
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Zasekávání počítače při hraní jednoduchých her na Mozzile
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zasekávání počítače při hraní jednoduchých her na Mozzile
Ahoj, počítač se mi poslední dobou strašně zasekává, je pomalejší, atd.
Hraji jednu jednoduchou klikačku na Mozille i na Chromu ale vždy se mi třeba při 10 minutách hraní zasekne celý počítač a musím ho vypnout natvrdo. Nepřehřívá se.
ADWCleaner jsem zkoušel, smazal nálezy, byl jen 1, nepomohlo.
LOG :
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:07-11-2015
Ran by Petr (administrator) on PETR-HP (16-11-2015 10:07:20)
Running from C:\Users\Petr\Desktop
Loaded Profiles: Petr (Available Profiles: Petr)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe
(forum.viry.cz) C:\Users\Petr\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6602856 2011-01-11] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated)
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [627360 2011-04-13] (Atheros Communications)
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [379552 2011-04-13] (Atheros Commnucations)
HKLM\...\Run: [HPWirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe [363064 2010-07-21] (Hewlett-Packard Company)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [5595848 2015-01-28] (ESET)
HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [656920 2011-02-01] (PDF Complete Inc)
HKLM-x32\...\Run: [HP Quick Launch] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [578944 2012-03-05] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [HPOSD] => C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960 2011-08-19] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-04] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597040 2015-10-06] (Oracle Corporation)
ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => No File
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => No File
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => No File
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\..\Interfaces\{F266592C-96FC-4C75-9FB1-044DA469F9AC}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{F266592C-96FC-4C75-9FB1-044DA469F9AC}: [DhcpNameServer] 94.74.192.252 94.74.192.244
Internet Explorer:
==================
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-1573231078-231515164-428938053-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/
HKU\S-1-5-21-1573231078-231515164-428938053-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\ssv.dll [2015-10-21] (Oracle Corporation)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\jp2ssv.dll [2015-10-21] (Oracle Corporation)
FireFox:
========
FF ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\vv2nhp0x.default-1447660120121
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_245.dll [2015-11-16] ()
FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll [2014-09-01] (EA Digital Illusions CE AB)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2014-04-28] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-16] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1218158.dll [2015-04-17] (Adobe Systems, Inc.)
FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll [2014-09-01] (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.65.2 -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\dtplugin\npDeployJava1.dll [2015-10-21] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.65.2 -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\plugin2\npjp2.dll [2015-10-21] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @t.garena.com/garenatalk -> C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2010-12-08] ()
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2014-04-28] (Adobe Systems)
FF Plugin HKU\S-1-5-21-1573231078-231515164-428938053-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Petr\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-10-08] (Unity Technologies ApS)
Chrome:
=======
CHR Plugin: (Widevine Content Decryption Module) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.8.823\_platform_specific\win_x86\widevinecdmadapter.dll => No File
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.86\PepperFlash\pepflashplayer.dll ()
CHR Profile: C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-05]
CHR Extension: (Dokumenty Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-05]
CHR Extension: (Disk Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-22]
CHR Extension: (YouTube) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25]
CHR Extension: (Adblock Plus) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-09-22]
CHR Extension: (Vyhledávání Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Lounge Assistant) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\enjonnlehciedbcidabdglnnihcncbml [2015-11-03]
CHR Extension: (Tabulky Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-05]
CHR Extension: (Sleeping Ahri (LoL)) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\fonebfgjdigmojhfljmmffkmpedpnoia [2015-08-27]
CHR Extension: (Dokumenty Google offline) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-06]
CHR Extension: (Dingit Infinite HD App) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\llnhnfikffkjbdnfallfpgikamegbbag [2015-11-03]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-17]
CHR Extension: (Gmail) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-28]
Opera:
=======
OPR Extension: (Adblock Plus) - C:\Users\Petr\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2015-01-16]
OPR Extension: (Bookmarks Import & Export) - C:\Users\Petr\AppData\Roaming\Opera Software\Opera Stable\Extensions\omhcddilnfoiiplehpjihipcocdplljn [2015-01-04]
OPR Extension: (plugCubed) - C:\Users\Petr\AppData\Roaming\Opera Software\Opera Stable\Extensions\pgpngjnicamooaemannphpiffajbmbie [2015-01-16]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-08-03] (Advanced Micro Devices, Inc.) [File not signed]
R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [146592 2011-04-13] (Atheros) [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [77984 2011-04-13] (Atheros Commnucations) [File not signed]
S2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [409304 2014-10-08] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [388824 2014-10-08] (BlueStack Systems, Inc.)
R2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [782040 2014-10-08] (BlueStack Systems, Inc.)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [1349576 2015-01-28] (ESET)
U2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9216 2014-12-15] (Hi-Rez Studios) [File not signed]
R2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [1817088 2010-12-28] (Realsil Microelectronics Inc.) [File not signed]
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2015-10-26] (LogMeIn, Inc.)
S4 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1900400 2014-12-16] (Electronic Arts)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1127448 2011-02-01] (PDF Complete Inc)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2015-02-03] ()
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5448976 2015-04-17] (TeamViewer GmbH)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AODDriver4.3; C:\Program Files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [122072 2014-10-08] (BlueStack Systems)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [246000 2015-03-10] (ESET)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
U5 edevmon; C:\Windows\System32\Drivers\edevmon.sys [241880 2015-03-10] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [169792 2015-03-10] (ESET)
R2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [159480 2015-03-10] (ESET)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [26528 2015-02-28] (REALiX(tm))
S3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1866080 2012-11-28] ()
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-11-16 10:07 - 2015-11-16 10:07 - 00017006 _____ C:\Users\Petr\Desktop\FRST.txt
2015-11-16 10:07 - 2015-11-16 10:07 - 00000000 ____D C:\FRST
2015-11-16 10:06 - 2015-11-16 10:06 - 00112640 _____ (forum.viry.cz) C:\Users\Petr\Desktop\FRSTLauncher.exe
2015-11-16 10:04 - 2015-11-16 10:04 - 02198528 _____ (Farbar) C:\Users\Petr\Desktop\FRST64.exe
2015-11-16 08:40 - 2015-11-16 09:59 - 00000168 _____ C:\Windows\setupact.log
2015-11-16 08:40 - 2015-11-16 08:40 - 00000000 _____ C:\Windows\setuperr.log
2015-11-16 08:36 - 2015-11-16 08:36 - 01732096 _____ C:\Users\Petr\Desktop\adwcleaner_5.021.exe
2015-11-15 15:20 - 2015-11-15 15:20 - 08688484 _____ C:\Users\Petr\Downloads\swords-souls.zip
2015-11-14 22:03 - 2015-11-14 22:03 - 00394754 _____ C:\Users\Petr\Downloads\soundboard-1.0b5-win64.ts3_plugin
2015-11-14 22:01 - 2015-11-14 22:01 - 00228983 _____ C:\Users\Petr\Downloads\soundboard-0.9.8.4b-win32.ts3_plugin
2015-11-14 14:56 - 2015-11-14 14:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PlaysTV
2015-11-14 14:55 - 2015-11-14 14:56 - 00000000 ____D C:\Users\Petr\AppData\Roaming\PlaysTV
2015-11-14 14:55 - 2015-11-14 14:56 - 00000000 ____D C:\Program Files (x86)\PlaysTV
2015-11-14 14:55 - 2015-11-14 14:55 - 00077504 _____ C:\Users\Petr\Downloads\playstv_installer (2).exe
2015-11-11 21:45 - 2015-11-11 21:45 - 07487465 _____ C:\Users\Petr\Downloads\BebasNeue.zip
2015-11-07 12:46 - 2015-11-07 12:46 - 00002291 _____ C:\Users\Petr\Downloads\csgo_bananagaming (1).7z
2015-11-06 19:27 - 2015-11-06 19:27 - 00002291 _____ C:\Users\Petr\Downloads\csgo_bananagaming.7z
2015-11-06 16:00 - 2015-11-06 16:00 - 747596686 _____ C:\Users\Petr\Downloads\CSS_Content_Addon-Jan2015.zip
2015-11-06 09:47 - 2015-11-06 09:47 - 01008074 _____ C:\Users\Petr\Downloads\injector_V2.3.rar
2015-11-05 10:09 - 2015-11-05 10:09 - 00000219 _____ C:\Users\Petr\Desktop\Team Fortress 2.url
2015-11-03 22:26 - 2015-08-27 19:18 - 02004480 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-11-03 22:26 - 2015-08-27 19:18 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-11-03 22:26 - 2015-08-27 19:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2015-11-03 22:26 - 2015-08-27 19:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-11-03 22:26 - 2015-08-27 18:58 - 01391104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-11-03 22:26 - 2015-08-27 18:58 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-11-03 22:26 - 2015-08-27 18:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2015-11-03 22:26 - 2015-08-27 18:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-11-03 22:26 - 2015-08-05 19:02 - 00157016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-11-03 22:26 - 2015-08-05 19:02 - 00097112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-11-03 22:26 - 2015-08-05 18:56 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-11-03 22:26 - 2015-08-05 18:55 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-11-03 22:26 - 2015-08-05 18:55 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-11-03 22:26 - 2015-08-05 18:50 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-11-03 22:26 - 2015-08-05 18:50 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-11-03 22:26 - 2015-08-05 18:46 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-11-03 22:26 - 2015-08-05 18:41 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-11-03 22:26 - 2015-08-05 18:41 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-11-03 22:26 - 2015-08-05 18:41 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-11-03 22:26 - 2015-08-05 18:41 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-11-03 22:26 - 2015-08-05 18:40 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-11-03 22:26 - 2015-08-05 18:40 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-11-03 22:26 - 2015-08-05 18:40 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-11-03 22:26 - 2015-08-05 18:40 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2015-11-03 22:26 - 2015-08-05 18:40 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-11-03 22:26 - 2015-08-05 18:39 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-11-03 22:26 - 2015-08-05 18:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-11-03 22:26 - 2015-08-05 18:39 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-11-03 22:26 - 2015-08-05 18:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-11-03 22:26 - 2015-08-05 18:34 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-11-03 22:26 - 2015-08-05 18:30 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-11-03 22:26 - 2015-08-05 18:06 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2015-11-03 22:26 - 2015-08-05 17:38 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-11-03 22:26 - 2015-08-05 17:37 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-11-03 22:26 - 2015-08-05 17:37 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-11-01 18:12 - 2015-11-01 18:12 - 07589125 _____ C:\Users\Petr\Downloads\SamoSansPro.zip
2015-11-01 18:04 - 2015-11-01 18:04 - 02348186 _____ C:\Users\Petr\Downloads\Radar Overviews (2).zip
2015-11-01 18:04 - 2015-11-01 18:04 - 02348186 _____ C:\Users\Petr\Downloads\Radar Overviews (1).zip
2015-11-01 13:47 - 2015-11-01 13:51 - 1533182275 _____ C:\Users\Petr\Downloads\HL2_EP2_Content_Addon-Jan2015.zip
2015-11-01 13:33 - 2015-11-01 13:33 - 160861886 _____ C:\Users\Petr\Downloads\HL2Extra_Content_Addon-Jan2015.zip
2015-11-01 13:30 - 2015-11-01 13:31 - 747457065 _____ C:\Users\Petr\Downloads\HL2_EP1_Content_Addon-Jan2015.zip
2015-11-01 08:32 - 2015-11-01 08:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2015-11-01 08:32 - 2015-11-01 08:32 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi
2015-11-01 08:32 - 2015-10-26 11:15 - 00034720 ____H (LogMeIn, Inc.) C:\Windows\system32\hamachi.sys
2015-10-30 15:45 - 2015-11-16 10:00 - 00000000 ____D C:\Users\Petr\AppData\Local\LogMeIn Hamachi
2015-10-30 15:45 - 2015-10-30 15:45 - 00000000 ____D C:\Users\Petr\AppData\Local\LogMeIn
2015-10-30 15:45 - 2015-10-30 15:45 - 00000000 ____D C:\ProgramData\LogMeIn
2015-10-30 15:42 - 2015-10-30 15:42 - 08712192 _____ C:\Users\Petr\Downloads\hamachi.msi
2015-10-30 14:50 - 2015-10-30 14:50 - 20696248 _____ C:\Users\Petr\Downloads\dro_setup.exe
2015-10-30 14:50 - 2015-10-30 14:50 - 00001968 _____ C:\Users\Petr\Desktop\Drakensang Online.lnk
2015-10-30 14:50 - 2015-10-30 14:50 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Drakensang Online
2015-10-30 14:50 - 2015-10-30 14:50 - 00000000 ____D C:\Program Files (x86)\Drakensang Online
2015-10-27 15:32 - 2015-10-27 15:32 - 00000000 ____D C:\Program Files (x86)\Origin Games
2015-10-27 11:53 - 2015-10-27 11:53 - 00003400 _____ C:\Windows\System32\Tasks\Autobus
2015-10-26 10:57 - 2015-10-26 10:57 - 00000000 ____D C:\Users\Petr\AppData\Local\CrashRpt
2015-10-26 10:54 - 2015-10-26 19:38 - 00000000 ____D C:\Users\Petr\AppData\Local\wf-launcher
2015-10-26 10:54 - 2015-10-26 19:35 - 00000000 ____D C:\ProgramData\GFACE
2015-10-25 08:58 - 2015-10-30 15:52 - 00000097 _____ C:\Users\Petr\Desktop\Crosshair.txt
2015-10-24 19:12 - 2015-10-24 19:12 - 00052307 _____ C:\Users\Petr\Downloads\[SkT]Machri-_-Grown-Ups-(2010)(CZ_EN)[1080p]-=-CSFD-66%.torrent
2015-10-24 18:20 - 2015-10-24 18:20 - 00032067 _____ C:\Users\Petr\Downloads\[SkT]Stazisti-_-The-Internship-(2013)(CZ_EN)[720p]-=-CSFD-61%.torrent
2015-10-24 18:19 - 2015-10-24 18:19 - 00000000 ____D C:\Users\Petr\Downloads\Okrsek.13.Ultimatum.2oo9.AC3.BDRip.XviD.CZ-PODiUM
2015-10-24 18:18 - 2015-10-24 18:18 - 00016730 _____ C:\Users\Petr\Downloads\[SkT]Okrsek_13-_Ultimatum_-_Banlieue_13_-_Ultimatum_(2009)(CZ)_=_CSFD_65%.torrent
2015-10-24 18:11 - 2015-10-24 18:11 - 00014382 _____ C:\Users\Petr\Downloads\Johny-English-se-vrací-CZ-dabing.torrent
2015-10-24 18:10 - 2015-10-24 18:16 - 802751010 ____R C:\Users\Petr\Downloads\Diktator-The Dictator-2012-CZ.avi
2015-10-24 18:09 - 2015-10-24 18:09 - 00031217 _____ C:\Users\Petr\Downloads\[SkT]Diktator-_-The-Dictator-(2012)(CZ).torrent
2015-10-24 18:08 - 2015-10-24 18:08 - 00032097 _____ C:\Users\Petr\Downloads\[SkT]Svetova-valka-Z--World-War-Z-(2013)(CZ)[1080p][3D-SBS]-=-CSFD-75%.torrent
2015-10-24 18:08 - 2015-10-24 18:08 - 00030204 _____ C:\Users\Petr\Downloads\[SkT]Svetova-valka-Z-_-World-War-Z-(2013)(CZ)[1080p]-=-CSFD-75%.torrent
2015-10-24 17:52 - 2015-10-24 17:53 - 00000000 ____D C:\Users\Petr\Downloads\Lets.Be.Cops.2014.480p.BDRip.XviD.AC3.CZ-HiDE
2015-10-24 17:52 - 2015-10-24 17:52 - 00017110 _____ C:\Users\Petr\Downloads\[SkT]Falesni-poldove---Let's-Be-Cops-(2014)(CZ)-CSFD-65%-(1).torrent
2015-10-24 17:47 - 2015-10-24 17:47 - 00014248 _____ C:\Users\Petr\Downloads\pařba-v-bangkoku-CZ.torrent
2015-10-24 17:39 - 2015-10-24 17:45 - 734597120 ____R C:\Users\Petr\Downloads\Parba.ve.Vegas.2009.DVDRip.CZ-PeXXXeso.avi
2015-10-24 17:39 - 2015-10-24 17:39 - 00014500 _____ C:\Users\Petr\Downloads\[SkT]Parba-ve-Vegas---Hangover,-The-(2009)(CZ)-CSFD-81%.torrent
2015-10-24 16:59 - 2015-11-05 22:03 - 00000000 ____D C:\Users\Petr\AppData\LocalLow\uTorrent
2015-10-24 16:59 - 2015-10-24 16:59 - 00014271 _____ C:\Users\Petr\Downloads\Pulp-Fiction-CZ-dabing.torrent
2015-10-24 16:59 - 2015-10-24 16:59 - 00000000 ____D C:\Users\Petr\Downloads\Red
2015-10-24 16:58 - 2015-10-24 16:58 - 00020414 _____ C:\Users\Petr\Downloads\[SkT]Red_1-2_(2010-2013)(CZ)_=_CSFD_76%.torrent
2015-10-24 16:34 - 2015-10-24 16:34 - 00000000 ____D C:\Users\Petr\Documents\LoiLo
2015-10-24 16:33 - 2015-10-24 16:38 - 00000000 ____D C:\Users\Petr\AppData\Local\LoiLo
2015-10-24 16:32 - 2015-10-24 16:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LoiLoScope 2
2015-10-24 16:32 - 2015-10-24 16:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LoiLo Game Recorder
2015-10-24 16:32 - 2015-10-24 16:32 - 00000000 ____D C:\Program Files\LoiLo
2015-10-24 16:27 - 2015-10-24 16:28 - 74713080 _____ (LoiLo inc. ) C:\Users\Petr\Downloads\LoiLoGameRecorder1.1.0.1.exe
2015-10-22 21:41 - 2015-10-22 21:41 - 00000000 ____D C:\ProgramData\ATI
2015-10-22 21:41 - 2015-10-22 21:41 - 00000000 ____D C:\Program Files (x86)\AMD AVT
2015-10-22 21:37 - 2015-10-22 21:37 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2015-10-22 21:35 - 2015-10-22 21:40 - 00000000 ____D C:\Program Files\ATI Technologies
2015-10-22 20:27 - 2015-10-23 13:50 - 00000000 ____D C:\Users\Petr\Downloads\Sony Vegas Pro 13.0 build 310 (64 bit) (patch KHG) [ChingLiu]
2015-10-22 20:05 - 2015-10-23 13:50 - 00000000 ____D C:\Users\Petr\Downloads\Sony Vegas Pro 12 Build 770 (64 bit) (patch-keygen DI) [ChingLiu]
2015-10-22 19:58 - 2015-10-22 19:59 - 04599099 _____ C:\Users\Petr\Downloads\Free Intro #2 AnonymOfficial™.rar
2015-10-22 19:54 - 2015-10-22 19:54 - 24759649 _____ C:\Users\Petr\Downloads\Sony Vegas Pro 10 - TutorialzXD Intro 18.rar
2015-10-22 19:49 - 2015-10-22 19:49 - 26105605 _____ C:\Users\Petr\Downloads\Sv_intro75.zip
2015-10-21 19:17 - 2015-10-21 19:18 - 00000000 ____D C:\Users\Petr\AppData\Local\PAYDAY
2015-10-20 19:29 - 2015-10-20 19:35 - 00005864 _____ C:\Users\Petr\Downloads\AWP Shoot Sound Effect CS-GO.mp3.sfk
2015-10-20 18:59 - 2015-10-20 19:22 - 00828968 _____ C:\Users\Petr\Downloads\UKF Drum & Bass 2012 (Album Megamix).mp3.sfk
2015-10-20 18:55 - 2015-10-20 18:55 - 00179168 _____ C:\Users\Petr\Downloads\csgo 2015-10-19 20-22-39-09.avi.sfk
2015-10-20 14:21 - 2015-10-20 14:21 - 01272994 _____ C:\Users\Petr\Downloads\4.0.4.zip
2015-10-20 13:35 - 2015-10-20 13:39 - 2502494056 _____ C:\Users\Petr\Downloads\csgo 2015-10-19 20-22-39-09.avi
2015-10-19 20:46 - 2015-10-19 20:46 - 00016980 _____ C:\Users\Petr\Downloads\[www.OldSchoolHack.me]_SimplESP v5 Public.rar
2015-10-19 20:41 - 2015-10-19 20:41 - 19304283 _____ C:\Users\Petr\Downloads\Windows6.1-KB2819745-x64-MultiPkg.msu
2015-10-19 20:41 - 2015-10-19 20:41 - 18310215 _____ C:\Users\Petr\Downloads\Windows8-RT-KB2799888-x64.msu
2015-10-19 20:35 - 2015-10-19 20:35 - 00001961 _____ C:\Users\Petr\Downloads\[www.OldSchoolHack.me]_EV0-HAX.rar
2015-10-19 13:49 - 2015-10-19 13:49 - 04490829 _____ C:\Users\Petr\Downloads\Counter-Strike-Global-Offensive-Hack-MultiHack-v2.91.0.rar
2015-10-19 13:47 - 2015-10-19 13:47 - 00017257 _____ C:\Users\Petr\Downloads\Xile Wallhack v1.3r4(GameLoversPro.BlogSpot.com).zip
2015-10-18 10:26 - 2015-10-18 10:26 - 00077504 _____ C:\Users\Petr\Downloads\playstv_installer (1).exe
2015-10-18 10:17 - 2015-10-18 10:17 - 00077504 _____ C:\Users\Petr\Downloads\playstv_installer.exe
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-11-16 10:00 - 2011-05-03 12:18 - 00000000 ____D C:\ProgramData\PDFC
2015-11-16 09:59 - 2015-10-13 20:49 - 00003050 _____ C:\Windows\System32\Tasks\ParkControl
2015-11-16 09:59 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-11-16 09:41 - 2009-07-14 05:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-11-16 09:41 - 2009-07-14 05:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-11-16 09:34 - 2014-10-25 11:41 - 00000000 ____D C:\Program Files (x86)\Steam
2015-11-16 09:33 - 2014-11-07 21:54 - 00780488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-11-16 09:33 - 2014-11-07 21:54 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-11-16 09:21 - 2015-03-22 18:48 - 02008880 _____ C:\Windows\WindowsUpdate.log
2015-11-16 08:47 - 2011-05-03 21:39 - 00669116 _____ C:\Windows\system32\perfh005.dat
2015-11-16 08:47 - 2011-05-03 21:39 - 00141744 _____ C:\Windows\system32\perfc005.dat
2015-11-16 08:47 - 2009-07-14 06:13 - 01584554 _____ C:\Windows\system32\PerfStringBackup.INI
2015-11-16 08:41 - 2015-09-09 13:03 - 00000000 ____D C:\Users\Petr\Documents\Bluetooth Folder
2015-11-16 08:39 - 2015-09-22 16:30 - 00000000 ____D C:\AdwCleaner
2015-11-16 08:38 - 2015-09-29 15:11 - 00000000 ____D C:\Users\Petr\AppData\Roaming\AIMP3
2015-11-16 08:38 - 2014-12-16 13:43 - 00000000 ____D C:\Users\Petr\AppData\Roaming\PhotoScape
2015-11-16 08:38 - 2014-10-30 15:42 - 00000000 ____D C:\Users\Petr\AppData\Roaming\uTorrent
2015-11-16 08:37 - 2014-11-20 13:36 - 00000000 ____D C:\Windows\Minidump
2015-11-16 08:37 - 2014-10-26 06:52 - 00000000 ____D C:\Users\Petr\AppData\Local\CrashDumps
2015-11-15 22:38 - 2015-08-18 10:49 - 00000000 ____D C:\Users\Petr\AppData\Roaming\TS3Client
2015-11-14 22:14 - 2014-10-25 11:14 - 00000000 ____D C:\Users\Petr
2015-11-12 19:44 - 2015-03-27 21:16 - 00000000 ____D C:\Users\Petr\AppData\Roaming\vlc
2015-11-11 20:19 - 2015-08-31 15:33 - 00000000 ____D C:\Users\Petr\Documents\PS Obrázky
2015-11-11 20:19 - 2014-10-25 11:49 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-11-10 21:10 - 2015-08-25 13:55 - 00000000 ____D C:\Users\Petr\Documents\PS Veci
2015-11-07 08:49 - 2009-07-14 06:08 - 00032612 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-11-05 15:21 - 2014-10-27 08:41 - 00000000 ____D C:\Program Files (x86)\Battle.net
2015-11-05 15:20 - 2014-10-27 08:41 - 00000000 ____D C:\Users\Petr\AppData\Local\Battle.net
2015-11-01 13:22 - 2015-08-18 11:29 - 00000000 ____D C:\Users\Petr\AppData\Local\MEGAsync
2015-10-30 15:52 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Public\Libraries
2015-10-27 15:31 - 2014-11-09 10:23 - 00000000 ____D C:\ProgramData\Origin
2015-10-26 18:48 - 2015-02-19 14:08 - 00000000 ____D C:\Users\Petr\AppData\Local\Steam
2015-10-23 14:13 - 2015-08-18 10:48 - 00000000 ____D C:\Program Files\Teamspeak
2015-10-23 14:03 - 2015-09-13 07:32 - 00000000 ____D C:\Program Files\AMD
2015-10-23 13:52 - 2015-04-11 16:11 - 00000000 ___SD C:\Windows\system32\GWX
2015-10-23 13:51 - 2015-10-08 16:02 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome
2015-10-23 13:51 - 2015-09-25 18:15 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2015-10-23 13:51 - 2015-09-13 07:49 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Raptr
2015-10-23 13:51 - 2015-09-13 07:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2015-10-23 13:51 - 2015-09-08 20:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-10-23 13:51 - 2015-09-08 20:38 - 00000000 ____D C:\Program Files\Sony
2015-10-23 13:51 - 2014-10-27 08:41 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Battle.net
2015-10-23 13:50 - 2015-09-13 07:36 - 00000000 ____D C:\Program Files (x86)\AMD
2015-10-23 13:50 - 2015-09-13 07:30 - 00000000 ____D C:\AMD
2015-10-23 13:50 - 2014-10-27 08:42 - 00000000 ____D C:\Program Files (x86)\Hearthstone
2015-10-23 13:49 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\registration
2015-10-23 13:47 - 2015-09-08 20:38 - 00000000 ____D C:\ProgramData\Sony
2015-10-23 13:47 - 2014-10-31 13:02 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Sony
2015-10-23 13:46 - 2015-09-08 20:38 - 00000000 ____D C:\Program Files (x86)\Sony
2015-10-22 21:43 - 2013-07-30 12:09 - 00000000 ____D C:\ProgramData\AMD
2015-10-21 13:05 - 2015-08-26 21:03 - 00000000 ____D C:\Users\Petr\.oracle_jre_usage
2015-10-21 13:05 - 2014-12-14 15:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-10-21 13:04 - 2014-12-14 15:59 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-10-21 13:03 - 2011-05-03 12:24 - 00000000 ____D C:\Program Files (x86)\Java
2015-10-21 12:55 - 2009-07-14 05:45 - 00279440 _____ C:\Windows\system32\FNTCACHE.DAT
2015-10-20 15:02 - 2015-04-24 13:11 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2015-10-20 14:58 - 2014-10-25 11:19 - 00062824 _____ C:\Users\Petr\AppData\Local\GDIPFONTCACHEV1.DAT
==================== Files in the root of some directories =======
2014-12-21 13:03 - 2014-12-21 13:03 - 0001854 _____ () C:\Users\Petr\AppData\Roaming\GhostObjGAFix.xml
2014-12-25 10:21 - 2014-12-25 10:21 - 0000000 ___SH () C:\Users\Petr\AppData\Local\LumaEmu
2015-01-16 14:58 - 2015-09-19 13:45 - 0007602 _____ () C:\Users\Petr\AppData\Local\Resmon.ResmonCfg
Some files in TEMP:
====================
C:\Users\Petr\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0577458cbfba7.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleForPetr.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: ESET NOD32 Antivirus 8.0 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET NOD32 Antivirus 8.0 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Petr\Desktop" je 13 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Creative Cloud
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0
"C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BlueStacks Agent
C:\Program Files (x86)\BlueStacks\HD-Agent.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring
"C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EADM
"C:\Program Files (x86)\Origin\Origin.exe" -AutoStart [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GarenaPlus
"C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe" -autolaunch [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Gyazo
C:\Program Files (x86)\Gyazo\GyStation.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn Hamachi Ui
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PlaysTV
"C:\Program Files (x86)\PlaysTV\playstv_launcher.exe" --startup [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Raptr
C:\PROGRA~2\Raptr\raptrstub.exe --startup [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RSDTRAY
"C:\Program Files (x86)\Rising\RSD\popwndexe.exe" [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify
"C:\Users\Petr\AppData\Roaming\Spotify\spotify.exe" /uri spotify:autostart [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify Web Helper
"C:\Users\Petr\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Petr^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^MEGAsync.lnk
C:\Users\Petr\AppData\Local\MEGAsync\MEGAsync.exe
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000001
==================== End Of Log ==============================
Hraji jednu jednoduchou klikačku na Mozille i na Chromu ale vždy se mi třeba při 10 minutách hraní zasekne celý počítač a musím ho vypnout natvrdo. Nepřehřívá se.
ADWCleaner jsem zkoušel, smazal nálezy, byl jen 1, nepomohlo.
LOG :
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:07-11-2015
Ran by Petr (administrator) on PETR-HP (16-11-2015 10:07:20)
Running from C:\Users\Petr\Desktop
Loaded Profiles: Petr (Available Profiles: Petr)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe
(forum.viry.cz) C:\Users\Petr\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6602856 2011-01-11] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated)
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [627360 2011-04-13] (Atheros Communications)
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [379552 2011-04-13] (Atheros Commnucations)
HKLM\...\Run: [HPWirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe [363064 2010-07-21] (Hewlett-Packard Company)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [5595848 2015-01-28] (ESET)
HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [656920 2011-02-01] (PDF Complete Inc)
HKLM-x32\...\Run: [HP Quick Launch] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [578944 2012-03-05] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [HPOSD] => C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960 2011-08-19] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-04] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597040 2015-10-06] (Oracle Corporation)
ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => No File
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => No File
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => No File
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\..\Interfaces\{F266592C-96FC-4C75-9FB1-044DA469F9AC}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{F266592C-96FC-4C75-9FB1-044DA469F9AC}: [DhcpNameServer] 94.74.192.252 94.74.192.244
Internet Explorer:
==================
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-1573231078-231515164-428938053-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/
HKU\S-1-5-21-1573231078-231515164-428938053-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\ssv.dll [2015-10-21] (Oracle Corporation)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\jp2ssv.dll [2015-10-21] (Oracle Corporation)
FireFox:
========
FF ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\vv2nhp0x.default-1447660120121
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_245.dll [2015-11-16] ()
FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll [2014-09-01] (EA Digital Illusions CE AB)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2014-04-28] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-16] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1218158.dll [2015-04-17] (Adobe Systems, Inc.)
FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll [2014-09-01] (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.65.2 -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\dtplugin\npDeployJava1.dll [2015-10-21] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.65.2 -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\plugin2\npjp2.dll [2015-10-21] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @t.garena.com/garenatalk -> C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2010-12-08] ()
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2014-04-28] (Adobe Systems)
FF Plugin HKU\S-1-5-21-1573231078-231515164-428938053-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Petr\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-10-08] (Unity Technologies ApS)
Chrome:
=======
CHR Plugin: (Widevine Content Decryption Module) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.8.823\_platform_specific\win_x86\widevinecdmadapter.dll => No File
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.86\PepperFlash\pepflashplayer.dll ()
CHR Profile: C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-05]
CHR Extension: (Dokumenty Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-05]
CHR Extension: (Disk Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-22]
CHR Extension: (YouTube) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25]
CHR Extension: (Adblock Plus) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-09-22]
CHR Extension: (Vyhledávání Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Lounge Assistant) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\enjonnlehciedbcidabdglnnihcncbml [2015-11-03]
CHR Extension: (Tabulky Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-05]
CHR Extension: (Sleeping Ahri (LoL)) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\fonebfgjdigmojhfljmmffkmpedpnoia [2015-08-27]
CHR Extension: (Dokumenty Google offline) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-06]
CHR Extension: (Dingit Infinite HD App) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\llnhnfikffkjbdnfallfpgikamegbbag [2015-11-03]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-17]
CHR Extension: (Gmail) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-28]
Opera:
=======
OPR Extension: (Adblock Plus) - C:\Users\Petr\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2015-01-16]
OPR Extension: (Bookmarks Import & Export) - C:\Users\Petr\AppData\Roaming\Opera Software\Opera Stable\Extensions\omhcddilnfoiiplehpjihipcocdplljn [2015-01-04]
OPR Extension: (plugCubed) - C:\Users\Petr\AppData\Roaming\Opera Software\Opera Stable\Extensions\pgpngjnicamooaemannphpiffajbmbie [2015-01-16]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-08-03] (Advanced Micro Devices, Inc.) [File not signed]
R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [146592 2011-04-13] (Atheros) [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [77984 2011-04-13] (Atheros Commnucations) [File not signed]
S2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [409304 2014-10-08] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [388824 2014-10-08] (BlueStack Systems, Inc.)
R2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [782040 2014-10-08] (BlueStack Systems, Inc.)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [1349576 2015-01-28] (ESET)
U2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9216 2014-12-15] (Hi-Rez Studios) [File not signed]
R2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [1817088 2010-12-28] (Realsil Microelectronics Inc.) [File not signed]
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2015-10-26] (LogMeIn, Inc.)
S4 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1900400 2014-12-16] (Electronic Arts)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1127448 2011-02-01] (PDF Complete Inc)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2015-02-03] ()
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5448976 2015-04-17] (TeamViewer GmbH)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AODDriver4.3; C:\Program Files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [122072 2014-10-08] (BlueStack Systems)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [246000 2015-03-10] (ESET)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
U5 edevmon; C:\Windows\System32\Drivers\edevmon.sys [241880 2015-03-10] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [169792 2015-03-10] (ESET)
R2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [159480 2015-03-10] (ESET)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [26528 2015-02-28] (REALiX(tm))
S3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1866080 2012-11-28] ()
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-11-16 10:07 - 2015-11-16 10:07 - 00017006 _____ C:\Users\Petr\Desktop\FRST.txt
2015-11-16 10:07 - 2015-11-16 10:07 - 00000000 ____D C:\FRST
2015-11-16 10:06 - 2015-11-16 10:06 - 00112640 _____ (forum.viry.cz) C:\Users\Petr\Desktop\FRSTLauncher.exe
2015-11-16 10:04 - 2015-11-16 10:04 - 02198528 _____ (Farbar) C:\Users\Petr\Desktop\FRST64.exe
2015-11-16 08:40 - 2015-11-16 09:59 - 00000168 _____ C:\Windows\setupact.log
2015-11-16 08:40 - 2015-11-16 08:40 - 00000000 _____ C:\Windows\setuperr.log
2015-11-16 08:36 - 2015-11-16 08:36 - 01732096 _____ C:\Users\Petr\Desktop\adwcleaner_5.021.exe
2015-11-15 15:20 - 2015-11-15 15:20 - 08688484 _____ C:\Users\Petr\Downloads\swords-souls.zip
2015-11-14 22:03 - 2015-11-14 22:03 - 00394754 _____ C:\Users\Petr\Downloads\soundboard-1.0b5-win64.ts3_plugin
2015-11-14 22:01 - 2015-11-14 22:01 - 00228983 _____ C:\Users\Petr\Downloads\soundboard-0.9.8.4b-win32.ts3_plugin
2015-11-14 14:56 - 2015-11-14 14:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PlaysTV
2015-11-14 14:55 - 2015-11-14 14:56 - 00000000 ____D C:\Users\Petr\AppData\Roaming\PlaysTV
2015-11-14 14:55 - 2015-11-14 14:56 - 00000000 ____D C:\Program Files (x86)\PlaysTV
2015-11-14 14:55 - 2015-11-14 14:55 - 00077504 _____ C:\Users\Petr\Downloads\playstv_installer (2).exe
2015-11-11 21:45 - 2015-11-11 21:45 - 07487465 _____ C:\Users\Petr\Downloads\BebasNeue.zip
2015-11-07 12:46 - 2015-11-07 12:46 - 00002291 _____ C:\Users\Petr\Downloads\csgo_bananagaming (1).7z
2015-11-06 19:27 - 2015-11-06 19:27 - 00002291 _____ C:\Users\Petr\Downloads\csgo_bananagaming.7z
2015-11-06 16:00 - 2015-11-06 16:00 - 747596686 _____ C:\Users\Petr\Downloads\CSS_Content_Addon-Jan2015.zip
2015-11-06 09:47 - 2015-11-06 09:47 - 01008074 _____ C:\Users\Petr\Downloads\injector_V2.3.rar
2015-11-05 10:09 - 2015-11-05 10:09 - 00000219 _____ C:\Users\Petr\Desktop\Team Fortress 2.url
2015-11-03 22:26 - 2015-08-27 19:18 - 02004480 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-11-03 22:26 - 2015-08-27 19:18 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-11-03 22:26 - 2015-08-27 19:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2015-11-03 22:26 - 2015-08-27 19:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-11-03 22:26 - 2015-08-27 18:58 - 01391104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-11-03 22:26 - 2015-08-27 18:58 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-11-03 22:26 - 2015-08-27 18:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2015-11-03 22:26 - 2015-08-27 18:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-11-03 22:26 - 2015-08-05 19:02 - 00157016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-11-03 22:26 - 2015-08-05 19:02 - 00097112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-11-03 22:26 - 2015-08-05 18:56 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll
2015-11-03 22:26 - 2015-08-05 18:56 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-11-03 22:26 - 2015-08-05 18:55 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-11-03 22:26 - 2015-08-05 18:55 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-11-03 22:26 - 2015-08-05 18:50 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-11-03 22:26 - 2015-08-05 18:50 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-11-03 22:26 - 2015-08-05 18:46 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-11-03 22:26 - 2015-08-05 18:41 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-11-03 22:26 - 2015-08-05 18:41 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-11-03 22:26 - 2015-08-05 18:41 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-11-03 22:26 - 2015-08-05 18:41 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-11-03 22:26 - 2015-08-05 18:40 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-11-03 22:26 - 2015-08-05 18:40 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-11-03 22:26 - 2015-08-05 18:40 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-11-03 22:26 - 2015-08-05 18:40 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2015-11-03 22:26 - 2015-08-05 18:40 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-11-03 22:26 - 2015-08-05 18:39 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-11-03 22:26 - 2015-08-05 18:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-11-03 22:26 - 2015-08-05 18:39 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-11-03 22:26 - 2015-08-05 18:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-11-03 22:26 - 2015-08-05 18:34 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-11-03 22:26 - 2015-08-05 18:30 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-11-03 22:26 - 2015-08-05 18:06 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2015-11-03 22:26 - 2015-08-05 17:38 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-11-03 22:26 - 2015-08-05 17:37 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-11-03 22:26 - 2015-08-05 17:37 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-11-01 18:12 - 2015-11-01 18:12 - 07589125 _____ C:\Users\Petr\Downloads\SamoSansPro.zip
2015-11-01 18:04 - 2015-11-01 18:04 - 02348186 _____ C:\Users\Petr\Downloads\Radar Overviews (2).zip
2015-11-01 18:04 - 2015-11-01 18:04 - 02348186 _____ C:\Users\Petr\Downloads\Radar Overviews (1).zip
2015-11-01 13:47 - 2015-11-01 13:51 - 1533182275 _____ C:\Users\Petr\Downloads\HL2_EP2_Content_Addon-Jan2015.zip
2015-11-01 13:33 - 2015-11-01 13:33 - 160861886 _____ C:\Users\Petr\Downloads\HL2Extra_Content_Addon-Jan2015.zip
2015-11-01 13:30 - 2015-11-01 13:31 - 747457065 _____ C:\Users\Petr\Downloads\HL2_EP1_Content_Addon-Jan2015.zip
2015-11-01 08:32 - 2015-11-01 08:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2015-11-01 08:32 - 2015-11-01 08:32 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi
2015-11-01 08:32 - 2015-10-26 11:15 - 00034720 ____H (LogMeIn, Inc.) C:\Windows\system32\hamachi.sys
2015-10-30 15:45 - 2015-11-16 10:00 - 00000000 ____D C:\Users\Petr\AppData\Local\LogMeIn Hamachi
2015-10-30 15:45 - 2015-10-30 15:45 - 00000000 ____D C:\Users\Petr\AppData\Local\LogMeIn
2015-10-30 15:45 - 2015-10-30 15:45 - 00000000 ____D C:\ProgramData\LogMeIn
2015-10-30 15:42 - 2015-10-30 15:42 - 08712192 _____ C:\Users\Petr\Downloads\hamachi.msi
2015-10-30 14:50 - 2015-10-30 14:50 - 20696248 _____ C:\Users\Petr\Downloads\dro_setup.exe
2015-10-30 14:50 - 2015-10-30 14:50 - 00001968 _____ C:\Users\Petr\Desktop\Drakensang Online.lnk
2015-10-30 14:50 - 2015-10-30 14:50 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Drakensang Online
2015-10-30 14:50 - 2015-10-30 14:50 - 00000000 ____D C:\Program Files (x86)\Drakensang Online
2015-10-27 15:32 - 2015-10-27 15:32 - 00000000 ____D C:\Program Files (x86)\Origin Games
2015-10-27 11:53 - 2015-10-27 11:53 - 00003400 _____ C:\Windows\System32\Tasks\Autobus
2015-10-26 10:57 - 2015-10-26 10:57 - 00000000 ____D C:\Users\Petr\AppData\Local\CrashRpt
2015-10-26 10:54 - 2015-10-26 19:38 - 00000000 ____D C:\Users\Petr\AppData\Local\wf-launcher
2015-10-26 10:54 - 2015-10-26 19:35 - 00000000 ____D C:\ProgramData\GFACE
2015-10-25 08:58 - 2015-10-30 15:52 - 00000097 _____ C:\Users\Petr\Desktop\Crosshair.txt
2015-10-24 19:12 - 2015-10-24 19:12 - 00052307 _____ C:\Users\Petr\Downloads\[SkT]Machri-_-Grown-Ups-(2010)(CZ_EN)[1080p]-=-CSFD-66%.torrent
2015-10-24 18:20 - 2015-10-24 18:20 - 00032067 _____ C:\Users\Petr\Downloads\[SkT]Stazisti-_-The-Internship-(2013)(CZ_EN)[720p]-=-CSFD-61%.torrent
2015-10-24 18:19 - 2015-10-24 18:19 - 00000000 ____D C:\Users\Petr\Downloads\Okrsek.13.Ultimatum.2oo9.AC3.BDRip.XviD.CZ-PODiUM
2015-10-24 18:18 - 2015-10-24 18:18 - 00016730 _____ C:\Users\Petr\Downloads\[SkT]Okrsek_13-_Ultimatum_-_Banlieue_13_-_Ultimatum_(2009)(CZ)_=_CSFD_65%.torrent
2015-10-24 18:11 - 2015-10-24 18:11 - 00014382 _____ C:\Users\Petr\Downloads\Johny-English-se-vrací-CZ-dabing.torrent
2015-10-24 18:10 - 2015-10-24 18:16 - 802751010 ____R C:\Users\Petr\Downloads\Diktator-The Dictator-2012-CZ.avi
2015-10-24 18:09 - 2015-10-24 18:09 - 00031217 _____ C:\Users\Petr\Downloads\[SkT]Diktator-_-The-Dictator-(2012)(CZ).torrent
2015-10-24 18:08 - 2015-10-24 18:08 - 00032097 _____ C:\Users\Petr\Downloads\[SkT]Svetova-valka-Z--World-War-Z-(2013)(CZ)[1080p][3D-SBS]-=-CSFD-75%.torrent
2015-10-24 18:08 - 2015-10-24 18:08 - 00030204 _____ C:\Users\Petr\Downloads\[SkT]Svetova-valka-Z-_-World-War-Z-(2013)(CZ)[1080p]-=-CSFD-75%.torrent
2015-10-24 17:52 - 2015-10-24 17:53 - 00000000 ____D C:\Users\Petr\Downloads\Lets.Be.Cops.2014.480p.BDRip.XviD.AC3.CZ-HiDE
2015-10-24 17:52 - 2015-10-24 17:52 - 00017110 _____ C:\Users\Petr\Downloads\[SkT]Falesni-poldove---Let's-Be-Cops-(2014)(CZ)-CSFD-65%-(1).torrent
2015-10-24 17:47 - 2015-10-24 17:47 - 00014248 _____ C:\Users\Petr\Downloads\pařba-v-bangkoku-CZ.torrent
2015-10-24 17:39 - 2015-10-24 17:45 - 734597120 ____R C:\Users\Petr\Downloads\Parba.ve.Vegas.2009.DVDRip.CZ-PeXXXeso.avi
2015-10-24 17:39 - 2015-10-24 17:39 - 00014500 _____ C:\Users\Petr\Downloads\[SkT]Parba-ve-Vegas---Hangover,-The-(2009)(CZ)-CSFD-81%.torrent
2015-10-24 16:59 - 2015-11-05 22:03 - 00000000 ____D C:\Users\Petr\AppData\LocalLow\uTorrent
2015-10-24 16:59 - 2015-10-24 16:59 - 00014271 _____ C:\Users\Petr\Downloads\Pulp-Fiction-CZ-dabing.torrent
2015-10-24 16:59 - 2015-10-24 16:59 - 00000000 ____D C:\Users\Petr\Downloads\Red
2015-10-24 16:58 - 2015-10-24 16:58 - 00020414 _____ C:\Users\Petr\Downloads\[SkT]Red_1-2_(2010-2013)(CZ)_=_CSFD_76%.torrent
2015-10-24 16:34 - 2015-10-24 16:34 - 00000000 ____D C:\Users\Petr\Documents\LoiLo
2015-10-24 16:33 - 2015-10-24 16:38 - 00000000 ____D C:\Users\Petr\AppData\Local\LoiLo
2015-10-24 16:32 - 2015-10-24 16:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LoiLoScope 2
2015-10-24 16:32 - 2015-10-24 16:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LoiLo Game Recorder
2015-10-24 16:32 - 2015-10-24 16:32 - 00000000 ____D C:\Program Files\LoiLo
2015-10-24 16:27 - 2015-10-24 16:28 - 74713080 _____ (LoiLo inc. ) C:\Users\Petr\Downloads\LoiLoGameRecorder1.1.0.1.exe
2015-10-22 21:41 - 2015-10-22 21:41 - 00000000 ____D C:\ProgramData\ATI
2015-10-22 21:41 - 2015-10-22 21:41 - 00000000 ____D C:\Program Files (x86)\AMD AVT
2015-10-22 21:37 - 2015-10-22 21:37 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2015-10-22 21:35 - 2015-10-22 21:40 - 00000000 ____D C:\Program Files\ATI Technologies
2015-10-22 20:27 - 2015-10-23 13:50 - 00000000 ____D C:\Users\Petr\Downloads\Sony Vegas Pro 13.0 build 310 (64 bit) (patch KHG) [ChingLiu]
2015-10-22 20:05 - 2015-10-23 13:50 - 00000000 ____D C:\Users\Petr\Downloads\Sony Vegas Pro 12 Build 770 (64 bit) (patch-keygen DI) [ChingLiu]
2015-10-22 19:58 - 2015-10-22 19:59 - 04599099 _____ C:\Users\Petr\Downloads\Free Intro #2 AnonymOfficial™.rar
2015-10-22 19:54 - 2015-10-22 19:54 - 24759649 _____ C:\Users\Petr\Downloads\Sony Vegas Pro 10 - TutorialzXD Intro 18.rar
2015-10-22 19:49 - 2015-10-22 19:49 - 26105605 _____ C:\Users\Petr\Downloads\Sv_intro75.zip
2015-10-21 19:17 - 2015-10-21 19:18 - 00000000 ____D C:\Users\Petr\AppData\Local\PAYDAY
2015-10-20 19:29 - 2015-10-20 19:35 - 00005864 _____ C:\Users\Petr\Downloads\AWP Shoot Sound Effect CS-GO.mp3.sfk
2015-10-20 18:59 - 2015-10-20 19:22 - 00828968 _____ C:\Users\Petr\Downloads\UKF Drum & Bass 2012 (Album Megamix).mp3.sfk
2015-10-20 18:55 - 2015-10-20 18:55 - 00179168 _____ C:\Users\Petr\Downloads\csgo 2015-10-19 20-22-39-09.avi.sfk
2015-10-20 14:21 - 2015-10-20 14:21 - 01272994 _____ C:\Users\Petr\Downloads\4.0.4.zip
2015-10-20 13:35 - 2015-10-20 13:39 - 2502494056 _____ C:\Users\Petr\Downloads\csgo 2015-10-19 20-22-39-09.avi
2015-10-19 20:46 - 2015-10-19 20:46 - 00016980 _____ C:\Users\Petr\Downloads\[www.OldSchoolHack.me]_SimplESP v5 Public.rar
2015-10-19 20:41 - 2015-10-19 20:41 - 19304283 _____ C:\Users\Petr\Downloads\Windows6.1-KB2819745-x64-MultiPkg.msu
2015-10-19 20:41 - 2015-10-19 20:41 - 18310215 _____ C:\Users\Petr\Downloads\Windows8-RT-KB2799888-x64.msu
2015-10-19 20:35 - 2015-10-19 20:35 - 00001961 _____ C:\Users\Petr\Downloads\[www.OldSchoolHack.me]_EV0-HAX.rar
2015-10-19 13:49 - 2015-10-19 13:49 - 04490829 _____ C:\Users\Petr\Downloads\Counter-Strike-Global-Offensive-Hack-MultiHack-v2.91.0.rar
2015-10-19 13:47 - 2015-10-19 13:47 - 00017257 _____ C:\Users\Petr\Downloads\Xile Wallhack v1.3r4(GameLoversPro.BlogSpot.com).zip
2015-10-18 10:26 - 2015-10-18 10:26 - 00077504 _____ C:\Users\Petr\Downloads\playstv_installer (1).exe
2015-10-18 10:17 - 2015-10-18 10:17 - 00077504 _____ C:\Users\Petr\Downloads\playstv_installer.exe
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-11-16 10:00 - 2011-05-03 12:18 - 00000000 ____D C:\ProgramData\PDFC
2015-11-16 09:59 - 2015-10-13 20:49 - 00003050 _____ C:\Windows\System32\Tasks\ParkControl
2015-11-16 09:59 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-11-16 09:41 - 2009-07-14 05:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-11-16 09:41 - 2009-07-14 05:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-11-16 09:34 - 2014-10-25 11:41 - 00000000 ____D C:\Program Files (x86)\Steam
2015-11-16 09:33 - 2014-11-07 21:54 - 00780488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-11-16 09:33 - 2014-11-07 21:54 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-11-16 09:21 - 2015-03-22 18:48 - 02008880 _____ C:\Windows\WindowsUpdate.log
2015-11-16 08:47 - 2011-05-03 21:39 - 00669116 _____ C:\Windows\system32\perfh005.dat
2015-11-16 08:47 - 2011-05-03 21:39 - 00141744 _____ C:\Windows\system32\perfc005.dat
2015-11-16 08:47 - 2009-07-14 06:13 - 01584554 _____ C:\Windows\system32\PerfStringBackup.INI
2015-11-16 08:41 - 2015-09-09 13:03 - 00000000 ____D C:\Users\Petr\Documents\Bluetooth Folder
2015-11-16 08:39 - 2015-09-22 16:30 - 00000000 ____D C:\AdwCleaner
2015-11-16 08:38 - 2015-09-29 15:11 - 00000000 ____D C:\Users\Petr\AppData\Roaming\AIMP3
2015-11-16 08:38 - 2014-12-16 13:43 - 00000000 ____D C:\Users\Petr\AppData\Roaming\PhotoScape
2015-11-16 08:38 - 2014-10-30 15:42 - 00000000 ____D C:\Users\Petr\AppData\Roaming\uTorrent
2015-11-16 08:37 - 2014-11-20 13:36 - 00000000 ____D C:\Windows\Minidump
2015-11-16 08:37 - 2014-10-26 06:52 - 00000000 ____D C:\Users\Petr\AppData\Local\CrashDumps
2015-11-15 22:38 - 2015-08-18 10:49 - 00000000 ____D C:\Users\Petr\AppData\Roaming\TS3Client
2015-11-14 22:14 - 2014-10-25 11:14 - 00000000 ____D C:\Users\Petr
2015-11-12 19:44 - 2015-03-27 21:16 - 00000000 ____D C:\Users\Petr\AppData\Roaming\vlc
2015-11-11 20:19 - 2015-08-31 15:33 - 00000000 ____D C:\Users\Petr\Documents\PS Obrázky
2015-11-11 20:19 - 2014-10-25 11:49 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-11-10 21:10 - 2015-08-25 13:55 - 00000000 ____D C:\Users\Petr\Documents\PS Veci
2015-11-07 08:49 - 2009-07-14 06:08 - 00032612 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-11-05 15:21 - 2014-10-27 08:41 - 00000000 ____D C:\Program Files (x86)\Battle.net
2015-11-05 15:20 - 2014-10-27 08:41 - 00000000 ____D C:\Users\Petr\AppData\Local\Battle.net
2015-11-01 13:22 - 2015-08-18 11:29 - 00000000 ____D C:\Users\Petr\AppData\Local\MEGAsync
2015-10-30 15:52 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Public\Libraries
2015-10-27 15:31 - 2014-11-09 10:23 - 00000000 ____D C:\ProgramData\Origin
2015-10-26 18:48 - 2015-02-19 14:08 - 00000000 ____D C:\Users\Petr\AppData\Local\Steam
2015-10-23 14:13 - 2015-08-18 10:48 - 00000000 ____D C:\Program Files\Teamspeak
2015-10-23 14:03 - 2015-09-13 07:32 - 00000000 ____D C:\Program Files\AMD
2015-10-23 13:52 - 2015-04-11 16:11 - 00000000 ___SD C:\Windows\system32\GWX
2015-10-23 13:51 - 2015-10-08 16:02 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome
2015-10-23 13:51 - 2015-09-25 18:15 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2015-10-23 13:51 - 2015-09-13 07:49 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Raptr
2015-10-23 13:51 - 2015-09-13 07:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2015-10-23 13:51 - 2015-09-08 20:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-10-23 13:51 - 2015-09-08 20:38 - 00000000 ____D C:\Program Files\Sony
2015-10-23 13:51 - 2014-10-27 08:41 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Battle.net
2015-10-23 13:50 - 2015-09-13 07:36 - 00000000 ____D C:\Program Files (x86)\AMD
2015-10-23 13:50 - 2015-09-13 07:30 - 00000000 ____D C:\AMD
2015-10-23 13:50 - 2014-10-27 08:42 - 00000000 ____D C:\Program Files (x86)\Hearthstone
2015-10-23 13:49 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\registration
2015-10-23 13:47 - 2015-09-08 20:38 - 00000000 ____D C:\ProgramData\Sony
2015-10-23 13:47 - 2014-10-31 13:02 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Sony
2015-10-23 13:46 - 2015-09-08 20:38 - 00000000 ____D C:\Program Files (x86)\Sony
2015-10-22 21:43 - 2013-07-30 12:09 - 00000000 ____D C:\ProgramData\AMD
2015-10-21 13:05 - 2015-08-26 21:03 - 00000000 ____D C:\Users\Petr\.oracle_jre_usage
2015-10-21 13:05 - 2014-12-14 15:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-10-21 13:04 - 2014-12-14 15:59 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-10-21 13:03 - 2011-05-03 12:24 - 00000000 ____D C:\Program Files (x86)\Java
2015-10-21 12:55 - 2009-07-14 05:45 - 00279440 _____ C:\Windows\system32\FNTCACHE.DAT
2015-10-20 15:02 - 2015-04-24 13:11 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2015-10-20 14:58 - 2014-10-25 11:19 - 00062824 _____ C:\Users\Petr\AppData\Local\GDIPFONTCACHEV1.DAT
==================== Files in the root of some directories =======
2014-12-21 13:03 - 2014-12-21 13:03 - 0001854 _____ () C:\Users\Petr\AppData\Roaming\GhostObjGAFix.xml
2014-12-25 10:21 - 2014-12-25 10:21 - 0000000 ___SH () C:\Users\Petr\AppData\Local\LumaEmu
2015-01-16 14:58 - 2015-09-19 13:45 - 0007602 _____ () C:\Users\Petr\AppData\Local\Resmon.ResmonCfg
Some files in TEMP:
====================
C:\Users\Petr\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0577458cbfba7.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleForPetr.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: ESET NOD32 Antivirus 8.0 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET NOD32 Antivirus 8.0 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Petr\Desktop" je 13 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Creative Cloud
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0
"C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BlueStacks Agent
C:\Program Files (x86)\BlueStacks\HD-Agent.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring
"C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EADM
"C:\Program Files (x86)\Origin\Origin.exe" -AutoStart [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GarenaPlus
"C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe" -autolaunch [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Gyazo
C:\Program Files (x86)\Gyazo\GyStation.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn Hamachi Ui
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PlaysTV
"C:\Program Files (x86)\PlaysTV\playstv_launcher.exe" --startup [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Raptr
C:\PROGRA~2\Raptr\raptrstub.exe --startup [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RSDTRAY
"C:\Program Files (x86)\Rising\RSD\popwndexe.exe" [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify
"C:\Users\Petr\AppData\Roaming\Spotify\spotify.exe" /uri spotify:autostart [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify Web Helper
"C:\Users\Petr\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Petr^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^MEGAsync.lnk
C:\Users\Petr\AppData\Local\MEGAsync\MEGAsync.exe
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000001
==================== End Of Log ==============================
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Zasekávání počítače při hraní jednoduchých her na Mozzil
Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:
Otevřte poznámkový blok a zkopírujte do něj:
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597040 2015-10-06] (Oracle Corporation)
ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => No File
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => No File
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => No File
OPR Extension: (plugCubed) - C:\Users\Petr\AppData\Roaming\Opera Software\Opera Stable\Extensions\pgpngjnicamooaemannphpiffajbmbie [2015-01-16]
C:\Users\Petr\AppData\Local\Temp
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0577458cbfba7.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Zasekávání počítače při hraní jednoduchých her na Mozzil
Fix result of Farbar Recovery Scan Tool (x64) Version:07-11-2015
Ran by Petr (2015-11-16 18:49:17) Run:1
Running from C:\Users\Petr\Desktop
Loaded Profiles: Petr (Available Profiles: Petr)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597040 2015-10-06] (Oracle Corporation)
ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => No File
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => No File
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => No File
OPR Extension: (plugCubed) - C:\Users\Petr\AppData\Roaming\Opera Software\Opera Stable\Extensions\pgpngjnicamooaemannphpiffajbmbie [2015-01-16]
C:\Users\Petr\AppData\Local\Temp
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0577458cbfba7.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
End
*****************
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value removed successfully
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtPending" => key removed successfully
HKCR\CLSID\{056D528D-CE28-4194-9BA3-BA2E9197FF8C} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtSynced" => key removed successfully
HKCR\CLSID\{05B38830-F4E9-4329-978B-1DD28605D202} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtSyncing" => key removed successfully
HKCR\CLSID\{0596C850-7BDD-4C9D-AFDF-873BE6890637} => key not found.
C:\Users\Petr\AppData\Roaming\Opera Software\Opera Stable\Extensions\pgpngjnicamooaemannphpiffajbmbie => moved successfully
"C:\Users\Petr\AppData\Local\Temp" folder move:
Could not move "C:\Users\Petr\AppData\Local\Temp" => Scheduled to move on reboot.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0577458cbfba7.job => moved successfully
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 2015-11-16 18:53:25)
C:\Users\Petr\AppData\Local\Temp => moved successfully
==== End of Fixlog 18:53:25 ====
Všiml jsem si, že to dělá jen mozzila firefox. Chrome ne.
Ran by Petr (2015-11-16 18:49:17) Run:1
Running from C:\Users\Petr\Desktop
Loaded Profiles: Petr (Available Profiles: Petr)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597040 2015-10-06] (Oracle Corporation)
ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => No File
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => No File
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => No File
OPR Extension: (plugCubed) - C:\Users\Petr\AppData\Roaming\Opera Software\Opera Stable\Extensions\pgpngjnicamooaemannphpiffajbmbie [2015-01-16]
C:\Users\Petr\AppData\Local\Temp
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0577458cbfba7.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
End
*****************
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value removed successfully
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtPending" => key removed successfully
HKCR\CLSID\{056D528D-CE28-4194-9BA3-BA2E9197FF8C} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtSynced" => key removed successfully
HKCR\CLSID\{05B38830-F4E9-4329-978B-1DD28605D202} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtSyncing" => key removed successfully
HKCR\CLSID\{0596C850-7BDD-4C9D-AFDF-873BE6890637} => key not found.
C:\Users\Petr\AppData\Roaming\Opera Software\Opera Stable\Extensions\pgpngjnicamooaemannphpiffajbmbie => moved successfully
"C:\Users\Petr\AppData\Local\Temp" folder move:
Could not move "C:\Users\Petr\AppData\Local\Temp" => Scheduled to move on reboot.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0577458cbfba7.job => moved successfully
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 2015-11-16 18:53:25)
C:\Users\Petr\AppData\Local\Temp => moved successfully
==== End of Fixlog 18:53:25 ====
Všiml jsem si, že to dělá jen mozzila firefox. Chrome ne.
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Zasekávání počítače při hraní jednoduchých her na Mozzil
OK. Ještě zkuste následující skeny:
1. Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
Do okna vlozte skript nize
Nasledne kliknete na Run Script
PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem.
a
2. Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
•Ulozte nejlepe na plochu
•Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
•Probehne vytvoreni zalohy a nasledne prohledavani
•Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte.
1. Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
Do okna vlozte skript nize
autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin;
Nasledne kliknete na Run Script
PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem.
a
2. Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
•Ulozte nejlepe na plochu
•Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
•Probehne vytvoreni zalohy a nasledne prohledavani
•Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Zasekávání počítače při hraní jednoduchých her na Mozzil
Zoek se mi nechce spustit :/ Nakonec se spustil
Zoek.exe v5.0.0.1 Updated 16-November-2015
Tool run by Petr on po 16.11.2015 at 20:15:51,50.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Petr\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
16.11.2015 20:19:53 Zoek.exe System Restore Point Created Successfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handled within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Empty Folders Check ======================
C:\PROGRA~2\Adobe deleted successfully
C:\PROGRA~2\Origin Games deleted successfully
C:\PROGRA~2\COMMON~1\EAInstaller deleted successfully
C:\PROGRA~2\COMMON~1\Symantec Shared deleted successfully
C:\PROGRA~3\LumaEmu_SteamCloud deleted successfully
C:\PROGRA~3\RegRun deleted successfully
C:\Users\Petr\AppData\Roaming\Awesomium deleted successfully
C:\Users\Petr\AppData\Roaming\Malwarebytes deleted successfully
C:\Users\Petr\AppData\Roaming\Publish Providers deleted successfully
C:\Users\Petr\AppData\Local\CrashDumps deleted successfully
C:\Users\Petr\AppData\Local\EmieBrowserModeList deleted successfully
C:\Users\Petr\AppData\Local\EmieSiteList deleted successfully
C:\Users\Petr\AppData\Local\EmieUserList deleted successfully
C:\Users\Petr\AppData\Local\PDFC deleted successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Approved Extensions\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} deleted successfully
==== Deleting Services ======================
==== FireFox Fix ======================
Deleted from C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\vv2nhp0x.default-1447660120121\prefs.js:
user_pref("browser.startup.homepage", "www.google.com");
Added to C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\vv2nhp0x.default-1447660120121\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
==== Deleting Files \ Folders ======================
C:\PROGRA~2\Adobe not found
C:\PROGRA~2\Origin Games not found
C:\PROGRA~2\Red Giant deleted
C:\Users\Petr\AppData\Roaming\livestreamer deleted
C:\Users\Petr\.android deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\Petr\AppData\Local\Unity deleted
C:\Users\Petr\AppData\Local\CrashRpt deleted
C:\Users\Petr\Downloads\Dead-Lung ft. Sidekicks - Something Real [Dubstep].mp3 deleted
C:\Users\Petr\AppData\LocalLow\Unity deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
C:\Windows\SysWow64\AI_RecycleBin deleted
C:\Users\Petr\AppData\Local\MSGBOX.EXE deleted
"C:\Users\Petr\AppData\Local\LumaEmu" deleted
==== Firefox Start and Search pages ======================
ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\vv2nhp0x.default-1447660120121
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
==== Firefox Extensions ======================
ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\vv2nhp0x.default-1447660120121
- Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
==== Firefox Plugins ======================
Profilepath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\vv2nhp0x.default-1447660120121
F4C5E12008B713FE1B2F2A5990F00A43 - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1218158.dll - Shockwave for Director / Shockwave for Director
F114FBA6246530B89DD1E04351E0EAC5 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll - Shockwave Flash
==== Chromium Look ======================
Lounge Assistant - Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\enjonnlehciedbcidabdglnnihcncbml
Sleeping Ahri (LoL) - Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\fonebfgjdigmojhfljmmffkmpedpnoia
Dingit Infinite HD App - Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\llnhnfikffkjbdnfallfpgikamegbbag
Bookmarks Import & Export - Petr\AppData\Roaming\Opera Software\Opera Stable\Extensions\omhcddilnfoiiplehpjihipcocdplljn
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.msn.com/"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.msn.com/"
==== All HKLM and HKCU SearchScopes ======================
HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTer ... ORM=IESR02
==== Reset Google Chrome ======================
C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\Petr\AppData\Roaming\Opera Software\Opera Stable\Preferences was reset successfully
C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\Petr\AppData\Roaming\Opera Software\Opera Stable\Web Data was reset successfully
==== Deleting Registry Keys ======================
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\UnityWebPlayer deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Creative Cloud deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GarenaPlus deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RSDTRAY deleted successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Petr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Petr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
C:\Users\Petr\AppData\Local\Mozilla\Firefox\Profiles\vv2nhp0x.default-1447660120121\cache2 emptied successfully
==== Empty Chrome Cache ======================
C:\Users\Petr\AppData\Local\Opera Software\Opera Stable\Cache emptied successfully
C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=75 folders=69 79345400 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\temp emptied successfully
C:\Users\Petr\AppData\Local\Temp will be emptied at reboot
C:\Users\Public\AppData\Local\temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\Petr\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on po 16.11.2015 at 20:49:23,21 ======================
Na to druhé jdu teď
Zoek.exe v5.0.0.1 Updated 16-November-2015
Tool run by Petr on po 16.11.2015 at 20:15:51,50.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Petr\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
16.11.2015 20:19:53 Zoek.exe System Restore Point Created Successfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handled within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Empty Folders Check ======================
C:\PROGRA~2\Adobe deleted successfully
C:\PROGRA~2\Origin Games deleted successfully
C:\PROGRA~2\COMMON~1\EAInstaller deleted successfully
C:\PROGRA~2\COMMON~1\Symantec Shared deleted successfully
C:\PROGRA~3\LumaEmu_SteamCloud deleted successfully
C:\PROGRA~3\RegRun deleted successfully
C:\Users\Petr\AppData\Roaming\Awesomium deleted successfully
C:\Users\Petr\AppData\Roaming\Malwarebytes deleted successfully
C:\Users\Petr\AppData\Roaming\Publish Providers deleted successfully
C:\Users\Petr\AppData\Local\CrashDumps deleted successfully
C:\Users\Petr\AppData\Local\EmieBrowserModeList deleted successfully
C:\Users\Petr\AppData\Local\EmieSiteList deleted successfully
C:\Users\Petr\AppData\Local\EmieUserList deleted successfully
C:\Users\Petr\AppData\Local\PDFC deleted successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Approved Extensions\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} deleted successfully
==== Deleting Services ======================
==== FireFox Fix ======================
Deleted from C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\vv2nhp0x.default-1447660120121\prefs.js:
user_pref("browser.startup.homepage", "www.google.com");
Added to C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\vv2nhp0x.default-1447660120121\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
==== Deleting Files \ Folders ======================
C:\PROGRA~2\Adobe not found
C:\PROGRA~2\Origin Games not found
C:\PROGRA~2\Red Giant deleted
C:\Users\Petr\AppData\Roaming\livestreamer deleted
C:\Users\Petr\.android deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\Petr\AppData\Local\Unity deleted
C:\Users\Petr\AppData\Local\CrashRpt deleted
C:\Users\Petr\Downloads\Dead-Lung ft. Sidekicks - Something Real [Dubstep].mp3 deleted
C:\Users\Petr\AppData\LocalLow\Unity deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
C:\Windows\SysWow64\AI_RecycleBin deleted
C:\Users\Petr\AppData\Local\MSGBOX.EXE deleted
"C:\Users\Petr\AppData\Local\LumaEmu" deleted
==== Firefox Start and Search pages ======================
ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\vv2nhp0x.default-1447660120121
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
==== Firefox Extensions ======================
ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\vv2nhp0x.default-1447660120121
- Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
==== Firefox Plugins ======================
Profilepath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\vv2nhp0x.default-1447660120121
F4C5E12008B713FE1B2F2A5990F00A43 - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1218158.dll - Shockwave for Director / Shockwave for Director
F114FBA6246530B89DD1E04351E0EAC5 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll - Shockwave Flash
==== Chromium Look ======================
Lounge Assistant - Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\enjonnlehciedbcidabdglnnihcncbml
Sleeping Ahri (LoL) - Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\fonebfgjdigmojhfljmmffkmpedpnoia
Dingit Infinite HD App - Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\llnhnfikffkjbdnfallfpgikamegbbag
Bookmarks Import & Export - Petr\AppData\Roaming\Opera Software\Opera Stable\Extensions\omhcddilnfoiiplehpjihipcocdplljn
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.msn.com/"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.msn.com/"
==== All HKLM and HKCU SearchScopes ======================
HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTer ... ORM=IESR02
==== Reset Google Chrome ======================
C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\Petr\AppData\Roaming\Opera Software\Opera Stable\Preferences was reset successfully
C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\Petr\AppData\Roaming\Opera Software\Opera Stable\Web Data was reset successfully
==== Deleting Registry Keys ======================
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\UnityWebPlayer deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Creative Cloud deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GarenaPlus deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RSDTRAY deleted successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Petr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Petr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
C:\Users\Petr\AppData\Local\Mozilla\Firefox\Profiles\vv2nhp0x.default-1447660120121\cache2 emptied successfully
==== Empty Chrome Cache ======================
C:\Users\Petr\AppData\Local\Opera Software\Opera Stable\Cache emptied successfully
C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=75 folders=69 79345400 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\temp emptied successfully
C:\Users\Petr\AppData\Local\Temp will be emptied at reboot
C:\Users\Public\AppData\Local\temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\Petr\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on po 16.11.2015 at 20:49:23,21 ======================
Na to druhé jdu teď
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Zasekávání počítače při hraní jednoduchých her na Mozzil
OK, Zoek smazal, co mohl.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Zasekávání počítače při hraní jednoduchých her na Mozzil
Junkware:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.0 (11.12.2015)
Operating System: Windows 7 Home Premium x64
Ran by Petr (Administrator) on po 16.11.2015 at 20:52:56,40
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
File System: 3
Successfully deleted: C:\ProgramData\iobit\driver booster (Folder)
Successfully deleted: C:\Windows\system32\Tasks\Driver Booster SkipUAC (Petr) (Task)
Successfully deleted: C:\Windows\system32\Tasks\Uninstaller_SkipUac_Administrator (Task)
Registry: 0
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on po 16.11.2015 at 20:58:06,79
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.0 (11.12.2015)
Operating System: Windows 7 Home Premium x64
Ran by Petr (Administrator) on po 16.11.2015 at 20:52:56,40
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
File System: 3
Successfully deleted: C:\ProgramData\iobit\driver booster (Folder)
Successfully deleted: C:\Windows\system32\Tasks\Driver Booster SkipUAC (Petr) (Task)
Successfully deleted: C:\Windows\system32\Tasks\Uninstaller_SkipUac_Administrator (Task)
Registry: 0
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on po 16.11.2015 at 20:58:06,79
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Zasekávání počítače při hraní jednoduchých her na Mozzil
I JRT vykonal, co měl. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Zasekávání počítače při hraní jednoduchých her na Mozzil
Bohužel ne, po pár minutách se Mozzila zasekla, dokonce sem zjistil, že se zasekne i při běžném používání.
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Zasekávání počítače při hraní jednoduchých her na Mozzil
Mozillu zazálohujte pomocí MozBackup: http://www.stahuj.centrum.cz/utility_a_ ... mozbackup/ . Pak Mozillu odinstalujte vč. jejího profilu. Znovu nainstalujte a zpět ze zálohy nakopírujte pouze záložky a hesla.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Zasekávání počítače při hraní jednoduchých her na Mozzil
Asi to bude problém v mém počítačí, tak se na to vykašleme, budu používat jen Chrome, i tak děkuji za pomoc.
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Zasekávání počítače při hraní jednoduchých her na Mozzil
Jak chcete. Reinstal FF je celkem jednoduchá záležitost.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Zasekávání počítače při hraní jednoduchých her na Mozzil
Já jsem reinstalnul FF, ale beze změny
Proto to bude asi v mém počítači.
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Zasekávání počítače při hraní jednoduchých her na Mozzil
Možná bez odinstalování profilu. Musíte se přesvědčit, zda všechny adresáře a podadresáře Mozilla ve vašem userprofile a v ProgramData byly smazány. V opačném případě je musíte smazat ručně.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Zasekávání počítače při hraní jednoduchých her na Mozzil
Tak jsem to vymazal všude kde jsem mohl, zatím se to nezaseklo, ale zatím jsem to moc nepoužíval, tak nevím, nechte toto vlákno otevřené prosím, potom napíšu
Zatím děkuju a pěkný zbytek večera


Přispějete na provoz fóra?