Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Explorer.exe hází virus

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
D3NJI
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 28 zář 2014 23:30

Explorer.exe hází virus

#1 Příspěvek od D3NJI »

Zdravíčko. Odedneška mi avast hází virus z c:/windows/explorer.exe a objekt: 46.161.41.220 (což je ruská IP). Nevíte co to je?
Pokud bude třeba, odpoledne sem dám logy, ted už jdu spát, děkuju.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Explorer.exe hází virus

#2 Příspěvek od vyosek »

Zdravim :)

Logy Z FRST budou urcite potreba...
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

D3NJI
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 28 zář 2014 23:30

Re: Explorer.exe hází virus

#3 Příspěvek od D3NJI »

FRST:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 28-09-2014 02
Ran by Kenji (administrator) on KENJI-PC on 29-09-2014 06:58:14
Running from C:\Users\Kenji\Desktop
Loaded Profile: Kenji (Available profiles: Kenji)
Platform: Windows 7 Ultimate Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
() C:\Program Files (x86)\EagleGet\EGMonitor.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(BitTorrent Inc.) C:\Users\Kenji\AppData\Roaming\uTorrent\uTorrent.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\avastui.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
() C:\Program Files (x86)\EagleGet\EGMonitor.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\Alwil Software\Avast5\AvastUI.exe [4085896 2014-07-31] (AVAST Software)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1513654018-1133184573-4193745156-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Kenji\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-1513654018-1133184573-4193745156-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Kenji\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-1513654018-1133184573-4193745156-1001\...\Run: [WebcamMaxAutoRun] => C:\Program Files (x86)\WebcamMax\WebcamMax.exe [1561232 2009-12-31] (CoolwareMax)
HKU\S-1-5-21-1513654018-1133184573-4193745156-1001\...\Run: [DVSSkypeRecorder] => "C:\Program Files (x86)\DVDVideoSoft\Free Video Call Recorder for Skype\skyui.exe" /minimized
HKU\S-1-5-21-1513654018-1133184573-4193745156-1001\...\Run: [uTorrent] => C:\Users\Kenji\AppData\Roaming\uTorrent\uTorrent.exe [1069904 2014-09-22] (BitTorrent Inc.)
HKU\S-1-5-21-1513654018-1133184573-4193745156-1001\...\Run: [cmdkey] => "C:\Users\Kenji\AppData\Roaming\Microsoft\Windows\IEUpdate\cmdkey.exe"
HKU\S-1-5-21-1513654018-1133184573-4193745156-1001\...\Run: [icsunattend] => "C:\Users\Kenji\AppData\Roaming\Microsoft\Windows\IEUpdate\icsunattend.exe"
HKU\S-1-5-21-1513654018-1133184573-4193745156-1001\...\MountPoints2: M - M:\Autorun.exe
HKU\S-1-5-21-1513654018-1133184573-4193745156-1001\...\Command Processor: "C:\Users\Kenji\AppData\Roaming\Microsoft\Windows\IEUpdate\icsunattend.exe" <===== ATTENTION!
AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll => C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll File Not Found
AppInit_DLLs: c:\progra~2\movies~1\safety~1\x64\safety~2.dll => c:\progra~2\movies~1\safety~1\x64\safety~2.dll File Not Found
AppInit_DLLs-x32: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll => "C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll" File Not Found
AppInit_DLLs-x32: c:\progra~2\movies~1\safety~1\safety~2.dll => "c:\progra~2\movies~1\safety~1\safety~2.dll" File Not Found
AppInit_DLLs-x32: c:\progra~3\bitguard\271769~1.27\{c16c1~1\bitguard.dll => "c:\progra~3\bitguard\271769~1.27\{c16c1~1\bitguard.dll" File Not Found
Startup: C:\Users\Kenji\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\cmdkey.lnk
ShortcutTarget: cmdkey.lnk -> C:\Users\Kenji\AppData\Roaming\Microsoft\Windows\IEUpdate\cmdkey.exe (No File)
Startup: C:\Users\Kenji\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GigaTribe.lnk
ShortcutTarget: GigaTribe.lnk -> C:\Program Files (x86)\GigaTribe\gigatribe.exe (Gigatribe)
Startup: C:\Users\Kenji\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\icsunattend.lnk
ShortcutTarget: icsunattend.lnk -> C:\Users\Kenji\AppData\Roaming\Microsoft\Windows\IEUpdate\icsunattend.exe (No File)
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Alwil Software\Avast5\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: 1SecureIconsProvider -> {FC9D8189-520A-4417-AED7-9EAC810C6FBA} => C:\ProgramData\Microsoft\Secure\Icons\SecureIconsProvider.dll ()
ShellIconOverlayIdentifiers: GDriveSharedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = http://www1.delta-search.com/?babsrc=HP ... 0&tsp=4963
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTerms}
SearchScopes: HKCU - bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTerms}
SearchScopes: HKCU - {07899526-9AE2-49EB-A4CD-40DF01443B52} URL = http://encyklopedie.seznam.cz/search?q= ... kSearch_12
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www1.delta-search.com/?q={search ... 0&tsp=4963
SearchScopes: HKCU - {201569AA-D5CD-4443-B41C-DCEE54BABAC4} URL = http://www.novinky.cz/hledej?w={searchT ... kSearch_12
SearchScopes: HKCU - {3C279CC4-C15C-46CC-9765-FE82C8D2E248} URL = http://tv.seznam.cz/hledej?w={searchTer ... kSearch_12
SearchScopes: HKCU - {48D9E618-34FA-4253-98C1-BCC436084830} URL = http://slovnik.seznam.cz/?q={searchTerm ... kSearch_12
SearchScopes: HKCU - {963294D2-DE14-4F77-BA47-2866903CED31} URL = http://www.firmy.cz/phr/{searchTerms}?s ... kSearch_12
SearchScopes: HKCU - {98AB41B0-6A77-46C9-B04A-E7D1F008851B} URL = http://www.mapy.cz/?query={searchTerms} ... kSearch_12
SearchScopes: HKCU - {AB43E5AD-12F5-41C6-9974-9720A0796C47} URL = http://slovnik.seznam.cz/?q={searchTerm ... kSearch_12
SearchScopes: HKCU - {BE5D3135-45C0-4859-9D97-2E41E4D2520C} URL = http://search.seznam.cz/?q={searchTerms ... kSearch_12
SearchScopes: HKCU - {DC4F3E23-A609-4F0A-92BE-D97A02702926} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... kSearch_12
BHO: No Name -> {11111111-1111-1111-1111-110611191115} -> No File
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: No Name -> {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} -> No File
BHO: No Name -> {FCE3FA8B-BA81-467C-81D8-E43C00D1BC71} -> No File
BHO-x32: No Name -> {11111111-1111-1111-1111-110611191115} -> No File
BHO-x32: EGet Class -> {1E871FF8-029C-4732-8AA7-39E3D3872057} -> C:\Program Files (x86)\EagleGet\eagleSniffer.dll (EagleGet.com)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKCU - No Name - {25E2E5C9-C43C-4EE8-B23E-4383915F2BCE} - No File
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 213.46.172.37 213.46.172.36

FireFox:
========
FF ProfilePath: C:\Users\Kenji\AppData\Roaming\Mozilla\Firefox\Profiles\9ugs6xse.default
FF SearchEngineOrder.1: Ask.com
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.65.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.65.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll No File
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Kenji\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll No File
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Kenji\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: eagleget.com/EagleGet32 -> C:\Program Files (x86)\EagleGet\npEagleget.dll (EagleGet)
FF Plugin HKCU: eagleget.com/EagleGet64 -> C:\Program Files (x86)\EagleGet\npEagleget64.dll (EagleGet)
FF user.js: detected! => C:\Users\Kenji\AppData\Roaming\Mozilla\Firefox\Profiles\9ugs6xse.default\user.js
FF SearchPlugin: C:\Users\Kenji\AppData\Roaming\Mozilla\Firefox\Profiles\9ugs6xse.default\searchplugins\Ask.xml
FF SearchPlugin: C:\Users\Kenji\AppData\Roaming\Mozilla\Firefox\Profiles\9ugs6xse.default\searchplugins\babylon.xml
FF SearchPlugin: C:\Users\Kenji\AppData\Roaming\Mozilla\Firefox\Profiles\9ugs6xse.default\searchplugins\BitGuard.xml
FF SearchPlugin: C:\Users\Kenji\AppData\Roaming\Mozilla\Firefox\Profiles\9ugs6xse.default\searchplugins\BrowserProtect.xml
FF SearchPlugin: C:\Users\Kenji\AppData\Roaming\Mozilla\Firefox\Profiles\9ugs6xse.default\searchplugins\search.xml
FF SearchPlugin: C:\Users\Kenji\AppData\Roaming\Mozilla\Firefox\Profiles\9ugs6xse.default\searchplugins\trovi-search.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\Ask.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: DownloadHelper - C:\Users\Kenji\AppData\Roaming\Mozilla\Firefox\Profiles\9ugs6xse.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-09-06]
FF Extension: EagleGet - C:\Users\Kenji\AppData\Roaming\Mozilla\Firefox\Profiles\9ugs6xse.default\Extensions\eagleget_ffext@eagleget.com.xpi [2014-09-28]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\Alwil Software\Avast5\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\Alwil Software\Avast5\WebRep\FF [2013-09-26]
FF HKLM-x32\...\Firefox\Extensions: [{ACAA314B-EEBA-48e4-AD47-84E31C44796C}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff
FF HKCU\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff

Chrome:
=======
CHR Profile: C:\Users\Kenji\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (The Avengers) - C:\Users\Kenji\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckfllifdbmfjehnombllbaojfdkmnpdm [2014-09-18]
CHR Extension: (EagleGet Downloader) - C:\Users\Kenji\AppData\Local\Google\Chrome\User Data\Default\Extensions\kaebhgioafceeldhgjmendlfhbfjefmo [2014-09-28]
CHR Extension: (Google Wallet) - C:\Users\Kenji\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-05-24]
CHR HKCU\...\Chrome\Extension: [kaebhgioafceeldhgjmendlfhbfjefmo] - C:\Program Files (x86)\EagleGet\addon\eagleget_cext@eagleget.com.crx [2014-09-28]
CHR HKCU\...\Chrome\Extension: [nikpibnbobmbdbheedjfogjlikpgpnhp] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\DVDVideoSoftBrowserExtension.crx [2014-09-28]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\Alwil Software\Avast5\WebRep\Chrome\aswWebRepChrome.crx [2014-07-04]
CHR HKLM-x32\...\Chrome\Extension: [kaebhgioafceeldhgjmendlfhbfjefmo] - C:\Program Files (x86)\EagleGet\addon\eagleget_cext@eagleget.com.crx [2014-09-28]
CHR HKLM-x32\...\Chrome\Extension: [kiplfnciaokpcennlkldkdaeaaomamof] - C:\Users\Kenji\AppData\Local\Torch\Plugins\TorchPlugin.crx [2014-09-28]
CHR HKLM-x32\...\Chrome\Extension: [nbmafkdmkkckhggblphicnnhlgljnoje] - C:\Program Files (x86)\TornTV.com\torn2_10.crx [2014-09-28]
CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [50344 2014-07-04] (AVAST Software)
R2 egGetSvc; C:\Program Files (x86)\EagleGet\EGMonitor.exe [229888 2014-09-23] () [File not signed]
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18956064 2014-07-25] (NVIDIA Corporation)
S2 Update PodoWeb; "C:\Program Files (x86)\PodoWeb\updatePodoWeb.exe" [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-07-04] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-07-04] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-07-04] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-07-04] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-07-04] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-07-04] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-07-04] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-07-04] ()
S3 DFX11_1; C:\Windows\System32\drivers\dfx11_1x64.sys [28008 2012-12-13] (Windows (R) Win 7 DDK provider)
R3 eagleGet; C:\Windows\System32\Drivers\eagleGet.sys [79696 2014-09-22] (eagleGet)
S3 ManyCam; C:\Windows\System32\DRIVERS\mcvidrv.sys [42016 2013-11-27] (Visicom Media Inc.)
S3 mcaudrv_simple; C:\Windows\System32\drivers\mcaudrv_x64.sys [35232 2013-12-06] (Visicom Media Inc.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-07-25] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13480 2014-05-19] ()
S0 sfdrv01a; C:\Windows\System32\drivers\sfdrv01a.sys [77688 2006-07-05] (Protection Technology (StarForce))
S0 sfsync02; C:\Windows\System32\drivers\sfsync02.sys [22936 2006-07-10] (Protection Technology)
R0 sfvfs02; C:\Windows\System32\drivers\sfvfs02.sys [106360 2007-01-12] (Protection Technology (StarForce))
U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] ()
R3 USBET; C:\Windows\System32\DRIVERS\ETdrv.sys [6423936 2013-02-04] (Etron)
S2 WCMVCAM; C:\Windows\System32\DRIVERS\wcmvcam64.sys [1071032 2012-04-15] (Windows (R) Win 7 DDK provider)
R1 xlkfs; C:\Windows\System32\DRIVERS\xlkfs.sys [30456 2012-05-05] (XOSLAB.COM)
S2 LiveTuner2PM; \??\C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 11\LiveTuner64.sys [X]
S3 MSICDSetup; \??\D:\CDriver64.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-29 06:58 - 2014-09-29 06:59 - 00022761 _____ () C:\Users\Kenji\Desktop\FRST.txt
2014-09-29 06:57 - 2014-09-29 06:58 - 00000000 ____D () C:\FRST
2014-09-29 06:54 - 2014-09-29 06:57 - 00004278 _____ () C:\Users\Kenji\Desktop\OSType.txt
2014-09-29 06:53 - 2014-09-28 21:48 - 02108928 _____ (Farbar) C:\Users\Kenji\Desktop\FRST64.exe
2014-09-29 06:53 - 2013-12-05 15:07 - 00112640 _____ (forum.viry.cz) C:\Users\Kenji\Desktop\FRSTLauncher.exe
2014-09-28 18:24 - 2012-08-17 23:27 - 00767627 _____ () C:\Users\Kenji\Desktop\ps2psxe_jay-jay_bundle_v2.rar
2014-09-28 17:16 - 2014-09-28 17:16 - 333781291 _____ () C:\Windows\MEMORY.DMP
2014-09-28 17:16 - 2014-09-28 17:16 - 00290704 _____ () C:\Windows\Minidump\092814-22386-01.dmp
2014-09-28 17:16 - 2014-09-28 17:16 - 00000000 ____D () C:\Windows\Minidump
2014-09-28 10:52 - 2014-09-28 15:44 - 00000000 ____D () C:\Users\Kenji\Documents\Bully Scholarship Edition
2014-09-28 10:38 - 2014-09-28 10:38 - 00000000 ____D () C:\Users\Kenji\AppData\Roaming\FreeArc
2014-09-28 10:38 - 2014-09-28 10:38 - 00000000 ____D () C:\Program Files (x86)\FreeArc
2014-09-28 08:25 - 2014-09-28 08:25 - 00001016 _____ () C:\Users\Public\Desktop\EagleGet.lnk
2014-09-28 08:25 - 2014-09-28 08:25 - 00000000 ____D () C:\Users\Kenji\AppData\Roaming\EagleGet
2014-09-28 08:25 - 2014-09-28 08:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EagleGet
2014-09-28 08:25 - 2014-09-28 08:25 - 00000000 ____D () C:\ProgramData\EagleGet
2014-09-28 08:25 - 2014-09-28 08:25 - 00000000 ____D () C:\Program Files (x86)\EagleGet
2014-09-28 08:25 - 2014-09-22 21:32 - 00079696 _____ (eagleGet) C:\Windows\system32\Drivers\eagleGet.sys
2014-09-27 21:45 - 2014-09-27 23:32 - 1913844832 _____ () C:\Users\Kenji\Desktop\HARD-BOILED.avi
2014-09-27 20:38 - 2014-09-27 20:39 - 17299624 _____ () C:\Users\Kenji\Desktop\ulte.wmv
2014-09-27 20:35 - 2014-09-27 20:35 - 00000000 ____D () C:\Users\Kenji\AppData\Local\{432DC1D7-6F61-4235-B185-30AE25422F88}
2014-09-27 19:52 - 2014-09-27 19:52 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-09-27 19:52 - 2014-09-27 19:52 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2014-09-27 19:52 - 2014-09-27 19:52 - 00000000 ____D () C:\Program Files\Realtek
2014-09-27 19:51 - 2014-04-23 17:51 - 02117424 _____ () C:\Windows\system32\SStudio.dll
2014-09-27 19:51 - 2014-04-10 12:19 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2014-09-27 19:51 - 2014-02-27 20:02 - 02162992 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll
2014-09-27 19:51 - 2013-06-25 12:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll
2014-09-27 19:51 - 2013-06-25 12:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll
2014-09-27 19:51 - 2013-06-25 12:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll
2014-09-27 19:51 - 2012-01-30 11:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2014-09-27 19:51 - 2012-01-10 10:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2014-09-27 19:51 - 2011-03-17 12:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll
2014-09-27 19:51 - 2011-03-07 17:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll
2014-09-27 19:51 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2014-09-27 19:51 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2014-09-27 19:51 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2014-09-27 19:51 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2014-09-27 19:50 - 2014-09-27 19:50 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-09-27 19:50 - 2014-05-14 18:37 - 03962840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2014-09-27 19:50 - 2014-05-14 16:00 - 01099203 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT
2014-09-27 19:50 - 2014-05-12 20:11 - 60636160 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2014-09-27 19:50 - 2014-05-09 11:17 - 00628952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2014-09-27 19:50 - 2014-05-02 11:19 - 00033592 _____ () C:\Windows\system32\audioLibVc.dll
2014-09-27 19:50 - 2014-04-30 11:34 - 00948952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2014-09-27 19:50 - 2014-04-28 15:48 - 02800344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2014-09-27 19:50 - 2014-04-25 13:51 - 02834648 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2014-09-27 19:50 - 2014-04-25 13:23 - 01022168 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2014-09-27 19:50 - 2014-04-17 17:42 - 01317976 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll
2014-09-27 19:50 - 2014-04-17 17:42 - 01168472 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll
2014-09-27 19:50 - 2014-04-17 17:42 - 01136728 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll
2014-09-27 19:50 - 2014-04-10 12:20 - 12894808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll
2014-09-27 19:50 - 2014-04-10 12:20 - 01934424 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll
2014-09-27 19:50 - 2014-04-10 12:19 - 28343384 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll
2014-09-27 19:50 - 2014-04-10 12:19 - 14863448 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll
2014-09-27 19:50 - 2014-04-10 12:19 - 03959384 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll
2014-09-27 19:50 - 2014-04-10 12:19 - 02041432 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2014-09-27 19:50 - 2014-04-10 12:19 - 01063512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2014-09-27 19:50 - 2014-04-10 12:19 - 00900696 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll
2014-09-27 19:50 - 2014-04-09 16:39 - 00942384 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll
2014-09-27 19:50 - 2014-04-09 16:38 - 05751048 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll
2014-09-27 19:50 - 2014-04-07 16:03 - 06218072 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2014-09-27 19:50 - 2014-04-07 16:03 - 01939800 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2014-09-27 19:50 - 2014-04-07 16:03 - 00315736 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2014-09-27 19:50 - 2014-04-07 16:03 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2014-09-27 19:50 - 2014-03-21 14:17 - 00291488 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll
2014-09-27 19:50 - 2014-03-19 19:19 - 00956504 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll
2014-09-27 19:50 - 2014-03-06 16:35 - 01959128 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2014-09-27 19:50 - 2014-03-05 05:11 - 01048824 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll
2014-09-27 19:50 - 2014-03-05 05:11 - 00889592 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2014-09-27 19:50 - 2014-03-05 05:11 - 00724728 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2014-09-27 19:50 - 2014-03-05 05:11 - 00246008 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll
2014-09-27 19:50 - 2014-02-26 15:16 - 02080472 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2014-09-27 19:50 - 2014-02-18 17:04 - 02770976 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2014-09-27 19:50 - 2014-02-06 11:28 - 05804772 _____ () C:\Windows\system32\Drivers\rtvienna.dat
2014-09-27 19:50 - 2014-01-31 17:27 - 01313904 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll
2014-09-27 19:50 - 2014-01-28 11:48 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2014-09-27 19:50 - 2013-10-16 03:43 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2014-09-27 19:50 - 2013-10-11 12:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2014-09-27 19:50 - 2013-10-11 11:31 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2014-09-27 19:50 - 2013-10-07 00:26 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll
2014-09-27 19:50 - 2013-10-07 00:26 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll
2014-09-27 19:50 - 2013-10-07 00:26 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll
2014-09-27 19:50 - 2013-08-14 15:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2014-09-27 19:50 - 2013-08-14 15:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2014-09-27 19:50 - 2013-06-21 11:01 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll
2014-09-27 19:50 - 2013-04-03 14:13 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll
2014-09-27 19:50 - 2012-08-31 19:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2014-09-27 19:50 - 2012-08-31 19:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2014-09-27 19:50 - 2012-08-31 19:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2014-09-27 19:50 - 2012-08-31 19:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2014-09-27 19:50 - 2012-08-31 19:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2014-09-27 19:50 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2014-09-27 19:50 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2014-09-27 19:50 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2014-09-27 19:50 - 2011-09-02 14:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2014-09-27 19:50 - 2011-09-02 14:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2014-09-27 19:50 - 2011-09-02 14:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2014-09-27 19:50 - 2011-08-23 17:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll
2014-09-27 19:50 - 2011-05-31 09:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2014-09-27 19:50 - 2011-05-31 09:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2014-09-27 19:50 - 2011-05-31 09:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2014-09-27 19:50 - 2011-05-31 09:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2014-09-27 19:50 - 2011-05-31 09:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2014-09-27 19:50 - 2011-05-31 09:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2014-09-27 19:50 - 2011-05-31 09:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2014-09-27 19:50 - 2011-05-31 09:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2014-09-27 19:50 - 2011-05-31 09:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2014-09-27 19:50 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2014-09-27 19:50 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2014-09-27 19:50 - 2011-05-31 09:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2014-09-27 19:50 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2014-09-27 19:50 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2014-09-27 19:50 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2014-09-27 19:50 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2014-09-27 19:50 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2014-09-27 19:50 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2014-09-27 19:50 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2014-09-27 19:50 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2014-09-27 19:50 - 2010-07-22 16:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2014-09-27 19:42 - 2014-09-27 19:53 - 00000000 ___HD () C:\Program Files (x86)\Temp
2014-09-27 19:29 - 2014-09-27 20:27 - 00000096 _____ () C:\Users\Kenji\AppData\Roaming\version2.xml
2014-09-27 19:29 - 2014-09-27 19:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CamStudio 2.7
2014-09-27 19:29 - 2014-09-27 19:29 - 00000000 ____D () C:\Program Files\CamStudio 2.7
2014-09-27 10:43 - 2014-09-27 19:24 - 00005120 _____ () C:\Users\Kenji\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-09-27 10:43 - 2014-09-27 10:43 - 00000000 ____D () C:\Users\Kenji\AppData\Local\ezvid,_inc
2014-09-27 10:40 - 2014-09-27 19:26 - 00000000 ____D () C:\Users\Kenji\Documents\ezvid
2014-09-27 08:46 - 2014-09-27 20:25 - 00000000 ____D () C:\Program Files\GridinSoft Trojan Killer
2014-09-27 07:33 - 2014-09-27 20:25 - 00003224 _____ () C:\Windows\System32\Tasks\Trojan Killer
2014-09-27 07:32 - 2014-09-27 07:32 - 00000000 ____D () C:\ProgramData\GridinSoft
2014-09-26 23:21 - 2014-09-26 23:21 - 00000288 _____ () C:\Users\Kenji\AppData\Roaming\E66C706C.reg
2014-09-26 22:28 - 2014-09-29 05:57 - 00000000 ____D () C:\Users\Kenji\AppData\Local\YSHPack
2014-09-26 22:28 - 2014-09-29 05:57 - 00000000 ____D () C:\Users\Kenji\AppData\Local\Ixhlsoft
2014-09-24 23:02 - 2014-09-24 23:02 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-09-24 00:18 - 2014-09-10 00:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-09-24 00:18 - 2014-09-09 23:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-09-23 13:49 - 2014-09-23 15:24 - 00001478 _____ () C:\Users\Kenji\Desktop\ESRDiscPatcher.lnk
2014-09-22 21:03 - 2014-09-22 21:03 - 00000000 ____D () C:\ProgramData\PlayClaw5
2014-09-22 21:02 - 2014-09-22 21:59 - 00000000 ____D () C:\Program Files (x86)\PlayClaw 5
2014-09-21 12:00 - 2014-09-21 12:00 - 01048576 _____ () C:\Users\Kenji\dsdddd.jpg.part00000
2014-09-21 12:00 - 2014-09-21 12:00 - 00227176 _____ () C:\Users\Kenji\dsdddd.jpg.part00001
2014-09-21 11:57 - 2014-09-21 11:57 - 00300544 _____ (LuJoSoft) C:\Users\Kenji\Desktop\FileShredder.exe
2014-09-21 11:42 - 2014-09-28 22:23 - 00005390 _____ () C:\Windows\PFRO.log
2014-09-21 11:40 - 2014-09-29 06:48 - 00004810 _____ () C:\Windows\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-11.job
2014-09-21 11:40 - 2014-09-29 06:48 - 00004128 _____ () C:\Windows\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-4.job
2014-09-21 11:40 - 2014-09-29 06:48 - 00003784 _____ () C:\Windows\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-7.job
2014-09-21 11:40 - 2014-09-29 06:48 - 00003784 _____ () C:\Windows\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-6.job
2014-09-21 11:40 - 2014-09-29 06:48 - 00003070 _____ () C:\Windows\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-1.job
2014-09-21 11:40 - 2014-09-21 11:40 - 00007840 _____ () C:\Windows\System32\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-11
2014-09-21 11:40 - 2014-09-21 11:40 - 00007158 _____ () C:\Windows\System32\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-4
2014-09-21 11:40 - 2014-09-21 11:40 - 00006814 _____ () C:\Windows\System32\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-7
2014-09-21 11:40 - 2014-09-21 11:40 - 00006812 _____ () C:\Windows\System32\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-6
2014-09-21 11:40 - 2014-09-21 11:40 - 00006100 _____ () C:\Windows\System32\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-1
2014-09-21 11:40 - 2014-09-21 11:40 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2014-09-21 11:21 - 2014-09-29 06:48 - 00002760 _____ () C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-5_user.job
2014-09-21 11:21 - 2014-09-29 06:48 - 00002760 _____ () C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-5.job
2014-09-21 11:21 - 2014-09-29 06:48 - 00002416 _____ () C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-2.job
2014-09-21 11:21 - 2014-09-21 11:21 - 00005790 _____ () C:\Windows\System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-5
2014-09-21 11:21 - 2014-09-21 11:21 - 00005446 _____ () C:\Windows\System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-2
2014-09-21 11:20 - 2014-09-29 06:48 - 00004810 _____ () C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-11.job
2014-09-21 11:20 - 2014-09-29 06:48 - 00003784 _____ () C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-7.job
2014-09-21 11:20 - 2014-09-29 06:48 - 00003784 _____ () C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-6.job
2014-09-21 11:20 - 2014-09-29 06:48 - 00003784 _____ () C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-4.job
2014-09-21 11:20 - 2014-09-29 06:48 - 00003070 _____ () C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-1.job
2014-09-21 11:20 - 2014-09-21 11:21 - 00006100 _____ () C:\Windows\System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-1
2014-09-21 11:20 - 2014-09-21 11:20 - 00007840 _____ () C:\Windows\System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-11
2014-09-21 11:20 - 2014-09-21 11:20 - 00006814 _____ () C:\Windows\System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-7
2014-09-21 11:20 - 2014-09-21 11:20 - 00006814 _____ () C:\Windows\System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-4
2014-09-21 11:20 - 2014-09-21 11:20 - 00006812 _____ () C:\Windows\System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-6
2014-09-21 11:19 - 2014-09-29 06:48 - 00003104 _____ () C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-3.job
2014-09-21 11:19 - 2014-09-21 11:19 - 00006134 _____ () C:\Windows\System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-3
2014-09-21 11:19 - 2014-09-21 11:19 - 00000000 ____D () C:\Users\Kenji\AppData\Local\globalUpdate
2014-09-21 11:12 - 2014-09-21 11:12 - 00003116 _____ () C:\Windows\System32\Tasks\{E3FA09AB-1750-4D04-AFEE-05FBA056F944}
2014-09-21 11:09 - 2014-09-21 11:09 - 00000000 ____D () C:\Users\Public\Documents\YTAHelper
2014-09-21 11:08 - 2014-09-21 11:18 - 00000000 ____D () C:\Users\Public\Documents\GOOBZO
2014-09-21 11:08 - 2014-09-21 11:08 - 00000000 ____D () C:\Users\Kenji\AppData\Local\CrashRpt
2014-09-19 06:08 - 2014-09-29 06:49 - 00004475 _____ () C:\Windows\setupact.log
2014-09-19 06:08 - 2014-09-19 06:08 - 00000000 _____ () C:\Windows\setuperr.log
2014-09-18 19:59 - 2014-09-18 19:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-09-18 14:55 - 2014-09-22 06:00 - 00001787 _____ () C:\Users\Kenji\Desktop\Chrome.lnk
2014-09-17 19:41 - 2014-09-28 17:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2014-09-17 19:41 - 2014-09-17 19:41 - 00001443 _____ () C:\Users\Public\Desktop\Free Audio Converter.lnk
2014-09-17 19:40 - 2014-09-28 17:45 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft
2014-09-14 12:31 - 2014-09-28 13:42 - 00000584 _____ () C:\Users\Kenji\Desktop\Co ještě stáhnout.txt
2014-09-14 10:12 - 2014-09-28 14:38 - 00000000 ____D () C:\Users\Kenji\Desktop\USB
2014-09-14 10:06 - 2014-09-14 10:06 - 00001124 _____ () C:\Users\Kenji\Desktop\USBUtil v2.0 Full (English) – zástupce.lnk
2014-09-13 20:57 - 2014-09-13 20:57 - 00000000 ____D () C:\ProgramData\Auslogics
2014-09-13 20:56 - 2014-09-13 20:56 - 00001178 _____ () C:\Users\Kenji\Desktop\Auslogics DiskDefrag.lnk
2014-09-13 20:56 - 2014-09-13 20:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics
2014-09-13 20:56 - 2014-09-13 20:56 - 00000000 ____D () C:\Program Files (x86)\Auslogics
2014-09-13 20:21 - 2014-09-13 20:21 - 00242827 _____ () C:\Users\Kenji\Desktop\ESR-disc-patcher-GUI-v0.24a.rar
2014-09-13 18:05 - 2014-09-13 18:05 - 00696011 _____ () C:\Users\Kenji\Desktop\OpenPS2Loader_0.8.zip
2014-09-13 15:19 - 2014-09-13 15:20 - 00000000 ____D () C:\Users\Kenji\Documents\All-In-One
2014-09-13 15:17 - 2014-09-13 15:17 - 00000000 ____D () C:\ProgramData\Hewlett-Packard
2014-09-13 14:37 - 2014-09-13 14:37 - 00000000 ____D () C:\Users\Kenji\All-In-One
2014-09-13 13:33 - 2014-09-13 13:33 - 00001981 _____ () C:\Users\Kenji\Desktop\DVD Decrypter.lnk
2014-09-13 13:33 - 2014-09-13 13:33 - 00000000 ____D () C:\Users\Kenji\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DVD Decrypter
2014-09-13 13:33 - 2014-09-13 13:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Decrypter
2014-09-13 13:33 - 2014-09-13 13:33 - 00000000 ____D () C:\Program Files (x86)\DVD Decrypter
2014-09-13 13:04 - 2014-09-14 09:31 - 00000000 ____D () C:\Users\Kenji\Desktop\lime
2014-09-11 00:39 - 2014-08-19 20:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-09-11 00:39 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-09-11 00:39 - 2014-08-19 01:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-09-11 00:39 - 2014-08-19 00:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-09-11 00:39 - 2014-08-19 00:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-09-11 00:39 - 2014-08-19 00:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-09-11 00:39 - 2014-08-19 00:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-09-11 00:39 - 2014-08-19 00:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-09-11 00:39 - 2014-08-19 00:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-09-11 00:39 - 2014-08-19 00:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-09-11 00:39 - 2014-08-19 00:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-09-11 00:39 - 2014-08-19 00:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-09-11 00:39 - 2014-08-19 00:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-09-11 00:39 - 2014-08-19 00:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-09-11 00:39 - 2014-08-19 00:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-09-11 00:39 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-09-11 00:39 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-09-11 00:39 - 2014-08-18 23:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-09-11 00:39 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-09-11 00:39 - 2014-08-18 23:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-09-11 00:39 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-09-11 00:39 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-09-11 00:39 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-09-11 00:39 - 2014-08-18 23:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-09-11 00:39 - 2014-08-18 23:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-09-11 00:39 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-09-11 00:39 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-09-11 00:39 - 2014-08-18 23:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-09-11 00:39 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-09-11 00:39 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-09-11 00:39 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-09-11 00:39 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-09-11 00:39 - 2014-08-18 23:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-09-11 00:39 - 2014-08-18 23:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-09-11 00:39 - 2014-08-18 23:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-09-11 00:39 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-09-11 00:39 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-09-11 00:39 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-09-11 00:39 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-09-11 00:39 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-09-11 00:39 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-09-11 00:39 - 2014-08-18 22:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-09-11 00:39 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-09-11 00:38 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-09-11 00:38 - 2014-08-19 00:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-09-11 00:38 - 2014-08-19 00:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-09-11 00:38 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-09-11 00:38 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-09-11 00:38 - 2014-08-18 23:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-09-11 00:38 - 2014-08-18 23:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-09-11 00:38 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-09-11 00:38 - 2014-08-18 23:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-09-11 00:38 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-09-11 00:38 - 2014-08-18 22:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-09-11 00:38 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-09-11 00:38 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-09-11 00:29 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-09-11 00:29 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-09-10 06:23 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-09-10 06:23 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-09-10 06:23 - 2014-06-24 05:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-09-10 06:23 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-09-10 06:22 - 2014-09-05 04:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-09-10 06:22 - 2014-09-05 04:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-09-10 06:22 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-09-10 06:22 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-09-10 06:22 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-09-10 06:22 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-09-10 06:22 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-09-09 20:50 - 2014-09-09 20:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\THQ
2014-09-08 21:28 - 2014-09-27 13:26 - 00000000 ____D () C:\Users\Kenji\Desktop\nové
2014-09-03 20:45 - 2012-08-04 14:25 - 00000000 ____D () C:\Users\Kenji\Desktop\Dune2000
2014-09-03 15:37 - 2014-09-03 15:37 - 00000000 ____D () C:\Users\Kenji\Documents\PCSX2
2014-09-03 15:31 - 2014-09-03 20:41 - 00000000 ____D () C:\Program Files (x86)\PCSX2 1.2.1
2014-09-03 15:31 - 2014-09-03 15:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PCSX2
2014-08-30 08:58 - 2014-08-30 08:58 - 00000000 ____D () C:\Program Files (x86)\Fox

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-29 06:59 - 2013-01-05 13:12 - 00000000 ____D () C:\Users\Kenji\AppData\Roaming\uTorrent
2014-09-29 06:56 - 2009-07-14 06:45 - 00020704 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-29 06:56 - 2009-07-14 06:45 - 00020704 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-29 06:54 - 2013-01-06 22:48 - 00000000 ____D () C:\Users\Kenji\AppData\Roaming\Seznam.cz
2014-09-29 06:52 - 2014-01-17 07:05 - 01630515 _____ () C:\Windows\WindowsUpdate.log
2014-09-29 06:49 - 2014-07-09 08:15 - 00004184 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-09-29 06:48 - 2013-07-19 14:37 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-09-29 06:48 - 2013-01-04 17:09 - 00000946 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-09-29 06:48 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-29 00:18 - 2013-01-04 17:09 - 00000950 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-09-28 23:47 - 2013-07-14 13:08 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-09-28 23:38 - 2009-07-14 07:08 - 00032586 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-09-28 23:30 - 2013-10-08 17:25 - 00000928 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1513654018-1133184573-4193745156-1001UA.job
2014-09-28 23:19 - 2014-07-28 09:33 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-09-28 21:53 - 2009-07-14 17:18 - 00678098 _____ () C:\Windows\system32\perfh005.dat
2014-09-28 21:53 - 2009-07-14 17:18 - 00146996 _____ () C:\Windows\system32\perfc005.dat
2014-09-28 21:53 - 2009-07-14 07:13 - 01613968 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-28 21:44 - 2013-11-23 22:36 - 00000000 ____D () C:\Users\Kenji\AppData\Roaming\vlc
2014-09-28 21:39 - 2013-01-05 10:37 - 00000000 ___RD () C:\Users\Kenji\Desktop\Hudba
2014-09-28 21:33 - 2014-08-11 18:04 - 00000000 ____D () C:\Users\Kenji\Documents\Euro Truck Simulator 2
2014-09-28 17:44 - 2013-09-28 13:31 - 00000000 ____D () C:\Users\Kenji\AppData\Roaming\DVDVideoSoft
2014-09-28 17:30 - 2013-10-08 17:25 - 00000906 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1513654018-1133184573-4193745156-1001Core.job
2014-09-28 16:21 - 2013-01-04 16:30 - 00000000 ____D () C:\Users\Kenji\AppData\Roaming\Skype
2014-09-28 15:50 - 2013-07-21 22:11 - 00000000 ___RD () C:\Users\Kenji\Desktop\Hry
2014-09-28 12:24 - 2014-06-26 14:26 - 00000249 _____ () C:\Users\Kenji\Documents\EtCap.ini
2014-09-28 10:48 - 2013-01-05 12:07 - 00000000 ___RD () C:\Users\Kenji\Desktop\Programy
2014-09-27 20:41 - 2014-06-22 19:59 - 00004549 _____ () C:\Users\Kenji\AppData\Roaming\CamStudio.cfg
2014-09-27 20:41 - 2014-06-22 19:59 - 00000408 _____ () C:\Users\Kenji\AppData\Roaming\CamShapes.ini
2014-09-27 20:41 - 2014-06-22 19:59 - 00000408 _____ () C:\Users\Kenji\AppData\Roaming\CamLayout.ini
2014-09-27 20:41 - 2014-06-22 19:59 - 00000107 _____ () C:\Users\Kenji\AppData\Roaming\Camdata.ini
2014-09-27 19:50 - 2013-01-05 13:58 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-09-26 07:26 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-09-26 05:53 - 2013-01-04 16:33 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-25 16:21 - 2013-01-04 16:29 - 00000000 ____D () C:\Users\Kenji\AppData\Roaming\Adobe
2014-09-23 21:47 - 2013-07-14 13:08 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-09-23 21:47 - 2013-01-04 16:29 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-23 21:47 - 2013-01-04 16:29 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-23 14:56 - 2014-06-22 19:10 - 00009560 _____ () C:\Users\Kenji\Documents\PlayClaw.txt
2014-09-22 22:01 - 2013-07-29 19:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PlayClaw4
2014-09-22 22:01 - 2013-07-29 19:55 - 00000000 ____D () C:\Program Files (x86)\PlayClaw4
2014-09-22 19:14 - 2013-01-04 15:42 - 00000000 ____D () C:\Users\Kenji\AppData\Local\VirtualStore
2014-09-21 12:00 - 2013-01-04 15:40 - 00000000 ____D () C:\Users\Kenji
2014-09-21 11:53 - 2014-08-09 17:58 - 00001505 _____ () C:\Users\Kenji\Desktop\Mozilla.lnk
2014-09-21 11:53 - 2013-01-04 16:33 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-09-21 11:53 - 2013-01-04 15:42 - 00001397 _____ () C:\Users\Kenji\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-09-21 11:15 - 2013-08-02 18:06 - 00000000 ____D () C:\ProgramData\TEMP
2014-09-18 21:09 - 2014-05-26 18:53 - 00000000 ____D () C:\Users\Kenji\AppData\Local\Crazy_Boomerang_Software
2014-09-18 19:59 - 2013-01-23 17:18 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-09-18 19:59 - 2013-01-04 16:29 - 00000000 ____D () C:\ProgramData\Skype
2014-09-18 14:42 - 2014-03-29 22:15 - 00000000 ____D () C:\Users\Kenji\AppData\Local\Google
2014-09-17 14:57 - 2013-05-16 21:43 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-09-15 09:06 - 2013-01-04 15:34 - 00278152 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-09-13 15:31 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Public\Libraries
2014-09-13 15:20 - 2013-05-18 08:21 - 00000000 ____D () C:\Users\Kenji\AppData\Roaming\.minecraft
2014-09-13 14:29 - 2014-04-06 08:32 - 12535808 ___SH () C:\Users\Kenji\Desktop\Thumbs.db
2014-09-12 21:09 - 2013-08-09 12:17 - 00000000 ____D () C:\ProgramData\AlawarWrapper
2014-09-11 00:37 - 2013-02-02 11:37 - 01588682 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-09-11 00:35 - 2013-07-19 14:32 - 00000000 ____D () C:\Windows\system32\MRT
2014-09-11 00:30 - 2013-01-09 23:54 - 101694776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-09-11 00:29 - 2014-05-07 00:22 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-09-11 00:28 - 2013-01-20 15:26 - 00000000 ____D () C:\NVIDIA
2014-09-09 21:21 - 2013-08-14 11:44 - 00000000 ____D () C:\Users\Public\Documents\STALKER-SHOC
2014-09-09 20:37 - 2014-07-30 17:58 - 00000000 ____D () C:\Hry
2014-09-09 18:07 - 2013-07-20 20:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft
2014-09-03 19:38 - 2014-08-07 08:38 - 00000000 ____D () C:\Program Files (x86)\Black_Box
2014-09-03 19:27 - 2013-01-05 21:05 - 00000000 ____D () C:\Users\Kenji\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2014-09-03 15:35 - 2013-01-05 12:05 - 00000000 ____D () C:\Windows\SysWOW64\directx
2014-09-03 15:34 - 2013-01-05 12:05 - 00000000 ___HD () C:\Windows\msdownld.tmp
2014-09-03 15:32 - 2014-01-05 16:14 - 00000000 ____D () C:\ProgramData\Package Cache
2014-08-31 09:26 - 2014-06-08 08:05 - 00000000 ____D () C:\Program Files (x86)\RivaTuner Statistics Server
2014-08-31 07:26 - 2014-04-13 10:35 - 00000000 ____D () C:\Program Files (x86)\MSI Afterburner
2014-08-30 08:58 - 2013-03-02 09:38 - 00021840 ____T () C:\Windows\SysWOW64\SIntfNT.dll
2014-08-30 08:58 - 2013-03-02 09:38 - 00017212 ____T () C:\Windows\SysWOW64\SIntf32.dll
2014-08-30 08:58 - 2013-03-02 09:38 - 00012067 ____T () C:\Windows\SysWOW64\SIntf16.dll

Files to move or delete:
====================
C:\ProgramData\PGE.dat


Some content of TEMP:
====================
C:\Users\Kenji\AppData\Local\Temp\31639873.exe
C:\Users\Kenji\AppData\Local\Temp\31641433.exe
C:\Users\Kenji\AppData\Local\Temp\31656393.exe
C:\Users\Kenji\AppData\Local\Temp\cabex.dll
C:\Users\Kenji\AppData\Local\Temp\listicka-partner-13415-1.1.2-offline.exe
C:\Users\Kenji\AppData\Local\Temp\PartnerInstaller_smtyc.exe
C:\Users\Kenji\AppData\Local\Temp\setup.exe
C:\Users\Kenji\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Kenji\AppData\Local\Temp\smt_istartsurf.exe
C:\Users\Kenji\AppData\Local\Temp\tmp6E5E.exe
C:\Users\Kenji\AppData\Local\Temp\tu17p84.exe
C:\Users\Kenji\AppData\Local\Temp\unelevate.exe
C:\Users\Kenji\AppData\Local\Temp\~8DA8.exe
C:\Users\Kenji\AppData\Local\Temp\~A020.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-09-26 07:14

==================== End Of Log ============================

D3NJI
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 28 zář 2014 23:30

Re: Explorer.exe hází virus

#4 Příspěvek od D3NJI »

Addition:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 28-09-2014 02
Ran by Kenji at 2014-09-29 07:04:19
Running from C:\Users\Kenji\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKCU\...\uTorrent) (Version: 3.4.2.33290 - BitTorrent Inc.)
µTorrent (HKLM-x32\...\uTorrent) (Version: 3.3.0.29010 - BitTorrent Inc.)
7-Zip 9.22beta (HKLM-x32\...\7-Zip) (Version: - )
AC3Filter 2.5b (HKLM-x32\...\AC3Filter_is1) (Version: 2.5b - Alexander Vigovsky)
Acrobat.com (HKLM-x32\...\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.1.377 - Adobe Systems Incorporated)
Acrobat.com (x32 Version: 0.0.0 - Adobe Systems Incorporated) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 14.0.0.110 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 14.0.0.110 - Adobe Systems Incorporated) Hidden
Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated)
Adobe Community Help (x32 Version: 3.0.0 - Adobe Systems Incorporated) Hidden
Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.167 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.152 - Adobe Systems Incorporated)
Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated)
Adobe Media Player (x32 Version: 1.8 - Adobe Systems Incorporated) Hidden
Adobe Reader XI (11.0.09) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated)
Aktualizace NVIDIA 15.3.33 (Version: 15.3.33 - NVIDIA Corporation) Hidden
Aliens vs. Predator 2 (HKLM-x32\...\{3EF79591-BF16-4CF8-8FF0-D8AD968228B1}) (Version: - )
Ashampoo WinOptimizer 2013 v.1.0.0 (HKLM-x32\...\{4209F371-7B85-60AD-E5CE-E4409D39E3DE}_is1) (Version: 1.00.00 - Ashampoo GmbH & Co. KG)
Auslogics DiskDefrag (HKLM-x32\...\{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1) (Version: 4.5.5.0 - Auslogics Labs Pty Ltd)
avast! Free Antivirus (HKLM-x32\...\avast) (Version: 9.0.2021 - AVAST Software)
BioShock 2 (x32 Version: 1.0.0005.131 - Take-Two Interactive Software) Hidden
blueMSX (HKLM-x32\...\{05C02EE9-9F0A-4052-A4DA-8621F729B1F5}) (Version: 2.8.2 - Team blueMSX)
CamStudio 2.7.2 (HKLM\...\{04B83666-3A62-452B-85D3-70F8117F2329}_is1) (Version: 2.7.2 - CamStudio Open Source)
CCleaner (HKLM\...\CCleaner) (Version: 4.02 - Piriform)
CoreAAC (HKLM-x32\...\CoreAAC) (Version: - )
Creevity Mp3 Cover Downloader (HKLM\...\Mp3 Cover Downloader_is1) (Version: 1.4.0 - Diego Alicata)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Deus Ex - Game of the Year Edition (HKLM-x32\...\Deus Ex - Game of the Year Edition_is1) (Version: - GOG.com)
Dolphin x86 (HKLM-x32\...\Dolphin x86) (Version: 4.0.2 - Dolphin Development Team)
Doom 3 (x32 Version: 1.00.0000 - Activision) Hidden
DVD Decrypter (Remove Only) (HKLM-x32\...\DVD Decrypter) (Version: - )
DVS Video Downloader Addon for Mozilla Firefox version 4.3.4.15 (HKLM-x32\...\DVS Video Downloader Addon for Mozilla Firefox_is1) (Version: 4.3.4.15 - DVDVideoSoft Ltd.)
Dynasty Warriors 4 Hyper (HKCU\...\{DBFF7A38-F460-419A-A2E7-2D55BD2D9AD4}) (Version: - )
EagleGet version 2.0.1.7 (HKLM-x32\...\{F6D8142A-B30B-454B-9EE0-08A7B997DFE4}_is1) (Version: 2.0.1.7 - EagleGet)
Easy File Locker 1.4 (HKLM-x32\...\Easy File Locker) (Version: 1.4 - XOSLAB.COM)
Euro Truck Simulator 2 (HKLM-x32\...\{1B705E8F-9893-4486-B5D7-4F7FEB9C871E}_is1) (Version: 1.1.1 - SCS Software)
Eusing Free Video Converter (HKLM-x32\...\Eusing Free Video Converter) (Version: - Eusing Software)
Fable - The Lost Chapters (x32 Version: 1.00.0000 - Microsoft Game Studios) Hidden
Facebook Video Calling 2.0.0.447 (HKLM-x32\...\{8DF41A9F-FE13-43E8-A003-5F9B55A011EE}) (Version: 2.0.447 - Skype Limited)
Fallout 3 (HKLM-x32\...\{974C4B12-4D02-4879-85E0-61C95CC63E9E}) (Version: 1.00.0000 - Bethesda Softworks)
Far Cry (Patch 1.4) (x32 Version: 1.00.0000 - Ubisoft) Hidden
Far Cry (x32 Version: 1.00.0000 - Ubisoft) Hidden
Free Audio Converter version 5.0.47.906 (HKLM-x32\...\Free Audio Converter_is1) (Version: 5.0.47.906 - DVDVideoSoft Ltd.)
Free AVI Video Converter version 5.0.45.806 (HKLM-x32\...\Free AVI Video Converter_is1) (Version: 5.0.45.806 - DVDVideoSoft Ltd.)
Free Image Convert and Resize version 2.1.28.922 (HKLM-x32\...\Free Image Convert and Resize_is1) (Version: 2.1.28.922 - DVDVideoSoft Ltd.)
Free Video Call Recorder for Skype version 1.2.18.716 (HKLM-x32\...\Free Video Call Recorder for Skype_is1) (Version: 1.2.18.716 - DVDVideoSoft Ltd.)
Free Video to LG Phones Converter version 5.0.37.327 (HKLM-x32\...\Free Video to LG Phones Converter_is1) (Version: 5.0.37.327 - DVDVideoSoft Ltd.)
FreeArc 0.666 (HKLM-x32\...\FreeArc) (Version: 0.666 - Bulat Ziganshin)
Freemake Video Converter verze 4.1.4 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 4.1.4 - Ellora Assets Corporation)
GigaTribe 3.04.013 (HKLM-x32\...\ShalSoft.GigaTribe_is1) (Version: - GigaTribe SAS)
GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team)
Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 37.0.2062.124 - Google Inc.)
Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden
Installer (x32 Version: 1.0.0 - Sierra Entertainment, Inc.) Hidden
Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.15.10.1930 - Intel Corporation)
IPP Run-Time 5.3 (HKLM-x32\...\IPP Run-Time 5.3) (Version: - )
Java 7 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217060FF}) (Version: 7.0.600 - Oracle)
Java Auto Updater (x32 Version: 2.1.65.20 - Oracle, Inc.) Hidden
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
MAGIX Music Maker 16 Premium Download Version (HKLM-x32\...\MAGIX Music Maker 16 Premium Download Version UK) (Version: 16.0.0.30 - MAGIX AG)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Messenger Companion (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Microsoft .NET Framework 1.1 (HKLM-x32\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 4.5.1 (CSY) (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106 (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106 (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Windows Application Compatibility Database (HKLM\...\{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb) (Version: - )
Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Microsoft_VC80_ATL_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_ATL_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_CRT_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_MFC_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_MFC_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_MFCLOC_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_MFCLOC_x86_x64 (Version: 80.50727.4053 - Adobe) Hidden
Microsoft_VC90_ATL_x86 (x32 Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_ATL_x86_x64 (Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_CRT_x86_x64 (Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_MFC_x86 (x32 Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_MFC_x86_x64 (Version: 1.00.0000 - Adobe) Hidden
Mozilla Firefox 32.0.3 (x86 cs) (HKLM-x32\...\Mozilla Firefox 32.0.3 (x86 cs)) (Version: 32.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
MP3 Speed Changer 3.00 (HKLM-x32\...\MP3SpeedChanger_is1) (Version: - Crazy Boomerang Software)
MPEG2 Codec(libmpeg2/mad) (HKLM-x32\...\MPEG2 Codec(libmpeg2/mad)) (Version: - )
MSI Afterburner 3.0.0 (HKLM-x32\...\Afterburner) (Version: 3.0.0 - MSI Co., LTD)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
MSXML4 Parser (HKLM-x32\...\{01501EBA-EC35-4F9F-8889-3BE346E5DA13}) (Version: 1.0.0 - Microsoft Game Studios)
Můj život na farmě (HKCU\...\Můj život na farmě) (Version: 1.0.0.0 - Alawar Entertainment Inc.)
NVIDIA GeForce Experience 2.1.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.1 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.157.1165 - NVIDIA Corporation) Hidden
NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden
NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden
NVIDIA Ovladač 3D Vision 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 340.52 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 340.52 - NVIDIA Corporation)
NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden
NVIDIA ShadowPlay 15.3.33 (Version: 15.3.33 - NVIDIA Corporation) Hidden
NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.12.6514 - NVIDIA Corporation) Hidden
NVIDIA Systémový software PhysX 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
NVIDIA Update Core (Version: 15.3.33 - NVIDIA Corporation) Hidden
NVIDIA Virtual Audio 1.2.23 (Version: 1.2.23 - NVIDIA Corporation) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
OpenOffice.org 3.4.1 (HKLM-x32\...\{1E0AF527-0B8E-4F8A-BA27-CB3C359998C6}) (Version: 3.41.9593 - Apache Software Foundation)
Ovládací panel NVIDIA 340.52 (Version: 340.52 - NVIDIA Corporation) Hidden
Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení (HKLM-x32\...\{B6190387-0036-4BEB-8D74-A0AFC5F14706}) (Version: 15.4.5722.2 - Microsoft Corporation)
PCSX2 - Playstation 2 Emulator (HKLM-x32\...\pcsx2-r5875) (Version: - )
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
PlayClaw 4 (HKLM-x32\...\PlayClaw 4_is1) (Version: 4 - )
PowerISO (HKLM-x32\...\PowerISO) (Version: 5.5 - Power Software Ltd)
Quake 4(TM) (x32 Version: 1.0 - Activision) Hidden
Rage Maker (HKLM-x32\...\{DD7F0FB7-9908-4DA5-95C5-7C6ABE6918C7}) (Version: 3.56.0 - Dan Awesome)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7246 - Realtek Semiconductor Corp.)
RivaTuner Statistics Server 6.1.1 (HKLM-x32\...\RTSS) (Version: 6.1.1 - Unwinder)
S.T.A.L.K.E.R. - Shadow of Chernobyl [v1.0005] (HKLM-x32\...\S.T.A.L.K.E.R. - Shadow of Chernobyl_is1) (Version: 1.0005 - THQ)
SA30xx Media Converter (HKLM-x32\...\{1E06D48E-5448-4BCC-9F87-9FB4EBD59898}) (Version: 1.1.5.1007 - Philips)
SA30xx Media Converter (x32 Version: 1.1.5.1007 - Philips) Hidden
Seznam Software (HKCU\...\SeznamInstall) (Version: - Seznam.cz)
SHIELD Streaming (Version: 3.1.100 - NVIDIA Corporation) Hidden
Skype™ 6.20 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.20.104 - Skype Technologies S.A.)
Stalker Complete 2009 (HKLM-x32\...\{Stalker Complete 2009 v1.4.4}}_is1) (Version: - )
Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation)
SWAT 4 (x32 Version: 1.0.31763 - Sierra Entertainment, Inc.) Hidden
Synthesia (HKLM-x32\...\Synthesia) (Version: 9 - Synthesia LLC)
System Requirements Lab (Test) (HKLM-x32\...\{9BFD3F1F-E5FD-4358-988F-FC9A9446286D}) (Version: 6.0.3.0 - Husdawg, LLC)
System Requirements Lab CYRI (HKLM-x32\...\{F3FCB08B-E752-444D-86A0-0634A4F3B23D}) (Version: 6.0.8.0 - Husdawg, LLC)
System Requirements Lab Detection (HKLM-x32\...\{A407FC22-36BF-4C82-A516-59D94BC505A9}) (Version: 1.0.5.0 - Husdawg, LLC)
System Requirements Lab for Intel (HKLM-x32\...\{C7CA731B-BF9A-46D9-92CF-8A8737AE9240}) (Version: 4.5.13.0 - Husdawg, LLC)
Thumbnail me 3.0 (HKCU\...\Thumbnail me 3.0) (Version: - )
Unity Web Player (HKCU\...\UnityWebPlayer) (Version: 4.5.2f1 - Unity Technologies ApS)
Unlocker 1.9.1-x64 (HKLM\...\Unlocker) (Version: 1.9.1 - Cedrick Collomb)
VC8&9 CRT and ATL (HKLM-x32\...\{516A594B-FEFF-4521-B857-69809AB266FF}) (Version: 1.0.0 - Microsoft)
Veselý šéfkuchař 2 (HKLM-x32\...\Veselý šéfkuchař 2) (Version: 1.0.0.0 - Alawar Entertainment Inc.)
Visual Studio 2010 x64 Redistributables (HKLM\...\{21B133D6-5979-47F0-BE1C-F6A6B304693F}) (Version: 13.0.0.1 - AVG Technologies)
VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN)
Webcam Videocap (HKLM-x32\...\{ED1674F5-5165-49BF-B546-AE5343111540}) (Version: 1.0.3.7 - ETRON)
WebcamMax (HKLM-x32\...\WebcamMax) (Version: 7.1.2.6.MultiLanguage - )
Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Family Safety (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Language Selector (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Messenger (x32 Version: 15.4.3538.0513 - Microsoft Corporation) Hidden
Windows Live Messenger Companion Core (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Movie Maker 2.6 (HKLM-x32\...\{B3DAF54F-DB25-4586-9EF1-96D24BB14088}) (Version: 2.6.4037.0 - Microsoft Corporation)
WinRAR 5.00 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH)
Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-1513654018-1133184573-4193745156-1001_Classes\CLSID\{6d4c2238-c1b9-5d67-81d8-2cf6949997db}\InprocServer32 -> C:\Program Files (x86)\EagleGet\npEagleget64.dll (EagleGet)

==================== Restore Points =========================

23-09-2014 22:18:25 Windows Update
23-09-2014 22:25:49 Windows Update
27-09-2014 05:34:22 Windows Update
28-09-2014 15:43:51 DVDVideoSoftRestorePoint

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {09838876-A1B1-4DED-9C60-63DB04F9AF8F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-01-04] (Google Inc.)
Task: {0C63E6F2-8237-4E9B-BCC7-5D8F152CE6A5} - System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-7 => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-7.exe <==== ATTENTION
Task: {0DA64597-19FC-4143-A35D-346DA0271090} - System32\Tasks\{74A1901A-DC0F-45F4-8D40-6FE3269BAE0F} => C:\Users\Kenji\Desktop\0101010\Ares\Ares.exe
Task: {15C0C889-6974-4E75-A511-BE6D33FF3114} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-05-24] (Piriform Ltd)
Task: {16766110-4670-4F7E-8E7F-DDEDA47DDF95} - System32\Tasks\DealPly => C:\Users\Kenji\AppData\Roaming\DealPly\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: {1DBA7A1F-3328-4BC7-ABAE-02B2F19B078B} - System32\Tasks\Game_Booster_Startup => C:\Program Files (x86)\IObit\Game Booster 3\gbtray.exe
Task: {23B5B58C-B2E2-405D-B186-9FE62FCC986C} - System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-11 => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-11.exe <==== ATTENTION
Task: {23D362A7-3DF5-4151-B232-5C8284CFCC74} - System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-6 => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-6.exe <==== ATTENTION
Task: {2E5740A8-F182-4AF9-ADC9-ECBDE2853CFB} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1513654018-1133184573-4193745156-1001Core => C:\Users\Kenji\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: {3526B6C1-AAB1-4A86-A9AB-CB7F7BE885AF} - System32\Tasks\Trojan Killer => C:\Program Files\GridinSoft Trojan Killer\trojankiller.exe
Task: {53015930-F84A-420D-8C63-212E9149CB59} - System32\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-6 => C:\Program Files (x86)\iWebar\b4aa3335-1534-4586-9672-f6c8018bd013-6.exe <==== ATTENTION
Task: {5B14F84A-E7D1-41B0-A8B8-73E47BFBA6AD} - System32\Tasks\{1FAA6CA3-B326-4C77-9AFC-D8389D2B19C4} => C:\Users\Kenji\Desktop\LoLSkins.exe
Task: {5BCF5B1F-4B31-426C-8616-7BDB7B505950} - System32\Tasks\avast! Emergency Update => C:\Program Files\Alwil Software\Avast5\AvastEmUpdate.exe [2014-07-04] (AVAST Software)
Task: {63D6D048-0EEE-4999-9E21-92750F4F7B00} - System32\Tasks\SomotoUpdateCheckerAutoStart => C:\Users\Kenji\AppData\Local\FilesFrog Update Checker\update_checker.exe <==== ATTENTION
Task: {A228FCA5-51F7-40D1-BC21-8EA856281097} - System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-3 => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-3.exe <==== ATTENTION
Task: {A5E056EC-BED6-453A-961F-607FBF7EAF41} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1513654018-1133184573-4193745156-1001UA => C:\Users\Kenji\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: {AFF5DADD-05E8-4040-B819-0A34492273A8} - System32\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-4 => C:\Program Files (x86)\iWebar\b4aa3335-1534-4586-9672-f6c8018bd013-4.exe <==== ATTENTION
Task: {B557908B-F027-4A17-8FFF-97035A25D23B} - System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-5 => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-5.exe <==== ATTENTION
Task: {BB989A15-FFCC-4E5F-BA91-E38D17824296} - System32\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-11 => C:\Program Files (x86)\iWebar\b4aa3335-1534-4586-9672-f6c8018bd013-11.exe <==== ATTENTION
Task: {C2280FC0-14F6-4999-8939-D5EC24BF28FD} - System32\Tasks\AdobeAAMUpdater-1.0-Kenji-PC-Kenji => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06] (Adobe Systems Incorporated)
Task: {C3664345-C092-46BB-AEC2-D377A5502651} - System32\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-7 => C:\Program Files (x86)\iWebar\b4aa3335-1534-4586-9672-f6c8018bd013-7.exe <==== ATTENTION
Task: {CCD2187B-1550-4DD6-A234-9D2A8FA9C07D} - System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-2 => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-2.exe <==== ATTENTION
Task: {D3379333-191F-4B73-BF5F-783F00B20A8B} - System32\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-1 => C:\Program Files (x86)\iWebar\iWebar-codedownloader.exe <==== ATTENTION
Task: {D742BB45-8214-44D7-B0DE-99B7035C7742} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-23] (Adobe Systems Incorporated)
Task: {E43D629D-ED52-4361-BFFC-2983DDFF6EF2} - System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-1 => C:\Program Files (x86)\Senses\Senses-codedownloader.exe <==== ATTENTION
Task: {E62C1EAE-E616-4970-9DD8-0694118D5E72} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-01-04] (Google Inc.)
Task: {E66CB066-E0C7-4E66-96B1-49CEE09A4A42} - System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-5_user => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-5.exe <==== ATTENTION
Task: {ED0B53EF-5BB8-4984-B10F-51A62E433848} - System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-4 => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-4.exe <==== ATTENTION
Task: {EF76821A-A1EF-4B10-9F83-11CAD2FC1EAF} - System32\Tasks\Razer_Game_Booster_AutoUpdate => C:\Program Files (x86)\Razer\Razer Game Booster\AutoUpdate.exe
Task: {F272E5B4-B73F-480A-B22F-963C8FC43B32} - System32\Tasks\{58D4CCD1-E6F2-4649-A6B7-CC845EC55A01} => C:\Program Files (x86)\EA GAMES\Battlefield 2\BF2.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-1.job => C:\Program Files (x86)\Senses\Senses-codedownloader.exe <==== ATTENTION
Task: C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-11.job => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-11.exe <==== ATTENTION
Task: C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-2.job => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-2.exe <==== ATTENTION
Task: C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-3.job => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-3.exe <==== ATTENTION
Task: C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-4.job => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-4.exe <==== ATTENTION
Task: C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-5.job => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-5_user.job => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-6.job => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-7.job => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-1.job => C:\Program Files (x86)\iWebar\iWebar-codedownloader.exe <==== ATTENTION
Task: C:\Windows\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-11.job => C:\Program Files (x86)\iWebar\b4aa3335-1534-4586-9672-f6c8018bd013-11.exe <==== ATTENTION
Task: C:\Windows\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-4.job => C:\Program Files (x86)\iWebar\b4aa3335-1534-4586-9672-f6c8018bd013-4.exe <==== ATTENTION
Task: C:\Windows\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-6.job => C:\Program Files (x86)\iWebar\b4aa3335-1534-4586-9672-f6c8018bd013-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-7.job => C:\Program Files (x86)\iWebar\b4aa3335-1534-4586-9672-f6c8018bd013-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1513654018-1133184573-4193745156-1001Core.job => C:\Users\Kenji\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1513654018-1133184573-4193745156-1001UA.job => C:\Users\Kenji\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2013-07-19 14:36 - 2014-07-02 20:55 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2013-07-16 16:48 - 2012-06-17 22:18 - 01202688 _____ () C:\Windows\system32\ac3filter64.acm
2014-09-22 22:00 - 2014-09-22 22:00 - 03149312 _____ () C:\ProgramData\Microsoft\Secure\Icons\SecureIconsProvider.dll
2014-09-22 22:00 - 2014-09-22 22:00 - 02500096 _____ () C:\ProgramData\Microsoft\Secure\Icons\IconsCacheHelper.dll
2010-07-15 06:44 - 2010-07-15 06:44 - 00020032 _____ () C:\Program Files\Unlocker\UnlockerCOM.dll
2014-09-28 08:25 - 2014-09-23 23:01 - 00229888 _____ () C:\Program Files (x86)\EagleGet\EGMonitor.exe
2014-07-04 16:34 - 2014-07-04 16:34 - 00301152 _____ () C:\Program Files\Alwil Software\Avast5\aswProperty.dll
2014-09-28 21:19 - 2014-09-28 21:19 - 02867200 _____ () C:\Program Files\Alwil Software\Avast5\defs\14092801\algo.dll
2014-09-28 08:25 - 2014-09-23 23:01 - 00922112 _____ () C:\Program Files (x86)\EagleGet\util.dll
2014-09-28 08:25 - 2014-07-17 15:13 - 00397312 _____ () C:\Program Files (x86)\EagleGet\sqlite3.dll
2014-07-04 16:34 - 2014-07-04 16:34 - 19329904 _____ () C:\Program Files\Alwil Software\Avast5\libcef.dll
2014-09-25 06:22 - 2014-09-23 06:06 - 01098056 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\libglesv2.dll
2014-09-25 06:22 - 2014-09-23 06:06 - 00174408 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\libegl.dll
2014-09-25 06:22 - 2014-09-23 06:07 - 08577864 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\pdf.dll
2014-09-25 06:22 - 2014-09-23 06:07 - 00331592 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\ppGoogleNaClPluginChrome.dll
2014-09-25 06:22 - 2014-09-23 06:06 - 01660232 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\ffmpegsumo.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:56E2E879
AlternateDataStreams: C:\Users\Kenji\Downloads:Shareaza.GUID

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
MSCONFIG\startupreg: Facebook Update => "C:\Users\Kenji\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
MSCONFIG\startupreg: HotKeysCmds => C:\Windows\system32\hkcmd.exe
MSCONFIG\startupreg: icq => C:\Users\Kenji\AppData\Roaming\ICQM\icq.exe -CU
MSCONFIG\startupreg: IgfxTray => C:\Windows\system32\igfxtray.exe
MSCONFIG\startupreg: Persistence => C:\Windows\system32\igfxpers.exe
MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\steam.exe" -silent
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: WebcamMaxAutoRun => "C:\Program Files (x86)\WebcamMax\wcmmon.exe" -a

========================= Accounts: ==========================

Administrator (S-1-5-21-1513654018-1133184573-4193745156-500 - Administrator - Disabled)
ASPNET (S-1-5-21-1513654018-1133184573-4193745156-1198 - Limited - Enabled)
Guest (S-1-5-21-1513654018-1133184573-4193745156-501 - Limited - Enabled)
HomeGroupUser$ (S-1-5-21-1513654018-1133184573-4193745156-1202 - Limited - Enabled)
Kenji (S-1-5-21-1513654018-1133184573-4193745156-1001 - Administrator - Enabled) => C:\Users\Kenji

==================== Faulty Device Manager Devices =============

Name: Ashampoo LiveTuner 2 Driver
Description: Ashampoo LiveTuner 2 Driver
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: LiveTuner2PM
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: =========================

Application errors:
==================
Error: (09/29/2014 06:49:36 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: szndesktop.exe, verze: 0.0.0.0, časové razítko: 0x5167c21b
Název chybujícího modulu: postak3.dll, verze: 0.0.0.0, časové razítko: 0x51751557
Kód výjimky: 0xc0000005
Posun chyby: 0x000066e5
ID chybujícího procesu: 0x89c
Čas spuštění chybující aplikace: 0xszndesktop.exe0
Cesta k chybující aplikaci: szndesktop.exe1
Cesta k chybujícímu modulu: szndesktop.exe2
ID zprávy: szndesktop.exe3

Error: (09/29/2014 06:48:56 AM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD initialization failed [6]

Error: (09/29/2014 06:48:56 AM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0]

Error: (09/29/2014 06:48:56 AM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD endpoint registration failed [0]

Error: (09/29/2014 05:55:24 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: szndesktop.exe, verze: 0.0.0.0, časové razítko: 0x5167c21b
Název chybujícího modulu: postak3.dll, verze: 0.0.0.0, časové razítko: 0x51751557
Kód výjimky: 0xc0000005
Posun chyby: 0x000066e5
ID chybujícího procesu: 0x628
Čas spuštění chybující aplikace: 0xszndesktop.exe0
Cesta k chybující aplikaci: szndesktop.exe1
Cesta k chybujícímu modulu: szndesktop.exe2
ID zprávy: szndesktop.exe3

Error: (09/29/2014 00:21:03 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: szndesktop.exe, verze: 0.0.0.0, časové razítko: 0x5167c21b
Název chybujícího modulu: postak3.dll, verze: 0.0.0.0, časové razítko: 0x51751557
Kód výjimky: 0xc0000005
Posun chyby: 0x000066e5
ID chybujícího procesu: 0xc30
Čas spuštění chybující aplikace: 0xszndesktop.exe0
Cesta k chybující aplikaci: szndesktop.exe1
Cesta k chybujícímu modulu: szndesktop.exe2
ID zprávy: szndesktop.exe3

Error: (09/28/2014 11:43:58 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: szndesktop.exe, verze: 0.0.0.0, časové razítko: 0x5167c21b
Název chybujícího modulu: postak3.dll, verze: 0.0.0.0, časové razítko: 0x51751557
Kód výjimky: 0xc0000005
Posun chyby: 0x000066e5
ID chybujícího procesu: 0xbcc
Čas spuštění chybující aplikace: 0xszndesktop.exe0
Cesta k chybující aplikaci: szndesktop.exe1
Cesta k chybujícímu modulu: szndesktop.exe2
ID zprávy: szndesktop.exe3

Error: (09/28/2014 11:30:56 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: szndesktop.exe, verze: 0.0.0.0, časové razítko: 0x5167c21b
Název chybujícího modulu: postak3.dll, verze: 0.0.0.0, časové razítko: 0x51751557
Kód výjimky: 0xc0000005
Posun chyby: 0x000066e5
ID chybujícího procesu: 0x147c
Čas spuštění chybující aplikace: 0xszndesktop.exe0
Cesta k chybující aplikaci: szndesktop.exe1
Cesta k chybujícímu modulu: szndesktop.exe2
ID zprávy: szndesktop.exe3

Error: (09/28/2014 11:21:52 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: TakeControl.exe, verze: 1.0.0.0, časové razítko: 0x4682b656
Název chybujícího modulu: ieproxy.dll_unloaded, verze: 0.0.0.0, časové razítko: 0x53f2636d
Kód výjimky: 0xc0000005
Posun chyby: 0x000007fef13d1390
ID chybujícího procesu: 0x1428
Čas spuštění chybující aplikace: 0xTakeControl.exe0
Cesta k chybující aplikaci: TakeControl.exe1
Cesta k chybujícímu modulu: TakeControl.exe2
ID zprávy: TakeControl.exe3

Error: (09/28/2014 11:21:42 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: explorer.exe, verze: 6.1.7601.17567, časové razítko: 0x4d672ee4
Název chybujícího modulu: ieproxy.dll_unloaded, verze: 0.0.0.0, časové razítko: 0x53f2636d
Kód výjimky: 0xc0000005
Posun chyby: 0x000007fef13d1390
ID chybujícího procesu: 0x155c
Čas spuštění chybující aplikace: 0xexplorer.exe0
Cesta k chybující aplikaci: explorer.exe1
Cesta k chybujícímu modulu: explorer.exe2
ID zprávy: explorer.exe3


System errors:
=============
Error: (09/29/2014 06:57:56 AM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (09/29/2014 06:57:14 AM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (09/29/2014 06:56:15 AM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (09/29/2014 06:51:43 AM) (Source: WMPNetworkSvc) (EventID: 14324) (User: )
Description: WMPNetworkSvc0x80004002

Error: (09/29/2014 06:50:41 AM) (Source: WMPNetworkSvc) (EventID: 14324) (User: )
Description: WMPNetworkSvc0x80004002

Error: (09/29/2014 06:49:29 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
sfdrv01a
sfsync02

Error: (09/29/2014 06:49:16 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba WebcamMax, WDM Video Capture neuspěla při spuštění v důsledku následující chyby:
%%1058

Error: (09/29/2014 06:49:16 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Update PodoWeb neuspěla při spuštění v důsledku následující chyby:
%%2

Error: (09/29/2014 06:48:53 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Ashampoo LiveTuner 2 Driver neuspěla při spuštění v důsledku následující chyby:
%%3

Error: (09/29/2014 06:48:28 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (6:32:55, ‎29.‎9.‎2014) bylo neočekávané.


Microsoft Office Sessions:
=========================
Error: (09/29/2014 06:49:36 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: szndesktop.exe0.0.0.05167c21bpostak3.dll0.0.0.051751557c0000005000066e589c01cfdba0b82995fbC:\Users\Kenji\AppData\Roaming\Seznam.cz\bin\szndesktop.exeC:\Users\Kenji\AppData\Roaming\Seznam.cz\bin\postak3.dll02c1d195-4794-11e4-9533-001d7d432228

Error: (09/29/2014 06:48:56 AM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD initialization failed [6]

Error: (09/29/2014 06:48:56 AM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0]

Error: (09/29/2014 06:48:56 AM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD endpoint registration failed [0]

Error: (09/29/2014 05:55:24 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: szndesktop.exe0.0.0.05167c21bpostak3.dll0.0.0.051751557c0000005000066e562801cfdb992b5e9b10C:\Users\Kenji\AppData\Roaming\Seznam.cz\bin\szndesktop.exeC:\Users\Kenji\AppData\Roaming\Seznam.cz\bin\postak3.dll708c1c6e-478c-11e4-9563-001d7d432228

Error: (09/29/2014 00:21:03 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: szndesktop.exe0.0.0.05167c21bpostak3.dll0.0.0.051751557c0000005000066e5c3001cfdb6a70f4703dC:\Users\Kenji\AppData\Roaming\Seznam.cz\bin\szndesktop.exeC:\Users\Kenji\AppData\Roaming\Seznam.cz\bin\postak3.dllbb3a63b0-475d-11e4-9977-001d7d432228

Error: (09/28/2014 11:43:58 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: szndesktop.exe0.0.0.05167c21bpostak3.dll0.0.0.051751557c0000005000066e5bcc01cfdb6535aebc34C:\Users\Kenji\AppData\Roaming\Seznam.cz\bin\szndesktop.exeC:\Users\Kenji\AppData\Roaming\Seznam.cz\bin\postak3.dll8d222a8b-4758-11e4-88f3-001d7d432228

Error: (09/28/2014 11:30:56 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: szndesktop.exe0.0.0.05167c21bpostak3.dll0.0.0.051751557c0000005000066e5147c01cfdb637be190f7C:\Users\Kenji\AppData\Roaming\Seznam.cz\bin\szndesktop.exeC:\Users\Kenji\AppData\Roaming\Seznam.cz\bin\postak3.dllbafdeb3a-4756-11e4-9658-001d7d432228

Error: (09/28/2014 11:21:52 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: TakeControl.exe1.0.0.04682b656ieproxy.dll_unloaded0.0.0.053f2636dc0000005000007fef13d1390142801cfdb61eff58411C:\Users\Kenji\Desktop\TakeControl.exeieproxy.dll76d32735-4755-11e4-9658-001d7d432228

Error: (09/28/2014 11:21:42 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: explorer.exe6.1.7601.175674d672ee4ieproxy.dll_unloaded0.0.0.053f2636dc0000005000007fef13d1390155c01cfdb61453c7890C:\Windows\explorer.exeieproxy.dll70854a94-4755-11e4-9658-001d7d432228


CodeIntegrity Errors:
===================================
Date: 2013-01-09 14:22:17.952
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Unlocker\UnlockerDriver5.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-09 14:22:17.771
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Unlocker\UnlockerDriver5.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-09 14:22:17.587
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Unlocker\UnlockerDriver5.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-09 14:22:17.403
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Unlocker\UnlockerDriver5.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-05 14:09:13.645
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Unlocker\UnlockerDriver5.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-05 14:09:13.635
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Unlocker\UnlockerDriver5.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-05 14:09:13.615
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Unlocker\UnlockerDriver5.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-05 14:09:13.605
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Unlocker\UnlockerDriver5.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-05 14:07:10.368
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Unlocker\UnlockerDriver5.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-05 14:07:10.358
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Unlocker\UnlockerDriver5.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info ===========================

Processor: Intel(R) Pentium(R) Dual CPU E2180 @ 2.00GHz
Percentage of memory in use: 71%
Total physical RAM: 3071.55 MB
Available physical RAM: 866.45 MB
Total Pagefile: 6143.11 MB
Available Pagefile: 3041.3 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB

==================== Drives ================================

Drive c: (KENJI) (Fixed) (Total:225.07 GB) (Free:107.52 GB) NTFS ==>[Drive with boot components (obtained from BCD)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 49A751A6)
Partition 1: (Active) - (Size=225.1 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=7.8 GB) - (Type=27)

==================== End Of Log ============================

D3NJI
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 28 zář 2014 23:30

Re: Explorer.exe hází virus

#5 Příspěvek od D3NJI »

Addition:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 28-09-2014 02
Ran by Kenji at 2014-09-29 07:04:19
Running from C:\Users\Kenji\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKCU\...\uTorrent) (Version: 3.4.2.33290 - BitTorrent Inc.)
µTorrent (HKLM-x32\...\uTorrent) (Version: 3.3.0.29010 - BitTorrent Inc.)
7-Zip 9.22beta (HKLM-x32\...\7-Zip) (Version: - )
AC3Filter 2.5b (HKLM-x32\...\AC3Filter_is1) (Version: 2.5b - Alexander Vigovsky)
Acrobat.com (HKLM-x32\...\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.1.377 - Adobe Systems Incorporated)
Acrobat.com (x32 Version: 0.0.0 - Adobe Systems Incorporated) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 14.0.0.110 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 14.0.0.110 - Adobe Systems Incorporated) Hidden
Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated)
Adobe Community Help (x32 Version: 3.0.0 - Adobe Systems Incorporated) Hidden
Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.167 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.152 - Adobe Systems Incorporated)
Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated)
Adobe Media Player (x32 Version: 1.8 - Adobe Systems Incorporated) Hidden
Adobe Reader XI (11.0.09) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated)
Aktualizace NVIDIA 15.3.33 (Version: 15.3.33 - NVIDIA Corporation) Hidden
Aliens vs. Predator 2 (HKLM-x32\...\{3EF79591-BF16-4CF8-8FF0-D8AD968228B1}) (Version: - )
Ashampoo WinOptimizer 2013 v.1.0.0 (HKLM-x32\...\{4209F371-7B85-60AD-E5CE-E4409D39E3DE}_is1) (Version: 1.00.00 - Ashampoo GmbH & Co. KG)
Auslogics DiskDefrag (HKLM-x32\...\{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1) (Version: 4.5.5.0 - Auslogics Labs Pty Ltd)
avast! Free Antivirus (HKLM-x32\...\avast) (Version: 9.0.2021 - AVAST Software)
BioShock 2 (x32 Version: 1.0.0005.131 - Take-Two Interactive Software) Hidden
blueMSX (HKLM-x32\...\{05C02EE9-9F0A-4052-A4DA-8621F729B1F5}) (Version: 2.8.2 - Team blueMSX)
CamStudio 2.7.2 (HKLM\...\{04B83666-3A62-452B-85D3-70F8117F2329}_is1) (Version: 2.7.2 - CamStudio Open Source)
CCleaner (HKLM\...\CCleaner) (Version: 4.02 - Piriform)
CoreAAC (HKLM-x32\...\CoreAAC) (Version: - )
Creevity Mp3 Cover Downloader (HKLM\...\Mp3 Cover Downloader_is1) (Version: 1.4.0 - Diego Alicata)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Deus Ex - Game of the Year Edition (HKLM-x32\...\Deus Ex - Game of the Year Edition_is1) (Version: - GOG.com)
Dolphin x86 (HKLM-x32\...\Dolphin x86) (Version: 4.0.2 - Dolphin Development Team)
Doom 3 (x32 Version: 1.00.0000 - Activision) Hidden
DVD Decrypter (Remove Only) (HKLM-x32\...\DVD Decrypter) (Version: - )
DVS Video Downloader Addon for Mozilla Firefox version 4.3.4.15 (HKLM-x32\...\DVS Video Downloader Addon for Mozilla Firefox_is1) (Version: 4.3.4.15 - DVDVideoSoft Ltd.)
Dynasty Warriors 4 Hyper (HKCU\...\{DBFF7A38-F460-419A-A2E7-2D55BD2D9AD4}) (Version: - )
EagleGet version 2.0.1.7 (HKLM-x32\...\{F6D8142A-B30B-454B-9EE0-08A7B997DFE4}_is1) (Version: 2.0.1.7 - EagleGet)
Easy File Locker 1.4 (HKLM-x32\...\Easy File Locker) (Version: 1.4 - XOSLAB.COM)
Euro Truck Simulator 2 (HKLM-x32\...\{1B705E8F-9893-4486-B5D7-4F7FEB9C871E}_is1) (Version: 1.1.1 - SCS Software)
Eusing Free Video Converter (HKLM-x32\...\Eusing Free Video Converter) (Version: - Eusing Software)
Fable - The Lost Chapters (x32 Version: 1.00.0000 - Microsoft Game Studios) Hidden
Facebook Video Calling 2.0.0.447 (HKLM-x32\...\{8DF41A9F-FE13-43E8-A003-5F9B55A011EE}) (Version: 2.0.447 - Skype Limited)
Fallout 3 (HKLM-x32\...\{974C4B12-4D02-4879-85E0-61C95CC63E9E}) (Version: 1.00.0000 - Bethesda Softworks)
Far Cry (Patch 1.4) (x32 Version: 1.00.0000 - Ubisoft) Hidden
Far Cry (x32 Version: 1.00.0000 - Ubisoft) Hidden
Free Audio Converter version 5.0.47.906 (HKLM-x32\...\Free Audio Converter_is1) (Version: 5.0.47.906 - DVDVideoSoft Ltd.)
Free AVI Video Converter version 5.0.45.806 (HKLM-x32\...\Free AVI Video Converter_is1) (Version: 5.0.45.806 - DVDVideoSoft Ltd.)
Free Image Convert and Resize version 2.1.28.922 (HKLM-x32\...\Free Image Convert and Resize_is1) (Version: 2.1.28.922 - DVDVideoSoft Ltd.)
Free Video Call Recorder for Skype version 1.2.18.716 (HKLM-x32\...\Free Video Call Recorder for Skype_is1) (Version: 1.2.18.716 - DVDVideoSoft Ltd.)
Free Video to LG Phones Converter version 5.0.37.327 (HKLM-x32\...\Free Video to LG Phones Converter_is1) (Version: 5.0.37.327 - DVDVideoSoft Ltd.)
FreeArc 0.666 (HKLM-x32\...\FreeArc) (Version: 0.666 - Bulat Ziganshin)
Freemake Video Converter verze 4.1.4 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 4.1.4 - Ellora Assets Corporation)
GigaTribe 3.04.013 (HKLM-x32\...\ShalSoft.GigaTribe_is1) (Version: - GigaTribe SAS)
GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team)
Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 37.0.2062.124 - Google Inc.)
Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden
Installer (x32 Version: 1.0.0 - Sierra Entertainment, Inc.) Hidden
Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.15.10.1930 - Intel Corporation)
IPP Run-Time 5.3 (HKLM-x32\...\IPP Run-Time 5.3) (Version: - )
Java 7 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217060FF}) (Version: 7.0.600 - Oracle)
Java Auto Updater (x32 Version: 2.1.65.20 - Oracle, Inc.) Hidden
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
MAGIX Music Maker 16 Premium Download Version (HKLM-x32\...\MAGIX Music Maker 16 Premium Download Version UK) (Version: 16.0.0.30 - MAGIX AG)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Messenger Companion (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Microsoft .NET Framework 1.1 (HKLM-x32\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 4.5.1 (CSY) (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106 (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106 (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Windows Application Compatibility Database (HKLM\...\{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb) (Version: - )
Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Microsoft_VC80_ATL_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_ATL_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_CRT_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_MFC_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_MFC_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_MFCLOC_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_MFCLOC_x86_x64 (Version: 80.50727.4053 - Adobe) Hidden
Microsoft_VC90_ATL_x86 (x32 Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_ATL_x86_x64 (Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_CRT_x86_x64 (Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_MFC_x86 (x32 Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_MFC_x86_x64 (Version: 1.00.0000 - Adobe) Hidden
Mozilla Firefox 32.0.3 (x86 cs) (HKLM-x32\...\Mozilla Firefox 32.0.3 (x86 cs)) (Version: 32.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
MP3 Speed Changer 3.00 (HKLM-x32\...\MP3SpeedChanger_is1) (Version: - Crazy Boomerang Software)
MPEG2 Codec(libmpeg2/mad) (HKLM-x32\...\MPEG2 Codec(libmpeg2/mad)) (Version: - )
MSI Afterburner 3.0.0 (HKLM-x32\...\Afterburner) (Version: 3.0.0 - MSI Co., LTD)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
MSXML4 Parser (HKLM-x32\...\{01501EBA-EC35-4F9F-8889-3BE346E5DA13}) (Version: 1.0.0 - Microsoft Game Studios)
Můj život na farmě (HKCU\...\Můj život na farmě) (Version: 1.0.0.0 - Alawar Entertainment Inc.)
NVIDIA GeForce Experience 2.1.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.1 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.157.1165 - NVIDIA Corporation) Hidden
NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden
NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden
NVIDIA Ovladač 3D Vision 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 340.52 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 340.52 - NVIDIA Corporation)
NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden
NVIDIA ShadowPlay 15.3.33 (Version: 15.3.33 - NVIDIA Corporation) Hidden
NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.12.6514 - NVIDIA Corporation) Hidden
NVIDIA Systémový software PhysX 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
NVIDIA Update Core (Version: 15.3.33 - NVIDIA Corporation) Hidden
NVIDIA Virtual Audio 1.2.23 (Version: 1.2.23 - NVIDIA Corporation) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
OpenOffice.org 3.4.1 (HKLM-x32\...\{1E0AF527-0B8E-4F8A-BA27-CB3C359998C6}) (Version: 3.41.9593 - Apache Software Foundation)
Ovládací panel NVIDIA 340.52 (Version: 340.52 - NVIDIA Corporation) Hidden
Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení (HKLM-x32\...\{B6190387-0036-4BEB-8D74-A0AFC5F14706}) (Version: 15.4.5722.2 - Microsoft Corporation)
PCSX2 - Playstation 2 Emulator (HKLM-x32\...\pcsx2-r5875) (Version: - )
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
PlayClaw 4 (HKLM-x32\...\PlayClaw 4_is1) (Version: 4 - )
PowerISO (HKLM-x32\...\PowerISO) (Version: 5.5 - Power Software Ltd)
Quake 4(TM) (x32 Version: 1.0 - Activision) Hidden
Rage Maker (HKLM-x32\...\{DD7F0FB7-9908-4DA5-95C5-7C6ABE6918C7}) (Version: 3.56.0 - Dan Awesome)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7246 - Realtek Semiconductor Corp.)
RivaTuner Statistics Server 6.1.1 (HKLM-x32\...\RTSS) (Version: 6.1.1 - Unwinder)
S.T.A.L.K.E.R. - Shadow of Chernobyl [v1.0005] (HKLM-x32\...\S.T.A.L.K.E.R. - Shadow of Chernobyl_is1) (Version: 1.0005 - THQ)
SA30xx Media Converter (HKLM-x32\...\{1E06D48E-5448-4BCC-9F87-9FB4EBD59898}) (Version: 1.1.5.1007 - Philips)
SA30xx Media Converter (x32 Version: 1.1.5.1007 - Philips) Hidden
Seznam Software (HKCU\...\SeznamInstall) (Version: - Seznam.cz)
SHIELD Streaming (Version: 3.1.100 - NVIDIA Corporation) Hidden
Skype™ 6.20 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.20.104 - Skype Technologies S.A.)
Stalker Complete 2009 (HKLM-x32\...\{Stalker Complete 2009 v1.4.4}}_is1) (Version: - )
Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation)
SWAT 4 (x32 Version: 1.0.31763 - Sierra Entertainment, Inc.) Hidden
Synthesia (HKLM-x32\...\Synthesia) (Version: 9 - Synthesia LLC)
System Requirements Lab (Test) (HKLM-x32\...\{9BFD3F1F-E5FD-4358-988F-FC9A9446286D}) (Version: 6.0.3.0 - Husdawg, LLC)
System Requirements Lab CYRI (HKLM-x32\...\{F3FCB08B-E752-444D-86A0-0634A4F3B23D}) (Version: 6.0.8.0 - Husdawg, LLC)
System Requirements Lab Detection (HKLM-x32\...\{A407FC22-36BF-4C82-A516-59D94BC505A9}) (Version: 1.0.5.0 - Husdawg, LLC)
System Requirements Lab for Intel (HKLM-x32\...\{C7CA731B-BF9A-46D9-92CF-8A8737AE9240}) (Version: 4.5.13.0 - Husdawg, LLC)
Thumbnail me 3.0 (HKCU\...\Thumbnail me 3.0) (Version: - )
Unity Web Player (HKCU\...\UnityWebPlayer) (Version: 4.5.2f1 - Unity Technologies ApS)
Unlocker 1.9.1-x64 (HKLM\...\Unlocker) (Version: 1.9.1 - Cedrick Collomb)
VC8&9 CRT and ATL (HKLM-x32\...\{516A594B-FEFF-4521-B857-69809AB266FF}) (Version: 1.0.0 - Microsoft)
Veselý šéfkuchař 2 (HKLM-x32\...\Veselý šéfkuchař 2) (Version: 1.0.0.0 - Alawar Entertainment Inc.)
Visual Studio 2010 x64 Redistributables (HKLM\...\{21B133D6-5979-47F0-BE1C-F6A6B304693F}) (Version: 13.0.0.1 - AVG Technologies)
VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN)
Webcam Videocap (HKLM-x32\...\{ED1674F5-5165-49BF-B546-AE5343111540}) (Version: 1.0.3.7 - ETRON)
WebcamMax (HKLM-x32\...\WebcamMax) (Version: 7.1.2.6.MultiLanguage - )
Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Family Safety (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Language Selector (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Messenger (x32 Version: 15.4.3538.0513 - Microsoft Corporation) Hidden
Windows Live Messenger Companion Core (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Movie Maker 2.6 (HKLM-x32\...\{B3DAF54F-DB25-4586-9EF1-96D24BB14088}) (Version: 2.6.4037.0 - Microsoft Corporation)
WinRAR 5.00 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH)
Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-1513654018-1133184573-4193745156-1001_Classes\CLSID\{6d4c2238-c1b9-5d67-81d8-2cf6949997db}\InprocServer32 -> C:\Program Files (x86)\EagleGet\npEagleget64.dll (EagleGet)

==================== Restore Points =========================

23-09-2014 22:18:25 Windows Update
23-09-2014 22:25:49 Windows Update
27-09-2014 05:34:22 Windows Update
28-09-2014 15:43:51 DVDVideoSoftRestorePoint

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {09838876-A1B1-4DED-9C60-63DB04F9AF8F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-01-04] (Google Inc.)
Task: {0C63E6F2-8237-4E9B-BCC7-5D8F152CE6A5} - System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-7 => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-7.exe <==== ATTENTION
Task: {0DA64597-19FC-4143-A35D-346DA0271090} - System32\Tasks\{74A1901A-DC0F-45F4-8D40-6FE3269BAE0F} => C:\Users\Kenji\Desktop\0101010\Ares\Ares.exe
Task: {15C0C889-6974-4E75-A511-BE6D33FF3114} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-05-24] (Piriform Ltd)
Task: {16766110-4670-4F7E-8E7F-DDEDA47DDF95} - System32\Tasks\DealPly => C:\Users\Kenji\AppData\Roaming\DealPly\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: {1DBA7A1F-3328-4BC7-ABAE-02B2F19B078B} - System32\Tasks\Game_Booster_Startup => C:\Program Files (x86)\IObit\Game Booster 3\gbtray.exe
Task: {23B5B58C-B2E2-405D-B186-9FE62FCC986C} - System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-11 => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-11.exe <==== ATTENTION
Task: {23D362A7-3DF5-4151-B232-5C8284CFCC74} - System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-6 => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-6.exe <==== ATTENTION
Task: {2E5740A8-F182-4AF9-ADC9-ECBDE2853CFB} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1513654018-1133184573-4193745156-1001Core => C:\Users\Kenji\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: {3526B6C1-AAB1-4A86-A9AB-CB7F7BE885AF} - System32\Tasks\Trojan Killer => C:\Program Files\GridinSoft Trojan Killer\trojankiller.exe
Task: {53015930-F84A-420D-8C63-212E9149CB59} - System32\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-6 => C:\Program Files (x86)\iWebar\b4aa3335-1534-4586-9672-f6c8018bd013-6.exe <==== ATTENTION
Task: {5B14F84A-E7D1-41B0-A8B8-73E47BFBA6AD} - System32\Tasks\{1FAA6CA3-B326-4C77-9AFC-D8389D2B19C4} => C:\Users\Kenji\Desktop\LoLSkins.exe
Task: {5BCF5B1F-4B31-426C-8616-7BDB7B505950} - System32\Tasks\avast! Emergency Update => C:\Program Files\Alwil Software\Avast5\AvastEmUpdate.exe [2014-07-04] (AVAST Software)
Task: {63D6D048-0EEE-4999-9E21-92750F4F7B00} - System32\Tasks\SomotoUpdateCheckerAutoStart => C:\Users\Kenji\AppData\Local\FilesFrog Update Checker\update_checker.exe <==== ATTENTION
Task: {A228FCA5-51F7-40D1-BC21-8EA856281097} - System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-3 => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-3.exe <==== ATTENTION
Task: {A5E056EC-BED6-453A-961F-607FBF7EAF41} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1513654018-1133184573-4193745156-1001UA => C:\Users\Kenji\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: {AFF5DADD-05E8-4040-B819-0A34492273A8} - System32\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-4 => C:\Program Files (x86)\iWebar\b4aa3335-1534-4586-9672-f6c8018bd013-4.exe <==== ATTENTION
Task: {B557908B-F027-4A17-8FFF-97035A25D23B} - System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-5 => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-5.exe <==== ATTENTION
Task: {BB989A15-FFCC-4E5F-BA91-E38D17824296} - System32\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-11 => C:\Program Files (x86)\iWebar\b4aa3335-1534-4586-9672-f6c8018bd013-11.exe <==== ATTENTION
Task: {C2280FC0-14F6-4999-8939-D5EC24BF28FD} - System32\Tasks\AdobeAAMUpdater-1.0-Kenji-PC-Kenji => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06] (Adobe Systems Incorporated)
Task: {C3664345-C092-46BB-AEC2-D377A5502651} - System32\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-7 => C:\Program Files (x86)\iWebar\b4aa3335-1534-4586-9672-f6c8018bd013-7.exe <==== ATTENTION
Task: {CCD2187B-1550-4DD6-A234-9D2A8FA9C07D} - System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-2 => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-2.exe <==== ATTENTION
Task: {D3379333-191F-4B73-BF5F-783F00B20A8B} - System32\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-1 => C:\Program Files (x86)\iWebar\iWebar-codedownloader.exe <==== ATTENTION
Task: {D742BB45-8214-44D7-B0DE-99B7035C7742} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-23] (Adobe Systems Incorporated)
Task: {E43D629D-ED52-4361-BFFC-2983DDFF6EF2} - System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-1 => C:\Program Files (x86)\Senses\Senses-codedownloader.exe <==== ATTENTION
Task: {E62C1EAE-E616-4970-9DD8-0694118D5E72} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-01-04] (Google Inc.)
Task: {E66CB066-E0C7-4E66-96B1-49CEE09A4A42} - System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-5_user => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-5.exe <==== ATTENTION
Task: {ED0B53EF-5BB8-4984-B10F-51A62E433848} - System32\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-4 => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-4.exe <==== ATTENTION
Task: {EF76821A-A1EF-4B10-9F83-11CAD2FC1EAF} - System32\Tasks\Razer_Game_Booster_AutoUpdate => C:\Program Files (x86)\Razer\Razer Game Booster\AutoUpdate.exe
Task: {F272E5B4-B73F-480A-B22F-963C8FC43B32} - System32\Tasks\{58D4CCD1-E6F2-4649-A6B7-CC845EC55A01} => C:\Program Files (x86)\EA GAMES\Battlefield 2\BF2.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-1.job => C:\Program Files (x86)\Senses\Senses-codedownloader.exe <==== ATTENTION
Task: C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-11.job => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-11.exe <==== ATTENTION
Task: C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-2.job => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-2.exe <==== ATTENTION
Task: C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-3.job => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-3.exe <==== ATTENTION
Task: C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-4.job => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-4.exe <==== ATTENTION
Task: C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-5.job => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-5_user.job => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-6.job => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\aee97a0a-353f-42d2-824a-122e8b891cd7-7.job => C:\Program Files (x86)\Senses\aee97a0a-353f-42d2-824a-122e8b891cd7-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-1.job => C:\Program Files (x86)\iWebar\iWebar-codedownloader.exe <==== ATTENTION
Task: C:\Windows\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-11.job => C:\Program Files (x86)\iWebar\b4aa3335-1534-4586-9672-f6c8018bd013-11.exe <==== ATTENTION
Task: C:\Windows\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-4.job => C:\Program Files (x86)\iWebar\b4aa3335-1534-4586-9672-f6c8018bd013-4.exe <==== ATTENTION
Task: C:\Windows\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-6.job => C:\Program Files (x86)\iWebar\b4aa3335-1534-4586-9672-f6c8018bd013-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\b4aa3335-1534-4586-9672-f6c8018bd013-7.job => C:\Program Files (x86)\iWebar\b4aa3335-1534-4586-9672-f6c8018bd013-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1513654018-1133184573-4193745156-1001Core.job => C:\Users\Kenji\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1513654018-1133184573-4193745156-1001UA.job => C:\Users\Kenji\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2013-07-19 14:36 - 2014-07-02 20:55 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2013-07-16 16:48 - 2012-06-17 22:18 - 01202688 _____ () C:\Windows\system32\ac3filter64.acm
2014-09-22 22:00 - 2014-09-22 22:00 - 03149312 _____ () C:\ProgramData\Microsoft\Secure\Icons\SecureIconsProvider.dll
2014-09-22 22:00 - 2014-09-22 22:00 - 02500096 _____ () C:\ProgramData\Microsoft\Secure\Icons\IconsCacheHelper.dll
2010-07-15 06:44 - 2010-07-15 06:44 - 00020032 _____ () C:\Program Files\Unlocker\UnlockerCOM.dll
2014-09-28 08:25 - 2014-09-23 23:01 - 00229888 _____ () C:\Program Files (x86)\EagleGet\EGMonitor.exe
2014-07-04 16:34 - 2014-07-04 16:34 - 00301152 _____ () C:\Program Files\Alwil Software\Avast5\aswProperty.dll
2014-09-28 21:19 - 2014-09-28 21:19 - 02867200 _____ () C:\Program Files\Alwil Software\Avast5\defs\14092801\algo.dll
2014-09-28 08:25 - 2014-09-23 23:01 - 00922112 _____ () C:\Program Files (x86)\EagleGet\util.dll
2014-09-28 08:25 - 2014-07-17 15:13 - 00397312 _____ () C:\Program Files (x86)\EagleGet\sqlite3.dll
2014-07-04 16:34 - 2014-07-04 16:34 - 19329904 _____ () C:\Program Files\Alwil Software\Avast5\libcef.dll
2014-09-25 06:22 - 2014-09-23 06:06 - 01098056 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\libglesv2.dll
2014-09-25 06:22 - 2014-09-23 06:06 - 00174408 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\libegl.dll
2014-09-25 06:22 - 2014-09-23 06:07 - 08577864 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\pdf.dll
2014-09-25 06:22 - 2014-09-23 06:07 - 00331592 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\ppGoogleNaClPluginChrome.dll
2014-09-25 06:22 - 2014-09-23 06:06 - 01660232 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\ffmpegsumo.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:56E2E879
AlternateDataStreams: C:\Users\Kenji\Downloads:Shareaza.GUID

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
MSCONFIG\startupreg: Facebook Update => "C:\Users\Kenji\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
MSCONFIG\startupreg: HotKeysCmds => C:\Windows\system32\hkcmd.exe
MSCONFIG\startupreg: icq => C:\Users\Kenji\AppData\Roaming\ICQM\icq.exe -CU
MSCONFIG\startupreg: IgfxTray => C:\Windows\system32\igfxtray.exe
MSCONFIG\startupreg: Persistence => C:\Windows\system32\igfxpers.exe
MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\steam.exe" -silent
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: WebcamMaxAutoRun => "C:\Program Files (x86)\WebcamMax\wcmmon.exe" -a

========================= Accounts: ==========================

Administrator (S-1-5-21-1513654018-1133184573-4193745156-500 - Administrator - Disabled)
ASPNET (S-1-5-21-1513654018-1133184573-4193745156-1198 - Limited - Enabled)
Guest (S-1-5-21-1513654018-1133184573-4193745156-501 - Limited - Enabled)
HomeGroupUser$ (S-1-5-21-1513654018-1133184573-4193745156-1202 - Limited - Enabled)
Kenji (S-1-5-21-1513654018-1133184573-4193745156-1001 - Administrator - Enabled) => C:\Users\Kenji

==================== Faulty Device Manager Devices =============

Name: Ashampoo LiveTuner 2 Driver
Description: Ashampoo LiveTuner 2 Driver
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: LiveTuner2PM
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: =========================

Application errors:
==================
Error: (09/29/2014 06:49:36 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: szndesktop.exe, verze: 0.0.0.0, časové razítko: 0x5167c21b
Název chybujícího modulu: postak3.dll, verze: 0.0.0.0, časové razítko: 0x51751557
Kód výjimky: 0xc0000005
Posun chyby: 0x000066e5
ID chybujícího procesu: 0x89c
Čas spuštění chybující aplikace: 0xszndesktop.exe0
Cesta k chybující aplikaci: szndesktop.exe1
Cesta k chybujícímu modulu: szndesktop.exe2
ID zprávy: szndesktop.exe3

Error: (09/29/2014 06:48:56 AM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD initialization failed [6]

Error: (09/29/2014 06:48:56 AM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0]

Error: (09/29/2014 06:48:56 AM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD endpoint registration failed [0]

Error: (09/29/2014 05:55:24 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: szndesktop.exe, verze: 0.0.0.0, časové razítko: 0x5167c21b
Název chybujícího modulu: postak3.dll, verze: 0.0.0.0, časové razítko: 0x51751557
Kód výjimky: 0xc0000005
Posun chyby: 0x000066e5
ID chybujícího procesu: 0x628
Čas spuštění chybující aplikace: 0xszndesktop.exe0
Cesta k chybující aplikaci: szndesktop.exe1
Cesta k chybujícímu modulu: szndesktop.exe2
ID zprávy: szndesktop.exe3

Error: (09/29/2014 00:21:03 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: szndesktop.exe, verze: 0.0.0.0, časové razítko: 0x5167c21b
Název chybujícího modulu: postak3.dll, verze: 0.0.0.0, časové razítko: 0x51751557
Kód výjimky: 0xc0000005
Posun chyby: 0x000066e5
ID chybujícího procesu: 0xc30
Čas spuštění chybující aplikace: 0xszndesktop.exe0
Cesta k chybující aplikaci: szndesktop.exe1
Cesta k chybujícímu modulu: szndesktop.exe2
ID zprávy: szndesktop.exe3

Error: (09/28/2014 11:43:58 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: szndesktop.exe, verze: 0.0.0.0, časové razítko: 0x5167c21b
Název chybujícího modulu: postak3.dll, verze: 0.0.0.0, časové razítko: 0x51751557
Kód výjimky: 0xc0000005
Posun chyby: 0x000066e5
ID chybujícího procesu: 0xbcc
Čas spuštění chybující aplikace: 0xszndesktop.exe0
Cesta k chybující aplikaci: szndesktop.exe1
Cesta k chybujícímu modulu: szndesktop.exe2
ID zprávy: szndesktop.exe3

Error: (09/28/2014 11:30:56 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: szndesktop.exe, verze: 0.0.0.0, časové razítko: 0x5167c21b
Název chybujícího modulu: postak3.dll, verze: 0.0.0.0, časové razítko: 0x51751557
Kód výjimky: 0xc0000005
Posun chyby: 0x000066e5
ID chybujícího procesu: 0x147c
Čas spuštění chybující aplikace: 0xszndesktop.exe0
Cesta k chybující aplikaci: szndesktop.exe1
Cesta k chybujícímu modulu: szndesktop.exe2
ID zprávy: szndesktop.exe3

Error: (09/28/2014 11:21:52 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: TakeControl.exe, verze: 1.0.0.0, časové razítko: 0x4682b656
Název chybujícího modulu: ieproxy.dll_unloaded, verze: 0.0.0.0, časové razítko: 0x53f2636d
Kód výjimky: 0xc0000005
Posun chyby: 0x000007fef13d1390
ID chybujícího procesu: 0x1428
Čas spuštění chybující aplikace: 0xTakeControl.exe0
Cesta k chybující aplikaci: TakeControl.exe1
Cesta k chybujícímu modulu: TakeControl.exe2
ID zprávy: TakeControl.exe3

Error: (09/28/2014 11:21:42 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: explorer.exe, verze: 6.1.7601.17567, časové razítko: 0x4d672ee4
Název chybujícího modulu: ieproxy.dll_unloaded, verze: 0.0.0.0, časové razítko: 0x53f2636d
Kód výjimky: 0xc0000005
Posun chyby: 0x000007fef13d1390
ID chybujícího procesu: 0x155c
Čas spuštění chybující aplikace: 0xexplorer.exe0
Cesta k chybující aplikaci: explorer.exe1
Cesta k chybujícímu modulu: explorer.exe2
ID zprávy: explorer.exe3


System errors:
=============
Error: (09/29/2014 06:57:56 AM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (09/29/2014 06:57:14 AM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (09/29/2014 06:56:15 AM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (09/29/2014 06:51:43 AM) (Source: WMPNetworkSvc) (EventID: 14324) (User: )
Description: WMPNetworkSvc0x80004002

Error: (09/29/2014 06:50:41 AM) (Source: WMPNetworkSvc) (EventID: 14324) (User: )
Description: WMPNetworkSvc0x80004002

Error: (09/29/2014 06:49:29 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
sfdrv01a
sfsync02

Error: (09/29/2014 06:49:16 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba WebcamMax, WDM Video Capture neuspěla při spuštění v důsledku následující chyby:
%%1058

Error: (09/29/2014 06:49:16 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Update PodoWeb neuspěla při spuštění v důsledku následující chyby:
%%2

Error: (09/29/2014 06:48:53 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Ashampoo LiveTuner 2 Driver neuspěla při spuštění v důsledku následující chyby:
%%3

Error: (09/29/2014 06:48:28 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (6:32:55, ‎29.‎9.‎2014) bylo neočekávané.


Microsoft Office Sessions:
=========================
Error: (09/29/2014 06:49:36 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: szndesktop.exe0.0.0.05167c21bpostak3.dll0.0.0.051751557c0000005000066e589c01cfdba0b82995fbC:\Users\Kenji\AppData\Roaming\Seznam.cz\bin\szndesktop.exeC:\Users\Kenji\AppData\Roaming\Seznam.cz\bin\postak3.dll02c1d195-4794-11e4-9533-001d7d432228

Error: (09/29/2014 06:48:56 AM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD initialization failed [6]

Error: (09/29/2014 06:48:56 AM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0]

Error: (09/29/2014 06:48:56 AM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD endpoint registration failed [0]

Error: (09/29/2014 05:55:24 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: szndesktop.exe0.0.0.05167c21bpostak3.dll0.0.0.051751557c0000005000066e562801cfdb992b5e9b10C:\Users\Kenji\AppData\Roaming\Seznam.cz\bin\szndesktop.exeC:\Users\Kenji\AppData\Roaming\Seznam.cz\bin\postak3.dll708c1c6e-478c-11e4-9563-001d7d432228

Error: (09/29/2014 00:21:03 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: szndesktop.exe0.0.0.05167c21bpostak3.dll0.0.0.051751557c0000005000066e5c3001cfdb6a70f4703dC:\Users\Kenji\AppData\Roaming\Seznam.cz\bin\szndesktop.exeC:\Users\Kenji\AppData\Roaming\Seznam.cz\bin\postak3.dllbb3a63b0-475d-11e4-9977-001d7d432228

Error: (09/28/2014 11:43:58 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: szndesktop.exe0.0.0.05167c21bpostak3.dll0.0.0.051751557c0000005000066e5bcc01cfdb6535aebc34C:\Users\Kenji\AppData\Roaming\Seznam.cz\bin\szndesktop.exeC:\Users\Kenji\AppData\Roaming\Seznam.cz\bin\postak3.dll8d222a8b-4758-11e4-88f3-001d7d432228

Error: (09/28/2014 11:30:56 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: szndesktop.exe0.0.0.05167c21bpostak3.dll0.0.0.051751557c0000005000066e5147c01cfdb637be190f7C:\Users\Kenji\AppData\Roaming\Seznam.cz\bin\szndesktop.exeC:\Users\Kenji\AppData\Roaming\Seznam.cz\bin\postak3.dllbafdeb3a-4756-11e4-9658-001d7d432228

Error: (09/28/2014 11:21:52 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: TakeControl.exe1.0.0.04682b656ieproxy.dll_unloaded0.0.0.053f2636dc0000005000007fef13d1390142801cfdb61eff58411C:\Users\Kenji\Desktop\TakeControl.exeieproxy.dll76d32735-4755-11e4-9658-001d7d432228

Error: (09/28/2014 11:21:42 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: explorer.exe6.1.7601.175674d672ee4ieproxy.dll_unloaded0.0.0.053f2636dc0000005000007fef13d1390155c01cfdb61453c7890C:\Windows\explorer.exeieproxy.dll70854a94-4755-11e4-9658-001d7d432228


CodeIntegrity Errors:
===================================
Date: 2013-01-09 14:22:17.952
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Unlocker\UnlockerDriver5.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-09 14:22:17.771
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Unlocker\UnlockerDriver5.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-09 14:22:17.587
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Unlocker\UnlockerDriver5.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-09 14:22:17.403
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Unlocker\UnlockerDriver5.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-05 14:09:13.645
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Unlocker\UnlockerDriver5.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-05 14:09:13.635
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Unlocker\UnlockerDriver5.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-05 14:09:13.615
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Unlocker\UnlockerDriver5.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-05 14:09:13.605
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Unlocker\UnlockerDriver5.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-05 14:07:10.368
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Unlocker\UnlockerDriver5.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-05 14:07:10.358
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Unlocker\UnlockerDriver5.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info ===========================

Processor: Intel(R) Pentium(R) Dual CPU E2180 @ 2.00GHz
Percentage of memory in use: 71%
Total physical RAM: 3071.55 MB
Available physical RAM: 866.45 MB
Total Pagefile: 6143.11 MB
Available Pagefile: 3041.3 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB

==================== Drives ================================

Drive c: (KENJI) (Fixed) (Total:225.07 GB) (Free:107.52 GB) NTFS ==>[Drive with boot components (obtained from BCD)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 49A751A6)
Partition 1: (Active) - (Size=225.1 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=7.8 GB) - (Type=27)

==================== End Of Log ============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Explorer.exe hází virus

#6 Příspěvek od vyosek »

:arrow: Jen se zeptam pouzivate legalni operacni system, nejvyssi licence Ultimate zrovna neni bezna domaci verze :?:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

D3NJI
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 28 zář 2014 23:30

Re: Explorer.exe hází virus

#7 Příspěvek od D3NJI »

Je stažený, používám ho už přes rok a půl

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Explorer.exe hází virus

#8 Příspěvek od vyosek »

Stazeny = nekoupeny = nelegalni...

My se tu dle pravidel fora a charty mezinarodni aliance ASAP nelegalnimi systemy nezabyvame, nepodporujeme porusovani autorskeho zakona a tim pachani trestneho cinu...
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

D3NJI
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 28 zář 2014 23:30

Re: Explorer.exe hází virus

#9 Příspěvek od D3NJI »

tak díky no

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Explorer.exe hází virus

#10 Příspěvek od vyosek »

Nemate zac
:closed:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Zamčeno