Podezření na vir

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
pepanecek5
Level 3.5
Level 3.5
Příspěvky: 709
Registrován: červenec 14
Pohlaví: Muž
Stav:
Offline

Podezření na vir

Příspěvekod pepanecek5 » 08 bře 2015 16:33

Ahojte,
mám menší podezření na vir a ještě musím při startu pc ukončit v procesech explorer.exe a spustit znovu, nebo je jen černá obrazovka.
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 08-03-2015 02
Ran by Šůstkovi (administrator) on ŠŮSTKOVI-PC on 08-03-2015 16:29:38
Running from C:\Users\Šůstkovi\Desktop
Loaded Profiles: Šůstkovi (Available profiles: Šůstkovi)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AMD) C:\Windows\System32\atieclxx.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
() C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
() C:\Windows\SysWOW64\ASGT.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.04.11\AsusFanControlService.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Ulead Systems, Inc.) C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(Leadtek Research Inc.) C:\Program Files (x86)\WinFast\WFTVFM\WFWIZ_vista.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\perfmon.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7575768 2014-11-18] (Realtek Semiconductor)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-01-26] (AVAST Software)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-26] (Intel Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-12-06] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3978600 2015-02-17] (LogMeIn Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\qttask.exe [98304 2015-03-07] (Apple Computer, Inc.)
HKLM-x32\...\Run: [WinFastDTV] => C:\Program Files (x86)\WinFast\WFDTV\DTVSchdl.exe [79360 2010-04-07] (Leadtek Research Inc.)
HKLM-x32\...\Run: [ArcSoft Connection Service] => C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207360 2010-03-18] (ArcSoft Inc.)
HKLM-x32\...\Run: [WinFast Schedule] => C:\Program Files (x86)\WinFast\WFTVFM\WFWIZ.exe [405504 2007-05-22] (Leadtek Research Inc.)
HKLM-x32\...\RunOnce: [WinFast Schedule] => C:\Program Files\WinFast\WFDTV\WFWIZ.exe
HKLM-x32\...\RunOnce: [WinFast Schedule2] => C:\Program Files (x86)\WinFast\WFDTV\WFWIZ.exe [2924544 2010-03-25] (Leadtek Research Inc.)
HKLM-x32\...\RunOnce: [WinFast Schedule3] => C:\Program Files\WinFast\WFTVFM\WFWIZ.exe
HKLM-x32\...\RunOnce: [WinFast Schedule4] => C:\Program Files (x86)\WinFast\WFTVFM\WFWIZ.exe [405504 2007-05-22] (Leadtek Research Inc.)
HKLM-x32\...\runonceex: [Flag] => 
HKU\S-1-5-21-2758404647-1744933043-672776856-1000\...\Run: [GUDelayStartup] => C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe [37152 2014-09-29] (Glarysoft Ltd)
HKU\S-1-5-21-2758404647-1744933043-672776856-1000\...\Run: [HydraVisionDesktopManager] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [389120 2013-12-06] (AMD)
HKU\S-1-5-21-2758404647-1744933043-672776856-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-2758404647-1744933043-672776856-1000\...\Run: [WinFast Schedule] => C:\Program Files (x86)\WinFast\WFDTV\WFWIZ.exe [2924544 2010-03-25] (Leadtek Research Inc.)
HKU\S-1-5-21-2758404647-1744933043-672776856-1000\...\MountPoints2: {7b409eb3-3fff-11e4-960f-7824af34cc82} - K:\setup.exe
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
BootExecute: autocheck autochk *

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-2758404647-1744933043-672776856-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=16194
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2758404647-1744933043-672776856-1000 -> {1352B701-9AF6-4B14-A767-2EF11BF5C103} URL = http://www.mapy.cz/?query={searchTerms}&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-2758404647-1744933043-672776856-1000 -> {1F6FFEBF-C6B8-46B6-90F0-BC2E4EEEB44F} URL = http://www.firmy.cz/?q={searchTerms}&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-2758404647-1744933043-672776856-1000 -> {33E34DEF-C535-4621-82FB-013B70DBCC4B} URL = http://www.novinky.cz/hledej?w={searchTerms}&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-2758404647-1744933043-672776856-1000 -> {832E9C72-EA99-4DB8-BF0D-C4E9676D4079} URL = http://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-2758404647-1744933043-672776856-1000 -> {92B9E512-7845-42A0-A358-91326FF1C649} URL = http://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-2758404647-1744933043-672776856-1000 -> {983066A8-20A2-492E-9BC0-7A543EAF5AB2} URL = http://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-2758404647-1744933043-672776856-1000 -> {B3B95ABE-2B9C-44E7-8144-64104B5C0F17} URL = http://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-2758404647-1744933043-672776856-1000 -> {BA1691D8-9E26-4F35-B3B1-4F00170057D9} URL = http://www.zbozi.cz/?q={searchTerms}&r=campmoz&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-2758404647-1744933043-672776856-1000 -> {D5D7FF6D-DC78-43E5-B8A7-ABA12057232C} URL = http://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_16194
BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-07-07] (CANON INC.)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-18] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-01-24] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-11-23] (AVAST Software)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-24] (Oracle Corporation)
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-07-07] (CANON INC.)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-18] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-01-24] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-11-23] (AVAST Software)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-24] (Oracle Corporation)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-07-07] (CANON INC.)
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-07-07] (CANON INC.)

FireFox:
========
FF ProfilePath: C:\Users\Šůstkovi\AppData\Roaming\Mozilla\Firefox\Profiles\skd58wtm.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_296.dll [2015-02-02] ()
FF Plugin: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-01-24] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-01-24] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_296.dll [2015-02-02] ()
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.)
FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-01-24] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-01-24] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-04] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-04] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2758404647-1744933043-672776856-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Šůstkovi\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-12-05] (Unity Technologies ApS)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-09-19]

Chrome:
=======
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://www.seznam.cz/"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\Šůstkovi\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Glow) - C:\Users\Šůstkovi\AppData\Local\Google\Chrome\User Data\Default\Extensions\bekmjjakgojplnhahcilegeiklenjbgb [2014-11-04]
CHR Extension: (YouTube) - C:\Users\Šůstkovi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-09-19]
CHR Extension: (Google Search) - C:\Users\Šůstkovi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-09-19]
CHR Extension: (Star Stable Online) - C:\Users\Šůstkovi\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnlmdkpemkkigkgelegknllpmfclakkk [2014-09-20]
CHR Extension: (AdBlock) - C:\Users\Šůstkovi\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-12-03]
CHR Extension: (Avast Online Security) - C:\Users\Šůstkovi\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-09-19]
CHR Extension: (Power Zoom) - C:\Users\Šůstkovi\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlioidldolgbmanndggdnldambdlglgj [2014-09-19]
CHR Extension: (Google Wallet) - C:\Users\Šůstkovi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-09-19]
CHR Extension: (Gmail) - C:\Users\Šůstkovi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-09-19]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-11-21]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [936728 2014-01-28] ()
R2 ASGT; C:\Windows\SysWOW64\ASGT.exe [55296 2012-01-17] () [File not signed]
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [954648 2014-01-28] (ASUSTeK Computer Inc.)
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [149120 2014-10-04] (ASUSTeK Computer Inc.)
R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.04.11\AsusFanControlService.exe [384312 2014-01-28] (ASUSTeK Computer Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-11-23] (AVAST Software)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [528096 2014-06-08] (Futuremark)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1910640 2015-03-01] (Electronic Arts)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5426448 2014-12-15] (TeamViewer GmbH)
R2 UleadBurningHelper; C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [49152 2005-01-31] (Ulead Systems, Inc.) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 61883; C:\Windows\System32\DRIVERS\61883.sys [60288 2009-07-14] (Microsoft Corporation)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-01-28] ()
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2012-09-14] ()
S3 ASUSFILTER; C:\Windows\SysWow64\drivers\ASUSFILTER.sys [46152 2011-09-20] (MCCI Corporation)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-11-21] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-11-21] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-11-21] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-11-21] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-11-23] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-11-21] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-11-21] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-11-21] ()
R3 CX88VID; C:\Windows\System32\drivers\cxavsvid.sys [469248 2007-09-19] (Leadtek Research Inc.)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2015-02-18] (Disc Soft Ltd)
R3 e1dexpress; C:\Windows\System32\DRIVERS\e1d62x64.sys [494864 2013-08-29] (Intel Corporation)
R1 GUBootStartup; C:\Windows\System32\drivers\GUBootStartup.sys [20160 2014-10-10] (Glarysoft Ltd)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-11-21] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2015-03-08] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2014-11-21] (Malwarebytes Corporation)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [37624 2015-01-09] ()
S3 ULCDRHlp; C:\Windows\SysWOW64\Drivers\ULCDRHlp.sys [27392 2004-12-23] (Ulead Systems, Inc.) [File not signed]
S3 WinRing0_1_2_0; C:\Users\Šůstkovi\Desktop\Pepa\Všechno možné\WinRing0x64.sys [14544 2008-07-26] (OpenLibSys.org)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-08 16:29 - 2015-03-08 16:30 - 00019993 _____ () C:\Users\Šůstkovi\Desktop\FRST.txt
2015-03-08 16:29 - 2015-03-08 16:29 - 00000000 ____D () C:\Users\Šůstkovi\Desktop\FRST-OlderVersion
2015-03-08 16:18 - 2015-03-08 16:18 - 01782026 _____ () C:\Users\Šůstkovi\Desktop\x86.zip
2015-03-08 15:06 - 2015-03-08 15:06 - 00001912 _____ () C:\Users\Public\Desktop\RCConfig.lnk
2015-03-08 15:06 - 2015-03-08 15:06 - 00001752 _____ () C:\Users\Public\Desktop\WinFast PVR2.lnk
2015-03-08 15:06 - 2015-03-08 15:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinFast PVR2
2015-03-08 15:06 - 2004-12-23 17:27 - 00027392 _____ (Ulead Systems, Inc.) C:\Windows\SysWOW64\Drivers\ULCDRHlp.sys
2015-03-08 14:57 - 2015-03-08 14:57 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Local\WMTools Downloaded Files
2015-03-08 14:54 - 2015-03-08 14:54 - 07363072 _____ () C:\Users\Šůstkovi\Desktop\MM26_CS.msi
2015-03-08 14:41 - 2015-03-08 14:41 - 00000362 _____ () C:\Windows\DirectX.log
2015-03-08 14:40 - 2015-03-08 16:23 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Local\Windows Live
2015-03-08 14:40 - 2015-03-08 14:40 - 01243336 _____ (společnost Microsoft Corporation) C:\Users\Šůstkovi\Desktop\wlsetup-web.exe
2015-03-08 10:45 - 2015-03-08 15:06 - 00000000 ____D () C:\Program Files (x86)\WinFast
2015-03-08 10:45 - 2015-03-08 10:53 - 00000000 ____D () C:\Windows\ulead.dat
2015-03-08 10:45 - 2015-03-08 10:45 - 00000794 _____ () C:\Users\Public\Desktop\WinFast PVR.lnk
2015-03-08 10:45 - 2015-03-08 10:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinFast Entertainment Center
2015-03-08 10:45 - 2007-02-26 20:20 - 00049152 _____ (Leadtek Research Inc.) C:\Windows\SysWOW64\TempDel.EXE
2015-03-08 10:45 - 2005-01-06 16:55 - 00009446 _____ (Leadtek Research Inc.) C:\Windows\SysWOW64\Drivers\WFIOCTL.sys
2015-03-08 10:39 - 2015-03-08 10:39 - 00000000 ____D () C:\Users\Šůstkovi\Desktop\runtime
2015-03-08 10:37 - 2015-03-08 10:43 - 66970978 _____ () C:\Users\Šůstkovi\Desktop\winfastpvr.zip
2015-03-08 10:37 - 2015-03-08 10:39 - 00000000 ____D () C:\Users\Šůstkovi\Desktop\game
2015-03-08 10:28 - 2015-03-08 10:29 - 05466299 _____ () C:\Users\Šůstkovi\Desktop\x64.zip
2015-03-08 10:10 - 2015-03-08 10:10 - 00225279 _____ () C:\Users\Šůstkovi\Desktop\bfaa66a722c7e19adca1187476b7be3d.zip
2015-03-08 10:10 - 2007-09-19 19:22 - 00469248 _____ (Leadtek Research Inc.) C:\Windows\system32\Drivers\cxavsvid.sys
2015-03-07 23:33 - 2015-03-07 23:33 - 00003304 _____ () C:\Windows\System32\Tasks\{8A0E85BC-1DCE-44E5-80A0-4FBEA6D80B5D}
2015-03-07 23:24 - 2015-03-07 23:33 - 52450907 _____ () C:\Users\Šůstkovi\Desktop\WinFastPVR2_setup_20360.zip
2015-03-07 22:47 - 2015-03-07 22:47 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MediaCoder x64
2015-03-07 22:47 - 2015-03-07 22:47 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\Mediatronic
2015-03-07 22:47 - 2015-03-07 22:47 - 00000000 ____D () C:\Program Files\MediaCoder
2015-03-07 22:21 - 2015-03-07 22:21 - 02209528 _____ () C:\Users\Šůstkovi\Desktop\VirtualDub-1.10.4-AMD64.zip
2015-03-07 21:31 - 2015-03-07 21:31 - 00000000 ____D () C:\Users\Šůstkovi\Documents\InstantCDDVD
2015-03-07 21:15 - 2015-03-07 21:15 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Local\ArcSoft
2015-03-07 21:14 - 2015-03-07 21:19 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\ArcSoft
2015-03-07 21:13 - 2015-03-07 21:19 - 00000000 ___HD () C:\ProgramData\ArcSoft
2015-03-07 21:12 - 2009-03-11 10:53 - 00000350 _____ () C:\Windows\SysWOW64\AF15IRTBL.bin
2015-03-07 21:04 - 1998-11-18 16:33 - 00144384 _____ (Intel Corporation) C:\Windows\SysWOW64\Iacenc.dll
2015-03-07 21:04 - 1997-06-13 08:56 - 00056832 _____ () C:\Windows\SysWOW64\Iyvu9_32.dll
2015-03-07 21:03 - 2015-03-07 21:06 - 00000000 ____D () C:\Users\Šůstkovi\Documents\Ulead VideoStudio SE
2015-03-07 21:01 - 2015-03-07 21:01 - 00000000 ____D () C:\ProgramData\SmartSound Software Inc
2015-03-07 21:01 - 2015-03-07 21:01 - 00000000 ____D () C:\Program Files (x86)\SmartSound Software
2015-03-07 21:01 - 2004-05-04 11:53 - 01645320 ____N (Microsoft Corporation) C:\Windows\SysWOW64\gdiplus.dll
2015-03-07 21:00 - 2015-03-08 10:53 - 00000216 _____ () C:\Windows\Ulead32.ini
2015-03-07 21:00 - 2015-03-07 21:11 - 00000000 ____D () C:\ProgramData\QuickTime
2015-03-07 21:00 - 2015-03-07 21:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ulead VideoStudio 9.0 SE DVD
2015-03-07 21:00 - 2015-03-07 21:01 - 00000000 ____D () C:\Windows\SysWOW64\QuickTime
2015-03-07 21:00 - 2015-03-07 21:00 - 00054156 ____H () C:\Windows\QTFont.qfn
2015-03-07 21:00 - 2015-03-07 21:00 - 00003326 _____ () C:\Windows\SysWOW64\qtplugin.log
2015-03-07 21:00 - 2015-03-07 21:00 - 00002254 _____ () C:\Users\Public\Desktop\Ulead VideoStudio 9 SE DVD.lnk
2015-03-07 21:00 - 2015-03-07 21:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2015-03-07 21:00 - 2015-03-07 21:00 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2015-03-07 21:00 - 1999-11-10 12:05 - 00086016 _____ (MindVision) C:\Windows\unvise32qt.exe
2015-03-07 20:59 - 2015-03-07 20:59 - 00000000 ____D () C:\Program Files (x86)\Ulead Systems
2015-03-07 20:52 - 2015-03-07 20:52 - 00003010 _____ () C:\Windows\System32\Tasks\{7B2FA218-63B7-41DB-AA73-655BA1E39425}
2015-03-07 20:49 - 2015-03-07 20:49 - 00000000 ____D () C:\Users\Šůstkovi\Desktop\Ulead VideoStudio 9.0 SE DVD
2015-03-07 20:48 - 2015-03-07 20:48 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\Ulead Systems
2015-03-07 20:48 - 2015-03-07 20:48 - 00000000 ____D () C:\ProgramData\Ulead Systems
2015-03-07 20:40 - 2015-03-07 20:46 - 110626148 _____ () C:\Users\Šůstkovi\Desktop\Ulead-VideoStudio-9.0-SE-DVD.rar
2015-03-07 20:31 - 2015-03-08 15:06 - 00000000 ____D () C:\Windows\SysWOW64\WinFast
2015-03-07 20:27 - 2015-03-07 20:30 - 54166746 _____ () C:\Users\Šůstkovi\Desktop\Leadtek-WinFast-DTV2000-H.zip
2015-03-05 20:51 - 2015-03-05 20:52 - 00276792 _____ () C:\Windows\Minidump\030515-16177-01.dmp
2015-03-05 20:51 - 2015-03-05 20:51 - 589314481 _____ () C:\Windows\MEMORY.DMP
2015-03-04 22:44 - 2015-03-04 23:36 - 920127132 _____ () C:\Users\Šůstkovi\Desktop\Agent.Carter.S01E06.-HD-720p.---CZ-titulky-by-HanzeST.avi
2015-03-03 15:15 - 2015-03-03 16:10 - 510723780 _____ () C:\Users\Šůstkovi\Desktop\Agent.Carter.S01E06---CZ-titulky-by-HanzeST.avi
2015-03-02 22:01 - 2015-03-02 22:01 - 04502528 _____ () C:\Windows\PE_File.dll
2015-03-02 21:59 - 2015-03-02 22:01 - 04449952 _____ () C:\Windows\PE_Rom.dll
2015-03-02 18:46 - 2015-03-02 19:28 - 364902400 _____ () C:\Users\Šůstkovi\Desktop\The-Walking-Dead-S05E12-CZ-Titulky-v-obraze-Arny.avi
2015-03-01 22:22 - 2015-03-01 23:01 - 350879694 _____ () C:\Users\Šůstkovi\Desktop\the-walking-dead-s05e11-cz-titulky.avi
2015-03-01 18:01 - 2015-03-01 18:02 - 00000000 ____D () C:\Users\Šůstkovi\Documents\Soubory aplikace Outlook
2015-03-01 11:55 - 2015-03-01 11:55 - 00000221 _____ () C:\Users\Šůstkovi\Desktop\Zombie Panic Source.url
2015-03-01 11:55 - 2015-03-01 11:55 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-03-01 11:14 - 2015-03-01 11:14 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Local\Steam
2015-03-01 11:10 - 2015-03-05 23:47 - 00000000 ____D () C:\Program Files (x86)\Steam
2015-03-01 11:10 - 2015-03-01 11:10 - 01142392 _____ () C:\Users\Šůstkovi\Desktop\SteamSetup.exe
2015-03-01 11:10 - 2015-03-01 11:10 - 00000963 _____ () C:\Users\Public\Desktop\Steam.lnk
2015-03-01 11:10 - 2015-03-01 11:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-03-01 09:34 - 2015-03-01 13:07 - 1935689444 _____ () C:\Users\Šůstkovi\Desktop\The-Mentalist-S07E12E13-720p-CZ-titulky-v-obraze.mp4
2015-02-28 21:31 - 2015-02-28 21:31 - 00000000 ____D () C:\Users\Šůstkovi\Downloads\The.Hunger.Games.Mockingjay.Part.I
2015-02-28 12:02 - 2015-02-28 12:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP3
2015-02-26 16:08 - 2015-02-26 16:42 - 2152344663 _____ () C:\Users\Šůstkovi\Desktop\Lyžák VS.mp4
2015-02-25 23:04 - 2015-01-09 00:44 - 00419936 _____ () C:\Windows\SysWOW64\locale.nls
2015-02-25 23:04 - 2015-01-09 00:43 - 00419936 _____ () C:\Windows\system32\locale.nls
2015-02-24 21:20 - 2015-03-01 17:50 - 00021944 _____ () C:\Users\Šůstkovi\Documents\Lyžák.veg
2015-02-24 21:20 - 2015-02-28 21:42 - 00021992 _____ () C:\Users\Šůstkovi\Documents\Lyžák.veg.bak
2015-02-24 21:18 - 2015-02-24 21:20 - 00388088 _____ () C:\Users\Šůstkovi\Desktop\10 Thinking Out Loud.mp3.sfk
2015-02-24 18:46 - 2015-02-24 19:01 - 1841326406 _____ () C:\Users\Šůstkovi\Desktop\Lyžák.avi
2015-02-22 22:57 - 2015-02-22 22:57 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\Ahead
2015-02-22 22:12 - 2015-02-22 22:16 - 165542008 _____ (Sony Creative Software Inc.) C:\Users\Šůstkovi\Desktop\audiostudio10.0.245.exe
2015-02-22 19:48 - 2015-03-08 16:24 - 00003441 _____ () C:\Windows\setupact.log
2015-02-22 19:48 - 2015-02-22 19:48 - 00000000 _____ () C:\Windows\setuperr.log
2015-02-22 19:38 - 2015-02-22 19:39 - 00000000 ____D () C:\Users\Šůstkovi\Downloads\SONY Sound Forge Pro 11.0 build 234 (patch-keygen DI) [ChingLiu]
2015-02-22 19:36 - 2015-02-22 19:36 - 00002680 _____ () C:\Users\Šůstkovi\Documents\Register Sound Forge Audio Studio.htm
2015-02-22 18:33 - 2015-02-23 20:54 - 01842552 _____ () C:\Users\Šůstkovi\Documents\Lyžák.ffd
2015-02-22 17:26 - 2015-02-22 17:26 - 00015000 _____ () C:\Users\Šůstkovi\Documents\pomeranč.veg
2015-02-22 17:03 - 2015-02-22 17:03 - 44760630 _____ () C:\Users\Šůstkovi\Desktop\IMG_0377.bmp
2015-02-22 16:32 - 2015-02-22 16:32 - 00000000 ____D () C:\Users\Šůstkovi\Documents\NeroVision
2015-02-22 12:33 - 2015-02-22 12:34 - 00000000 ____D () C:\Users\Šůstkovi\Desktop\Lyžák
2015-02-22 12:02 - 2015-02-22 12:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ffDiaporama
2015-02-22 12:02 - 2015-02-22 12:02 - 00000848 _____ () C:\Users\Public\Desktop\ffDiaporama.lnk
2015-02-22 11:35 - 2015-02-22 11:38 - 672623530 _____ () C:\Users\Šůstkovi\Desktop\Náš venkov - Maršov.avi
2015-02-22 11:10 - 2015-02-22 11:10 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\VitySoft
2015-02-22 11:10 - 2015-02-22 11:10 - 00000000 ____D () C:\Users\Šůstkovi\.objectdb
2015-02-21 23:25 - 2015-02-22 11:46 - 00000000 ____D () C:\Program Files (x86)\ffDiaporama
2015-02-20 16:06 - 2015-02-20 18:39 - 484099123 ____R () C:\Users\Šůstkovi\Desktop\Návrat do budoucnosti I.mkv
2015-02-20 16:05 - 2015-02-20 16:08 - 00000000 ____D () C:\Users\Šůstkovi\Desktop\Návrat do budoucnosti - Trilogie
2015-02-19 22:01 - 2015-02-19 22:02 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\ffDiaporama
2015-02-19 22:00 - 2015-02-22 12:02 - 00000000 ____D () C:\Program Files\ffDiaporama
2015-02-19 21:44 - 2015-02-19 21:49 - 43892575 _____ (The ffDiaporama Team ) C:\Users\Šůstkovi\Documents\ffDiaporama_2.1.2014.0209-x64_setup.exe
2015-02-18 21:21 - 2015-02-18 21:29 - 00000000 ____D () C:\Users\Šůstkovi\Documents\VirtualDJ
2015-02-18 21:21 - 2015-02-18 21:21 - 00000954 _____ () C:\Users\Šůstkovi\Desktop\VirtualDJ 8.lnk
2015-02-18 21:21 - 2015-02-18 21:21 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ
2015-02-18 21:21 - 2015-02-18 21:21 - 00000000 ____D () C:\Program Files (x86)\VirtualDJ
2015-02-18 21:15 - 2015-02-18 21:15 - 34363644 _____ () C:\Users\Šůstkovi\Desktop\Chase & Status X Kanye West - Hold my Machine Gun (MASHUP by Medetix).wav
2015-02-18 21:11 - 2015-02-18 21:11 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2015-02-18 21:11 - 2015-02-18 21:11 - 00001950 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2015-02-18 21:11 - 2015-02-18 21:11 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\DAEMON Tools Lite
2015-02-18 21:11 - 2015-02-18 21:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2015-02-18 21:11 - 2015-02-18 21:11 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
2015-02-18 21:10 - 2015-02-18 21:11 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite
2015-02-18 14:25 - 2015-02-18 14:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2015-02-18 14:25 - 2015-02-18 14:25 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi
2015-02-16 19:50 - 2015-03-06 21:40 - 00000000 ____D () C:\Counter-Strike 1.6
2015-02-16 19:50 - 2015-02-16 19:50 - 00001562 _____ () C:\Users\Šůstkovi\Desktop\Counter-Strike 1.6.lnk
2015-02-16 19:50 - 2015-02-16 19:50 - 00001508 _____ () C:\Users\Šůstkovi\Desktop\Half-Life.lnk
2015-02-16 19:50 - 2015-02-16 19:50 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter-Strike 1.6
2015-02-16 15:54 - 2015-02-16 16:16 - 00000000 ____D () C:\Users\Šůstkovi\Downloads\Simpsonovi 25. série CZ 1080p
2015-02-15 20:42 - 2015-02-15 20:42 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Local\CrashRpt
2015-02-15 20:05 - 2015-02-15 20:05 - 00083192 _____ () C:\Users\Šůstkovi\Documents\Koníček.veg
2015-02-15 19:30 - 2015-02-15 19:30 - 00002247 _____ () C:\Users\Public\Desktop\SWAT 4.lnk
2015-02-15 19:29 - 2015-02-15 19:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sierra
2015-02-15 19:29 - 2001-11-12 10:07 - 00327168 _____ (InstallShield Software Corporation) C:\Windows\IsUn0405.exe
2015-02-15 19:26 - 2015-02-15 19:26 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\InstallShield
2015-02-15 19:26 - 2015-02-15 19:26 - 00000000 ____D () C:\Program Files (x86)\VUGames
2015-02-13 22:28 - 2015-01-09 04:14 - 00950272 _____ (Microsoft Corporation) C:\Windows\system32\perftrack.dll
2015-02-13 22:28 - 2015-01-09 04:14 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\wdi.dll
2015-02-13 22:28 - 2015-01-09 04:14 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\powertracker.dll
2015-02-13 22:28 - 2015-01-09 03:48 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdi.dll
2015-02-12 21:43 - 2015-01-23 05:42 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-02-12 21:43 - 2015-01-23 05:41 - 06041600 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-02-12 21:43 - 2015-01-23 04:43 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-02-12 21:43 - 2015-01-23 04:17 - 04300800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-02-11 22:22 - 2015-01-14 06:47 - 00389808 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-02-11 22:22 - 2015-01-14 06:09 - 00342712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-02-11 22:22 - 2015-01-12 04:09 - 25056256 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-02-11 22:22 - 2015-01-12 04:05 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-02-11 22:22 - 2015-01-12 04:05 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-02-11 22:22 - 2015-01-12 03:49 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-02-11 22:22 - 2015-01-12 03:48 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-02-11 22:22 - 2015-01-12 03:48 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-02-11 22:22 - 2015-01-12 03:48 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-02-11 22:22 - 2015-01-12 03:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-02-11 22:22 - 2015-01-12 03:40 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-02-11 22:22 - 2015-01-12 03:39 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-02-11 22:22 - 2015-01-12 03:36 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-02-11 22:22 - 2015-01-12 03:34 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-02-11 22:22 - 2015-01-12 03:34 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-02-11 22:22 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-02-11 22:22 - 2015-01-12 03:25 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-02-11 22:22 - 2015-01-12 03:21 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-02-11 22:22 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-02-11 22:22 - 2015-01-12 03:13 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-02-11 22:22 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-02-11 22:22 - 2015-01-12 03:08 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-02-11 22:22 - 2015-01-12 03:07 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-02-11 22:22 - 2015-01-12 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-02-11 22:22 - 2015-01-12 03:07 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-02-11 22:22 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-02-11 22:22 - 2015-01-12 03:04 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-02-11 22:22 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-02-11 22:22 - 2015-01-12 03:00 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-02-11 22:22 - 2015-01-12 02:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-02-11 22:22 - 2015-01-12 02:57 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-02-11 22:22 - 2015-01-12 02:55 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-02-11 22:22 - 2015-01-12 02:48 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-02-11 22:22 - 2015-01-12 02:48 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-02-11 22:22 - 2015-01-12 02:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-02-11 22:22 - 2015-01-12 02:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-02-11 22:22 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-02-11 22:22 - 2015-01-12 02:43 - 14401024 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-02-11 22:22 - 2015-01-12 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-02-11 22:22 - 2015-01-12 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-02-11 22:22 - 2015-01-12 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-02-11 22:22 - 2015-01-12 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-02-11 22:22 - 2015-01-12 02:27 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-02-11 22:22 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-02-11 22:22 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-02-11 22:22 - 2015-01-12 02:22 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-02-11 22:22 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-02-11 22:22 - 2015-01-12 02:14 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-02-11 22:22 - 2015-01-12 02:02 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-02-11 22:22 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-02-11 22:22 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-02-11 22:22 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-02-11 22:21 - 2015-02-04 04:16 - 00894976 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-02-11 22:21 - 2015-02-04 04:16 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-02-11 22:21 - 2015-02-04 04:16 - 00609280 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-02-11 22:21 - 2015-02-04 04:16 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-02-11 22:21 - 2015-02-04 04:16 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-02-11 22:21 - 2015-02-04 04:16 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-02-11 22:21 - 2015-02-04 04:13 - 01098752 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-02-11 22:21 - 2015-01-28 00:36 - 01239720 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2015-02-11 22:21 - 2015-01-10 07:48 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-02-11 22:21 - 2015-01-10 07:48 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-02-11 22:21 - 2015-01-10 07:48 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-02-11 22:21 - 2015-01-10 07:48 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-02-11 22:21 - 2015-01-10 07:48 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-02-11 22:21 - 2015-01-10 07:48 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-02-11 22:21 - 2015-01-10 07:48 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-02-11 22:21 - 2015-01-10 07:27 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-02-11 22:21 - 2015-01-10 07:27 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-02-11 22:21 - 2015-01-10 07:27 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-02-11 22:21 - 2015-01-10 07:27 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-02-11 22:21 - 2015-01-10 07:27 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-02-11 22:21 - 2015-01-10 07:27 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-02-11 22:21 - 2015-01-10 07:27 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-02-11 22:20 - 2015-01-15 09:14 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-02-11 22:20 - 2015-01-15 09:14 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-02-11 22:20 - 2015-01-15 09:09 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-02-11 22:20 - 2015-01-15 09:09 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-02-11 22:20 - 2015-01-15 09:09 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-02-11 22:20 - 2015-01-15 09:09 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-02-11 22:20 - 2015-01-15 09:09 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-02-11 22:20 - 2015-01-15 09:08 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-02-11 22:20 - 2015-01-15 09:06 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-02-11 22:20 - 2015-01-15 09:06 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-02-11 22:20 - 2015-01-15 09:04 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-02-11 22:20 - 2015-01-15 08:42 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-02-11 22:20 - 2015-01-15 08:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-02-11 22:20 - 2015-01-15 08:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-02-11 22:20 - 2015-01-15 08:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-02-11 22:20 - 2015-01-15 08:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-02-11 22:20 - 2015-01-15 08:37 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-02-11 22:20 - 2015-01-15 05:22 - 00458824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-02-11 22:20 - 2015-01-13 04:10 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-02-11 22:20 - 2015-01-13 03:49 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-02-11 22:20 - 2014-12-12 06:31 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-02-11 22:20 - 2014-12-12 06:07 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-02-11 22:20 - 2014-11-26 04:53 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-02-11 22:20 - 2014-11-26 04:32 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-02-11 22:20 - 2014-07-07 03:07 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-02-11 22:20 - 2014-07-07 03:06 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-02-11 22:20 - 2014-07-07 02:40 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-02-11 22:20 - 2014-07-07 02:40 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2015-02-11 22:19 - 2015-01-14 07:09 - 05554112 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-02-11 22:19 - 2015-01-14 07:05 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-02-11 22:19 - 2015-01-14 07:05 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-02-11 22:19 - 2015-01-14 07:04 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-02-11 22:19 - 2015-01-14 06:44 - 03972544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-02-11 22:19 - 2015-01-14 06:44 - 03917760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-02-11 22:19 - 2015-01-14 06:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-02-11 22:19 - 2015-01-09 03:03 - 03201536 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-02-11 22:19 - 2014-12-08 04:09 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-02-11 22:19 - 2014-12-08 03:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-02-10 20:01 - 2015-02-10 20:01 - 00002952 _____ () C:\Windows\System32\Tasks\{FB9E89BF-C0A5-4CB6-B276-D1F92AF6673E}
2015-02-10 20:01 - 2015-02-10 20:01 - 00002952 _____ () C:\Windows\System32\Tasks\{4027E7F9-4BC1-4D81-8A0E-9B1C5C2750FA}
2015-02-10 19:59 - 2015-02-14 11:21 - 00000000 ___HD () C:\Windows\msdownld.tmp
2015-02-10 19:42 - 2015-02-22 19:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Warcraft III
2015-02-10 19:42 - 2015-02-10 19:53 - 00002096 _____ () C:\Users\Šůstkovi\Desktop\Warcraft III.lnk
2015-02-10 19:42 - 2015-02-10 19:42 - 00126976 _____ (Blizzard Entertainment) C:\Windows\War3Unin.exe
2015-02-10 19:42 - 2015-02-10 19:42 - 00018145 _____ () C:\Windows\War3Unin.dat
2015-02-10 19:42 - 2015-02-10 19:42 - 00002829 _____ () C:\Windows\War3Unin.pif
2015-02-10 19:42 - 2015-02-10 19:42 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Warcraft III
2015-02-10 19:39 - 2015-02-10 19:47 - 00000000 ____D () C:\Program Files (x86)\Warcraft III
2015-02-08 22:36 - 2015-02-14 11:35 - 00000000 ____D () C:\Users\Šůstkovi\Documents\Eternal Lands
2015-02-08 22:36 - 2015-02-08 22:36 - 00001882 _____ () C:\Users\Šůstkovi\Desktop\Eternal Lands.lnk
2015-02-08 22:36 - 2015-02-08 22:36 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Eternal Lands
2015-02-08 22:36 - 2015-02-08 22:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Eternal Lands
2015-02-08 22:35 - 2015-02-08 22:36 - 00000000 ____D () C:\Program Files (x86)\Eternal Lands
2015-02-08 11:02 - 2015-02-08 11:02 - 00001033 _____ () C:\Users\Šůstkovi\Desktop\HD Tune Pro.lnk
2015-02-08 11:02 - 2015-02-08 11:02 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\HD Tune Pro
2015-02-08 11:02 - 2015-02-08 11:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune Pro
2015-02-08 11:02 - 2015-02-08 11:02 - 00000000 ____D () C:\Program Files (x86)\HD Tune Pro
2015-02-07 22:00 - 2015-02-07 22:00 - 00000000 ____D () C:\Users\Šůstkovi\Documents\Skype Voice Records
2015-02-07 22:00 - 2015-02-07 22:00 - 00000000 ____D () C:\Users\Šůstkovi\Documents\Clownfish Avatars
2015-02-07 19:54 - 2015-02-07 19:54 - 00000000 ___RD () C:\Users\Šůstkovi\Desktop\Skillex
2015-02-07 19:54 - 2015-02-07 19:54 - 00000000 ____D () C:\Users\Šůstkovi\Desktop\Spectrum
2015-02-07 19:53 - 2015-02-07 19:53 - 00000000 ____D () C:\Users\Šůstkovi\Desktop\Beatpad v0.2.6
2015-02-07 13:06 - 2015-02-07 13:06 - 00053408 _____ () C:\Users\Šůstkovi\Documents\hackeri.veg

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-08 16:29 - 2014-12-29 20:03 - 00000000 ____D () C:\FRST
2015-03-08 16:29 - 2014-12-29 20:00 - 02095104 _____ (Farbar) C:\Users\Šůstkovi\Desktop\FRST64.exe
2015-03-08 16:28 - 2014-09-19 15:51 - 00007667 _____ () C:\Users\Šůstkovi\AppData\Local\Resmon.ResmonCfg
2015-03-08 16:28 - 2014-09-19 13:58 - 01216891 _____ () C:\Windows\WindowsUpdate.log
2015-03-08 16:25 - 2014-11-14 21:35 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Local\LogMeIn Hamachi
2015-03-08 16:25 - 2014-10-10 19:15 - 00000330 _____ () C:\Windows\Tasks\GlaryInitialize 5.job
2015-03-08 16:24 - 2015-02-04 05:51 - 00000948 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-03-08 16:24 - 2014-12-01 19:48 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-03-08 16:24 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-03-08 16:22 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2015-03-08 16:12 - 2009-07-14 05:45 - 00029120 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-03-08 16:12 - 2009-07-14 05:45 - 00029120 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-03-08 15:56 - 2015-02-04 05:51 - 00000952 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-08 15:12 - 2009-07-14 05:45 - 00505064 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-08 15:08 - 2014-09-19 14:10 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-03-08 11:55 - 2014-09-19 18:24 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\Skype
2015-03-08 11:47 - 2014-09-19 16:20 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\vlc
2015-03-08 11:44 - 2014-09-19 14:03 - 00154144 _____ () C:\Users\Šůstkovi\AppData\Local\GDIPFONTCACHEV1.DAT
2015-03-08 10:41 - 2014-12-24 15:21 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\.minecraft
2015-03-08 10:35 - 2014-09-19 14:44 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2015-03-08 10:22 - 2014-10-11 12:36 - 00000349 _____ () C:\Users\Public\Documents\PCLECHAL.INI
2015-03-08 10:13 - 2009-07-14 06:08 - 00032614 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-03-07 23:31 - 2014-11-18 18:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-03-07 23:16 - 2014-11-10 14:38 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\Audacity
2015-03-07 22:59 - 2014-09-19 14:06 - 01557940 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2015-03-07 22:59 - 2011-04-12 09:34 - 00668542 _____ () C:\Windows\system32\perfh005.dat
2015-03-07 22:59 - 2011-04-12 09:34 - 00141202 _____ () C:\Windows\system32\perfc005.dat
2015-03-07 22:58 - 2009-07-14 06:13 - 01557940 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-07 22:57 - 2014-09-19 22:19 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-07 22:53 - 2014-09-19 22:19 - 122905848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-03-07 21:31 - 2014-10-11 12:47 - 00000000 ____D () C:\Users\Šůstkovi\Documents\Pinnacle Studio
2015-03-07 21:31 - 2014-10-11 12:42 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Local\Pinnacle
2015-03-07 21:04 - 2014-09-19 14:31 - 00000000 ____D () C:\Program Files\Intel
2015-03-07 21:03 - 2014-09-19 14:01 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Local\VirtualStore
2015-03-06 19:08 - 2014-09-19 15:13 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\AIMP3
2015-03-05 23:46 - 2014-09-21 19:50 - 00000000 ____D () C:\ProgramData\Origin
2015-03-05 22:28 - 2014-09-22 14:01 - 00000000 ____D () C:\Users\Šůstkovi\Documents\FIFA 14
2015-03-05 20:51 - 2014-09-25 18:17 - 00000000 ____D () C:\Windows\Minidump
2015-03-05 17:59 - 2015-02-01 18:26 - 00096400 _____ () C:\Users\Šůstkovi\Documents\Druhý pc !!!!!!!!!!!!!.veg
2015-03-02 21:03 - 2015-02-01 18:26 - 00095568 _____ () C:\Users\Šůstkovi\Documents\Druhý pc !!!!!!!!!!!!!.veg.bak
2015-03-02 20:56 - 2015-01-23 21:39 - 00000000 ___RD () C:\Users\Šůstkovi\Desktop\Příprava na druhý pc
2015-03-01 09:46 - 2014-09-21 19:50 - 00000000 ____D () C:\Program Files (x86)\Origin
2015-02-28 22:25 - 2014-09-19 16:05 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\BitTorrent
2015-02-28 12:49 - 2014-09-19 15:31 - 00000000 ___RD () C:\Users\Šůstkovi\Desktop\Všechno možné
2015-02-28 12:02 - 2014-09-19 15:13 - 00000905 _____ () C:\Users\Public\Desktop\AIMP3.lnk
2015-02-28 12:02 - 2014-09-19 15:13 - 00000000 ____D () C:\Program Files (x86)\AIMP3
2015-02-25 18:46 - 2014-09-19 15:31 - 00000000 ___RD () C:\Users\Šůstkovi\Desktop\Pepa
2015-02-24 20:33 - 2015-01-20 20:46 - 00000000 ____D () C:\Users\Šůstkovi\Desktop\AVI
2015-02-24 03:17 - 2010-11-21 04:27 - 00295552 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-02-22 22:26 - 2014-11-18 18:17 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\Sony
2015-02-22 22:26 - 2014-11-18 18:09 - 00000000 ____D () C:\Program Files (x86)\Sony
2015-02-22 19:43 - 2014-11-18 18:17 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Local\Sony
2015-02-22 19:32 - 2014-11-18 18:09 - 00000000 ____D () C:\ProgramData\Sony
2015-02-22 19:12 - 2014-10-10 19:15 - 00000000 ____D () C:\Program Files (x86)\Glary Utilities 5
2015-02-22 18:46 - 2014-11-18 18:17 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\Publish Providers
2015-02-22 16:07 - 2014-10-25 19:12 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\dvdcss
2015-02-22 11:10 - 2014-09-19 14:01 - 00000000 ____D () C:\Users\Šůstkovi
2015-02-19 20:58 - 2014-09-19 14:24 - 00002183 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-02-19 18:45 - 2014-09-19 18:24 - 00000000 ___RD () C:\Program Files (x86)\Skype
2015-02-19 18:45 - 2014-09-19 18:24 - 00000000 ____D () C:\ProgramData\Skype
2015-02-18 21:12 - 2015-02-01 15:08 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-02-18 21:12 - 2014-09-19 21:59 - 00000000 ____D () C:\Program Files (x86)\Adobe
2015-02-18 20:57 - 2014-10-03 16:55 - 00000000 ____D () C:\Program Files (x86)\Middle Earth Shadow of Mordor
2015-02-18 20:54 - 2014-12-23 23:48 - 00056832 ___SH () C:\Users\Šůstkovi\Documents\Thumbs.db
2015-02-18 15:11 - 2014-10-26 17:50 - 00000000 ____D () C:\Users\Šůstkovi\Desktop\tonda
2015-02-16 20:26 - 2014-11-28 20:12 - 00000000 ____D () C:\Users\Šůstkovi\Desktop\Matroš na videa
2015-02-16 20:26 - 2014-09-19 15:31 - 00000000 ____D () C:\Users\Šůstkovi\Desktop\Taťka
2015-02-16 16:20 - 2014-11-14 21:36 - 00033856 ____H (LogMeIn, Inc.) C:\Windows\system32\hamachi.sys
2015-02-15 21:57 - 2015-01-11 13:53 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Local\wf-launcher
2015-02-15 21:38 - 2015-01-11 13:53 - 00000000 ____D () C:\ProgramData\GFACE
2015-02-15 19:42 - 2014-10-12 17:06 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2015-02-15 17:25 - 2014-12-30 13:08 - 01673860 _____ (TeamExtreme) C:\Users\Šůstkovi\Desktop\Minecraft-TeamExtreme.exe
2015-02-14 11:23 - 2014-09-27 10:42 - 00000000 ____D () C:\Windows\SysWOW64\directx
2015-02-14 03:32 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\tracing
2015-02-13 13:56 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2015-02-13 13:12 - 2014-11-07 17:08 - 00000000 ____D () C:\Program Files (x86)\Minecraft 1.7.10
2015-02-12 16:10 - 2014-12-12 14:41 - 00000000 ____D () C:\Windows\system32\appraiser
2015-02-12 16:10 - 2014-09-20 09:02 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-02-11 22:47 - 2014-09-21 18:07 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-02-11 22:47 - 2014-09-19 14:04 - 00000000 ____D () C:\ProgramData\Package Cache
2015-02-11 22:43 - 2009-07-14 03:34 - 00000478 _____ () C:\Windows\win.ini
2015-02-07 23:17 - 2014-12-20 20:56 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Roaming\TS3Client
2015-02-07 16:48 - 2014-12-13 17:58 - 00000000 ____D () C:\Users\Šůstkovi\AppData\Local\CrashDumps

==================== Files in the root of some directories =======

2002-08-29 18:33 - 2002-08-29 18:33 - 0319488 ____R () C:\Users\Šůstkovi\AppData\Roaming\MafiaSetup.exe
2015-01-01 14:34 - 2015-01-01 14:34 - 0005632 _____ () C:\Users\Šůstkovi\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-09-19 15:51 - 2015-03-08 16:28 - 0007667 _____ () C:\Users\Šůstkovi\AppData\Local\Resmon.ResmonCfg
2014-11-07 17:10 - 2014-11-07 17:10 - 0151040 _____ (Microsoft) C:\Users\Šůstkovi\AppData\Local\TempWindowsNT.exe
2014-09-19 14:28 - 2014-09-19 14:28 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-03-06 19:26

==================== End Of Log ============================
Moje železo :-D
Deska - ASUS ROG STRIX B560-E Gaming
CPU - Intel Core i7 11700K
RAM - Kingston Fury Beast RGB 32GB
CHLADIČ - Arctic Liquid Freezer II 280
GRAFIKA - ASUS Gefroce GTX 1660
SKŘÍŇ - CoolerMaster HAF 922
ZDROJ - Seasonic Focus+ 750W

Reklama
Uživatelský avatar
pepanecek5
Level 3.5
Level 3.5
Příspěvky: 709
Registrován: červenec 14
Pohlaví: Muž
Stav:
Offline

Re: Podezření na vir

Příspěvekod pepanecek5 » 08 bře 2015 16:33

ADDITION

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 08-03-2015 02
Ran by Šůstkovi at 2015-03-08 16:30:29
Running from C:\Users\Šůstkovi\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

"Assassin's Creed IV - Black Flag" (HKLM-x32\...\{959CF39B-F3FA-4A80-AECF-8AF6BA639276}_is1) (Version: 1.01.0.0 - )
3DMark (HKLM-x32\...\{4198fd8f-98bd-4240-9b3a-ab2643e532f6}) (Version: 1.3.708.0 - Futuremark)
3DMark (Version: 1.3.708.0 - Futuremark) Hidden
Adobe Flash Player 16 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 16.0.0.296 - Adobe Systems Incorporated)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.296 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.10) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
AI Suite 3 (HKLM-x32\...\{D46DA5F0-25AD-4B77-98DA-6DD6AF39FBD9}) (Version: 1.00.69 - ASUSTeK Computer Inc.)
AIMP3 (HKLM-x32\...\AIMP3) (Version: v3.60.1483, 27.02.2015 - AIMP DevTeam)
AMD Catalyst Install Manager (HKLM\...\{C6982BF7-07FB-5D79-2001-831F4CB2A901}) (Version: 8.0.915.0 - Advanced Micro Devices, Inc.)
Any Video Converter 5.7.6 (HKLM-x32\...\Any Video Converter_is1) (Version: - Any-Video-Converter.com)
Assassins Creed Unity (HKLM-x32\...\QXNzYXNzaW5zQ3JlZWRVbml0eQ==_is1) (Version: 1 - )
ASUS GPU Tweak (HKLM-x32\...\InstallShield_{532F6E8A-AF97-41C3-915F-39F718EC07D1}) (Version: 2.5.7.6 - ASUSTek COMPUTER INC.)
ASUS GPU Tweak (x32 Version: 2.5.7.6 - ASUSTek COMPUTER INC.) Hidden
ASUS Product Register Program (HKLM-x32\...\{C87D79F6-F813-4812-B7A9-CCCAAB8B1188}) (Version: 1.0.025 - ASUSTek Computer Inc.)
Audacity 2.0.6 (HKLM-x32\...\Audacity_is1) (Version: 2.0.6 - Audacity Team)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.0.2208 - AVAST Software)
BitTorrent (HKU\S-1-5-21-2758404647-1744933043-672776856-1000\...\BitTorrent) (Version: 7.9.2.37755 - BitTorrent Inc.)
bwin Poker (HKLM-x32\...\bwincomPoker) (Version: - bwincom)
Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.5.0.0 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: - ‪Canon Inc.‬)
Canon LBP6020 (HKLM\...\Canon LBP6020) (Version: - )
Canon MG4200 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG4200_series) (Version: 1.01 - Canon Inc.)
Canon MG4200 series On-screen Manual (HKLM-x32\...\Canon MG4200 series On-screen Manual) (Version: 7.5.0 - Canon Inc.)
Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 1.0.0 - Canon Inc.)
Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 1.0.0 - Canon Inc.)
Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.0.0 - Canon Inc.)
Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.0.0 - Canon Inc.)
Counter-Strike 1.6 v42 (HKU\S-1-5-21-2758404647-1744933043-672776856-1000\...\Counter-Strike 1.6_is1) (Version: - Valve)
CPUID ASUS CPU-Z 1.69 (HKLM\...\CPUID ASUS CPU-Z_is1) (Version: 1.69 - CPUID, Inc.)
CrystalDiskInfo 6.1.14 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 6.1.14 - Crystal Dew World)
Czech Soccer Manager 2002 Final Edition (HKLM-x32\...\Czech Soccer Manager 2002 Final Editionverze 4.0 (31.3.2006)) (Version: verze 4.0 (31.3.2006) - Petr Vašíček)
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd)
DIP4 (HKLM-x32\...\{C740780B-F589-481C-8F59-A32735DEFCFF}) (Version: - )
EAX Unified (HKLM-x32\...\EAX Unified) (Version: - )
Euro Truck Simulator 2 (HKLM-x32\...\{1B705E8F-9893-4486-B5D7-4F7FEB9C871E}_is1) (Version: 1.1.1 - SCS Software)
ffDiaporama 2.1 (20140209) (HKLM\...\{E489A7CD-01F1-47DF-9E7E-9CA44CCC1966}.bin_is1) (Version: 2.1 (20140209) - The ffDiaporama Team)
ffDiaporama openclipart-extension 0.18 (20140205) (HKLM\...\{E489A7CD-01F1-47DF-9E7E-9CA44CCC1966}.oct_is1) (Version: 0.18 (20140205) - openclipart)
ffDiaporama Texturemate-extension 1.0 (20140125) (HKLM\...\{E489A7CD-01F1-47DF-9E7E-9CA44CCC1966}.tmt_is1) (Version: 1.0 (20140125) - The ffDiaporama Team)
FIFA 14 (HKLM-x32\...\{AA7A2800-1E75-4240-855B-03AFF8E5171E}) (Version: 1.0.0.7 - Electronic Arts)
Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - )
Futuremark SystemInfo (HKLM-x32\...\{4115C9AA-35E0-45D8-9363-47635B8750C7}) (Version: 4.29.438.0 - Futuremark)
Geeks3D FurMark 1.13.0 (HKLM-x32\...\{2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1) (Version: - Geeks3D)
GetASFStream (HKLM-x32\...\GetASFStream) (Version: - )
Glary Utilities 5.9 (HKLM-x32\...\Glary Utilities 5) (Version: 5.9.0.16 - Glarysoft Ltd)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 40.0.2214.115 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
GPUTweakStreaming (HKLM-x32\...\InstallShield_{D2A41AA7-4313-43D5-AA39-7E3FBBE0556D}) (Version: 1.0.3.5 - ASUS)
GPUTweakStreaming (x32 Version: 1.0.3.5 - ASUS) Hidden
HD Tune Pro 5.50 (HKLM-x32\...\HD Tune Pro_is1) (Version: - EFD Software)
High-Definition Video Playback 10 (x32 Version: 7.0.11400.29.0 - Nero AG) Hidden
HydraVision (x32 Version: 4.2.252.0 - Advanced Micro Devices, Inc.) Hidden
Indeo® software (HKLM-x32\...\Indeo® software) (Version: - )
Intel(R) Network Connections 18.7.28.0 (HKLM\...\PROSetDX) (Version: 18.7.28.0 - Intel)
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.0.19 - Intel Corporation)
Java 8 Update 31 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418031F0}) (Version: 8.0.310 - Oracle Corporation)
Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Knoll Light Factory EZ Studio (HKLM-x32\...\Knoll Light Factory EZ Studio) (Version: - )
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.319 - LogMeIn, Inc.)
LogMeIn Hamachi (x32 Version: 2.2.0.319 - LogMeIn, Inc.) Hidden
Mafia Game (HKLM-x32\...\Mafia Game) (Version: - )
Magic Bullet Looks Studio (HKLM-x32\...\Magic Bullet Looks Studio) (Version: - )
Malwarebytes Anti-Malware verze 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
MediaCoder x64 0.8.32.5660 (HKLM\...\MediaCoder x64) (Version: 0.8.32.5660 - Mediatronic)
Microsoft .NET Framework 4.5.2 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Minecraft (by Team Extreme) (HKLM-x32\...\Minecraft (by Team Extreme)) (Version: - )
Minecraft 1.7.10 version 1.7.10 (HKLM-x32\...\{189580CC-B0F4-4B49-8524-598218E5A547}_is1) (Version: 1.7.10 - Minecraft 1.7.10)
Minecraft1.7.10 (HKLM-x32\...\Minecraft1.7.10) (Version: - )
Minecraft1.7.2 (HKLM-x32\...\Minecraft1.7.2) (Version: - )
Mozilla Firefox 35.0 (x86 cs) (HKLM-x32\...\Mozilla Firefox 35.0 (x86 cs)) (Version: 35.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 33.0 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Nero BackItUp 10 (HKLM-x32\...\{68AB6930-5BFF-4FF6-923B-516A91984FE6}) (Version: 5.4.11600.19.100 - Nero AG)
Nero Burning ROM 10 (HKLM-x32\...\{7A5D731D-B4B3-490E-B339-75685712BAAB}) (Version: 10.0.11100.10.100 - Nero AG)
Nero BurnRights 10 (HKLM-x32\...\{943CFD7D-5336-47AF-9418-E02473A5A517}) (Version: 4.0.11000.12.100 - Nero AG)
Nero CoverDesigner 10 (HKLM-x32\...\{FCF00A6E-FB58-477A-ABE9-232907105521}) (Version: 5.0.10900.11.100 - Nero AG)
Nero DiscSpeed 10 (HKLM-x32\...\{34490F4E-48D0-492E-8249-B48BECF0537C}) (Version: 6.0.10800.7.100 - Nero AG)
Nero Express 10 (HKLM-x32\...\{70550193-1C22-445C-8FA4-564E155DB1A7}) (Version: 10.0.11000.10.100 - Nero AG)
Nero InfoTool 10 (HKLM-x32\...\{F412B4AF-388C-4FF5-9B2F-33DB1C536953}) (Version: 7.0.10800.8.100 - Nero AG)
Nero MediaHub 10 (HKLM-x32\...\{1F7FB68F-52F6-46A3-B42F-38CE46295AE5}) (Version: 1.0.13400.11.100 - Nero AG)
Nero Multimedia Suite 10 (HKLM-x32\...\{277C1559-4CF7-44FF-8D07-98AA9C13AABD}) (Version: 10.0.13100 - Nero AG)
Nero Recode 10 (HKLM-x32\...\{8ECEC853-5C3D-4B10-B5C7-FF11FF724807}) (Version: 4.6.10900.4.100 - Nero AG)
Nero RescueAgent 10 (HKLM-x32\...\{E337E787-CF61-4B7B-B84F-509202A54023}) (Version: 3.0.10900.9.100 - Nero AG)
Nero SoundTrax 10 (HKLM-x32\...\{E1EE5339-5D32-458F-BAAB-B19F6301BCE2}) (Version: 4.6.10600.2.100 - Nero AG)
Nero StartSmart 10 (HKLM-x32\...\{F61D489E-6C44-49AC-AD02-7DA8ACA73A65}) (Version: 10.0.11200.12.100 - Nero AG)
Nero Update (HKLM-x32\...\{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}) (Version: 1.0.0017 - Nero AG)
Nero Vision 10 (HKLM-x32\...\{9A4297F3-2A51-4ED9-92CA-4BCB8380947E}) (Version: 7.0.11100.8.100 - Nero AG)
Nero WaveEditor 10 (HKLM-x32\...\{EDCDFAD5-DF80-4600-A493-E9DAD6810230}) (Version: 5.6.10600.2.100 - Nero AG)
Noise Reduction Plug-In 2.0 (HKLM-x32\...\{847C6940-D852-11E2-81D2-F04DA23A5C58}) (Version: 2.0.596 - Sony)
NVIDIA PhysX (HKLM-x32\...\{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}) (Version: 9.10.0514 - NVIDIA Corporation)
Origin (HKLM-x32\...\Origin) (Version: 9.4.22.2815 - Electronic Arts, Inc.)
Ovladače videa společnosti Pinnacle (HKLM\...\{6DE721A5-5E89-4D74-994C-652BB3C0672E}) (Version: 12.1.0.030 - Pinnacle Systems)
PhotoFiltre Studio X (HKU\S-1-5-21-2758404647-1744933043-672776856-1000\...\PhotoFiltre Studio X) (Version: - )
Pinnacle Studio 14 (HKLM-x32\...\{AADD1C8F-D59F-4D55-A726-768C71A205A8}) (Version: 14.0.0.7255 - Pinnacle Systems)
Pinnacle Studio Ultimate Collection Plugins (HKLM-x32\...\{F5C372A1-40F3-49DA-A049-F75CDE9177DC}) (Version: 14.0.0.7255 - Pinnacle Systems)
QuickTime (HKLM-x32\...\QuickTime) (Version: - )
Raptr (HKLM-x32\...\Raptr) (Version: - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7246 - Realtek Semiconductor Corp.)
Red Giant ToonIt Studio (HKLM-x32\...\Red Giant ToonIt Studio) (Version: - )
Registrace uživatele zařízení Canon MG4200 series (HKLM-x32\...\Registrace uživatele zařízení Canon MG4200 series) (Version: - Canon Inc.‎)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{91140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version: - Microsoft) Hidden
Seznam Software (HKU\S-1-5-21-2758404647-1744933043-672776856-1000\...\SeznamInstall) (Version: - Seznam.cz)
Skype™ 7.1 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.1.105 - Skype Technologies S.A.)
SmartSound Quicktracks Plugin (HKLM-x32\...\InstallShield_{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}) (Version: 3.0.2.6 - SmartSound Software Inc)
SmartSound Quicktracks Plugin (x32 Version: 3.0.2.6 - SmartSound Software Inc) Hidden
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
SWAT 4 (HKLM-x32\...\{8E1CCF20-9E12-4824-BD59-7AD9E0486DD8}) (Version: 1.1 - VUGames)
System Information (HKLM-x32\...\{C0FEE440-FA2F-4C0D-B64C-35F1D4B7A009}) (Version: - )
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.36897 - TeamViewer)
The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.0.732.20 - Electronic Arts Inc.)
Trapcode 3DStroke Studio (HKLM-x32\...\Trapcode 3DStroke Studio) (Version: - )
Trapcode Particular Studio (HKLM-x32\...\Trapcode Particular Studio) (Version: - )
Trapcode Shine Studio (HKLM-x32\...\Trapcode Shine Studio) (Version: - )
Ulead DVD DiskRecorder 2.1.1 (HKLM-x32\...\{31E1050B-F69F-4A16-8F5A-E44D31901250}) (Version: - Ulead Systems, Inc.)
Ulead VideoStudio 9.0 SE DVD (HKLM-x32\...\{8EAB2384-C794-40ED-A9DD-3270A0D2BB76}) (Version: 9.0 SE - Ulead System)
Unity Web Player (HKU\S-1-5-21-2758404647-1744933043-672776856-1000\...\UnityWebPlayer) (Version: 4.6.1f1 - Unity Technologies ApS)
VC_CRT_x64 (Version: 1.02.0000 - Intel Corporation) Hidden
Vegas Pro 10.0 (HKLM-x32\...\{5AC11070-A1CB-11E0-A0DC-0013D3D69929}) (Version: 10.0.737 - Sony)
VirtualDJ 8 (HKLM-x32\...\{9652ACA0-38A4-4BF8-B15E-2317D41D0AE3}) (Version: 8.0.2139.0 - Atomix Productions)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
Warcraft III (HKLM-x32\...\Warcraft III) (Version: - )
Warface Launcher (Beta) (HKLM-x32\...\{28D1723C-31C4-4A83-9799-DFFB3739026D}) (Version: 1.0.0 - Crytek GmbH)
Watch_Dogs (HKLM-x32\...\{9L5FE86L-0D8I-4HJ7-HKY5-DRTKE3G6QG2X}_is1) (Version: 1.00 - Ubisoft)
WinFast Codec-TS SDK (HKLM-x32\...\{28FB7853-A6ED-4F67-8635-9F0E863FC0AD}) (Version: - ArcSoft)
WinFast De-interlace SDK (HKLM-x32\...\{9A0E0340-C3D7-42D1-96D4-64179FD456AE}) (Version: - ArcSoft)
WinFast Multimedia Driver Installation (HKLM-x32\...\{418EC9DD-25EE-4C3F-8827-B7AA9B26405B}) (Version: 1.08.0317 - Leadtek Research Inc.)
WinFast PVR (HKLM-x32\...\{934519A2-4D50-4B83-A459-92D90E9E3188}) (Version: 1.0 - Leadtek)
WinFast PVR2 (HKLM-x32\...\{C92C584E-C781-475E-A8E2-C67D993A6B95}) (Version: 2.0.3.32 - Leadtek)
WinFast TT-SB SDK (HKLM-x32\...\{AF9848E2-5F19-4E49-9E6E-044FBDC28404}) (Version: - ArcSoft)
WinRAR 5.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH)
YoWindow (HKLM-x32\...\yowindow) (Version: 3 - RepkaSoft)
YTD Video Downloader 4.8.9 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: 4.8.9 - GreenTree Applications SRL) <==== ATTENTION
Zombie Panic Source (HKLM-x32\...\Steam App 17500) (Version: - Zombie Panic Team)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points =========================

07-03-2015 20:30:41 Installed WinFast Multimedia Driver Installation
07-03-2015 20:59:15 Installed Ulead VideoStudio
07-03-2015 21:00:47 Installed SmartSound Quicktracks Plugin
07-03-2015 21:01:26 Installed Ulead DVD DiskRecorder
07-03-2015 21:12:43 Instalováno WinFast PVR2
07-03-2015 21:13:08 Installed Ulead Straight-to-Disc SDK
07-03-2015 21:13:27 Installed TT-SB SDK
07-03-2015 21:14:01 Installed Codec-TS SDK
07-03-2015 21:14:26 Installed De-interlace SDK
07-03-2015 21:15:07 Installed Connect Service
07-03-2015 22:53:11 Windows Update
07-03-2015 23:21:25 Installed WinFast Multimedia Driver Installation
07-03-2015 23:30:48 Removed Sound Forge Audio Studio 10.0
07-03-2015 23:31:34 Odstraněno WinFast PVR2
07-03-2015 23:31:52 Removed TT-SB SDK
07-03-2015 23:32:14 Removed Codec-TS SDK
07-03-2015 23:32:29 Removed De-interlace SDK
07-03-2015 23:33:05 Installed WinFast Multimedia Driver Installation
07-03-2015 23:33:51 Installed WinFast Multimedia Driver Installation
08-03-2015 09:11:57 Installed WinFast Multimedia Driver Installation
08-03-2015 10:30:24 Installed WinFast Multimedia Driver Installation
08-03-2015 10:45:08 Instalováno WinFast PVR
08-03-2015 10:46:09 Installed Ulead Straight-to-Disc SDK
08-03-2015 14:40:34 Windows Live Essentials
08-03-2015 14:41:16 Nainstalováno rozhraní DirectX
08-03-2015 14:41:55 Nainstalováno rozhraní DirectX
08-03-2015 14:43:22 Nainstalováno rozhraní DirectX
08-03-2015 14:44:58 WLSetup
08-03-2015 14:54:31 Installed Windows Movie Maker 2.6
08-03-2015 15:05:52 Instalováno WinFast PVR2
08-03-2015 15:06:28 Installed Ulead Straight-to-Disc SDK
08-03-2015 15:06:56 Installed TT-SB SDK
08-03-2015 15:07:26 Installed Codec-TS SDK
08-03-2015 15:07:52 Installed De-interlace SDK
08-03-2015 16:18:55 Removed Windows Movie Maker 2.6
08-03-2015 16:19:50 Windows Live Essentials
08-03-2015 16:20:07 WLSetup

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-01-09 21:28 - 2015-01-09 21:30 - 00001080 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {14C0FB0B-CEB7-43BB-9788-E43D70F32A6E} - System32\Tasks\{E0D2F579-784F-424C-9C89-4DBEE9F1B5EC} => C:\Program Files\Mafia\Game.exe
Task: {1B962C87-0901-42A0-AF12-3D2D18A3AC56} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [2013-08-27] (ASUSTek Computer Inc.)
Task: {3EB7D3D3-17DB-462B-803F-D4CDE93664AF} - System32\Tasks\{FB9E89BF-C0A5-4CB6-B276-D1F92AF6673E} => C:\Users\Šůstkovi\Desktop\DX81cze.exe
Task: {4761C763-86F7-41B7-9210-46BE475AA1FD} - System32\Tasks\ASUS\ASUS AISuiteIII => C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe [2014-02-17] (ASUSTeK Computer Inc.)
Task: {4B49762C-0CFD-466A-8CD6-97E42A17EB0E} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-11-21] (AVAST Software)
Task: {4BFAA63B-C59B-4C4E-807A-22972B5AFABE} - System32\Tasks\GU5SkipUAC => C:\Program Files (x86)\Glary Utilities 5\Integrator.exe [2014-09-29] (Glarysoft Ltd)
Task: {5541D389-1960-4CF8-AD28-F683C2132720} - System32\Tasks\GlaryInitialize 5 => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe [2014-09-29] (Glarysoft Ltd)
Task: {5E96894D-B525-400C-A4DA-8E85F3ECFE1B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-09-19] (Google Inc.)
Task: {5F725695-8901-4384-B3A0-C549E53FFF56} - System32\Tasks\{5EE9C01D-6B09-4649-BC4A-43859B67495E} => C:\Program Files\Mafia\Game.exe
Task: {65463BD7-B736-410E-B52F-E0914CF66A11} - System32\Tasks\{4027E7F9-4BC1-4D81-8A0E-9B1C5C2750FA} => C:\Users\Šůstkovi\Desktop\DX81cze.exe
Task: {70E69740-24FD-4351-AF12-67035E40590F} - System32\Tasks\{8A0E85BC-1DCE-44E5-80A0-4FBEA6D80B5D} => pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{418EC9DD-25EE-4C3F-8827-B7AA9B26405B}\setup.exe" -c -runfromtemp -l0x0009 -removeonly
Task: {99393C09-9C61-48DC-A09C-D79312EA3311} - System32\Tasks\Driver Booster SkipUAC (Šůstkovi) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
Task: {AE0E4F01-8751-4757-ABFC-67A9BC379A54} - System32\Tasks\{7689792B-4AF3-49E4-9595-A932F971A895} => C:\Users\Šůstkovi\AppData\Roaming\.minecraft\minecraft launcher\Minecraft Launcher.exe [2013-12-13] (TeamExtreme)
Task: {BE9D509C-A926-4488-9C81-C8D4AD9E081B} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {C3AAFAEF-A326-43E9-B2BD-3C2B1DB563E7} - System32\Tasks\{E241C55A-685E-4197-A8BC-250BE9868C97} => C:\Program Files\Mafia\Game.exe
Task: {D1D41E83-85ED-41DB-BF81-DBF7CB087219} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {D251C1D1-B307-4528-9EC2-D6324E95C1BA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-09-19] (Google Inc.)
Task: {E2318300-C313-4E52-BB08-5B9FF6EB751F} - System32\Tasks\ASUS\ASUS DIPAwayMode => C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
Task: {FD584AB8-52FF-4CD1-A428-BB753B1575A6} - System32\Tasks\{7B2FA218-63B7-41DB-AA73-655BA1E39425} => C:\Users\Šůstkovi\Desktop\Ulead VideoStudio 9.0 SE DVD\vstudio.exe [2005-05-27] (Ulead Systems, Inc.)
Task: C:\Windows\Tasks\GlaryInitialize 5.job => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) ==============

2014-01-28 04:16 - 2014-01-28 04:16 - 00936728 ____N () C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
2012-01-17 10:24 - 2012-01-17 10:24 - 00055296 _____ () C:\Windows\SysWOW64\ASGT.exe
2013-09-04 23:17 - 2013-09-04 23:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2015-03-08 09:09 - 2015-03-08 09:09 - 02919424 _____ () C:\Program Files\AVAST Software\Avast\defs\15030800\algo.dll
2014-09-19 14:50 - 2015-03-08 16:24 - 00029184 _____ () C:\Program Files (x86)\ASUS\AXSP\1.01.02\PEbiosinterface32.dll
2014-09-19 14:50 - 2014-01-28 04:16 - 00104448 ____N () C:\Program Files (x86)\ASUS\AXSP\1.01.02\ATKEX.dll
2013-09-04 23:14 - 2013-09-04 23:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2015-02-19 20:58 - 2015-02-17 23:44 - 01117512 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\libglesv2.dll
2015-02-19 20:58 - 2015-02-17 23:44 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\libegl.dll
2015-02-19 20:58 - 2015-02-17 23:44 - 09171272 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\pdf.dll
2015-02-19 20:58 - 2015-02-17 23:44 - 14965064 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\PepperFlash\pepflashplayer.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"

==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2758404647-1744933043-672776856-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Šůstkovi\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 10.0.0.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== Accounts: =============================

Administrator (S-1-5-21-2758404647-1744933043-672776856-500 - Administrator - Disabled)
Guest (S-1-5-21-2758404647-1744933043-672776856-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2758404647-1744933043-672776856-1003 - Limited - Enabled)
Šůstkovi (S-1-5-21-2758404647-1744933043-672776856-1000 - Administrator - Enabled) => C:\Users\Šůstkovi

==================== Faulty Device Manager Devices =============

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (03/08/2015 04:24:56 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/08/2015 04:04:35 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/08/2015 03:30:14 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/08/2015 03:16:28 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/08/2015 11:46:16 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: vlc.exe, verze: 2.1.5.0, časové razítko: 0x00000004
Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.18247, časové razítko: 0x521ea8e7
Kód výjimky: 0xc0000374
Posun chyby: 0x000ce753
ID chybujícího procesu: 0x19b0
Čas spuštění chybující aplikace: 0xvlc.exe0
Cesta k chybující aplikaci: vlc.exe1
Cesta k chybujícímu modulu: vlc.exe2
ID zprávy: vlc.exe3

Error: (03/08/2015 10:54:55 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: WFTV.exe, verze: 3.1.1.8, časové razítko: 0x4639993a
Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.18247, časové razítko: 0x521ea8e7
Kód výjimky: 0xc0000374
Posun chyby: 0x000ce753
ID chybujícího procesu: 0x1840
Čas spuštění chybující aplikace: 0xWFTV.exe0
Cesta k chybující aplikaci: WFTV.exe1
Cesta k chybujícímu modulu: WFTV.exe2
ID zprávy: WFTV.exe3

Error: (03/08/2015 10:33:29 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/08/2015 10:15:08 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/08/2015 09:15:40 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/08/2015 09:09:10 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


System errors:
=============
Error: (03/08/2015 04:25:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba WFIOCTL neuspěla při spuštění v důsledku následující chyby:
%%1275

Error: (03/08/2015 04:25:13 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Načtení \??\C:\Program Files (x86)\WinFast\WFTVFM\WFIOCTL.SYS bylo zablokováno kvůli nekompatibilitě s tímto systémem. Požádejte dodavatele softwaru
o kompatibilní verzi ovladače.

Error: (03/08/2015 04:25:12 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba WFIOCTL neuspěla při spuštění v důsledku následující chyby:
%%1275

Error: (03/08/2015 04:25:12 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Načtení \??\C:\Program Files (x86)\WinFast\WFTVFM\WFIOCTL.SYS bylo zablokováno kvůli nekompatibilitě s tímto systémem. Požádejte dodavatele softwaru
o kompatibilní verzi ovladače.

Error: (03/08/2015 04:25:07 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba WFIOCTL neuspěla při spuštění v důsledku následující chyby:
%%1275

Error: (03/08/2015 04:25:07 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Načtení \??\C:\Program Files (x86)\WinFast\WFTVFM\WFIOCTL.SYS bylo zablokováno kvůli nekompatibilitě s tímto systémem. Požádejte dodavatele softwaru
o kompatibilní verzi ovladače.

Error: (03/08/2015 04:25:06 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba WFIOCTL neuspěla při spuštění v důsledku následující chyby:
%%1275

Error: (03/08/2015 04:25:06 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Načtení \??\C:\Program Files (x86)\WinFast\WFTVFM\WFIOCTL.SYS bylo zablokováno kvůli nekompatibilitě s tímto systémem. Požádejte dodavatele softwaru
o kompatibilní verzi ovladače.

Error: (03/08/2015 04:24:09 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Načtení \SystemRoot\SysWow64\Drivers\ULCDRHlp.sys bylo zablokováno kvůli nekompatibilitě s tímto systémem. Požádejte dodavatele softwaru
o kompatibilní verzi ovladače.

Error: (03/08/2015 04:24:08 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Načtení \SystemRoot\SysWow64\Drivers\ULCDRHlp.sys bylo zablokováno kvůli nekompatibilitě s tímto systémem. Požádejte dodavatele softwaru
o kompatibilní verzi ovladače.


Microsoft Office Sessions:
=========================
Error: (03/08/2015 04:24:56 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/08/2015 04:04:35 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/08/2015 03:30:14 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/08/2015 03:16:28 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/08/2015 11:46:16 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: vlc.exe2.1.5.000000004ntdll.dll6.1.7601.18247521ea8e7c0000374000ce75319b001d0598d13415ff3C:\Program Files (x86)\VideoLAN\VLC\vlc.exeC:\Windows\SysWOW64\ntdll.dll58332a4a-c580-11e4-a025-7824af34cc82

Error: (03/08/2015 10:54:55 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: WFTV.exe3.1.1.84639993antdll.dll6.1.7601.18247521ea8e7c0000374000ce753184001d059850aa31a78C:\Program Files (x86)\WinFast\WFTVFM\WFTV.exeC:\Windows\SysWOW64\ntdll.dll2be6c64d-c579-11e4-a025-7824af34cc82

Error: (03/08/2015 10:33:29 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/08/2015 10:15:08 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/08/2015 09:15:40 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/08/2015 09:09:10 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


CodeIntegrity Errors:
===================================
Date: 2015-03-08 16:25:13.076
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\WinFast\WFTVFM\WFIOCTL.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2015-03-08 16:25:13.030
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\WinFast\WFTVFM\WFIOCTL.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2015-03-08 16:25:12.484
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\WinFast\WFTVFM\WFIOCTL.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2015-03-08 16:25:12.452
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\WinFast\WFTVFM\WFIOCTL.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2015-03-08 16:25:07.273
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\WinFast\WFTVFM\WFIOCTL.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2015-03-08 16:25:07.226
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\WinFast\WFTVFM\WFIOCTL.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2015-03-08 16:25:06.821
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\WinFast\WFTVFM\WFIOCTL.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2015-03-08 16:25:06.774
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\WinFast\WFTVFM\WFIOCTL.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2015-03-08 15:36:00.755
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\WinFast\WFTVFM\WFIOCTL.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2015-03-08 15:36:00.708
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\WinFast\WFTVFM\WFIOCTL.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info ===========================

Processor: Intel(R) Xeon(R) CPU E3-1231 v3 @ 3.40GHz
Percentage of memory in use: 21%
Total physical RAM: 16321.93 MB
Available physical RAM: 12887.1 MB
Total Pagefile: 32642.05 MB
Available Pagefile: 29195.23 MB
Total Virtual: 8192 MB
Available Virtual: 8191.84 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:1863.01 GB) (Free:522.44 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive e: (Místní disk) (Fixed) (Total:1862.89 GB) (Free:1075.08 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 66DC6031)
Partition 1: (Active) - (Size=1863 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (Size: 1863 GB) (Disk ID: 7BDAE444)

Partition: GPT Partition Type.

==================== End Of Log ============================
Moje železo :-D
Deska - ASUS ROG STRIX B560-E Gaming
CPU - Intel Core i7 11700K
RAM - Kingston Fury Beast RGB 32GB
CHLADIČ - Arctic Liquid Freezer II 280
GRAFIKA - ASUS Gefroce GTX 1660
SKŘÍŇ - CoolerMaster HAF 922
ZDROJ - Seasonic Focus+ 750W

SPolygon
Level 1.5
Level 1.5
Příspěvky: 127
Registrován: únor 15
Pohlaví: Muž
Stav:
Offline

Re: Podezření na vir

Příspěvekod SPolygon » 08 bře 2015 17:20

Mě podobnou věc dělal Avast. Po startu jen černo a uprostřed myš a musel jsem explorer restartovat manuálně. Po přechodu na AVG Free už se mi to nikdy nestalo...

Uživatelský avatar
pepanecek5
Level 3.5
Level 3.5
Příspěvky: 709
Registrován: červenec 14
Pohlaví: Muž
Stav:
Offline

Re: Podezření na vir

Příspěvekod pepanecek5 » 08 bře 2015 17:24

To není možné. Nikdy s ním nebyly problémy.
Moje železo :-D
Deska - ASUS ROG STRIX B560-E Gaming
CPU - Intel Core i7 11700K
RAM - Kingston Fury Beast RGB 32GB
CHLADIČ - Arctic Liquid Freezer II 280
GRAFIKA - ASUS Gefroce GTX 1660
SKŘÍŇ - CoolerMaster HAF 922
ZDROJ - Seasonic Focus+ 750W

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Podezření na vir

Příspěvekod jaro3 » 08 bře 2015 20:10

Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.

Kód: Vybrat vše

HKU\S-1-5-21-2758404647-1744933043-672776856-1000\...\MountPoints2: {7b409eb3-3fff-11e4-960f-7824af34cc82} - K:\setup.exe
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2758404647-1744933043-672776856-1000 -> {1352B701-9AF6-4B14-A767-2EF11BF5C103} URL = http://www.mapy.cz/?query={searchTerms}&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-2758404647-1744933043-672776856-1000 -> {1F6FFEBF-C6B8-46B6-90F0-BC2E4EEEB44F} URL = http://www.firmy.cz/?q={searchTerms}&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-2758404647-1744933043-672776856-1000 -> {33E34DEF-C535-4621-82FB-013B70DBCC4B} URL = http://www.novinky.cz/hledej?w={searchTerms}&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-2758404647-1744933043-672776856-1000 -> {832E9C72-EA99-4DB8-BF0D-C4E9676D4079} URL = http://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-2758404647-1744933043-672776856-1000 -> {92B9E512-7845-42A0-A358-91326FF1C649} URL = http://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-2758404647-1744933043-672776856-1000 -> {983066A8-20A2-492E-9BC0-7A543EAF5AB2} URL = http://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-2758404647-1744933043-672776856-1000 -> {B3B95ABE-2B9C-44E7-8144-64104B5C0F17} URL = http://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-2758404647-1744933043-672776856-1000 -> {BA1691D8-9E26-4F35-B3B1-4F00170057D9} URL = http://www.zbozi.cz/?q={searchTerms}&r=campmoz&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-2758404647-1744933043-672776856-1000 -> {D5D7FF6D-DC78-43E5-B8A7-ABA12057232C} URL = http://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_16194
C:\Windows\msdownld.tmp
C:\ProgramData\DP45977C.lfl
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).

Ulož jej na na plochu jako fixlist.txt


Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.

V možnostech složky si povol zobrazování skrytých souborů a složek+ odškrtni zatržítko skrýt chráněné soubory operačního systému

Toto otestuj na Virustotal
C:\Windows\PE_File.dll
C:\Windows\PE_Rom.dll

Klikni vpravo od okénka na Vybrat a v Exploreru najdi požadovaný soubor v Tvém PC. Označ ho myší a klikni na Otevřít , poté klikni na Send File. Pokud už byl soubor testován , objeví se okno ve kterém klikni na Reanalyze. Soubor se začne postupně testovat více antivirovými programy. Až skončí test posledního antiviru , objeví se nahoře result a červeně počet nákaz , např. 0/43 , nebo 1/43. Pak zkopíruj myší odkaz na tuto stránku a vlož ji do svého příspěvku.

Nebo na:
http://www.virscan.org/


V možnostech složky si zakaž zobrazování skrytých souborů a složek+ dej zatržítko skrýt chráněné soubory operačního systému
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 67 hostů