prosím o kontrolu logu :))

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
Amurex
Level 2
Level 2
Příspěvky: 204
Registrován: listopad 11
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu :))

Příspěvekod Amurex » 30 led 2014 10:22

aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software
Run date: 2014-01-30 10:15:21
-----------------------------
10:15:21.446 OS Version: Windows x64 6.1.7601 Service Pack 1
10:15:21.446 Number of processors: 4 586 0x3A09
10:15:21.447 ComputerName: C01-111B UserName: Packard
10:15:22.823 Initialize success
10:15:22.941 AVAST engine defs: 14012901
10:15:39.573 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0
10:15:39.574 Disk 0 Vendor: WDC_WD7500BPVT-22HXZT3 01.01A01 Size: 715404MB BusType: 3
10:15:39.686 Disk 0 MBR read successfully
10:15:39.687 Disk 0 MBR scan
10:15:39.690 Disk 0 Windows 7 default MBR code
10:15:39.691 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
10:15:39.706 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 99900 MB offset 206848
10:15:39.719 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 615402 MB offset 204802048
10:15:39.756 Disk 0 scanning C:\Windows\system32\drivers
10:15:47.720 Service scanning
10:16:07.688 Modules scanning
10:16:07.693 Disk 0 trace - called modules:
10:16:07.711 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys ataport.SYS pciide.sys PCIIDEX.SYS hal.dll atapi.sys
10:16:08.037 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa80053bb060]
10:16:08.041 3 CLASSPNP.SYS[fffff880019a843f] -> nt!IofCallDriver -> [0xfffffa8004e12520]
10:16:08.044 5 ACPI.sys[fffff88000e0b7a1] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0xfffffa8004dff060]
10:16:08.576 AVAST engine scan C:\Windows
10:16:10.128 AVAST engine scan C:\Windows\system32
10:18:15.974 AVAST engine scan C:\Windows\system32\drivers
10:18:30.057 AVAST engine scan C:\Users\Packard
10:20:35.755 AVAST engine scan C:\ProgramData
10:21:08.775 Scan finished successfully
10:21:20.251 Disk 0 MBR has been saved successfully to "C:\Users\Packard\Desktop\MBR.dat"
10:21:20.255 The log file has been saved successfully to "C:\Users\Packard\Desktop\aswMBR.txt"

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu :))

Příspěvekod jaro3 » 30 led 2014 10:31

ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall

Vyčisti systém CCleanerem

Stáhni si OTC

na plochu. Poklepej na něj. Potom klikni na Clean up!.
Restartuj PC , pokud Ti bude doporučeno.

Zavři ostatní aplikace a prohlížeče, odpoj se od netu a fixni v HJT:
Návod

Kód: Vybrat vše

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\RunOnce: [20131224] C:\Program Files\AVAST Software\Avast\setup\emupdate\6e731d1b-6165-4a7c-b328-ea86a520f15c.exe /check
O4 - HKUS\S-1-5-21-2475128693-640578944-967759831-1004\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')

Co problémy?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Amurex
Level 2
Level 2
Příspěvky: 204
Registrován: listopad 11
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu :))

Příspěvekod Amurex » 30 led 2014 22:20

Nevim tak podle me je to porad zpomaleny .. urcite je to teda pomalejsi nez kdyz jsem notebook kupoval coz je asi pred pul rokem ... a o dost pomalejsi .... i treba v hrach mi pri vyssim vytizeni se to dost seka .. pritom by nemelo ... :/

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu :))

Příspěvekod jaro3 » 31 led 2014 10:22

Prosím stáhni příslušnou verzi programu pro Tvůj systém (32-bit/64-bit) Farbar Scan Tool (FrSt)

32bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/81/

64bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/82/

a ulož jej na plochu. ,pak spusť FrSt.
Potvrď způsob užití.
Neměň žádné z výchozích nastavení a klikni na položku „Scan“ („Skenovat“) .Když je skenování dokončeno, ukážou se dva logy = FRST.txt a Addition.txt a uloží se na ploše.Prosím zkopíruj sem celý jejich obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Amurex
Level 2
Level 2
Příspěvky: 204
Registrován: listopad 11
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu :))

Příspěvekod Amurex » 09 úno 2014 15:07

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 09-02-2014
Ran by Packard (administrator) on C01-111B on 09-02-2014 15:05:46
Running from C:\Users\Packard\Desktop
Windows 7 Ultimate Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE
(Microsoft Corporation) C:\Windows\system32\WLANExt.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.EXE
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Pandora.TV) C:\Program Files (x86)\PANDORA.TV\PanService\KMPService.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Atheros) C:\Program Files (x86)\Atheros\Ath_WlanAgent.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(PandoraTV) C:\Program Files (x86)\PANDORA.TV\PanService\KMPProcess.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(TeamSpeak Systems GmbH) D:\ts3\ts3client_win32.exe
() D:\LeagueofLegends\League of Legends\RADS\system\rads_user_kernel.exe
() D:\LeagueofLegends\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.199\deploy\LoLLauncher.exe
() D:\LeagueofLegends\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.69\deploy\LolClient.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [Broadcom Wireless Manager UI] - C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.exe [7138816 2013-09-02] (Broadcom Corporation)
HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1012000 2013-05-16] (NVIDIA Corporation)
HKLM\...\Run: [ETDCtrl] - C:\Program Files\Elantech\ETDCtrl.exe [2821936 2012-03-08] (ELAN Microelectronics Corp.)
HKLM\...\Run: [BCSSync] - C:\Program Files\Microsoft Office\Office14\BCSSync.exe [112512 2010-03-13] (Microsoft Corporation)
HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13662936 2014-01-30] (Realtek Semiconductor)
HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-08-30] (AVAST Software)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2475128693-640578944-967759831-1000\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3673184 2013-07-03] (Disc Soft Ltd)
HKU\S-1-5-21-2475128693-640578944-967759831-1000\...\Run: [Advanced SystemCare 7] - C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe [2283808 2013-11-11] (IObit)
AppInit_DLLs: C:\Windows\System32\nvinitx.dll => C:\Windows\System32\nvinitx.dll [266448 2013-06-21] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [214448 2013-06-21] (NVIDIA Corporation)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13415
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xA1AB3C5021A8CE01
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKCU - {0B9D7A27-294A-46FE-97D2-C43CE00F6782} URL = http://www.zbozi.cz/?q={searchTerms}&r=campmoz&sourceid=QuickSearch_13415
SearchScopes: HKCU - {1603920A-3842-4AD8-918E-C603B834F31C} URL = http://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_13415
SearchScopes: HKCU - {1EC4EBDA-2689-4CFE-A1DF-BD464FF077D2} URL = http://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_13415
SearchScopes: HKCU - {2633900E-E381-4E1C-9DAD-911A14264A87} URL = http://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_13415
SearchScopes: HKCU - {364DE007-0C73-4D9E-9FDF-D2C3BB92D3A2} URL = http://www.novinky.cz/hledej?w={searchTerms}&sourceid=QuickSearch_13415
SearchScopes: HKCU - {50F1C752-4878-4741-BE0B-7D44B6A20730} URL = http://www.mapy.cz/?query={searchTerms}&sourceid=QuickSearch_13415
SearchScopes: HKCU - {57271944-617A-4AEF-96FB-94E7CD02B3C5} URL = http://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_13415
SearchScopes: HKCU - {C788AA3E-25AC-4A62-8D11-A99B93D9C550} URL = http://www.firmy.cz/?q={searchTerms}&sourceid=QuickSearch_13415
BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit)
BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\Packard\AppData\Roaming\Mozilla\Firefox\Profiles\p6ifn1eb.default-1391109150563
FF Homepage: www.google.cz
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll ()
FF Plugin: @java.com/DTPlugin,version=10.40.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.40.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.40.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.40.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\4.0.50917.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Adblock Plus - C:\Users\Packard\AppData\Roaming\Mozilla\Firefox\Profiles\p6ifn1eb.default-1391109150563\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-01-30]
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0045-ABCDEFFEDCBA} [2014-02-05]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-09-03]

==================== Services (Whitelisted) =================

R2 AdvancedSystemCareService7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [878368 2013-10-25] (IObit)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-08-30] (AVAST Software)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-08] (Intel Corporation)
R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2151200 2013-10-25] (IObit)
R2 PanService; C:\Program Files (x86)\PANDORA.TV\PanService\KMPService.exe [1922600 2013-07-08] (Pandora.TV)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75064 2013-12-17] ()
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [117264 2010-06-25] (CACE Technologies, Inc.)
R2 wltrysvc; C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe [5824512 2013-09-02] (Broadcom Corporation)
R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Atheros\Ath_WlanAgent.exe [72864 2012-01-18] (Atheros)

==================== Drivers (Whitelisted) ====================

R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-08-30] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-08-30] (AVAST Software)
R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [72016 2013-08-30] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-08-30] ()
R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1030952 2013-08-30] (AVAST Software)
R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [378944 2013-08-30] (AVAST Software)
R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-08-30] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [204880 2013-08-30] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2013-09-04] (Disc Soft Ltd)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2014-01-30] (Intel Corporation)
S3 NPF; C:\Windows\System32\drivers\npf.sys [35344 2010-06-25] (CACE Technologies, Inc.)
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-02-09 15:05 - 2014-02-09 15:06 - 00014508 _____ () C:\Users\Packard\Desktop\FRST.txt
2014-02-09 15:05 - 2014-02-09 15:05 - 00000000 ____D () C:\FRST
2014-02-09 14:56 - 2014-02-09 14:56 - 02170368 _____ (Farbar) C:\Users\Packard\Desktop\FRST64.exe
2014-02-09 14:47 - 2014-02-09 15:06 - 00000000 ____D () C:\Users\Packard\Desktop\RK_Quarantine
2014-02-09 13:46 - 2014-02-09 13:46 - 00000080 _____ () C:\Windows\DirectX.log
2014-02-09 01:00 - 2014-02-09 10:32 - 00000056 _____ () C:\Windows\setupact.log
2014-02-09 01:00 - 2014-02-09 01:00 - 00000000 _____ () C:\Windows\setuperr.log
2014-02-05 16:35 - 2014-02-05 16:35 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-02-04 20:38 - 2006-02-04 03:50 - 00005174 _____ () C:\Windows\SysWOW64\nppt9x.vxd
2014-02-04 20:38 - 2006-02-04 03:50 - 00004682 _____ (INCA Internet Co., Ltd.) C:\Windows\SysWOW64\npptNT2.sys
2014-02-03 15:34 - 2014-02-03 15:34 - 00000000 ____D () C:\ProgramData\Electronic Arts
2014-02-03 15:21 - 2014-02-03 15:21 - 00000000 ____D () C:\Program Files (x86)\Microsoft WSE
2014-01-30 22:28 - 2014-01-30 22:28 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll
2014-01-30 22:28 - 2014-01-30 22:28 - 00458960 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\k57nd60a.sys
2014-01-30 22:28 - 2014-01-30 22:28 - 00099288 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys
2014-01-30 22:28 - 2014-01-30 22:28 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2014-01-30 22:28 - 2014-01-30 22:28 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-01-30 22:27 - 2014-01-30 22:27 - 41974272 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2014-01-30 22:27 - 2014-01-30 22:27 - 27644160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 14153984 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 05753112 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 05681196 _____ () C:\Windows\system32\Drivers\rtvienna.dat
2014-01-30 22:27 - 2014-01-30 22:27 - 03899648 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 03760344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2014-01-30 22:27 - 2014-01-30 22:27 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 02588888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 01922304 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2014-01-30 22:27 - 2014-01-30 22:27 - 01345280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 01286400 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 01084160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 01014016 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 01013504 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00912184 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00907008 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00897792 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00790272 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00722688 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00693329 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT
2014-01-30 22:27 - 2014-01-30 22:27 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00618200 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00244480 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00154840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 06217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 01938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 00605496 _____ () C:\Windows\system32\audioLibVc.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 00313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 00260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2014-01-30 22:23 - 2014-02-09 10:33 - 00000288 _____ () C:\Windows\Tasks\Driver Booster Update.job
2014-01-30 22:23 - 2014-01-30 22:23 - 00003218 _____ () C:\Windows\System32\Tasks\Driver Booster Scan
2014-01-30 22:23 - 2014-01-30 22:23 - 00002566 _____ () C:\Windows\System32\Tasks\Driver Booster Update
2014-01-30 22:23 - 2014-01-30 22:23 - 00001180 _____ () C:\Users\Public\Desktop\Driver Booster.lnk
2014-01-30 17:37 - 2014-01-30 17:37 - 00000000 ____D () C:\Users\Packard\Desktop\backups
2014-01-30 17:06 - 2014-01-30 17:06 - 00002776 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-01-30 17:05 - 2014-01-30 17:05 - 00000000 ____D () C:\Program Files\CCleaner
2014-01-30 17:04 - 2014-01-30 17:04 - 04721920 _____ (Piriform Ltd) C:\Users\Packard\Downloads\ccsetup410.exe
2014-01-29 17:19 - 2014-01-29 17:24 - 3858372186 _____ () C:\Users\Packard\Downloads\The-Human-Centipede-2.Cz-Titulky-(2) (1).avi
2014-01-26 17:41 - 2014-01-26 17:41 - 00000000 ____D () C:\Users\Packard\Documents\Rockstar Games
2014-01-26 17:39 - 2014-01-26 17:39 - 00000000 __SHD () C:\ProgramData\SecuROM
2014-01-26 17:39 - 2014-01-26 17:39 - 00000000 ____D () C:\Users\Packard\AppData\Local\Rockstar Games
2014-01-26 11:09 - 2014-01-26 11:09 - 00000000 ____D () C:\Users\Packard\Desktop\whitney
2014-01-16 15:50 - 2014-01-16 15:51 - 729493504 _____ () C:\Users\Packard\Downloads\Bobule.avi
2014-01-16 10:44 - 2014-01-16 10:45 - 733941020 _____ () C:\Users\Packard\Downloads\Sexy párty 3 - prvák (komedie, 2009) CZ.avi
2014-01-15 17:43 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-01-15 17:43 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-01-15 17:43 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-01-15 17:43 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-01-15 17:43 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-01-15 17:43 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-01-15 17:43 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-01-15 17:43 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-01-14 23:01 - 2014-01-14 23:02 - 733763584 _____ () C:\Users\Packard\Downloads\sexy party 2.avi
2014-01-12 21:50 - 2014-01-12 21:52 - 1770457520 _____ () C:\Users\Packard\Downloads\Last.Vegas.2013.1080p.BluRay.x264.YIFY.mp4
2014-01-12 00:00 - 2014-01-12 00:03 - 1444763648 _____ () C:\Users\Packard\Downloads\Star Wars II - The Attack of the Clones.avi
2014-01-10 18:22 - 2014-01-10 19:25 - 00000000 ____D () C:\Users\Packard\AppData\Roaming\Awesomium
2014-01-10 15:28 - 2014-01-10 15:29 - 1129589320 _____ () C:\Users\Packard\Downloads\Hvězdné války 1 (Star Wars I) - Skrytá hrozba cz.avi

==================== One Month Modified Files and Folders =======

2014-02-09 15:06 - 2014-02-09 15:05 - 00014508 _____ () C:\Users\Packard\Desktop\FRST.txt
2014-02-09 15:06 - 2014-02-09 14:47 - 00000000 ____D () C:\Users\Packard\Desktop\RK_Quarantine
2014-02-09 15:05 - 2014-02-09 15:05 - 00000000 ____D () C:\FRST
2014-02-09 15:05 - 2013-11-29 17:19 - 00000000 ____D () C:\Users\Packard\Desktop\sprava
2014-02-09 15:05 - 2013-09-24 15:04 - 00000000 ____D () C:\Users\Packard\Desktop\skola
2014-02-09 15:05 - 2013-09-03 00:02 - 00001966 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-02-09 14:56 - 2014-02-09 14:56 - 02170368 _____ (Farbar) C:\Users\Packard\Desktop\FRST64.exe
2014-02-09 14:48 - 2013-10-09 21:47 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-02-09 13:48 - 2013-12-03 21:12 - 00000000 ____D () C:\Users\Packard\AppData\Local\CrashDumps
2014-02-09 13:46 - 2014-02-09 13:46 - 00000080 _____ () C:\Windows\DirectX.log
2014-02-09 10:48 - 2013-09-03 05:08 - 00000000 ____D () C:\Users\Packard\AppData\Roaming\TS3Client
2014-02-09 10:41 - 2009-07-14 05:45 - 00014224 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-02-09 10:41 - 2009-07-14 05:45 - 00014224 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-02-09 10:33 - 2014-01-30 22:23 - 00000288 _____ () C:\Windows\Tasks\Driver Booster Update.job
2014-02-09 10:32 - 2014-02-09 01:00 - 00000056 _____ () C:\Windows\setupact.log
2014-02-09 10:32 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-02-09 01:04 - 2013-09-02 20:05 - 02017482 _____ () C:\Windows\WindowsUpdate.log
2014-02-09 01:03 - 2013-09-04 06:17 - 00000000 ____D () C:\Users\Packard\AppData\Roaming\uTorrent
2014-02-09 01:00 - 2014-02-09 01:00 - 00000000 _____ () C:\Windows\setuperr.log
2014-02-08 22:48 - 2013-09-02 21:09 - 00109680 _____ () C:\Users\Packard\AppData\Local\GDIPFONTCACHEV1.DAT
2014-02-08 14:55 - 2013-09-04 07:27 - 00000000 ____D () C:\Users\Packard\AppData\Roaming\DAEMON Tools Lite
2014-02-07 14:55 - 2013-09-02 23:51 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-02-06 14:44 - 2013-09-03 00:02 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-02-05 22:53 - 2013-09-18 03:40 - 00000000 ____D () C:\Users\Packard\AppData\Roaming\Skype
2014-02-05 19:48 - 2013-10-09 21:47 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-02-05 19:48 - 2013-09-03 00:10 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-02-05 19:48 - 2013-09-03 00:10 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-02-05 16:35 - 2014-02-05 16:35 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-02-05 14:44 - 2009-07-14 05:45 - 00417472 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-02-04 20:41 - 2013-09-02 22:12 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-02-04 20:16 - 2013-10-18 07:11 - 00000000 ____D () C:\Users\Packard\Documents\StrongDC++
2014-02-03 15:34 - 2014-02-03 15:34 - 00000000 ____D () C:\ProgramData\Electronic Arts
2014-02-03 15:21 - 2014-02-03 15:21 - 00000000 ____D () C:\Program Files (x86)\Microsoft WSE
2014-01-31 17:01 - 2013-12-17 14:03 - 00000000 ____D () C:\Users\Packard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2014-01-31 09:47 - 2013-09-03 01:08 - 00000000 ____D () C:\ProgramData\IObit
2014-01-30 22:28 - 2014-01-30 22:28 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll
2014-01-30 22:28 - 2014-01-30 22:28 - 00458960 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\k57nd60a.sys
2014-01-30 22:28 - 2014-01-30 22:28 - 00099288 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys
2014-01-30 22:28 - 2014-01-30 22:28 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2014-01-30 22:28 - 2014-01-30 22:28 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-01-30 22:27 - 2014-01-30 22:27 - 41974272 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2014-01-30 22:27 - 2014-01-30 22:27 - 27644160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 14153984 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 05753112 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 05681196 _____ () C:\Windows\system32\Drivers\rtvienna.dat
2014-01-30 22:27 - 2014-01-30 22:27 - 03899648 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 03760344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2014-01-30 22:27 - 2014-01-30 22:27 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 02588888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 01922304 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2014-01-30 22:27 - 2014-01-30 22:27 - 01345280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 01286400 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 01084160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 01014016 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 01013504 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00912184 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00907008 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00897792 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00790272 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00722688 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00693329 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT
2014-01-30 22:27 - 2014-01-30 22:27 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00618200 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00244480 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00154840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2014-01-30 22:27 - 2014-01-30 22:27 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2014-01-30 22:27 - 2013-09-03 00:47 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2014-01-30 22:26 - 2014-01-30 22:26 - 06217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 01938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 00605496 _____ () C:\Windows\system32\audioLibVc.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 00313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 00260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll
2014-01-30 22:26 - 2014-01-30 22:26 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2014-01-30 22:23 - 2014-01-30 22:23 - 00003218 _____ () C:\Windows\System32\Tasks\Driver Booster Scan
2014-01-30 22:23 - 2014-01-30 22:23 - 00002566 _____ () C:\Windows\System32\Tasks\Driver Booster Update
2014-01-30 22:23 - 2014-01-30 22:23 - 00001180 _____ () C:\Users\Public\Desktop\Driver Booster.lnk
2014-01-30 22:23 - 2013-09-03 01:08 - 00000000 ____D () C:\Users\Packard\AppData\Roaming\IObit
2014-01-30 22:22 - 2013-09-03 01:08 - 00000000 ____D () C:\Program Files (x86)\IObit
2014-01-30 17:37 - 2014-01-30 17:37 - 00000000 ____D () C:\Users\Packard\Desktop\backups
2014-01-30 17:12 - 2014-01-07 11:52 - 00000000 ____D () C:\Qoobox
2014-01-30 17:06 - 2014-01-30 17:06 - 00002776 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-01-30 17:05 - 2014-01-30 17:05 - 00000000 ____D () C:\Program Files\CCleaner
2014-01-30 17:04 - 2014-01-30 17:04 - 04721920 _____ (Piriform Ltd) C:\Users\Packard\Downloads\ccsetup410.exe
2014-01-30 00:46 - 2009-07-14 03:34 - 00000215 _____ () C:\Windows\system.ini
2014-01-29 17:24 - 2014-01-29 17:19 - 3858372186 _____ () C:\Users\Packard\Downloads\The-Human-Centipede-2.Cz-Titulky-(2) (1).avi
2014-01-29 08:05 - 2013-09-04 03:36 - 00669970 _____ () C:\Windows\system32\perfh005.dat
2014-01-29 08:05 - 2013-09-04 03:36 - 00141556 _____ () C:\Windows\system32\perfc005.dat
2014-01-29 08:05 - 2009-07-14 06:13 - 01586094 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-01-26 17:41 - 2014-01-26 17:41 - 00000000 ____D () C:\Users\Packard\Documents\Rockstar Games
2014-01-26 17:39 - 2014-01-26 17:39 - 00000000 __SHD () C:\ProgramData\SecuROM
2014-01-26 17:39 - 2014-01-26 17:39 - 00000000 ____D () C:\Users\Packard\AppData\Local\Rockstar Games
2014-01-26 11:09 - 2014-01-26 11:09 - 00000000 ____D () C:\Users\Packard\Desktop\whitney
2014-01-25 09:54 - 2009-07-14 06:09 - 00000000 ____D () C:\Windows\System32\Tasks\WPD
2014-01-18 10:56 - 2014-01-03 21:09 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-01-16 15:51 - 2014-01-16 15:50 - 729493504 _____ () C:\Users\Packard\Downloads\Bobule.avi
2014-01-16 10:45 - 2014-01-16 10:44 - 733941020 _____ () C:\Users\Packard\Downloads\Sexy párty 3 - prvák (komedie, 2009) CZ.avi
2014-01-15 23:51 - 2013-09-04 02:37 - 00000000 ____D () C:\Windows\system32\MRT
2014-01-15 23:50 - 2013-09-02 20:10 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-01-14 23:02 - 2014-01-14 23:01 - 733763584 _____ () C:\Users\Packard\Downloads\sexy party 2.avi
2014-01-13 11:41 - 2009-07-14 06:08 - 00032560 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-01-12 21:52 - 2014-01-12 21:50 - 1770457520 _____ () C:\Users\Packard\Downloads\Last.Vegas.2013.1080p.BluRay.x264.YIFY.mp4
2014-01-12 16:38 - 2013-11-03 01:17 - 00000000 ____D () C:\Users\Packard\AppData\Local\Microsoft Help
2014-01-12 00:03 - 2014-01-12 00:00 - 1444763648 _____ () C:\Users\Packard\Downloads\Star Wars II - The Attack of the Clones.avi
2014-01-10 19:25 - 2014-01-10 18:22 - 00000000 ____D () C:\Users\Packard\AppData\Roaming\Awesomium
2014-01-10 15:29 - 2014-01-10 15:28 - 1129589320 _____ () C:\Users\Packard\Downloads\Hvězdné války 1 (Star Wars I) - Skrytá hrozba cz.avi

Some content of TEMP:
====================
C:\Users\Packard\AppData\Local\Temp\ntdll_dump.dll


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-01-29 13:27

==================== End Of Log ============================

Uživatelský avatar
Amurex
Level 2
Level 2
Příspěvky: 204
Registrován: listopad 11
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu :))

Příspěvekod Amurex » 09 úno 2014 15:07

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09-02-2014
Ran by Packard at 2014-02-09 15:07:25
Running from C:\Users\Packard\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: avast! Antivirus (Enabled - Up to date) {2B2D1395-420B-D5C9-657E-930FE358FC3C}
AS: avast! Antivirus (Enabled - Up to date) {904CF271-6431-DA47-5FCE-A87D98DFB681}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

µTorrent (x32 Version: 3.3.0.29111 - BitTorrent Inc.)
Adobe Flash Player 12 ActiveX (x32 Version: 12.0.0.44 - Adobe Systems Incorporated)
Adobe Flash Player 12 Plugin (x32 Version: 12.0.0.44 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.06) - Czech (x32 Version: 11.0.06 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.5 (x32 Version: 11.5.7.609 - Adobe Systems, Inc)
Advanced SystemCare 7 (x32 Version: 7.0.6 - IObit)
avast! Free Antivirus (x32 Version: 8.0.1497.0 - AVAST Software)
Broadcom Card Reader Driver Installer (Version: 15.0.7.2 - Broadcom Corporation)
Broadcom NetLink Controller (Version: 15.0.7.1 - Broadcom Corporation)
Broadcom Wireless Utility (Version: 5.100.82.120 - Broadcom Corporation)
CCleaner (Version: 4.10 - Piriform)
Cisco EAP-FAST Module (x32 Version: 2.2.14 - Cisco Systems, Inc.) Hidden
Cisco LEAP Module (x32 Version: 1.0.19 - Cisco Systems, Inc.) Hidden
Cisco PEAP Module (x32 Version: 1.1.6 - Cisco Systems, Inc.) Hidden
Core Temp 1.0 RC6 (Version: 1.0 - Alcpu)
DAEMON Tools Lite (x32 Version: 4.47.1.0335 - Disc Soft Ltd)
Driver Booster (x32 Version: 1.2 - IObit)
ETDWare PS/2-X64 10.6.9.9_WHQL (Version: 10.6.9.9 - ELAN Microelectronic Corp.)
GamePark klient 2.0.9.0 (Version: 2.0.9.0 - GamePark)
Intel(R) Management Engine Components (x32 Version: 8.0.2.1410 - Intel Corporation)
Intel(R) OpenCL CPU Runtime (x32 Version: - Intel Corporation)
Intel(R) Processor Graphics (x32 Version: 8.15.10.2653 - Intel Corporation)
Intel® Trusted Connect Service Client (Version: 1.23.605.1 - Intel Corporation)
IObit Uninstaller (x32 Version: 3.0.4.1083 - IObit)
Java 7 Update 40 (64-bit) (Version: 7.0.400 - Oracle)
Java 7 Update 40 (x32 Version: 7.0.400 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Java(TM) 6 Update 21 (64-bit) (Version: 6.0.210 - Oracle)
Java(TM) 6 Update 45 (x32 Version: 6.0.450 - Oracle)
KMP Service (x32 Version: - KMP)
League of Legends (x32 Version: 1.02.0000 - Riot Games)
Lineage II (x32 Version: 90.7.2281 - NCSoft)
Malwarebytes Anti-Malware version 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation)
ManiaPlanet (x32 Version: - Nadeo)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft Office Access MUI (Czech) 2010 (Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (Czech) 2010 (Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office Groove MUI (Czech) 2010 (Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (Czech) 2010 (Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office Office 32-bit Components 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (Czech) 2010 (Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (Czech) 2010 (Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (Czech) 2010 (Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2010 (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Czech) 2010 (Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Slovak) 2010 (Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office Proofing (Czech) 2010 (Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (Czech) 2010 (Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (Czech) 2010 (Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Czech) 2010 (Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (Czech) 2010 (Version: 14.0.4763.1011 - Microsoft Corporation) Hidden
Microsoft Silverlight (x32 Version: 4.0.50917.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0 - Microsoft Corp.)
Mount&Blade Warband (x32 Version: - )
Mozilla Firefox 27.0 (x86 cs) (x32 Version: 27.0 - Mozilla)
Mozilla Maintenance Service (x32 Version: 27.0 - Mozilla)
NVIDIA Control Panel 320.49 (Version: 320.49 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 1.5 (Version: 1.5 - NVIDIA Corporation)
NVIDIA Graphics Driver 320.49 (Version: 320.49 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.124.810 - NVIDIA Corporation) Hidden
NVIDIA Optimus 4.11.9 (Version: 4.11.9 - NVIDIA Corporation) Hidden
NVIDIA PhysX (x32 Version: 9.13.0604 - NVIDIA Corporation) Hidden
NVIDIA PhysX System Software 9.13.0604 (Version: 9.13.0604 - NVIDIA Corporation)
NVIDIA Update 4.11.9 (Version: 4.11.9 - NVIDIA Corporation) Hidden
NVIDIA Update Components (Version: 4.11.9 - NVIDIA Corporation) Hidden
Qualcomm Atheros WiFi Driver Installation (x32 Version: 3.0 - Qualcomm Atheros)
qualitink 1.0.0 (Version: 1.0.0 - qualitink) <==== ATTENTION
Realtek High Definition Audio Driver (x32 Version: 6.0.1.7106 - Realtek Semiconductor Corp.)
Seznam Software (HKCU Version: - Seznam.cz)
Skype™ 6.7 (x32 Version: 6.7.102 - Skype Technologies S.A.)
Steam (x32 Version: - Valve Corporation)
StrongDC++ 2.41 (x32 Version: 2.41 - Big Muscle)
Surfing Protection (x32 Version: 1.0 - IObit)
TeamSpeak 3 Client (x32 Version: 3.0.11 - TeamSpeak Systems GmbH)
The KMPlayer (remove only) (x32 Version: 3.7.0.107 - KMP Media co., Ltd)
Torntv 2 (x32 Version: 1.29.153.0 - installdaddy) <==== ATTENTION
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2836939) (x32 Version: 1 - Microsoft Corporation)
VC_CRT_x64 (Version: 1.02.0000 - Intel Corporation) Hidden
WinPcap 4.1.2 (x32 Version: 4.1.0.2001 - CACE Technologies)
WinRAR 4.20 (32-bit) (x32 Version: 4.20.0 - win.rar GmbH)
XSplit (x32 Version: 1.2.1301.1501 - SplitMediaLabs)

==================== Restore Points =========================

03-02-2014 14:15:31 Installed The Sims 3
03-02-2014 14:31:18 Removed Call of Duty(R) 2
04-02-2014 19:32:41 Installed Lineage II
04-02-2014 19:41:06 Removed The Sims 3
07-02-2014 14:01:01 Windows Update

==================== Hosts content: ==========================

2009-07-14 03:34 - 2014-01-30 00:46 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost

==================== Scheduled Tasks (whitelisted) =============

Task: {22DBCE83-9673-485C-858B-E9E05E2BCBD2} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2013-08-30] (AVAST Software)
Task: {3E935C10-5C49-4754-A2B1-0F4BA37B3094} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-01-21] (Piriform Ltd)
Task: {44A284DE-DAC8-427E-97D0-1057B59901B7} - System32\Tasks\Driver Booster Update => C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe [2014-01-07] (IObit)
Task: {64ED33E6-0F4C-4679-9DB9-F5B968200053} - System32\Tasks\ASC7_SkipUac_Packard => C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe [2013-11-18] (IObit)
Task: {8BA56EDE-A199-4939-8876-EB9426142980} - System32\Tasks\ASC7_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe [2013-11-11] (IObit)
Task: {8EF3E2A3-E1BE-4F8B-B5E9-D65CD733525D} - System32\Tasks\Driver Booster Scan => C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe [2014-01-16] (IObit)
Task: {94CC5865-7270-410C-9971-EB6A4C4BD1E4} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-05] (Adobe Systems Incorporated)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\Driver Booster Update.job => C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe

==================== Loaded Modules (whitelisted) =============

2012-02-15 09:53 - 2012-02-15 09:53 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2013-09-03 01:02 - 2013-09-03 01:04 - 01294336 _____ () D:\LeagueofLegends\League of Legends\RADS\system\rads_user_kernel.exe
2013-09-03 01:02 - 2014-02-08 13:44 - 05312352 _____ () D:\LeagueofLegends\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.199\deploy\LoLLauncher.exe
2013-09-03 01:11 - 2013-09-03 01:11 - 00074752 _____ () D:\LeagueofLegends\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.69\deploy\LolClient.exe
2010-01-30 10:40 - 2010-01-30 10:40 - 04254560 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2013-11-28 18:54 - 2013-10-25 12:08 - 00517408 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\sqlite3.dll
2014-02-08 22:00 - 2014-02-08 18:44 - 02264064 _____ () C:\Program Files\AVAST Software\Avast\defs\14020801\algo.dll
2013-11-28 18:54 - 2013-01-15 18:48 - 00348992 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\madExcept_.bpl
2013-11-28 18:54 - 2013-01-15 18:48 - 00183616 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\madBasic_.bpl
2013-11-28 18:54 - 2013-01-15 18:48 - 00051008 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\madDisAsm_.bpl
2013-11-28 18:54 - 2013-01-15 18:47 - 00893248 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\webres.dll
2013-12-17 11:32 - 2013-12-17 11:32 - 00075064 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2013-09-11 23:52 - 2012-10-22 19:21 - 01277952 _____ () C:\Program Files (x86)\PANDORA.TV\PanService\avformat-53.dll
2013-09-11 23:52 - 2012-07-10 01:57 - 02090496 _____ () C:\Program Files (x86)\PANDORA.TV\PanService\avcodec-53.dll
2013-09-11 23:52 - 2011-12-07 00:19 - 00133632 _____ () C:\Program Files (x86)\PANDORA.TV\PanService\avutil-51.dll
2013-09-11 23:52 - 2012-03-23 18:07 - 00224768 _____ () C:\Program Files (x86)\PANDORA.TV\PanService\libupnp.dll
2013-09-03 00:06 - 2012-02-08 17:39 - 01198872 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
2013-07-29 09:56 - 2013-11-01 01:54 - 00230376 _____ () D:\ts3\soundbackends\directsound_win32.dll
2013-07-29 09:56 - 2013-11-01 01:54 - 00237032 _____ () D:\ts3\soundbackends\windowsaudiosession_win32.dll
2013-07-29 09:56 - 2013-11-01 01:54 - 00431080 _____ () D:\ts3\plugins\clientquery_plugin.dll
2013-10-12 19:56 - 2013-11-01 01:54 - 00555496 _____ () D:\ts3\plugins\teamspeak_control_plugin.dll
2013-09-04 21:48 - 2014-02-08 13:44 - 00192864 _____ () D:\LeagueofLegends\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.199\deploy\RiotLauncher.dll
2010-01-30 10:41 - 2010-01-30 10:41 - 04254560 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2014-02-05 16:35 - 2014-02-05 16:35 - 03583600 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2014-02-05 19:48 - 2014-02-05 19:48 - 16287624 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll

==================== Alternate Data Streams (whitelisted) =========


==================== Safe Mode (whitelisted) ===================


==================== Faulty Device Manager Devices =============

Name: Řadič USB (Universal Serial Bus)
Description: Řadič USB (Universal Serial Bus)
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================

System errors:
=============

Microsoft Office Sessions:
=========================

CodeIntegrity Errors:
===================================
Date: 2014-01-07 18:55:25.101
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2014-01-07 18:55:25.006
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2014-01-07 18:55:24.911
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2014-01-07 18:55:24.818
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2014-01-07 18:50:08.240
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2014-01-07 18:50:08.146
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2014-01-07 18:50:08.051
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2014-01-07 18:50:07.956
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2014-01-07 11:58:22.358
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2014-01-07 11:58:22.261
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info ===========================

Percentage of memory in use: 56%
Total physical RAM: 3914.36 MB
Available physical RAM: 1693.71 MB
Total Pagefile: 7826.89 MB
Available Pagefile: 5357.86 MB
Total Virtual: 8192 MB
Available Virtual: 8191.8 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:97.56 GB) (Free:10.49 GB) NTFS
Drive d: () (Fixed) (Total:600.98 GB) (Free:564.2 GB) NTFS
Drive f: (Sims3) (CDROM) (Total:5.6 GB) (Free:0 GB) UDF

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 699 GB) (Disk ID: 0001EA74)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=98 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=601 GB) - (Type=07 NTFS)

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu :))

Příspěvekod jaro3 » 10 úno 2014 09:42

Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.

Kód: Vybrat vše

SearchScopes: HKCU - {0B9D7A27-294A-46FE-97D2-C43CE00F6782} URL = http://www.zbozi.cz/?q={searchTerms}&r=campmoz&sourceid=QuickSearch_13415
SearchScopes: HKCU - {1603920A-3842-4AD8-918E-C603B834F31C} URL = http://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_13415
SearchScopes: HKCU - {1EC4EBDA-2689-4CFE-A1DF-BD464FF077D2} URL = http://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_13415
SearchScopes: HKCU - {2633900E-E381-4E1C-9DAD-911A14264A87} URL = http://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_13415
SearchScopes: HKCU - {364DE007-0C73-4D9E-9FDF-D2C3BB92D3A2} URL = http://www.novinky.cz/hledej?w={searchTerms}&sourceid=QuickSearch_13415
SearchScopes: HKCU - {50F1C752-4878-4741-BE0B-7D44B6A20730} URL = http://www.mapy.cz/?query={searchTerms}&sourceid=QuickSearch_13415
SearchScopes: HKCU - {57271944-617A-4AEF-96FB-94E7CD02B3C5} URL = http://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_13415
SearchScopes: HKCU - {C788AA3E-25AC-4A62-8D11-A99B93D9C550} URL = http://www.firmy.cz/?q={searchTerms}&sourceid=QuickSearch_13415
C:\ProgramData\DP45977C.lfl
C:\Qoobox
C:\Users\Packard\AppData\Local\Temp\ntdll_dump.dll
C:\ComboFix

(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).

Ulož jej na na plochu jako fixlist.txt


Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.

Name: Řadič USB (Universal Serial Bus)
Description: Řadič USB (Universal Serial Bus)
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


zkus doinstalovat ovladače USB.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Amurex
Level 2
Level 2
Příspěvky: 204
Registrován: listopad 11
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu :))

Příspěvekod Amurex » 10 úno 2014 11:33

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 09-02-2014 03
Ran by Packard at 2014-02-10 11:33:24 Run:1
Running from C:\Users\Packard\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
SearchScopes: HKCU - {0B9D7A27-294A-46FE-97D2-C43CE00F6782} URL = http://www.zbozi.cz/?q={searchTerms}&r=campmoz&sourceid=QuickSearch_13415
SearchScopes: HKCU - {1603920A-3842-4AD8-918E-C603B834F31C} URL = http://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_13415
SearchScopes: HKCU - {1EC4EBDA-2689-4CFE-A1DF-BD464FF077D2} URL = http://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_13415
SearchScopes: HKCU - {2633900E-E381-4E1C-9DAD-911A14264A87} URL = http://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_13415
SearchScopes: HKCU - {364DE007-0C73-4D9E-9FDF-D2C3BB92D3A2} URL = http://www.novinky.cz/hledej?w={searchTerms}&sourceid=QuickSearch_13415
SearchScopes: HKCU - {50F1C752-4878-4741-BE0B-7D44B6A20730} URL = http://www.mapy.cz/?query={searchTerms}&sourceid=QuickSearch_13415
SearchScopes: HKCU - {57271944-617A-4AEF-96FB-94E7CD02B3C5} URL = http://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_13415
SearchScopes: HKCU - {C788AA3E-25AC-4A62-8D11-A99B93D9C550} URL = http://www.firmy.cz/?q={searchTerms}&sourceid=QuickSearch_13415
C:\ProgramData\DP45977C.lfl
C:\Qoobox
C:\Users\Packard\AppData\Local\Temp\ntdll_dump.dll
C:\ComboFix

*****************

HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0B9D7A27-294A-46FE-97D2-C43CE00F6782} => Key deleted successfully.
HKCR\CLSID\{0B9D7A27-294A-46FE-97D2-C43CE00F6782} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{1603920A-3842-4AD8-918E-C603B834F31C} => Key deleted successfully.
HKCR\CLSID\{1603920A-3842-4AD8-918E-C603B834F31C} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{1EC4EBDA-2689-4CFE-A1DF-BD464FF077D2} => Key deleted successfully.
HKCR\CLSID\{1EC4EBDA-2689-4CFE-A1DF-BD464FF077D2} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2633900E-E381-4E1C-9DAD-911A14264A87} => Key deleted successfully.
HKCR\CLSID\{2633900E-E381-4E1C-9DAD-911A14264A87} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{364DE007-0C73-4D9E-9FDF-D2C3BB92D3A2} => Key deleted successfully.
HKCR\CLSID\{364DE007-0C73-4D9E-9FDF-D2C3BB92D3A2} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{50F1C752-4878-4741-BE0B-7D44B6A20730} => Key deleted successfully.
HKCR\CLSID\{50F1C752-4878-4741-BE0B-7D44B6A20730} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{57271944-617A-4AEF-96FB-94E7CD02B3C5} => Key deleted successfully.
HKCR\CLSID\{57271944-617A-4AEF-96FB-94E7CD02B3C5} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{C788AA3E-25AC-4A62-8D11-A99B93D9C550} => Key deleted successfully.
HKCR\CLSID\{C788AA3E-25AC-4A62-8D11-A99B93D9C550} => Key not found.
C:\ProgramData\DP45977C.lfl => Moved successfully.
C:\Qoobox => Moved successfully.
C:\Users\Packard\AppData\Local\Temp\ntdll_dump.dll => Moved successfully.
"C:\ComboFix" => File/Directory not found.

==== End of Fixlog ====

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu :))

Příspěvekod jaro3 » 10 úno 2014 12:05

Co problémy?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Amurex
Level 2
Level 2
Příspěvky: 204
Registrován: listopad 11
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu :))

Příspěvekod Amurex » 11 úno 2014 10:19

myslím že pořád stejný ...

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu :))

Příspěvekod jaro3 » 11 úno 2014 18:38

Stáhni si OTL by OldTimer
na plochu. Ujisti se , že máš zavřena všechna ostatní okna a poklepej na ikonu OTL.Nahoře v okně pod Výstup klikni na minimální výstup.Pod Běžné registry změň na Vše. Zatrhni Kontrola na havěť “LOP“ a Kontrola na havěť “ Purity“ . Klikni na Prohledat. Všechny ostatní nastavení ponech jak jsou. Sken může trvat dlouho, až skončí otevřou se dva logy:
OTL.Txt
Extras.Txt

Jsou uloženy ve stejném místě jako OTL. Oba logy sem prosím zkopíruj.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 121 hostů