prosím kontrolu logu Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosím kontrolu logu

Příspěvekod jaro3 » 03 srp 2014 18:12

Zavři ostatní aplikace a prohlížeče, odpoj se od netu a fixni v HJT:
Návod

Kód: Vybrat vše

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"


Stáhni si Memtest:

Políčko , ve kterém je napsáno:
All unused RAM -ponech , jak je.
-dej Start , nech nejméně 2h běžet , pokud bude po 2h stále 0 errors , jsou v pořádku.


Ještě zkontrolovat HDD na chyby ,popř. zkusit jeho defragmentaci ..


Stáhni si CrystalDiskInfo
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Reklama
Uživatelský avatar
Varg
Level 3.5
Level 3.5
Příspěvky: 701
Registrován: leden 07
Bydliště: Lamí hnízdo
Pohlaví: Muž
Stav:
Offline

Re: prosím kontrolu logu

Příspěvekod Varg » 03 srp 2014 19:17

Ahoj.
V hjt mně to smázlo jen 3 položky.

U memtestu mně to píše něco že nelze spustit pokud není pro verze
a tady crystal log:

----------------------------------------------------------------------------
CrystalDiskInfo 6.1.13 (C) 2008-2014 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 8.1 [6.3 Build 9600] (x64)
Date : 2014/08/03 19:13:11

-- Controller Map ----------------------------------------------------------
+ ATA Channel 0 (0) [ATA]
- WDC WD10EZEX-75ZF5A0 ATA Device
+ ATA Channel 1 (1) [ATA]
- HL-DT-ST DVDRAM GH24NS95 ATA Device
+ PCI Standardní dvoukanálový řadič IDE [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)
+ PCI Standardní dvoukanálový řadič IDE [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)
- Řadič prostorů úložišť [SCSI]
+ Virtual CloneDrive [SCSI]
- ELBY CLONEDRIVE SCSI CdRom Device
- ELBY CLONEDRIVE SCSI CdRom Device

-- Disk List ---------------------------------------------------------------
(1) WDC WD10EZEX-75ZF5A0 : 1000,2 GB [0/0/0, pd1] - wd

----------------------------------------------------------------------------
(1) WDC WD10EZEX-75ZF5A0
----------------------------------------------------------------------------
Model : WDC WD10EZEX-75ZF5A0
Firmware : 80.00A80
Serial Number : WD-WCC1S2905666
Disk Size : 1000,2 GB (8,4/137,4/1000,2/1000,2)
Buffer Size : Neznámy údaj
Queue Depth : 32
# of Sectors : 1953525168
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/600 | SATA/600
Power On Hours : 4008 hod.
Power On Count : 1045 krát
Host Reads : 14467 GB
Host Writes : 11415 GB
Temperature : 32 C (89 F)
Health Status : Dobrý
Features : S.M.A.R.T., 48bit LBA, NCQ
APM Level : ----
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000000 Počet chyb čtení
03 176 173 _21 000000000898 Čas na roztočení ploten
04 _99 _99 __0 000000000417 Počet spuštění/zastavení
05 200 200 140 000000000000 Počet přemapovaných sektorů
07 200 200 __0 000000000000 Počet chybných hledání
09 _95 _95 __0 000000000FA8 Hodin v činnosti
0A 100 100 __0 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 __0 000000000000 Počet pokusů o překalibrování
0C _99 _99 __0 000000000415 Počet cyklů zapnutí zařízení
C0 200 200 __0 000000000016 Počet vypnutí disku
C1 200 200 __0 000000000400 Počet cyklů načítání/vymazání
C2 111 105 __0 000000000020 Teplota
C4 200 200 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 200 200 __0 000000000000 Počet podezřelých sektorů
C6 200 200 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000001 Počet chyb v kontrolním součtu UltraDMA
C8 200 200 __0 000000000000 Počet chyb při zápisu sektorů
F0 _95 _95 __0 000000000EAF Čas nastavování hlaviček - v hodinách
F1 200 200 __0 000592E80103 Total Host Writes
F2 200 200 __0 000710643CA4 Total Host Reads

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 427A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2057 442D 5743 4331 5332 3930 3536 3636
020: 0000 0000 0000 3830 2E30 3041 3830 5744 4320 5744
030: 3130 455A 4558 2D37 355A 4635 4130 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4001 0000 0000 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 970E 0006 004C 0040
080: 01FE 0000 746B 7D61 4123 7469 BC41 4123 407F 0036
090: 0036 0000 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 6DB0 7470 0000 0000 0000 0000 6003 0000 5001 4EE2
110: B2D3 3D05 0000 0000 0000 0000 0000 0000 0000 4018
120: 4018 0000 0000 0000 0000 0000 0000 0000 0029 0400
130: 0001 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0004 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 30B5 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
220: 0000 0000 103E 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 1000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 54A5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 2F 00 C8 C8 00 00 00 00 00 00 00 03 27
010: 00 B0 AD 98 08 00 00 00 00 00 04 32 00 63 63 17
020: 04 00 00 00 00 00 05 33 00 C8 C8 00 00 00 00 00
030: 00 00 07 2E 00 C8 C8 00 00 00 00 00 00 00 09 32
040: 00 5F 5F A8 0F 00 00 00 00 00 0A 32 00 64 64 00
050: 00 00 00 00 00 00 0B 32 00 64 64 00 00 00 00 00
060: 00 00 0C 32 00 63 63 15 04 00 00 00 00 00 C0 32
070: 00 C8 C8 16 00 00 00 00 00 00 C1 32 00 C8 C8 00
080: 04 00 00 00 00 00 C2 22 00 6F 69 20 00 00 00 00
090: 00 00 C4 32 00 C8 C8 00 00 00 00 00 00 00 C5 32
0A0: 00 C8 C8 00 00 00 00 00 00 00 C6 30 00 C8 C8 00
0B0: 00 00 00 00 00 00 C7 32 00 C8 C8 01 00 00 00 00
0C0: 00 00 C8 08 00 C8 C8 00 00 00 00 00 00 00 F0 32
0D0: 00 5F 5F AF 0E 00 00 00 00 00 F1 32 00 C8 C8 03
0E0: 01 E8 92 05 00 00 F2 32 00 C8 C8 A4 3C 64 10 07
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 82 00 9C 27 01 7B
170: 03 00 01 00 02 75 05 00 00 00 00 00 00 00 00 00
180: 00 00 01 02 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 F1

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 33 C8 C8 00 00 00 00 00 00 00 00 03 15
010: 00 00 00 00 00 00 00 00 00 00 04 00 00 00 00 00
020: 00 00 00 00 00 00 05 8C 00 00 00 00 00 00 00 00
030: 00 00 07 00 C8 C8 00 00 00 00 00 00 00 00 09 00
040: 00 00 00 00 00 00 00 00 00 00 0A 00 00 00 00 00
050: 00 00 00 00 00 00 0B 00 00 00 00 00 00 00 00 00
060: 00 00 0C 00 00 00 00 00 00 00 00 00 00 00 C0 00
070: 00 00 00 00 00 00 00 00 00 00 C1 00 00 00 00 00
080: 00 00 00 00 00 00 C2 00 00 00 00 00 00 00 00 00
090: 00 00 C4 00 00 00 00 00 00 00 00 00 00 00 C5 00
0A0: 00 00 00 00 00 00 00 00 00 00 C6 00 00 00 00 00
0B0: 00 00 00 00 00 00 C7 00 00 00 00 00 00 00 00 00
0C0: 00 00 C8 00 C8 C8 00 00 00 00 00 00 00 00 F0 00
0D0: 00 00 00 00 00 00 00 00 00 00 F1 00 00 00 00 00
0E0: 00 00 00 00 00 00 F2 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 3A

Uživatelský avatar
Varg
Level 3.5
Level 3.5
Příspěvky: 701
Registrován: leden 07
Bydliště: Lamí hnízdo
Pohlaví: Muž
Stav:
Offline

Re: prosím kontrolu logu

Příspěvekod Varg » 03 srp 2014 19:38

Zeptám se ještě jako lama..
Po Tvém doporučení na odpojení od netu a následném připojení se začal comp chovat
normálně.Můžu psát a okna přestali problikávat.
Je to možné?

Uživatelský avatar
Varg
Level 3.5
Level 3.5
Příspěvky: 701
Registrován: leden 07
Bydliště: Lamí hnízdo
Pohlaví: Muž
Stav:
Offline

Re: prosím kontrolu logu

Příspěvekod Varg » 04 srp 2014 07:22

Tak změna.
Ráno zapnu pc a vše opět v háji.
Okna blikají,psát se nedá a jakákoliv hra nebo pgm padá do lišty.
Odpojil jsem a následně zapojil net a už to nepomohlo.

Při odpojeném internetu se ovšem pc chová naprosto normálně.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosím kontrolu logu

Příspěvekod jaro3 » 04 srp 2014 09:36

Zkusil si reset routeru? Myslím do továrního nastavení.


Prosím stáhni příslušnou verzi programu pro Tvůj systém 32-bit/64-bit FarbarRecovery Scan Tool (FrSt)
32bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/81/
64bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/82/
a ulož jej na plochu. ,pak spusť FrSt.
Potvrď způsob užití.
Neměň žádné z výchozích nastavení a klikni na položku „Scan“ („Skenovat“) .Když je skenování dokončeno, ukážou se dva logy = FRST.txt a Addition.txt a uloží se na ploše.Prosím zkopíruj sem celý jejich obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Varg
Level 3.5
Level 3.5
Příspěvky: 701
Registrován: leden 07
Bydliště: Lamí hnízdo
Pohlaví: Muž
Stav:
Offline

Re: prosím kontrolu logu

Příspěvekod Varg » 04 srp 2014 13:14

Router jsem upřímně ještě neresetoval mám tak učinit?

Tady oba logy:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-08-2014
Ran by Petr (administrator) on PETRMALENKA on 04-08-2014 13:11:18
Running from C:\Users\Petr\Desktop
Platform: Windows 8.1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor)
HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation)
HKLM-x32\...\Run: [HDAudDeck] => C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [5123216 2012-06-08] (VIA)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKLM-x32\...\Run: [NWEReboot] => [X]
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-07-29] (AVAST Software)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [NPSStartup] => [X]
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-11] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
ShellIconOverlayIdentifiers: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Petr\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll (Microsoft Corporation)
ShellIconOverlayIdentifiers: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Petr\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll (Microsoft Corporation)
ShellIconOverlayIdentifiers: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Petr\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll (Microsoft Corporation)
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: GDriveBlacklistedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedEditOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedViewOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSyncedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSyncingOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers-x32: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Petr\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Petr\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Petr\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
SearchScopes: HKLM-x32 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Free Download Manager -> {CC59E0F9-7E43-44FA-9FAA-8377850BF205} -> C:\Program Files (x86)\Free Download Manager\iefdm2.dll (FreeDownloadManager.ORG)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 83.240.0.135 192.168.0.1

FireFox:
========
FF ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\iq10j0za.default
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: www.google.com
FF Keyword.URL: https://www.google.com/search
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.65.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.65.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File
FF Plugin-x32: @videolan.org/vlc,version=2.0.7 -> C:\Program Files (x86)\Free Media Player\npvlc.dll No File
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll ()
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-10-26]

Chrome:
=======
CHR DefaultSearchKeyword: seznam.cz
CHR DefaultSearchProvider: Seznam
CHR DefaultSearchURL: http://search.seznam.cz/?q={searchTerms}
CHR DefaultNewTabURL:
CHR Extension: (Docs) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-08-04]
CHR Extension: (Disk Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-08-04]
CHR Extension: (YouTube) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-08-04]
CHR Extension: (Vyhledávání Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-08-04]
CHR Extension: (avast! Online Security) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-08-04]
CHR Extension: (Gmail) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-08-04]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-08]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-08] (AVAST Software)
S3 DfSdkS; C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 2014\DfsdkS64.exe [544768 2009-08-24] (mst software GmbH, Germany) [File not signed]
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18956064 2014-07-25] (NVIDIA Corporation)
R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27760 2012-05-04] (VIA Technologies, Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-07-08] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-07-08] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-07-08] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-07-08] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-07-08] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-07-08] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-07-08] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-07-08] ()
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-07-25] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-08-04 13:11 - 2014-08-04 13:11 - 00013582 _____ () C:\Users\Petr\Desktop\FRST.txt
2014-08-04 13:11 - 2014-08-04 13:11 - 00000000 ____D () C:\FRST
2014-08-04 13:09 - 2014-08-04 13:10 - 02094080 _____ (Farbar) C:\Users\Petr\Desktop\FRST64.exe
2014-08-04 07:15 - 2014-08-04 07:15 - 00000623 _____ () C:\Users\Petr\Desktop\JRT.txt
2014-08-04 07:01 - 2014-08-04 07:01 - 00030312 _____ () C:\WINDOWS\system32\Drivers\TrueSight.sys
2014-08-03 22:20 - 2014-08-03 22:20 - 00201728 _____ (OldTimer Tools) C:\Users\Petr\Downloads\OTC.exe
2014-08-03 21:50 - 2014-08-04 13:09 - 00049021 _____ () C:\WINDOWS\WindowsUpdate.log
2014-08-03 20:46 - 2014-08-03 20:46 - 00000000 ____D () C:\Program Files (x86)\Mapas
2014-08-03 20:46 - 2014-08-03 20:46 - 00000000 ____D () C:\Program Files (x86)\Iconos
2014-08-03 20:46 - 2014-08-03 20:46 - 00000000 ____D () C:\Program Files (x86)\es
2014-08-03 20:46 - 2014-08-03 20:46 - 00000000 ____D () C:\Program Files (x86)\Contornos
2014-08-03 19:55 - 2014-08-03 19:55 - 02928414 _____ (Ragnarocek) C:\Users\Petr\Downloads\RagnaPackv2.exe
2014-08-03 19:28 - 2014-08-03 19:28 - 00000789 _____ () C:\Users\Public\Desktop\World of Tanks.lnk
2014-08-03 19:28 - 2014-08-03 19:28 - 00000000 ___HD () C:\WINDOWS\msdownld.tmp
2014-08-03 19:28 - 2014-08-03 19:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Tanks
2014-08-03 19:12 - 2014-08-03 19:12 - 00001204 _____ () C:\Users\Petr\Desktop\CrystalDiskInfo.lnk
2014-08-03 19:12 - 2014-08-03 19:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2014-08-03 19:12 - 2014-08-03 19:12 - 00000000 ____D () C:\Program Files (x86)\CrystalDiskInfo
2014-08-03 19:04 - 2014-08-03 19:04 - 02773800 _____ (Crystal Dew World ) C:\Users\Petr\Downloads\CrystalDiskInfo6_1_13-en.exe
2014-08-03 19:03 - 2014-08-03 19:03 - 00015201 _____ () C:\Users\Petr\Downloads\MemTest.zip
2014-08-03 10:21 - 2014-08-03 10:21 - 04181856 _____ (Kaspersky Lab ZAO) C:\Users\Petr\Desktop\tdsskiller.exe
2014-08-02 18:05 - 2014-08-02 18:05 - 05379160 _____ () C:\Users\Petr\Desktop\RogueKillerX64.exe
2014-08-02 18:05 - 2014-08-02 18:05 - 01016261 _____ (Thisisu) C:\Users\Petr\Desktop\JRT.exe
2014-08-01 20:34 - 2014-08-01 20:34 - 00001039 _____ () C:\Users\Petr\Desktop\t.txt
2014-08-01 20:21 - 2014-08-01 20:21 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-08-01 20:21 - 2014-08-01 20:21 - 00001130 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-08-01 20:21 - 2014-08-01 20:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-08-01 20:21 - 2014-08-01 20:21 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-08-01 20:21 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2014-08-01 20:21 - 2014-05-12 07:26 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2014-08-01 20:21 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2014-08-01 20:11 - 2014-08-02 17:59 - 00000000 ____D () C:\AdwCleaner
2014-08-01 20:04 - 2014-08-01 20:04 - 00000000 ____D () C:\Users\Petr\AppData\Local\Apple
2014-08-01 19:53 - 2014-08-01 19:53 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Petr\Downloads\mbam-setup-2.0.2.1012.exe
2014-08-01 19:53 - 2014-08-01 19:53 - 01361309 _____ () C:\Users\Petr\Desktop\adwcleaner_3.302.exe
2014-08-01 19:52 - 2014-08-01 19:52 - 00448512 _____ (OldTimer Tools) C:\Users\Petr\Downloads\TFC.exe
2014-07-31 21:13 - 2014-07-31 21:15 - 31788062 _____ () C:\Users\Petr\Downloads\Aspire_kompilace_v1.0_pro9.2.rar
2014-07-31 17:42 - 2014-07-31 17:44 - 25833475 _____ () C:\Users\Petr\Downloads\Aspire_9.2_test1.rar
2014-07-31 13:58 - 2014-07-31 14:18 - 351528086 _____ () C:\Users\Petr\Downloads\Bakaláři---Nešťastný-šafářův-dvoreček-(1980)-MONTY-698.avi
2014-07-31 13:56 - 2014-07-31 14:12 - 288860946 _____ () C:\Users\Petr\Downloads\Bakaláři---První-pohled--(1975)-MONTY-698.avi
2014-07-31 13:56 - 2014-07-31 14:08 - 213486468 _____ () C:\Users\Petr\Downloads\Bakaláři---Kbelík--(1981)-MONTY-698.avi
2014-07-31 13:46 - 2014-07-31 14:02 - 279494178 _____ () C:\Users\Petr\Downloads\Bakaláři---Jožin-(1978)-MONTY-698.avi
2014-07-31 13:44 - 2014-07-31 13:58 - 235318108 _____ () C:\Users\Petr\Downloads\Bakaláři---Zuby-(1978)-MONTY-698.avi
2014-07-31 13:43 - 2014-07-31 13:54 - 188935906 _____ () C:\Users\Petr\Downloads\Bakaláři---Syn-(1979)-MONTY-698.avi
2014-07-31 13:42 - 2014-07-02 19:44 - 00609240 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
2014-07-31 13:39 - 2014-07-31 13:51 - 218218666 _____ () C:\Users\Petr\Downloads\Bakaláři---Trafika-(1979)-MONTY-698.avi
2014-07-31 13:39 - 2014-07-02 22:48 - 31512520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 24196896 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 22994208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 18626304 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 17555104 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 16122344 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 15294296 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 14498552 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 13922752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 13835208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 12866008 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2014-07-31 13:39 - 2014-07-02 22:48 - 11283344 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 11222048 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 04247000 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 03989960 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 03196816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 02814656 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 01890080 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6434052.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 01539928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6434052.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 00965312 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 00944928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 00907096 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 00903624 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 00869152 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 00846832 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 00835032 _____ () C:\WINDOWS\system32\nvmcumd.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 00502232 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 00418760 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 00391640 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 00354016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 00348120 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 00305600 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 00166568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 00146480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll
2014-07-31 13:39 - 2014-07-02 22:48 - 00026353 _____ () C:\WINDOWS\system32\nvinfo.pb
2014-07-31 13:30 - 2014-07-31 13:44 - 257454950 _____ () C:\Users\Petr\Downloads\Bakaláři---Zástava-(1979)-MONTY-698.avi
2014-07-31 13:25 - 2014-07-31 13:43 - 319930466 _____ () C:\Users\Petr\Downloads\Bakaláři---Zip-(1978)-MONTY-698.avi
2014-07-31 13:19 - 2014-07-31 13:38 - 351198622 _____ () C:\Users\Petr\Downloads\Bakaláři---Lázně-(1978)-MONTY-698.avi
2014-07-31 13:12 - 2014-07-31 13:30 - 307669422 _____ () C:\Users\Petr\Downloads\Bakaláři---Lokomotiva-(1975)-MONTY-698.avi
2014-07-31 13:12 - 2014-07-31 13:25 - 218946798 _____ () C:\Users\Petr\Downloads\Bakaláři---Podnájem-(1978)-MONTY-698.avi
2014-07-31 13:08 - 2014-07-25 15:50 - 01283136 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2014-07-31 13:08 - 2014-07-25 15:50 - 01126480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2014-07-31 13:06 - 2014-07-31 13:18 - 224107008 _____ () C:\Users\Petr\Downloads\Bakaláři---Karafiát-(1978)-MONTY-698.avi
2014-07-31 12:55 - 2014-07-31 13:06 - 187888348 _____ () C:\Users\Petr\Downloads\Bakaláři---Slivovice-(1983)-MONTY-698.avi
2014-07-31 12:53 - 2014-07-31 13:12 - 350723066 _____ () C:\Users\Petr\Downloads\Bakaláři---Útěk-(1974)-MONTY-698.avi
2014-07-31 12:49 - 2014-07-31 13:46 - 1018173610 _____ () C:\Users\Petr\Downloads\Bakaláři---Moje-nezapomenutelná-dovolená-(1983).avi
2014-07-31 12:49 - 2014-07-31 13:12 - 404476390 _____ () C:\Users\Petr\Downloads\Zkoušky-z-dospělosti---06-Maturity---mus.avi
2014-07-31 12:30 - 2014-07-31 12:49 - 343353300 _____ () C:\Users\Petr\Downloads\Zkoušky-z-dospělosti---05-Havárie---mus.avi
2014-07-31 12:16 - 2014-07-31 12:49 - 368233760 _____ () C:\Users\Petr\Downloads\Zkoušky-z-dospělosti---04-Krádež---mus.avi
2014-07-31 12:10 - 2014-07-31 12:53 - 767899664 _____ () C:\Users\Petr\Downloads\Zkoušky-z-dospělosti---2.Zápas-(1980).avi
2014-07-31 12:10 - 2014-07-31 12:30 - 349797334 _____ () C:\Users\Petr\Downloads\Zkoušky-z-dospělosti---03-Telegram---mus.avi
2014-07-31 12:09 - 2014-07-31 12:55 - 823307898 _____ () C:\Users\Petr\Downloads\Zkoušky-z-dospělosti---1.Sázka-(1980).avi
2014-07-31 12:06 - 2014-07-31 12:15 - 116822200 _____ () C:\Users\Petr\Downloads\Alstrm - 14.rar
2014-07-31 10:32 - 2014-07-31 14:00 - 1915875926 _____ () C:\Users\Petr\Downloads\Zámek-v-oblacích-(2004)-CZ.avi
2014-07-30 08:45 - 2014-07-30 08:45 - 42094062 _____ () C:\Users\Petr\Downloads\Fornicus - Storming Heaven [2014].rar
2014-07-30 08:39 - 2014-07-30 08:42 - 82844928 _____ () C:\Users\Petr\Downloads\E- Origim (2014).rar
2014-07-30 08:38 - 2014-07-30 08:38 - 94685046 _____ () C:\Users\Petr\Downloads\Nocturnal Depression - Near To The Stars (2014).rar
2014-07-29 07:44 - 2014-07-25 15:50 - 01715224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll
2014-07-29 07:44 - 2014-07-25 15:50 - 01291280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll
2014-07-28 16:20 - 2014-07-28 16:25 - 44240140 _____ () C:\Users\Petr\Downloads\Sniper-Elite-3-Cestina.rar
2014-07-28 16:13 - 2014-07-28 19:40 - 1840871424 _____ () C:\Users\Petr\Downloads\Dobrodružství-pana-Peabodyho-a-Shermana-(2014)-cz-dabing.avi
2014-07-27 15:30 - 2014-07-27 17:38 - 72544399 _____ () C:\Users\Petr\Downloads\Lucifer - 2014 - ...still alive- but already dead.rar
2014-07-27 09:15 - 2014-07-27 09:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-07-27 09:15 - 2014-07-11 03:02 - 00098216 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2014-07-27 09:15 - 2014-07-11 02:56 - 00272808 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaws.exe
2014-07-27 09:15 - 2014-07-11 02:56 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaw.exe
2014-07-27 09:15 - 2014-07-11 02:55 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\java.exe
2014-07-27 09:14 - 2014-07-27 09:15 - 00004059 _____ () C:\WINDOWS\SysWOW64\jupdate-1.7.0_65-b20.log
2014-07-26 12:03 - 2014-07-26 12:04 - 238593507 _____ () C:\Users\Petr\Downloads\slax-Czech-7.0.8-x86_64.zip
2014-07-26 09:11 - 2014-07-26 09:11 - 97172809 _____ () C:\Users\Petr\Downloads\Abigor - Leytmotif Luzifer (2014).rar
2014-07-24 19:00 - 2014-07-24 19:06 - 102984033 _____ () C:\Users\Petr\Downloads\Crystal Eyes - Killer (2014).rar
2014-07-22 17:03 - 2014-07-22 17:03 - 00003834 _____ () C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1397060391
2014-07-19 08:14 - 2014-07-19 08:38 - 00000000 ____D () C:\Users\Petr\Desktop\SSOGE
2014-07-15 22:26 - 2014-07-15 22:27 - 00001147 _____ () C:\DelFix.txt
2014-07-13 20:52 - 2014-07-13 20:52 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2014-07-12 20:22 - 2014-07-12 20:26 - 00000000 ____D () C:\Users\Petr\Desktop\Nová složka (3)
2014-07-12 15:33 - 2014-07-12 15:33 - 00001518 _____ () C:\Users\Public\Desktop\One-Click-Optimizer.lnk
2014-07-12 15:33 - 2014-07-12 15:33 - 00001286 _____ () C:\Users\Public\Desktop\Ashampoo WinOptimizer 2014.lnk
2014-07-12 15:33 - 2014-07-12 15:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2014-07-12 15:33 - 2014-07-12 15:33 - 00000000 ____D () C:\Program Files (x86)\Ashampoo
2014-07-12 15:33 - 2009-08-24 22:13 - 00034304 _____ (mst software GmbH, Germany) C:\WINDOWS\system32\DfSdkBt.exe
2014-07-11 18:26 - 2014-07-11 18:26 - 00000000 ____D () C:\Users\Petr\AppData\Local\SkinSoft
2014-07-11 18:25 - 2014-07-11 18:25 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\freepicturesolutions
2014-07-11 18:06 - 2014-08-04 08:57 - 00019220 _____ () C:\WINDOWS\system32\lvcoinst.log
2014-07-11 18:06 - 2014-07-11 18:06 - 00000000 ____D () C:\Program Files\Common Files\logishrd
2014-07-11 13:56 - 2014-07-11 13:56 - 00000000 ____D () C:\ProgramData\RogueKiller
2014-07-10 19:46 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\SysWOW64\sqlite3.dll
2014-07-10 18:21 - 2014-07-10 18:21 - 00000029 _____ () C:\WINDOWS\Lic.xxx
2014-07-10 18:20 - 2014-07-10 18:20 - 00632064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr80.dll
2014-07-10 18:20 - 2014-07-10 18:20 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp90.dll
2014-07-10 18:20 - 2014-07-10 18:20 - 00554240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp80.dll
2014-07-10 18:20 - 2014-07-10 18:19 - 00655872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr90.dll
2014-07-10 18:19 - 2014-07-10 18:19 - 00152808 _____ (MicroWorld Technologies Inc.) C:\WINDOWS\SysWOW64\eEmpty.exe
2014-07-10 18:19 - 2014-07-10 18:19 - 00000000 ____D () C:\ProgramData\MicroWorld
2014-07-10 18:16 - 2014-07-10 18:17 - 216155864 _____ () C:\Users\Petr\Documents\mwav.exe
2014-07-10 18:16 - 2014-07-10 18:16 - 00000351 _____ () C:\Users\Petr\Documents\Resume download for mwav.exe.html
2014-07-10 18:16 - 2014-07-10 18:16 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Download Manager
2014-07-10 16:19 - 2014-07-10 16:19 - 00000000 ____N () C:\autoexec.bat
2014-07-10 16:19 - 2014-07-10 16:19 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-07-10 16:11 - 2014-06-26 22:55 - 00703968 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-07-10 16:11 - 2014-06-26 22:55 - 00105440 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-07-10 16:10 - 2014-04-14 05:29 - 01018880 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2014-07-10 16:09 - 2014-07-10 16:09 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2014-07-09 18:33 - 2014-07-26 12:08 - 00000000 ____D () C:\Users\Petr\Desktop\Nová složka (2)
2014-07-09 13:19 - 2014-06-17 00:26 - 00779264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\osk.exe
2014-07-09 13:19 - 2014-06-17 00:24 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2014-07-09 13:19 - 2014-06-06 16:20 - 04190720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-07-09 13:19 - 2014-05-30 05:03 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2014-07-09 13:17 - 2014-05-29 14:02 - 00565576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2014-07-09 13:17 - 2014-05-29 09:55 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2014-07-09 13:17 - 2014-05-29 08:40 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2014-07-09 13:17 - 2014-05-29 08:37 - 00436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2014-07-09 13:17 - 2014-05-29 07:34 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2014-07-09 13:17 - 2014-05-29 07:27 - 01417216 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-07-09 13:15 - 2014-06-19 03:39 - 23464448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-07-09 13:15 - 2014-06-19 02:48 - 02768384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-07-09 13:15 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-07-09 13:15 - 2014-06-19 02:09 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2014-07-09 13:15 - 2014-06-19 01:51 - 05721088 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-07-09 13:15 - 2014-06-19 01:50 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-07-09 13:15 - 2014-06-19 01:48 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2014-07-09 13:15 - 2014-06-19 01:46 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-07-09 13:15 - 2014-06-19 01:39 - 00608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-07-09 13:15 - 2014-06-19 01:33 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-07-09 13:15 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-07-09 13:15 - 2014-06-19 01:27 - 02040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-07-09 13:15 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2014-07-09 13:15 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-07-09 13:15 - 2014-06-19 00:58 - 02266112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-07-09 13:15 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2014-07-09 13:15 - 2014-06-19 00:57 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2014-07-09 13:15 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-07-09 13:15 - 2014-06-19 00:51 - 13527040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-07-09 13:15 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-07-09 13:15 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-07-09 13:15 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-07-09 13:15 - 2014-06-19 00:34 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-07-09 13:15 - 2014-06-19 00:15 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-07-09 13:15 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-07-09 13:15 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-07-09 13:15 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-07-09 13:14 - 2014-07-01 00:45 - 00688128 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2014-07-09 13:14 - 2014-06-28 09:48 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2014-07-09 13:14 - 2014-06-28 09:07 - 00385536 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2014-07-09 13:14 - 2014-06-06 15:04 - 00586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2014-07-09 13:14 - 2014-06-06 14:18 - 00488960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2014-07-09 13:13 - 2014-05-31 12:07 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2014-07-09 13:13 - 2014-05-31 12:06 - 00555736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2014-07-09 13:13 - 2014-05-31 05:40 - 13287936 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2014-07-09 13:13 - 2014-05-31 05:30 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2014-07-09 13:13 - 2014-05-31 05:12 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-09 13:13 - 2014-05-31 05:06 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2014-07-09 13:13 - 2014-05-31 05:03 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2014-07-09 13:13 - 2014-05-31 05:01 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-09 13:13 - 2014-05-31 04:56 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2014-07-09 13:13 - 2014-05-31 04:54 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2014-07-09 13:13 - 2014-05-31 04:48 - 03463680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2014-07-09 13:13 - 2014-05-31 04:37 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2014-07-09 13:13 - 2014-05-31 04:36 - 00923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2014-07-09 13:13 - 2014-05-31 04:35 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2014-07-09 13:13 - 2014-05-31 04:32 - 00756224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2014-07-09 13:08 - 2014-07-09 13:08 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\Users\HomeGroupUser$
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\Users\Guest
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\Users\Administrator
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\ProgramData\4e0cb922ab0e9d81
2014-07-08 18:48 - 2014-07-08 18:48 - 00427360 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2014-07-08 18:48 - 2014-07-08 18:48 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2014-07-08 18:48 - 2014-07-08 18:48 - 00003924 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update
2014-07-06 16:51 - 2014-07-27 09:15 - 00000000 ____D () C:\Program Files (x86)\Java

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-08-04 13:11 - 2014-08-04 13:11 - 00013582 _____ () C:\Users\Petr\Desktop\FRST.txt
2014-08-04 13:11 - 2014-08-04 13:11 - 00000000 ____D () C:\FRST
2014-08-04 13:10 - 2014-08-04 13:09 - 02094080 _____ (Farbar) C:\Users\Petr\Desktop\FRST64.exe
2014-08-04 13:09 - 2014-08-03 21:50 - 00049021 _____ () C:\WINDOWS\WindowsUpdate.log
2014-08-04 13:09 - 2013-11-09 01:00 - 00003978 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{DD82B7AD-59C8-4333-BEDC-F1BACBC50966}
2014-08-04 13:09 - 2013-10-25 10:49 - 00000000 __RDO () C:\Users\Petr\SkyDrive
2014-08-04 08:57 - 2014-07-11 18:06 - 00019220 _____ () C:\WINDOWS\system32\lvcoinst.log
2014-08-04 08:22 - 2014-02-02 13:37 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-08-04 08:00 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-08-04 07:18 - 2013-10-25 10:27 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-08-04 07:18 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-08-04 07:15 - 2014-08-04 07:15 - 00000623 _____ () C:\Users\Petr\Desktop\JRT.txt
2014-08-04 07:01 - 2014-08-04 07:01 - 00030312 _____ () C:\WINDOWS\system32\Drivers\TrueSight.sys
2014-08-04 06:57 - 2013-10-25 10:44 - 01771646 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-08-04 06:57 - 2013-09-30 05:56 - 00746994 _____ () C:\WINDOWS\system32\perfh005.dat
2014-08-04 06:57 - 2013-09-30 05:56 - 00155994 _____ () C:\WINDOWS\system32\perfc005.dat
2014-08-03 22:20 - 2014-08-03 22:20 - 00201728 _____ (OldTimer Tools) C:\Users\Petr\Downloads\OTC.exe
2014-08-03 21:40 - 2013-05-28 13:08 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3832753693-3646972138-179110667-1004
2014-08-03 20:46 - 2014-08-03 20:46 - 00000000 ____D () C:\Program Files (x86)\Mapas
2014-08-03 20:46 - 2014-08-03 20:46 - 00000000 ____D () C:\Program Files (x86)\Iconos
2014-08-03 20:46 - 2014-08-03 20:46 - 00000000 ____D () C:\Program Files (x86)\es
2014-08-03 20:46 - 2014-08-03 20:46 - 00000000 ____D () C:\Program Files (x86)\Contornos
2014-08-03 19:55 - 2014-08-03 19:55 - 02928414 _____ (Ragnarocek) C:\Users\Petr\Downloads\RagnaPackv2.exe
2014-08-03 19:28 - 2014-08-03 19:28 - 00000789 _____ () C:\Users\Public\Desktop\World of Tanks.lnk
2014-08-03 19:28 - 2014-08-03 19:28 - 00000000 ___HD () C:\WINDOWS\msdownld.tmp
2014-08-03 19:28 - 2014-08-03 19:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Tanks
2014-08-03 19:28 - 2013-10-25 12:30 - 00000000 ____D () C:\WINDOWS\SysWOW64\directx
2014-08-03 19:28 - 2013-05-28 16:24 - 00000000 ____D () C:\Games
2014-08-03 19:12 - 2014-08-03 19:12 - 00001204 _____ () C:\Users\Petr\Desktop\CrystalDiskInfo.lnk
2014-08-03 19:12 - 2014-08-03 19:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2014-08-03 19:12 - 2014-08-03 19:12 - 00000000 ____D () C:\Program Files (x86)\CrystalDiskInfo
2014-08-03 19:04 - 2014-08-03 19:04 - 02773800 _____ (Crystal Dew World ) C:\Users\Petr\Downloads\CrystalDiskInfo6_1_13-en.exe
2014-08-03 19:03 - 2014-08-03 19:03 - 00015201 _____ () C:\Users\Petr\Downloads\MemTest.zip
2014-08-03 10:21 - 2014-08-03 10:21 - 04181856 _____ (Kaspersky Lab ZAO) C:\Users\Petr\Desktop\tdsskiller.exe
2014-08-02 18:27 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2014-08-02 18:05 - 2014-08-02 18:05 - 05379160 _____ () C:\Users\Petr\Desktop\RogueKillerX64.exe
2014-08-02 18:05 - 2014-08-02 18:05 - 01016261 _____ (Thisisu) C:\Users\Petr\Desktop\JRT.exe
2014-08-02 17:59 - 2014-08-01 20:11 - 00000000 ____D () C:\AdwCleaner
2014-08-01 20:34 - 2014-08-01 20:34 - 00001039 _____ () C:\Users\Petr\Desktop\t.txt
2014-08-01 20:21 - 2014-08-01 20:21 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-08-01 20:21 - 2014-08-01 20:21 - 00001130 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-08-01 20:21 - 2014-08-01 20:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-08-01 20:21 - 2014-08-01 20:21 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-08-01 20:04 - 2014-08-01 20:04 - 00000000 ____D () C:\Users\Petr\AppData\Local\Apple
2014-08-01 19:53 - 2014-08-01 19:53 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Petr\Downloads\mbam-setup-2.0.2.1012.exe
2014-08-01 19:53 - 2014-08-01 19:53 - 01361309 _____ () C:\Users\Petr\Desktop\adwcleaner_3.302.exe
2014-08-01 19:52 - 2014-08-01 19:52 - 00448512 _____ (OldTimer Tools) C:\Users\Petr\Downloads\TFC.exe
2014-08-01 08:53 - 2013-05-28 15:09 - 00000000 ____D () C:\Program Files\WinRAR
2014-08-01 08:49 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-07-31 23:09 - 2014-06-13 17:49 - 00000000 ____D () C:\Program Files (x86)\Wolfenstein. The New Order
2014-07-31 21:15 - 2014-07-31 21:13 - 31788062 _____ () C:\Users\Petr\Downloads\Aspire_kompilace_v1.0_pro9.2.rar
2014-07-31 17:44 - 2014-07-31 17:42 - 25833475 _____ () C:\Users\Petr\Downloads\Aspire_9.2_test1.rar
2014-07-31 16:43 - 2014-01-02 14:38 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\TS3Client
2014-07-31 16:43 - 2013-09-08 09:53 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\AIMP3
2014-07-31 14:18 - 2014-07-31 13:58 - 351528086 _____ () C:\Users\Petr\Downloads\Bakaláři---Nešťastný-šafářův-dvoreček-(1980)-MONTY-698.avi
2014-07-31 14:12 - 2014-07-31 13:56 - 288860946 _____ () C:\Users\Petr\Downloads\Bakaláři---První-pohled--(1975)-MONTY-698.avi
2014-07-31 14:08 - 2014-07-31 13:56 - 213486468 _____ () C:\Users\Petr\Downloads\Bakaláři---Kbelík--(1981)-MONTY-698.avi
2014-07-31 14:02 - 2014-07-31 13:46 - 279494178 _____ () C:\Users\Petr\Downloads\Bakaláři---Jožin-(1978)-MONTY-698.avi
2014-07-31 14:00 - 2014-07-31 10:32 - 1915875926 _____ () C:\Users\Petr\Downloads\Zámek-v-oblacích-(2004)-CZ.avi
2014-07-31 13:58 - 2014-07-31 13:44 - 235318108 _____ () C:\Users\Petr\Downloads\Bakaláři---Zuby-(1978)-MONTY-698.avi
2014-07-31 13:54 - 2014-07-31 13:43 - 188935906 _____ () C:\Users\Petr\Downloads\Bakaláři---Syn-(1979)-MONTY-698.avi
2014-07-31 13:51 - 2014-07-31 13:39 - 218218666 _____ () C:\Users\Petr\Downloads\Bakaláři---Trafika-(1979)-MONTY-698.avi
2014-07-31 13:46 - 2014-07-31 12:49 - 1018173610 _____ () C:\Users\Petr\Downloads\Bakaláři---Moje-nezapomenutelná-dovolená-(1983).avi
2014-07-31 13:44 - 2014-07-31 13:30 - 257454950 _____ () C:\Users\Petr\Downloads\Bakaláři---Zástava-(1979)-MONTY-698.avi
2014-07-31 13:43 - 2014-07-31 13:25 - 319930466 _____ () C:\Users\Petr\Downloads\Bakaláři---Zip-(1978)-MONTY-698.avi
2014-07-31 13:42 - 2013-10-25 10:26 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-07-31 13:42 - 2013-08-01 18:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2014-07-31 13:41 - 2013-10-25 10:26 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-07-31 13:38 - 2014-07-31 13:19 - 351198622 _____ () C:\Users\Petr\Downloads\Bakaláři---Lázně-(1978)-MONTY-698.avi
2014-07-31 13:30 - 2014-07-31 13:12 - 307669422 _____ () C:\Users\Petr\Downloads\Bakaláři---Lokomotiva-(1975)-MONTY-698.avi
2014-07-31 13:25 - 2014-07-31 13:12 - 218946798 _____ () C:\Users\Petr\Downloads\Bakaláři---Podnájem-(1978)-MONTY-698.avi
2014-07-31 13:18 - 2014-07-31 13:06 - 224107008 _____ () C:\Users\Petr\Downloads\Bakaláři---Karafiát-(1978)-MONTY-698.avi
2014-07-31 13:12 - 2014-07-31 12:53 - 350723066 _____ () C:\Users\Petr\Downloads\Bakaláři---Útěk-(1974)-MONTY-698.avi
2014-07-31 13:12 - 2014-07-31 12:49 - 404476390 _____ () C:\Users\Petr\Downloads\Zkoušky-z-dospělosti---06-Maturity---mus.avi
2014-07-31 13:09 - 2013-11-20 22:03 - 00000000 ____D () C:\Users\Petr\AppData\Local\NVIDIA Corporation
2014-07-31 13:06 - 2014-07-31 12:55 - 187888348 _____ () C:\Users\Petr\Downloads\Bakaláři---Slivovice-(1983)-MONTY-698.avi
2014-07-31 12:55 - 2014-07-31 12:09 - 823307898 _____ () C:\Users\Petr\Downloads\Zkoušky-z-dospělosti---1.Sázka-(1980).avi
2014-07-31 12:53 - 2014-07-31 12:10 - 767899664 _____ () C:\Users\Petr\Downloads\Zkoušky-z-dospělosti---2.Zápas-(1980).avi
2014-07-31 12:49 - 2014-07-31 12:30 - 343353300 _____ () C:\Users\Petr\Downloads\Zkoušky-z-dospělosti---05-Havárie---mus.avi
2014-07-31 12:49 - 2014-07-31 12:16 - 368233760 _____ () C:\Users\Petr\Downloads\Zkoušky-z-dospělosti---04-Krádež---mus.avi
2014-07-31 12:30 - 2014-07-31 12:10 - 349797334 _____ () C:\Users\Petr\Downloads\Zkoušky-z-dospělosti---03-Telegram---mus.avi
2014-07-31 12:15 - 2014-07-31 12:06 - 116822200 _____ () C:\Users\Petr\Downloads\Alstrm - 14.rar
2014-07-31 10:26 - 2013-05-28 15:09 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-07-31 10:26 - 2013-05-28 15:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-07-30 11:53 - 2013-05-30 15:49 - 00000000 ____D () C:\Users\Petr\AppData\Local\Last.fm
2014-07-30 11:36 - 2014-04-29 14:20 - 00000000 ____D () C:\Users\Petr\Desktop\Nová složka
2014-07-30 08:45 - 2014-07-30 08:45 - 42094062 _____ () C:\Users\Petr\Downloads\Fornicus - Storming Heaven [2014].rar
2014-07-30 08:42 - 2014-07-30 08:39 - 82844928 _____ () C:\Users\Petr\Downloads\E- Origim (2014).rar
2014-07-30 08:38 - 2014-07-30 08:38 - 94685046 _____ () C:\Users\Petr\Downloads\Nocturnal Depression - Near To The Stars (2014).rar
2014-07-29 13:29 - 2014-05-11 14:15 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-07-28 19:40 - 2014-07-28 16:13 - 1840871424 _____ () C:\Users\Petr\Downloads\Dobrodružství-pana-Peabodyho-a-Shermana-(2014)-cz-dabing.avi
2014-07-28 16:25 - 2014-07-28 16:20 - 44240140 _____ () C:\Users\Petr\Downloads\Sniper-Elite-3-Cestina.rar
2014-07-27 17:38 - 2014-07-27 15:30 - 72544399 _____ () C:\Users\Petr\Downloads\Lucifer - 2014 - ...still alive- but already dead.rar
2014-07-27 09:15 - 2014-07-27 09:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-07-27 09:15 - 2014-07-27 09:14 - 00004059 _____ () C:\WINDOWS\SysWOW64\jupdate-1.7.0_65-b20.log
2014-07-27 09:15 - 2014-07-06 16:51 - 00000000 ____D () C:\Program Files (x86)\Java
2014-07-27 09:15 - 2013-09-20 06:52 - 00000000 ____D () C:\ProgramData\Oracle
2014-07-26 12:15 - 2013-09-07 14:49 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-07-26 12:15 - 2013-09-07 14:49 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-07-26 12:08 - 2014-07-09 18:33 - 00000000 ____D () C:\Users\Petr\Desktop\Nová složka (2)
2014-07-26 12:04 - 2014-07-26 12:03 - 238593507 _____ () C:\Users\Petr\Downloads\slax-Czech-7.0.8-x86_64.zip
2014-07-26 09:11 - 2014-07-26 09:11 - 97172809 _____ () C:\Users\Petr\Downloads\Abigor - Leytmotif Luzifer (2014).rar
2014-07-25 15:50 - 2014-07-31 13:08 - 01283136 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2014-07-25 15:50 - 2014-07-31 13:08 - 01126480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2014-07-25 15:50 - 2014-07-29 07:44 - 01715224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll
2014-07-25 15:50 - 2014-07-29 07:44 - 01291280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll
2014-07-24 19:06 - 2014-07-24 19:00 - 102984033 _____ () C:\Users\Petr\Downloads\Crystal Eyes - Killer (2014).rar
2014-07-24 15:05 - 2013-09-07 14:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-07-22 17:03 - 2014-07-22 17:03 - 00003834 _____ () C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1397060391
2014-07-22 17:03 - 2014-04-09 18:19 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-07-19 16:49 - 2013-11-24 09:58 - 00000000 ____D () C:\Users\Petr\Downloads\wallpapers
2014-07-19 08:38 - 2014-07-19 08:14 - 00000000 ____D () C:\Users\Petr\Desktop\SSOGE
2014-07-15 22:32 - 2014-06-21 17:41 - 00000000 ____D () C:\Program Files (x86)\Loutkove divadlo - Ztracene mesto
2014-07-15 22:31 - 2013-07-06 21:07 - 00000000 ____D () C:\ProgramData\Ashampoo
2014-07-15 22:27 - 2014-07-15 22:26 - 00001147 _____ () C:\DelFix.txt
2014-07-13 20:52 - 2014-07-13 20:52 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2014-07-13 20:51 - 2013-08-22 17:36 - 00000000 ___HD () C:\WINDOWS\system32\GroupPolicy
2014-07-12 20:26 - 2014-07-12 20:22 - 00000000 ____D () C:\Users\Petr\Desktop\Nová složka (3)
2014-07-12 15:36 - 2013-10-25 11:24 - 00000000 ___DC () C:\WINDOWS\Panther
2014-07-12 15:33 - 2014-07-12 15:33 - 00001518 _____ () C:\Users\Public\Desktop\One-Click-Optimizer.lnk
2014-07-12 15:33 - 2014-07-12 15:33 - 00001286 _____ () C:\Users\Public\Desktop\Ashampoo WinOptimizer 2014.lnk
2014-07-12 15:33 - 2014-07-12 15:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2014-07-12 15:33 - 2014-07-12 15:33 - 00000000 ____D () C:\Program Files (x86)\Ashampoo
2014-07-11 21:09 - 2014-03-22 11:09 - 00000000 ____D () C:\WINDOWS\Minidump
2014-07-11 21:09 - 2013-05-28 16:12 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Free Download Manager
2014-07-11 18:26 - 2014-07-11 18:26 - 00000000 ____D () C:\Users\Petr\AppData\Local\SkinSoft
2014-07-11 18:25 - 2014-07-11 18:25 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\freepicturesolutions
2014-07-11 18:06 - 2014-07-11 18:06 - 00000000 ____D () C:\Program Files\Common Files\logishrd
2014-07-11 13:56 - 2014-07-11 13:56 - 00000000 ____D () C:\ProgramData\RogueKiller
2014-07-11 03:02 - 2014-07-27 09:15 - 00098216 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2014-07-11 02:56 - 2014-07-27 09:15 - 00272808 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaws.exe
2014-07-11 02:56 - 2014-07-27 09:15 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaw.exe
2014-07-11 02:55 - 2014-07-27 09:15 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\java.exe
2014-07-10 19:48 - 2014-01-02 14:56 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-10 19:41 - 2013-10-25 10:32 - 00000000 ____D () C:\Users\Petr
2014-07-10 19:39 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-07-10 18:57 - 2013-08-22 16:44 - 00500968 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-07-10 18:56 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-10 18:56 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-10 18:54 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-07-10 18:54 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\WinStore
2014-07-10 18:35 - 2013-07-04 11:21 - 00618496 ___SH () C:\Users\Petr\Desktop\Thumbs.db
2014-07-10 18:21 - 2014-07-10 18:21 - 00000029 _____ () C:\WINDOWS\Lic.xxx
2014-07-10 18:21 - 2014-02-05 19:26 - 00000000 ____D () C:\Users\Petr\Desktop\Castle of Illusion
2014-07-10 18:20 - 2014-07-10 18:20 - 00632064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr80.dll
2014-07-10 18:20 - 2014-07-10 18:20 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp90.dll
2014-07-10 18:20 - 2014-07-10 18:20 - 00554240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp80.dll
2014-07-10 18:19 - 2014-07-10 18:20 - 00655872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr90.dll
2014-07-10 18:19 - 2014-07-10 18:19 - 00152808 _____ (MicroWorld Technologies Inc.) C:\WINDOWS\SysWOW64\eEmpty.exe
2014-07-10 18:19 - 2014-07-10 18:19 - 00000000 ____D () C:\ProgramData\MicroWorld
2014-07-10 18:19 - 2013-08-22 15:25 - 00000114 _____ () C:\WINDOWS\win.ini
2014-07-10 18:17 - 2014-07-10 18:16 - 216155864 _____ () C:\Users\Petr\Documents\mwav.exe
2014-07-10 18:16 - 2014-07-10 18:16 - 00000351 _____ () C:\Users\Petr\Documents\Resume download for mwav.exe.html
2014-07-10 18:16 - 2014-07-10 18:16 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Download Manager
2014-07-10 16:19 - 2014-07-10 16:19 - 00000000 ____N () C:\autoexec.bat
2014-07-10 16:19 - 2014-07-10 16:19 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-07-10 16:12 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2014-07-10 16:11 - 2013-07-19 12:45 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-07-10 16:10 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2014-07-10 16:10 - 2013-05-29 07:02 - 96441528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-07-10 16:09 - 2014-07-10 16:09 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2014-07-10 16:09 - 2013-09-30 05:58 - 00000000 ____D () C:\Program Files\Windows Journal
2014-07-09 13:08 - 2014-07-09 13:08 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2014-07-08 19:23 - 2013-08-31 08:58 - 00000000 ____D () C:\Program Files\Recuva
2014-07-08 19:22 - 2014-02-02 13:37 - 00003802 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\Users\HomeGroupUser$
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\Users\Guest
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\Users\Administrator
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\ProgramData\4e0cb922ab0e9d81
2014-07-08 18:50 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\GroupPolicy
2014-07-08 18:50 - 2013-05-28 13:10 - 00000000 ____D () C:\Program Files (x86)\Google
2014-07-08 18:48 - 2014-07-08 18:48 - 00427360 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2014-07-08 18:48 - 2014-07-08 18:48 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2014-07-08 18:48 - 2014-07-08 18:48 - 00003924 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update
2014-07-08 18:48 - 2014-05-16 06:55 - 01041168 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys
2014-07-08 18:48 - 2014-05-16 06:55 - 00092008 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswstm.sys
2014-07-08 18:48 - 2014-05-05 20:23 - 00029208 _____ () C:\WINDOWS\system32\Drivers\aswHwid.sys
2014-07-08 18:48 - 2013-10-26 14:21 - 00307344 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2014-07-08 18:48 - 2013-10-26 14:21 - 00224896 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys
2014-07-08 18:48 - 2013-10-26 14:21 - 00093568 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2014-07-08 18:48 - 2013-10-26 14:21 - 00079184 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2014-07-08 18:48 - 2013-10-26 14:21 - 00065776 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys
2014-07-08 18:48 - 2013-10-26 14:21 - 00001988 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-07-08 15:55 - 2013-05-28 13:10 - 00002203 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-07-06 13:31 - 2014-06-26 06:54 - 00000000 ____D () C:\Users\Petr\Desktop\cimrman

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-08-04 08:13

==================== End Of Log ============================

Uživatelský avatar
Varg
Level 3.5
Level 3.5
Příspěvky: 701
Registrován: leden 07
Bydliště: Lamí hnízdo
Pohlaví: Muž
Stav:
Offline

Re: prosím kontrolu logu

Příspěvekod Varg » 04 srp 2014 13:15

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-08-2014
Ran by Petr at 2014-08-04 13:12:06
Running from C:\Users\Petr\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

[0.9.2] RagnaPack v2.0 (HKLM-x32\...\[0.9.2] RagnaPack v2.0 1.0.0) (Version: 1.0.0 - Ragnarocek)
[0.9.2] RagnaPack v2.0 (x32 Version: 1.0.0 - Ragnarocek) Hidden
Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.145 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.07) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated)
AIMP3 (HKLM-x32\...\AIMP3) (Version: v3.55.1350, 16.06.2014 - AIMP DevTeam)
Aktualizace NVIDIA 15.3.33 (Version: 15.3.33 - NVIDIA Corporation) Hidden
Apple Application Support (HKLM-x32\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Ashampoo WinOptimizer 2014 v.1.0.0 (HKLM-x32\...\{4209F371-99CD-68CB-1C29-9910F8F9BD96}_is1) (Version: 1.0.0 - Ashampoo GmbH & Co. KG)
Assassin's Creed(R) III v1.04 (HKLM-x32\...\{9D15E813-0C26-41E7-ABC5-3EB06FF1B3CF}) (Version: 1.04 - Ubisoft)
avast! Free Antivirus (HKLM-x32\...\Avast) (Version: 9.0.2021 - AVAST Software)
CCleaner (HKLM\...\CCleaner) (Version: 4.15 - Piriform)
CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.3.4643 - CDBurnerXP)
CDex - Open Source Digital Audio CD Extractor (HKLM-x32\...\CDex) (Version: 1.70.4.2009 - Georgy Berdyshev)
Crysis®3 (HKLM-x32\...\{4198AE83-A3C6-4C41-85C8-EC63E990696E}) (Version: 1.1.0.0 - Electronic Arts)
CrystalDiskInfo 6.1.13 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 6.1.13 - Crystal Dew World)
Dropbox (HKCU\...\Dropbox) (Version: 2.6.24 - Dropbox, Inc.)
Enemy Front PROPER (HKLM-x32\...\Enemy Front PROPER_is1) (Version: - )
F.E.A.R. 3 (HKLM-x32\...\F.E.A.R. 3_is1) (Version: - )
Free Download Manager Language pack (HKLM-x32\...\Free Download Manager_is1) (Version: - )
Google Drive (HKLM-x32\...\{D9F75285-4864-461D-83DA-8D056BAC44D1}) (Version: 1.16.6866.4367 - Google, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.153 - Google Inc.)
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.24.15 - Google Inc.)
Java 7 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217060FF}) (Version: 7.0.600 - Oracle)
Java Auto Updater (x32 Version: 2.1.65.20 - Oracle, Inc.) Hidden
Last.fm Scrobbler 2.1.36 (HKLM-x32\...\LastFM_is1) (Version: - Last.fm)
Malwarebytes Anti-Malware verze 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SkyDrive (HKCU\...\SkyDriveSetup.exe) (Version: 17.0.2003.1112 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{2af972c7-13b0-4978-92a8-fee26a4fb4e9}) (Version: 12.0.21005.1 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden
Mozilla Firefox 31.0 (x86 cs) (HKLM-x32\...\Mozilla Firefox 31.0 (x86 cs)) (Version: 31.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
neroxml (x32 Version: 1.0.0 - Nero AG) Hidden
NVIDIA GeForce Experience 2.1.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.1 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.157.1165 - NVIDIA Corporation) Hidden
NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden
NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden
NVIDIA Ovladač 3D Vision 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 340.52 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 340.52 - NVIDIA Corporation)
NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden
NVIDIA ShadowPlay 15.3.33 (Version: 15.3.33 - NVIDIA Corporation) Hidden
NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.12.6514 - NVIDIA Corporation) Hidden
NVIDIA Systémový software PhysX 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
NVIDIA Update Core (Version: 15.3.33 - NVIDIA Corporation) Hidden
NVIDIA Virtual Audio 1.2.23 (Version: 1.2.23 - NVIDIA Corporation) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
OpenOffice 4.0.1 (HKLM-x32\...\{220C463A-2890-4C7F-B97C-C49FE175B849}) (Version: 4.01.9714 - Apache Software Foundation)
Opera Stable 23.0.1522.60 (HKLM-x32\...\Opera 23.0.1522.60) (Version: 23.0.1522.60 - Opera Software ASA)
Ovládací panel NVIDIA 340.52 (Version: 340.52 - NVIDIA Corporation) Hidden
Platform (x32 Version: 1.39 - VIA Technologies, Inc.) Hidden
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.986 - Even Balance, Inc.)
Rayman Legends (HKLM-x32\...\UmF5bWFuTGVnZW5kcw==_is1) (Version: 1 - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6662 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform)
SHIELD Streaming (Version: 3.1.100 - NVIDIA Corporation) Hidden
Sniper Elite (HKLM-x32\...\{A979B2D8-E3EE-4523-A26C-4AF0A6809280}) (Version: - )
Sniper Elite 3 (HKLM-x32\...\U25pcGVyRWxpdGUz_is1) (Version: 1 - )
Sniper Elite V2 (HKLM-x32\...\Sniper Elite V2_is1) (Version: - )
TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.13 - TeamSpeak Systems GmbH)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.51a - Ghisler Software GmbH)
Uplay (HKLM-x32\...\Uplay) (Version: 4.5 - Ubisoft)
VIA Platforma Ovladače zařízení (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.39 - VIA Technologies, Inc.)
VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.4.7.0 - Elaborate Bytes)
Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
Wolfenstein. The New Order, âĺđńč˙ 1.0.0.0 (HKLM-x32\...\Wolfenstein. The New Order_is1) (Version: 1.0.0.0 - RePack by SEYTER)
World of Tanks - Common Test (HKLM-x32\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812CT}_is1) (Version: - Wargaming.net)
World of Tanks (HKLM-x32\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1) (Version: - Wargaming.net)
World of Warplanes (HKLM-x32\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C813EU}_is1) (Version: - Wargaming.net)
XnView 2.03 (HKLM-x32\...\XnView_is1) (Version: 2.03 - Gougelet Pierre-e)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-3832753693-3646972138-179110667-1004_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Petr\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3832753693-3646972138-179110667-1004_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Petr\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3832753693-3646972138-179110667-1004_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Petr\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3832753693-3646972138-179110667-1004_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Petr\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3832753693-3646972138-179110667-1004_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Petr\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3832753693-3646972138-179110667-1004_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Petr\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\FileSyncApi64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3832753693-3646972138-179110667-1004_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Petr\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3832753693-3646972138-179110667-1004_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Petr\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3832753693-3646972138-179110667-1004_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Petr\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3832753693-3646972138-179110667-1004_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Petr\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)

==================== Restore Points =========================

29-07-2014 05:44:17 Nainstalováno rozhraní DirectX
31-07-2014 11:08:43 Nainstalováno rozhraní DirectX
01-08-2014 11:13:17 Removed [0.9.1] RagnaPack v2.0
03-08-2014 18:45:38 Installed [0.9.2] RagnaPack v2.0

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____N C:\WINDOWS\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {043F8A49-300C-402A-AA24-5DDB2C24D5B7} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics
Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {2B5F2724-20D4-4E67-B7BC-A2B15303DC76} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-06-24] (Piriform Ltd)
Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate
Task: {2CA251F4-7BF0-4C33-9BAE-CADEE70E4510} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)
Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation)
Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance
Task: {5EF7A1E2-22EF-40AE-A7DF-6BDBEE5582D9} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management
Task: {69DDF4B1-D09E-46C4-ACCF-0CB408AAB8F5} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload
Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task
Task: {6EF85A06-4F5B-4FAD-BA90-26197647061C} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation)
Task: {731B9E28-B3AE-49C7-ADD3-D69E61371E1C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task
Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
Task: {949D7F25-EC52-4E01-8AD4-F5531E0A91BA} - System32\Tasks\Opera scheduled Autoupdate 1397060391 => C:\Program Files (x86)\Opera\launcher.exe [2014-07-18] (Opera Software)
Task: {9DD049F6-C05C-4B9B-9EEA-A56E20EEC37C} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-07-10] (Microsoft Corporation)
Task: {9FA3D604-B948-4A1C-A7A8-2510B3B0DC6B} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-08] (Adobe Systems Incorporated)
Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work
Task: {CCB28B25-A288-40ED-9550-A48ABA3D2468} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-07-08] (AVAST Software)
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask
Task: {D25B87F3-DDC8-4EF7-A220-B0079F00539A} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation
Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization
Task: {E48B5E1F-32DA-499B-AA19-99CD5560C786} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

==================== Loaded Modules (whitelisted) =============

2013-10-25 10:27 - 2014-07-02 20:55 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2014-07-08 18:48 - 2014-07-08 18:48 - 00301152 _____ () C:\Program Files\AVAST Software\Avast\aswProperty.dll
2014-08-03 23:07 - 2014-08-03 23:07 - 02795008 _____ () C:\Program Files\AVAST Software\Avast\defs\14080301\algo.dll
2014-07-08 18:48 - 2014-07-08 18:48 - 19329904 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\Users\Petr\SkyDrive:ms-properties

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

HKLM\...\StartupApproved\Run: => "Nvtmru"
HKLM\...\StartupApproved\Run32: => "VirtualCloneDrive"
HKLM\...\StartupApproved\Run32: => "IObit Malware Fighter"
HKLM\...\StartupApproved\Run32: => "APSDaemon"
HKLM\...\StartupApproved\Run32: => "QuickTime Task"
HKLM\...\StartupApproved\Run32: => "Adobe ARM"
HKCU\...\StartupApproved\Run: => "Advanced SystemCare 6"
HKCU\...\StartupApproved\Run: => "GoogleDriveSync"
HKCU\...\StartupApproved\Run: => "Pokki"

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (08/04/2014 01:09:49 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: PETRMALENKA)
Description: Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (08/04/2014 01:09:44 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: PETRMALENKA)
Description: Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (08/04/2014 01:09:41 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: nvstreamsvc.exe, verze: 3.1.100.0, časové razítko: 0x53d25804
Název chybujícího modulu: ntdll.dll, verze: 6.3.9600.17031, časové razítko: 0x530895af
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000002cc39
ID chybujícího procesu: 0x1260
Čas spuštění chybující aplikace: 0xnvstreamsvc.exe0
Cesta k chybující aplikaci: nvstreamsvc.exe1
Cesta k chybujícímu modulu: nvstreamsvc.exe2
ID zprávy: nvstreamsvc.exe3
Úplný název chybujícího balíčku: nvstreamsvc.exe4
ID aplikace související s chybujícím balíčkem: nvstreamsvc.exe5

Error: (08/04/2014 01:09:37 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: PETRMALENKA)
Description: Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (08/04/2014 01:09:37 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: nvstreamsvc.exe, verze: 3.1.100.0, časové razítko: 0x53d25804
Název chybujícího modulu: ntdll.dll, verze: 6.3.9600.17031, časové razítko: 0x530895af
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000002cc39
ID chybujícího procesu: 0x934
Čas spuštění chybující aplikace: 0xnvstreamsvc.exe0
Cesta k chybující aplikaci: nvstreamsvc.exe1
Cesta k chybujícímu modulu: nvstreamsvc.exe2
ID zprávy: nvstreamsvc.exe3
Úplný název chybujícího balíčku: nvstreamsvc.exe4
ID aplikace související s chybujícím balíčkem: nvstreamsvc.exe5

Error: (08/04/2014 01:09:34 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: nvstreamsvc.exe, verze: 3.1.100.0, časové razítko: 0x53d25804
Název chybujícího modulu: ntdll.dll, verze: 6.3.9600.17031, časové razítko: 0x530895af
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000002cc39
ID chybujícího procesu: 0x9a8
Čas spuštění chybující aplikace: 0xnvstreamsvc.exe0
Cesta k chybující aplikaci: nvstreamsvc.exe1
Cesta k chybujícímu modulu: nvstreamsvc.exe2
ID zprávy: nvstreamsvc.exe3
Úplný název chybujícího balíčku: nvstreamsvc.exe4
ID aplikace související s chybujícím balíčkem: nvstreamsvc.exe5

Error: (08/04/2014 01:09:32 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: nvstreamsvc.exe, verze: 3.1.100.0, časové razítko: 0x53d25804
Název chybujícího modulu: ntdll.dll, verze: 6.3.9600.17031, časové razítko: 0x530895af
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000002cc39
ID chybujícího procesu: 0xe0c
Čas spuštění chybující aplikace: 0xnvstreamsvc.exe0
Cesta k chybující aplikaci: nvstreamsvc.exe1
Cesta k chybujícímu modulu: nvstreamsvc.exe2
ID zprávy: nvstreamsvc.exe3
Úplný název chybujícího balíčku: nvstreamsvc.exe4
ID aplikace související s chybujícím balíčkem: nvstreamsvc.exe5

Error: (08/04/2014 01:09:31 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: PETRMALENKA)
Description: Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (08/04/2014 01:09:31 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: PETRMALENKA)
Description: Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (08/04/2014 01:09:31 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: PETRMALENKA)
Description: Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.


System errors:
=============
Error: (08/04/2014 01:09:44 PM) (Source: DCOM) (EventID: 10010) (User: PETRMALENKA)
Description: Microsoft.WindowsLive.Mail.AppXj3e9v0xw9sf8t58nqr15tqqb2yq4zsfg.mca

Error: (08/04/2014 01:09:39 PM) (Source: DCOM) (EventID: 10010) (User: PETRMALENKA)
Description: Microsoft.WindowsLive.Mail.AppXj3e9v0xw9sf8t58nqr15tqqb2yq4zsfg.mca

Error: (08/04/2014 01:09:32 PM) (Source: DCOM) (EventID: 10010) (User: PETRMALENKA)
Description: Microsoft.WindowsLive.Mail.AppXj3e9v0xw9sf8t58nqr15tqqb2yq4zsfg.mca

Error: (08/04/2014 01:09:28 PM) (Source: DCOM) (EventID: 10010) (User: PETRMALENKA)
Description: Microsoft.WindowsLive.Mail.AppXj3e9v0xw9sf8t58nqr15tqqb2yq4zsfg.mca

Error: (08/04/2014 01:09:28 PM) (Source: DCOM) (EventID: 10010) (User: PETRMALENKA)
Description: Microsoft.WindowsLive.Mail.AppXj3e9v0xw9sf8t58nqr15tqqb2yq4zsfg.mca

Error: (08/04/2014 01:09:27 PM) (Source: DCOM) (EventID: 10010) (User: PETRMALENKA)
Description: Microsoft.WindowsLive.Mail.AppXj3e9v0xw9sf8t58nqr15tqqb2yq4zsfg.mca

Error: (08/04/2014 01:09:27 PM) (Source: DCOM) (EventID: 10010) (User: PETRMALENKA)
Description: Microsoft.WindowsLive.Mail.AppXj3e9v0xw9sf8t58nqr15tqqb2yq4zsfg.mca

Error: (08/04/2014 01:09:27 PM) (Source: DCOM) (EventID: 10010) (User: PETRMALENKA)
Description: Microsoft.WindowsLive.Mail.AppXj3e9v0xw9sf8t58nqr15tqqb2yq4zsfg.mca

Error: (08/04/2014 01:09:26 PM) (Source: DCOM) (EventID: 10010) (User: PETRMALENKA)
Description: Microsoft.WindowsLive.Mail.AppXj3e9v0xw9sf8t58nqr15tqqb2yq4zsfg.mca

Error: (08/04/2014 01:09:26 PM) (Source: DCOM) (EventID: 10010) (User: PETRMALENKA)
Description: Microsoft.WindowsLive.Mail.AppXj3e9v0xw9sf8t58nqr15tqqb2yq4zsfg.mca


Microsoft Office Sessions:
=========================
Error: (08/04/2014 01:09:49 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: PETRMALENKA)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2144927141

Error: (08/04/2014 01:09:44 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: PETRMALENKA)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2144927141

Error: (08/04/2014 01:09:41 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.17031530895afc0000005000000000002cc39126001cfafd4962f4ca0C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\WINDOWS\SYSTEM32\ntdll.dlld47133ee-1bc7-11e4-bfde-902b34a84e89

Error: (08/04/2014 01:09:37 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: PETRMALENKA)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2144927141

Error: (08/04/2014 01:09:37 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.17031530895afc0000005000000000002cc3993401cfafd493afff35C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\WINDOWS\SYSTEM32\ntdll.dlld1fd9707-1bc7-11e4-bfde-902b34a84e89

Error: (08/04/2014 01:09:34 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.17031530895afc0000005000000000002cc399a801cfafd49237ce72C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\WINDOWS\SYSTEM32\ntdll.dlld08da10d-1bc7-11e4-bfde-902b34a84e89

Error: (08/04/2014 01:09:32 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.17031530895afc0000005000000000002cc39e0c01cfafd490f85302C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\WINDOWS\SYSTEM32\ntdll.dllcf4e25e0-1bc7-11e4-bfde-902b34a84e89

Error: (08/04/2014 01:09:31 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: PETRMALENKA)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2144927141

Error: (08/04/2014 01:09:31 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: PETRMALENKA)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2144927141

Error: (08/04/2014 01:09:31 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: PETRMALENKA)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2144927141


CodeIntegrity Errors:
===================================
Date: 2013-10-25 11:19:49.815
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2013-10-25 11:19:49.799
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2013-10-25 11:19:47.307
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2013-10-25 11:19:47.220
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2013-10-25 11:19:46.933
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2013-10-25 11:19:46.575
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2013-10-25 11:02:09.602
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2013-10-25 11:02:09.582
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2013-10-25 11:02:09.474
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2013-10-25 11:02:09.455
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

Percentage of memory in use: 12%
Total physical RAM: 8173.43 MB
Available physical RAM: 7135.54 MB
Total Pagefile: 16365.43 MB
Available Pagefile: 15247.74 MB
Total Virtual: 131072 MB
Available Virtual: 131071.8 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:931.17 GB) (Free:522.95 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: C0729418)
Partition 1: (Active) - (Size=352 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=931 GB) - (Type=07 NTFS)

==================== End Of Log ============================

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosím kontrolu logu

Příspěvekod jaro3 » 04 srp 2014 18:56

Zklus resetovat do továrního nastavení ten router , návod je v manuálu. Budeš si ale muset znova nastavit domácí síť wifi...poku ji máš

Odinstaluj:
mwav
IObit Malware Fighter


Advanced SystemCare 6 a Ashampoo WinOptimizer to bych taky odinstaloval

Log je čistý , viry v tom nehrají roli.

C:\ProgramD Error: (08/04/2014 01:09:41 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: nvstreamsvc.exe, verze: 3.1.100.0, časové razítko: 0x53d25804
Název chybujícího modulu: ntdll.dll, verze: 6.3.9600.17031, časové razítko: 0x530895af
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000002cc39
ID chybujícího procesu: 0x1260
Čas spuštění chybující aplikace: 0xnvstreamsvc.exe0
Cesta k chybující aplikaci: nvstreamsvc.exe1
Cesta k chybujícímu modulu: nvstreamsvc.exe2
ID zprávy: nvstreamsvc.exe3
Úplný název chybujícího balíčku: nvstreamsvc.exe4
ID aplikace související s chybujícím balíčkem: nvstreamsvc.exe5ata\4e0cb922ab0e9d81


nejspíš chyba v NVidii , zkust přeinstalovat ovladače i program.

Ten Memtest zkus spustit několik.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Varg
Level 3.5
Level 3.5
Příspěvky: 701
Registrován: leden 07
Bydliště: Lamí hnízdo
Pohlaví: Muž
Stav:
Offline

Re: prosím kontrolu logu

Příspěvekod Varg » 05 srp 2014 08:22

Ahoj.
Tak po přeinstalaci ovladače se zdá být vše ok.
Netuším jak to taková blbost mohla dělat?
Jinak vše jsem se snažil udělat jen ten IObit Malware Fighter už nikde nevidím
a taky Advanced SystemCare 6 jsem nenašel.
Možná jsou to nějaké zbytky u kterých netuším jak se jich zbavit.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosím kontrolu logu

Příspěvekod jaro3 » 05 srp 2014 09:28

Použij:
Odstraňovač veteše..
http://www.pcdecrapifier.com/

Je váš počítač pomalý? Dokonce i u zbrusu nových počítačů často přicházejí se spoustou předinstalovaného softwaru zbytečný balast , který může způsobit, že nový PC se začne zpomalovat. Nemluvě o všechny otravné pop-up! Jiní mohou mít počítač, který je stár pár let a máme tam nainstalované spoustu haraburdí! Stává se , na spoustu programů v průběhu času zapomeneme a neodstranníme je.
PC Decrapifier je tu pro Vás! Je to bezplatný nástroj pro Vaše použití, který pomáhá odstranit nepotřebné programy, položky Po spuštění a ikony, které zpomalují počítač. Bere vás krok za krokem, doporučuje Vám, co odstranit, z nichž mnohé mohou být odstraněny bez dozoru. Vydejte se na stránku pro stahování!

nebo i :
Stáhněte si a nainstalujte Revo Uninstaller FreePlease download and install Revo Uninstaller Free
http://www.revouninstaller.com/start_fr ... nload.html
Poklepáním na Revo Uninstaller jej spustit.
Ze seznamu programů klikněte dvakrát na programu odstranit
Až budete vyzváni, zda chcete odinstalovat klepněte na tlačítko Ano.
Ujistěte se, že je vybrána možnost Mírný potom klepněte na tlačítko Další.
Program bude probíhat, Pokud budete vyzváni znovu klepněte na tlačítko Ano
Při vestavěný Uninstaller je dokončena klepněte na tlačítko Další.
Jakmile program hledal zbytky klepněte na tlačítko Další.
Zkontrolujte / zaškrtněte položky Bolded jen na seznamu a potom klepněte na tlačítko Odstranit
Po vyzvání klepněte na Ano a pak na další.
dal šek na všechny složky, které se nachází a vyberte možnost odstranění
Po zobrazení výzvy vyberte ano, pak na další
Poté, co udělal na tlačítko Dokončit.

+
Stáhni si zde DelFix

ulož si soubor na plochu.
Poklepáním na ikonu spusť nástroj Delfix.exe
( Ve Windows Vista, Windows 7 a 8, musíš spustit soubor pravým tlačítkem myši -> Spustit jako správce .
V hlavním menu, zkontroluj tyto možnosti - Odstranění dezinfekce nástrojů (Remove desinfection tools) – Vyčistit body obnovy (Purge System Restore)
Poté klikněte na tlačítko Spustit (Run) a nech nástroj dělat svoji práci

Poté se zpráva se otevře (DelFix.txt). Vlož celý obsah zprávy sem.Jinak je zpráva zde:
v C: \ DelFix.txt
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Varg
Level 3.5
Level 3.5
Příspěvky: 701
Registrován: leden 07
Bydliště: Lamí hnízdo
Pohlaví: Muž
Stav:
Offline

Re: prosím kontrolu logu

Příspěvekod Varg » 05 srp 2014 11:16

# DelFix v10.8 - Logfile created 05/08/2014 at 07:47:49
# Updated 29/07/2014 by Xplode
# Username : Petr - PETRMALENKA
# Operating System : Windows 8.1 (64 bits)

~ Removing disinfection tools ...

Deleted : C:\AdwCleaner
Deleted : C:\Users\Petr\Desktop\Addition.txt
Deleted : C:\Users\Petr\Desktop\adwcleaner_3.302.exe
Deleted : C:\Users\Petr\Desktop\JRT.exe
Deleted : C:\Users\Petr\Desktop\JRT.txt
Deleted : C:\Users\Petr\Desktop\RogueKillerX64.exe
Deleted : C:\Users\Petr\Downloads\TFC.exe
Deleted : HKLM\SOFTWARE\AdwCleaner
Deleted : HKLM\SOFTWARE\TrendMicro\Hijackthis

~ Cleaning system restore ...

Deleted : RP #61 [Nainstalováno rozhraní DirectX | 07/29/2014 05:44:17]
Deleted : RP #62 [Nainstalováno rozhraní DirectX | 07/31/2014 11:08:43]
Deleted : RP #63 [Removed [0.9.1] RagnaPack v2.0 | 08/01/2014 11:13:17]
Deleted : RP #64 [Installed [0.9.2] RagnaPack v2.0 | 08/03/2014 18:45:38]

New restore point created !

########## - EOF - ##########

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: prosím kontrolu logu

Příspěvekod Orcus » 05 srp 2014 18:32

OK, pokud nejsou problémy, téma můžeš označit jako vyřešené.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 9 hostů