () C:\Users\Verunka\Downloads\Štestí-na-dosah-2006---cz-dubing--by-pepik4300.avi
2014-12-04 11:19 - 2013-08-25 10:27 - 00000000 ____D () C:\Users\Verunka\Downloads\Byl jednou jeden... člověk (1978)
2014-12-03 14:32 - 2014-12-03 18:26 - 4162517729 _____ () C:\Users\Verunka\Downloads\Byl-jednou-jeden...-clovek-(1978)---xvid,-480x272,-CZ.rar
2014-11-30 21:28 - 2014-11-30 21:55 - 494543946 _____ () C:\Users\Verunka\Downloads\charlieho-andílci-na-plný-pecky-cz-dab-bruce-willis-'03'-.avi
2014-11-30 11:24 - 2014-11-30 12:05 - 734193664 _____ () C:\Users\Verunka\Downloads\Brouckova-rodina---anim.avi
2014-11-29 19:15 - 2014-11-29 20:22 - 1176133702 _____ () C:\Users\Verunka\Downloads\broucci-2.avi
2014-11-29 17:44 - 2014-11-29 18:45 - 1054639990 _____ () C:\Users\Verunka\Downloads\Příběh-kmotra-(2013)-CZ-film.avi
2014-11-29 09:21 - 2014-11-29 09:21 - 00000000 __SHD () C:\Users\Verunka\AppData\Local\EmieBrowserModeList
2014-11-26 16:55 - 2014-11-26 17:37 - 00000000 ____D () C:\ProgramData\DVD Shrink
2014-11-26 16:47 - 2014-11-26 16:48 - 09743685 _____ () C:\Users\Verunka\Downloads\dvdshrink32setup.exe
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-26 14:51 - 2014-08-14 11:23 - 00000000 ____D () C:\FRST
2014-12-26 14:50 - 2014-08-14 11:26 - 00000000 ____D () C:\Program Files\trend micro
2014-12-26 14:49 - 2014-05-02 05:51 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-12-26 14:47 - 2012-08-27 08:29 - 00000914 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1276228741-272193672-2108438865-1000Core.job
2014-12-26 14:37 - 2012-08-27 08:29 - 00000936 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1276228741-272193672-2108438865-1000UA.job
2014-12-26 14:36 - 2011-08-23 22:05 - 01639110 _____ () C:\Windows\WindowsUpdate.log
2014-12-25 18:52 - 2009-07-12 22:06 - 01590786 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-12-24 12:05 - 2009-07-14 05:34 - 00019056 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-24 12:05 - 2009-07-14 05:34 - 00019056 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-24 11:57 - 2012-08-07 05:09 - 00045056 _____ () C:\Windows\system32\acovcnt.exe
2014-12-24 11:56 - 2009-07-14 05:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-12-22 20:42 - 2009-07-12 22:12 - 00000000 ____D () C:\Windows\log
2014-12-20 15:09 - 2011-09-08 17:53 - 00014848 _____ () C:\Users\Verunka\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-12-18 18:17 - 2011-09-22 19:42 - 00000000 ____D () C:\Windows\Minidump
2014-12-18 08:22 - 2014-05-01 11:01 - 00000000 ____D () C:\Program Files\Opera
2014-12-13 16:16 - 2014-06-18 06:09 - 00000000 ____D () C:\AdwCleaner
2014-12-13 16:16 - 2009-07-14 03:04 - 00000580 _____ () C:\Windows\win.ini
2014-12-11 18:08 - 2014-11-19 16:56 - 00000000 ____D () C:\ProgramData\Apple
2014-12-11 12:09 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\GroupPolicy
2014-12-11 11:12 - 2011-08-23 13:25 - 00000000 ____D () C:\Users\Verunka
2014-12-11 10:29 - 2014-11-19 16:59 - 00000000 ____D () C:\ProgramData\B0FFCDD9-5261-4e59-B29A-17A4FABDEBAB
2014-12-11 04:13 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\rescache
2014-12-11 03:33 - 2014-05-09 02:02 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-12-11 03:33 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\AppCompat
2014-12-11 03:16 - 2011-08-23 13:58 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-12-11 03:07 - 2014-06-24 05:28 - 00000000 ____D () C:\Windows\system32\MRT
2014-12-11 03:04 - 2014-06-24 05:27 - 109818608 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-12-10 22:01 - 2014-10-08 11:13 - 00000000 ____D () C:\Users\Verunka\Downloads\James-Arthur---James-Arthur-2013
2014-12-10 11:49 - 2014-05-02 05:51 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-12-10 11:49 - 2011-08-23 13:40 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-12-05 11:40 - 2011-08-29 08:49 - 00000000 ____D () C:\Users\Verunka\AppData\Local\Adobe
2014-12-05 10:54 - 2011-08-23 13:43 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-12-05 10:54 - 2011-08-23 13:42 - 00000000 ____D () C:\ProgramData\Adobe
2014-12-04 15:13 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-12-04 15:05 - 2014-11-16 08:45 - 00000000 ____D () C:\Users\Verunka\AppData\Local\Finkit
2014-11-28 08:45 - 2009-07-14 05:52 - 00000000 ____D () C:\Windows\system32\FxsTmp
2014-11-26 17:26 - 2014-08-14 08:40 - 00000000 ____D () C:\Users\Verunka\AppData\Roaming\Ahead
2014-11-26 16:40 - 2014-03-05 00:14 - 00000074 _____ () C:\Users\Verunka\AppData\default.pls
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-12-16 08:12
==================== End Of Log ============================
mám tu notebook Asus K50AD
občas počítači zamrzne touchpad nebo uplně zamrzne
po vypnutí a znovu zapnutí nenaběhne vůbec obrazovka
prosím o kontrolu logu a nebo radu kde bych sehnal nakou ulitku na diagnostiku zakladove desky konkretně jestli bych mohl zjistit jestli nejní grafickaá karta v haji ale pak nechapu to zamrzaní díky
Logfile of random's system information tool 1.10 (written by random/random)
Run by Verunka at 2014-12-26 14:49:49
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 66 GB (14%) free of 462 GB
Total RAM: 3327 MB (67% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:50:26, on 26.12.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17496)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\ControlDeck\ControlDeckStartUp.exe
C:\Program Files\P4G\BatteryLife.exe
C:\Program Files\ASUS\Splendid\ACMON.exe
C:\Windows\System32\ACEngSvr.exe
C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\HP\HP Software Update\hpwuschd2.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Opera\26.0.1656.60\opera.exe
C:\Program Files\Opera\26.0.1656.60\opera_crashreporter.exe
C:\Program Files\Opera\26.0.1656.60\opera.exe
C:\Program Files\Opera\26.0.1656.60\opera.exe
C:\Program Files\Opera\26.0.1656.60\opera.exe
C:\Program Files\Opera\26.0.1656.60\opera.exe
C:\Program Files\Opera\26.0.1656.60\opera.exe
C:\Program Files\Opera\26.0.1656.60\opera.exe
C:\Program Files\Opera\26.0.1656.60\opera.exe
C:\Program Files\Opera\26.0.1656.60\opera.exe
C:\Program Files\Opera\26.0.1656.60\opera.exe
C:\Program Files\Opera\26.0.1656.60\opera.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Verunka\Desktop\RSIT.exe
C:\Program Files\trend micro\Verunka.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://g.msn.com/1ewenusDefaultPack/UP97_FRPage
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [HControlUser] C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [AmIcoSinglun] C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [EPSON Stylus DX4400 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE /FU "C:\Windows\TEMP\E_S2D33.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Verunka\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) - SEIKO EPSON CORPORATION - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
--
End of file - 7281 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1276228741-272193672-2108438865-1000Core.job - C:\Users\Verunka\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1276228741-272193672-2108438865-1000UA.job - C:\Users\Verunka\AppData\Local\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-05-24 336384]
"HControlUser"=C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"ATKOSD2"=C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [2009-08-17 6859392]
"AmIcoSinglun"=C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe [2009-09-01 233472]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2014-08-22 974432]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2011-10-28 49208]
""= []
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2007-03-01 153136]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-11-20 1021128]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"EPSON Stylus DX4400 Series"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]
"Facebook Update"=C:\Users\Verunka\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-27 138096]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-06-27 152872]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-11-20 1021128]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2007-03-01 153136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Setwallpaper]
c:\programdata\SetWallpaper.cmd []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk]
C:\PROGRA~1\MCAFEE~1\202B13~1.181\SSSCHE~1.EXE []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Verunka^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk]
C:\PROGRA~1\MICROS~2\Office12\ONENOTEM.EXE [2009-02-26 97680]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.l3fhg"=mp3fhg.acm
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"VIDC.FFDS"=ff_vfw.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-12-18 18:55:48 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2014-12-18 18:55:22 ----A---- C:\Windows\system32\drivers\mwac.sys
2014-12-18 18:55:22 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2014-12-18 18:55:22 ----A---- C:\Windows\system32\drivers\mbam.sys
2014-12-18 18:55:21 ----D---- C:\Program Files\Malwarebytes Anti-Malware
2014-12-11 03:33:18 ----D---- C:\Windows\system32\appraiser
2014-12-10 07:37:00 ----A---- C:\Windows\system32\drivers\tdx.sys
2014-12-10 07:36:56 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-12-10 07:36:51 ----A---- C:\Windows\system32\aitstatic.exe
2014-12-10 07:36:50 ----A---- C:\Windows\system32\appraiser.dll
2014-12-10 07:36:50 ----A---- C:\Windows\system32\aepic.dll
2014-12-10 07:36:50 ----A---- C:\Windows\system32\aeinv.dll
2014-12-10 07:36:49 ----A---- C:\Windows\system32\invagent.dll
2014-12-10 07:36:48 ----A---- C:\Windows\system32\generaltel.dll
2014-12-10 07:36:48 ----A---- C:\Windows\system32\devinv.dll
2014-12-10 07:36:47 ----A---- C:\Windows\system32\aepdu.dll
2014-12-10 07:36:38 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-12-10 07:36:37 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-12-10 07:36:37 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-12-10 07:36:36 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-12-10 07:36:36 ----A---- C:\Windows\system32\jsproxy.dll
2014-12-10 07:36:36 ----A---- C:\Windows\system32\jscript9diag.dll
2014-12-10 07:36:36 ----A---- C:\Windows\system32\ieUnatt.exe
2014-12-10 07:36:35 ----A---- C:\Windows\system32\wininet.dll
2014-12-10 07:36:35 ----A---- C:\Windows\system32\vbscript.dll
2014-12-10 07:36:35 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-12-10 07:36:35 ----A---- C:\Windows\system32\dxtmsft.dll
2014-12-10 07:36:32 ----A---- C:\Windows\system32\dxtrans.dll
2014-12-10 07:36:31 ----A---- C:\Windows\system32\ieui.dll
2014-12-10 07:36:29 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-12-10 07:36:29 ----A---- C:\Windows\system32\mshtmled.dll
2014-12-10 07:36:28 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-12-10 07:36:28 ----A---- C:\Windows\system32\iertutil.dll
2014-12-10 07:36:25 ----A---- C:\Windows\system32\jscript9.dll
2014-12-10 07:36:24 ----A---- C:\Windows\system32\mshtml.dll
2014-12-10 07:36:22 ----A---- C:\Windows\system32\iernonce.dll
2014-12-10 07:36:22 ----A---- C:\Windows\system32\iedkcs32.dll
2014-12-10 07:36:22 ----A---- C:\Windows\system32\ie4uinit.exe
2014-12-10 07:36:20 ----A---- C:\Windows\system32\urlmon.dll
2014-12-10 07:36:20 ----A---- C:\Windows\system32\ieapfltr.dll
2014-12-10 07:36:19 ----A---- C:\Windows\system32\msfeeds.dll
2014-12-10 07:36:14 ----A---- C:\Windows\system32\msrating.dll
2014-12-10 07:36:14 ----A---- C:\Windows\system32\iesetup.dll
2014-12-10 07:36:13 ----A---- C:\Windows\system32\ieframe.dll
2014-12-10 07:33:30 ----A---- C:\Windows\system32\crypt32.dll
2014-12-10 07:33:11 ----A---- C:\Windows\system32\tzres.dll
2014-12-10 07:32:15 ----A---- C:\Windows\system32\charmap.exe
2014-12-10 07:32:11 ----A---- C:\Windows\system32\WsmSvc.dll
2014-12-10 07:32:11 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2014-12-10 07:32:10 ----A---- C:\Windows\system32\WsmWmiPl.dll
2014-12-10 07:32:10 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2014-12-10 07:32:05 ----A---- C:\Windows\system32\WsmAuto.dll
2014-12-05 10:54:04 ----D---- C:\Program Files\Adobe
======List of files/folders modified in the last 1 month======
2014-12-26 14:50:22 ----D---- C:\Windows\Prefetch
2014-12-26 14:50:13 ----D---- C:\Program Files\trend micro
2014-12-26 14:49:40 ----D---- C:\Windows\Temp
2014-12-25 18:52:02 ----D---- C:\Windows\System32
2014-12-25 18:52:02 ----D---- C:\Windows\inf
2014-12-25 18:52:02 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-12-25 18:39:56 ----SHD---- C:\System Volume Information
2014-12-24 12:07:36 ----D---- C:\Windows\system32\config
2014-12-24 11:57:00 ----A---- C:\Windows\system32\acovcnt.exe
2014-12-24 11:56:42 ----D---- C:\Windows\system32\Tasks
2014-12-22 20:42:53 ----D---- C:\Windows
2014-12-22 20:42:38 ----D---- C:\Windows\system32\drivers
2014-12-22 20:42:38 ----D---- C:\Windows\log
2014-12-18 19:16:09 ----RD---- C:\Program Files
2014-12-18 19:16:09 ----HD---- C:\ProgramData
2014-12-18 18:17:30 ----D---- C:\Windows\Minidump
2014-12-18 08:22:50 ----D---- C:\Program Files\Opera
2014-12-13 16:16:55 ----D---- C:\AdwCleaner
2014-12-13 16:16:51 ----A---- C:\Windows\win.ini
2014-12-12 17:09:48 ----D---- C:\Windows\debug
2014-12-12 11:30:43 ----D---- C:\Windows\system32\catroot
2014-12-11 18:09:06 ----SHD---- C:\Windows\Installer
2014-12-11 18:09:02 ----D---- C:\Windows\system32\DriverStore
2014-12-11 18:08:54 ----D---- C:\Program Files\Common Files
2014-12-11 18:08:02 ----D---- C:\ProgramData\Apple
2014-12-11 12:09:33 ----D---- C:\Windows\system32\GroupPolicy
2014-12-11 10:29:09 ----D---- C:\ProgramData\B0FFCDD9-5261-4e59-B29A-17A4FABDEBAB
2014-12-11 10:27:02 ----DC---- C:\Windows\system32\DRVSTORE
2014-12-11 04:13:52 ----D---- C:\Windows\rescache
2014-12-11 03:37:16 ----D---- C:\Windows\winsxs
2014-12-11 03:33:28 ----D---- C:\Windows\AppCompat
2014-12-11 03:33:27 ----SD---- C:\Windows\system32\CompatTel
2014-12-11 03:33:15 ----SD---- C:\ProgramData\Microsoft
2014-12-11 03:33:13 ----D---- C:\Windows\PolicyDefinitions
2014-12-11 03:33:12 ----D---- C:\Windows\system32\cs-CZ
2014-12-11 03:33:11 ----D---- C:\Windows\system32\en-US
2014-12-11 03:32:58 ----D---- C:\Program Files\Internet Explorer
2014-12-11 03:16:48 ----D---- C:\ProgramData\Microsoft Help
2014-12-11 03:07:59 ----D---- C:\Windows\system32\MRT
2014-12-11 03:04:14 ----A---- C:\Windows\system32\MRT.exe
2014-12-10 11:49:19 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2014-12-10 07:29:52 ----D---- C:\Windows\system32\catroot2
2014-12-05 10:54:09 ----D---- C:\ProgramData\Adobe
2014-12-05 10:54:07 ----D---- C:\Program Files\Common Files\Adobe
2014-12-04 15:13:39 ----D---- C:\Windows\Microsoft.NET
2014-12-04 15:05:05 ----SD---- C:\Users\Verunka\AppData\Roaming\Microsoft
2014-12-04 15:04:22 ----RSD---- C:\Windows\assembly
2014-11-28 08:45:24 ----D---- C:\Windows\system32\FxsTmp
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-07-17 231800]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 MpKsl03703071;MpKsl03703071; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{46D24BB3-C2C9-42DB-93E2-A615F696D526}\MpKsl03703071.sys []
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 ASMMAP;ASMMAP; \??\C:\Program Files\ATKGFNEX\ASMMAP.sys [2007-07-24 13880]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-07-17 95920]
R3 amdiox86;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox86.sys [2010-02-18 37944]
R3 AmUStor;AM USB Stroage Driver; C:\Windows\system32\drivers\AmUStor.SYS [2009-08-21 27136]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2009-10-05 1221632]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-08-18 4994560]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2009-05-13 14392]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-07-13 139776]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-06-16 89856]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2009-09-10 102912]
S3 hwusbdev;Huawei DataCard USB PNP Device; C:\Windows\system32\DRIVERS\ewusbdev.sys [2009-10-12 101120]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\netw5v32.sys [2009-07-13 4231168]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmb.sys [2011-08-17 18176]
S3 NPF;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2010-06-25 35088]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 84992]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2009-07-13 1068032]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-06-16 184192]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2014-08-15 45056]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 36352]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;SAMSUNG Android USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-03 81088]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2009-08-18 176128]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-05-24 294400]
R2 ASLDRService;ASLDR Service; C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe [2009-06-15 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-08-07 94208]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504]
R2 EPSON_PM_RPCV4_01;EPSON V3 Service4(01); C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE [2007-01-11 113664]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2014-08-22 22192]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2014-08-22 288120]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2007-06-27 279848]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-10 267440]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-11-22 102912]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-06-29 800040]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-04-14 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
Log odstraněn kvůli lepší čitelnosti z code - Roli
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 26-12-2014
Ran by Verunka (administrator) on VERUNKA-PC on 26-12-2014 14:51:28
Running from C:\Users\Verunka\Desktop
Loaded Profile: Verunka (Available profiles: Verunka)
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\AsLdrSrv.exe
() C:\Program Files\ATKGFNEX\GFNEXSrv.exe
() C:\Program Files\ASUS\ControlDeck\ControlDeckStartUp.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(ATK) C:\Program Files\P4G\BatteryLife.exe
(ATK) C:\Program Files\ASUS\Splendid\ACMON.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\HControl.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\ATKOSD.exe
(SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE
(ASUSTeK) C:\Windows\System32\ACEngSvr.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\WDC.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ASUS) C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
(AlcorMicro Co., Ltd.) C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(Hewlett-Packard) C:\Program Files\HP\HP Software Update\hpwuschd2.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Nero AG) C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
(Nero AG) C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
(Nero AG) C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
() C:\Program Files\Opera\26.0.1656.60\opera_crashreporter.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-05-24] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [HControlUser] => C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM\...\Run: [ATKOSD2] => C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [6859392 2009-08-17] (ASUS)
HKLM\...\Run: [AmIcoSinglun] => C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe [233472 2009-09-01] (AlcorMicro Co., Ltd.)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [974432 2014-08-22] (Microsoft Corporation)
HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM\...\Run: [HP Software Update] => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [49208 2011-10-28] (Hewlett-Packard)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-11-20] (Adobe Systems Incorporated)
HKU\S-1-5-21-1276228741-272193672-2108438865-1000\...\Run: [EPSON Stylus DX4400 Series] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [180736 2007-03-01] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-1276228741-272193672-2108438865-1000\...\Run: [Facebook Update] => C:\Users\Verunka\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-08-27] (Facebook Inc.)
HKU\S-1-5-21-1276228741-272193672-2108438865-1000\...\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] => C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [152872 2007-06-27] (Nero AG)
HKU\S-1-5-21-1276228741-272193672-2108438865-1000\...\MountPoints2: {4361f93c-d39b-11e0-acb8-e0cb4e638e7f} - "E:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-1276228741-272193672-2108438865-1000\...\MountPoints2: {4bfa2472-d4b4-11e0-a9a3-e0cb4e638e7f} - E:\Autorun.exe
HKU\S-1-5-21-1276228741-272193672-2108438865-1000\...\MountPoints2: {4bfa247d-d4b4-11e0-a9a3-e0cb4e638e7f} - E:\Autorun.exe
HKU\S-1-5-21-1276228741-272193672-2108438865-1000\...\MountPoints2: {4bfa248e-d4b4-11e0-a9a3-e0cb4e638e7f} - E:\Autorun.exe
HKU\S-1-5-21-1276228741-272193672-2108438865-1000\...\MountPoints2: {4bfa24b6-d4b4-11e0-a9a3-e0cb4e638e7f} - E:\Autorun.exe
HKU\S-1-5-21-1276228741-272193672-2108438865-1000\...\MountPoints2: {4bfa24d5-d4b4-11e0-a9a3-e0cb4e638e7f} - G:\Autorun.exe
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [280576 2013-05-18] (Microsoft Corporation)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-1276228741-272193672-2108438865-1000\Software\Microsoft\Internet Explorer\Main,First Home Page = http://g.msn.com/1ewenusDefaultPack/UP97_FRPage
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1276228741-272193672-2108438865-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-1276228741-272193672-2108438865-1000 -> {87E76380-BF9E-42A2-B3EB-4FF6AFED0381} URL = https://search.yahoo.com/search?fr=chr- ... earchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\Verunka\AppData\Roaming\Mozilla\Firefox\Profiles\20boljp9.default
FF NewTab: hxxp://www.google.com/
FF DefaultSearchUrl: hxxp://www.google.com/search?btnG=Google+Search&q=
FF SearchEngineOrder.1: Google
FF SearchEngineOrder.3: Bing
FF Homepage: hxxp://www.google.com
FF DefaultSearchEngine: Yahoo!
FF SelectedSearchEngine: Yahoo!
FF Keyword.URL: https://search.yahoo.com/search?fr=gree ... =501549&p=
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_15_0_0_246.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1276228741-272193672-2108438865-1000: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Verunka\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF SearchPlugin: C:\Users\Verunka\AppData\Roaming\Mozilla\Firefox\Profiles\20boljp9.default\searchplugins\yahoo_ff.xml
Chrome:
=======
CHR Plugin: (Shockwave Flash) - C:\Users\Verunka\AppData\Local\Google\Chrome\Application\15.0.874.102\gcswf32.dll ()
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32_15_0_0_152.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll No File
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Users\Verunka\AppData\Local\Google\Chrome\Application\15.0.874.102\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Users\Verunka\AppData\Local\Google\Chrome\Application\15.0.874.102\pdf.dll ()
CHR Plugin: (Facebook Video Calling Plugin) - C:\Users\Verunka\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
CHR Plugin: (Default Plug-in) - default_plugin No File
CHR Profile: C:\Users\Verunka\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Techgile) - C:\Users\Verunka\AppData\Local\Google\Chrome\User Data\Default\Extensions\lebajhdnpglaboiijodgbloglmddhhag [2014-12-11]
CHR StartMenuInternet: Google Chrome - C:\Users\Verunka\AppData\Local\Google\Chrome\Application\chrome.exe
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [294400 2011-05-24] (Advanced Micro Devices, Inc.) [File not signed]
R2 ASLDRService; C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe [84536 2009-06-15] (ASUS)
R2 ATKGFNEXSrv; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [94208 2007-08-07] () [File not signed]
R2 EPSON_PM_RPCV4_01; C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE [113664 2007-01-11] (SEIKO EPSON CORPORATION)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22192 2014-08-22] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [288120 2014-08-22] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R3 AmUStor; C:\Windows\System32\drivers\AmUStor.SYS [27136 2009-08-21] (Alcor Micro, Corp.)
R2 ASMMAP; C:\Program Files\ATKGFNEX\ASMMAP.sys [13880 2007-07-24] ()
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [231800 2014-07-17] (Microsoft Corporation)
R3 MTsensor; C:\Windows\System32\DRIVERS\ATKACPI.sys [14392 2009-05-13] (ASUS)
S3 NPF; C:\Windows\System32\drivers\npf.sys [35088 2010-06-25] (CACE Technologies, Inc.)
S3 USBAAPL; C:\Windows\System32\Drivers\usbaapl.sys [45056 2014-08-15] (Apple, Inc.) [File not signed]
U5 ewusbnet; C:\Windows\System32\Drivers\ewusbnet.sys [198656 2009-10-21] (Huawei Technologies Co., Ltd.)
R1 MpKsl03703071; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{46D24BB3-C2C9-42DB-93E2-A615F696D526}\MpKsl03703071.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-26 14:51 - 2014-12-26 14:52 - 00012243 _____ () C:\Users\Verunka\Desktop\FRST.txt
2014-12-26 14:45 - 2014-12-26 14:45 - 01114112 _____ (Farbar) C:\Users\Verunka\Desktop\FRST.exe
2014-12-26 14:44 - 2014-12-26 14:44 - 01107968 _____ () C:\Users\Verunka\Desktop\RSIT.exe
2014-12-23 10:32 - 2014-12-04 11:58 - 00000000 ____D () C:\Users\Verunka\Downloads\Nejmilejší české vánoční koledy
2014-12-23 09:32 - 2014-12-23 09:38 - 90340779 _____ () C:\Users\Verunka\Downloads\Nejmilejší-české-vánoční-koledy.rar
2014-12-22 20:42 - 2014-12-24 11:56 - 00004806 _____ () C:\Windows\PFRO.log
2014-12-22 20:42 - 2014-12-24 11:56 - 00000112 _____ () C:\Windows\setupact.log
2014-12-22 20:42 - 2014-12-22 20:42 - 00000000 _____ () C:\Windows\setuperr.log
2014-12-22 05:07 - 2014-12-22 05:18 - 00000000 ____D () C:\Users\Verunka\Desktop\FOTO DĚDA
2014-12-20 11:53 - 2014-12-20 14:58 - 3280772144 _____ () C:\Users\Verunka\Downloads\Legendární-parta-cz.mkv
2014-12-20 08:43 - 2014-12-20 10:31 - 1926575963 _____ () C:\Users\Verunka\Downloads\Tři-bratři-(2014)---DVDrip.mkv
2014-12-19 19:14 - 2014-12-19 20:25 - 1228639130 _____ () C:\Users\Verunka\Downloads\Příjde-letos-Ježíšek-DVDRip.XViD.avi
2014-12-18 19:05 - 2014-12-18 19:06 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Verunka\Downloads\mbam-setup-2.0.4.1028.exe
2014-12-18 18:55 - 2014-12-18 18:56 - 00114904 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-12-18 18:55 - 2014-12-18 18:55 - 00001062 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-12-18 18:55 - 2014-12-18 18:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-12-18 18:55 - 2014-12-18 18:55 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2014-12-18 18:55 - 2014-11-21 06:14 - 00075480 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-12-18 18:55 - 2014-11-21 06:14 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-12-18 18:55 - 2014-11-21 06:14 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-12-18 18:53 - 2014-12-18 19:03 - 07806620 _____ (Malwarebytes Corporation ) C:\Users\Verunka\Downloads\mbam-setup-2.0.4.1028.exe.opdownload
2014-12-18 18:53 - 2014-12-18 18:54 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Verunka\Downloads\mbam-setup-2.0.4.1028 (1).exe
2014-12-15 10:49 - 2014-12-15 10:49 - 02348753 _____ () C:\Users\Verunka\Downloads\po rannu.wma
2014-12-15 10:46 - 2014-12-15 10:46 - 01239723 _____ () C:\Users\Verunka\Downloads\začátky.wma
2014-12-15 10:30 - 2014-12-15 11:04 - 605152518 _____ () C:\Users\Verunka\Downloads\hudba-do-auta-MP3-21.12.2011-(všehochuť,-hip-hop-ne!).zip
2014-12-15 09:45 - 2014-12-15 09:45 - 01800180 _____ () C:\Users\Verunka\Downloads\icq_rfrset_notify.exe.opdownload
2014-12-14 12:00 - 2014-12-14 12:05 - 91749775 _____ () C:\Users\Verunka\Downloads\Ludovky-do-auta.rar
2014-12-14 11:44 - 2014-12-14 11:50 - 62582570 _____ () C:\Users\Verunka\Downloads\Hudba-do-auta-2013-MAX-.rar
2014-12-14 11:31 - 2014-12-14 11:39 - 145496773 _____ () C:\Users\Verunka\Downloads\hudba-do-auta.rar
2014-12-13 16:13 - 2014-12-13 16:13 - 02166272 _____ () C:\Users\Verunka\Desktop\AdwCleaner.exe
2014-12-12 17:35 - 2014-12-12 17:35 - 00005550 _____ () C:\Users\Verunka\Downloads\smime.p7s
2014-12-12 11:32 - 2014-12-12 11:32 - 00000270 __RSH () C:\ProgramData\ntuser.pol
2014-12-11 11:27 - 2014-12-11 11:27 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01007.Wdf
2014-12-11 11:12 - 2014-12-11 11:12 - 00000000 ____D () C:\Users\Verunka\.android
2014-12-11 11:05 - 2014-12-11 12:32 - 00000000 ____D () C:\Users\Verunka\Desktop\MyPhoneExplorer portable
2014-12-11 10:23 - 2014-12-11 10:23 - 07403840 _____ () C:\Users\Verunka\Downloads\MyPhoneExplorer_Setup_1.8.6.exe
2014-12-11 08:41 - 2014-12-11 08:41 - 01692108 _____ () C:\Users\Verunka\Downloads\PhoneCopy.apk
2014-12-11 03:33 - 2014-12-11 03:33 - 00000000 ____D () C:\Windows\system32\appraiser
2014-12-10 08:06 - 2014-12-10 09:38 - 1647907776 _____ () C:\Users\Verunka\Downloads\Doly-krále-Šalamouna-1-HQ.avi
2014-12-10 07:37 - 2014-11-11 02:32 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2014-12-10 07:36 - 2014-12-04 05:38 - 00728576 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2014-12-10 07:36 - 2014-12-04 05:38 - 00610304 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2014-12-10 07:36 - 2014-12-04 05:38 - 00337920 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-12-10 07:36 - 2014-12-04 05:38 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2014-12-10 07:36 - 2014-12-04 05:38 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-12-10 07:36 - 2014-12-04 05:38 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2014-12-10 07:36 - 2014-12-04 05:34 - 00873984 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-12-10 07:36 - 2014-12-02 00:28 - 01160872 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2014-12-10 07:36 - 2014-11-27 02:10 - 00342200 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-12-10 07:36 - 2014-11-22 03:22 - 19749376 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-12-10 07:36 - 2014-11-22 03:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-12-10 07:36 - 2014-11-22 03:20 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-12-10 07:36 - 2014-11-22 03:07 - 00501248 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-12-10 07:36 - 2014-11-22 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-12-10 07:36 - 2014-11-22 03:06 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-12-10 07:36 - 2014-11-22 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-12-10 07:36 - 2014-11-22 03:01 - 02277888 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-12-10 07:36 - 2014-11-22 02:59 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-12-10 07:36 - 2014-11-22 02:58 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-12-10 07:36 - 2014-11-22 02:56 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-12-10 07:36 - 2014-11-22 02:55 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-12-10 07:36 - 2014-11-22 02:55 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-12-10 07:36 - 2014-11-22 02:54 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-12-10 07:36 - 2014-11-22 02:48 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-12-10 07:36 - 2014-11-22 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-12-10 07:36 - 2014-11-22 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-12-10 07:36 - 2014-11-22 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-12-10 07:36 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-12-10 07:36 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-12-10 07:36 - 2014-11-22 02:29 - 04299264 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-12-10 07:36 - 2014-11-22 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-12-10 07:36 - 2014-11-22 02:23 - 00684544 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-12-10 07:36 - 2014-11-22 02:22 - 02052096 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-12-10 07:36 - 2014-11-22 02:21 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-12-10 07:36 - 2014-11-22 02:13 - 12836864 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-12-10 07:36 - 2014-11-22 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-12-10 07:36 - 2014-11-22 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-12-10 07:36 - 2014-11-22 01:54 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-12-10 07:36 - 2014-11-11 03:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-12-10 07:33 - 2014-11-08 03:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-12-10 07:33 - 2014-10-30 02:46 - 01174528 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-12-10 07:32 - 2014-10-30 02:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2014-12-10 07:32 - 2014-10-03 02:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2014-12-10 07:32 - 2014-10-03 02:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2014-12-10 07:32 - 2014-10-03 02:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2014-12-10 07:32 - 2014-10-03 02:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2014-12-10 07:32 - 2014-10-03 02:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2014-12-10 06:59 - 2014-12-10 07:57 - 1032841798 _____ () C:\Users\Verunka\Downloads\Sněhurka--Mirror-Mirror-(2012).avi
2014-12-08 12:03 - 2014-12-08 15:05 - 1696173081 _____ () C:\Users\Verunka\Downloads\Salt-cz.avi
2014-12-06 14:52 - 2014-12-06 18:38 - 2096419282 _____ () C:\Users\Verunka\Downloads\Princezna-ze-mlejna-2-cz-(2000)-HD.avi
2014-12-06 14:52 - 2013-08-24 22:08 - 00000000 ____D () C:\Users\Verunka\Downloads\Byl jednou jeden... vynálezce (1994)
2014-12-06 09:57 - 2014-12-06 14:10 - 226370441 _____ () C:\Users\Verunka\Downloads\Byl-jednou-jeden...-vynalezce-(1994)---xvid,-480x272,-CZ.rar
2014-12-05 10:54 - 2014-12-10 11:43 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-12-05 10:54 - 2014-12-05 10:54 - 00001991 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk
2014-12-05 10:54 - 2014-12-05 10:54 - 00000000 ____D () C:\Program Files\Adobe
2014-12-04 11:19 - 2014-12-04 14:14 - 1579972656 _____ () C:\Users\Verunka\Downloads\Štestí-na-dosah-2006---cz-dubing--by-pepik4300.avi
2014-12-04 11:19 - 2013-08-25 10:27 - 00000000 ____D () C:\Users\Verunka\Downloads\Byl jednou jeden... člověk (1978)
2014-12-03 14:32 - 2014-12-03 18:26 - 4162517729 _____ () C:\Users\Verunka\Downloads\Byl-jednou-jeden...-clovek-(1978)---xvid,-480x272,-CZ.rar
2014-11-30 21:28 - 2014-11-30 21:55 - 494543946 _____ () C:\Users\Verunka\Downloads\charlieho-andílci-na-plný-pecky-cz-dab-bruce-willis-'03'-.avi
2014-11-30 11:24 - 2014-11-30 12:05 - 734193664 _____ () C:\Users\Verunka\Downloads\Brouckova-rodina---anim.avi
2014-11-29 19:15 - 2014-11-29 20:22 - 1176133702 _____ () C:\Users\Verunka\Downloads\broucci-2.avi
2014-11-29 17:44 - 2014-11-29 18:45 - 1054639990 _____ () C:\Users\Verunka\Downloads\Příběh-kmotra-(2013)-CZ-film.avi
2014-11-29 09:21 - 2014-11-29 09:21 - 00000000 __SHD () C:\Users\Verunka\AppData\Local\EmieBrowserModeList
2014-11-26 16:55 - 2014-11-26 17:37 - 00000000 ____D () C:\ProgramData\DVD Shrink
2014-11-26 16:47 - 2014-11-26 16:48 - 09743685 _____ () C:\Users\Verunka\Downloads\dvdshrink32setup.exe
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-26 14:51 - 2014-08-14 11:23 - 00000000 ____D () C:\FRST
2014-12-26 14:50 - 2014-08-14 11:26 - 00000000 ____D () C:\Program Files\trend micro
2014-12-26 14:49 - 2014-05-02 05:51 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-12-26 14:47 - 2012-08-27 08:29 - 00000914 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1276228741-272193672-2108438865-1000Core.job
2014-12-26 14:37 - 2012-08-27 08:29 - 00000936 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1276228741-272193672-2108438865-1000UA.job
2014-12-26 14:36 - 2011-08-23 22:05 - 01639110 _____ () C:\Windows\WindowsUpdate.log
2014-12-25 18:52 - 2009-07-12 22:06 - 01590786 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-12-24 12:05 - 2009-07-14 05:34 - 00019056 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-24 12:05 - 2009-07-14 05:34 - 00019056 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-24 11:57 - 2012-08-07 05:09 - 00045056 _____ () C:\Windows\system32\acovcnt.exe
2014-12-24 11:56 - 2009-07-14 05:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-12-22 20:42 - 2009-07-12 22:12 - 00000000 ____D () C:\Windows\log
2014-12-20 15:09 - 2011-09-08 17:53 - 00014848 _____ () C:\Users\Verunka\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-12-18 18:17 - 2011-09-22 19:42 - 00000000 ____D () C:\Windows\Minidump
2014-12-18 08:22 - 2014-05-01 11:01 - 00000000 ____D () C:\Program Files\Opera
2014-12-13 16:16 - 2014-06-18 06:09 - 00000000 ____D () C:\AdwCleaner
2014-12-13 16:16 - 2009-07-14 03:04 - 00000580 _____ () C:\Windows\win.ini
2014-12-11 18:08 - 2014-11-19 16:56 - 00000000 ____D () C:\ProgramData\Apple
2014-12-11 12:09 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\GroupPolicy
2014-12-11 11:12 - 2011-08-23 13:25 - 00000000 ____D () C:\Users\Verunka
2014-12-11 10:29 - 2014-11-19 16:59 - 00000000 ____D () C:\ProgramData\B0FFCDD9-5261-4e59-B29A-17A4FABDEBAB
2014-12-11 04:13 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\rescache
2014-12-11 03:33 - 2014-05-09 02:02 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-12-11 03:33 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\AppCompat
2014-12-11 03:16 - 2011-08-23 13:58 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-12-11 03:07 - 2014-06-24 05:28 - 00000000 ____D () C:\Windows\system32\MRT
2014-12-11 03:04 - 2014-06-24 05:27 - 109818608 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-12-10 22:01 - 2014-10-08 11:13 - 00000000 ____D () C:\Users\Verunka\Downloads\James-Arthur---James-Arthur-2013
2014-12-10 11:49 - 2014-05-02 05:51 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-12-10 11:49 - 2011-08-23 13:40 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-12-05 11:40 - 2011-08-29 08:49 - 00000000 ____D () C:\Users\Verunka\AppData\Local\Adobe
2014-12-05 10:54 - 2011-08-23 13:43 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-12-05 10:54 - 2011-08-23 13:42 - 00000000 ____D () C:\ProgramData\Adobe
2014-12-04 15:13 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-12-04 15:05 - 2014-11-16 08:45 - 00000000 ____D () C:\Users\Verunka\AppData\Local\Finkit
2014-11-28 08:45 - 2009-07-14 05:52 - 00000000 ____D () C:\Windows\system32\FxsTmp
2014-11-26 17:26 - 2014-08-14 08:40 - 00000000 ____D () C:\Users\Verunka\AppData\Roaming\Ahead
2014-11-26 16:40 - 2014-03-05 00:14 - 00000074 _____ () C:\Users\Verunka\AppData\default.pls
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-12-16 08:12
==================== End Of Log ============================