preventivni kontrola hjt logu Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
c.johnson
Level 1.5
Level 1.5
Příspěvky: 144
Registrován: listopad 07
Bydliště: Los Santos
Pohlaví: Muž
Stav:
Offline

Re: preventivni kontrola hjt logu

Příspěvekod c.johnson » 28 črc 2014 18:56

problemy zatim nijak nepozoruji, mozna pocitove mi prijde ze to slape rychleji

Reklama
Uživatelský avatar
c.johnson
Level 1.5
Level 1.5
Příspěvky: 144
Registrován: listopad 07
Bydliště: Los Santos
Pohlaví: Muž
Stav:
Offline

Re: preventivni kontrola hjt logu

Příspěvekod c.johnson » 28 črc 2014 21:34

jedna vec by tu byla....nikdy predtim se mi to nestalo....nejde mi propojit comp s televizi pres hdmi kabel. nikdy problem nebyl, ted mi to po pripojeni tu televizi vunec nerozpozna, napise to tam misto televize panasonic -> zobrazeni vga

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: preventivni kontrola hjt logu

Příspěvekod jaro3 » 29 črc 2014 10:28

To asi nebude viry.

Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.

Prosím stáhni příslušnou verzi programu pro Tvůj systém 32-bit/64-bit FarbarRecovery Scan Tool (FrSt)
32bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/81/
64bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/82/
a ulož jej na plochu. ,pak spusť FrSt.
Potvrď způsob užití.
Neměň žádné z výchozích nastavení a klikni na položku „Scan“ („Skenovat“) .Když je skenování dokončeno, ukážou se dva logy = FRST.txt a Addition.txt a uloží se na ploše.Prosím zkopíruj sem celý jejich obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
c.johnson
Level 1.5
Level 1.5
Příspěvky: 144
Registrován: listopad 07
Bydliště: Los Santos
Pohlaví: Muž
Stav:
Offline

Re: preventivni kontrola hjt logu

Příspěvekod c.johnson » 29 črc 2014 11:34

taky si nemyslim, ze to bude viry. neni ale treba mozne, ze se mi pri predchozim cisteni smazala nejaka cast registru nebo ovladace souvisejici s tim hdmi portem? vzdycky po pripojeni kabelu mi to automaticky naskocilo na televizi, ted nic.

aswMBR version 1.0.1.2041 Copyright(c) 2014 AVAST Software
Run date: 2014-07-29 11:23:28
-----------------------------
11:23:28.707 OS Version: Windows x64 6.2.9200
11:23:28.707 Number of processors: 2 586 0x1001
11:23:28.707 ComputerName: LENOVO-THINKPAD UserName: michy9
11:23:31.676 Initialize success
11:23:31.801 VM: initialized successfully
11:23:31.848 VM: Amd CPU BiosDisabled
11:23:42.613 VM: supported disk I/O storport.sys
11:23:52.792 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000029
11:23:52.792 Disk 0 Vendor: WDC_WD7500BPVT-08HXZT3 03.01A03 Size: 715404MB BusType: 11
11:23:52.980 Disk 0 MBR read successfully
11:23:52.980 Disk 0 MBR scan
11:23:52.980 Disk 0 unknown MBR code
11:23:52.996 Disk 0 Partition 1 00 EE GPT 2097151 MB offset 1
11:23:53.042 Disk 0 scanning C:\WINDOWS\system32\drivers
11:24:03.746 Service scanning
11:24:31.496 Modules scanning
11:24:31.496 Disk 0 trace - called modules:
11:24:31.527 ntoskrnl.exe CLASSPNP.SYS disk.sys amdxata.sys storport.sys hal.dll amdsata.sys
11:24:31.542 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xffffe00050d75450]
11:24:31.542 3 CLASSPNP.SYS[fffff80038b8127b] -> nt!IofCallDriver -> [0xffffe00050798040]
11:24:31.558 5 amdxata.sys[fffff800381b66b4] -> nt!IofCallDriver -> \Device\00000029[0xffffe000507c6060]
11:24:31.558 Scan finished successfully
11:24:43.293 Disk 0 MBR has been saved successfully to "C:\Users\michy9\Desktop\MBR.dat"
11:24:43.293 The log file has been saved successfully to "C:\Users\michy9\Desktop\aswMBR.txt"


Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-07-2014
Ran by michy9 (administrator) on LENOVO-THINKPAD on 29-07-2014 11:26:23
Running from C:\Users\michy9\Desktop
Platform: Windows 8.1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AuthenTec, Inc) C:\Program Files\Lenovo Fingerprint Reader\TrueSuiteService.exe
(Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(LENOVO INCORPORATED.) C:\Program Files\Lenovo\iMController\SystemAgentService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\CamMute.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe
(Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\lvvsst.exe
(Lenovo) C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.exe
(Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\micmute.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tphkload.exe
(AuthenTec, Inc.) C:\Program Files\Common Files\AuthenTec\TrueService.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe
() C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AuthenTec Inc.) C:\Program Files\Lenovo Fingerprint Reader\TouchControl.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\virtscrl.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\mkrmsg.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tposd.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\shtctky.exe
() C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(AuthenTec, Inc.) C:\Program Files\Common Files\AuthenTec\TrueService.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
() C:\Program Files\CONEXANT\ForteConfig\fmapp.exe
(Lenovo.) C:\Windows\System32\TpShocks.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe
(Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
(Ricoh co.,Ltd.) C:\Program Files (x86)\Integrated Camera Driver\X64\RCIMGDIR.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTStackServer.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvchlpr.exe
(Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9654.17044_x64__8wekyb3d8bbwe\glcnd.exe
() C:\Program Files\Lenovo Fingerprint Reader\x86\IEWebSiteLogon.exe
(Microsoft Corporation) C:\Windows\System32\audiodg.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [887968 2012-06-15] (Conexant Systems, Inc.)
HKLM\...\Run: [ForteConfig] => C:\Program Files\Conexant\ForteConfig\fmapp.exe [49056 2010-10-26] ()
HKLM\...\Run: [TpShocks] => TpShocks.exe
HKLM\...\Run: [LnvMobHotspotClient] => C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe [1010784 2012-08-20] (Lenovo)
HKLM\...\Run: [LENOVO.TPKNRRES] => C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe [564320 2012-08-13] (Lenovo Corporation)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2963184 2013-04-24] (Synaptics Incorporated)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1647616 2012-06-13] (Conexant Systems, Inc.)
HKLM-x32\...\Run: [AMD AVT] => C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe [20992 2012-03-20] ()
HKLM-x32\...\Run: [RotateImage] => C:\Program Files (x86)\Integrated Camera Driver\X64\RCIMGDIR.exe [59392 2012-05-03] (Ricoh co.,Ltd.)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766688 2014-07-04] (Advanced Micro Devices, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
ShellIconOverlayIdentifiers: SugarSyncBackedUp -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.)
ShellIconOverlayIdentifiers: SugarSyncPending -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.)
ShellIconOverlayIdentifiers: SugarSyncRoot -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.)
ShellIconOverlayIdentifiers: SugarSyncShared -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com/welcome/thinkpad
HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.lenovo.com/welcome/thinkpad
SearchScopes: HKLM - DefaultScope {07B284A4-5F5C-4102-9600-3D240A2D1335} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALCJS
SearchScopes: HKLM - {07B284A4-5F5C-4102-9600-3D240A2D1335} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALCJS
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKLM-x32 - {07B284A4-5F5C-4102-9600-3D240A2D1335} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALCJS
SearchScopes: HKCU - {07B284A4-5F5C-4102-9600-3D240A2D1335} URL =
SearchScopes: HKCU - {9CD23A72-C60B-41C2-AA68-00588A95EC8C} URL = http://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_13415
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: TrueSuite Browser Helper Object -> {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} -> C:\Program Files\Lenovo Fingerprint Reader\IEBHO.DLL (AuthenTec Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: TrueSuite Browser Helper Object -> {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} -> C:\Program Files\Lenovo Fingerprint Reader\x86\IEBHO.dll (AuthenTec Inc.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138

FireFox:
========
FF ProfilePath: C:\Users\michy9\AppData\Roaming\Mozilla\Firefox\Profiles\rdqkhez2.default-1392943389468
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll ()
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin-x32: @authentec.com/ffwloplugin - C:\Program Files\Lenovo Fingerprint Reader\npffwloplugin.dll (AuthenTec, Inc)
FF Plugin-x32: @exent.com/npExentControl,version=7.1.0.1 - C:\Program Files (x86)\FreeRide Games\npExentControl.dll (Exent Technologies Ltd.)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin HKCU: @onlive.com/OnLiveGameClientDetector,version=1.0.0 - C:\Program Files (x86)\OnLive\Plugin\npolgdet.dll (OnLive)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird

Chrome:
=======
Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION
CHR HKLM-x32\...\Chrome\Extension: [iokmdlapebooifaijckgcmncjdpojmjl] - C:\Program Files\Lenovo Fingerprint Reader\x86\tschrome.crx [2012-08-03]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-07-04] (Advanced Micro Devices, Inc.) [File not signed]
S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2252504 2013-09-04] (Broadcom Corporation.)
R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [953720 2012-08-27] (Broadcom Corporation.)
R2 FPLService; C:\Program Files\Lenovo Fingerprint Reader\TrueSuiteService.exe [2139496 2012-08-31] (AuthenTec, Inc)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 Lenovo System Agent Service; C:\Program Files\Lenovo\iMController\SystemAgentService.exe [584960 2014-05-21] (LENOVO INCORPORATED.)
R2 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [222304 2012-08-13] (Lenovo Corporation)
R2 Lenovo.VIRTSCRLSVC; C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe [136288 2012-08-11] (Lenovo Group Limited)
R2 LnvHotSpotSvc; C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe [457824 2012-08-20] (Lenovo)
R2 LocationTaskManager; C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe [458336 2012-08-15] ()
S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [30184 2013-08-08] ()
R3 TrueService; C:\Program Files\Common Files\AuthenTec\TrueService.exe [401256 2012-07-16] (AuthenTec, Inc.)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AODDriver4.2.0; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59648 2013-09-20] (Advanced Micro Devices)
S2 APXACC; C:\Windows\system32\DRIVERS\appexDrv.sys [199008 2012-06-23] (AppEx Networks Corporation)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdW86.sys [98472 2012-07-17] (Advanced Micro Devices)
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-09-04] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [6824520 2012-10-16] (Broadcom Corporation)
R3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider)
R3 RCUVCAVS; C:\Windows\system32\DRIVERS\RCUVCAVS.sys [149632 2012-08-02] (Ricoh co.,Ltd.)
R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [266896 2012-06-13] (Realtek Semiconductor Corp.)
R3 SmbDrv; C:\Windows\system32\DRIVERS\Smb_driver_AMDASF.sys [41272 2012-08-05] (Synaptics Incorporated)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation)
R2 X5XSEx_Pr148; C:\Program Files (x86)\FreeRide Games\X5XSEx_Pr148.Sys [56136 2012-08-03] (Exent Technologies Ltd.)
S1 MpKsl5658d073; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{20A58D89-F305-4872-A37C-411975195E65}\MpKsl5658d073.sys [X]
U3 aswMBR; \??\C:\Users\michy9\AppData\Local\Temp\aswMBR.sys [X]
U3 aswVmm; \??\C:\Users\michy9\AppData\Local\Temp\aswVmm.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-07-29 11:26 - 2014-07-29 11:26 - 00015631 _____ () C:\Users\michy9\Desktop\FRST.txt
2014-07-29 11:26 - 2014-07-29 11:26 - 00000000 ____D () C:\FRST
2014-07-29 11:24 - 2014-07-29 11:24 - 00001638 _____ () C:\Users\michy9\Desktop\aswMBR.txt
2014-07-29 11:21 - 2014-07-29 11:21 - 02093568 _____ (Farbar) C:\Users\michy9\Desktop\FRST64.exe
2014-07-29 11:20 - 2014-07-29 11:20 - 05185536 _____ (AVAST Software) C:\Users\michy9\Desktop\aswmbr.exe
2014-07-29 11:03 - 2014-07-29 11:03 - 00000000 ____D () C:\Users\michy9\AppData\Local\AMD
2014-07-29 11:03 - 2014-07-29 11:03 - 00000000 ____D () C:\ProgramData\ATI
2014-07-28 21:59 - 2014-07-28 21:59 - 00060385 _____ () C:\WINDOWS\SysWOW64\CCCInstall_201407282159249413.log
2014-07-28 21:59 - 2014-07-28 21:59 - 00001275 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerXpress.lnk
2014-07-28 21:59 - 2014-07-28 21:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2014-07-28 21:59 - 2014-07-28 21:59 - 00000000 ____D () C:\Program Files\ATI Technologies
2014-07-28 21:54 - 2014-07-28 21:57 - 00000000 ____D () C:\ProgramData\Package Cache
2014-07-28 21:52 - 2014-07-28 21:52 - 00000000 ____D () C:\Users\Default\AppData\Roaming\ATI
2014-07-28 21:52 - 2014-07-28 21:52 - 00000000 ____D () C:\Users\Default\AppData\Local\ATI
2014-07-28 21:52 - 2014-07-28 21:52 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\ATI
2014-07-28 21:52 - 2014-07-28 21:52 - 00000000 ____D () C:\Users\Default User\AppData\Local\ATI
2014-07-28 21:50 - 2014-07-28 21:50 - 00000000 ____D () C:\WINDOWS\LastGood.Tmp
2014-07-28 21:46 - 2014-07-28 21:46 - 00000000 ____D () C:\Users\michy9\AppData\Local\ATI
2014-07-27 21:17 - 2014-07-27 21:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fingerprint Reader
2014-07-27 20:56 - 2014-07-27 20:56 - 04181856 _____ (Kaspersky Lab ZAO) C:\Users\michy9\Desktop\tdsskiller.exe
2014-07-27 14:08 - 2014-07-27 14:08 - 00000000 ____D () C:\Users\michy9\AppData\Local\CrashDumps
2014-07-27 12:18 - 2014-07-27 20:58 - 00030312 _____ () C:\WINDOWS\system32\Drivers\TrueSight.sys
2014-07-27 12:18 - 2014-07-27 12:18 - 00000000 ____D () C:\ProgramData\RogueKiller
2014-07-27 12:17 - 2014-07-27 12:17 - 05379160 _____ () C:\Users\michy9\Desktop\RogueKillerX64.exe
2014-07-27 12:06 - 2014-07-27 12:07 - 01016261 _____ (Thisisu) C:\Users\michy9\Desktop\JRT.exe
2014-07-26 20:30 - 2014-07-26 20:30 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-07-26 20:30 - 2014-07-26 20:30 - 00001129 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-07-26 20:30 - 2014-07-26 20:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-07-26 20:30 - 2014-07-26 20:30 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-26 20:30 - 2014-07-26 20:30 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-07-26 20:30 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2014-07-26 20:30 - 2014-05-12 07:26 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2014-07-26 20:30 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2014-07-26 20:26 - 2014-07-27 12:06 - 00000000 ____D () C:\AdwCleaner
2014-07-26 20:26 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\SysWOW64\sqlite3.dll
2014-07-26 20:24 - 2014-07-26 20:24 - 00000000 ____D () C:\Users\michy9\AppData\Local\Broadcom
2014-07-26 20:23 - 2014-07-27 12:01 - 00000676 _____ () C:\WINDOWS\PFRO.log
2014-07-26 20:13 - 2014-07-26 20:13 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\michy9\Downloads\mbam-setup-2.0.2.1012.exe
2014-07-26 20:12 - 2014-07-26 20:12 - 01354223 _____ () C:\Users\michy9\Desktop\AdwCleaner.exe
2014-07-26 20:11 - 2014-07-26 20:11 - 00448512 _____ (OldTimer Tools) C:\Users\michy9\Downloads\TFC.exe
2014-07-26 20:11 - 2014-07-26 20:11 - 00050688 _____ (Atribune.org) C:\Users\michy9\Downloads\ATF-Cleaner.exe
2014-07-21 22:05 - 2014-07-21 22:05 - 00230912 _____ () C:\WINDOWS\system32\clinfo.exe
2014-07-21 22:05 - 2014-07-21 22:05 - 00135168 _____ (AMD) C:\WINDOWS\system32\coinst_13.251.9001.1001.dll
2014-07-21 22:05 - 2014-07-21 22:05 - 00100352 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\OpenVideo64.dll
2014-07-21 22:05 - 2014-07-21 22:05 - 00086528 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\OVDecode64.dll
2014-07-21 22:05 - 2014-07-21 22:05 - 00083968 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\OpenVideo.dll
2014-07-21 22:05 - 2014-07-21 22:05 - 00073728 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\OVDecode.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 29382144 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 26352128 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 22157824 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 15716352 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 14302208 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 13209088 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys
2014-07-21 22:04 - 2014-07-21 22:04 - 03461040 _____ () C:\WINDOWS\SysWOW64\atiumdva.cap
2014-07-21 22:04 - 2014-07-21 22:04 - 03426688 _____ () C:\WINDOWS\system32\atiumd6a.cap
2014-07-21 22:04 - 2014-07-21 22:04 - 00825344 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00626688 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys
2014-07-21 22:04 - 2014-07-21 22:04 - 00550472 _____ () C:\WINDOWS\SysWOW64\atiapfxx.blb
2014-07-21 22:04 - 2014-07-21 22:04 - 00550472 _____ () C:\WINDOWS\system32\atiapfxx.blb
2014-07-21 22:04 - 2014-07-21 22:04 - 00368640 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe
2014-07-21 22:04 - 2014-07-21 22:04 - 00190976 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00100352 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00096768 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00074752 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00063488 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00062464 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00057344 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00055808 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00052224 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00049152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00031232 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2014-07-21 22:03 - 2014-07-21 22:03 - 24860160 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll
2014-07-21 22:03 - 2014-07-21 22:03 - 00412672 _____ () C:\WINDOWS\system32\amdmiracast.dll
2014-07-21 22:03 - 2014-07-21 22:03 - 00157736 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll
2014-07-21 22:03 - 2014-07-21 22:03 - 00142304 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll
2014-07-21 22:03 - 2014-07-21 22:03 - 00134656 _____ () C:\WINDOWS\system32\amdhdl64.dll
2014-07-21 22:03 - 2014-07-21 22:03 - 00123392 _____ () C:\WINDOWS\SysWOW64\amdhdl32.dll
2014-07-21 22:03 - 2014-07-21 22:03 - 00096256 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2014-07-21 22:03 - 2014-07-21 22:03 - 00090112 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2014-07-13 01:58 - 2014-07-13 01:58 - 00001301 _____ () C:\Users\michy9\Desktop\PESEDIT.lnk
2014-07-12 23:18 - 2014-07-29 11:03 - 00004002 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{F6E4F4BB-2655-45B3-AB43-8A854BBAE493}
2014-07-12 23:18 - 2014-07-12 23:18 - 00000000 __SHD () C:\Users\michy9\AppData\Local\EmieUserList
2014-07-12 23:18 - 2014-07-12 23:18 - 00000000 __SHD () C:\Users\michy9\AppData\Local\EmieSiteList
2014-07-10 01:16 - 2014-07-10 01:16 - 00000000 _____ () C:\WINDOWS\setuperr.log
2014-07-10 01:16 - 2014-07-10 01:16 - 00000000 _____ () C:\WINDOWS\setupact.log
2014-07-10 01:15 - 2014-07-10 01:16 - 05109056 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-07-09 22:15 - 2014-07-29 11:23 - 02053382 _____ () C:\WINDOWS\WindowsUpdate.log
2014-07-09 17:28 - 2014-04-14 05:29 - 01018880 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2014-07-09 15:26 - 2014-07-09 15:26 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2014-07-09 11:27 - 2014-06-17 00:26 - 00779264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\osk.exe
2014-07-09 11:27 - 2014-06-17 00:24 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2014-07-09 11:27 - 2014-06-06 16:20 - 04190720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-07-09 11:27 - 2014-05-30 05:03 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2014-07-09 11:27 - 2014-05-29 14:02 - 00565576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2014-07-09 11:27 - 2014-05-29 09:55 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2014-07-09 11:27 - 2014-05-29 08:40 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2014-07-09 11:27 - 2014-05-29 08:37 - 00436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2014-07-09 11:27 - 2014-05-29 07:34 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2014-07-09 11:27 - 2014-05-29 07:27 - 01417216 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-07-09 11:26 - 2014-06-19 03:39 - 23464448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-07-09 11:26 - 2014-06-19 02:48 - 02768384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-07-09 11:26 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-07-09 11:26 - 2014-06-19 02:09 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2014-07-09 11:26 - 2014-06-19 01:51 - 05721088 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-07-09 11:26 - 2014-06-19 01:48 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2014-07-09 11:26 - 2014-06-19 01:46 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-07-09 11:26 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-07-09 11:26 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2014-07-09 11:26 - 2014-06-19 00:58 - 02266112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-07-09 11:26 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2014-07-09 11:26 - 2014-06-19 00:57 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2014-07-09 11:26 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-07-09 11:26 - 2014-06-19 00:51 - 13527040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-07-09 11:26 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-07-09 11:26 - 2014-06-19 00:34 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-07-09 11:26 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-07-09 11:26 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-07-09 11:25 - 2014-07-01 00:45 - 00688128 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2014-07-09 11:25 - 2014-06-28 09:48 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2014-07-09 11:25 - 2014-06-28 09:07 - 00385536 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2014-07-09 11:25 - 2014-06-19 01:50 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-07-09 11:25 - 2014-06-19 01:39 - 00608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-07-09 11:25 - 2014-06-19 01:33 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-07-09 11:25 - 2014-06-19 01:27 - 02040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-07-09 11:25 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-07-09 11:25 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-07-09 11:25 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-07-09 11:25 - 2014-06-19 00:15 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-07-09 11:25 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-07-09 11:25 - 2014-06-06 15:04 - 00586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2014-07-09 11:25 - 2014-06-06 14:18 - 00488960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2014-07-09 11:25 - 2014-05-31 05:40 - 13287936 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2014-07-09 11:25 - 2014-05-31 05:30 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2014-07-09 11:25 - 2014-05-31 05:12 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-09 11:25 - 2014-05-31 05:01 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-09 11:25 - 2014-05-31 04:48 - 03463680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2014-07-09 11:25 - 2014-05-31 04:36 - 00923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2014-07-09 11:25 - 2014-05-31 04:32 - 00756224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2014-07-09 11:24 - 2014-05-31 12:07 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2014-07-09 11:24 - 2014-05-31 12:06 - 00555736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2014-07-09 11:24 - 2014-05-31 05:06 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2014-07-09 11:24 - 2014-05-31 05:03 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2014-07-09 11:24 - 2014-05-31 04:56 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2014-07-09 11:24 - 2014-05-31 04:54 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2014-07-09 11:24 - 2014-05-31 04:37 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2014-07-09 11:24 - 2014-05-31 04:35 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2014-07-09 11:21 - 2014-07-09 11:21 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2014-07-08 15:42 - 2014-07-26 15:38 - 00000067 _____ () C:\Users\michy9\Desktop\Nový textový dokument.txt
2014-07-02 16:30 - 2014-07-02 16:30 - 00000000 ____D () C:\Users\michy9\Documents\BioWare
2014-07-02 16:29 - 2014-07-02 16:29 - 00001750 _____ () C:\Users\michy9\Desktop\Play Dragon Age Origins.lnk
2014-06-30 16:14 - 2014-06-30 16:14 - 00000000 ____D () C:\Users\michy9\AppData\Roaming\Milestone
2014-06-30 16:12 - 2014-06-30 16:12 - 00000757 _____ () C:\Users\michy9\Desktop\MotoGP 14 (x64).lnk
2014-06-30 16:12 - 2014-06-30 16:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MotoGP 14

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-07-29 11:26 - 2014-07-29 11:26 - 00015631 _____ () C:\Users\michy9\Desktop\FRST.txt
2014-07-29 11:26 - 2014-07-29 11:26 - 00000000 ____D () C:\FRST
2014-07-29 11:24 - 2014-07-29 11:24 - 00001638 _____ () C:\Users\michy9\Desktop\aswMBR.txt
2014-07-29 11:23 - 2014-07-09 22:15 - 02053382 _____ () C:\WINDOWS\WindowsUpdate.log
2014-07-29 11:21 - 2014-07-29 11:21 - 02093568 _____ (Farbar) C:\Users\michy9\Desktop\FRST64.exe
2014-07-29 11:20 - 2014-07-29 11:20 - 05185536 _____ (AVAST Software) C:\Users\michy9\Desktop\aswmbr.exe
2014-07-29 11:04 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-07-29 11:03 - 2014-07-29 11:03 - 00000000 ____D () C:\Users\michy9\AppData\Local\AMD
2014-07-29 11:03 - 2014-07-29 11:03 - 00000000 ____D () C:\ProgramData\ATI
2014-07-29 11:03 - 2014-07-12 23:18 - 00004002 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{F6E4F4BB-2655-45B3-AB43-8A854BBAE493}
2014-07-28 22:15 - 2013-07-19 23:23 - 00003600 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3487811764-2725458153-3966526203-1002
2014-07-28 21:59 - 2014-07-28 21:59 - 00060385 _____ () C:\WINDOWS\SysWOW64\CCCInstall_201407282159249413.log
2014-07-28 21:59 - 2014-07-28 21:59 - 00001275 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerXpress.lnk
2014-07-28 21:59 - 2014-07-28 21:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2014-07-28 21:59 - 2014-07-28 21:59 - 00000000 ____D () C:\Program Files\ATI Technologies
2014-07-28 21:59 - 2012-10-16 14:29 - 00000000 ____D () C:\ProgramData\AMD
2014-07-28 21:58 - 2012-10-16 14:29 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies
2014-07-28 21:57 - 2014-07-28 21:54 - 00000000 ____D () C:\ProgramData\Package Cache
2014-07-28 21:57 - 2013-07-20 07:38 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-07-28 21:55 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-07-28 21:52 - 2014-07-28 21:52 - 00000000 ____D () C:\Users\Default\AppData\Roaming\ATI
2014-07-28 21:52 - 2014-07-28 21:52 - 00000000 ____D () C:\Users\Default\AppData\Local\ATI
2014-07-28 21:52 - 2014-07-28 21:52 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\ATI
2014-07-28 21:52 - 2014-07-28 21:52 - 00000000 ____D () C:\Users\Default User\AppData\Local\ATI
2014-07-28 21:50 - 2014-07-28 21:50 - 00000000 ____D () C:\WINDOWS\LastGood.Tmp
2014-07-28 21:46 - 2014-07-28 21:46 - 00000000 ____D () C:\Users\michy9\AppData\Local\ATI
2014-07-27 21:29 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2014-07-27 21:17 - 2014-07-27 21:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fingerprint Reader
2014-07-27 20:58 - 2014-07-27 12:18 - 00030312 _____ () C:\WINDOWS\system32\Drivers\TrueSight.sys
2014-07-27 20:56 - 2014-07-27 20:56 - 04181856 _____ (Kaspersky Lab ZAO) C:\Users\michy9\Desktop\tdsskiller.exe
2014-07-27 14:08 - 2014-07-27 14:08 - 00000000 ____D () C:\Users\michy9\AppData\Local\CrashDumps
2014-07-27 12:18 - 2014-07-27 12:18 - 00000000 ____D () C:\ProgramData\RogueKiller
2014-07-27 12:17 - 2014-07-27 12:17 - 05379160 _____ () C:\Users\michy9\Desktop\RogueKillerX64.exe
2014-07-27 12:07 - 2014-07-27 12:06 - 01016261 _____ (Thisisu) C:\Users\michy9\Desktop\JRT.exe
2014-07-27 12:06 - 2014-07-26 20:26 - 00000000 ____D () C:\AdwCleaner
2014-07-27 12:01 - 2014-07-26 20:23 - 00000676 _____ () C:\WINDOWS\PFRO.log
2014-07-26 20:30 - 2014-07-26 20:30 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-07-26 20:30 - 2014-07-26 20:30 - 00001129 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-07-26 20:30 - 2014-07-26 20:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-07-26 20:30 - 2014-07-26 20:30 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-26 20:30 - 2014-07-26 20:30 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-07-26 20:24 - 2014-07-26 20:24 - 00000000 ____D () C:\Users\michy9\AppData\Local\Broadcom
2014-07-26 20:13 - 2014-07-26 20:13 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\michy9\Downloads\mbam-setup-2.0.2.1012.exe
2014-07-26 20:12 - 2014-07-26 20:12 - 01354223 _____ () C:\Users\michy9\Desktop\AdwCleaner.exe
2014-07-26 20:11 - 2014-07-26 20:11 - 00448512 _____ (OldTimer Tools) C:\Users\michy9\Downloads\TFC.exe
2014-07-26 20:11 - 2014-07-26 20:11 - 00050688 _____ (Atribune.org) C:\Users\michy9\Downloads\ATF-Cleaner.exe
2014-07-26 15:38 - 2014-07-08 15:42 - 00000067 _____ () C:\Users\michy9\Desktop\Nový textový dokument.txt
2014-07-26 11:41 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-07-24 22:25 - 2014-04-20 18:57 - 00000000 ____D () C:\Users\michy9\Desktop\new moviez
2014-07-24 14:11 - 2013-07-22 07:20 - 00000000 ____D () C:\Users\michy9\AppData\Roaming\Azureus
2014-07-21 22:05 - 2014-07-21 22:05 - 00230912 _____ () C:\WINDOWS\system32\clinfo.exe
2014-07-21 22:05 - 2014-07-21 22:05 - 00135168 _____ (AMD) C:\WINDOWS\system32\coinst_13.251.9001.1001.dll
2014-07-21 22:05 - 2014-07-21 22:05 - 00100352 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\OpenVideo64.dll
2014-07-21 22:05 - 2014-07-21 22:05 - 00086528 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\OVDecode64.dll
2014-07-21 22:05 - 2014-07-21 22:05 - 00083968 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\OpenVideo.dll
2014-07-21 22:05 - 2014-07-21 22:05 - 00073728 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\OVDecode.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 29382144 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 26352128 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 22157824 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 15716352 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 14302208 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 13209088 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys
2014-07-21 22:04 - 2014-07-21 22:04 - 03461040 _____ () C:\WINDOWS\SysWOW64\atiumdva.cap
2014-07-21 22:04 - 2014-07-21 22:04 - 03426688 _____ () C:\WINDOWS\system32\atiumd6a.cap
2014-07-21 22:04 - 2014-07-21 22:04 - 00825344 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00626688 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys
2014-07-21 22:04 - 2014-07-21 22:04 - 00550472 _____ () C:\WINDOWS\SysWOW64\atiapfxx.blb
2014-07-21 22:04 - 2014-07-21 22:04 - 00550472 _____ () C:\WINDOWS\system32\atiapfxx.blb
2014-07-21 22:04 - 2014-07-21 22:04 - 00368640 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe
2014-07-21 22:04 - 2014-07-21 22:04 - 00190976 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00100352 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00096768 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00074752 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00063488 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00062464 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00057344 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00055808 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00052224 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00049152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll
2014-07-21 22:04 - 2014-07-21 22:04 - 00031232 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2014-07-21 22:04 - 2013-12-13 11:23 - 09753752 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll
2014-07-21 22:04 - 2013-12-13 11:23 - 08927704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll
2014-07-21 22:04 - 2013-12-13 11:23 - 08406024 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll
2014-07-21 22:04 - 2013-12-13 11:23 - 08287008 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll
2014-07-21 22:04 - 2013-12-13 11:23 - 07751920 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll
2014-07-21 22:04 - 2013-12-13 11:23 - 06630232 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll
2014-07-21 22:04 - 2013-12-13 11:23 - 01318552 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2014-07-21 22:04 - 2013-12-13 11:23 - 01144320 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2014-07-21 22:04 - 2013-12-13 11:23 - 01100216 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2014-07-21 22:04 - 2013-12-13 11:23 - 00588288 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2014-07-21 22:04 - 2013-12-13 11:23 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2014-07-21 22:04 - 2013-12-13 11:23 - 00239616 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe
2014-07-21 22:04 - 2013-12-13 11:23 - 00143304 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll
2014-07-21 22:04 - 2013-12-13 11:23 - 00126336 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll
2014-07-21 22:04 - 2013-12-13 11:23 - 00115512 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll
2014-07-21 22:04 - 2013-12-13 11:23 - 00098496 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll
2014-07-21 22:03 - 2014-07-21 22:03 - 24860160 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll
2014-07-21 22:03 - 2014-07-21 22:03 - 00412672 _____ () C:\WINDOWS\system32\amdmiracast.dll
2014-07-21 22:03 - 2014-07-21 22:03 - 00157736 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll
2014-07-21 22:03 - 2014-07-21 22:03 - 00142304 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll
2014-07-21 22:03 - 2014-07-21 22:03 - 00134656 _____ () C:\WINDOWS\system32\amdhdl64.dll
2014-07-21 22:03 - 2014-07-21 22:03 - 00123392 _____ () C:\WINDOWS\SysWOW64\amdhdl32.dll
2014-07-21 22:03 - 2014-07-21 22:03 - 00096256 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2014-07-21 22:03 - 2014-07-21 22:03 - 00090112 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2014-07-13 02:02 - 2013-07-20 21:51 - 00000000 ____D () C:\Users\michy9\Documents\KONAMI
2014-07-13 01:58 - 2014-07-13 01:58 - 00001301 _____ () C:\Users\michy9\Desktop\PESEDIT.lnk
2014-07-12 23:18 - 2014-07-12 23:18 - 00000000 __SHD () C:\Users\michy9\AppData\Local\EmieUserList
2014-07-12 23:18 - 2014-07-12 23:18 - 00000000 __SHD () C:\Users\michy9\AppData\Local\EmieSiteList
2014-07-12 11:48 - 2013-07-19 23:15 - 00000000 ____D () C:\Users\michy9\AppData\Local\Packages
2014-07-11 15:29 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-07-10 01:16 - 2014-07-10 01:16 - 00000000 _____ () C:\WINDOWS\setuperr.log
2014-07-10 01:16 - 2014-07-10 01:16 - 00000000 _____ () C:\WINDOWS\setupact.log
2014-07-10 01:16 - 2014-07-10 01:15 - 05109056 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-07-09 20:59 - 2013-09-21 23:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PESEdit.com 2014 Patch
2014-07-09 20:58 - 2013-07-20 21:45 - 00000000 ____D () C:\ProgramData\KONAMI
2014-07-09 17:31 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-09 17:31 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-09 17:30 - 2013-08-15 11:51 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-07-09 17:28 - 2013-07-20 23:03 - 96441528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-07-09 17:28 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2014-07-09 17:15 - 2013-11-14 14:26 - 00000000 ____D () C:\Program Files\Windows Journal
2014-07-09 15:26 - 2014-07-09 15:26 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2014-07-09 15:26 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-07-09 15:26 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\WinStore
2014-07-09 11:58 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2014-07-09 11:21 - 2014-07-09 11:21 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2014-07-08 18:57 - 2014-04-28 18:59 - 05659136 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerInstaller.exe
2014-07-08 18:57 - 2013-07-20 07:38 - 00003802 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2014-07-03 03:43 - 2014-03-18 19:49 - 00000000 ____D () C:\Users\michy9
2014-07-02 16:56 - 2013-07-20 21:32 - 00000000 ____D () C:\Games
2014-07-02 16:30 - 2014-07-02 16:30 - 00000000 ____D () C:\Users\michy9\Documents\BioWare
2014-07-02 16:29 - 2014-07-02 16:29 - 00001750 _____ () C:\Users\michy9\Desktop\Play Dragon Age Origins.lnk
2014-07-01 22:11 - 2014-06-26 09:59 - 00000000 ____D () C:\WINDOWS\Minidump
2014-07-01 22:11 - 2013-07-20 00:22 - 00000845 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-07-01 22:11 - 2013-07-20 00:22 - 00000000 ____D () C:\Program Files\CCleaner
2014-07-01 00:45 - 2014-07-09 11:25 - 00688128 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2014-06-30 16:14 - 2014-06-30 16:14 - 00000000 ____D () C:\Users\michy9\AppData\Roaming\Milestone
2014-06-30 16:12 - 2014-06-30 16:12 - 00000757 _____ () C:\Users\michy9\Desktop\MotoGP 14 (x64).lnk
2014-06-30 16:12 - 2014-06-30 16:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MotoGP 14

Some content of TEMP:
====================
C:\Users\michy9\AppData\Local\Temp\Quarantine.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-07-29 11:13

==================== End Of Log ============================

Uživatelský avatar
c.johnson
Level 1.5
Level 1.5
Příspěvky: 144
Registrován: listopad 07
Bydliště: Los Santos
Pohlaví: Muž
Stav:
Offline

Re: preventivni kontrola hjt logu

Příspěvekod c.johnson » 29 črc 2014 11:35

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-07-2014
Ran by michy9 at 2014-07-29 11:27:22
Running from C:\Users\michy9\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Absolute Reminder (HKLM-x32\...\{40F4FF7A-B214-4453-B973-080B09CED019}) (Version: 2.1.0.9 - Absolute Software)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 14.0.0.110 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 14.0.0.110 - Adobe Systems Incorporated) Hidden
Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.145 - Adobe Systems Incorporated)
Age of Empires III - The Asian Dynasties (HKLM-x32\...\InstallShield_{C43C1415-3DFC-4089-9A32-0BECF28A6046}) (Version: 1.00.0000 - Microsoft Game Studios)
Age of Empires III - The Asian Dynasties (x32 Version: 1.00.0000 - Microsoft Game Studios) Hidden
Age of Empires III - The WarChiefs (HKLM-x32\...\InstallShield_{1C08A24C-B168-407E-A826-68FAF5F20710}) (Version: 1.00.0000 - Microsoft Game Studios)
Age of Empires III - The WarChiefs (x32 Version: 1.00.0000 - Microsoft Game Studios) Hidden
Age of Empires III (HKLM-x32\...\InstallShield_{7B9CC60A-9B81-46A3-A953-76B6BF9EEC97}) (Version: 1.00.0000 - Microsoft Game Studios)
Age of Empires III (x32 Version: 1.00.0000 - Microsoft Game Studios) Hidden
AMD Accelerated Video Transcoding (Version: 2.00.0002 - Advanced Micro Devices, Inc.) Hidden
AMD APP SDK Runtime (Version: 10.0.938.2 - Advanced Micro Devices Inc.) Hidden
AMD Catalyst Control Center (x32 Version: 2014.0704.2133.36938 - Advanced Micro Devices, Inc.) Hidden
AMD Catalyst Install Manager (HKLM\...\{60136BCE-608C-F2BA-AE7D-51F9DAD03406}) (Version: 8.0.881.0 - Advanced Micro Devices, Inc.)
AMD Fuel (Version: 2014.0704.2133.36938 - Advanced Micro Devices, Inc.) Hidden
AMD Quick Stream (HKLM\...\{E9EED4AE-682B-4501-9574-D09A21717599}_is1) (Version: 3.3.26.0 - AppEx Networks)
AMD VISION Engine Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
Broadcom 802.11 Network Adapter (HKLM\...\Broadcom 802.11 Network Adapter) (Version: 6.30.59.26 - Broadcom Corporation)
Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Graphics Previews Common (x32 Version: 2012.0806.1156.19437 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2012.0806.1156.19437 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2014.0704.2133.36938 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Localization All (x32 Version: 2012.0806.1156.19437 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Localization All (x32 Version: 2014.0704.2133.36938 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Profiles Mobile (x32 Version: 2012.0806.1156.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help Czech (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help Czech (x32 Version: 2014.0704.2132.36938 - Advanced Micro Devices, Inc.) Hidden
CCC Help Danish (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help Danish (x32 Version: 2014.0704.2132.36938 - Advanced Micro Devices, Inc.) Hidden
CCC Help Dutch (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help Dutch (x32 Version: 2014.0704.2132.36938 - Advanced Micro Devices, Inc.) Hidden
CCC Help English (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help English (x32 Version: 2014.0704.2132.36938 - Advanced Micro Devices, Inc.) Hidden
CCC Help Finnish (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help Finnish (x32 Version: 2014.0704.2132.36938 - Advanced Micro Devices, Inc.) Hidden
CCC Help French (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help French (x32 Version: 2014.0704.2132.36938 - Advanced Micro Devices, Inc.) Hidden
CCC Help German (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help German (x32 Version: 2014.0704.2132.36938 - Advanced Micro Devices, Inc.) Hidden
CCC Help Greek (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help Greek (x32 Version: 2014.0704.2132.36938 - Advanced Micro Devices, Inc.) Hidden
CCC Help Hungarian (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help Hungarian (x32 Version: 2014.0704.2132.36938 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Standard (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Standard (x32 Version: 2014.0704.2132.36938 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Traditional (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Traditional (x32 Version: 2014.0704.2132.36938 - Advanced Micro Devices, Inc.) Hidden
CCC Help Italian (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help Italian (x32 Version: 2014.0704.2132.36938 - Advanced Micro Devices, Inc.) Hidden
CCC Help Japanese (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help Japanese (x32 Version: 2014.0704.2132.36938 - Advanced Micro Devices, Inc.) Hidden
CCC Help Korean (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help Korean (x32 Version: 2014.0704.2132.36938 - Advanced Micro Devices, Inc.) Hidden
CCC Help Norwegian (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help Norwegian (x32 Version: 2014.0704.2132.36938 - Advanced Micro Devices, Inc.) Hidden
CCC Help Polish (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help Polish (x32 Version: 2014.0704.2132.36938 - Advanced Micro Devices, Inc.) Hidden
CCC Help Portuguese (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help Portuguese (x32 Version: 2014.0704.2132.36938 - Advanced Micro Devices, Inc.) Hidden
CCC Help Russian (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help Russian (x32 Version: 2014.0704.2132.36938 - Advanced Micro Devices, Inc.) Hidden
CCC Help Spanish (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help Spanish (x32 Version: 2014.0704.2132.36938 - Advanced Micro Devices, Inc.) Hidden
CCC Help Swedish (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help Swedish (x32 Version: 2014.0704.2132.36938 - Advanced Micro Devices, Inc.) Hidden
CCC Help Thai (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help Thai (x32 Version: 2014.0704.2132.36938 - Advanced Micro Devices, Inc.) Hidden
CCC Help Turkish (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden
CCC Help Turkish (x32 Version: 2014.0704.2132.36938 - Advanced Micro Devices, Inc.) Hidden
ccc-utility64 (Version: 2012.0806.1156.19437 - Advanced Micro Devices, Inc.) Hidden
ccc-utility64 (Version: 2014.0704.2133.36938 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 4.15 - Piriform)
CMN (HKLM-x32\...\{F8C8FC80-E542-11D3-8F7F-009027591AA8}) (Version: - )
CyberLink PowerDVD 10 (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.4518.52 - CyberLink Corp.)
CyberLink PowerDVD 10 (x32 Version: 10.0.4518.52 - CyberLink Corp.) Hidden
Dependency Package Update (Version: 1.6.25.00 - Lenovo Inc.) Hidden
Fable III (x32 Version: 1.0.0001.131 - Microsoft Game Studios) Hidden
Fingerprint Reader (HKLM\...\{1CACE706-D749-44CA-BBFE-AF60946D1B18}) (Version: 6.0.200.75 - AuthenTec, Inc.)
Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - )
FreeRide Games (HKLM-x32\...\{6C26A305-4549-4A8A-9F03-25719C03B0FB}) (Version: 07.05.80.00 - Exent Technologies)
HijackThis 2.0.2 (HKLM-x32\...\HijackThis) (Version: 2.0.2 - TrendMicro)
Insane 2 (HKLM-x32\...\Insane 2_is1) (Version: - )
Integrated Camera Driver Installer Package Ver.1.0.0.19 (HKLM-x32\...\{F8754583-7893-4CD8-9E51-1A08F3D4C1A9}) (Version: 1.0.0.19 - RICOH)
Intel AppUp(SM) center (HKLM-x32\...\Intel AppUp(SM) center 33057) (Version: 3.6.1.33057.10 - Intel)
Intel(R) Update Manager (x32 Version: 1.0.0.34813 - Intel Corporation) Hidden
Java 7 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.250 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.5 - Sun Microsystems, Inc.) Hidden
Lenovo Auto Scroll Utility (HKLM\...\LenovoAutoScrollUtility) (Version: 2.02 - )
Lenovo Bluetooth with Enhanced Data Rate Software (HKLM\...\{C6D9ED03-6FCF-4410-9CB7-45CA285F9E11}) (Version: 12.0.0.1901 - Broadcom Corporation)
Lenovo Dependency Package (HKLM\...\Lenovo Dependency Package_is1) (Version: 1.6.25.00 - Lenovo Group Limited)
Lenovo Patch Utility (HKLM-x32\...\{AD32F5E9-6BDD-480A-8B7B-95571D04691C}) (Version: 1.3.1.1 - Lenovo Group Limited)
Lenovo Patch Utility (x32 Version: 1.4.0.4 - Lenovo Group Limited) Hidden
Lenovo Patch Utility 64 bit (HKLM\...\{ABE4638D-D208-4061-9F26-E3E11E3A1E0C}) (Version: 1.3.1.1 - Lenovo Group Limited)
Lenovo Patch Utility 64 bit (Version: 1.4.0.4 - Lenovo Group Limited) Hidden
Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.04.05 - )
Lenovo QuickLaunch (HKLM-x32\...\{FF80FE61-64E6-4DDC-93E5-5E47969AAB24}) (Version: 1.2.0010 - Lenovo Group Limited)
Lenovo Settings - Camera Audio (HKLM\...\{88C6A6D9-324C-46E8-BA87-563D14021442}_is1) (Version: 4.0.5.0 - Lenovo Corporation)
Lenovo Settings Dependency Package (HKLM\...\{3694BA2E-BE31-4B7E-886B-A0B559E69D4D}_is1) (Version: 1.0.0.12 - Lenovo Group Limited)
Lenovo Settings Mobile Hotspot (HKLM\...\{42603F7D-B08D-436B-B0D8-3E2DEF1AFD41}_is1) (Version: 1.0.0.21 - Lenovo)
Lenovo Solution Center (HKLM\...\{B73D2BF9-2C82-40A4-AFA8-32CE2E501640}) (Version: 2.2.002.00 - Lenovo Group Limited)
Lenovo User Guide (HKLM-x32\...\{13F59938-C595-479C-B479-F171AB9AF64F}) (Version: 1.0.0008.00 - Lenovo)
Lenovo Warranty Information (HKLM-x32\...\{FD4EC278-C1B1-4496-99ED-C0BE1B0AA521}) (Version: 1.0.0007.00 - Lenovo)
Malwarebytes Anti-Malware verze 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation)
Microsoft Chart Controls for Microsoft .NET Framework 3.5 (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.0.0 - Microsoft Corporation)
Microsoft Office Access MUI (Czech) 2010 (x32 Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (Czech) 2010 (x32 Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office Groove MUI (Czech) 2010 (x32 Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (Czech) 2010 (x32 Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (Czech) 2010 (x32 Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (Czech) 2010 (x32 Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (Czech) 2010 (x32 Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUSR) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Czech) 2010 (x32 Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Slovak) 2010 (x32 Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office Proofing (Czech) 2010 (x32 Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (Czech) 2010 (x32 Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (Czech) 2010 (Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Czech) 2010 (x32 Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office Single Image 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (Czech) 2010 (x32 Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000 - Adobe) Hidden
MotoGP 14 (HKLM-x32\...\MotoGP 14_is1) (Version: - )
Mozilla Firefox 30.0 (x86 cs) (HKLM-x32\...\Mozilla Firefox 30.0 (x86 cs)) (Version: 30.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
NVIDIA PhysX (HKLM-x32\...\{64467D47-FFE4-4FBC-ABBA-A0DB829A17EB}) (Version: 9.12.0613 - NVIDIA Corporation)
On Screen Display (HKLM\...\OnScreenDisplay) (Version: 7.01.00 - )
OnLive (HKLM-x32\...\OnLive) (Version: - OnLive)
PowerXpressHybrid (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Pro Evolution Soccer 2013 (HKLM-x32\...\{C2523AE6-F335-4D0B-BC15-1C07E4ACE629}) (Version: 1.00.0000 - KONAMI)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.2.612.2012 - Realtek)
Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.1.8400.29025 - Realtek Semiconductor Corp.)
SugarSync Manager (HKLM-x32\...\SugarSync) (Version: 1.9.61.90905 - SugarSync, Inc.)
Super Street Fighter IV: Arcade Edition (HKLM-x32\...\GFWL_{43430FA0-49F0-4B13-B4C5-611000008100}) (Version: 1.0.0000.129 - CAPCOM U.S.A., INC)
Super Street Fighter IV: Arcade Edition (x32 Version: 1.0.0000.129 - CAPCOM U.S.A., INC) Hidden
SUPER STREET FIGHTER IV: ARCADE EDITION (x32 Version: 1.0.0004.129 - CAPCOM U.S.A., INC) Hidden
ThinkPad UltraNav Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.19.7 - )
ThinkVantage Active Protection System (HKLM\...\{46A84694-59EC-48F0-964C-7E76E9F8A2ED}) (Version: 1.77.0.8 - Lenovo)
Vuze (HKLM-x32\...\8461-7759-5462-8226) (Version: 5.3.0.0 - Azureus Software, Inc.)
WinRAR 4.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points =========================

07-07-2014 11:19:04 Naplánovaný kontrolní bod
15-07-2014 10:41:40 Naplánovaný kontrolní bod
23-07-2014 21:31:15 Naplánovaný kontrolní bod
28-07-2014 19:56:03 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727
28-07-2014 19:56:03 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727
28-07-2014 19:57:06 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2012-07-26 07:26 - 2014-07-27 21:11 - 00000000 ____A C:\WINDOWS\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask
Task: {0743C7A0-D691-44E8-A4A2-40A78D426964} - System32\Tasks\Lenovo\LSC\LSCHardwareScanPostpone => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2013-08-08] ()
Task: {0953E0F5-5A1A-4CBE-B677-C5D4DD9566AE} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2013-08-08] (Lenovo)
Task: {095E195B-138A-404E-B3D5-AC52CDFC2E28} - System32\Tasks\Synaptics TouchPad Enhancements => \Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-04-24] (Synaptics Incorporated)
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {19010AA7-D6CB-4F2E-8855-6CDFC36F1647} - System32\Tasks\PDVDServ Task => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.EXE [2012-07-14] (CyberLink Corp.)
Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate
Task: {3302272B-1698-4593-8A62-16AD4E27E857} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)
Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation)
Task: {3D4AC536-534A-47F8-86BB-46F6DEFE41DD} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation
Task: {462C63B3-2E81-40B5-BCFE-2C779B89109B} - System32\Tasks\Norton Management\Norton Error Analyzer => C:\Program Files (x86)\Norton Management\Engine\3.2.0.19\SymErr.exe
Task: {480C802B-0CE5-43CC-B70E-0B1B9A60B2EF} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-08] (Adobe Systems Incorporated)
Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance
Task: {4CA10A81-D875-4505-9CE0-0ABDA39BAC0A} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv
Task: {5E733F08-E93B-460F-AA1B-2EC4DFB3B148} - System32\Tasks\Lenovo\Dependency Package Auto Update => C:\Program Files\Lenovo\iMController\AutoUpdate.exe [2014-05-21] ()
Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task
Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {7C11F2C4-281B-48F9-A9CD-EF385CDEF16B} - System32\Tasks\Dolby => c:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [2012-08-31] (Dolby Laboratories Inc.)
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task
Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
Task: {91EE509C-704B-4214-8E51-2585FB232BAB} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2013-08-08] (Lenovo)
Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work
Task: {A29F465C-F2B2-4216-9D08-62B295E97F7A} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics
Task: {ADE64106-8BD9-4A65-A2A6-E9E3E827CEB2} - System32\Tasks\Intel\Intel Service Manager => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [2012-07-12] (Intel Corporation)
Task: {B35ABF6D-2AAC-47A2-9A37-E0773E71ADEC} - System32\Tasks\TVT\TVSUUpdateTask_WIN-TULQFLNLRQJ_Administrator => C:\Program Files (x86)\Lenovo\System Update\tvsu.exe
Task: {B4D9EBD4-5D37-44BD-90BB-D53B12C78C14} - System32\Tasks\Microsoft\Windows\PLA\LSC Memory => Rundll32.exe C:\windows\system32\pla.dll,PlaHost "LSC Memory" "$(Arg0)"
Task: {B6E99F35-490E-4EA6-8582-DE5C15265AA8} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management
Task: {BCAD75E3-A68E-4818-A537-7446F7110333} - System32\Tasks\Dolby Selector => C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [2012-08-31] (Dolby Laboratories Inc.)
Task: {BFEB40D1-8A37-449E-91B8-4E0D4BFC2200} - System32\Tasks\StartPowerDVDService => C:\PROGRAM FILES (x86)\Cyberlink\PowerDVD10\PDVD10Serv.exe [2012-07-14] (CyberLink Corp.)
Task: {C9BC5CB8-1555-41C7-8566-FD4A14822D45} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation)
Task: {CC3AED0B-8E37-4D72-9259-6E295C3739B1} - System32\Tasks\TVT\TVSUUpdateTask_Lenovo-ThinkPad_michy9 => C:\Program Files (x86)\Lenovo\System Update\tvsu.exe
Task: {CF98F020-4E71-4DC2-8102-1F2C18F67E88} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2013-08-08] ()
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask
Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization
Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE
Task: {FB471327-06B8-4ED8-A6D1-3E2CD4CAB5E9} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-06-24] (Piriform Ltd)
Task: {FE2E5D6C-08A4-4084-A327-FD164A711592} - System32\Tasks\Norton Management\Norton Error Processor => C:\Program Files (x86)\Norton Management\Engine\3.2.0.19\SymErr.exe
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

==================== Loaded Modules (whitelisted) =============

2012-10-16 14:55 - 2012-08-29 16:05 - 00102400 _____ () C:\Program Files (x86)\ThinkPad\Utilities\US\PWMRT64V.DLL
2012-08-27 00:48 - 2012-08-27 00:48 - 00044408 _____ () C:\Program Files\Lenovo\Bluetooth Software\BtwLeAPI.dll
2014-04-21 21:42 - 2014-04-21 21:42 - 01259520 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Windows.Networking\8f6e236cd6041c81411f85852722670b\Windows.Networking.ni.dll
2012-08-15 04:35 - 2012-08-15 04:35 - 00458336 _____ () C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe
2014-07-04 21:33 - 2014-07-04 21:33 - 00127488 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
2012-08-31 13:43 - 2012-08-31 13:43 - 01130344 _____ () C:\Program Files\Lenovo Fingerprint Reader\DataManager.dll
2012-08-31 13:43 - 2012-08-31 13:43 - 00087400 _____ () C:\Program Files\Lenovo Fingerprint Reader\ssutil.dll
2010-01-30 02:40 - 2010-01-30 02:40 - 04254560 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2012-08-15 04:35 - 2012-08-15 04:35 - 00013920 _____ () C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe
2012-10-16 14:34 - 2010-10-26 13:40 - 00049056 _____ () C:\Program Files\CONEXANT\ForteConfig\fmapp.exe
2014-07-04 21:33 - 2014-07-04 21:33 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
2012-08-31 13:44 - 2012-08-31 13:44 - 04622184 _____ () C:\Program Files\Lenovo Fingerprint Reader\x86\IEWebSiteLogon.exe
2012-10-16 14:56 - 2012-08-10 02:17 - 02201088 _____ () C:\Program Files\Lenovo\Communications Utility\cxcore210.dll
2012-10-16 14:56 - 2012-08-10 02:17 - 02085888 _____ () C:\Program Files\Lenovo\Communications Utility\cv210.dll
2014-04-25 02:29 - 2014-04-25 02:29 - 00797696 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Networking\66db718389f1cd2503053c09b3de857f\Windows.Networking.ni.dll
2014-04-23 14:14 - 2014-04-23 14:14 - 00228864 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Foundation\cf021988965369c551bb0987fe019862\Windows.Foundation.ni.dll
2012-08-31 13:44 - 2012-08-31 13:44 - 00900456 _____ () C:\Program Files\Lenovo Fingerprint Reader\x86\DataManager.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run32: => "ConnectionCenter"
HKLM\...\StartupApproved\Run32: => "DynamicUSB"
HKLM\...\StartupApproved\Run32: => "seznam-listicka-distribuce"
HKLM\...\StartupApproved\Run32: => "AdobeCS6ServiceManager"
HKCU\...\StartupApproved\Run: => "DAEMON Tools Lite"
HKCU\...\StartupApproved\Run: => "cz.seznam.software.autoupdate"
HKCU\...\StartupApproved\Run: => "AlcoholAutomount"

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (07/29/2014 11:03:09 AM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetUserLpd()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\michy9\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (07/29/2014 11:03:09 AM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (CheckLpdVersion()): Failed to open common_lpd.xml, check if Location Awareness is installed: C:\ProgramData\Lenovo\LocationAware\common_lpd.xml

Error: (07/29/2014 11:03:09 AM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (CheckLpdVersion()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\michy9\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (07/29/2014 11:03:06 AM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetHomepage()): Failed to find preferences file for Google Chrome. Check if it is properly installed.

Error: (07/29/2014 11:03:06 AM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (CheckLpdVersion()): Failed to open common_lpd.xml, check if Location Awareness is installed: C:\ProgramData\Lenovo\LocationAware\common_lpd.xml

Error: (07/29/2014 11:03:06 AM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (CheckLpdVersion()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\michy9\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (07/29/2014 03:28:57 AM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetUserLpd()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\michy9\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (07/29/2014 03:28:53 AM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetUserLpd()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\michy9\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (07/29/2014 03:28:52 AM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetUserLpd()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\michy9\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (07/29/2014 03:28:52 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: svchost.exe_WbioSrvc, verze: 6.3.9600.16384, časové razítko: 0x5215dfe3
Název chybujícího modulu: UPKBU.DLL, verze: 1.6.1.341, časové razítko: 0x502239a7
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000000cccd7
ID chybujícího procesu: 0x628
Čas spuštění chybující aplikace: 0xsvchost.exe_WbioSrvc0
Cesta k chybující aplikaci: svchost.exe_WbioSrvc1
Cesta k chybujícímu modulu: svchost.exe_WbioSrvc2
ID zprávy: svchost.exe_WbioSrvc3
Úplný název chybujícího balíčku: svchost.exe_WbioSrvc4
ID aplikace související s chybujícím balíčkem: svchost.exe_WbioSrvc5


System errors:
=============
Error: (07/29/2014 11:14:11 AM) (Source: DCOM) (EventID: 10010) (User: Lenovo-ThinkPad)
Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}

Error: (07/29/2014 11:13:41 AM) (Source: DCOM) (EventID: 10010) (User: Lenovo-ThinkPad)
Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}

Error: (07/29/2014 11:13:20 AM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: NT AUTHORITY)
Description: 0x8000002a42\SystemRoot\System32\Config\RegBack\SYSTEM

Error: (07/29/2014 03:29:05 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Biometrická služba systému Windows byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (07/28/2014 09:55:05 PM) (Source: APXACC) (EventID: 1003) (User: )
Description: The NDIS6 LWF initialization has failed. (0xC0000001)

Error: (07/28/2014 09:55:05 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba AppEx Networks Accelerator LWF neuspěla při spuštění v důsledku následující chyby:
%%31

Error: (07/28/2014 09:52:26 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Conexant Audio Message Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (07/28/2014 09:28:07 PM) (Source: APXACC) (EventID: 1003) (User: )
Description: The NDIS6 LWF initialization has failed. (0xC0000001)

Error: (07/28/2014 09:28:07 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba AppEx Networks Accelerator LWF neuspěla při spuštění v důsledku následující chyby:
%%31

Error: (07/28/2014 08:58:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba AppEx Networks Accelerator LWF neuspěla při spuštění v důsledku následující chyby:
%%31


Microsoft Office Sessions:
=========================
Error: (07/29/2014 11:03:09 AM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetUserLpd()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\michy9\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (07/29/2014 11:03:09 AM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (CheckLpdVersion()): Failed to open common_lpd.xml, check if Location Awareness is installed: C:\ProgramData\Lenovo\LocationAware\common_lpd.xml

Error: (07/29/2014 11:03:09 AM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (CheckLpdVersion()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\michy9\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (07/29/2014 11:03:06 AM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetHomepage()): Failed to find preferences file for Google Chrome. Check if it is properly installed.

Error: (07/29/2014 11:03:06 AM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (CheckLpdVersion()): Failed to open common_lpd.xml, check if Location Awareness is installed: C:\ProgramData\Lenovo\LocationAware\common_lpd.xml

Error: (07/29/2014 11:03:06 AM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (CheckLpdVersion()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\michy9\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (07/29/2014 03:28:57 AM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetUserLpd()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\michy9\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (07/29/2014 03:28:53 AM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetUserLpd()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\michy9\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (07/29/2014 03:28:52 AM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetUserLpd()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\michy9\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (07/29/2014 03:28:52 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: svchost.exe_WbioSrvc6.3.9600.163845215dfe3UPKBU.DLL1.6.1.341502239a7c000000500000000000cccd762801cfaa9dd4c281d8C:\WINDOWS\system32\svchost.exeC:\WINDOWS\SYSTEM32\WINBIOPLUGINS\UPKBU.DLLb2a38706-16bf-11e4-bed9-b888e3defb7e


CodeIntegrity Errors:
===================================
Date: 2014-07-29 11:16:20.146
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-07-28 02:05:39.577
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-07-27 12:40:55.024
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-07-27 01:14:23.767
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-07-26 12:24:16.124
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-07-24 20:23:35.414
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-07-24 13:46:48.857
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-07-19 23:54:38.208
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-07-17 11:54:08.017
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-07-16 15:31:17.681
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

Percentage of memory in use: 32%
Total physical RAM: 3506.92 MB
Available physical RAM: 2377.88 MB
Total Pagefile: 4146.92 MB
Available Pagefile: 2298.34 MB
Total Virtual: 131072 MB
Available Virtual: 131071.8 MB

==================== Drives ================================

Drive c: (Windows8_OS) (Fixed) (Total:685.56 GB) (Free:480.62 GB) NTFS ==>[System with boot components (obtained from reading drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 699 GB) (Disk ID: 69677AFB)

Partition: GPT Partition Type.

==================== End Of Log ============================

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: preventivni kontrola hjt logu

Příspěvekod jaro3 » 29 črc 2014 18:29

Pochybuji.

Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.

Kód: Vybrat vše

SearchScopes: HKLM - DefaultScope {07B284A4-5F5C-4102-9600-3D240A2D1335} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALCJS
SearchScopes: HKLM - {07B284A4-5F5C-4102-9600-3D240A2D1335} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALCJS
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKLM-x32 - {07B284A4-5F5C-4102-9600-3D240A2D1335} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALCJS
SearchScopes: HKCU - {07B284A4-5F5C-4102-9600-3D240A2D1335} URL =
SearchScopes: HKCU - {9CD23A72-C60B-41C2-AA68-00588A95EC8C} URL = http://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_13415
Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION
C:\Users\michy9\AppData\Local\Temp\Quarantine.exe


(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).

Ulož jej na na plochu jako fixlist.txt


Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.

čisto..

Stáhni si zde DelFix

ulož si soubor na plochu.
Poklepáním na ikonu spusť nástroj Delfix.exe
( Ve Windows Vista, Windows 7 a 8, musíš spustit soubor pravým tlačítkem myši -> Spustit jako správce .
V hlavním menu, zkontroluj tyto možnosti - Odstranění dezinfekce nástrojů (Remove desinfection tools) – Vyčistit body obnovy (Purge System Restore)
Poté klikněte na tlačítko Spustit (Run) a nech nástroj dělat svoji práci

Poté se zpráva se otevře (DelFix.txt). Vlož celý obsah zprávy sem.Jinak je zpráva zde:
v C: \ DelFix.txt

Zadej si nové téma do jiné sekce.

Pokud nejsou jiné problémy , je to vše a můžeš dát vyřešeno , zelenou fajfku.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
c.johnson
Level 1.5
Level 1.5
Příspěvky: 144
Registrován: listopad 07
Bydliště: Los Santos
Pohlaví: Muž
Stav:
Offline

Re: preventivni kontrola hjt logu

Příspěvekod c.johnson » 29 črc 2014 18:59

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 26-07-2014
Ran by michy9 at 2014-07-29 18:57:48 Run:1
Running from C:\Users\michy9\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
SearchScopes: HKLM - DefaultScope {07B284A4-5F5C-4102-9600-3D240A2D1335} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALCJS
SearchScopes: HKLM - {07B284A4-5F5C-4102-9600-3D240A2D1335} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALCJS
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKLM-x32 - {07B284A4-5F5C-4102-9600-3D240A2D1335} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALCJS
SearchScopes: HKCU - {07B284A4-5F5C-4102-9600-3D240A2D1335} URL =
SearchScopes: HKCU - {9CD23A72-C60B-41C2-AA68-00588A95EC8C} URL = http://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_13415
Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION
C:\Users\michy9\AppData\Local\Temp\Quarantine.exe
*****************

HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{07B284A4-5F5C-4102-9600-3D240A2D1335}" => Key deleted successfully.
"HKCR\CLSID\{07B284A4-5F5C-4102-9600-3D240A2D1335}" => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{07B284A4-5F5C-4102-9600-3D240A2D1335}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{07B284A4-5F5C-4102-9600-3D240A2D1335}" => Key not found.
"HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{07B284A4-5F5C-4102-9600-3D240A2D1335}" => Key deleted successfully.
"HKCR\CLSID\{07B284A4-5F5C-4102-9600-3D240A2D1335}" => Key not found.
"HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9CD23A72-C60B-41C2-AA68-00588A95EC8C}" => Key deleted successfully.
"HKCR\CLSID\{9CD23A72-C60B-41C2-AA68-00588A95EC8C}" => Key not found.
Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION => Error: No automatic fix found for this entry.
C:\Users\michy9\AppData\Local\Temp\Quarantine.exe => Moved successfully.

==== End of Fixlog ====

Uživatelský avatar
c.johnson
Level 1.5
Level 1.5
Příspěvky: 144
Registrován: listopad 07
Bydliště: Los Santos
Pohlaví: Muž
Stav:
Offline

Re: preventivni kontrola hjt logu  Vyřešeno

Příspěvekod c.johnson » 29 črc 2014 19:06

# DelFix v10.7 - Logfile created 29/07/2014 at 19:01:47
# Updated 27/04/2014 by Xplode
# Username : michy9 - LENOVO-THINKPAD
# Operating System : Windows 8.1 (64 bits)

~ Removing disinfection tools ...

Deleted : C:\FRST
Deleted : C:\AdwCleaner
Deleted : C:\Users\michy9\Desktop\AdwCleaner.exe
Deleted : C:\Users\michy9\Desktop\aswmbr.exe
Deleted : C:\Users\michy9\Desktop\Fixlog.txt
Deleted : C:\Users\michy9\Desktop\FRST64.exe
Deleted : C:\Users\michy9\Desktop\JRT.exe
Deleted : C:\Users\michy9\Desktop\RogueKillerX64.exe
Deleted : C:\Users\michy9\Desktop\tdsskiller.exe
Deleted : C:\Users\michy9\Downloads\TFC.exe
Deleted : HKLM\SOFTWARE\OldTimer Tools
Deleted : HKLM\SOFTWARE\AdwCleaner
Deleted : HKLM\SOFTWARE\Swearware
Deleted : HKLM\SOFTWARE\TrendMicro\Hijackthis
Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Hijackthis
Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\HijackThis.exe
Deleted : HKLM\SYSTEM\CurrentControlSet\Services\aswMBR

~ Cleaning system restore ...

Deleted : RP #23 [Naplánovaný kontrolní bod | 07/15/2014 10:41:40]
Deleted : RP #24 [Naplánovaný kontrolní bod | 07/23/2014 21:31:15]
Deleted : RP #26 [Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 | 07/28/2014 19:56:03]
Deleted : RP #27 [Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 | 07/28/2014 19:56:03]
Deleted : RP #28 [Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 | 07/28/2014 19:57:06]

New restore point created !

########## - EOF - ##########


hotovo, problemy zadne a to hdmi jsem dnes znovu zkousel a zase funguje jako driv. takze parada, vse vyreseno, diky!


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 89 hostů