Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Spomalenie NB

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Ruben
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 29 kvě 2014 11:36
Bydliště: Bratislava

Spomalenie NB

#1 Příspěvek od Ruben »

Zdravím,

Takže mám nb Toshiba od kamoša má to nejaké dvojjadro 2Gb ram a 160HDD cca.

Notebook som z časti vyčistil od virov adwaru etc čo sa dalo v safe môde. NO ak zapnem notas v normalnom mode po minute ako nabehne win sa spomalí celý nb. Vyťaženie HDD 100% a nepohnem s tým. Všetko mrzne a iba znova reštart.... v Safe mode to nerobí.

Mám na ňom obmedzené možnosti keďže nefungujú šípky tj žiadne ovládanie v Biose a podobne.

Ešte na noc som nechal kontrolu eset online scanner... samozrejme niečo našlo a vyčistilo.

HD tune bez chýb.
MBAM už nenašiel nič.
ADW cleaner nenašiel už nič.
Nakoniec beží ešte HitmanPro.

Ku všetkému som postrehol tento problém.

Kód: Vybrat vše

http://malwaretips.com/blogs/windows-pc-repair-removal/#uninstall
Avšak podla toho guide sa nepodarilo ho odstrániť.

Podarilo sa spustiť test po reštarte z avastu... niečo odstránilo no stále spomalenie po štarte pretrváva.

Ďakujem za odpoveďe už si sám neviem rady.

//ešte dodám že prevaŽne všetko som musel robiť v Safe môde keďže pri normálnom štarte je to po dvoch minútach nemoŽné

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomalenie NB

#2 Příspěvek od Rudy »

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Ruben
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 29 kvě 2014 11:36
Bydliště: Bratislava

Re: Spomalenie NB

#3 Příspěvek od Ruben »

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:18-10-2015
Ran by xxx (administrator) on PC (18-10-2015 18:15:43)
Running from C:\Users\xxx\Desktop
Loaded Profiles: xxx (Available Profiles: xxx)
Platform: Microsoft Windows 8 (X86) Language: Slovenčina (Slovensko)
Internet Explorer Version 10 (Default browser: FF)
Boot Mode: Safe Mode (with Networking)
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_19_0_0_185.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_19_0_0_185.exe
(forum.viry.cz) C:\Users\xxx\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1316136 2008-06-20] (Synaptics, Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [6134544 2015-10-18] (AVAST Software)
HKU\S-1-5-21-4029872173-2247020367-3164084679-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [5489944 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-4029872173-2247020367-3164084679-1001\...\Run: [Steam] => C:\Program Files\Steam\Steam.exe [2899136 2015-08-19] (Valve Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2015-10-18] (AVAST Software)
Startup: C:\Users\xxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Orezávač obrazovky a spúšťač programu OneNote 2007.lnk [2015-06-18]
ShortcutTarget: Orezávač obrazovky a spúšťač programu OneNote 2007.lnk -> C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
GroupPolicy: Restriction - Chrome <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{48367238-1818-498B-B947-CCBEA88EE9A0}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{4884CEB1-9F0E-4E37-9CE4-14075FB4CFC0}: [NameServer] 213.151.222.34 85.237.225.250
Tcpip\..\Interfaces\{6583B60A-1BC9-41BF-B6D8-11A30294EE11}: [NameServer] 213.151.222.34 85.237.225.250
Tcpip\..\Interfaces\{6EF9C44E-9A88-4D5D-AA87-B38046F746B6}: [NameServer] 213.151.222.34 85.237.225.250
Tcpip\..\Interfaces\{8CA7C5CE-5767-48D8-9D3A-A87DD715B41E}: [NameServer] 213.151.222.34 85.237.225.250
Tcpip\..\Interfaces\{D8AE6420-E69B-4F08-B64A-DCAF2667A2BC}: [NameServer] 213.151.222.34 85.237.225.250
Tcpip\..\Interfaces\{E2F9C98C-9C4F-405D-8CA5-612290A7841E}: [NameServer] 213.151.222.34 85.237.225.250

Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-4029872173-2247020367-3164084679-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-10-18] (AVAST Software)
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} hxxp://download.eset.com/special/eos/OnlineScanner.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2006-10-27] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\7b2knmod.default
FF NewTab:
FF SelectedSearchEngine: Default
FF Keyword.URL:
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_19_0_0_185.dll [2015-09-23] ()
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin HKU\S-1-5-21-4029872173-2247020367-3164084679-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\xxx\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-06-08] (Unity Technologies ApS)
FF SearchPlugin: C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\7b2knmod.default\searchplugins\yahoo-lavasoft.xml [2015-09-12]
FF Extension: 8f8fe09b0bd34470bc1b8cad42b8203a - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\7b2knmod.default\Extensions\{8f8fe09b-0bd3-4470-bc1b-8cad42b8203a} [2015-09-23] [not signed]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-10-18] [not signed]
FF ExtraCheck: C:\Program Files\mozilla firefox\browser\defaults\preferences\prefs.js [2015-09-23] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files\mozilla firefox\cfg [2015-09-23] <==== ATTENTION

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-10-18]

Opera:
=======
StartMenuInternet: (HKLM) Opera - C:\Program Files\Opera\Opera.exe hxxp://www.mystartsearch.com/?type=sc&ts=14441 ... X87EVFC7HS

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600 2015-10-18] (AVAST Software)
S2 HitmanProScheduler; C:\Program Files\HitmanPro\hmpsched.exe [106248 2015-10-18] (SurfRight B.V.)
S2 HWDeviceService.exe; C:\ProgramData\DatacardService\HWDeviceService.exe [276048 2014-01-15] ()
S2 Mobile Partner. RunOuc; C:\Program Files\Mobile Partner\UpdateDog\ouc.exe [651856 2013-10-26] ()
S2 slsvc; C:\Windows\slsvc.exe [10240 2012-09-25] (Microsoft Corporation) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [14480 2015-07-06] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24016 2015-10-18] (AVAST Software)
S2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [76000 2015-10-18] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81728 2015-10-18] (AVAST Software)
S0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49776 2015-10-18] (AVAST Software)
S1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [789296 2015-10-18] (AVAST Software)
S1 aswSP; C:\Windows\system32\drivers\aswSP.sys [434184 2015-10-18] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [115640 2015-10-18] (AVAST Software)
S0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [208664 2015-10-18] (AVAST Software)
S3 hitmanpro37; C:\Windows\system32\drivers\hitmanpro37.sys [32384 2015-10-18] ()
S3 hwusb_cdcacm; C:\Windows\system32\DRIVERS\ew_cdcacm.sys [111872 2014-07-25] (Huawei Technologies Co., Ltd.)
S3 hwusb_wwanecm; C:\Windows\system32\DRIVERS\ew_wwanecm.sys [319872 2014-09-30] (Huawei Technologies Co., Ltd.)
R3 netwlv32; C:\Windows\system32\DRIVERS\netwlv32.sys [6637056 2012-06-02] (Intel Corporation)
R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [27024 2013-11-01] (Windows (R) Win 7 DDK provider)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [38928 2015-07-06] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [244600 2015-07-06] (Microsoft Corporation)
S3 WUDFSensorLP; C:\Windows\system32\DRIVERS\WUDFRd.sys [155136 2012-07-26] (Microsoft Corporation)
S3 WUDFWpdMtp; C:\Windows\System32\drivers\WUDFRd.sys [155136 2012-07-26] (Microsoft Corporation)
U5 AppMgmt; C:\Windows\system32\svchost.exe [23040 2012-07-26] (Microsoft Corporation)
S3 catchme; \??\C:\Users\xxx\AppData\Local\Temp\catchme.sys [X]
S3 cpuz138; \??\C:\Users\xxx\AppData\Local\Temp\cpuz138\cpuz138_x32.sys [X]
U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [52224 2012-07-26] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-10-18 18:15 - 2015-10-18 18:16 - 00009841 _____ C:\Users\xxx\Desktop\FRST.txt
2015-10-18 18:15 - 2015-10-18 18:15 - 00000000 ____D C:\FRST
2015-10-18 18:13 - 2015-10-18 18:13 - 00112640 _____ (forum.viry.cz) C:\Users\xxx\Desktop\FRSTLauncher.exe
2015-10-18 18:12 - 2015-10-18 18:12 - 01700864 _____ (Farbar) C:\Users\xxx\Desktop\FRST.exe
2015-10-18 13:02 - 2015-10-18 13:02 - 00000000 _____ C:\Windows\setuperr.log
2015-10-18 13:02 - 2015-10-18 13:02 - 00000000 _____ C:\Windows\setupact.log
2015-10-18 13:00 - 2015-10-18 13:20 - 00032384 _____ C:\Windows\system32\Drivers\hitmanpro37.sys
2015-10-18 11:51 - 2015-10-18 11:51 - 00000117 _____ C:\Windows\system32\netcfg-118123.txt
2015-10-18 11:43 - 2015-10-18 11:43 - 00000000 ____D C:\Users\xxx\AppData\Roaming\AVAST Software
2015-10-18 11:32 - 2015-10-18 11:32 - 00002079 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2015-10-18 11:32 - 2015-10-18 11:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2015-10-18 11:31 - 2015-10-18 11:31 - 00789296 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2015-10-18 11:31 - 2015-10-18 11:31 - 00434184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2015-10-18 11:31 - 2015-10-18 11:31 - 00313472 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2015-10-18 11:31 - 2015-10-18 11:31 - 00208664 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2015-10-18 11:31 - 2015-10-18 11:31 - 00115640 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2015-10-18 11:31 - 2015-10-18 11:31 - 00081728 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2015-10-18 11:31 - 2015-10-18 11:31 - 00076000 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2015-10-18 11:31 - 2015-10-18 11:31 - 00049776 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2015-10-18 11:31 - 2015-10-18 11:31 - 00043112 _____ (AVAST Software) C:\Windows\avastSS.scr
2015-10-18 11:31 - 2015-10-18 11:31 - 00024016 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2015-10-18 11:23 - 2015-10-18 11:23 - 00000000 ____D C:\Program Files\AVAST Software
2015-10-18 11:21 - 2015-10-18 11:21 - 05006864 _____ (AVAST Software) C:\Users\xxx\Downloads\avast_free_antivirus_setup_online(1).exe
2015-10-18 11:20 - 2015-10-18 11:31 - 136810768 _____ (Microsoft Corporation) C:\Users\xxx\Downloads\msert.exe
2015-10-18 11:13 - 2015-10-18 11:13 - 00002328 _____ C:\Windows\system32\.crusader
2015-10-18 11:08 - 2015-10-18 11:13 - 00000000 ____D C:\ProgramData\HitmanPro
2015-10-18 11:08 - 2015-10-18 11:08 - 00001897 _____ C:\Users\Public\Desktop\HitmanPro.lnk
2015-10-18 11:08 - 2015-10-18 11:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro
2015-10-18 11:08 - 2015-10-18 11:08 - 00000000 ____D C:\Program Files\HitmanPro
2015-10-18 11:05 - 2015-10-18 11:07 - 10357568 _____ (SurfRight B.V.) C:\Users\xxx\Downloads\HitmanPro.exe
2015-10-18 10:43 - 2015-10-18 11:41 - 00170200 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-10-18 10:43 - 2015-10-18 10:43 - 00001064 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-10-18 10:43 - 2015-10-18 10:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-10-18 10:43 - 2015-10-18 10:43 - 00000000 ____D C:\Program Files\Malwarebytes Anti-Malware
2015-10-18 10:43 - 2015-10-05 09:50 - 00094936 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-10-18 10:43 - 2015-10-05 09:50 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-10-18 10:43 - 2015-10-05 09:50 - 00023256 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2015-10-18 10:37 - 2015-10-18 10:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune
2015-10-18 10:37 - 2015-10-18 10:37 - 00000000 ____D C:\Program Files\HD Tune
2015-10-18 10:36 - 2015-10-18 10:36 - 00642632 _____ (EFD Software ) C:\Users\xxx\Downloads\hdtune_255.exe
2015-10-18 02:02 - 2015-10-18 02:02 - 00001087 _____ C:\Users\Public\Desktop\CPUID HWMonitor.lnk
2015-10-18 02:02 - 2015-10-18 02:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2015-10-18 02:02 - 2015-10-18 02:02 - 00000000 ____D C:\Program Files\CPUID
2015-10-18 01:59 - 2015-10-18 01:59 - 00000941 _____ C:\Users\Public\Desktop\Speccy.lnk
2015-10-18 01:59 - 2015-10-18 01:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy
2015-10-18 01:59 - 2015-10-18 01:59 - 00000000 ____D C:\Program Files\Speccy
2015-10-18 01:56 - 2015-10-18 01:56 - 00000117 _____ C:\Windows\system32\netcfg-56456.txt
2015-10-18 01:09 - 2015-10-18 01:09 - 00000117 _____ C:\Windows\system32\netcfg-53789.txt
2015-10-17 21:31 - 2015-10-17 21:31 - 00000117 _____ C:\Windows\system32\netcfg-204392.txt
2015-10-17 20:52 - 2015-10-17 20:52 - 00000167 _____ C:\Windows\system32\netcfg-2615013.txt
2015-10-17 20:51 - 2015-10-17 20:51 - 00000117 _____ C:\Windows\system32\netcfg-2544329.txt
2015-10-17 15:31 - 2015-10-17 15:31 - 00000117 _____ C:\Windows\system32\netcfg-163879.txt
2015-10-17 15:30 - 2015-10-18 13:21 - 00382084 _____ C:\Windows\WindowsUpdate.log
2015-10-17 15:15 - 2015-10-17 15:15 - 00017100 _____ C:\ComboFix.txt
2015-10-17 13:25 - 2015-10-17 15:15 - 00000000 ____D C:\Qoobox
2015-10-17 13:25 - 2015-10-17 13:25 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-10-17 13:25 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe
2015-10-17 13:25 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe
2015-10-17 13:25 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-10-17 13:25 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-10-17 13:25 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-10-17 13:25 - 2000-08-31 02:00 - 00212480 _____ (SteelWerX) C:\Windows\SWXCACLS.exe
2015-10-17 13:25 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe
2015-10-17 13:25 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe
2015-10-17 13:25 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe
2015-10-17 13:24 - 2015-10-17 15:13 - 00000000 ____D C:\Windows\erdnt
2015-10-17 13:21 - 2015-10-18 11:40 - 00342528 _____ C:\Windows\PFRO.log
2015-10-17 13:16 - 2015-10-18 10:42 - 00000000 ____D C:\AdwCleaner
2015-10-17 13:11 - 2015-10-17 15:25 - 00001434 _____ C:\Users\xxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-10-17 12:59 - 2015-10-17 12:59 - 00000000 ____D C:\Windows\pss
2015-10-17 12:39 - 2015-10-17 12:39 - 00000117 _____ C:\Windows\system32\netcfg-336213.txt
2015-10-17 11:07 - 2015-10-17 11:07 - 00000117 _____ C:\Windows\system32\netcfg-118997.txt
2015-10-17 11:00 - 2015-10-17 11:00 - 00000117 _____ C:\Windows\system32\netcfg-491091.txt
2015-10-17 10:55 - 2015-10-17 10:55 - 00000117 _____ C:\Windows\system32\netcfg-177217.txt
2015-10-17 09:21 - 2015-10-17 09:21 - 00000117 _____ C:\Windows\system32\netcfg-222785.txt
2015-10-17 08:14 - 2015-10-17 08:14 - 00000117 _____ C:\Windows\system32\netcfg-201100.txt
2015-10-16 20:58 - 2015-10-16 20:58 - 00000117 _____ C:\Windows\system32\netcfg-237371.txt
2015-10-16 20:57 - 2015-10-16 20:57 - 00000117 _____ C:\Windows\system32\netcfg-198074.txt
2015-10-16 20:38 - 2015-10-16 20:38 - 00000117 _____ C:\Windows\system32\netcfg-248961.txt
2015-10-16 20:37 - 2015-10-16 20:37 - 00000117 _____ C:\Windows\system32\netcfg-205422.txt
2015-10-16 20:26 - 2015-10-16 20:26 - 00000117 _____ C:\Windows\system32\netcfg-248400.txt
2015-10-16 13:24 - 2015-10-16 13:24 - 00000000 _____ C:\Users\xxx\AppData\Local\{1F77166B-FB4C-4432-B81F-AF80F99528C0}
2015-10-15 18:33 - 2015-10-15 18:33 - 00003648 ____N C:\bootsqm.dat
2015-10-15 18:33 - 2015-10-15 18:33 - 00000000 ____D C:\found.000
2015-10-15 13:54 - 2015-10-15 13:54 - 00000117 _____ C:\Windows\system32\netcfg-262081.txt
2015-10-15 13:54 - 2015-10-15 13:54 - 00000117 _____ C:\Windows\system32\netcfg-220398.txt
2015-10-15 13:53 - 2015-10-15 13:53 - 00000117 _____ C:\Windows\system32\netcfg-198214.txt
2015-10-15 13:15 - 2015-10-15 13:15 - 00000117 _____ C:\Windows\system32\netcfg-294139.txt
2015-10-15 13:03 - 2015-10-15 13:03 - 00000117 _____ C:\Windows\system32\netcfg-207418.txt
2015-10-15 13:03 - 2015-10-15 13:03 - 00000117 _____ C:\Windows\system32\netcfg-177747.txt
2015-10-15 10:21 - 2015-10-15 10:21 - 00000092 _____ C:\Windows\system32\netcfg-305449.txt
2015-10-15 10:18 - 2015-10-15 10:18 - 00000117 _____ C:\Windows\system32\netcfg-128732.txt
2015-10-15 10:08 - 2015-10-15 10:08 - 00000117 _____ C:\Windows\system32\netcfg-216997.txt
2015-10-15 09:59 - 2015-10-15 09:59 - 00000117 _____ C:\Windows\system32\netcfg-225764.txt
2015-10-15 09:47 - 2015-10-15 09:47 - 00000117 _____ C:\Windows\system32\netcfg-205125.txt
2015-10-15 07:48 - 2015-10-15 07:48 - 00000117 _____ C:\Windows\system32\netcfg-173161.txt
2015-10-14 17:41 - 2015-10-14 17:41 - 00000117 _____ C:\Windows\system32\netcfg-276262.txt
2015-10-14 17:40 - 2015-10-14 17:40 - 00000117 _____ C:\Windows\system32\netcfg-199509.txt
2015-10-14 17:30 - 2015-10-14 17:30 - 00000117 _____ C:\Windows\system32\netcfg-261863.txt
2015-10-14 14:19 - 2015-10-14 14:26 - 00000117 _____ C:\Windows\system32\netcfg-864978.txt
2015-10-14 13:16 - 2015-10-14 13:16 - 00000117 _____ C:\Windows\system32\netcfg-231864.txt
2015-10-14 12:13 - 2015-10-14 12:13 - 00000000 _____ C:\Users\xxx\AppData\Local\{CA0B1120-2011-45EA-A94A-DC540346D784}
2015-10-13 16:44 - 2015-10-13 16:44 - 00000117 _____ C:\Windows\system32\netcfg-652770.txt
2015-10-13 16:42 - 2015-10-13 16:43 - 00000117 _____ C:\Windows\system32\netcfg-546565.txt
2015-10-13 16:36 - 2015-10-13 16:36 - 00000117 _____ C:\Windows\system32\netcfg-167654.txt
2015-10-13 16:35 - 2015-10-13 16:35 - 00000117 _____ C:\Windows\system32\netcfg-112445.txt
2015-10-13 11:39 - 2015-10-13 11:45 - 00000117 _____ C:\Windows\system32\netcfg-308476.txt
2015-10-13 11:37 - 2015-10-13 11:37 - 00000117 _____ C:\Windows\system32\netcfg-154425.txt
2015-10-13 10:07 - 2015-10-13 10:07 - 00000117 _____ C:\Windows\system32\netcfg-8340624.txt
2015-10-13 08:06 - 2015-10-13 08:06 - 00000117 _____ C:\Windows\system32\netcfg-1043287.txt
2015-10-13 07:59 - 2015-10-13 07:59 - 00000117 _____ C:\Windows\system32\netcfg-615938.txt
2015-10-13 07:51 - 2015-10-13 07:51 - 00000135 _____ C:\Windows\system32\netcfg-166172.txt
2015-10-13 07:51 - 2015-10-13 07:51 - 00000128 _____ C:\Windows\system32\netcfg-173223.txt
2015-10-13 07:51 - 2015-10-13 07:51 - 00000128 _____ C:\Windows\system32\netcfg-167201.txt
2015-10-13 07:51 - 2015-10-13 07:51 - 00000127 _____ C:\Windows\system32\netcfg-169463.txt
2015-10-13 00:41 - 2015-10-13 00:41 - 00000135 _____ C:\Windows\system32\netcfg-210585.txt
2015-10-13 00:41 - 2015-10-13 00:41 - 00000129 _____ C:\Windows\system32\netcfg-208760.txt
2015-10-13 00:41 - 2015-10-13 00:41 - 00000128 _____ C:\Windows\system32\netcfg-220725.txt
2015-10-13 00:41 - 2015-10-13 00:41 - 00000128 _____ C:\Windows\system32\netcfg-211630.txt
2015-10-13 00:41 - 2015-10-13 00:41 - 00000127 _____ C:\Windows\system32\netcfg-212910.txt
2015-10-13 00:41 - 2015-10-13 00:41 - 00000126 _____ C:\Windows\system32\netcfg-212364.txt
2015-10-12 21:12 - 2015-10-12 21:12 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2015-10-12 21:12 - 2015-10-12 21:12 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2015-10-12 19:09 - 2015-10-12 19:09 - 00000117 _____ C:\Windows\system32\netcfg-144534.txt
2015-10-12 17:53 - 2015-10-12 17:53 - 00000117 _____ C:\Windows\system32\netcfg-173457.txt
2015-10-12 17:52 - 2015-10-12 17:52 - 00000117 _____ C:\Windows\system32\netcfg-157795.txt
2015-10-12 17:00 - 2015-10-12 17:00 - 00000117 _____ C:\Windows\system32\netcfg-1588526.txt
2015-10-12 16:36 - 2015-10-12 16:36 - 00000117 _____ C:\Windows\system32\netcfg-159838.txt
2015-10-12 16:03 - 2015-10-12 16:03 - 00000117 _____ C:\Windows\system32\netcfg-158465.txt
2015-10-12 16:03 - 2015-10-12 16:03 - 00000117 _____ C:\Windows\system32\netcfg-147608.txt
2015-10-12 12:53 - 2015-10-12 12:53 - 00000117 _____ C:\Windows\system32\netcfg-241583.txt
2015-10-12 12:51 - 2015-10-12 12:51 - 00000117 _____ C:\Windows\system32\netcfg-111447.txt
2015-10-12 11:37 - 2015-10-12 11:37 - 00000117 _____ C:\Windows\system32\netcfg-172271.txt
2015-10-12 11:36 - 2015-10-12 11:36 - 00000117 _____ C:\Windows\system32\netcfg-122819.txt
2015-10-12 10:49 - 2015-10-12 10:49 - 00000117 _____ C:\Windows\system32\netcfg-167857.txt
2015-10-12 10:48 - 2015-10-12 10:48 - 00000117 _____ C:\Windows\system32\netcfg-161507.txt
2015-10-12 10:24 - 2015-10-12 10:24 - 00000117 _____ C:\Windows\system32\netcfg-170836.txt
2015-10-12 10:24 - 2015-10-12 10:24 - 00000117 _____ C:\Windows\system32\netcfg-151632.txt
2015-10-12 07:32 - 2015-10-12 07:32 - 00000117 _____ C:\Windows\system32\netcfg-579996.txt
2015-10-12 07:24 - 2015-10-12 07:24 - 00000117 _____ C:\Windows\system32\netcfg-101182.txt
2015-10-12 07:19 - 2015-10-12 07:19 - 00000117 _____ C:\Windows\system32\netcfg-1507749.txt
2015-10-12 06:57 - 2015-10-12 06:57 - 00000117 _____ C:\Windows\system32\netcfg-136173.txt
2015-10-11 14:12 - 2015-10-11 14:12 - 00000117 _____ C:\Windows\system32\netcfg-2905081.txt
2015-10-11 13:38 - 2015-10-11 13:38 - 00000117 _____ C:\Windows\system32\netcfg-827054.txt
2015-10-11 13:27 - 2015-10-11 13:27 - 00000117 _____ C:\Windows\system32\netcfg-165345.txt
2015-10-11 13:26 - 2015-10-11 13:26 - 00000117 _____ C:\Windows\system32\netcfg-144269.txt
2015-10-11 13:19 - 2015-10-11 13:19 - 00000117 _____ C:\Windows\system32\netcfg-166063.txt
2015-10-11 12:51 - 2015-10-11 12:51 - 00000117 _____ C:\Windows\system32\netcfg-142787.txt
2015-10-11 12:45 - 2015-10-11 12:45 - 00000117 _____ C:\Windows\system32\netcfg-140978.txt
2015-10-11 11:51 - 2015-10-11 11:51 - 00000117 _____ C:\Windows\system32\netcfg-173207.txt
2015-10-11 11:51 - 2015-10-11 11:51 - 00000117 _____ C:\Windows\system32\netcfg-158419.txt
2015-10-11 11:13 - 2015-10-11 11:13 - 00000117 _____ C:\Windows\system32\netcfg-11013405.txt
2015-10-11 11:07 - 2015-10-11 11:07 - 00000117 _____ C:\Windows\system32\netcfg-10669859.txt
2015-10-11 11:00 - 2015-10-11 11:00 - 00000117 _____ C:\Windows\system32\netcfg-10234554.txt
2015-10-11 11:00 - 2015-10-11 11:00 - 00000117 _____ C:\Windows\system32\netcfg-10230108.txt
2015-10-11 10:58 - 2015-10-11 10:58 - 00000117 _____ C:\Windows\system32\netcfg-10147631.txt
2015-10-11 10:58 - 2015-10-11 10:58 - 00000117 _____ C:\Windows\system32\netcfg-10139487.txt
2015-10-11 10:35 - 2015-10-11 10:35 - 00000117 _____ C:\Windows\system32\netcfg-8740814.txt
2015-10-11 10:35 - 2015-10-11 10:35 - 00000117 _____ C:\Windows\system32\netcfg-8733169.txt
2015-10-11 10:34 - 2015-10-11 10:34 - 00000117 _____ C:\Windows\system32\netcfg-8697929.txt
2015-10-11 09:36 - 2015-10-11 09:36 - 00000117 _____ C:\Windows\system32\netcfg-5222726.txt
2015-10-11 09:22 - 2015-10-11 09:22 - 00000117 _____ C:\Windows\system32\netcfg-4359697.txt
2015-10-11 09:21 - 2015-10-11 09:21 - 00000117 _____ C:\Windows\system32\netcfg-4287313.txt
2015-10-11 08:13 - 2015-10-11 08:13 - 00000117 _____ C:\Windows\system32\netcfg-196639.txt
2015-10-11 08:12 - 2015-10-11 08:13 - 00000117 _____ C:\Windows\system32\netcfg-193893.txt
2015-10-10 20:58 - 2015-10-10 20:58 - 00000117 _____ C:\Windows\system32\netcfg-1753981.txt
2015-10-10 20:57 - 2015-10-10 20:57 - 00000117 _____ C:\Windows\system32\netcfg-1693188.txt
2015-10-10 20:32 - 2015-10-10 20:32 - 00000117 _____ C:\Windows\system32\netcfg-211318.txt
2015-10-10 17:35 - 2015-10-10 17:35 - 00000117 _____ C:\Windows\system32\netcfg-236185.txt
2015-10-10 17:35 - 2015-10-10 17:35 - 00000117 _____ C:\Windows\system32\netcfg-193160.txt
2015-10-10 12:31 - 2015-10-10 12:31 - 00000117 _____ C:\Windows\system32\netcfg-646156.txt
2015-10-10 12:28 - 2015-10-10 12:28 - 00000117 _____ C:\Windows\system32\netcfg-430016.txt
2015-10-10 12:24 - 2015-10-10 12:25 - 00000117 _____ C:\Windows\system32\netcfg-243860.txt
2015-10-09 18:24 - 2015-10-09 18:24 - 00000117 _____ C:\Windows\system32\netcfg-178792.txt
2015-10-09 17:40 - 2015-10-09 17:40 - 00000117 _____ C:\Windows\system32\netcfg-168590.txt
2015-10-09 17:40 - 2015-10-09 17:40 - 00000117 _____ C:\Windows\system32\netcfg-151570.txt
2015-10-09 17:33 - 2015-10-09 17:33 - 00000117 _____ C:\Windows\system32\netcfg-146828.txt
2015-10-09 17:33 - 2015-10-09 17:33 - 00000117 _____ C:\Windows\system32\netcfg-132210.txt
2015-10-09 17:27 - 2015-10-09 17:27 - 00000117 _____ C:\Windows\system32\netcfg-137546.txt
2015-10-09 17:27 - 2015-10-09 17:27 - 00000117 _____ C:\Windows\system32\netcfg-128966.txt
2015-10-09 17:23 - 2015-10-09 17:23 - 00000117 _____ C:\Windows\system32\netcfg-123583.txt
2015-10-09 12:37 - 2015-10-09 12:37 - 00000117 _____ C:\Windows\system32\netcfg-146796.txt
2015-10-09 12:37 - 2015-10-09 12:37 - 00000117 _____ C:\Windows\system32\netcfg-127702.txt
2015-10-09 12:29 - 2015-10-09 12:29 - 00000117 _____ C:\Windows\system32\netcfg-146188.txt
2015-10-09 12:29 - 2015-10-09 12:29 - 00000117 _____ C:\Windows\system32\netcfg-125814.txt
2015-10-08 17:35 - 2015-10-08 17:35 - 00000117 _____ C:\Windows\system32\netcfg-204798.txt
2015-10-08 17:34 - 2015-10-08 17:34 - 00000117 _____ C:\Windows\system32\netcfg-120105.txt
2015-10-08 15:41 - 2015-10-08 15:41 - 00000117 _____ C:\Windows\system32\netcfg-1018561.txt
2015-10-08 15:27 - 2015-10-08 15:27 - 00000117 _____ C:\Windows\system32\netcfg-135939.txt
2015-10-08 15:27 - 2015-10-08 15:27 - 00000117 _____ C:\Windows\system32\netcfg-120994.txt
2015-10-08 13:30 - 2015-10-08 13:30 - 00000117 _____ C:\Windows\system32\netcfg-3749437.txt
2015-10-08 12:30 - 2015-10-08 12:30 - 00000117 _____ C:\Windows\system32\netcfg-129761.txt
2015-10-08 12:26 - 2015-10-08 12:26 - 00000117 _____ C:\Windows\system32\netcfg-131696.txt
2015-10-08 12:19 - 2015-10-08 12:19 - 00000117 _____ C:\Windows\system32\netcfg-123599.txt
2015-10-08 09:24 - 2015-10-08 09:24 - 00000117 _____ C:\Windows\system32\netcfg-193347.txt
2015-10-08 09:23 - 2015-10-08 09:23 - 00000117 _____ C:\Windows\system32\netcfg-129980.txt
2015-10-08 09:07 - 2015-10-08 09:07 - 00000117 _____ C:\Windows\system32\netcfg-164659.txt
2015-10-08 09:06 - 2015-10-08 09:06 - 00000117 _____ C:\Windows\system32\netcfg-125534.txt
2015-10-07 19:27 - 2015-10-07 19:27 - 00000117 _____ C:\Windows\system32\netcfg-150509.txt
2015-10-07 19:26 - 2015-10-07 19:26 - 00000117 _____ C:\Windows\system32\netcfg-114785.txt
2015-10-07 19:23 - 2015-10-07 19:23 - 00000117 _____ C:\Windows\system32\netcfg-603318.txt
2015-10-07 19:21 - 2015-10-07 19:21 - 00000117 _____ C:\Windows\system32\netcfg-523991.txt
2015-10-07 19:16 - 2015-10-07 19:16 - 00000117 _____ C:\Windows\system32\netcfg-191335.txt
2015-10-07 19:15 - 2015-10-07 19:15 - 00000117 _____ C:\Windows\system32\netcfg-118248.txt
2015-10-07 16:59 - 2015-10-07 16:59 - 00000117 _____ C:\Windows\system32\netcfg-150478.txt
2015-10-07 16:58 - 2015-10-07 16:58 - 00000117 _____ C:\Windows\system32\netcfg-123771.txt
2015-10-07 10:46 - 2015-10-07 10:46 - 00000117 _____ C:\Windows\system32\netcfg-148403.txt
2015-10-07 10:45 - 2015-10-07 10:45 - 00000117 _____ C:\Windows\system32\netcfg-113989.txt
2015-10-07 06:46 - 2015-10-07 06:46 - 00000117 _____ C:\Windows\system32\netcfg-30011831.txt
2015-10-06 20:06 - 2015-10-06 20:06 - 00000117 _____ C:\Windows\system32\netcfg-201615.txt
2015-10-06 19:48 - 2015-10-06 19:48 - 00000117 _____ C:\Windows\system32\netcfg-227761.txt
2015-10-06 19:47 - 2015-10-06 19:47 - 00000117 _____ C:\Windows\system32\netcfg-218791.txt
2015-10-06 19:28 - 2015-10-06 19:28 - 00000117 _____ C:\Windows\system32\netcfg-202130.txt
2015-10-06 19:28 - 2015-10-06 19:28 - 00000117 _____ C:\Windows\system32\netcfg-198667.txt
2015-10-06 18:21 - 2015-10-06 18:21 - 00000117 _____ C:\Windows\system32\netcfg-27495971.txt
2015-10-06 18:19 - 2015-10-06 18:19 - 00000117 _____ C:\Windows\system32\netcfg-27416333.txt
2015-10-06 17:23 - 2015-10-06 17:23 - 00000117 _____ C:\Windows\system32\netcfg-24045666.txt
2015-10-06 17:22 - 2015-10-06 17:22 - 00000117 _____ C:\Windows\system32\netcfg-23948103.txt
2015-10-06 13:34 - 2015-10-06 13:34 - 00000316 _____ C:\Users\xxx\Downloads\Jednotka CD - odkaz.lnk
2015-10-06 10:57 - 2015-10-06 10:57 - 00000117 _____ C:\Windows\system32\netcfg-892622.txt
2015-10-06 10:40 - 2015-10-06 10:40 - 00000117 _____ C:\Windows\system32\netcfg-4303287.txt
2015-10-06 10:39 - 2015-10-06 10:39 - 00000117 _____ C:\Windows\system32\netcfg-4217237.txt
2015-10-06 09:32 - 2015-10-06 09:32 - 00000117 _____ C:\Windows\system32\netcfg-210242.txt
2015-10-06 09:22 - 2015-10-06 09:22 - 00000117 _____ C:\Windows\system32\netcfg-213346.txt
2015-10-05 19:19 - 2015-10-05 19:19 - 00000117 _____ C:\Windows\system32\netcfg-197965.txt
2015-10-05 19:02 - 2015-10-05 19:02 - 00000117 _____ C:\Windows\system32\netcfg-193800.txt
2015-10-05 19:02 - 2015-10-05 19:02 - 00000117 _____ C:\Windows\system32\netcfg-192645.txt
2015-10-05 18:54 - 2015-10-05 18:54 - 00000117 _____ C:\Windows\system32\netcfg-219649.txt
2015-10-05 18:54 - 2015-10-05 18:54 - 00000117 _____ C:\Windows\system32\netcfg-208588.txt
2015-10-05 18:43 - 2015-10-05 18:43 - 00000117 _____ C:\Windows\system32\netcfg-134862.txt
2015-10-05 18:38 - 2015-10-05 18:40 - 00000117 _____ C:\Windows\system32\netcfg-458908.txt
2015-10-05 18:29 - 2015-10-05 18:29 - 00000117 _____ C:\Windows\system32\netcfg-133224.txt
2015-10-05 18:10 - 2015-10-05 18:10 - 00000117 _____ C:\Windows\system32\netcfg-121290.txt
2015-10-05 18:04 - 2015-10-05 18:04 - 00000117 _____ C:\Windows\system32\netcfg-135330.txt
2015-10-05 18:03 - 2015-10-05 18:03 - 00000117 _____ C:\Windows\system32\netcfg-114629.txt
2015-10-05 17:07 - 2015-10-05 17:07 - 00000117 _____ C:\Windows\system32\netcfg-7131710.txt
2015-10-05 17:06 - 2015-10-05 17:06 - 00000117 _____ C:\Windows\system32\netcfg-7065768.txt
2015-10-05 15:10 - 2015-10-05 15:10 - 00000117 _____ C:\Windows\system32\netcfg-112055.txt
2015-10-05 14:22 - 2015-10-05 14:22 - 00000117 _____ C:\Windows\system32\netcfg-146282.txt
2015-10-05 14:22 - 2015-10-05 14:22 - 00000117 _____ C:\Windows\system32\netcfg-122429.txt
2015-10-05 10:29 - 2015-10-05 10:29 - 00000117 _____ C:\Windows\system32\netcfg-151071.txt
2015-10-05 10:29 - 2015-10-05 10:29 - 00000117 _____ C:\Windows\system32\netcfg-128170.txt
2015-10-05 08:17 - 2015-10-05 08:17 - 00000117 _____ C:\Windows\system32\netcfg-187638.txt
2015-10-05 08:16 - 2015-10-05 08:16 - 00000117 _____ C:\Windows\system32\netcfg-124379.txt
2015-10-05 08:00 - 2015-10-05 08:00 - 00000117 _____ C:\Windows\system32\netcfg-146016.txt
2015-10-05 07:34 - 2015-10-05 07:43 - 00000117 _____ C:\Windows\system32\netcfg-790862.txt
2015-10-05 07:23 - 2015-10-05 07:23 - 00000117 _____ C:\Windows\system32\netcfg-151804.txt
2015-10-05 07:22 - 2015-10-05 07:22 - 00000117 _____ C:\Windows\system32\netcfg-116719.txt
2015-10-04 15:24 - 2015-10-04 15:24 - 00000117 _____ C:\Windows\system32\netcfg-141180.txt
2015-10-04 15:23 - 2015-10-04 15:23 - 00000117 _____ C:\Windows\system32\netcfg-118825.txt
2015-10-04 10:26 - 2015-10-04 10:26 - 00000117 _____ C:\Windows\system32\netcfg-153302.txt
2015-10-04 10:26 - 2015-10-04 10:26 - 00000117 _____ C:\Windows\system32\netcfg-111930.txt
2015-10-04 09:57 - 2015-10-04 09:57 - 00000117 _____ C:\Windows\system32\netcfg-152802.txt
2015-10-04 09:56 - 2015-10-04 09:56 - 00000117 _____ C:\Windows\system32\netcfg-119387.txt
2015-10-04 09:33 - 2015-10-04 09:33 - 00000117 _____ C:\Windows\system32\netcfg-265310.txt
2015-10-04 09:31 - 2015-10-04 09:31 - 00000117 _____ C:\Windows\system32\netcfg-115487.txt
2015-10-04 09:21 - 2015-10-04 09:21 - 00000117 _____ C:\Windows\system32\netcfg-183628.txt
2015-10-04 09:21 - 2015-10-04 09:21 - 00000117 _____ C:\Windows\system32\netcfg-155782.txt
2015-10-04 09:19 - 2015-10-04 09:20 - 00427048 _____ C:\Windows\system32\FNTCACHE.DAT
2015-10-04 07:29 - 2015-10-04 07:29 - 00000117 _____ C:\Windows\system32\netcfg-365775.txt
2015-10-04 07:26 - 2015-10-04 07:26 - 00000134 _____ C:\Windows\system32\netcfg-201709.txt
2015-10-04 07:26 - 2015-10-04 07:26 - 00000134 _____ C:\Windows\system32\netcfg-192224.txt
2015-10-04 06:43 - 2015-10-04 06:43 - 00000117 _____ C:\Windows\system32\netcfg-50114322.txt
2015-10-04 06:40 - 2015-10-04 06:40 - 00000117 _____ C:\Windows\system32\netcfg-49907949.txt
2015-10-03 20:02 - 2015-10-03 20:02 - 00000117 _____ C:\Windows\system32\netcfg-11670746.txt
2015-10-03 19:45 - 2015-10-03 19:45 - 00000117 _____ C:\Windows\system32\netcfg-10599877.txt
2015-10-03 19:45 - 2015-10-03 19:45 - 00000117 _____ C:\Windows\system32\netcfg-10598130.txt
2015-10-03 18:27 - 2015-10-03 18:27 - 00000117 _____ C:\Windows\system32\netcfg-5950626.txt
2015-10-03 18:26 - 2015-10-03 18:26 - 00000117 _____ C:\Windows\system32\netcfg-5896790.txt
2015-10-03 16:51 - 2015-10-03 16:51 - 00000117 _____ C:\Windows\system32\netcfg-164159.txt
2015-10-03 16:50 - 2015-10-03 16:50 - 00000117 _____ C:\Windows\system32\netcfg-119496.txt
2015-10-03 16:03 - 2015-10-03 16:03 - 00000117 _____ C:\Windows\system32\netcfg-146328.txt
2015-10-03 16:02 - 2015-10-03 16:02 - 00000117 _____ C:\Windows\system32\netcfg-123490.txt
2015-10-03 12:04 - 2015-10-03 12:04 - 00000117 _____ C:\Windows\system32\netcfg-615923.txt
2015-10-03 12:03 - 2015-10-03 12:04 - 00000117 _____ C:\Windows\system32\netcfg-565410.txt
2015-10-03 11:56 - 2015-10-03 11:56 - 00000117 _____ C:\Windows\system32\netcfg-160415.txt
2015-10-03 11:56 - 2015-10-03 11:56 - 00000117 _____ C:\Windows\system32\netcfg-122101.txt
2015-10-03 11:03 - 2015-10-03 11:03 - 00000117 _____ C:\Windows\system32\netcfg-145080.txt
2015-10-03 11:02 - 2015-10-03 11:02 - 00000117 _____ C:\Windows\system32\netcfg-103475.txt
2015-10-03 10:36 - 2015-10-03 10:36 - 00000117 _____ C:\Windows\system32\netcfg-146562.txt
2015-10-03 10:35 - 2015-10-03 10:35 - 00000117 _____ C:\Windows\system32\netcfg-111306.txt
2015-10-03 09:09 - 2015-10-03 09:09 - 00000117 _____ C:\Windows\system32\netcfg-155127.txt
2015-10-03 09:08 - 2015-10-03 09:08 - 00000117 _____ C:\Windows\system32\netcfg-98327.txt
2015-10-03 09:03 - 2015-10-03 09:03 - 00000117 _____ C:\Windows\system32\netcfg-140822.txt
2015-10-03 09:03 - 2015-10-03 09:03 - 00000117 _____ C:\Windows\system32\netcfg-104286.txt
2015-10-03 08:53 - 2015-10-03 08:53 - 00000117 _____ C:\Windows\system32\netcfg-157670.txt
2015-10-03 08:52 - 2015-10-03 08:52 - 00000117 _____ C:\Windows\system32\netcfg-96174.txt
2015-10-03 07:09 - 2015-10-03 07:09 - 00000117 _____ C:\Windows\system32\netcfg-359270.txt
2015-10-03 07:04 - 2015-10-03 07:04 - 00000117 _____ C:\Windows\system32\netcfg-81978.txt
2015-10-02 22:37 - 2015-10-02 22:37 - 00000092 _____ C:\Windows\system32\netcfg-12104694.txt
2015-10-02 19:20 - 2015-10-02 19:20 - 00000117 _____ C:\Windows\system32\netcfg-276059.txt
2015-10-02 19:17 - 2015-10-02 19:17 - 00000117 _____ C:\Windows\system32\netcfg-115830.txt
2015-10-02 19:05 - 2015-10-02 19:05 - 00000117 _____ C:\Windows\system32\netcfg-139246.txt
2015-10-02 19:05 - 2015-10-02 19:05 - 00000117 _____ C:\Windows\system32\netcfg-134207.txt
2015-10-02 18:08 - 2015-10-02 18:08 - 00000117 _____ C:\Windows\system32\netcfg-148949.txt
2015-10-02 17:56 - 2015-10-02 17:57 - 00000117 _____ C:\Windows\system32\netcfg-11813815.txt
2015-10-02 17:36 - 2015-10-02 17:36 - 00000000 ____D C:\Program Files\6617f545-1b39-466e-a8a9-8687b0e3201c
2015-10-02 15:08 - 2015-10-02 15:08 - 00000117 _____ C:\Windows\system32\netcfg-1747148.txt
2015-10-02 14:41 - 2015-10-02 14:41 - 00000117 _____ C:\Windows\system32\netcfg-88733.txt
2015-10-02 10:59 - 2015-10-02 10:59 - 00000117 _____ C:\Windows\system32\netcfg-1328020.txt
2015-10-02 10:39 - 2015-10-02 10:39 - 00000117 _____ C:\Windows\system32\netcfg-128264.txt
2015-10-02 10:20 - 2015-10-02 10:20 - 00000117 _____ C:\Windows\system32\netcfg-139090.txt
2015-10-02 10:20 - 2015-10-02 10:20 - 00000117 _____ C:\Windows\system32\netcfg-126906.txt
2015-10-02 10:04 - 2015-10-02 10:04 - 00000117 _____ C:\Windows\system32\netcfg-171211.txt
2015-10-01 20:10 - 2015-10-01 20:10 - 00000117 _____ C:\Windows\system32\netcfg-129028.txt
2015-10-01 19:32 - 2015-10-01 19:32 - 00000117 _____ C:\Windows\system32\netcfg-31081389.txt
2015-10-01 19:31 - 2015-10-01 19:31 - 00000117 _____ C:\Windows\system32\netcfg-31017366.txt
2015-10-01 17:54 - 2015-09-02 15:38 - 00035328 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-10-01 17:54 - 2015-09-02 01:28 - 03388416 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-10-01 17:54 - 2015-08-28 23:59 - 00304128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-10-01 17:54 - 2012-11-08 06:24 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-10-01 17:54 - 2012-11-08 06:24 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-10-01 17:54 - 2012-11-08 06:01 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-10-01 17:53 - 2014-12-18 09:02 - 00038720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2015-10-01 17:53 - 2014-12-18 08:20 - 00702464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2015-10-01 17:53 - 2014-12-18 08:19 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2015-10-01 17:53 - 2014-12-18 08:19 - 00473600 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2015-10-01 17:53 - 2013-06-10 21:10 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2015-10-01 17:50 - 2014-12-19 06:04 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-10-01 17:49 - 2012-10-07 00:02 - 08855040 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2015-10-01 17:48 - 2015-06-15 17:22 - 02416640 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-10-01 17:48 - 2015-06-15 17:22 - 02037760 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-10-01 17:48 - 2015-06-15 17:22 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-10-01 17:48 - 2014-10-11 07:57 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-10-01 17:48 - 2014-06-13 01:34 - 00754176 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-10-01 17:48 - 2014-06-05 15:55 - 00104792 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-10-01 17:48 - 2013-03-06 07:02 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-10-01 17:48 - 2013-03-02 11:06 - 00057576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2015-10-01 17:37 - 2015-03-12 05:52 - 01374720 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2015-10-01 17:34 - 2014-09-03 04:48 - 00510464 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2015-10-01 17:34 - 2013-07-09 04:50 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2015-10-01 17:34 - 2013-07-09 04:49 - 00175872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2015-10-01 17:34 - 2013-07-02 00:15 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbprint.sys
2015-10-01 17:34 - 2013-06-29 04:32 - 00026496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2015-10-01 17:34 - 2013-06-29 04:31 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2015-10-01 17:34 - 2013-05-04 06:08 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2015-10-01 17:34 - 2012-11-20 06:56 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidi2c.sys
2015-10-01 17:31 - 2015-06-11 21:05 - 01079296 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-10-01 17:30 - 2015-02-24 09:11 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2015-10-01 17:26 - 2015-07-06 16:31 - 00244600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2015-10-01 17:25 - 2015-07-06 17:03 - 00038928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2015-10-01 17:22 - 2015-07-13 23:54 - 05590872 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-10-01 17:21 - 2015-07-13 23:37 - 01474544 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-10-01 17:21 - 2015-07-13 23:23 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2015-10-01 17:21 - 2015-07-13 23:23 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-10-01 17:21 - 2015-06-27 16:34 - 00155992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-10-01 17:21 - 2015-06-27 15:56 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2015-10-01 17:21 - 2015-06-27 15:55 - 00668160 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-10-01 17:21 - 2015-06-27 15:55 - 00273920 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-10-01 17:21 - 2015-06-25 20:09 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-10-01 17:21 - 2015-06-25 20:07 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-10-01 17:21 - 2015-05-02 06:36 - 00080728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-10-01 17:21 - 2015-04-14 00:09 - 00492256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-10-01 17:21 - 2015-01-15 12:00 - 01026560 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-10-01 17:21 - 2015-01-15 12:00 - 00961536 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll
2015-10-01 17:21 - 2015-01-15 11:09 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-10-01 17:21 - 2015-01-07 05:57 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-10-01 17:21 - 2014-10-11 07:05 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-10-01 17:21 - 2014-03-11 02:42 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-10-01 17:21 - 2014-03-11 02:41 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-10-01 17:21 - 2014-03-11 02:41 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-10-01 17:17 - 2013-12-05 01:37 - 00451072 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2015-10-01 17:05 - 2014-11-08 08:57 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2015-10-01 17:05 - 2014-04-12 09:24 - 00429056 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2015-10-01 17:05 - 2014-04-12 09:23 - 00350720 _____ (Microsoft Corporation) C:\Windows\system32\lsm.dll
2015-10-01 17:05 - 2014-04-12 09:23 - 00178688 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-10-01 17:05 - 2014-04-12 09:23 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-10-01 17:05 - 2014-04-12 09:22 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-10-01 16:55 - 2015-04-25 05:41 - 00541696 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-10-01 16:53 - 2015-03-04 07:22 - 00256832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2015-10-01 16:53 - 2015-03-04 06:52 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2015-10-01 16:53 - 2014-06-13 01:50 - 01229144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2015-10-01 16:53 - 2013-02-12 02:18 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2015-10-01 16:53 - 2013-01-10 01:51 - 00259816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2015-10-01 16:50 - 2012-09-19 06:39 - 17558016 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-10-01 16:42 - 2013-04-27 05:21 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2015-10-01 16:38 - 2014-07-24 05:33 - 00875688 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll
2015-10-01 16:31 - 2015-03-12 05:52 - 01933312 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2015-10-01 10:56 - 2015-10-01 10:56 - 00000117 _____ C:\Windows\system32\netcfg-129371.txt
2015-10-01 10:55 - 2015-10-01 10:55 - 00000117 _____ C:\Windows\system32\netcfg-100012.txt
2015-10-01 10:27 - 2015-10-01 10:27 - 00000117 _____ C:\Windows\system32\netcfg-179447.txt
2015-10-01 10:26 - 2015-10-01 10:26 - 00000117 _____ C:\Windows\system32\netcfg-105175.txt
2015-10-01 10:02 - 2015-10-17 15:25 - 00000000 ____D C:\Users\xxx\AppData\Local\461A9904-F6F2-4549-B67B-AAA44BD21C2
2015-10-01 09:34 - 2015-10-01 09:34 - 00000117 _____ C:\Windows\system32\netcfg-611570.txt
2015-10-01 09:34 - 2015-10-01 09:34 - 00000117 _____ C:\Windows\system32\netcfg-592772.txt
2015-10-01 09:33 - 2015-10-01 09:33 - 00000117 _____ C:\Windows\system32\netcfg-544958.txt
2015-10-01 09:32 - 2015-10-01 09:32 - 00000117 _____ C:\Windows\system32\netcfg-478579.txt
2015-10-01 09:31 - 2015-10-01 09:31 - 00000117 _____ C:\Windows\system32\netcfg-402201.txt
2015-10-01 09:30 - 2015-10-01 09:30 - 00000117 _____ C:\Windows\system32\netcfg-373887.txt
2015-10-01 09:29 - 2015-10-01 09:29 - 00000117 _____ C:\Windows\system32\netcfg-310644.txt
2015-10-01 09:29 - 2015-10-01 09:29 - 00000117 _____ C:\Windows\system32\netcfg-297103.txt
2015-10-01 09:27 - 2015-10-01 09:27 - 00000117 _____ C:\Windows\system32\netcfg-182833.txt
2015-09-30 20:02 - 2015-09-30 20:02 - 00000117 _____ C:\Windows\system32\netcfg-11724925.txt
2015-09-30 18:28 - 2015-09-30 18:28 - 00000117 _____ C:\Windows\system32\netcfg-6052760.txt
2015-09-30 18:25 - 2015-09-30 18:25 - 00000117 _____ C:\Windows\system32\netcfg-5888569.txt
2015-09-30 18:25 - 2015-09-30 18:25 - 00000117 _____ C:\Windows\system32\netcfg-5865543.txt
2015-09-30 18:24 - 2015-09-30 18:24 - 00000117 _____ C:\Windows\system32\netcfg-5851098.txt
2015-09-30 18:21 - 2015-09-30 18:21 - 00000117 _____ C:\Windows\system32\netcfg-5671447.txt
2015-09-30 18:21 - 2015-09-30 18:21 - 00000117 _____ C:\Windows\system32\netcfg-5652306.txt
2015-09-30 17:21 - 2015-09-30 17:21 - 00000117 _____ C:\Windows\system32\netcfg-2044720.txt
2015-09-30 17:18 - 2015-09-30 17:18 - 00000117 _____ C:\Windows\system32\netcfg-1866863.txt
2015-09-30 17:11 - 2015-09-30 17:11 - 00000117 _____ C:\Windows\system32\netcfg-1479045.txt
2015-09-30 17:11 - 2015-09-30 17:11 - 00000117 _____ C:\Windows\system32\netcfg-1426660.txt
2015-09-30 16:50 - 2015-09-30 16:50 - 00000117 _____ C:\Windows\system32\netcfg-174143.txt
2015-09-30 16:48 - 2015-09-30 16:48 - 00000117 _____ C:\Windows\system32\netcfg-91962.txt
2015-09-30 15:46 - 2015-09-30 15:46 - 00000117 _____ C:\Windows\system32\netcfg-1583659.txt
2015-09-30 15:44 - 2015-09-30 15:44 - 00000117 _____ C:\Windows\system32\netcfg-1516766.txt
2015-09-30 15:31 - 2015-09-30 15:31 - 00000117 _____ C:\Windows\system32\netcfg-705623.txt
2015-09-30 15:31 - 2015-09-30 15:31 - 00000117 _____ C:\Windows\system32\netcfg-698931.txt
2015-09-30 15:22 - 2015-09-30 15:22 - 00000117 _____ C:\Windows\system32\netcfg-196623.txt
2015-09-30 15:21 - 2015-09-30 15:21 - 00000117 _____ C:\Windows\system32\netcfg-96424.txt
2015-09-30 14:01 - 2015-09-30 14:01 - 00000117 _____ C:\Windows\system32\netcfg-24709965.txt
2015-09-30 07:14 - 2015-10-17 15:25 - 00001974 _____ C:\Users\xxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\KORO 2 TERNE SOL 11-2012.lnk
2015-09-28 15:35 - 2015-09-28 15:35 - 00000117 _____ C:\Windows\system32\netcfg-95316.txt
2015-09-28 14:25 - 2015-09-28 14:25 - 00000117 _____ C:\Windows\system32\netcfg-198745.txt
2015-09-28 14:24 - 2015-09-28 14:24 - 00000117 _____ C:\Windows\system32\netcfg-105597.txt
2015-09-27 12:36 - 2015-09-27 12:36 - 00000117 _____ C:\Windows\system32\netcfg-4473344.txt
2015-09-27 12:35 - 2015-09-27 12:35 - 00000117 _____ C:\Windows\system32\netcfg-4431177.txt
2015-09-27 12:33 - 2015-09-27 12:33 - 00000117 _____ C:\Windows\system32\netcfg-4290417.txt
2015-09-27 12:33 - 2015-09-27 12:33 - 00000117 _____ C:\Windows\system32\netcfg-4257828.txt
2015-09-27 11:36 - 2015-09-27 11:36 - 00000117 _____ C:\Windows\system32\netcfg-855041.txt
2015-09-27 11:35 - 2015-09-27 11:35 - 00000117 _____ C:\Windows\system32\netcfg-816883.txt
2015-09-27 11:33 - 2015-09-27 11:33 - 00000117 _____ C:\Windows\system32\netcfg-679493.txt
2015-09-27 11:33 - 2015-09-27 11:33 - 00000117 _____ C:\Windows\system32\netcfg-667855.txt
2015-09-27 11:32 - 2015-09-27 11:32 - 00000117 _____ C:\Windows\system32\netcfg-625096.txt
2015-09-27 11:32 - 2015-09-27 11:32 - 00000117 _____ C:\Windows\system32\netcfg-611211.txt
2015-09-27 11:27 - 2015-09-27 11:27 - 00000117 _____ C:\Windows\system32\netcfg-339068.txt
2015-09-27 11:27 - 2015-09-27 11:27 - 00000117 _____ C:\Windows\system32\netcfg-327633.txt
2015-09-27 11:24 - 2015-09-27 11:24 - 00000117 _____ C:\Windows\system32\netcfg-157202.txt
2015-09-27 11:24 - 2015-09-27 11:24 - 00000117 _____ C:\Windows\system32\netcfg-124816.txt
2015-09-27 11:04 - 2015-09-27 11:04 - 00000117 _____ C:\Windows\system32\netcfg-214064.txt
2015-09-27 10:30 - 2015-09-27 10:30 - 00000117 _____ C:\Windows\system32\netcfg-1290674.txt
2015-09-27 10:20 - 2015-09-27 10:20 - 00000117 _____ C:\Windows\system32\netcfg-672785.txt
2015-09-27 10:10 - 2015-09-27 10:10 - 00000117 _____ C:\Windows\system32\netcfg-102352.txt
2015-09-27 09:32 - 2015-09-27 09:32 - 00000117 _____ C:\Windows\system32\netcfg-180461.txt
2015-09-27 09:31 - 2015-09-27 09:31 - 00000117 _____ C:\Windows\system32\netcfg-95878.txt
2015-09-27 09:25 - 2015-09-27 09:26 - 00000117 _____ C:\Windows\system32\netcfg-613224.txt
2015-09-27 09:20 - 2015-09-27 09:20 - 00000117 _____ C:\Windows\system32\netcfg-293016.txt
2015-09-27 09:18 - 2015-09-27 09:18 - 00000117 _____ C:\Windows\system32\netcfg-160868.txt
2015-09-27 09:17 - 2015-09-27 09:17 - 00000117 _____ C:\Windows\system32\netcfg-112617.txt
2015-09-27 09:09 - 2015-09-27 09:09 - 00000117 _____ C:\Windows\system32\netcfg-4601670.txt
2015-09-27 09:08 - 2015-09-27 09:08 - 00000117 _____ C:\Windows\system32\netcfg-4539239.txt
2015-09-27 08:20 - 2015-09-27 08:20 - 00000117 _____ C:\Windows\system32\netcfg-1668196.txt
2015-09-27 08:19 - 2015-09-27 08:19 - 00000117 _____ C:\Windows\system32\netcfg-1630397.txt
2015-09-27 08:19 - 2015-09-27 08:19 - 00000117 _____ C:\Windows\system32\netcfg-1589213.txt
2015-09-27 08:18 - 2015-09-27 08:18 - 00000117 _____ C:\Windows\system32\netcfg-1561008.txt
2015-09-27 08:17 - 2015-09-27 08:17 - 00000117 _____ C:\Windows\system32\netcfg-1514254.txt
2015-09-27 08:17 - 2015-09-27 08:17 - 00000117 _____ C:\Windows\system32\netcfg-1507390.txt
2015-09-27 08:13 - 2015-09-27 08:13 - 00000117 _____ C:\Windows\system32\netcfg-1264278.txt
2015-09-27 08:13 - 2015-09-27 08:13 - 00000117 _____ C:\Windows\system32\netcfg-1231425.txt
2015-09-27 07:58 - 2015-09-27 07:58 - 00000117 _____ C:\Windows\system32\netcfg-327602.txt
2015-09-27 07:43 - 2015-09-27 07:43 - 00000117 _____ C:\Windows\system32\netcfg-103584.txt
2015-09-26 20:01 - 2015-09-26 20:01 - 00000117 _____ C:\Windows\system32\netcfg-195360.txt
2015-09-26 19:52 - 2015-09-26 19:52 - 00000117 _____ C:\Windows\system32\netcfg-186311.txt
2015-09-26 14:50 - 2015-09-26 14:50 - 00000117 _____ C:\Windows\system32\netcfg-188293.txt
2015-09-26 14:49 - 2015-09-26 14:49 - 00000117 _____ C:\Windows\system32\netcfg-111010.txt
2015-09-26 10:37 - 2015-09-26 10:37 - 00000117 _____ C:\Windows\system32\netcfg-870111.txt
2015-09-26 10:24 - 2015-09-26 10:24 - 00000117 _____ C:\Windows\system32\netcfg-110854.txt
2015-09-26 09:50 - 2015-09-26 09:50 - 00000117 _____ C:\Windows\system32\netcfg-998437.txt
2015-09-26 09:48 - 2015-09-26 09:48 - 00000117 _____ C:\Windows\system32\netcfg-875087.txt
2015-09-26 09:36 - 2015-09-26 09:36 - 00000117 _____ C:\Windows\system32\netcfg-138669.txt
2015-09-26 09:36 - 2015-09-26 09:36 - 00000117 _____ C:\Windows\system32\netcfg-105113.txt
2015-09-26 08:50 - 2015-09-26 08:50 - 00000117 _____ C:\Windows\system32\netcfg-190680.txt
2015-09-26 08:49 - 2015-09-26 08:49 - 00000117 _____ C:\Windows\system32\netcfg-101260.txt
2015-09-26 07:57 - 2015-09-26 07:57 - 00000117 _____ C:\Windows\system32\netcfg-177685.txt
2015-09-26 07:55 - 2015-09-26 07:55 - 00000117 _____ C:\Windows\system32\netcfg-102882.txt
2015-09-26 07:28 - 2015-09-26 07:28 - 00000117 _____ C:\Windows\system32\netcfg-172053.txt
2015-09-26 07:27 - 2015-09-26 07:27 - 00000117 _____ C:\Windows\system32\netcfg-103615.txt
2015-09-26 07:13 - 2015-09-26 07:13 - 00000117 _____ C:\Windows\system32\netcfg-161024.txt
2015-09-25 19:18 - 2015-09-25 19:18 - 00000117 _____ C:\Windows\system32\netcfg-93179.txt
2015-09-25 15:04 - 2015-09-25 15:04 - 00000117 _____ C:\Windows\system32\netcfg-160400.txt
2015-09-25 15:03 - 2015-09-25 15:03 - 00000117 _____ C:\Windows\system32\netcfg-122289.txt
2015-09-25 14:49 - 2015-09-25 14:49 - 00000117 _____ C:\Windows\system32\netcfg-286995.txt
2015-09-25 14:47 - 2015-09-25 14:47 - 00000117 _____ C:\Windows\system32\netcfg-134660.txt
2015-09-25 14:29 - 2015-09-25 14:29 - 00000117 _____ C:\Windows\system32\netcfg-459719.txt
2015-09-25 14:27 - 2015-09-25 14:27 - 00000117 _____ C:\Windows\system32\netcfg-311970.txt
2015-09-25 14:25 - 2015-09-25 14:25 - 00000117 _____ C:\Windows\system32\netcfg-171788.txt
2015-09-25 14:24 - 2015-09-25 14:24 - 00000117 _____ C:\Windows\system32\netcfg-135237.txt
2015-09-25 13:46 - 2015-09-25 13:46 - 00000117 _____ C:\Windows\system32\netcfg-680944.txt
2015-09-25 13:46 - 2015-09-25 13:46 - 00000117 _____ C:\Windows\system32\netcfg-637747.txt
2015-09-25 13:38 - 2015-09-25 13:38 - 00000117 _____ C:\Windows\system32\netcfg-163676.txt
2015-09-25 13:37 - 2015-09-25 13:37 - 00000117 _____ C:\Windows\system32\netcfg-125003.txt
2015-09-25 13:26 - 2015-09-25 13:26 - 00000117 _____ C:\Windows\system32\netcfg-2456188.txt
2015-09-25 08:50 - 2015-09-25 08:50 - 00000117 _____ C:\Windows\system32\netcfg-127842.txt
2015-09-25 07:50 - 2015-09-25 07:50 - 00000117 _____ C:\Windows\system32\netcfg-271894.txt
2015-09-25 07:48 - 2015-09-25 07:48 - 00000117 _____ C:\Windows\system32\netcfg-131384.txt
2015-09-25 07:39 - 2015-09-25 07:39 - 00000117 _____ C:\Windows\system32\netcfg-340690.txt
2015-09-25 07:38 - 2015-09-25 07:38 - 00000117 _____ C:\Windows\system32\netcfg-267385.txt
2015-09-25 07:36 - 2015-09-25 07:36 - 00000117 _____ C:\Windows\system32\netcfg-162849.txt
2015-09-25 07:35 - 2015-09-25 07:35 - 00000117 _____ C:\Windows\system32\netcfg-128108.txt
2015-09-25 06:55 - 2015-09-25 06:55 - 00000117 _____ C:\Windows\system32\netcfg-36252105.txt
2015-09-24 22:17 - 2015-09-24 22:17 - 00000117 _____ C:\Windows\system32\netcfg-5142323.txt
2015-09-24 20:58 - 2015-09-24 20:58 - 00000117 _____ C:\Windows\system32\netcfg-414853.txt
2015-09-24 20:53 - 2015-09-24 20:53 - 00000117 _____ C:\Windows\system32\netcfg-127437.txt
2015-09-24 19:40 - 2015-09-24 19:40 - 00000117 _____ C:\Windows\system32\netcfg-164737.txt
2015-09-24 19:40 - 2015-09-24 19:40 - 00000117 _____ C:\Windows\system32\netcfg-147888.txt
2015-09-24 19:10 - 2015-09-24 19:17 - 91985358 _____ C:\Users\xxx\Downloads\Postradatelní-3-CZ-dabing-HD-(Trevor796).mkv
2015-09-24 17:12 - 2015-09-24 17:12 - 00000117 _____ C:\Windows\system32\netcfg-176983.txt
2015-09-24 17:11 - 2015-09-24 17:11 - 00000117 _____ C:\Windows\system32\netcfg-147951.txt
2015-09-24 16:19 - 2015-09-24 16:19 - 00000117 _____ C:\Windows\system32\netcfg-175095.txt
2015-09-24 16:19 - 2015-09-24 16:19 - 00000117 _____ C:\Windows\system32\netcfg-151929.txt
2015-09-24 16:10 - 2015-09-24 16:10 - 00000117 _____ C:\Windows\system32\netcfg-166593.txt
2015-09-24 16:10 - 2015-09-24 16:10 - 00000117 _____ C:\Windows\system32\netcfg-149355.txt
2015-09-24 15:34 - 2015-09-24 15:34 - 00000117 _____ C:\Windows\system32\netcfg-308601.txt
2015-09-24 15:33 - 2015-09-24 15:33 - 00000117 _____ C:\Windows\system32\netcfg-290567.txt
2015-09-24 15:33 - 2015-09-24 15:33 - 00000117 _____ C:\Windows\system32\netcfg-253735.txt
2015-09-24 15:31 - 2015-09-24 15:31 - 00000117 _____ C:\Windows\system32\netcfg-142881.txt
2015-09-24 15:03 - 2015-09-24 15:03 - 00000117 _____ C:\Windows\system32\netcfg-316791.txt
2015-09-24 14:29 - 2015-09-24 14:29 - 00000117 _____ C:\Windows\system32\netcfg-18565616.txt
2015-09-24 10:11 - 2015-09-24 10:11 - 00000000 ____D C:\Users\xxx\Documents\erutziolkpúb
2015-09-24 10:06 - 2015-10-17 15:25 - 00002010 _____ C:\Users\xxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ROMAL TEAM LUZANSKY 4-2012.lnk
2015-09-24 09:57 - 2015-09-24 09:57 - 00000117 _____ C:\Windows\system32\netcfg-2206946.txt
2015-09-24 09:22 - 2015-09-24 09:22 - 00000117 _____ C:\Windows\system32\netcfg-124941.txt
2015-09-24 06:43 - 2015-09-24 06:43 - 00000117 _____ C:\Windows\system32\netcfg-44913998.txt
2015-09-23 22:23 - 2015-09-23 22:23 - 00000117 _____ C:\Windows\system32\netcfg-14930964.txt
2015-09-23 18:55 - 2015-10-17 19:44 - 00000000 _____ C:\Recovery.txt
2015-09-23 18:23 - 2015-09-23 18:23 - 00000117 _____ C:\Windows\system32\netcfg-528453.txt
2015-09-23 18:22 - 2015-09-23 18:22 - 00000117 _____ C:\Windows\system32\netcfg-511932.txt
2015-09-23 18:17 - 2015-09-23 18:17 - 00000117 _____ C:\Windows\system32\netcfg-188948.txt
2015-09-23 18:16 - 2015-09-23 18:16 - 00000117 _____ C:\Windows\system32\netcfg-136220.txt
2015-09-23 17:59 - 2015-09-23 17:59 - 00000117 _____ C:\Windows\system32\netcfg-218588.txt
2015-09-23 17:58 - 2015-09-23 17:58 - 00000117 _____ C:\Windows\system32\netcfg-167451.txt
2015-09-23 15:41 - 2015-09-23 15:41 - 00000000 ____D C:\Users\xxx\AppData\Local\Steam
2015-09-23 15:41 - 2015-09-23 15:41 - 00000000 ____D C:\Users\xxx\AppData\Local\CEF
2015-09-23 15:27 - 2015-09-23 15:27 - 00000117 _____ C:\Windows\system32\netcfg-199150.txt
2015-09-23 14:59 - 2015-09-23 14:59 - 00000117 _____ C:\Windows\system32\netcfg-191538.txt
2015-09-23 14:20 - 2015-09-23 14:20 - 00000117 _____ C:\Windows\system32\netcfg-1927501.txt
2015-09-23 14:20 - 2015-09-23 14:20 - 00000117 _____ C:\Windows\system32\netcfg-1922899.txt
2015-09-23 14:06 - 2015-09-23 14:06 - 00000117 _____ C:\Windows\system32\netcfg-1077810.txt
2015-09-23 14:04 - 2015-09-23 14:04 - 00000117 _____ C:\Windows\system32\netcfg-957908.txt
2015-09-23 13:06 - 2015-09-23 13:06 - 00000117 _____ C:\Windows\system32\netcfg-234282.txt
2015-09-23 13:05 - 2015-09-23 13:05 - 00000117 _____ C:\Windows\system32\netcfg-201272.txt
2015-09-23 11:27 - 2015-09-23 11:27 - 00000117 _____ C:\Windows\system32\netcfg-210538.txt
2015-09-23 11:27 - 2015-09-23 11:27 - 00000117 _____ C:\Windows\system32\netcfg-208136.txt
2015-09-23 10:01 - 2015-10-18 11:23 - 00000000 ____D C:\ProgramData\AVAST Software
2015-09-23 10:00 - 2015-09-23 10:00 - 05693008 _____ (AVAST Software) C:\Users\xxx\Downloads\avast_free_antivirus_setup_online (1).exe
2015-09-23 09:59 - 2015-09-23 09:59 - 05693008 _____ (AVAST Software) C:\Users\xxx\Downloads\avast_free_antivirus_setup_online.exe
2015-09-23 09:46 - 2015-09-23 09:46 - 00000117 _____ C:\Windows\system32\netcfg-44218186.txt
2015-09-23 09:45 - 2015-09-23 09:45 - 00000117 _____ C:\Windows\system32\netcfg-44177111.txt
2015-09-23 09:45 - 2015-09-23 09:45 - 00000117 _____ C:\Windows\system32\netcfg-44173399.txt
2015-09-23 07:37 - 2015-09-23 07:37 - 00000117 _____ C:\Windows\system32\netcfg-36498290.txt
2015-09-23 06:48 - 2015-09-23 06:48 - 00000117 _____ C:\Windows\system32\netcfg-33580634.txt
2015-09-22 22:01 - 2015-09-22 22:01 - 00000117 _____ C:\Windows\system32\netcfg-1941604.txt
2015-09-22 21:31 - 2015-09-22 21:31 - 00000117 _____ C:\Windows\system32\netcfg-167373.txt
2015-09-22 21:30 - 2015-09-22 21:30 - 00000117 _____ C:\Windows\system32\netcfg-76814.txt
2015-09-22 18:37 - 2015-09-22 18:37 - 00000117 _____ C:\Windows\system32\netcfg-5909848.txt
2015-09-22 18:36 - 2015-09-22 18:36 - 00000117 _____ C:\Windows\system32\netcfg-5852018.txt
2015-09-22 17:58 - 2015-09-22 17:58 - 00000117 _____ C:\Windows\system32\netcfg-3571564.txt
2015-09-22 17:00 - 2015-09-22 17:00 - 00000117 _____ C:\Windows\system32\netcfg-79061.txt
2015-09-22 16:30 - 2015-09-22 16:30 - 00000117 _____ C:\Windows\system32\netcfg-276293.txt
2015-09-22 16:29 - 2015-09-22 16:29 - 00000117 _____ C:\Windows\system32\netcfg-223003.txt
2015-09-22 16:17 - 2015-09-22 16:17 - 00000117 _____ C:\Windows\system32\netcfg-162662.txt
2015-09-22 16:15 - 2015-09-22 16:15 - 00000117 _____ C:\Windows\system32\netcfg-83616.txt
2015-09-22 16:11 - 2015-09-22 16:11 - 00000117 _____ C:\Windows\system32\netcfg-95410.txt
2015-09-22 15:24 - 2015-09-22 15:24 - 00000117 _____ C:\Windows\system32\netcfg-27118184.txt
2015-09-22 15:23 - 2015-09-22 15:23 - 00000117 _____ C:\Windows\system32\netcfg-27074784.txt
2015-09-22 15:23 - 2015-09-22 15:23 - 00000117 _____ C:\Windows\system32\netcfg-27071477.txt
2015-09-22 14:05 - 2015-09-22 14:05 - 00000117 _____ C:\Windows\system32\netcfg-22388296.txt
2015-09-22 10:12 - 2015-10-17 15:11 - 00000000 ____D C:\Program Files\eb5fb9ce-3972-49bd-b879-097c8e3cffc3
2015-09-22 08:46 - 2015-09-22 08:46 - 00000117 _____ C:\Windows\system32\netcfg-3252028.txt
2015-09-22 07:57 - 2015-09-22 07:57 - 00000117 _____ C:\Windows\system32\netcfg-329552.txt
2015-09-22 07:54 - 2015-09-22 07:54 - 00000117 _____ C:\Windows\system32\netcfg-139340.txt
2015-09-22 07:54 - 2015-09-22 07:54 - 00000117 _____ C:\Windows\system32\netcfg-124176.txt
2015-09-22 07:54 - 2015-09-22 07:54 - 00000117 _____ C:\Windows\system32\netcfg-121540.txt
2015-09-22 07:53 - 2015-09-22 07:53 - 00000117 _____ C:\Windows\system32\netcfg-79934.txt
2015-09-21 20:35 - 2015-09-21 20:35 - 00000117 _____ C:\Windows\system32\netcfg-10788483.txt
2015-09-21 17:37 - 2015-09-21 17:37 - 00000117 _____ C:\Windows\system32\netcfg-86221.txt
2015-09-21 17:37 - 2015-09-21 17:37 - 00000117 _____ C:\Windows\system32\netcfg-125050.txt
2015-09-21 16:50 - 2015-09-21 16:50 - 00000117 _____ C:\Windows\system32\netcfg-11710371.txt
2015-09-21 16:50 - 2015-09-21 16:50 - 00000117 _____ C:\Windows\system32\netcfg-11706658.txt
2015-09-21 15:30 - 2015-09-21 15:30 - 00000117 _____ C:\Windows\system32\netcfg-6926085.txt
2015-09-21 14:36 - 2015-09-21 15:29 - 00000117 _____ C:\Windows\system32\netcfg-3660173.txt
2015-09-21 14:28 - 2015-10-17 15:11 - 00000000 ____D C:\Program Files\3d0ba577-e8b0-467f-bafd-c1ac5dc1c90c
2015-09-21 13:37 - 2015-09-21 13:37 - 00000117 _____ C:\Windows\system32\netcfg-145205.txt
2015-09-21 13:36 - 2015-09-21 13:36 - 00000117 _____ C:\Windows\system32\netcfg-67969.txt
2015-09-21 13:34 - 2015-09-21 13:34 - 00000117 _____ C:\Windows\system32\netcfg-77813.txt
2015-09-21 06:49 - 2015-09-21 06:49 - 00004665 _____ C:\Users\xxx\Desktop\images.jpeg
2015-09-21 06:44 - 2015-09-21 06:44 - 00000117 _____ C:\Windows\system32\netcfg-121618.txt
2015-09-20 20:47 - 2015-09-20 20:47 - 00000117 _____ C:\Windows\system32\netcfg-209446.txt
2015-09-20 20:45 - 2015-09-20 20:45 - 00000117 _____ C:\Windows\system32\netcfg-116485.txt
2015-09-20 20:43 - 2015-09-20 20:43 - 00000117 _____ C:\Windows\system32\netcfg-4428509.txt
2015-09-20 20:02 - 2015-10-17 15:11 - 00000000 ____D C:\Program Files\cdc98ec8-71a5-4229-a61f-c3685d7d2f9c
2015-09-20 19:30 - 2015-09-20 19:30 - 00000117 _____ C:\Windows\system32\netcfg-74334.txt
2015-09-20 17:22 - 2015-09-20 17:22 - 00000117 _____ C:\Windows\system32\netcfg-441124.txt
2015-09-20 17:16 - 2015-09-20 17:16 - 00000117 _____ C:\Windows\system32\netcfg-71604.txt
2015-09-20 16:57 - 2015-09-20 16:57 - 00000117 _____ C:\Windows\system32\netcfg-12399177.txt
2015-09-20 16:55 - 2015-09-20 16:55 - 00000117 _____ C:\Windows\system32\netcfg-12337510.txt
2015-09-20 16:55 - 2015-09-20 16:55 - 00000117 _____ C:\Windows\system32\netcfg-12314422.txt
2015-09-20 16:53 - 2015-09-20 16:53 - 00000117 _____ C:\Windows\system32\netcfg-12173116.txt
2015-09-20 16:51 - 2015-09-20 16:51 - 00000117 _____ C:\Windows\system32\netcfg-12047161.txt
2015-09-20 16:42 - 2015-09-20 16:42 - 00000117 _____ C:\Windows\system32\netcfg-11527319.txt
2015-09-20 16:40 - 2015-09-20 16:40 - 00000117 _____ C:\Windows\system32\netcfg-11397464.txt
2015-09-20 15:45 - 2015-09-20 16:27 - 00000000 ____D C:\Users\xxx\AppData\Local\AvgSetupLog
2015-09-20 15:40 - 2015-09-20 15:40 - 00000000 ____D C:\Users\xxx\AppData\Local\Avg
2015-09-20 15:36 - 2015-09-21 16:34 - 00000000 ____D C:\ProgramData\MFAData
2015-09-20 15:36 - 2015-09-20 15:36 - 00000000 ____D C:\Users\xxx\AppData\Local\MFAData
2015-09-20 15:36 - 2015-09-20 15:36 - 00000000 ____D C:\Users\xxx\AppData\Local\Avg2015
2015-09-20 15:21 - 2015-09-20 15:22 - 00000117 _____ C:\Windows\system32\netcfg-6695547.txt
2015-09-20 15:20 - 2015-09-20 15:20 - 00000117 _____ C:\Windows\system32\netcfg-6581838.txt
2015-09-20 15:11 - 2015-09-20 15:11 - 00000117 _____ C:\Windows\system32\netcfg-6066270.txt
2015-09-20 09:49 - 2015-09-20 09:49 - 00000117 _____ C:\Windows\system32\netcfg-1356896.txt
2015-09-20 09:28 - 2015-09-20 09:28 - 00000117 _____ C:\Windows\system32\netcfg-109356.txt
2015-09-20 09:27 - 2015-09-20 09:27 - 00000117 _____ C:\Windows\system32\netcfg-69919.txt
2015-09-20 08:53 - 2015-09-20 08:53 - 00000117 _____ C:\Windows\system32\netcfg-699742.txt
2015-09-20 08:21 - 2015-09-20 08:21 - 00000117 _____ C:\Windows\system32\netcfg-2040961.txt
2015-09-20 08:20 - 2015-09-20 08:20 - 00000117 _____ C:\Windows\system32\netcfg-1986001.txt
2015-09-20 08:20 - 2015-09-20 08:20 - 00000117 _____ C:\Windows\system32\netcfg-1946393.txt
2015-09-20 08:09 - 2015-09-20 08:09 - 00000117 _____ C:\Windows\system32\netcfg-1295401.txt
2015-09-20 07:50 - 2015-09-20 07:50 - 00000117 _____ C:\Windows\system32\netcfg-156734.txt
2015-09-20 07:50 - 2015-09-20 07:50 - 00000117 _____ C:\Windows\system32\netcfg-149526.txt
2015-09-20 07:49 - 2015-09-20 07:49 - 00000117 _____ C:\Windows\system32\netcfg-77267.txt
2015-09-20 07:44 - 2015-09-20 07:45 - 01190104 _____ (Adobe Systems Incorporated) C:\Users\xxx\Downloads\flashplayer18pp_da_install.exe
2015-09-20 06:55 - 2015-09-20 06:55 - 00000117 _____ C:\Windows\system32\netcfg-75317.txt
2015-09-20 06:55 - 2015-09-20 06:55 - 00000117 _____ C:\Windows\system32\netcfg-121805.txt
2015-09-19 20:30 - 2015-10-17 15:11 - 00000000 ____D C:\Program Files\b4773526-518d-4a63-9972-d01aaeb23169
2015-09-19 19:51 - 2015-09-19 19:51 - 00000000 ____D C:\Program Files\Feed Notifier
2015-09-19 19:16 - 2015-09-19 19:16 - 00000117 _____ C:\Windows\system32\netcfg-147795.txt
2015-09-19 19:11 - 2015-09-19 19:11 - 00000117 _____ C:\Windows\system32\netcfg-35314211.txt
2015-09-19 19:09 - 2015-09-19 19:09 - 00000117 _____ C:\Windows\system32\netcfg-35165885.txt
2015-09-19 18:47 - 2015-09-19 18:47 - 00000117 _____ C:\Windows\system32\netcfg-33890827.txt
2015-09-19 18:45 - 2015-09-19 18:45 - 00000117 _____ C:\Windows\system32\netcfg-33774154.txt
2015-09-19 18:29 - 2015-09-19 18:29 - 00000117 _____ C:\Windows\system32\netcfg-32800879.txt
2015-09-19 18:29 - 2015-09-19 18:29 - 00000117 _____ C:\Windows\system32\netcfg-32792190.txt
2015-09-19 18:18 - 2015-09-19 18:18 - 00000117 _____ C:\Windows\system32\netcfg-32155409.txt
2015-09-19 18:18 - 2015-09-19 18:18 - 00000117 _____ C:\Windows\system32\netcfg-32127204.txt
2015-09-19 18:17 - 2015-09-19 18:17 - 00000117 _____ C:\Windows\system32\netcfg-32057456.txt
2015-09-19 18:17 - 2015-09-19 18:17 - 00000117 _____ C:\Windows\system32\netcfg-32049656.txt
2015-09-19 18:04 - 2015-09-19 18:04 - 00000117 _____ C:\Windows\system32\netcfg-31291678.txt
2015-09-19 18:02 - 2015-09-19 18:02 - 00000117 _____ C:\Windows\system32\netcfg-31190215.txt
2015-09-19 17:22 - 2015-09-19 17:22 - 00000117 _____ C:\Windows\system32\netcfg-28787722.txt
2015-09-19 17:17 - 2015-09-19 17:17 - 00000117 _____ C:\Windows\system32\netcfg-28460182.txt
2015-09-19 16:55 - 2015-09-19 16:55 - 00000117 _____ C:\Windows\system32\netcfg-27139431.txt
2015-09-19 16:09 - 2015-09-19 16:09 - 00000117 _____ C:\Windows\system32\netcfg-24400319.txt
2015-09-19 13:08 - 2015-09-19 13:08 - 00000117 _____ C:\Windows\system32\netcfg-13530528.txt
2015-09-19 12:58 - 2015-09-19 12:58 - 00000117 _____ C:\Windows\system32\netcfg-12924682.txt
2015-09-19 11:30 - 2015-10-17 13:11 - 00000000 ____D C:\Users\xxx\AppData\Local\Opera Software
2015-09-19 10:32 - 2015-10-17 15:25 - 00001896 _____ C:\Users\xxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\není název.lnk
2015-09-19 10:20 - 2015-09-19 10:20 - 00000117 _____ C:\Windows\system32\netcfg-3469415.txt
2015-09-19 10:19 - 2015-09-19 10:19 - 00000117 _____ C:\Windows\system32\netcfg-3416874.txt
2015-09-19 10:19 - 2015-09-19 10:19 - 00000117 _____ C:\Windows\system32\netcfg-3376111.txt
2015-09-19 10:18 - 2015-09-19 10:18 - 00000117 _____ C:\Windows\system32\netcfg-3364301.txt
2015-09-19 10:16 - 2015-09-19 10:16 - 00000117 _____ C:\Windows\system32\netcfg-3217489.txt
2015-09-19 10:15 - 2015-09-19 10:15 - 00000117 _____ C:\Windows\system32\netcfg-3175353.txt
2015-09-19 10:12 - 2015-09-19 10:12 - 00000117 _____ C:\Windows\system32\netcfg-2978948.txt
2015-09-19 10:12 - 2015-09-19 10:12 - 00000117 _____ C:\Windows\system32\netcfg-2954159.txt
2015-09-19 09:25 - 2015-09-19 09:25 - 00000117 _____ C:\Windows\system32\netcfg-164175.txt
2015-09-19 07:51 - 2015-09-19 07:51 - 00000117 _____ C:\Windows\system32\netcfg-83249215.txt
2015-09-19 07:26 - 2015-09-19 07:26 - 00000117 _____ C:\Windows\system32\netcfg-81768407.txt
2015-09-18 20:38 - 2015-09-18 20:38 - 00000117 _____ C:\Windows\system32\netcfg-42893785.txt
2015-09-18 19:14 - 2015-09-18 19:14 - 00000117 _____ C:\Windows\system32\netcfg-37864422.txt
2015-09-18 15:47 - 2015-09-18 15:47 - 00000117 _____ C:\Windows\system32\netcfg-25421844.txt
2015-09-18 15:44 - 2015-09-18 15:44 - 00000117 _____ C:\Windows\system32\netcfg-25227982.txt
2015-09-18 14:04 - 2015-09-18 14:04 - 00000117 _____ C:\Windows\system32\netcfg-19225157.txt
2015-09-18 13:47 - 2015-09-18 13:47 - 00000117 _____ C:\Windows\system32\netcfg-18209871.txt
2015-09-18 11:44 - 2015-09-18 11:44 - 00000117 _____ C:\Windows\system32\netcfg-10827623.txt
2015-09-18 11:41 - 2015-09-18 11:41 - 00000117 _____ C:\Windows\system32\netcfg-10667239.txt
2015-09-18 11:41 - 2015-09-18 11:41 - 00000117 _____ C:\Windows\system32\netcfg-10664930.txt
2015-09-18 11:25 - 2015-09-18 11:25 - 00000117 _____ C:\Windows\system32\netcfg-9742090.txt
2015-09-18 10:25 - 2015-09-18 10:25 - 00000117 _____ C:\Windows\system32\netcfg-6113819.txt
2015-09-18 09:28 - 2015-09-18 09:28 - 00000117 _____ C:\Windows\system32\netcfg-2703731.txt
2015-09-18 09:01 - 2015-09-18 09:01 - 00000117 _____ C:\Windows\system32\netcfg-1111023.txt
2015-09-18 08:46 - 2015-09-18 08:46 - 00000117 _____ C:\Windows\system32\netcfg-195172.txt
2015-09-18 08:46 - 2015-09-18 08:46 - 00000117 _____ C:\Windows\system32\netcfg-180649.txt
2015-09-18 08:46 - 2015-09-18 08:46 - 00000117 _____ C:\Windows\system32\netcfg-174253.txt
2015-09-18 08:45 - 2015-09-18 08:45 - 00000290 __RSH C:\ProgramData\ntuser.pol
2015-09-18 07:55 - 2015-09-18 07:56 - 00000117 _____ C:\Windows\system32\netcfg-3660438.txt
2015-09-18 07:17 - 2015-09-18 07:26 - 00000117 _____ C:\Windows\system32\netcfg-1344962.txt
2015-09-18 06:56 - 2015-09-18 06:56 - 00000117 _____ C:\Windows\system32\netcfg-135112.txt
2015-09-18 06:55 - 2015-09-18 06:55 - 00000117 _____ C:\Windows\system32\netcfg-77080.txt
2015-09-18 06:35 - 2015-09-18 06:35 - 00000117 _____ C:\Windows\system32\netcfg-36080036.txt

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-10-18 13:19 - 2015-05-24 10:45 - 00000000 ____D C:\Users\xxx
2015-10-18 13:19 - 2012-07-26 08:04 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-10-18 01:13 - 2015-05-24 11:47 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-10-17 21:00 - 2012-07-26 08:53 - 00000000 ____D C:\Windows\system32\sru
2015-10-17 20:56 - 2012-07-26 08:53 - 00000000 ____D C:\Windows\Microsoft.NET
2015-10-17 15:28 - 2012-07-26 08:53 - 00000000 ___RD C:\Windows\Offline Web Pages
2015-10-17 15:26 - 2015-07-18 23:18 - 00001011 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-10-17 15:25 - 2015-09-17 16:35 - 00002081 _____ C:\Users\xxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nový priečinok - odkaz (2).lnk
2015-10-17 15:25 - 2015-09-17 07:21 - 00001662 _____ C:\Users\xxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\č (2).lnk
2015-10-17 15:25 - 2015-09-17 07:02 - 00002081 _____ C:\Users\xxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nový priečinok - odkaz.lnk
2015-10-17 15:25 - 2015-09-16 18:01 - 00002058 _____ C:\Users\xxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Neznámé album (25.8.2009 184034).lnk
2015-10-17 15:25 - 2015-09-16 17:40 - 00001690 _____ C:\Users\xxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\miko-6.lnk
2015-10-17 15:25 - 2015-09-15 12:56 - 00001662 _____ C:\Users\xxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\č.lnk
2015-10-17 15:25 - 2015-09-07 11:15 - 00000882 _____ C:\Users\xxx\Desktop\ň.lnk
2015-10-17 15:25 - 2015-09-03 10:52 - 00001102 _____ C:\Users\xxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\gta_sa - odkaz.lnk
2015-10-17 15:25 - 2015-08-14 12:09 - 00000641 _____ C:\Users\xxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nový priečinok.lnk
2015-10-17 15:25 - 2015-07-25 10:33 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent
2015-10-17 15:25 - 2015-07-15 19:39 - 00001035 _____ C:\Users\Public\Desktop\Mobile Partner.lnk
2015-10-17 15:25 - 2015-06-11 11:40 - 00000847 _____ C:\Users\xxx\Desktop\thf.lnk
2015-10-17 15:25 - 2015-05-24 11:50 - 00000632 _____ C:\Users\xxx\Desktop\Total Commander.lnk
2015-10-17 15:25 - 2015-05-24 11:49 - 00000963 _____ C:\Users\Public\Desktop\CCleaner.lnk
2015-10-17 15:15 - 2012-07-26 06:43 - 00000000 __RHD C:\Users\Default
2015-10-17 15:15 - 2012-07-26 06:43 - 00000000 ___RD C:\Users\Public
2015-10-17 15:12 - 2012-07-26 06:17 - 00000215 _____ C:\Windows\system.ini
2015-10-17 13:17 - 2015-08-24 11:59 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter-Strike 1.6 Standalone
2015-10-17 13:17 - 2015-05-24 10:49 - 00004080 _____ C:\Windows\system32\PerfStringBackup.INI
2015-10-17 13:11 - 2015-09-07 07:18 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Opera Software
2015-10-17 13:11 - 2015-05-24 11:46 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Opera
2015-10-17 13:11 - 2015-05-24 11:46 - 00000000 ____D C:\Users\xxx\AppData\Local\Opera
2015-10-17 13:11 - 2015-05-24 11:46 - 00000000 ____D C:\Program Files\Opera
2015-10-17 13:10 - 2015-09-14 14:35 - 00000000 ____D C:\Users\xxx\AppData\Local\Lenovo
2015-10-17 13:10 - 2015-09-14 14:32 - 00000000 ____D C:\Program Files\Lenovo
2015-10-17 13:10 - 2015-09-11 16:54 - 00000000 ____D C:\Program Files\Google
2015-10-17 13:08 - 2015-09-11 16:54 - 00000000 ____D C:\Users\xxx\AppData\Local\Google
2015-10-17 13:04 - 2015-08-24 11:42 - 00000000 ____D C:\Program Files\Steam
2015-10-17 08:12 - 2015-07-17 13:15 - 00000000 ____D C:\ProgramData\OnlineUpdate
2015-10-13 08:13 - 2012-07-26 08:43 - 00000000 ____D C:\Windows\CbsTemp
2015-10-13 00:36 - 2012-07-26 08:53 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-10-13 00:36 - 2012-07-26 08:53 - 00000000 ____D C:\Windows\WinStore
2015-10-13 00:36 - 2012-07-26 08:53 - 00000000 ____D C:\Windows\system32\sk-SK
2015-10-12 21:15 - 2012-07-26 08:53 - 00000000 ____D C:\Windows\rescache
2015-10-12 21:12 - 2015-05-24 11:52 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-10-12 10:41 - 2015-09-15 19:45 - 00000102 _____ C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
2015-10-11 12:52 - 2015-06-16 17:41 - 00000000 ____D C:\Users\xxx\AppData\Roaming\vlc
2015-10-04 09:43 - 2015-05-24 11:49 - 00000000 ____D C:\Program Files\CCleaner
2015-10-04 07:20 - 2012-07-26 10:10 - 00000000 ____D C:\Program Files\Windows Journal
2015-10-04 07:20 - 2012-07-26 08:53 - 00000000 ___RD C:\Windows\ToastData
2015-10-04 07:20 - 2012-07-26 08:53 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-10-04 07:20 - 2012-07-26 08:53 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-10-04 07:20 - 2012-07-26 08:53 - 00000000 ____D C:\Program Files\Windows Defender
2015-10-02 22:37 - 2012-07-26 06:17 - 00262144 ___SH C:\Windows\system32\config\BBI
2015-09-30 19:49 - 2012-07-26 08:53 - 00000000 ____D C:\Windows\system32\NDF
2015-09-29 16:00 - 2015-09-06 12:32 - 00000000 ____D C:\Users\xxx\Documents\GTA San Andreas User Files
2015-09-24 10:08 - 2015-09-02 07:28 - 00000000 ____D C:\Users\xxx\Documents\Poznámkové bloky programu OneNote
2015-09-23 18:02 - 2015-08-24 11:42 - 00000000 ____D C:\Program Files\Common Files\Steam
2015-09-23 17:50 - 2015-09-11 10:19 - 00000004 _____ C:\Windows\system32\029B560A371F4E00AB32838EBC01B9E7
2015-09-23 11:28 - 2015-09-06 18:04 - 00000000 ____D C:\Program Files\Mozilla Firefox
2015-09-19 10:51 - 2015-05-24 11:52 - 00000000 ____D C:\Users\xxx\AppData\Local\Microsoft Help
2015-09-18 07:12 - 2012-07-26 08:53 - 00000000 ____D C:\Windows\system32\GroupPolicy

==================== Files in the root of some directories =======

2015-09-11 16:54 - 2015-09-11 16:54 - 50053120 _____ () C:\Program Files\GUTB129.tmp
2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\xxx\AppData\Roaming\8wqKTs1OK
2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\xxx\AppData\Roaming\cUsqhyev4MYXOnxOOPAM
2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\xxx\AppData\Roaming\gDQ5nwuvXSJyA8ECkmcddRA8
2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\xxx\AppData\Roaming\Gmo98pBypYKbQM0wRg240
2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\xxx\AppData\Roaming\OWa0mTfLMUzSzZOsa
2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\xxx\AppData\Roaming\oxf41VOdwmDel
2015-09-11 09:54 - 2015-09-11 09:54 - 0000187 _____ () C:\Users\xxx\AppData\Local\Mathtam.exe.config
2015-09-11 09:53 - 2015-09-11 09:53 - 0000187 _____ () C:\Users\xxx\AppData\Local\Saolax.exe.config
2015-10-16 13:24 - 2015-10-16 13:24 - 0000000 _____ () C:\Users\xxx\AppData\Local\{1F77166B-FB4C-4432-B81F-AF80F99528C0}
2015-10-14 12:13 - 2015-10-14 12:13 - 0000000 _____ () C:\Users\xxx\AppData\Local\{CA0B1120-2011-45EA-A94A-DC540346D784}
2015-09-15 19:45 - 2015-10-12 10:41 - 0000102 _____ () C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat

Files to move or delete:
====================
C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat


Some files in TEMP:
====================
C:\Users\xxx\AppData\Local\temp\speccycpuid.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


safeboot: {a5714cc5-01f8-11e5-b8d7-e26740efd634} => The system is configured to boot to Safe Mode <===== ATTENTION


LastRegBack: 2015-10-11 10:33

==================== End of FRST.txt ============================



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: () (Fixed) (Total:185.97 GB) (Free:161.86 GB) NTFS
Drive d: (My Passport) (Fixed) (Total:298.06 GB) (Free:150.04 GB) NTFS

Available physical RAM: 1245.62 MB
Total physical RAM: 2046.41 MB
Percentage of memory in use: 39%

==================== MBR and Partition Table ==================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 186.3 GB) (Disk ID: FFEF27C1)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=186 GB) - (Type=07 NTFS)
Disk: 1 (MBR Code: Windows XP) (Size: 298.1 GB) (Disk ID: 00028ACA)
Partition 1: (Not Active) - (Size=298.1 GB) - (Type=07 NTFS)

==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\xxx\Desktop" je 2 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================
Přílohy
Addition.rar
(4.94 KiB) Staženo 70 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomalenie NB

#4 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
GroupPolicy: Restriction - Chrome <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-4029872173-2247020367-3164084679-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
FF ExtraCheck: C:\Program Files\mozilla firefox\browser\defaults\preferences\prefs.js [2015-09-23] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files\mozilla firefox\cfg [2015-09-23] <==== ATTENTION
StartMenuInternet: (HKLM) Opera - C:\Program Files\Opera\Opera.exe hxxp://www.mystartsearch.com/?type=sc&t ... X87EVFC7HS
C:\Program Files\GUTB129.tmp
C:\Users\xxx\AppData\Roaming\8wqKTs1OK
C:\Users\xxx\AppData\Roaming\cUsqhyev4MYXOnxOOPAM
C:\Users\xxx\AppData\Roaming\gDQ5nwuvXSJyA8ECkmcddRA8
C:\Users\xxx\AppData\Roaming\Gmo98pBypYKbQM0wRg240
C:\Users\xxx\AppData\Roaming\OWa0mTfLMUzSzZOsa
C:\Users\xxx\AppData\Roaming\oxf41VOdwmDel
C:\Users\xxx\AppData\Local\Mathtam.exe.config
C:\Users\xxx\AppData\Local\Saolax.exe.config
C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
C:\Users\xxx\AppData\Local\temp
Task: {02272354-B54C-45C3-9651-5FAF8645C0EA} - System32\Tasks\461A9904-F6F2-4549-B67B-AAA44BD21C2 => C:\Users\xxx\AppData\Local\461A9904-F6F2-4549-B67B-AAA44BD21C2\461A9904-F6F2-4549-B67B-AAA44BD21C2.exe <==== ATTENTION
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Ruben
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 29 kvě 2014 11:36
Bydliště: Bratislava

Re: Spomalenie NB

#5 Příspěvek od Ruben »

Fix result of Farbar Recovery Scan Tool (x86) Version:18-10-2015
Ran by xxx (2015-10-18 20:08:01) Run:1
Running from C:\Users\xxx\Desktop
Loaded Profiles: xxx (Available Profiles: xxx)
Boot Mode: Safe Mode (with Networking)

==============================================

fixlist content:
*****************
Start
GroupPolicy: Restriction - Chrome <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-4029872173-2247020367-3164084679-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
FF ExtraCheck: C:\Program Files\mozilla firefox\browser\defaults\preferences\prefs.js [2015-09-23] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files\mozilla firefox\cfg [2015-09-23] <==== ATTENTION
StartMenuInternet: (HKLM) Opera - C:\Program Files\Opera\Opera.exe hxxp://www.mystartsearch.com/?type=sc&t ... X87EVFC7HS
C:\Program Files\GUTB129.tmp
C:\Users\xxx\AppData\Roaming\8wqKTs1OK
C:\Users\xxx\AppData\Roaming\cUsqhyev4MYXOnxOOPAM
C:\Users\xxx\AppData\Roaming\gDQ5nwuvXSJyA8ECkmcddRA8
C:\Users\xxx\AppData\Roaming\Gmo98pBypYKbQM0wRg240
C:\Users\xxx\AppData\Roaming\OWa0mTfLMUzSzZOsa
C:\Users\xxx\AppData\Roaming\oxf41VOdwmDel
C:\Users\xxx\AppData\Local\Mathtam.exe.config
C:\Users\xxx\AppData\Local\Saolax.exe.config
C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
C:\Users\xxx\AppData\Local\temp
Task: {02272354-B54C-45C3-9651-5FAF8645C0EA} - System32\Tasks\461A9904-F6F2-4549-B67B-AAA44BD21C2 => C:\Users\xxx\AppData\Local\461A9904-F6F2-4549-B67B-AAA44BD21C2\461A9904-F6F2-4549-B67B-AAA44BD21C2.exe <==== ATTENTION
End
*****************

C:\Windows\system32\GroupPolicy\Machine => moved successfully
C:\Windows\system32\GroupPolicy\GPT.ini => moved successfully
"HKLM\SOFTWARE\Policies\Google" => key removed successfully.
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully.
"HKU\S-1-5-21-4029872173-2247020367-3164084679-1001\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully.
C:\Program Files\mozilla firefox\browser\defaults\preferences\prefs.js => moved successfully
C:\Program Files\mozilla firefox\cfg => moved successfully
HKLM\SOFTWARE\Clients\StartMenuInternet\Opera\shell\open\command\\Default => value restored successfully
C:\Program Files\GUTB129.tmp => moved successfully
C:\Users\xxx\AppData\Roaming\8wqKTs1OK => moved successfully
C:\Users\xxx\AppData\Roaming\cUsqhyev4MYXOnxOOPAM => moved successfully
C:\Users\xxx\AppData\Roaming\gDQ5nwuvXSJyA8ECkmcddRA8 => moved successfully
C:\Users\xxx\AppData\Roaming\Gmo98pBypYKbQM0wRg240 => moved successfully
C:\Users\xxx\AppData\Roaming\OWa0mTfLMUzSzZOsa => moved successfully
C:\Users\xxx\AppData\Roaming\oxf41VOdwmDel => moved successfully
C:\Users\xxx\AppData\Local\Mathtam.exe.config => moved successfully
C:\Users\xxx\AppData\Local\Saolax.exe.config => moved successfully
C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat => moved successfully
C:\Users\xxx\AppData\Local\temp => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{02272354-B54C-45C3-9651-5FAF8645C0EA}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{02272354-B54C-45C3-9651-5FAF8645C0EA}" => key removed successfully.
C:\Windows\System32\Tasks\461A9904-F6F2-4549-B67B-AAA44BD21C2 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\461A9904-F6F2-4549-B67B-AAA44BD21C2" => key removed successfully.


The system needed a reboot.

==== End of Fixlog 20:08:02 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomalenie NB

#6 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Ruben
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 29 kvě 2014 11:36
Bydliště: Bratislava

Re: Spomalenie NB

#7 Příspěvek od Ruben »

Stále Disk po druhej minúte od štartu 100% zaťaženie. Postupne vyskakuje až ostane na 100

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomalenie NB

#8 Příspěvek od Rudy »

Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Ruben
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 29 kvě 2014 11:36
Bydliště: Bratislava

Re: Spomalenie NB

#9 Příspěvek od Ruben »

kde MBAM ukladá logy? (spustil som kontrolu už)

Malwarebytes Anti-Malware
www.malwarebytes.org

Dátum kontroly: 18.10.2015
Čas kontroly: 23:09
Protokol: ssssss.txt
Správca: Áno

Verzia: 2.2.0.1024
Dazabáza malware: v2015.10.18.01
Databáza rootkitov: v2015.10.16.01
Licencia: Bezplatná verzia
Ochrana pred škodlivým softvérom: Vypnuté
Ochrana pred škodlivými webstránkami: Vypnuté
Vlastná ochrana: Vypnuté

OS: Windows 8
CPU: x86
Súborový systém: NTFS
Používateľ: xxx

Typ kontroly: Kontrola hrozieb
Výsledok: Dokončená
Skontrolovaných objektov: 290106
Uplynulý čas: 14 min, 1 s

Pamäť: Zapnuté
Pri spustení: Zapnuté
Súborový systém: Zapnuté
Archívy: Zapnuté
Rootkity: Vypnuté
Heuristika: Zapnuté
PUP: Zapnuté
PUM: Zapnuté

Procesy: 0
(Žiadne škodlivé položky neboli zistené)

Moduly: 0
(Žiadne škodlivé položky neboli zistené)

Kľúče databázy Registry: 0
(Žiadne škodlivé položky neboli zistené)

Hodnoty databázy Registry: 0
(Žiadne škodlivé položky neboli zistené)

Údaj databázy Registry: 0
(Žiadne škodlivé položky neboli zistené)

Priečinky: 0
(Žiadne škodlivé položky neboli zistené)

Súbory: 0
(Žiadne škodlivé položky neboli zistené)

Fyzické sektory: 0
(Žiadne škodlivé položky neboli zistené)


(end)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomalenie NB

#10 Příspěvek od Rudy »

Dejte log ComboFix:
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe

pote spustte aplikaci pod uctem s administratorskym opravnenim

hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.

v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se

jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine

aplikace ani nic jineho

behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)

upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,

pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k

nezadoucim kolizim s rezidentem antispyware.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Ruben
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 29 kvě 2014 11:36
Bydliště: Bratislava

Re: Spomalenie NB

#11 Příspěvek od Ruben »

Scanuje, po dokončení upravím príspevok

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomalenie NB

#12 Příspěvek od Rudy »

OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Ruben
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 29 kvě 2014 11:36
Bydliště: Bratislava

Re: Spomalenie NB

#13 Příspěvek od Ruben »

ComboFix 15-10-15.01 - xxx 19.10.2015 18:19:23.2.2 - x86 NETWORK
Microsoft Windows 8 6.2.9200.0.1250.421.1051.18.2046.1456 [GMT 2:00]
Running from: c:\users\xxx\Desktop\ComboFix.exe
AV: avast! Antivirus *Enabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AV: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: avast! Antivirus *Enabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\ntuser.pol
c:\windows\pkunzip.pif
c:\windows\pkzip.pif
.
.
((((((((((((((((((((((((( Files Created from 2015-09-19 to 2015-10-19 )))))))))))))))))))))))))))))))
.
.
2015-10-19 17:33 . 2015-10-19 17:33 -------- d-----w- c:\users\xxx\AppData\Local\temp
2015-10-19 17:33 . 2015-10-19 17:33 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-10-18 20:57 . 2015-10-18 21:05 32384 ----a-w- c:\windows\system32\drivers\hitmanpro37.sys
2015-10-18 16:15 . 2015-10-18 18:08 -------- d-----w- C:\FRST
2015-10-18 09:43 . 2015-10-18 09:43 -------- d-----w- c:\users\xxx\AppData\Roaming\AVAST Software
2015-10-18 09:31 . 2015-10-18 09:31 81728 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2015-10-18 09:31 . 2015-10-18 09:31 76000 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2015-10-18 09:31 . 2015-10-18 09:31 49776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2015-10-18 09:31 . 2015-10-18 09:31 434184 ----a-w- c:\windows\system32\drivers\aswSP.sys
2015-10-18 09:31 . 2015-10-18 09:31 24016 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2015-10-18 09:31 . 2015-10-18 09:31 208664 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2015-10-18 09:31 . 2015-10-18 09:31 115640 ----a-w- c:\windows\system32\drivers\aswStm.sys
2015-10-18 09:31 . 2015-10-18 09:31 789296 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2015-10-18 09:31 . 2015-10-18 09:31 313472 ----a-w- c:\windows\system32\aswBoot.exe
2015-10-18 09:31 . 2015-10-18 09:31 43112 ----a-w- c:\windows\avastSS.scr
2015-10-18 09:23 . 2015-10-18 09:23 -------- d-----w- c:\program files\AVAST Software
2015-10-18 09:08 . 2015-10-18 09:08 -------- d-----w- c:\program files\HitmanPro
2015-10-18 09:08 . 2015-10-18 09:13 -------- d-----w- c:\programdata\HitmanPro
2015-10-18 08:43 . 2015-10-18 21:08 170200 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-10-18 08:43 . 2015-10-18 08:43 -------- d-----w- c:\program files\Malwarebytes Anti-Malware
2015-10-18 08:43 . 2015-10-05 07:50 51928 ----a-w- c:\windows\system32\drivers\mwac.sys
2015-10-18 08:43 . 2015-10-05 07:50 94936 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2015-10-18 08:43 . 2015-10-05 07:50 23256 ----a-w- c:\windows\system32\drivers\mbam.sys
2015-10-18 08:37 . 2015-10-18 08:37 -------- d-----w- c:\program files\HD Tune
2015-10-18 00:02 . 2015-10-18 00:02 -------- d-----w- c:\program files\CPUID
2015-10-17 23:59 . 2015-10-17 23:59 -------- d-----w- c:\program files\Speccy
2015-10-17 11:25 . 2015-10-17 11:25 -------- d-----w- c:\programdata\Malwarebytes
2015-10-17 11:16 . 2015-10-18 08:42 -------- d-----w- C:\AdwCleaner
2015-10-15 16:33 . 2015-10-15 16:33 -------- d-----w- C:\found.000
2015-10-12 19:12 . 2015-10-12 19:12 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2015-10-02 15:36 . 2015-10-02 15:36 -------- d-----w- c:\program files\6617f545-1b39-466e-a8a9-8687b0e3201c
2015-10-01 15:54 . 2015-09-01 23:28 3388416 ----a-w- c:\windows\system32\win32k.sys
2015-10-01 15:54 . 2015-09-02 13:38 35328 ----a-w- c:\windows\system32\atmlib.dll
2015-10-01 15:54 . 2015-08-28 21:59 304128 ----a-w- c:\windows\system32\atmfd.dll
2015-10-01 15:54 . 2012-11-08 04:24 75776 ----a-w- c:\windows\system32\fontsub.dll
2015-10-01 15:54 . 2012-11-08 04:24 10752 ----a-w- c:\windows\system32\dciman32.dll
2015-10-01 15:54 . 2012-11-08 04:01 3072 ----a-w- c:\windows\system32\lpk.dll
2015-10-01 15:53 . 2014-12-18 06:19 683520 ----a-w- c:\windows\system32\IKEEXT.DLL
2015-10-01 15:53 . 2013-06-10 19:10 245248 ----a-w- c:\windows\system32\FWPUCLNT.DLL
2015-10-01 15:53 . 2014-12-18 06:19 473600 ----a-w- c:\windows\system32\BFE.DLL
2015-10-01 15:53 . 2014-12-18 07:02 38720 ----a-w- c:\windows\system32\drivers\wfplwfs.sys
2015-10-01 15:53 . 2014-12-18 06:20 702464 ----a-w- c:\windows\system32\nshwfp.dll
2015-10-01 15:50 . 2014-12-19 04:04 122880 ----a-w- c:\windows\system32\drivers\mrxdav.sys
2015-10-01 15:49 . 2012-10-06 22:02 8855040 ----a-w- c:\windows\system32\twinui.dll
2015-10-01 15:48 . 2015-06-15 15:22 2416640 ----a-w- c:\windows\system32\msi.dll
2015-10-01 15:48 . 2014-06-12 23:34 754176 ----a-w- c:\windows\system32\actxprxy.dll
2015-10-01 15:48 . 2015-06-15 15:22 2037760 ----a-w- c:\windows\system32\authui.dll
2015-10-01 15:48 . 2013-03-02 09:06 57576 ----a-w- c:\windows\system32\drivers\pdc.sys
2015-10-01 15:48 . 2015-06-15 15:22 62976 ----a-w- c:\windows\system32\msiexec.exe
2015-10-01 15:48 . 2014-06-05 13:55 104792 ----a-w- c:\windows\system32\consent.exe
2015-10-01 15:48 . 2013-03-06 05:02 52224 ----a-w- c:\windows\system32\appinfo.dll
2015-10-01 15:48 . 2014-10-11 05:57 295424 ----a-w- c:\windows\system32\msihnd.dll
2015-10-01 15:38 . 2015-08-05 15:03 1307136 ----a-w- c:\program files\Windows Journal\NBDoc.DLL
2015-10-01 15:38 . 2015-04-07 23:43 1413632 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\InkObj.dll
2015-10-01 15:37 . 2015-08-05 15:03 1090048 ----a-w- c:\program files\Windows Journal\JNWDRV.dll
2015-10-01 15:37 . 2015-08-05 15:03 1067520 ----a-w- c:\program files\Windows Journal\JNTFiltr.dll
2015-10-01 15:37 . 2015-08-05 15:03 1032704 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\journal.dll
2015-10-01 15:37 . 2015-04-07 23:44 1924096 ----a-w- c:\program files\Windows Journal\Journal.exe
2015-10-01 15:37 . 2015-03-12 03:52 1374720 ----a-w- c:\windows\system32\wevtsvc.dll
2015-10-01 15:34 . 2014-09-03 02:48 510464 ----a-w- c:\windows\system32\rastls.dll
2015-10-01 15:34 . 2013-07-09 02:49 175872 ----a-w- c:\windows\system32\drivers\usbvideo.sys
2015-10-01 15:34 . 2013-07-09 02:50 87040 ----a-w- c:\windows\system32\drivers\usbcir.sys
2015-10-01 15:34 . 2013-06-29 02:31 61440 ----a-w- c:\windows\system32\drivers\hidclass.sys
2015-10-01 15:34 . 2013-05-04 04:08 19456 ----a-w- c:\windows\system32\drivers\hidusb.sys
2015-10-01 15:34 . 2012-11-20 04:56 30208 ----a-w- c:\windows\system32\drivers\hidi2c.sys
2015-10-01 15:34 . 2013-06-29 02:32 26496 ----a-w- c:\windows\system32\drivers\hidparse.sys
2015-10-01 15:34 . 2013-07-01 22:15 18944 ----a-w- c:\windows\system32\drivers\usbprint.sys
2015-10-01 15:31 . 2015-06-11 19:05 1079296 ----a-w- c:\windows\system32\gdi32.dll
2015-10-01 15:30 . 2015-02-24 07:11 641024 ----a-w- c:\windows\system32\drivers\http.sys
2015-10-01 15:25 . 2015-07-06 15:03 38928 ----a-w- c:\windows\system32\drivers\WdBoot.sys
2015-10-01 15:25 . 2015-07-06 14:31 152736 ----a-w- c:\program files\Windows Defender\MpAsDesc.dll
2015-10-01 15:25 . 2015-07-06 14:31 276128 ----a-w- c:\program files\Windows Defender\EppManifest.dll
2015-10-01 15:25 . 2015-07-06 14:31 111264 ----a-w- c:\program files\Windows Defender\MpEvMsg.dll
2015-10-01 15:25 . 2015-07-06 14:31 442016 ----a-w- c:\program files\Windows Defender\MsMpRes.dll
2015-10-01 15:22 . 2015-07-13 21:54 5590872 ----a-w- c:\windows\system32\ntoskrnl.exe
2015-10-01 15:17 . 2013-12-04 23:37 451072 ----a-w- c:\windows\system32\msdrm.dll
2015-10-01 15:05 . 2014-04-12 07:24 429056 ----a-w- c:\windows\system32\winlogon.exe
2015-10-01 15:05 . 2014-04-12 07:23 350720 ----a-w- c:\windows\system32\lsm.dll
2015-10-01 15:05 . 2014-04-12 07:23 178688 ----a-w- c:\windows\system32\wdigest.dll
2015-10-01 15:05 . 2014-04-12 07:23 76800 ----a-w- c:\windows\system32\TSpkg.dll
2015-10-01 15:05 . 2014-11-08 06:57 187904 ----a-w- c:\windows\system32\pku2u.dll
2015-10-01 15:05 . 2014-04-12 07:22 17408 ----a-w- c:\windows\system32\credssp.dll
2015-10-01 14:55 . 2015-04-25 03:41 541696 ----a-w- c:\windows\system32\comctl32.dll
2015-10-01 14:53 . 2015-03-04 05:22 256832 ----a-w- c:\windows\system32\drivers\clfs.sys
2015-10-01 14:53 . 2015-03-04 04:52 57856 ----a-w- c:\windows\system32\clfsw32.dll
2015-10-01 14:53 . 2014-06-12 23:50 1229144 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2015-10-01 14:53 . 2013-01-09 23:51 259816 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2015-10-01 14:53 . 2013-02-12 00:18 15872 ----a-w- c:\windows\system32\drivers\usb8023.sys
2015-10-01 14:42 . 2013-04-27 03:21 503808 ----a-w- c:\windows\system32\win32spl.dll
2015-10-01 14:38 . 2014-07-24 03:33 875688 ----a-w- c:\windows\system32\msvcr120_clr0400.dll
2015-10-01 14:31 . 2015-03-12 03:52 1933312 ----a-w- c:\windows\system32\wpdshext.dll
2015-10-01 14:31 . 2015-03-12 03:52 713216 ----a-w- c:\windows\system32\drivers\UMDF\WpdMtpDr.dll
2015-10-01 08:02 . 2015-10-17 13:25 -------- d-----w- c:\users\xxx\AppData\Local\461A9904-F6F2-4549-B67B-AAA44BD21C2
2015-09-23 13:41 . 2015-09-23 13:41 -------- d-----w- c:\users\xxx\AppData\Local\CEF
2015-09-23 13:41 . 2015-09-23 13:41 -------- d-----w- c:\users\xxx\AppData\Local\Steam
2015-09-23 08:01 . 2015-10-18 09:23 -------- d-----w- c:\programdata\AVAST Software
2015-09-22 08:12 . 2015-10-17 13:11 -------- d-----w- c:\program files\eb5fb9ce-3972-49bd-b879-097c8e3cffc3
2015-09-21 12:28 . 2015-10-17 13:11 -------- d-----w- c:\program files\3d0ba577-e8b0-467f-bafd-c1ac5dc1c90c
2015-09-20 18:02 . 2015-10-17 13:11 -------- d-----w- c:\program files\cdc98ec8-71a5-4229-a61f-c3685d7d2f9c
2015-09-20 13:40 . 2015-09-20 13:40 -------- d-----w- c:\users\xxx\AppData\Local\Avg
2015-09-20 13:36 . 2015-09-21 14:34 -------- d-----w- c:\programdata\MFAData
2015-09-20 13:36 . 2015-09-20 13:36 -------- d--h--w- c:\programdata\Common Files
2015-09-20 13:36 . 2015-09-20 13:36 -------- d-----w- c:\users\xxx\AppData\Local\MFAData
2015-09-19 18:30 . 2015-10-17 13:11 -------- d-----w- c:\program files\b4773526-518d-4a63-9972-d01aaeb23169
2015-09-19 17:51 . 2015-09-19 17:51 -------- d-----w- c:\program files\Feed Notifier
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-10-09 10:41 . 2015-07-16 05:42 17536 ----a-w- c:\programdata\Microsoft\windowssampling\Sqm\Manifest\Sqm3.bin
2015-09-12 14:28 . 2015-09-12 14:28 345360 ----a-w- c:\windows\system32\LavasoftTcpService.dll
2015-08-24 09:59 . 2015-08-24 09:59 687638 ----a-w- c:\windows\Counter-Strike 1.6 Standalone Uninstaller.exe
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2015-10-18 09:31 696120 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"="c:\program files\CCleaner\CCleaner.exe" [2014-12-12 5489944]
"Steam"="c:\program files\Steam\Steam.exe" [2015-08-19 2899136]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 31016]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-06-20 1316136]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2015-10-18 6134544]
.
c:\users\xxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Orezávač obrazovky a spúšťač programu OneNote 2007.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [2006-10-26 98632]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"EnableCursorSuppression"= 1 (0x1)
"EnableUIADesktopToggle"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"SoftwareSASGeneration"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro37Crusader]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro37CrusaderBoot]
@=""
.
R0 aswRvrt;avast! Revert; [x]
R0 aswVmm;avast! VM Monitor; [x]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2015-10-18 789296]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2015-10-18 434184]
R2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys [2015-10-18 24016]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2015-10-18 76000]
R2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys [2015-10-18 115640]
R2 HitmanProScheduler;HitmanPro Scheduler;c:\program files\HitmanPro\hmpsched.exe [2015-10-18 106248]
R2 HWDeviceService.exe;HWDeviceService.exe;c:\programdata\DatacardService\HWDeviceService.exe [2014-01-15 276048]
R2 Mobile Partner. RunOuc;Mobile Partner. OUC;c:\program files\Mobile Partner\UpdateDog\ouc.exe [2013-10-26 651856]
R3 cpuz138;cpuz138;c:\users\xxx\AppData\Local\Temp\cpuz138\cpuz138_x32.sys [x]
R3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\DRIVERS\ew_hwusbdev.sys [2013-01-25 95232]
R3 ew_usbenumfilter;huawei_CompositeFilter;c:\windows\System32\drivers\ew_usbenumfilter.sys [2012-12-22 11904]
R3 hitmanpro37;HitmanPro 3.7 Support Driver;c:\windows\system32\drivers\hitmanpro37.sys [2015-10-18 32384]
R3 hwusb_cdcacm;hwusb_cdcacm;c:\windows\system32\DRIVERS\ew_cdcacm.sys [2014-07-25 111872]
R3 hwusb_wwanecm;hwusb_wwanecm;c:\windows\system32\DRIVERS\ew_wwanecm.sys [2014-09-30 319872]
R3 vmicheartbeat;Hyper-V Heartbeat Service;c:\windows\system32\svchost.exe [2012-07-26 23040]
R3 WUDFWpdMtp;WUDFWpdMtp;c:\windows\System32\drivers\WUDFRd.sys [2012-07-26 155136]
S3 huawei_enumerator;huawei_enumerator;c:\windows\System32\drivers\ew_jubusenum.sys [2013-11-30 77824]
S3 netwlv32;@netwlv32.inf, %NIC_Service_DispName_VISTA%; Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit;c:\windows\system32\DRIVERS\netwlv32.sys [x]
S3 RTL8168;Realtek 8168 NT Driver;c:\windows\system32\DRIVERS\Rt630x86.sys [2012-07-25 495104]
.
.
Contents of the 'Scheduled Tasks' folder
.
2015-10-18 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-05-24 15:14]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com
mStart Page = hxxp://www.google.com
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MICROS~1\Office12\EXCEL.EXE/3000
Trusted Zone: localhost
Trusted Zone: webcompanion.com
TCP: DhcpNameServer = 192.168.1.1
TCP: Interfaces\{4884CEB1-9F0E-4E37-9CE4-14075FB4CFC0}: NameServer = 213.151.222.34 85.237.225.250
TCP: Interfaces\{6583B60A-1BC9-41BF-B6D8-11A30294EE11}: NameServer = 213.151.222.34 85.237.225.250
TCP: Interfaces\{6EF9C44E-9A88-4D5D-AA87-B38046F746B6}: NameServer = 213.151.222.34 85.237.225.250
TCP: Interfaces\{8CA7C5CE-5767-48D8-9D3A-A87DD715B41E}: NameServer = 213.151.222.34 85.237.225.250
TCP: Interfaces\{D8AE6420-E69B-4F08-B64A-DCAF2667A2BC}: NameServer = 213.151.222.34 85.237.225.250
TCP: Interfaces\{E2F9C98C-9C4F-405D-8CA5-612290A7841E}: NameServer = 213.151.222.34 85.237.225.250
FF - ProfilePath - c:\users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\7b2knmod.default\
FF - prefs.js: browser.search.selectedEngine - Default
FF - prefs.js: keyword.URL -
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e96d-e325-11ce-bfc1-08002be10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e96d-e325-11ce-bfc1-08002be10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e96d-e325-11ce-bfc1-08002be10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e96d-e325-11ce-bfc1-08002be10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e96d-e325-11ce-bfc1-08002be10318}\0004\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e96d-e325-11ce-bfc1-08002be10318}\0005\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e96d-e325-11ce-bfc1-08002be10318}\0006\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
@SACL=(02 0000)
.
Completion time: 2015-10-19 19:34:50
ComboFix-quarantined-files.txt 2015-10-19 17:34
ComboFix2.txt 2015-10-17 13:15
.
Pre-Run: 173 805 211 648 bytes free
Post-Run: 173 772 115 968 bytes free
.
- - End Of File - - 3B59F90CE4322F6A77A5E1B7D565C3A1
A36C5E4F47E84449FF07ED3517B43A31

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomalenie NB

#14 Příspěvek od Rudy »

Ještě dočistíme. Otevřte poznámkový blok a zkopírujte do něj:
RegLock::
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e96d-e325-11ce-bfc1-08002be10318}\0000\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e96d-e325-11ce-bfc1-08002be10318}\0001\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e96d-e325-11ce-bfc1-08002be10318}\0002\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e96d-e325-11ce-bfc1-08002be10318}\0003\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e96d-e325-11ce-bfc1-08002be10318}\0004\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e96d-e325-11ce-bfc1-08002be10318}\0005\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e96d-e325-11ce-bfc1-08002be10318}\0006\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]

Reboot::
Uložte na plochu jako CFScript.txt. Pak jej myší přetáhněte nad ikonu ComboFix a pusťte. CF se spsutí a vykoná příkazy ze skriptu.

Obrázek
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Ruben
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 29 kvě 2014 11:36
Bydliště: Bratislava

Re: Spomalenie NB

#15 Příspěvek od Ruben »

ComboFix 15-10-15.01 - xxx 19.10.2015 19:54:59.3.2 - x86 NETWORK
Microsoft Windows 8 6.2.9200.0.1250.421.1051.18.2046.1516 [GMT 2:00]
Running from: c:\users\xxx\Desktop\ComboFix.exe
Command switches used :: c:\users\xxx\Desktop\cfscript.txt
AV: avast! Antivirus *Enabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AV: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: avast! Antivirus *Enabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.
.
((((((((((((((((((((((((( Files Created from 2015-09-19 to 2015-10-19 )))))))))))))))))))))))))))))))
.
.
2015-10-19 19:09 . 2015-10-19 19:09 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-10-19 17:33 . 2015-10-19 19:11 -------- d-----w- c:\users\xxx\AppData\Local\temp
2015-10-18 20:57 . 2015-10-18 21:05 32384 ----a-w- c:\windows\system32\drivers\hitmanpro37.sys
2015-10-18 16:15 . 2015-10-18 18:08 -------- d-----w- C:\FRST
2015-10-18 09:43 . 2015-10-18 09:43 -------- d-----w- c:\users\xxx\AppData\Roaming\AVAST Software
2015-10-18 09:31 . 2015-10-18 09:31 81728 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2015-10-18 09:31 . 2015-10-18 09:31 76000 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2015-10-18 09:31 . 2015-10-18 09:31 49776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2015-10-18 09:31 . 2015-10-18 09:31 434184 ----a-w- c:\windows\system32\drivers\aswSP.sys
2015-10-18 09:31 . 2015-10-18 09:31 24016 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2015-10-18 09:31 . 2015-10-18 09:31 208664 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2015-10-18 09:31 . 2015-10-18 09:31 115640 ----a-w- c:\windows\system32\drivers\aswStm.sys
2015-10-18 09:31 . 2015-10-18 09:31 789296 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2015-10-18 09:31 . 2015-10-18 09:31 313472 ----a-w- c:\windows\system32\aswBoot.exe
2015-10-18 09:31 . 2015-10-18 09:31 43112 ----a-w- c:\windows\avastSS.scr
2015-10-18 09:23 . 2015-10-18 09:23 -------- d-----w- c:\program files\AVAST Software
2015-10-18 09:08 . 2015-10-18 09:08 -------- d-----w- c:\program files\HitmanPro
2015-10-18 09:08 . 2015-10-18 09:13 -------- d-----w- c:\programdata\HitmanPro
2015-10-18 08:43 . 2015-10-18 21:08 170200 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-10-18 08:43 . 2015-10-18 08:43 -------- d-----w- c:\program files\Malwarebytes Anti-Malware
2015-10-18 08:43 . 2015-10-05 07:50 51928 ----a-w- c:\windows\system32\drivers\mwac.sys
2015-10-18 08:43 . 2015-10-05 07:50 94936 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2015-10-18 08:43 . 2015-10-05 07:50 23256 ----a-w- c:\windows\system32\drivers\mbam.sys
2015-10-18 08:37 . 2015-10-18 08:37 -------- d-----w- c:\program files\HD Tune
2015-10-18 00:02 . 2015-10-18 00:02 -------- d-----w- c:\program files\CPUID
2015-10-17 23:59 . 2015-10-17 23:59 -------- d-----w- c:\program files\Speccy
2015-10-17 11:25 . 2015-10-17 11:25 -------- d-----w- c:\programdata\Malwarebytes
2015-10-17 11:16 . 2015-10-18 08:42 -------- d-----w- C:\AdwCleaner
2015-10-15 16:33 . 2015-10-15 16:33 -------- d-----w- C:\found.000
2015-10-12 19:12 . 2015-10-12 19:12 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2015-10-02 15:36 . 2015-10-02 15:36 -------- d-----w- c:\program files\6617f545-1b39-466e-a8a9-8687b0e3201c
2015-10-01 15:54 . 2015-09-01 23:28 3388416 ----a-w- c:\windows\system32\win32k.sys
2015-10-01 15:54 . 2015-09-02 13:38 35328 ----a-w- c:\windows\system32\atmlib.dll
2015-10-01 15:54 . 2015-08-28 21:59 304128 ----a-w- c:\windows\system32\atmfd.dll
2015-10-01 15:54 . 2012-11-08 04:24 75776 ----a-w- c:\windows\system32\fontsub.dll
2015-10-01 15:54 . 2012-11-08 04:24 10752 ----a-w- c:\windows\system32\dciman32.dll
2015-10-01 15:54 . 2012-11-08 04:01 3072 ----a-w- c:\windows\system32\lpk.dll
2015-10-01 15:53 . 2014-12-18 06:19 683520 ----a-w- c:\windows\system32\IKEEXT.DLL
2015-10-01 15:53 . 2013-06-10 19:10 245248 ----a-w- c:\windows\system32\FWPUCLNT.DLL
2015-10-01 15:53 . 2014-12-18 06:19 473600 ----a-w- c:\windows\system32\BFE.DLL
2015-10-01 15:53 . 2014-12-18 07:02 38720 ----a-w- c:\windows\system32\drivers\wfplwfs.sys
2015-10-01 15:53 . 2014-12-18 06:20 702464 ----a-w- c:\windows\system32\nshwfp.dll
2015-10-01 15:50 . 2014-12-19 04:04 122880 ----a-w- c:\windows\system32\drivers\mrxdav.sys
2015-10-01 15:49 . 2012-10-06 22:02 8855040 ----a-w- c:\windows\system32\twinui.dll
2015-10-01 15:48 . 2015-06-15 15:22 2416640 ----a-w- c:\windows\system32\msi.dll
2015-10-01 15:48 . 2014-06-12 23:34 754176 ----a-w- c:\windows\system32\actxprxy.dll
2015-10-01 15:48 . 2015-06-15 15:22 2037760 ----a-w- c:\windows\system32\authui.dll
2015-10-01 15:48 . 2013-03-02 09:06 57576 ----a-w- c:\windows\system32\drivers\pdc.sys
2015-10-01 15:48 . 2015-06-15 15:22 62976 ----a-w- c:\windows\system32\msiexec.exe
2015-10-01 15:48 . 2014-06-05 13:55 104792 ----a-w- c:\windows\system32\consent.exe
2015-10-01 15:48 . 2013-03-06 05:02 52224 ----a-w- c:\windows\system32\appinfo.dll
2015-10-01 15:48 . 2014-10-11 05:57 295424 ----a-w- c:\windows\system32\msihnd.dll
2015-10-01 15:38 . 2015-08-05 15:03 1307136 ----a-w- c:\program files\Windows Journal\NBDoc.DLL
2015-10-01 15:38 . 2015-04-07 23:43 1413632 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\InkObj.dll
2015-10-01 15:37 . 2015-08-05 15:03 1090048 ----a-w- c:\program files\Windows Journal\JNWDRV.dll
2015-10-01 15:37 . 2015-08-05 15:03 1067520 ----a-w- c:\program files\Windows Journal\JNTFiltr.dll
2015-10-01 15:37 . 2015-08-05 15:03 1032704 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\journal.dll
2015-10-01 15:37 . 2015-04-07 23:44 1924096 ----a-w- c:\program files\Windows Journal\Journal.exe
2015-10-01 15:37 . 2015-03-12 03:52 1374720 ----a-w- c:\windows\system32\wevtsvc.dll
2015-10-01 15:34 . 2014-09-03 02:48 510464 ----a-w- c:\windows\system32\rastls.dll
2015-10-01 15:34 . 2013-07-09 02:49 175872 ----a-w- c:\windows\system32\drivers\usbvideo.sys
2015-10-01 15:34 . 2013-07-09 02:50 87040 ----a-w- c:\windows\system32\drivers\usbcir.sys
2015-10-01 15:34 . 2013-06-29 02:31 61440 ----a-w- c:\windows\system32\drivers\hidclass.sys
2015-10-01 15:34 . 2013-05-04 04:08 19456 ----a-w- c:\windows\system32\drivers\hidusb.sys
2015-10-01 15:34 . 2012-11-20 04:56 30208 ----a-w- c:\windows\system32\drivers\hidi2c.sys
2015-10-01 15:34 . 2013-06-29 02:32 26496 ----a-w- c:\windows\system32\drivers\hidparse.sys
2015-10-01 15:34 . 2013-07-01 22:15 18944 ----a-w- c:\windows\system32\drivers\usbprint.sys
2015-10-01 15:31 . 2015-06-11 19:05 1079296 ----a-w- c:\windows\system32\gdi32.dll
2015-10-01 15:30 . 2015-02-24 07:11 641024 ----a-w- c:\windows\system32\drivers\http.sys
2015-10-01 15:25 . 2015-07-06 15:03 38928 ----a-w- c:\windows\system32\drivers\WdBoot.sys
2015-10-01 15:25 . 2015-07-06 14:31 152736 ----a-w- c:\program files\Windows Defender\MpAsDesc.dll
2015-10-01 15:25 . 2015-07-06 14:31 276128 ----a-w- c:\program files\Windows Defender\EppManifest.dll
2015-10-01 15:25 . 2015-07-06 14:31 111264 ----a-w- c:\program files\Windows Defender\MpEvMsg.dll
2015-10-01 15:25 . 2015-07-06 14:31 442016 ----a-w- c:\program files\Windows Defender\MsMpRes.dll
2015-10-01 15:22 . 2015-07-13 21:54 5590872 ----a-w- c:\windows\system32\ntoskrnl.exe
2015-10-01 15:17 . 2013-12-04 23:37 451072 ----a-w- c:\windows\system32\msdrm.dll
2015-10-01 15:05 . 2014-04-12 07:24 429056 ----a-w- c:\windows\system32\winlogon.exe
2015-10-01 15:05 . 2014-04-12 07:23 350720 ----a-w- c:\windows\system32\lsm.dll
2015-10-01 15:05 . 2014-04-12 07:23 178688 ----a-w- c:\windows\system32\wdigest.dll
2015-10-01 15:05 . 2014-04-12 07:23 76800 ----a-w- c:\windows\system32\TSpkg.dll
2015-10-01 15:05 . 2014-11-08 06:57 187904 ----a-w- c:\windows\system32\pku2u.dll
2015-10-01 15:05 . 2014-04-12 07:22 17408 ----a-w- c:\windows\system32\credssp.dll
2015-10-01 14:55 . 2015-04-25 03:41 541696 ----a-w- c:\windows\system32\comctl32.dll
2015-10-01 14:53 . 2015-03-04 05:22 256832 ----a-w- c:\windows\system32\drivers\clfs.sys
2015-10-01 14:53 . 2015-03-04 04:52 57856 ----a-w- c:\windows\system32\clfsw32.dll
2015-10-01 14:53 . 2014-06-12 23:50 1229144 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2015-10-01 14:53 . 2013-01-09 23:51 259816 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2015-10-01 14:53 . 2013-02-12 00:18 15872 ----a-w- c:\windows\system32\drivers\usb8023.sys
2015-10-01 14:42 . 2013-04-27 03:21 503808 ----a-w- c:\windows\system32\win32spl.dll
2015-10-01 14:38 . 2014-07-24 03:33 875688 ----a-w- c:\windows\system32\msvcr120_clr0400.dll
2015-10-01 14:31 . 2015-03-12 03:52 1933312 ----a-w- c:\windows\system32\wpdshext.dll
2015-10-01 14:31 . 2015-03-12 03:52 713216 ----a-w- c:\windows\system32\drivers\UMDF\WpdMtpDr.dll
2015-10-01 08:02 . 2015-10-17 13:25 -------- d-----w- c:\users\xxx\AppData\Local\461A9904-F6F2-4549-B67B-AAA44BD21C2
2015-09-23 13:41 . 2015-09-23 13:41 -------- d-----w- c:\users\xxx\AppData\Local\CEF
2015-09-23 13:41 . 2015-09-23 13:41 -------- d-----w- c:\users\xxx\AppData\Local\Steam
2015-09-23 08:01 . 2015-10-18 09:23 -------- d-----w- c:\programdata\AVAST Software
2015-09-22 08:12 . 2015-10-17 13:11 -------- d-----w- c:\program files\eb5fb9ce-3972-49bd-b879-097c8e3cffc3
2015-09-21 12:28 . 2015-10-17 13:11 -------- d-----w- c:\program files\3d0ba577-e8b0-467f-bafd-c1ac5dc1c90c
2015-09-20 18:02 . 2015-10-17 13:11 -------- d-----w- c:\program files\cdc98ec8-71a5-4229-a61f-c3685d7d2f9c
2015-09-20 13:40 . 2015-09-20 13:40 -------- d-----w- c:\users\xxx\AppData\Local\Avg
2015-09-20 13:36 . 2015-09-21 14:34 -------- d-----w- c:\programdata\MFAData
2015-09-20 13:36 . 2015-09-20 13:36 -------- d--h--w- c:\programdata\Common Files
2015-09-20 13:36 . 2015-09-20 13:36 -------- d-----w- c:\users\xxx\AppData\Local\MFAData
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-10-09 10:41 . 2015-07-16 05:42 17536 ----a-w- c:\programdata\Microsoft\windowssampling\Sqm\Manifest\Sqm3.bin
2015-09-12 14:28 . 2015-09-12 14:28 345360 ----a-w- c:\windows\system32\LavasoftTcpService.dll
2015-08-24 09:59 . 2015-08-24 09:59 687638 ----a-w- c:\windows\Counter-Strike 1.6 Standalone Uninstaller.exe
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2015-10-18 09:31 696120 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"="c:\program files\CCleaner\CCleaner.exe" [2014-12-12 5489944]
"Steam"="c:\program files\Steam\Steam.exe" [2015-08-19 2899136]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 31016]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-06-20 1316136]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2015-10-18 6134544]
.
c:\users\xxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Orezávač obrazovky a spúšťač programu OneNote 2007.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [2006-10-26 98632]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"EnableCursorSuppression"= 1 (0x1)
"EnableUIADesktopToggle"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"SoftwareSASGeneration"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro37Crusader]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro37CrusaderBoot]
@=""
.
R0 aswRvrt;avast! Revert; [x]
R0 aswVmm;avast! VM Monitor; [x]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2015-10-18 789296]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2015-10-18 434184]
R2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys [2015-10-18 24016]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2015-10-18 76000]
R2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys [2015-10-18 115640]
R2 HitmanProScheduler;HitmanPro Scheduler;c:\program files\HitmanPro\hmpsched.exe [2015-10-18 106248]
R2 HWDeviceService.exe;HWDeviceService.exe;c:\programdata\DatacardService\HWDeviceService.exe [2014-01-15 276048]
R2 Mobile Partner. RunOuc;Mobile Partner. OUC;c:\program files\Mobile Partner\UpdateDog\ouc.exe [2013-10-26 651856]
R3 cpuz138;cpuz138;c:\users\xxx\AppData\Local\Temp\cpuz138\cpuz138_x32.sys [x]
R3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\DRIVERS\ew_hwusbdev.sys [2013-01-25 95232]
R3 ew_usbenumfilter;huawei_CompositeFilter;c:\windows\System32\drivers\ew_usbenumfilter.sys [2012-12-22 11904]
R3 hitmanpro37;HitmanPro 3.7 Support Driver;c:\windows\system32\drivers\hitmanpro37.sys [2015-10-18 32384]
R3 hwusb_cdcacm;hwusb_cdcacm;c:\windows\system32\DRIVERS\ew_cdcacm.sys [2014-07-25 111872]
R3 hwusb_wwanecm;hwusb_wwanecm;c:\windows\system32\DRIVERS\ew_wwanecm.sys [2014-09-30 319872]
R3 vmicheartbeat;Hyper-V Heartbeat Service;c:\windows\system32\svchost.exe [2012-07-26 23040]
R3 WUDFWpdMtp;WUDFWpdMtp;c:\windows\System32\drivers\WUDFRd.sys [2012-07-26 155136]
S3 huawei_enumerator;huawei_enumerator;c:\windows\System32\drivers\ew_jubusenum.sys [2013-11-30 77824]
S3 netwlv32;@netwlv32.inf, %NIC_Service_DispName_VISTA%; Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit;c:\windows\system32\DRIVERS\netwlv32.sys [x]
S3 RTL8168;Realtek 8168 NT Driver;c:\windows\system32\DRIVERS\Rt630x86.sys [2012-07-25 495104]
.
.
Contents of the 'Scheduled Tasks' folder
.
2015-10-18 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-05-24 15:14]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com
mStart Page = hxxp://www.google.com
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MICROS~1\Office12\EXCEL.EXE/3000
Trusted Zone: localhost
Trusted Zone: webcompanion.com
TCP: DhcpNameServer = 192.168.1.1
TCP: Interfaces\{4884CEB1-9F0E-4E37-9CE4-14075FB4CFC0}: NameServer = 213.151.222.34 85.237.225.250
TCP: Interfaces\{6583B60A-1BC9-41BF-B6D8-11A30294EE11}: NameServer = 213.151.222.34 85.237.225.250
TCP: Interfaces\{6EF9C44E-9A88-4D5D-AA87-B38046F746B6}: NameServer = 213.151.222.34 85.237.225.250
TCP: Interfaces\{8CA7C5CE-5767-48D8-9D3A-A87DD715B41E}: NameServer = 213.151.222.34 85.237.225.250
TCP: Interfaces\{D8AE6420-E69B-4F08-B64A-DCAF2667A2BC}: NameServer = 213.151.222.34 85.237.225.250
TCP: Interfaces\{E2F9C98C-9C4F-405D-8CA5-612290A7841E}: NameServer = 213.151.222.34 85.237.225.250
FF - ProfilePath - c:\users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\7b2knmod.default\
FF - prefs.js: browser.search.selectedEngine - Default
FF - prefs.js: keyword.URL -
.
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\conhost.exe
c:\windows\helppane.exe
c:\windows\system32\DllHost.exe
.
**************************************************************************
.
Completion time: 2015-10-19 21:14:59 - machine was rebooted
ComboFix-quarantined-files.txt 2015-10-19 19:14
ComboFix2.txt 2015-10-17 13:15
.
Pre-Run: 173 808 848 896 bytes free
Post-Run: 173 700 206 592 bytes free
.
- - End Of File - - C0AC811E6D3F6E7A8D4FB7C11D8E9F0E
8F558EB6672622401DA993E1E865C861

Odpovědět