Kontrola logu - prosím

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

KeežlaB
Level 2.5
Level 2.5
Příspěvky: 319
Registrován: prosinec 13
Pohlaví: Muž
Stav:
Offline

Kontrola logu - prosím

Příspěvekod KeežlaB » 04 led 2014 11:01

Dobrý den, byla mi doporučena v jiném tématu kontrola logu, tak zde ji posílám.
Děkuji..


Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:57:51, on 4. 1. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.16384)
Boot mode: Normal

Running processes:
C:\Users\Martin\Downloads\hijackthis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: cdl - {3DD53D40-7B8B-11D0-B013-00AA0059CE02} - C:\Windows\SysWOW64\urlmon.dll
O18 - Protocol: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\msvidctl.dll
O18 - Protocol: file - {79EAC9E7-BAF9-11CE-8C82-00AA004BA90B} - C:\Windows\SysWOW64\urlmon.dll
O18 - Protocol: ftp - {79EAC9E3-BAF9-11CE-8C82-00AA004BA90B} - C:\Windows\SysWOW64\urlmon.dll
O18 - Protocol: http - {79EAC9E2-BAF9-11CE-8C82-00AA004BA90B} - C:\Windows\SysWOW64\urlmon.dll
O18 - Protocol: https - {79EAC9E5-BAF9-11CE-8C82-00AA004BA90B} - C:\Windows\SysWOW64\urlmon.dll
O18 - Protocol: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll
O18 - Protocol: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: local - {79EAC9E7-BAF9-11CE-8C82-00AA004BA90B} - C:\Windows\SysWOW64\urlmon.dll
O18 - Protocol: mailto - {3050F3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: mhtml - {05300401-BCBC-11D0-85E3-00C04FD85AB4} - C:\Windows\SysWOW64\inetcomm.dll
O18 - Protocol hijack: mk - {79EAC9E6-BAF9-11CE-8C82-00AA004BA90B}
O18 - Protocol: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll
O18 - Protocol: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol hijack: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E}
O18 - Protocol: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: @oem7.inf,%BcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\Windows\system32\BtwRSupportService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Service KMSELDI - Unknown owner - C:\Program Files\KMSpico\Service_KMS.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 6921 bytes

Reklama
Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - prosím

Příspěvekod Orcus » 05 led 2014 11:39

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.

===================================================

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.

====================================================

Stáhni AdwCleaner

Ulož si ho na svojí plochu
Ukonči všechny programy, okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log (jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

KeežlaB
Level 2.5
Level 2.5
Příspěvky: 319
Registrován: prosinec 13
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - prosím

Příspěvekod KeežlaB » 05 led 2014 18:23

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2014.01.05.02

Windows 8 x64 NTFS
Internet Explorer 11.0.9600.16476
Martin :: MARTIN [administrátor]

Ochrana: Povolena

5. 1. 2014 18:03:41
mbam-log-2014-01-05 (18-03-41).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 211664
Uplynulý čas: 3 minut, 45 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)

(konec)


------------------------------------------------------------------------------------------------------------------------------
------------------------------------------------------------------------------------------------------------------------------

# AdwCleaner v3.016 - Report created 05/01/2014 at 18:09:06
# Updated 23/12/2013 by Xplode
# Operating System : Windows 8.1 Enterprise (64 bits)
# Username : Martin - MARTIN
# Running from : C:\Users\Martin\Desktop\adwcleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Found C:\ProgramData\apn

***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v0.0.0.0


*************************

AdwCleaner[R0].txt - [509 octets] - [05/01/2014 18:09:06]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [568 octets] ##########

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Kontrola logu - prosím

Příspěvekod Damned » 05 led 2014 18:30

Přidej do prvního příspěvku odkaz na "jiné téma".

Stáhni si Farbar Recovery Scan Tool

a ulož jej na plochu.
Poznámka: Je třeba spustit kompatibilní verze se vaším systémem.
(Zde si můžeš zkontrolovat, pokud si nejsi jistý, zda je PC 32-bit nebo 64-bit:
http://windows.microsoft.com/en-us/wind ... -or-64-bit ).
Poklepáním jej spusť . Když se otevře nástroj klepni na tlačítko YES(Ano) disclaimer.
Stiskni tlačítko Scan (Skenovat).Log (FRST.txt) bude ve stejném adresáři jako nástroj . Prosím, zkopíruj a vlož jej sem.
Poprvé když je nástroj spuštěn, udělá dalšílog (Addition.txt). Prosím, vlož ho sem také.
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

KeežlaB
Level 2.5
Level 2.5
Příspěvky: 319
Registrován: prosinec 13
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - prosím

Příspěvekod KeežlaB » 05 led 2014 19:08

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-01-2014
Ran by Martin (administrator) on MARTIN on 05-01-2014 19:04:55
Running from C:\Users\Martin\Desktop
Windows 8.1 Enterprise (X64) OS Language: English(US)
Internet Explorer Version 11
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe\livecomm.exe
() C:\Windows\System32\KMSServer.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Corporation) C:\Windows\WinStore\WSHost.exe
(Opera Software) C:\Program Files (x86)\Opera\18.0.1284.68\opera.exe
() C:\Program Files (x86)\Opera\18.0.1284.68\opera_crashreporter.exe
(Opera Software) C:\Program Files (x86)\Opera\18.0.1284.68\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\18.0.1284.68\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\18.0.1284.68\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\18.0.1284.68\opera.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.16384_none_fa1dc1539b4180d8\TiWorker.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [egui] - C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [5618456 2013-09-12] (ESET)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com
BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office Professional Plus 2013\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office Professional Plus 2013\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office Professional Plus 2013\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office Professional Plus 2013\Office15\MSOSB.DLL (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)

==================== Services (Whitelisted) =================

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2013-12-06] (Advanced Micro Devices, Inc.)
R2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2255064 2013-10-28] (Broadcom Corporation.)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [1337752 2013-09-12] (ESET)
R3 KMSServerService; C:\Windows\System32\KMSServer.exe [38454 2014-01-05] ()
S2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
S2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [686592 2013-11-12] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)
R2 AODDriver4.2.0; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59648 2013-09-19] (Advanced Micro Devices)
S3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-10-28] (Broadcom Corporation.)
S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [239320 2013-09-17] (ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [239296 2013-09-17] (ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [168256 2013-09-17] (ESET)
R2 epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [157432 2013-09-17] (ESET)
S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation)
S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation)
S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation)
R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation)
S3 kbldfltr; C:\Windows\System32\drivers\kbldfltr.sys [22272 2013-09-30] (Microsoft Corporation)
S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)
S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation)
S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation)
S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation)
S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-10-05] (Microsoft Corporation)
S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-01-05 19:04 - 2014-01-05 19:05 - 00007133 _____ C:\Users\Martin\Desktop\FRST.txt
2014-01-05 19:04 - 2014-01-05 19:04 - 00000000 ____D C:\FRST
2014-01-05 18:57 - 2014-01-05 18:57 - 01931368 _____ (Farbar) C:\Users\Martin\Desktop\FRST64.exe
2014-01-05 18:19 - 2014-01-05 18:20 - 00038454 _____ C:\Windows\system32\KMSServer.exe
2014-01-05 18:09 - 2014-01-05 18:21 - 00000000 ____D C:\AdwCleaner
2014-01-05 18:01 - 2014-01-05 18:01 - 00001125 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-01-05 18:01 - 2014-01-05 18:01 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Malwarebytes
2014-01-05 18:01 - 2014-01-05 18:01 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-05 18:01 - 2014-01-05 18:01 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-05 18:01 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-01-05 17:50 - 2014-01-05 17:50 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Martin\Desktop\mbam-setup-1.75.0.1300.exe
2014-01-05 17:49 - 2014-01-05 17:49 - 01233962 _____ C:\Users\Martin\Desktop\adwcleaner.exe
2014-01-05 17:49 - 2014-01-05 17:49 - 00050688 _____ (Atribune.org) C:\Users\Martin\Desktop\ATF-Cleaner.exe
2014-01-05 16:08 - 2014-01-05 16:08 - 00112426 _____ C:\Users\Martin\Downloads\Rozvrh13_14-ledenLVVZ.xlsx
2014-01-04 16:04 - 2014-01-04 16:05 - 03473752 _____ C:\Users\Martin\Downloads\8.1 Act 3 (x64 x86).rar
2014-01-04 15:06 - 2014-01-04 15:06 - 00000000 ____D C:\Users\Martin\Documents\FreeFileSync
2014-01-04 14:47 - 2014-01-04 15:15 - 00000000 ____D C:\Users\Martin\AppData\Roaming\FreeFileSync
2014-01-04 14:43 - 2014-01-04 17:01 - 00000000 ____D C:\Users\Martin\AppData\Roaming\.minecraft
2014-01-04 14:43 - 2014-01-04 14:43 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft
2014-01-04 14:37 - 2014-01-04 15:18 - 00000000 ____D C:\Users\Martin\Documents\NetBeansProjects
2014-01-04 14:15 - 2014-01-04 15:03 - 00000000 ____D C:\Users\Martin\Documents\učebnice
2014-01-04 14:15 - 2013-12-19 20:39 - 00000700 _____ C:\Users\Martin\Documents\Verifier.txt
2014-01-04 14:15 - 2013-12-01 09:49 - 00001344 _____ C:\Users\Martin\Documents\Filmy.txt
2014-01-04 14:15 - 2013-10-28 09:20 - 00000132 _____ C:\Users\Martin\Documents\START programy.txt
2014-01-04 14:15 - 2013-10-05 13:04 - 00000113 _____ C:\Users\Martin\Documents\EMAILY.txt
2014-01-04 14:15 - 2013-08-22 19:56 - 00000176 _____ C:\Users\Martin\Documents\Game of thrones.txt
2014-01-04 14:14 - 2014-01-04 15:18 - 00000000 ___RD C:\Users\Martin\Documents\Divoké kmeny
2014-01-04 13:56 - 2014-01-04 13:56 - 00001233 _____ C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FreeFileSync.lnk
2014-01-04 13:54 - 2014-01-04 13:55 - 00000000 ____D C:\Program Files\uTorrent
2014-01-04 13:54 - 2014-01-04 13:54 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent
2014-01-04 13:53 - 2014-01-04 13:53 - 00000000 ____D C:\Program Files\FreeFileSync
2014-01-04 12:42 - 2014-01-04 12:42 - 00001191 _____ C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner64.lnk
2014-01-04 12:42 - 2014-01-04 12:42 - 00000000 ____D C:\Program Files\CCleaner
2014-01-04 12:36 - 2014-01-04 12:36 - 00000000 ____D C:\Users\Martin\AppData\Local\ESET
2014-01-04 12:34 - 2014-01-04 12:34 - 00000000 ____D C:\Program Files\TAP-Windows
2014-01-04 12:28 - 2014-01-04 12:28 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2014-01-04 12:27 - 2014-01-04 12:27 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2014-01-04 12:26 - 2014-01-04 12:26 - 00000000 ____D C:\Users\Martin\AppData\Local\Apps\2.0
2014-01-04 12:25 - 2014-01-04 12:27 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2014-01-04 12:25 - 2014-01-04 12:25 - 00000000 ____D C:\Windows\PCHEALTH
2014-01-04 12:25 - 2014-01-04 12:25 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2014-01-04 12:25 - 2013-12-02 19:24 - 87227720 _____ (AVAST Software) C:\Users\Martin\Downloads\avast_free_antivirus_setup.exe
2014-01-04 12:23 - 2014-01-04 12:23 - 00000000 ____D C:\Users\Martin\Documents\The KMPlayer
2014-01-04 12:22 - 2014-01-04 12:30 - 00000000 ____D C:\ProgramData\Microsoft Help
2014-01-04 12:22 - 2014-01-04 12:25 - 00000000 ____D C:\Program Files\Microsoft Office Professional Plus 2013
2014-01-04 12:22 - 2014-01-04 12:22 - 00000000 ____D C:\Users\Martin\AppData\Local\Microsoft Help
2014-01-04 12:22 - 2014-01-04 12:22 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2014-01-04 12:22 - 2014-01-04 12:22 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2014-01-04 12:22 - 2014-01-04 12:22 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2014-01-04 12:21 - 2014-01-04 12:21 - 00000000 __RHD C:\MSOCache
2014-01-04 10:56 - 2014-01-04 10:56 - 00388608 _____ (Trend Micro Inc.) C:\Users\Martin\Downloads\hijackthis.exe
2014-01-04 10:36 - 2014-01-05 10:46 - 00000000 ____D C:\Users\Martin\AppData\Roaming\TeamViewer
2014-01-04 10:34 - 2014-01-04 10:34 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2014-01-04 09:28 - 2014-01-04 09:28 - 00550371 _____ C:\Users\Martin\Downloads\Autoruns.zip
2014-01-04 07:21 - 2014-01-03 22:29 - 00000000 ____D C:\Windows\Panther
2014-01-04 00:04 - 2013-12-04 01:05 - 00693240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-01-04 00:04 - 2013-12-04 01:05 - 00105464 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-01-04 00:00 - 2014-01-04 00:05 - 00000000 ___RD C:\Windows\BrowserChoice
2014-01-03 23:44 - 2014-01-03 23:45 - 00000000 ____D C:\Windows\system32\MRT
2014-01-03 23:44 - 2013-12-01 14:42 - 90708896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-01-03 23:35 - 2014-01-05 18:09 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-01-03 23:35 - 2014-01-03 23:35 - 00003802 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-01-03 23:31 - 2013-10-22 07:03 - 02065448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2014-01-03 23:31 - 2013-10-22 05:04 - 00618496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
2014-01-03 23:31 - 2013-10-22 05:02 - 01036288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2014-01-03 23:31 - 2013-10-22 03:38 - 01362944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2014-01-03 23:31 - 2013-10-22 02:47 - 02295808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-01-03 23:31 - 2013-10-19 08:12 - 00380656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2014-01-03 23:31 - 2013-10-19 05:03 - 00531968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2014-01-03 23:31 - 2013-10-19 04:14 - 00888832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2014-01-03 23:31 - 2013-10-17 15:04 - 01204968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll
2014-01-03 23:31 - 2013-10-16 10:34 - 00518656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2014-01-03 23:31 - 2013-10-11 14:03 - 00621056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2014-01-03 23:31 - 2013-10-10 15:53 - 00235960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2014-01-03 23:31 - 2013-10-10 15:53 - 00088272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll
2014-01-03 23:31 - 2013-10-10 12:21 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2014-01-03 23:31 - 2013-10-08 06:58 - 00094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsetup.dll
2014-01-03 23:31 - 2013-10-08 06:15 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2014-01-03 23:31 - 2013-10-08 05:50 - 00762368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.Http.dll
2014-01-03 23:31 - 2013-10-05 13:05 - 00578952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2014-01-03 23:31 - 2013-10-05 09:40 - 00795648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-01-03 23:31 - 2013-10-05 09:24 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\miutils.dll
2014-01-03 23:31 - 2013-10-05 09:21 - 00920064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2014-01-03 23:31 - 2013-10-05 08:35 - 00411648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2014-01-03 23:31 - 2013-10-05 08:32 - 05769728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-01-03 23:31 - 2013-09-17 07:31 - 00883184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
2014-01-03 23:31 - 2013-09-17 07:31 - 00326024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-01-03 23:31 - 2013-09-14 13:39 - 01799944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2014-01-03 23:31 - 2013-09-14 13:33 - 00345552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsmf.dll
2014-01-03 23:31 - 2013-09-13 08:47 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ftp.exe
2014-01-03 23:31 - 2013-09-12 09:02 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll
2014-01-03 23:31 - 2013-09-12 08:37 - 00245248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll
2014-01-03 23:31 - 2013-09-12 08:21 - 00262144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll
2014-01-03 23:31 - 2013-09-12 08:01 - 00272896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappcfg.dll
2014-01-03 23:31 - 2013-09-10 05:34 - 03934208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2014-01-03 23:30 - 2013-11-05 21:21 - 21196664 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-01-03 23:30 - 2013-11-05 19:51 - 18642504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-01-03 23:30 - 2013-11-05 17:20 - 13925888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2014-01-03 23:30 - 2013-11-05 17:11 - 18577408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2014-01-03 23:30 - 2013-10-23 12:29 - 00044936 _____ (Microsoft Corporation) C:\Windows\system32\wldp.dll
2014-01-03 23:30 - 2013-10-23 12:21 - 00155480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-01-03 23:30 - 2013-10-23 12:13 - 00171864 _____ (Microsoft Corporation) C:\Windows\system32\kd_02_8086.dll
2014-01-03 23:30 - 2013-10-22 09:18 - 01287064 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-01-03 23:30 - 2013-10-22 09:18 - 00096088 _____ (Microsoft Corporation) C:\Windows\system32\embeddedapplauncher.exe
2014-01-03 23:30 - 2013-10-22 08:55 - 02328872 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2014-01-03 23:30 - 2013-10-22 06:15 - 00558080 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2014-01-03 23:30 - 2013-10-22 04:56 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2014-01-03 23:30 - 2013-10-22 04:44 - 00761856 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2014-01-03 23:30 - 2013-10-22 03:22 - 00381952 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2014-01-03 23:30 - 2013-10-22 03:13 - 01704448 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-01-03 23:30 - 2013-10-22 03:07 - 02617344 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-01-03 23:30 - 2013-10-22 02:53 - 01584128 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2014-01-03 23:30 - 2013-10-19 09:51 - 00481392 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2014-01-03 23:30 - 2013-10-19 06:37 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-01-03 23:30 - 2013-10-19 05:48 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2014-01-03 23:30 - 2013-10-19 04:26 - 01231360 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2014-01-03 23:30 - 2013-10-17 16:42 - 01399176 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2014-01-03 23:30 - 2013-10-16 10:33 - 00631296 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2014-01-03 23:30 - 2013-10-13 04:06 - 00258904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
2014-01-03 23:30 - 2013-10-13 03:43 - 00708616 _____ (Microsoft Corporation) C:\Windows\system32\iuilp.dll
2014-01-03 23:30 - 2013-10-11 14:24 - 00909312 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2014-01-03 23:30 - 2013-10-10 17:44 - 00031064 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll
2014-01-03 23:30 - 2013-10-10 17:26 - 00317616 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2014-01-03 23:30 - 2013-10-10 17:26 - 00104320 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll
2014-01-03 23:30 - 2013-10-10 17:23 - 03395920 _____ (Microsoft Corporation) C:\Windows\system32\WSService.dll
2014-01-03 23:30 - 2013-10-10 12:53 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2014-01-03 23:30 - 2013-10-10 12:38 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2014-01-03 23:30 - 2013-10-10 12:26 - 02801664 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2014-01-03 23:30 - 2013-10-10 12:05 - 01019392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2014-01-03 23:30 - 2013-10-10 11:34 - 01085952 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2014-01-03 23:30 - 2013-10-10 11:27 - 00869888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2014-01-03 23:30 - 2013-10-09 06:40 - 00385528 _____ C:\Windows\system32\ApnDatabase.xml
2014-01-03 23:30 - 2013-10-08 11:28 - 00523096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2014-01-03 23:30 - 2013-10-08 11:13 - 02551640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-01-03 23:30 - 2013-10-08 07:46 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\shsetup.dll
2014-01-03 23:30 - 2013-10-08 06:50 - 00656384 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2014-01-03 23:30 - 2013-10-08 06:48 - 00255488 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2014-01-03 23:30 - 2013-10-08 06:09 - 01160704 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Http.dll
2014-01-03 23:30 - 2013-10-08 05:50 - 00903168 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2014-01-03 23:30 - 2013-10-07 08:21 - 00054776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-01-03 23:30 - 2013-10-07 03:13 - 03532288 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-01-03 23:30 - 2013-10-05 16:25 - 00057176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stornvme.sys
2014-01-03 23:30 - 2013-10-05 15:21 - 00699840 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2014-01-03 23:30 - 2013-10-05 12:01 - 00454656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2014-01-03 23:30 - 2013-10-05 12:01 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2014-01-03 23:30 - 2013-10-05 12:00 - 01200640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2014-01-03 23:30 - 2013-10-05 10:36 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-01-03 23:30 - 2013-10-05 10:18 - 01011712 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-01-03 23:30 - 2013-10-05 10:07 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2014-01-03 23:30 - 2013-10-05 09:56 - 01147904 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2014-01-03 23:30 - 2013-10-05 09:55 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\miutils.dll
2014-01-03 23:30 - 2013-10-05 09:15 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\pcsvDevice.dll
2014-01-03 23:30 - 2013-10-05 08:43 - 00578560 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2014-01-03 23:30 - 2013-10-05 08:39 - 06639616 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-01-03 23:30 - 2013-10-04 09:10 - 00533504 _____ (Microsoft Corporation) C:\Windows\system32\AppReadiness.dll
2014-01-03 23:30 - 2013-09-19 06:04 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll
2014-01-03 23:30 - 2013-09-17 10:06 - 01067080 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
2014-01-03 23:30 - 2013-09-17 10:06 - 00465960 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-01-03 23:30 - 2013-09-17 05:37 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\dafBth.dll
2014-01-03 23:30 - 2013-09-14 15:07 - 02134120 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2014-01-03 23:30 - 2013-09-14 15:00 - 00391512 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll
2014-01-03 23:30 - 2013-09-14 11:05 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe
2014-01-03 23:30 - 2013-09-14 10:11 - 00433664 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll
2014-01-03 23:30 - 2013-09-13 09:22 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\ftp.exe
2014-01-03 23:30 - 2013-09-12 09:45 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2014-01-03 23:30 - 2013-09-12 09:08 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2014-01-03 23:30 - 2013-09-12 09:08 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll
2014-01-03 23:30 - 2013-09-12 08:44 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2014-01-03 23:30 - 2013-09-12 08:37 - 00184832 _____ (Microsoft Corporation) C:\Windows\system32\dafWfdProvider.dll
2014-01-03 23:30 - 2013-09-12 08:16 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll
2014-01-03 23:30 - 2013-09-10 06:26 - 04599808 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-01-03 23:30 - 2013-09-10 05:52 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\msched.dll
2014-01-03 23:29 - 2013-11-12 00:41 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-01-03 23:29 - 2013-11-12 00:40 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-01-03 23:29 - 2013-11-12 00:27 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2014-01-03 23:29 - 2013-11-12 00:24 - 00840704 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2014-01-03 23:29 - 2013-11-09 12:55 - 00325464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2014-01-03 23:29 - 2013-11-09 07:37 - 01756160 _____ (Microsoft Corporation) C:\Windows\system32\WMPDMC.exe
2014-01-03 23:29 - 2013-11-09 06:56 - 01391104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPDMC.exe
2014-01-03 23:29 - 2013-11-08 05:42 - 00366080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appmgr.dll
2014-01-03 23:29 - 2013-11-08 05:28 - 13177344 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2014-01-03 23:29 - 2013-11-08 05:26 - 11674624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2014-01-03 23:29 - 2013-11-08 05:16 - 00225792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll
2014-01-03 23:29 - 2013-11-08 05:15 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2014-01-03 23:29 - 2013-11-08 05:07 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll
2014-01-03 23:29 - 2013-11-05 15:19 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2014-01-03 23:29 - 2013-11-05 15:03 - 00637952 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
2014-01-03 23:29 - 2013-11-05 14:57 - 00479744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
2014-01-03 23:29 - 2013-11-05 14:33 - 00584192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll
2014-01-03 23:29 - 2013-11-05 14:32 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll
2014-01-03 23:29 - 2013-11-04 11:32 - 02570240 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll
2014-01-03 23:29 - 2013-11-04 03:28 - 01816576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll
2014-01-03 23:29 - 2013-11-04 02:30 - 01765376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2014-01-03 23:29 - 2013-11-01 12:39 - 00086872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2014-01-03 23:29 - 2013-11-01 07:08 - 00747008 _____ (Microsoft Corporation) C:\Windows\system32\wlidcli.dll
2014-01-03 23:29 - 2013-11-01 06:57 - 00544768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidcli.dll
2014-01-03 23:29 - 2013-10-31 01:58 - 00372568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2014-01-03 23:29 - 2013-10-31 01:42 - 07399256 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-01-03 23:29 - 2013-10-26 02:54 - 00146776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\SerCx2.sys
2014-01-03 23:29 - 2013-10-24 10:12 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialMigrationHandler.dll
2014-01-03 23:29 - 2013-10-17 11:36 - 02266624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2014-01-03 23:29 - 2013-10-05 13:05 - 01765384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2014-01-03 23:29 - 2013-10-05 13:05 - 00406400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2014-01-03 23:28 - 2013-11-08 11:26 - 00358896 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
2014-01-03 23:28 - 2013-11-08 06:23 - 00449024 _____ (Microsoft Corporation) C:\Windows\system32\appmgr.dll
2014-01-03 23:28 - 2013-11-04 18:13 - 01530200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2014-01-03 23:28 - 2013-11-04 18:13 - 00382808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2014-01-03 23:28 - 2013-11-04 14:07 - 01843712 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2014-01-03 23:28 - 2013-11-04 12:50 - 02143744 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2014-01-03 23:28 - 2013-10-17 12:21 - 02896896 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2014-01-03 23:28 - 2013-10-05 15:21 - 02140888 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2014-01-03 23:28 - 2013-10-05 15:21 - 00516496 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2014-01-03 23:27 - 2013-11-11 03:48 - 00039768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2014-01-03 23:27 - 2013-11-08 05:43 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2014-01-03 23:27 - 2013-11-08 04:41 - 01302528 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2014-01-03 23:27 - 2013-11-08 04:14 - 00922624 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll
2014-01-03 23:27 - 2013-10-31 01:33 - 01642016 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2014-01-03 23:27 - 2013-10-31 01:33 - 01506680 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2014-01-03 23:27 - 2013-10-31 01:33 - 01476184 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2014-01-03 23:27 - 2013-10-31 01:33 - 01345536 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2014-01-03 23:27 - 2013-10-24 10:31 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll
2014-01-03 23:25 - 2014-01-03 23:25 - 00000000 ____D C:\Users\Martin\AppData\Roaming\ATI
2014-01-03 23:25 - 2014-01-03 23:25 - 00000000 ____D C:\Users\Martin\AppData\Local\ATI
2014-01-03 23:25 - 2014-01-03 23:25 - 00000000 ____D C:\ProgramData\ATI
2014-01-03 23:15 - 2013-10-03 10:16 - 00294400 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2014-01-03 23:15 - 2013-10-03 10:02 - 00225792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll
2014-01-03 23:15 - 2013-10-02 12:00 - 01286552 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2014-01-03 23:15 - 2013-10-02 10:47 - 01018960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2014-01-03 23:15 - 2013-10-01 04:42 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll
2014-01-03 23:15 - 2013-10-01 04:36 - 00977408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll
2014-01-03 23:14 - 2014-01-03 23:14 - 00000000 ____D C:\ProgramData\ESET
2014-01-03 23:14 - 2014-01-03 23:14 - 00000000 ____D C:\Program Files\ESET
2014-01-03 23:14 - 2013-10-23 12:01 - 00872840 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2014-01-03 23:14 - 2013-10-23 09:59 - 00698232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2014-01-03 23:14 - 2013-10-19 09:53 - 00075360 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2014-01-03 23:14 - 2013-10-19 08:14 - 00070680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2014-01-03 23:14 - 2013-10-09 20:05 - 00014069 _____ C:\Users\Martin\Desktop\Cvičení na doma.xlsx
2014-01-03 23:13 - 2013-10-16 16:58 - 01943536 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-01-03 23:13 - 2013-10-16 14:54 - 01581968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2014-01-03 23:12 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-01-03 23:12 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-01-03 23:12 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-01-03 23:12 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-01-03 23:12 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-01-03 23:12 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-01-03 23:12 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-01-03 23:12 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-01-03 23:12 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-01-03 23:12 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-01-03 23:12 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-01-03 23:12 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-01-03 23:12 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-01-03 23:12 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-01-03 23:12 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-01-03 23:12 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-01-03 23:12 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-01-03 23:12 - 2013-11-23 05:34 - 00393216 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2014-01-03 23:12 - 2013-11-23 05:13 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2014-01-03 23:12 - 2013-11-09 07:34 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe
2014-01-03 23:12 - 2013-11-09 07:34 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll
2014-01-03 23:12 - 2013-11-09 06:52 - 00240128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll
2014-01-03 23:12 - 2013-10-15 09:54 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2014-01-03 23:12 - 2013-10-15 09:03 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2014-01-03 23:12 - 2013-10-13 03:48 - 00136536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2014-01-03 23:12 - 2013-10-12 22:48 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2014-01-03 23:12 - 2013-10-12 22:34 - 01104384 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2014-01-03 23:12 - 2013-10-05 15:21 - 01341288 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-01-03 23:12 - 2013-10-05 09:39 - 01067008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-01-03 23:11 - 2014-01-03 15:44 - 00000084 _____ C:\Users\Martin\Desktop\windows.txt
2014-01-03 23:11 - 2013-12-30 18:14 - 00050368 _____ C:\Users\Martin\Documents\důležité záložky.html
2014-01-03 23:11 - 2013-12-30 10:44 - 00090283 _____ C:\Users\Martin\Documents\záložky_30.12.13.html
2014-01-03 23:11 - 2013-11-23 04:32 - 04105728 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll
2014-01-03 23:11 - 2013-11-23 04:10 - 00568832 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe
2014-01-03 23:10 - 2013-11-08 08:21 - 04191744 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-01-03 23:04 - 2014-01-03 23:04 - 00001336 _____ C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\opera.lnk
2014-01-03 23:03 - 2014-01-03 23:03 - 00000496 _____ C:\Windows\SynInst.log
2014-01-03 23:01 - 2014-01-03 23:01 - 00000000 ____D C:\Windows\system32\appmgmt
2014-01-03 23:00 - 2014-01-03 23:08 - 00000000 ____D C:\Users\Martin\.nbi
2014-01-03 23:00 - 2014-01-03 23:07 - 00000000 ____D C:\Program Files\NetBeans 7.4
2014-01-03 23:00 - 2014-01-03 22:59 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-01-03 23:00 - 2014-01-03 22:59 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-01-03 23:00 - 2014-01-03 22:59 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-01-03 23:00 - 2014-01-03 22:59 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-01-03 22:59 - 2014-01-03 22:59 - 00000000 ____D C:\Program Files\Java
2014-01-03 22:57 - 2014-01-05 13:29 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Skype
2014-01-03 22:57 - 2014-01-03 22:57 - 00000000 ___RD C:\Program Files (x86)\Skype
2014-01-03 22:57 - 2014-01-03 22:57 - 00000000 ____D C:\ProgramData\Skype
2014-01-03 22:57 - 2014-01-03 22:57 - 00000000 ____D C:\Program Files (x86)\Clip2Net
2014-01-03 22:56 - 2014-01-03 22:56 - 00000911 _____ C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Putty.lnk
2014-01-03 22:56 - 2014-01-03 22:56 - 00000000 ____D C:\Users\Martin\AppData\Roaming\WinRAR
2014-01-03 22:51 - 2014-01-05 18:24 - 00705490 _____ C:\Windows\system32\perfh005.dat
2014-01-03 22:51 - 2014-01-05 18:24 - 00143834 _____ C:\Windows\system32\perfc005.dat
2014-01-03 22:51 - 2014-01-03 22:49 - 00296666 _____ C:\Windows\system32\perfi005.dat
2014-01-03 22:51 - 2014-01-03 22:49 - 00038682 _____ C:\Windows\system32\perfd005.dat
2014-01-03 22:50 - 2014-01-03 22:50 - 00000000 ____D C:\Windows\SysWOW64\cs
2014-01-03 22:50 - 2014-01-03 22:50 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-01-03 22:50 - 2014-01-03 22:50 - 00000000 ____D C:\Program Files\WinRAR
2014-01-03 22:49 - 2014-01-03 22:49 - 00000000 ____D C:\Windows\system32\cs
2014-01-03 22:47 - 2013-11-23 14:37 - 07709312 _____ C:\Users\Martin\Downloads\ConnectifyInstaller.exe
2014-01-03 22:46 - 2014-01-03 22:46 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Opera Software
2014-01-03 22:46 - 2014-01-03 22:46 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer
2014-01-03 22:46 - 2014-01-03 22:46 - 00000000 ____D C:\Users\Martin\AppData\Local\Opera Software
2014-01-03 22:46 - 2014-01-03 22:46 - 00000000 ____D C:\Program Files (x86)\The KMPlayer
2014-01-03 22:45 - 2014-01-03 22:45 - 00000000 ____D C:\Program Files (x86)\Opera
2014-01-03 22:44 - 2014-01-03 22:44 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Macromedia
2014-01-03 22:35 - 2014-01-05 18:25 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4076941886-1634047963-3464441739-1001
2014-01-03 22:35 - 2014-01-04 14:30 - 00000000 ____D C:\Program Files\KMSpico
2014-01-03 22:35 - 2014-01-03 22:35 - 00060601 _____ C:\Windows\SysWOW64\CCCInstall_201401032235217082.log
2014-01-03 22:35 - 2014-01-03 22:35 - 00003706 _____ C:\Windows\System32\Tasks\AutoPico Daily Restart
2014-01-03 22:35 - 2014-01-03 22:35 - 00000000 ____D C:\ProgramData\AMD
2014-01-03 22:35 - 2014-01-03 22:35 - 00000000 ____D C:\Program Files\ATI Technologies
2014-01-03 22:35 - 2014-01-03 22:35 - 00000000 ____D C:\Program Files (x86)\Advanced Micro Devices, Inc
2014-01-03 22:34 - 2014-01-03 22:35 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2014-01-03 22:34 - 2014-01-03 22:34 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2014-01-03 22:34 - 2014-01-03 22:34 - 00000000 ____D C:\ProgramData\Package Cache
2014-01-03 22:34 - 2014-01-03 22:34 - 00000000 ____D C:\Program Files\AMD
2014-01-03 22:34 - 2014-01-03 22:34 - 00000000 ____D C:\AMD
2014-01-03 22:34 - 2014-01-03 22:34 - 00000000 _____ C:\Windows\ativpsrm.bin
2014-01-03 22:32 - 2014-01-03 22:32 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01009.Wdf
2014-01-03 22:31 - 2014-01-05 17:58 - 00000000 __RDO C:\Users\Martin\SkyDrive
2014-01-03 22:30 - 2014-01-04 14:00 - 00000000 ____D C:\Users\Martin\AppData\Local\PackageStaging
2014-01-03 22:29 - 2014-01-05 16:11 - 00000000 ____D C:\Users\Martin\AppData\Local\Packages
2014-01-03 22:29 - 2014-01-04 10:56 - 00000000 ____D C:\Users\Martin\AppData\Local\VirtualStore
2014-01-03 22:29 - 2014-01-04 00:05 - 00000000 ___RD C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-01-03 22:29 - 2014-01-04 00:05 - 00000000 ___RD C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-01-03 22:29 - 2014-01-03 22:29 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Adobe
2014-01-03 22:27 - 2014-01-05 18:18 - 00000000 ____D C:\Users\Martin
2014-01-03 22:27 - 2014-01-03 22:27 - 00000020 ___SH C:\Users\Martin\ntuser.ini
2014-01-03 22:27 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-01-03 22:27 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-01-03 22:27 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-01-03 22:27 - 2013-08-22 16:36 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-01-03 22:25 - 2014-01-05 19:03 - 01450458 _____ C:\Windows\WindowsUpdate.log
2014-01-03 22:25 - 2014-01-03 22:25 - 00000000 ____D C:\Windows\CSC
2014-01-03 22:22 - 2014-01-03 22:22 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2013-12-13 10:24 - 2013-12-13 10:24 - 00230912 _____ C:\Windows\system32\clinfo.exe
2013-12-13 10:24 - 2013-12-13 10:24 - 00129536 _____ (AMD) C:\Windows\system32\coinst_13.251.dll
2013-12-13 10:24 - 2013-12-13 10:24 - 00099840 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OpenVideo64.dll
2013-12-13 10:24 - 2013-12-13 10:24 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OVDecode64.dll
2013-12-13 10:24 - 2013-12-13 10:24 - 00083968 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll
2013-12-13 10:24 - 2013-12-13 10:24 - 00073728 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 29382144 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 26352128 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 24860160 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 22157824 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 15716352 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 13207552 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys
2013-12-13 10:23 - 2013-12-13 10:23 - 09753752 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 08927704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 08406024 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 08287008 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 07751920 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 06630232 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 03461040 _____ C:\Windows\SysWOW64\atiumdva.cap
2013-12-13 10:23 - 2013-12-13 10:23 - 03426688 _____ C:\Windows\system32\atiumd6a.cap
2013-12-13 10:23 - 2013-12-13 10:23 - 01318552 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 01187342 _____ C:\Windows\system32\amdocl_as64.exe
2013-12-13 10:23 - 2013-12-13 10:23 - 01144320 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 01100216 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 01061902 _____ C:\Windows\system32\amdocl_ld64.exe
2013-12-13 10:23 - 2013-12-13 10:23 - 00995342 _____ C:\Windows\SysWOW64\amdocl_as32.exe
2013-12-13 10:23 - 2013-12-13 10:23 - 00825344 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00798734 _____ C:\Windows\SysWOW64\amdocl_ld32.exe
2013-12-13 10:23 - 2013-12-13 10:23 - 00721296 _____ C:\Windows\system32\atiicdxx.dat
2013-12-13 10:23 - 2013-12-13 10:23 - 00626176 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys
2013-12-13 10:23 - 2013-12-13 10:23 - 00588288 _____ (AMD) C:\Windows\system32\atieclxx.exe
2013-12-13 10:23 - 2013-12-13 10:23 - 00550456 _____ C:\Windows\SysWOW64\atiapfxx.blb
2013-12-13 10:23 - 2013-12-13 10:23 - 00550456 _____ C:\Windows\system32\atiapfxx.blb
2013-12-13 10:23 - 2013-12-13 10:23 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00412672 _____ C:\Windows\system32\amdmiracast.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00368640 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe
2013-12-13 10:23 - 2013-12-13 10:23 - 00332800 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODE.exe
2013-12-13 10:23 - 2013-12-13 10:23 - 00239616 _____ (AMD) C:\Windows\system32\atiesrxx.exe
2013-12-13 10:23 - 2013-12-13 10:23 - 00234036 _____ C:\Windows\system32\ativvaxy_cik.dat
2013-12-13 10:23 - 2013-12-13 10:23 - 00233776 _____ C:\Windows\system32\ativvaxy_cik_nd.dat
2013-12-13 10:23 - 2013-12-13 10:23 - 00204952 _____ C:\Windows\SysWOW64\ativvsvl.dat
2013-12-13 10:23 - 2013-12-13 10:23 - 00204952 _____ C:\Windows\system32\ativvsvl.dat
2013-12-13 10:23 - 2013-12-13 10:23 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00157144 _____ C:\Windows\SysWOW64\ativvsva.dat
2013-12-13 10:23 - 2013-12-13 10:23 - 00157144 _____ C:\Windows\system32\ativvsva.dat
2013-12-13 10:23 - 2013-12-13 10:23 - 00143304 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00134656 _____ C:\Windows\system32\amdhdl64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00126336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00123392 _____ C:\Windows\SysWOW64\amdhdl32.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00118784 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atibtmon.exe
2013-12-13 10:23 - 2013-12-13 10:23 - 00115512 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00100352 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00098496 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00096768 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00083552 _____ C:\Windows\system32\ativce02.dat
2013-12-13 10:23 - 2013-12-13 10:23 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00074752 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00063488 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00057344 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00051200 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODCLI.exe
2013-12-13 10:23 - 2013-12-13 10:23 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00047887 _____ C:\Windows\atiogl.xml
2013-12-13 10:23 - 2013-12-13 10:23 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00031232 _____ (AMD) C:\Windows\system32\atimuixx.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00003917 _____ C:\Windows\SysWOW64\atipblag.dat
2013-12-13 10:23 - 2013-12-13 10:23 - 00003917 _____ C:\Windows\system32\atipblag.dat

KeežlaB
Level 2.5
Level 2.5
Příspěvky: 319
Registrován: prosinec 13
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - prosím

Příspěvekod KeežlaB » 05 led 2014 19:09

==================== One Month Modified Files and Folders =======

2014-01-05 19:05 - 2014-01-05 19:04 - 00007133 _____ C:\Users\Martin\Desktop\FRST.txt
2014-01-05 19:04 - 2014-01-05 19:04 - 00000000 ____D C:\FRST
2014-01-05 19:03 - 2014-01-03 22:25 - 01450458 _____ C:\Windows\WindowsUpdate.log
2014-01-05 19:00 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\system32\sru
2014-01-05 18:57 - 2014-01-05 18:57 - 01931368 _____ (Farbar) C:\Users\Martin\Desktop\FRST64.exe
2014-01-05 18:25 - 2014-01-03 22:35 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4076941886-1634047963-3464441739-1001
2014-01-05 18:24 - 2014-01-03 22:51 - 00705490 _____ C:\Windows\system32\perfh005.dat
2014-01-05 18:24 - 2014-01-03 22:51 - 00143834 _____ C:\Windows\system32\perfc005.dat
2014-01-05 18:24 - 2013-09-30 05:14 - 01658450 _____ C:\Windows\system32\PerfStringBackup.INI
2014-01-05 18:21 - 2014-01-05 18:09 - 00000000 ____D C:\AdwCleaner
2014-01-05 18:20 - 2014-01-05 18:19 - 00038454 _____ C:\Windows\system32\KMSServer.exe
2014-01-05 18:19 - 2013-09-30 05:02 - 00006070 _____ C:\Windows\PFRO.log
2014-01-05 18:19 - 2013-08-22 15:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2014-01-05 18:18 - 2014-01-03 22:27 - 00000000 ____D C:\Users\Martin
2014-01-05 18:18 - 2013-08-22 14:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2014-01-05 18:09 - 2014-01-03 23:35 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-01-05 18:01 - 2014-01-05 18:01 - 00001125 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-01-05 18:01 - 2014-01-05 18:01 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Malwarebytes
2014-01-05 18:01 - 2014-01-05 18:01 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-05 18:01 - 2014-01-05 18:01 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-05 17:58 - 2014-01-03 22:31 - 00000000 __RDO C:\Users\Martin\SkyDrive
2014-01-05 17:50 - 2014-01-05 17:50 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Martin\Desktop\mbam-setup-1.75.0.1300.exe
2014-01-05 17:49 - 2014-01-05 17:49 - 01233962 _____ C:\Users\Martin\Desktop\adwcleaner.exe
2014-01-05 17:49 - 2014-01-05 17:49 - 00050688 _____ (Atribune.org) C:\Users\Martin\Desktop\ATF-Cleaner.exe
2014-01-05 16:11 - 2014-01-03 22:29 - 00000000 ____D C:\Users\Martin\AppData\Local\Packages
2014-01-05 16:08 - 2014-01-05 16:08 - 00112426 _____ C:\Users\Martin\Downloads\Rozvrh13_14-ledenLVVZ.xlsx
2014-01-05 13:29 - 2014-01-03 22:57 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Skype
2014-01-05 11:30 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\system32\FxsTmp
2014-01-05 10:46 - 2014-01-04 10:36 - 00000000 ____D C:\Users\Martin\AppData\Roaming\TeamViewer
2014-01-05 00:03 - 2013-08-22 15:46 - 00016395 _____ C:\Windows\setupact.log
2014-01-04 18:09 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\AppReadiness
2014-01-04 17:01 - 2014-01-04 14:43 - 00000000 ____D C:\Users\Martin\AppData\Roaming\.minecraft
2014-01-04 16:05 - 2014-01-04 16:04 - 03473752 _____ C:\Users\Martin\Downloads\8.1 Act 3 (x64 x86).rar
2014-01-04 15:18 - 2014-01-04 14:37 - 00000000 ____D C:\Users\Martin\Documents\NetBeansProjects
2014-01-04 15:18 - 2014-01-04 14:14 - 00000000 ___RD C:\Users\Martin\Documents\Divoké kmeny
2014-01-04 15:15 - 2014-01-04 14:47 - 00000000 ____D C:\Users\Martin\AppData\Roaming\FreeFileSync
2014-01-04 15:06 - 2014-01-04 15:06 - 00000000 ____D C:\Users\Martin\Documents\FreeFileSync
2014-01-04 15:03 - 2014-01-04 14:15 - 00000000 ____D C:\Users\Martin\Documents\učebnice
2014-01-04 14:43 - 2014-01-04 14:43 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft
2014-01-04 14:30 - 2014-01-03 22:35 - 00000000 ____D C:\Program Files\KMSpico
2014-01-04 14:00 - 2014-01-03 22:30 - 00000000 ____D C:\Users\Martin\AppData\Local\PackageStaging
2014-01-04 13:56 - 2014-01-04 13:56 - 00001233 _____ C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FreeFileSync.lnk
2014-01-04 13:55 - 2014-01-04 13:54 - 00000000 ____D C:\Program Files\uTorrent
2014-01-04 13:54 - 2014-01-04 13:54 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent
2014-01-04 13:53 - 2014-01-04 13:53 - 00000000 ____D C:\Program Files\FreeFileSync
2014-01-04 13:45 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\PolicyDefinitions
2014-01-04 13:45 - 2013-08-22 15:44 - 00482552 _____ C:\Windows\system32\FNTCACHE.DAT
2014-01-04 12:42 - 2014-01-04 12:42 - 00001191 _____ C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner64.lnk
2014-01-04 12:42 - 2014-01-04 12:42 - 00000000 ____D C:\Program Files\CCleaner
2014-01-04 12:36 - 2014-01-04 12:36 - 00000000 ____D C:\Users\Martin\AppData\Local\ESET
2014-01-04 12:34 - 2014-01-04 12:34 - 00000000 ____D C:\Program Files\TAP-Windows
2014-01-04 12:30 - 2014-01-04 12:22 - 00000000 ____D C:\ProgramData\Microsoft Help
2014-01-04 12:28 - 2014-01-04 12:28 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2014-01-04 12:28 - 2013-09-30 04:54 - 00000000 ____D C:\Windows\ShellNew
2014-01-04 12:28 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2014-01-04 12:27 - 2014-01-04 12:27 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2014-01-04 12:27 - 2014-01-04 12:25 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2014-01-04 12:26 - 2014-01-04 12:26 - 00000000 ____D C:\Users\Martin\AppData\Local\Apps\2.0
2014-01-04 12:25 - 2014-01-04 12:25 - 00000000 ____D C:\Windows\PCHEALTH
2014-01-04 12:25 - 2014-01-04 12:25 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2014-01-04 12:25 - 2014-01-04 12:22 - 00000000 ____D C:\Program Files\Microsoft Office Professional Plus 2013
2014-01-04 12:23 - 2014-01-04 12:23 - 00000000 ____D C:\Users\Martin\Documents\The KMPlayer
2014-01-04 12:23 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\Common Files\System
2014-01-04 12:23 - 2013-08-22 14:25 - 00000167 _____ C:\Windows\win.ini
2014-01-04 12:22 - 2014-01-04 12:22 - 00000000 ____D C:\Users\Martin\AppData\Local\Microsoft Help
2014-01-04 12:22 - 2014-01-04 12:22 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2014-01-04 12:22 - 2014-01-04 12:22 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2014-01-04 12:22 - 2014-01-04 12:22 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2014-01-04 12:21 - 2014-01-04 12:21 - 00000000 __RHD C:\MSOCache
2014-01-04 10:56 - 2014-01-04 10:56 - 00388608 _____ (Trend Micro Inc.) C:\Users\Martin\Downloads\hijackthis.exe
2014-01-04 10:56 - 2014-01-03 22:29 - 00000000 ____D C:\Users\Martin\AppData\Local\VirtualStore
2014-01-04 10:34 - 2014-01-04 10:34 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2014-01-04 09:28 - 2014-01-04 09:28 - 00550371 _____ C:\Users\Martin\Downloads\Autoruns.zip
2014-01-04 07:21 - 2013-08-22 16:36 - 00262144 _____ C:\Windows\system32\config\BCD-Template
2014-01-04 00:05 - 2014-01-04 00:00 - 00000000 ___RD C:\Windows\BrowserChoice
2014-01-04 00:05 - 2014-01-03 22:29 - 00000000 ___RD C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-01-04 00:05 - 2014-01-03 22:29 - 00000000 ___RD C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-01-04 00:00 - 2013-08-22 16:36 - 00000000 ___RD C:\Windows\ToastData
2014-01-04 00:00 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\WinStore
2014-01-04 00:00 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\system32\migwiz
2014-01-04 00:00 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\MediaViewer
2014-01-04 00:00 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\FileManager
2014-01-04 00:00 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\Camera
2014-01-03 23:45 - 2014-01-03 23:44 - 00000000 ____D C:\Windows\system32\MRT
2014-01-03 23:35 - 2014-01-03 23:35 - 00003802 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-01-03 23:25 - 2014-01-03 23:25 - 00000000 ____D C:\Users\Martin\AppData\Roaming\ATI
2014-01-03 23:25 - 2014-01-03 23:25 - 00000000 ____D C:\Users\Martin\AppData\Local\ATI
2014-01-03 23:25 - 2014-01-03 23:25 - 00000000 ____D C:\ProgramData\ATI
2014-01-03 23:14 - 2014-01-03 23:14 - 00000000 ____D C:\ProgramData\ESET
2014-01-03 23:14 - 2014-01-03 23:14 - 00000000 ____D C:\Program Files\ESET
2014-01-03 23:08 - 2014-01-03 23:00 - 00000000 ____D C:\Users\Martin\.nbi
2014-01-03 23:07 - 2014-01-03 23:00 - 00000000 ____D C:\Program Files\NetBeans 7.4
2014-01-03 23:04 - 2014-01-03 23:04 - 00001336 _____ C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\opera.lnk
2014-01-03 23:03 - 2014-01-03 23:03 - 00000496 _____ C:\Windows\SynInst.log
2014-01-03 23:01 - 2014-01-03 23:01 - 00000000 ____D C:\Windows\system32\appmgmt
2014-01-03 22:59 - 2014-01-03 23:00 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-01-03 22:59 - 2014-01-03 23:00 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-01-03 22:59 - 2014-01-03 23:00 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-01-03 22:59 - 2014-01-03 23:00 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-01-03 22:59 - 2014-01-03 22:59 - 00000000 ____D C:\Program Files\Java
2014-01-03 22:57 - 2014-01-03 22:57 - 00000000 ___RD C:\Program Files (x86)\Skype
2014-01-03 22:57 - 2014-01-03 22:57 - 00000000 ____D C:\ProgramData\Skype
2014-01-03 22:57 - 2014-01-03 22:57 - 00000000 ____D C:\Program Files (x86)\Clip2Net
2014-01-03 22:56 - 2014-01-03 22:56 - 00000911 _____ C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Putty.lnk
2014-01-03 22:56 - 2014-01-03 22:56 - 00000000 ____D C:\Users\Martin\AppData\Roaming\WinRAR
2014-01-03 22:50 - 2014-01-03 22:50 - 00000000 ____D C:\Windows\SysWOW64\cs
2014-01-03 22:50 - 2014-01-03 22:50 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-01-03 22:50 - 2014-01-03 22:50 - 00000000 ____D C:\Program Files\WinRAR
2014-01-03 22:50 - 2013-09-30 04:54 - 00000000 ____D C:\Program Files\Windows Journal
2014-01-03 22:50 - 2013-09-30 04:50 - 00000000 ____D C:\Windows\SysWOW64\winrm
2014-01-03 22:50 - 2013-09-30 04:50 - 00000000 ____D C:\Windows\SysWOW64\slmgr
2014-01-03 22:50 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2014-01-03 22:50 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\Windows Defender
2014-01-03 22:50 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2014-01-03 22:50 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2014-01-03 22:50 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\SysWOW64\oobe
2014-01-03 22:50 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\servicing
2014-01-03 22:49 - 2014-01-03 22:51 - 00296666 _____ C:\Windows\system32\perfi005.dat
2014-01-03 22:49 - 2014-01-03 22:51 - 00038682 _____ C:\Windows\system32\perfd005.dat
2014-01-03 22:49 - 2014-01-03 22:49 - 00000000 ____D C:\Windows\system32\cs
2014-01-03 22:49 - 2013-09-30 04:50 - 00000000 ____D C:\Windows\SysWOW64\WCN
2014-01-03 22:49 - 2013-09-30 04:50 - 00000000 ____D C:\Windows\SysWOW64\Printing_Admin_Scripts
2014-01-03 22:49 - 2013-09-30 04:50 - 00000000 ____D C:\Windows\system32\winrm
2014-01-03 22:49 - 2013-09-30 04:50 - 00000000 ____D C:\Windows\system32\WCN
2014-01-03 22:49 - 2013-09-30 04:50 - 00000000 ____D C:\Windows\system32\slmgr
2014-01-03 22:49 - 2013-09-30 04:50 - 00000000 ____D C:\Windows\system32\Printing_Admin_Scripts
2014-01-03 22:49 - 2013-08-22 16:36 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2014-01-03 22:49 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\SysWOW64\Com
2014-01-03 22:49 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\system32\SystemResetPlatform
2014-01-03 22:49 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\system32\Com
2014-01-03 22:49 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\IME
2014-01-03 22:49 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\Help
2014-01-03 22:49 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\SysWOW64\Dism
2014-01-03 22:49 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\system32\Sysprep
2014-01-03 22:49 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\system32\oobe
2014-01-03 22:49 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\system32\Dism
2014-01-03 22:46 - 2014-01-03 22:46 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Opera Software
2014-01-03 22:46 - 2014-01-03 22:46 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer
2014-01-03 22:46 - 2014-01-03 22:46 - 00000000 ____D C:\Users\Martin\AppData\Local\Opera Software
2014-01-03 22:46 - 2014-01-03 22:46 - 00000000 ____D C:\Program Files (x86)\The KMPlayer
2014-01-03 22:45 - 2014-01-03 22:45 - 00000000 ____D C:\Program Files (x86)\Opera
2014-01-03 22:44 - 2014-01-03 22:44 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Macromedia
2014-01-03 22:35 - 2014-01-03 22:35 - 00060601 _____ C:\Windows\SysWOW64\CCCInstall_201401032235217082.log
2014-01-03 22:35 - 2014-01-03 22:35 - 00003706 _____ C:\Windows\System32\Tasks\AutoPico Daily Restart
2014-01-03 22:35 - 2014-01-03 22:35 - 00000000 ____D C:\ProgramData\AMD
2014-01-03 22:35 - 2014-01-03 22:35 - 00000000 ____D C:\Program Files\ATI Technologies
2014-01-03 22:35 - 2014-01-03 22:35 - 00000000 ____D C:\Program Files (x86)\Advanced Micro Devices, Inc
2014-01-03 22:35 - 2014-01-03 22:34 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2014-01-03 22:34 - 2014-01-03 22:34 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2014-01-03 22:34 - 2014-01-03 22:34 - 00000000 ____D C:\ProgramData\Package Cache
2014-01-03 22:34 - 2014-01-03 22:34 - 00000000 ____D C:\Program Files\AMD
2014-01-03 22:34 - 2014-01-03 22:34 - 00000000 ____D C:\AMD
2014-01-03 22:34 - 2014-01-03 22:34 - 00000000 _____ C:\Windows\ativpsrm.bin
2014-01-03 22:32 - 2014-01-03 22:32 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01009.Wdf
2014-01-03 22:29 - 2014-01-04 07:21 - 00000000 ____D C:\Windows\Panther
2014-01-03 22:29 - 2014-01-03 22:29 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Adobe
2014-01-03 22:27 - 2014-01-03 22:27 - 00000020 ___SH C:\Users\Martin\ntuser.ini
2014-01-03 22:25 - 2014-01-03 22:25 - 00000000 ____D C:\Windows\CSC
2014-01-03 22:23 - 2013-08-22 16:37 - 00002664 _____ C:\Windows\DtcInstall.log
2014-01-03 22:23 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\system32\Recovery
2014-01-03 22:22 - 2014-01-03 22:22 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2014-01-03 15:44 - 2014-01-03 23:11 - 00000084 _____ C:\Users\Martin\Desktop\windows.txt
2013-12-30 18:14 - 2014-01-03 23:11 - 00050368 _____ C:\Users\Martin\Documents\důležité záložky.html
2013-12-30 10:44 - 2014-01-03 23:11 - 00090283 _____ C:\Users\Martin\Documents\záložky_30.12.13.html
2013-12-19 20:39 - 2014-01-04 14:15 - 00000700 _____ C:\Users\Martin\Documents\Verifier.txt
2013-12-13 10:24 - 2013-12-13 10:24 - 00230912 _____ C:\Windows\system32\clinfo.exe
2013-12-13 10:24 - 2013-12-13 10:24 - 00129536 _____ (AMD) C:\Windows\system32\coinst_13.251.dll
2013-12-13 10:24 - 2013-12-13 10:24 - 00099840 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OpenVideo64.dll
2013-12-13 10:24 - 2013-12-13 10:24 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OVDecode64.dll
2013-12-13 10:24 - 2013-12-13 10:24 - 00083968 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll
2013-12-13 10:24 - 2013-12-13 10:24 - 00073728 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 29382144 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 26352128 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 24860160 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 22157824 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 15716352 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 13207552 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys
2013-12-13 10:23 - 2013-12-13 10:23 - 09753752 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 08927704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 08406024 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 08287008 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 07751920 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 06630232 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 03461040 _____ C:\Windows\SysWOW64\atiumdva.cap
2013-12-13 10:23 - 2013-12-13 10:23 - 03426688 _____ C:\Windows\system32\atiumd6a.cap
2013-12-13 10:23 - 2013-12-13 10:23 - 01318552 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 01187342 _____ C:\Windows\system32\amdocl_as64.exe
2013-12-13 10:23 - 2013-12-13 10:23 - 01144320 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 01100216 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 01061902 _____ C:\Windows\system32\amdocl_ld64.exe
2013-12-13 10:23 - 2013-12-13 10:23 - 00995342 _____ C:\Windows\SysWOW64\amdocl_as32.exe
2013-12-13 10:23 - 2013-12-13 10:23 - 00825344 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00798734 _____ C:\Windows\SysWOW64\amdocl_ld32.exe
2013-12-13 10:23 - 2013-12-13 10:23 - 00721296 _____ C:\Windows\system32\atiicdxx.dat
2013-12-13 10:23 - 2013-12-13 10:23 - 00626176 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys
2013-12-13 10:23 - 2013-12-13 10:23 - 00588288 _____ (AMD) C:\Windows\system32\atieclxx.exe
2013-12-13 10:23 - 2013-12-13 10:23 - 00550456 _____ C:\Windows\SysWOW64\atiapfxx.blb
2013-12-13 10:23 - 2013-12-13 10:23 - 00550456 _____ C:\Windows\system32\atiapfxx.blb
2013-12-13 10:23 - 2013-12-13 10:23 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00412672 _____ C:\Windows\system32\amdmiracast.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00368640 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe
2013-12-13 10:23 - 2013-12-13 10:23 - 00332800 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODE.exe
2013-12-13 10:23 - 2013-12-13 10:23 - 00239616 _____ (AMD) C:\Windows\system32\atiesrxx.exe
2013-12-13 10:23 - 2013-12-13 10:23 - 00234036 _____ C:\Windows\system32\ativvaxy_cik.dat
2013-12-13 10:23 - 2013-12-13 10:23 - 00233776 _____ C:\Windows\system32\ativvaxy_cik_nd.dat
2013-12-13 10:23 - 2013-12-13 10:23 - 00204952 _____ C:\Windows\SysWOW64\ativvsvl.dat
2013-12-13 10:23 - 2013-12-13 10:23 - 00204952 _____ C:\Windows\system32\ativvsvl.dat
2013-12-13 10:23 - 2013-12-13 10:23 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00157144 _____ C:\Windows\SysWOW64\ativvsva.dat
2013-12-13 10:23 - 2013-12-13 10:23 - 00157144 _____ C:\Windows\system32\ativvsva.dat
2013-12-13 10:23 - 2013-12-13 10:23 - 00143304 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00134656 _____ C:\Windows\system32\amdhdl64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00126336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00123392 _____ C:\Windows\SysWOW64\amdhdl32.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00118784 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atibtmon.exe
2013-12-13 10:23 - 2013-12-13 10:23 - 00115512 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00100352 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00098496 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00096768 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00083552 _____ C:\Windows\system32\ativce02.dat
2013-12-13 10:23 - 2013-12-13 10:23 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00074752 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00063488 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00057344 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00051200 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODCLI.exe
2013-12-13 10:23 - 2013-12-13 10:23 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00047887 _____ C:\Windows\atiogl.xml
2013-12-13 10:23 - 2013-12-13 10:23 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00031232 _____ (AMD) C:\Windows\system32\atimuixx.dll
2013-12-13 10:23 - 2013-12-13 10:23 - 00003917 _____ C:\Windows\SysWOW64\atipblag.dat
2013-12-13 10:23 - 2013-12-13 10:23 - 00003917 _____ C:\Windows\system32\atipblag.dat

Some content of TEMP:
====================
C:\Users\Martin\AppData\Local\Temp\Quarantine.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-01-03 22:21

==================== End Of Log ============================

KeežlaB
Level 2.5
Level 2.5
Příspěvky: 319
Registrován: prosinec 13
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - prosím

Příspěvekod KeežlaB » 05 led 2014 19:09

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 04-01-2014
Ran by Martin at 2014-01-05 19:05:49
Running from C:\Users\Martin\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: ESET NOD32 Antivirus 7.0 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET NOD32 Antivirus 7.0 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}

==================== Installed Programs ======================

Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170 - Adobe Systems Incorporated)
AMD Catalyst Control Center (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden
AMD Fuel (Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center (x32 Version: 1.00.0000 - )
Catalyst Control Center InstallProxy (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Localization All (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Czech (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Danish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Dutch (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help English (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Finnish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help French (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help German (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Greek (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Hungarian (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Standard (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Traditional (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Italian (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Japanese (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Korean (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Norwegian (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Polish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Portuguese (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Russian (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Spanish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Swedish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Thai (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Turkish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
ccc-utility64 (Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden
CCleaner (Version: 4.04 - Piriform)
Clip2Net 0.8.2b (x32 Version: - AU78)
ESET NOD32 Antivirus (Version: 7.0.302.26 - ESET, spol s r. o.)
FreeFileSync 6.1 (x32 Version: 6.1 - Zenju)
Java 7 Update 45 (64-bit) (Version: 7.0.450 - Oracle)
Java SE Development Kit 7 Update 45 (64-bit) (Version: 1.7.0.450 - Oracle)
KMSpico v9.0.5.20131112 (Version: 9.0.5.20131112 - )
Malwarebytes Anti-Malware verze 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation)
Microsoft Access MUI (Czech) 2013 (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft DCF MUI (Czech) 2013 (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Excel MUI (Czech) 2013 (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Groove MUI (Czech) 2013 (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (Czech) 2013 (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Lync MUI (Czech) 2013 (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Office 32-bit Components 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Korrekturhilfen 2013 - Deutsch (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (Czech) 2013 (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (Czech) 2013 (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (Version: 15.0.4420.1017 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Proofing (Czech) 2013 (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - English (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (Czech) 2013 (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Czech) 2013 (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft OneNote MUI (Czech) 2013 (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (Czech) 2013 (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (Czech) 2013 (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (Czech) 2013 (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (x32 Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (x32 Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Word MUI (Czech) 2013 (Version: 15.0.4454.1004 - Microsoft Corporation) Hidden
Minecraft1.7.2 (x32 Version: - )
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
NetBeans IDE 7.4 (Version: 7.4 - NetBeans.org)
Opera Stable 18.0.1284.68 (x32 Version: 18.0.1284.68 - Opera Software ASA)
Skype™ 6.11 (x32 Version: 6.11.102 - Skype Technologies S.A.)
TAP-Windows 9.9.2 (Version: 9.9.2 - )
TeamViewer 9 (x32 Version: 9.0.24951 - TeamViewer)
The KMPlayer (remove only) (x32 Version: - )
WinRAR 5.00 (64-bit) (Version: 5.00.0 - win.rar GmbH)

==================== Restore Points =========================

03-01-2014 21:26:14 Windows Modules Installer

==================== Hosts content: ==========================

2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

Task: {0165DE25-8B8C-493A-824E-51E9128DC651} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office Professional Plus 2013\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {2866EAF7-A52B-4C01-8291-2C1C9BAAF343} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [2013-11-12] ()
Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)
Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\System32\tzsync.exe [2013-08-22] (Microsoft Corporation)
Task: {43540606-6C07-46A2-BFD4-0CD03785D486} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\System32\MRT.exe [2013-12-01] (Microsoft Corporation)
Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance
Task: {4E63E5D9-4FA9-4750-96EA-3552487BC884} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-01-03] (Adobe Systems Incorporated)
Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task
Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task
Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask
Task: {D16C613E-91F3-49FB-906A-DFED37317C6F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office Professional Plus 2013\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization
Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE
Task: {F0B3D903-AA61-46FF-896C-5F914EDDDC93} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\microsoft shared\OFFICE15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

==================== Loaded Modules (whitelisted) =============

2014-01-04 13:59 - 2014-01-04 14:00 - 00183808 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe\ErrorReporting.dll
2014-01-03 22:45 - 2013-12-12 10:16 - 00886624 _____ () C:\Program Files (x86)\Opera\18.0.1284.68\libglesv2.dll
2014-01-03 22:45 - 2013-12-12 10:16 - 00108896 _____ () C:\Program Files (x86)\Opera\18.0.1284.68\libegl.dll
2014-01-03 22:45 - 2013-12-12 10:16 - 00879968 _____ () C:\Program Files (x86)\Opera\18.0.1284.68\ffmpegsumo.dll

==================== Alternate Data Streams (whitelisted) =========

AlternateDataStreams: C:\Users\Martin\SkyDrive:ms-properties

==================== Safe Mode (whitelisted) ===================


==================== Faulty Device Manager Devices =============

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Broadcom 2070 Bluetooth
Description: Broadcom 2070 Bluetooth
Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974}
Manufacturer: Broadcom
Service: BTHUSB
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (01/05/2014 06:21:30 PM) (Source: Software Protection Platform Service) (User: )
Description: Získání lístku pravosti se u šablony s ID {99d92734-d682-4d71-983e-d6ec3f16059f} nezdařilo (hr=0xC004C4B3)

Error: (01/05/2014 06:21:13 PM) (Source: Software Protection Platform Service) (User: )
Description: Získání lístku pravosti se u šablony s ID {99d92734-d682-4d71-983e-d6ec3f16059f} nezdařilo (hr=0xC004C4B3)

Error: (01/05/2014 06:21:09 PM) (Source: Software Protection Platform Service) (User: )
Description: Získání lístku pravosti se u šablony s ID {99d92734-d682-4d71-983e-d6ec3f16059f} nezdařilo (hr=0xC004C4B3)

Error: (01/05/2014 06:21:04 PM) (Source: Software Protection Platform Service) (User: )
Description: Získání lístku pravosti se u šablony s ID {99d92734-d682-4d71-983e-d6ec3f16059f} nezdařilo (hr=0xC004C4B3)

Error: (01/05/2014 06:20:55 PM) (Source: Software Protection Platform Service) (User: )
Description: Získání lístku pravosti se u šablony s ID {99d92734-d682-4d71-983e-d6ec3f16059f} nezdařilo (hr=0xC004C4B3)

Error: (01/05/2014 06:20:14 PM) (Source: .NET Runtime) (User: )
Description: Application: Service_KMS.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.ArgumentOutOfRangeException
Stack:
at System.Collections.ArrayList.RemoveAt(Int32)
at Service_KMS.WMISoftwareLicense.Activate(System.Collections.ArrayList)
at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
at System.Threading.ThreadHelper.ThreadStart()

Error: (01/05/2014 06:20:02 PM) (Source: Application Error) (User: )
Description: Název chybující aplikace: Service_KMS.exe, verze: 10.2.1.0, časové razítko: 0x5282fb25
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0x00000000
Posun chyby: 0x00007fff7ecf245c
ID chybujícího procesu: 0x6a0
Čas spuštění chybující aplikace: 0xService_KMS.exe0
Cesta k chybující aplikaci: Service_KMS.exe1
Cesta k chybujícímu modulu: Service_KMS.exe2
ID zprávy: Service_KMS.exe3
Úplný název chybujícího balíčku: Service_KMS.exe4
ID aplikace související s chybujícím balíčkem: Service_KMS.exe5

Error: (01/05/2014 06:18:41 PM) (Source: Microsoft-Windows-Immersive-Shell) (User: MARTIN)
Description: Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (01/05/2014 06:00:51 PM) (Source: Windows Search Service) (User: )
Description: Službě Windows Search se nepodařilo zpracovat seznam zahrnutých a vyloučených umístění, a to s chybou <30, 0x80040d07, iehistory://{S-1-5-21-4076941886-1634047963-3464441739-1001}/>.

Error: (01/05/2014 05:59:42 PM) (Source: Software Protection Platform Service) (User: )
Description: Získání lístku pravosti se u šablony s ID {99d92734-d682-4d71-983e-d6ec3f16059f} nezdařilo (hr=0xC004C4B3)


System errors:
=============
Error: (01/05/2014 06:20:14 PM) (Source: Service Control Manager) (User: )
Description: Služba Service KMSELDI byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (01/05/2014 06:20:08 PM) (Source: Service Control Manager) (User: )
Description: Služba KMS Server Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (01/05/2014 06:18:36 PM) (Source: DCOM) (User: MARTIN)
Description: Microsoft.WindowsLive.Mail.AppXchpnq3xrg3grbgjnhp88jn3v9r1xskxr.mca

Error: (01/05/2014 05:58:26 PM) (Source: Service Control Manager) (User: )
Description: Služba Service KMSELDI byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (01/05/2014 05:57:43 PM) (Source: EventLog) (User: )
Description: Předchozí vypnutí systému (17:40:45, ‎5. ‎1. ‎2014) bylo neočekávané.

Error: (01/05/2014 05:23:10 PM) (Source: NetBT) (User: )
Description: Název WORKGROUP :1d nelze zaregistrovat v rozhraní s IP adresou 192.168.1.2.
Počítač s IP adresou 192.168.1.3 nepovolil získání názvu
tímto počítačem.

Error: (01/05/2014 05:01:30 PM) (Source: Service Control Manager) (User: )
Description: Služba Service KMSELDI byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (01/05/2014 05:00:46 PM) (Source: EventLog) (User: )
Description: Předchozí vypnutí systému (16:42:00, ‎5. ‎1. ‎2014) bylo neočekávané.

Error: (01/05/2014 04:02:53 PM) (Source: Service Control Manager) (User: )
Description: Služba Service KMSELDI byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (01/05/2014 01:37:37 PM) (Source: EventLog) (User: )
Description: Předchozí vypnutí systému (13:36:33, ‎5. ‎1. ‎2014) bylo neočekávané.


Microsoft Office Sessions:
=========================
Error: (01/05/2014 06:21:30 PM) (Source: Software Protection Platform Service)(User: )
Description: hr=0xC004C4B3{99d92734-d682-4d71-983e-d6ec3f16059f}

Error: (01/05/2014 06:21:13 PM) (Source: Software Protection Platform Service)(User: )
Description: hr=0xC004C4B3{99d92734-d682-4d71-983e-d6ec3f16059f}

Error: (01/05/2014 06:21:09 PM) (Source: Software Protection Platform Service)(User: )
Description: hr=0xC004C4B3{99d92734-d682-4d71-983e-d6ec3f16059f}

Error: (01/05/2014 06:21:04 PM) (Source: Software Protection Platform Service)(User: )
Description: hr=0xC004C4B3{99d92734-d682-4d71-983e-d6ec3f16059f}

Error: (01/05/2014 06:20:55 PM) (Source: Software Protection Platform Service)(User: )
Description: hr=0xC004C4B3{99d92734-d682-4d71-983e-d6ec3f16059f}

Error: (01/05/2014 06:20:14 PM) (Source: .NET Runtime)(User: )
Description: Application: Service_KMS.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.ArgumentOutOfRangeException
Stack:
at System.Collections.ArrayList.RemoveAt(Int32)
at Service_KMS.WMISoftwareLicense.Activate(System.Collections.ArrayList)
at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
at System.Threading.ThreadHelper.ThreadStart()

Error: (01/05/2014 06:20:02 PM) (Source: Application Error)(User: )
Description: Service_KMS.exe10.2.1.05282fb25unknown0.0.0.0000000000000000000007fff7ecf245c6a001cf0a3a4b3fd03eC:\Program Files\KMSpico\Service_KMS.exeunknown9bdd1034-762d-11e3-825d-1cc1de0be4a1

Error: (01/05/2014 06:18:41 PM) (Source: Microsoft-Windows-Immersive-Shell)(User: MARTIN)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2144927141

Error: (01/05/2014 06:00:51 PM) (Source: Windows Search Service)(User: )
Description: 300x80040d07iehistory://{S-1-5-21-4076941886-1634047963-3464441739-1001}/

Error: (01/05/2014 05:59:42 PM) (Source: Software Protection Platform Service)(User: )
Description: hr=0xC004C4B3{99d92734-d682-4d71-983e-d6ec3f16059f}


==================== Memory info ===========================

Percentage of memory in use: 45%
Total physical RAM: 2806.43 MB
Available physical RAM: 1540.4 MB
Total Pagefile: 4086.43 MB
Available Pagefile: 2619.63 MB
Total Virtual: 131072 MB
Available Virtual: 131071.8 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:150.05 GB) (Free:128.78 GB) NTFS
Drive d: (Místní disk) (Fixed) (Total:315.37 GB) (Free:297.52 GB) NTFS
Drive e: () (Removable) (Total:14.9 GB) (Free:10.38 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 2C8B1073)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=150 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=315 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (Size: 15 GB) (Disk ID: 00000000)
Partition 1: (Active) - (Size=15 GB) - (Type=0B)

==================== End Of Log ============================

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - prosím

Příspěvekod jaro3 » 07 led 2014 15:51

V možnostech složky si povol zobrazování skrytých souborů a složek+ odškrtni zatržítko skrýt chráněné soubory operačního systému

Toto otestuj na Virustotal
C:\Windows\System32\KMSServer.exe
C:\Program Files\KMSpico\Service_KMS.exe
C:\Windows\System32\drivers\ADP80XX.SYS
C:\Windows\SynInst.log

Klikni vpravo od okénka na Vybrat a v Exploreru najdi požadovaný soubor v Tvém PC. Označ ho myší a klikni na Otevřít , poté klikni na Send File. Pokud už byl soubor testován , objeví se okno ve kterém klikni na Reanalyze. Soubor se začne postupně testovat více antivirovými programy. Až skončí test posledního antiviru , objeví se nahoře result a červeně počet nákaz , např. 0/43 , nebo 1/43. Pak zkopíruj myší odkaz na tuto stránku a vlož ji do svého příspěvku.

Nebo na:
http://www.virscan.org/



Odinstaluj:
C:\Program Files\KMSpico
Zlegalizuj si Windows!!!

Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.

Kód: Vybrat vše

start
C:\Windows\system32\FxsTmp
C:\Program Files\KMSpico
end

(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).

Ulož jej na na plochu jako fixlist.txt.

Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na flash disk (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

KeežlaB
Level 2.5
Level 2.5
Příspěvky: 319
Registrován: prosinec 13
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - prosím

Příspěvekod KeežlaB » 07 led 2014 16:08

Tito jsem nenašel, a proto nemohl otestovat...

C:\Windows\System32\KMSServer.exe
C:\Windows\System32\drivers\ADP80XX.SYS

jinak zde:
https://www.virustotal.com/cs/file/a82b ... 389106780/
https://www.virustotal.com/cs/file/fd99 ... 389107104/

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - prosím

Příspěvekod memphisto » 07 led 2014 16:10

Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je oznaèen pro odstranění, stačí restartovat počítač.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

KeežlaB
Level 2.5
Level 2.5
Příspěvky: 319
Registrován: prosinec 13
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - prosím

Příspěvekod KeežlaB » 07 led 2014 16:25

Objevuje se mi tato hláška a nepustí mě dál.. Ani restart nepomohl..
Přílohy
Eror.png
Eror.png (8.37 KiB) Zobrazeno 483 x

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - prosím

Příspěvekod jaro3 » 07 led 2014 16:48

ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall

Vyčisti systém CCleanerem

Stáhni si OTC

na plochu. Poklepej na něj. Potom klikni na Clean up!.
Restartuj PC , pokud Ti bude doporučeno.

Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah tohoto scriptu níže.

Kód: Vybrat vše

() C:\Windows\System32\KMSServer.exe
S2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [686592 2013-11-12] ()
C:\Windows\system32\KMSServer.exe
C:\Program Files\KMSpico
C:\Windows\System32\Tasks\AutoPico Daily Restart
C:\Windows\system32\KMSServer.exe
C:\Windows\system32\FxsTmp
C:\Windows\System32\drivers\ADP80XX.SYS

(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).

Ulož jej na na plochu jako fixlist.txt


Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na flash disk (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 103 hostů