Fix result of Farbar Recovery Scan Tool (x64) Version: 27.01.2018
Ran by Scorpion (30-01-2018 17:39:11) Run:2
Running from C:\Users\Scorpion\Desktop
Loaded Profiles: Scorpion (Available Profiles: Scorpion & UpdatusUser)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CreateRestorePoint:
CloseProcesses:
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X]
S3 EsgScanner; system32\DRIVERS\EsgScanner.sys [X]
C:\Program Files\Enigma Software Group
C:\Windows\system32\DRIVERS\EsgScanner.sys
CMD: dir C:\myfolder
2018-01-14 22:38 - 2018-01-16 01:56 - 000000000 __SHD C:\ProgramData\RevengeRAT
File: C:\Windows\System32\CbFsMntNtf3.dll
Task: {002C1025-DB8F-46DC-9876-F31EBEB83C81} - System32\Tasks\{FAD4463A-DB6E-4833-9A8D-D1AFA6F69C3A} => C:\Windows\system32\pcalua.exe -a C:\Users\Scorpion\Desktop\plesk-installer.exe -d C:\Users\Scorpion\Desktop
Task: {3EBC8A82-951A-44CB-AD2B-0B7469BCBE68} - \GoogleUpdateTaskMachineUA -> No File <==== ATTENTION
Task: {5A104451-480F-4099-9761-3FBB565A6A8B} - System32\Tasks\{AEE03E61-D515-45A3-9299-A3B2E418886C} => C:\Windows\system32\pcalua.exe -a C:\Users\Scorpion\Desktop\FS2004_cestina_full\ATC_cz.exe -d C:\Users\Scorpion\Desktop\FS2004_cestina_full
Task: {5D98875C-6F70-4B4E-A8EA-FCA6A63C4D83} - \GoogleUpdateTaskMachineCore1d0e7ec9bdd7d39 -> No File <==== ATTENTION
Task: {5DFC2750-6D31-46FC-BC42-E1251950EC13} - \GoogleUpdateTaskMachineUA1d12ccb2f179f70 -> No File <==== ATTENTION
Task: {778E1751-B0E6-45FC-A571-AC1FC5FEC28F} - \GoogleUpdateTaskMachineUA1d090046e178291 -> No File <==== ATTENTION
Task: {A9442941-78F2-4AED-BEBF-7A84832D9014} - \GoogleUpdateTaskMachineCore1d12ccb2ee0dfca -> No File <==== ATTENTION
Task: {C27ABF5B-D6C0-416E-8E3E-FFC5BD515624} - \GoogleUpdateTaskMachineCore -> No File <==== ATTENTION
Task: {EF437E5C-3EA0-41F4-A4CB-EF63B1B195B8} - \GoogleUpdateTaskMachineUA1cfff555ca2dfbd -> No File <==== ATTENTION
File: C:\users\scorpion\appdata\roaming\wuala\wuala.exe
CMD: dir "C:\Windows\Inf" /AD
CMD: dir "C:\PROGRA~1"
CMD: dir "C:\PROGRA~2"
CMD: dir "C:\PROGRA~3"
CMD: dir "%localappdata%"
CMD: dir "%appdata%"
Hosts:
EmptyTemp:
End
*****************

Restore point was successfully created.
Processes closed successfully.
"HKLM\System\CurrentControlSet\Services\esgiguard" => removed successfully
esgiguard => service removed successfully
"HKLM\System\CurrentControlSet\Services\EsgScanner" => removed successfully
EsgScanner => service removed successfully
"C:\Program Files\Enigma Software Group" => not found
"C:\Windows\system32\DRIVERS\EsgScanner.sys" => not found

========= dir C:\myfolder =========

 Svazek v jednotce C nem  § dnou jmenovku.
 S‚riov‚ źˇslo svazku je 748C-1E04.

 Věpis adres ýe C:\myfolder

16.01.2018  16:08    <DIR>          .
16.01.2018  16:08    <DIR>          ..
           Soubor…:      0,   Bajt…:                      0
           Adres ý…:     2,   Volněch bajt…: 28˙569˙788˙416

========= End of CMD: =========

C:\ProgramData\RevengeRAT => moved successfully

========================= File: C:\Windows\System32\CbFsMntNtf3.dll ========================

C:\Windows\System32\CbFsMntNtf3.dll
File is digitally signed
MD5: D6417C90885BC6589974F60C0DF4BFA5
Creation and modification date: 2014-06-26 13:35 - 2012-04-09 15:27
Size: 000190480
Attributes: ----A
Company Name: EldoS Corporation
Internal Name: VSMntNtf
Original Name: CbFsMntNtf3.dll
Product: Callback File System
Description: CbFs Mount Notifier
File Version: 3, 2, 107, 97
Product Version: 3, 2, 107, 1
Copyright: Copyright (C) EldoS Corp. 2006-2012
VirusTotal: https://www.virustotal.com/file/0db07d028e64e8ef22f6c42a804dd2ee2eee9cc674cb1d8ed9d65019becc2de4/analysis/1510033772/

====== End of File: ======

HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{002C1025-DB8F-46DC-9876-F31EBEB83C81} => could not remove key. ErrorCode1: 0x00000002
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{002C1025-DB8F-46DC-9876-F31EBEB83C81}" => removed successfully
C:\Windows\System32\Tasks\{FAD4463A-DB6E-4833-9A8D-D1AFA6F69C3A} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{FAD4463A-DB6E-4833-9A8D-D1AFA6F69C3A}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3EBC8A82-951A-44CB-AD2B-0B7469BCBE68}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3EBC8A82-951A-44CB-AD2B-0B7469BCBE68}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5A104451-480F-4099-9761-3FBB565A6A8B}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5A104451-480F-4099-9761-3FBB565A6A8B}" => removed successfully
C:\Windows\System32\Tasks\{AEE03E61-D515-45A3-9299-A3B2E418886C} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{AEE03E61-D515-45A3-9299-A3B2E418886C}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5D98875C-6F70-4B4E-A8EA-FCA6A63C4D83}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5D98875C-6F70-4B4E-A8EA-FCA6A63C4D83}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore1d0e7ec9bdd7d39" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5DFC2750-6D31-46FC-BC42-E1251950EC13}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5DFC2750-6D31-46FC-BC42-E1251950EC13}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA1d12ccb2f179f70" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{778E1751-B0E6-45FC-A571-AC1FC5FEC28F}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{778E1751-B0E6-45FC-A571-AC1FC5FEC28F}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA1d090046e178291" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A9442941-78F2-4AED-BEBF-7A84832D9014}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A9442941-78F2-4AED-BEBF-7A84832D9014}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore1d12ccb2ee0dfca" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C27ABF5B-D6C0-416E-8E3E-FFC5BD515624}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C27ABF5B-D6C0-416E-8E3E-FFC5BD515624}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EF437E5C-3EA0-41F4-A4CB-EF63B1B195B8}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EF437E5C-3EA0-41F4-A4CB-EF63B1B195B8}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA1cfff555ca2dfbd" => removed successfully

========================= File: C:\users\scorpion\appdata\roaming\wuala\wuala.exe ========================

C:\users\scorpion\appdata\roaming\wuala\wuala.exe
File is digitally signed
MD5: 01EFDC052B85ADBDD91173535AF1E67B
Creation and modification date: 2013-07-30 08:22 - 2014-06-26 13:40
Size: 000453552
Attributes: ----A
Company Name: LaCie
Internal Name: 
Original Name: 
Product: Wuala
Description: 
File Version: 
Product Version: 
Copyright: 2012 LaCie
VirusTotal: https://www.virustotal.com/file/cfa90c5f2c33ec08003dc57157c928b07ab03006a5b9fd79d4a94ec8398f702c/analysis/1463888413/

====== End of File: ======


========= dir "C:\Windows\Inf" /AD =========

 Svazek v jednotce C nem  § dnou jmenovku.
 S‚riov‚ źˇslo svazku je 748C-1E04.

 Věpis adres ýe C:\Windows\Inf

30.01.2018  12:12    <DIR>          .
30.01.2018  12:12    <DIR>          ..
12.04.2011  09:34    <DIR>          .NET CLR Data
12.04.2011  09:34    <DIR>          .NET CLR Networking
28.02.2014  12:21    <DIR>          .NET CLR Networking 4.0.0.0
12.04.2011  09:34    <DIR>          .NET Data Provider for Oracle
12.04.2011  09:34    <DIR>          .NET Data Provider for SqlServer
28.02.2014  12:20    <DIR>          .NET Memory Cache 4.0
12.04.2011  09:34    <DIR>          .NETFramework
13.11.2015  11:36    <DIR>          ASP.NET
28.02.2014  12:20    <DIR>          ASP.NET_4.0.30319
13.11.2015  11:36    <DIR>          aspnet_state
12.04.2011  09:34    <DIR>          BITS
12.04.2011  09:34    <DIR>          cs-CZ
12.04.2011  09:31    <DIR>          en-US
12.04.2011  09:34    <DIR>          ESENT
12.04.2011  09:34    <DIR>          MSDTC
12.04.2011  09:34    <DIR>          MSDTC Bridge 3.0.0.0
28.02.2014  12:20    <DIR>          MSDTC Bridge 4.0.0.0
12.04.2011  09:34    <DIR>          PERFLIB
27.02.2014  22:44    <DIR>          Perf_iCrcPerfMonMgr
12.04.2011  09:34    <DIR>          PNRPSvc
12.04.2011  09:34    <DIR>          rdyboost
12.04.2011  09:34    <DIR>          RemoteAccess
12.04.2011  09:34    <DIR>          ServiceModelEndpoint 3.0.0.0
12.04.2011  09:34    <DIR>          ServiceModelOperation 3.0.0.0
12.04.2011  09:34    <DIR>          ServiceModelService 3.0.0.0
12.04.2011  09:34    <DIR>          SMSvcHost 3.0.0.0
28.02.2014  12:20    <DIR>          SMSvcHost 4.0.0.0
12.04.2011  09:34    <DIR>          TAPISRV
12.04.2011  09:34    <DIR>          TermService
12.04.2011  09:34    <DIR>          UGatherer
12.04.2011  09:34    <DIR>          UGTHRSVC
12.04.2011  09:34    <DIR>          usbhub
12.04.2011  09:34    <DIR>          Windows Workflow Foundation 3.0.0.0
28.02.2014  12:20    <DIR>          Windows Workflow Foundation 4.0.0.0
29.01.2018  21:28    <DIR>          WmiApRpl
12.04.2011  09:34    <DIR>          wsearchidxpi
           Soubor…:      0,   Bajt…:                      0
           Adres ý…:    38,   Volněch bajt…: 28˙560˙744˙448

========= End of CMD: =========


========= dir "C:\PROGRA~1" =========

 Svazek v jednotce C nem  § dnou jmenovku.
 S‚riov‚ źˇslo svazku je 748C-1E04.

 Věpis adres ýe C:\PROGRA~1

30.01.2018  12:12    <DIR>          .
30.01.2018  12:12    <DIR>          ..
08.01.2018  12:35    <DIR>          Adobe
27.02.2014  22:26    <DIR>          ASUS
10.04.2014  18:36    <DIR>          CCleaner
07.12.2017  20:27    <DIR>          Common Files
29.08.2016  22:15    <DIR>          Corel
27.02.2014  22:12    <DIR>          DIFX
12.04.2011  09:45    <DIR>          DVD Maker
27.02.2014  22:11    <DIR>          Elantech
30.01.2018  12:12    <DIR>          ESET
27.02.2014  22:09    <DIR>          Fresco Logic Inc
29.08.2017  18:49    <DIR>          HP
15.01.2018  18:03    <DIR>          Intel
12.02.2016  08:29    <DIR>          Internet Explorer
15.01.2018  19:06    <DIR>          Malwarebytes
19.04.2014  09:24    <DIR>          Microsoft Games
28.02.2014  21:48    <DIR>          Microsoft Office
14.01.2016  11:06    <DIR>          Microsoft Silverlight
14.07.2009  06:32    <DIR>          MSBuild
21.07.2014  17:15    <DIR>          NVIDIA Corporation
27.02.2014  22:17    <DIR>          P4G
27.02.2014  22:07    <DIR>          Realtek
14.07.2009  06:32    <DIR>          Reference Assemblies
09.02.2016  11:41    <DIR>          Sony
16.10.2015  00:08    <DIR>          Sweet Home 3D
19.01.2018  21:39    <DIR>          Trend Micro
27.02.2014  22:12    <DIR>          WIDCOMM
28.02.2014  12:35    <DIR>          Windows Defender
12.02.2016  08:29    <DIR>          Windows Journal
12.04.2011  09:34    <DIR>          Windows Mail
10.06.2015  21:27    <DIR>          Windows Media Player
27.02.2014  21:47    <DIR>          Windows NT
12.04.2011  09:34    <DIR>          Windows Photo Viewer
21.11.2010  04:31    <DIR>          Windows Portable Devices
12.04.2011  09:34    <DIR>          Windows Sidebar
28.02.2014  12:45    <DIR>          WinRAR
           Soubor…:      0,   Bajt…:                      0
           Adres ý…:    37,   Volněch bajt…: 28˙560˙744˙448

========= End of CMD: =========


========= dir "C:\PROGRA~2" =========

 Svazek v jednotce C nem  § dnou jmenovku.
 S‚riov‚ źˇslo svazku je 748C-1E04.

 Věpis adres ýe C:\PROGRA~2

30.01.2018  11:59    <DIR>          .
30.01.2018  11:59    <DIR>          ..
08.01.2018  12:33    <DIR>          Adobe
28.02.2014  16:38    <DIR>          Adobe Media Player
27.02.2014  22:09    <DIR>          AmIcoSingLun
16.01.2018  18:28    <DIR>          ASUS
27.01.2015  22:32    <DIR>          Atari
24.04.2016  20:13    <DIR>          AVS4YOU
28.10.2015  20:03    <DIR>          Canon
15.01.2018  18:03    <DIR>          Cisco
28.08.2014  11:47    <DIR>          Cobian Backup 11
22.01.2018  17:47    <DIR>          Common Files
28.02.2014  12:58    <DIR>          Corel
27.02.2014  22:36    <DIR>          CyberLink
28.02.2014  17:59    <DIR>          DAEMON Tools Lite
27.02.2014  23:00    <DIR>          EaseUS
25.11.2014  10:26    <DIR>          FMS
09.02.2016  11:08    <DIR>          FormatFactory
20.01.2018  14:55    <DIR>          Google
29.08.2017  18:50    <DIR>          HP
21.07.2014  17:13    <DIR>          Intel
27.02.2014  22:27    <DIR>          Intel Corporation
12.02.2016  08:29    <DIR>          Internet Explorer
16.01.2018  16:57    <DIR>          IObit
15.01.2018  17:58    <DIR>          IrfanView
22.01.2018  17:46    <DIR>          Java
10.06.2015  18:07    <DIR>          Lenovo Smart Assistant
12.10.2016  22:30    <DIR>          LG Electronics
15.01.2018  19:06    <DIR>          Malwarebytes Anti-Malware
10.05.2015  10:00    <DIR>          MarkAny
01.06.2017  18:54    <DIR>          MFCUControl
04.11.2014  12:11    <DIR>          Microsoft Office
28.02.2014  13:00    <DIR>          Microsoft SDKs
14.01.2016  11:06    <DIR>          Microsoft Silverlight
28.02.2014  21:50    <DIR>          Microsoft Visual Studio
28.02.2014  21:48    <DIR>          Microsoft Visual Studio 8
28.02.2014  13:00    <DIR>          Microsoft Visual Studio 9.0
22.05.2014  14:51    <DIR>          Microsoft Works
28.02.2014  13:00    <DIR>          Microsoft.NET
09.02.2016  10:57    <DIR>          Movie Maker 2.6
16.01.2018  16:26    <DIR>          Mozilla Firefox
02.08.2017  21:58    <DIR>          Mozilla Maintenance Service
28.02.2014  21:50    <DIR>          MSBuild
06.03.2014  00:43    <DIR>          MSECache
15.01.2018  21:55    <DIR>          MSSOAP
10.06.2015  20:14    <DIR>          NAVIGON
30.10.2017  15:09    <DIR>          Nero
21.07.2014  17:15    <DIR>          NVIDIA Corporation
22.05.2017  00:44    <DIR>          ObviousIdea
29.01.2018  23:13    <DIR>          Opera
06.01.2016  17:41    <DIR>          PSPad editor
28.07.2014  18:44    <DIR>          R.G. Mechanics
27.02.2014  22:07    <DIR>          Realtek
14.07.2009  06:32    <DIR>          Reference Assemblies
28.02.2014  18:18    <DIR>          Samsung
22.05.2017  00:45    <DIR>          Seznam.cz
09.02.2016  11:41    <DIR>          Sony
29.01.2018  12:13    <DIR>          UsbFix
15.01.2018  21:55    <DIR>          Webroot
28.02.2014  12:35    <DIR>          Windows Defender
12.04.2011  09:34    <DIR>          Windows Mail
10.06.2015  21:27    <DIR>          Windows Media Player
14.07.2009  06:32    <DIR>          Windows NT
12.04.2011  09:34    <DIR>          Windows Photo Viewer
21.11.2010  04:31    <DIR>          Windows Portable Devices
12.04.2011  09:34    <DIR>          Windows Sidebar
17.10.2017  13:32    <DIR>          WinSCP
26.06.2014  13:35    <DIR>          Wuala CBFS
26.06.2014  13:35    <DIR>          Wuala OverlayIcons
           Soubor…:      0,   Bajt…:                      0
           Adres ý…:    69,   Volněch bajt…: 28˙560˙740˙352

========= End of CMD: =========


========= dir "C:\PROGRA~3" =========

 Svazek v jednotce C nem  § dnou jmenovku.
 S‚riov‚ źˇslo svazku je 748C-1E04.

 Věpis adres ýe C:\PROGRA~3

30.01.2018  17:39    <DIR>          .
30.01.2018  17:39    <DIR>          ..
09.11.2017  16:57    <DIR>          Adobe
29.08.2017  18:49                57 Ament.ini
27.02.2014  22:09    <DIR>          AmUStor
13.05.2014  16:53    <DIR>          ASUS
30.01.2018  12:07    <DIR>          AVAST Software
12.02.2016  12:45    <DIR>          AVS4YOU
06.02.2017  19:19    <DIR>          boost_interprocess
17.10.2015  13:01    <DIR>          Canon_Inc_IC
29.08.2016  22:32    <DIR>          Corel
29.08.2016  22:25    <DIR>          CorelDRAW Graphics Suite X7 x64
12.07.2014  17:32    <DIR>          CyberLink
18.04.2014  21:23    <DIR>          DAEMON Tools Lite
30.01.2018  12:12    <DIR>          ESET
29.08.2017  18:49    <DIR>          HP
11.02.2015  23:15    <DIR>          IDM
15.01.2018  18:03    <DIR>          Intel
16.01.2018  16:57    <DIR>          IObit
20.01.2018  20:57    <DIR>          Malwarebytes
11.04.2014  20:43    <DIR>          McAfee
12.02.2016  08:00    <DIR>          Microsoft Help
27.02.2014  23:25    <DIR>          Mozilla
30.10.2017  15:09    <DIR>          Nero
21.07.2014  17:26    <DIR>          NVIDIA
27.02.2014  22:01    <DIR>          NVIDIA Corporation
16.03.2015  17:32    <DIR>          Oracle
27.02.2014  22:15    <DIR>          P4G
16.01.2018  18:24    <DIR>          Package Cache
29.01.2018  20:48    <DIR>          ProductData
28.02.2014  13:33    <DIR>          Protexis
29.08.2016  22:32    <DIR>          Protexis64
27.12.2017  21:02    <DIR>          regid.1986-12.com.adobe
28.02.2014  18:18    <DIR>          Samsung
06.10.2017  17:15    <DIR>          Skype
27.02.2014  22:07    <DIR>          SonicFocus
09.02.2016  11:41    <DIR>          Sony
26.06.2014  13:35    <DIR>          Sun
27.02.2014  22:36    <DIR>          Temp
27.02.2014  22:48    <DIR>          Trend Micro
27.02.2014  22:36               109 {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}.log
27.02.2014  22:34               110 {CB099890-1D5F-11D5-9EA9-0050BAE317E1}.log
07.02.2016  13:07    <DIR>          {CED89F1A-945F-46EC-B23C-5EAF6D2DB12A}
27.02.2014  22:35               108 {DEC235ED-58A4-4517-A278-C41E8DAEAB3B}.log
27.02.2014  22:31               110 {E3739848-5329-48E3-8D28-5BBD6E8BE384}.log
06.07.2016  08:39    <DIR>          {FD6F83C0-EC70-4581-8361-C70CD1AA4B98}
           Soubor…:      5,   Bajt…:                    494
           Adres ý…:    41,   Volněch bajt…: 28˙560˙736˙256

========= End of CMD: =========


========= dir "%localappdata%" =========

 Svazek v jednotce C nem  § dnou jmenovku.
 S‚riov‚ źˇslo svazku je 748C-1E04.

 Věpis adres ýe C:\Users\Scorpion\AppData\Local

29.01.2018  20:48    <DIR>          .
29.01.2018  20:48    <DIR>          ..
15.01.2018  21:19    <DIR>          41
30.01.2018  02:01    <DIR>          Adobe
06.02.2016  17:19    <DIR>          Apowersoft
08.01.2018  11:58    <DIR>          Apps
13.05.2014  16:53    <DIR>          ASUS
17.01.2015  03:02    <DIR>          Axialis
27.02.2014  22:13    <DIR>          Broadcom
17.10.2015  13:12    <DIR>          CANON_INC
19.03.2016  15:22    <DIR>          CEF
22.04.2014  21:32    <DIR>          Comodo
28.01.2015  10:26    <DIR>          CrashRpt
12.07.2014  17:32    <DIR>          Cyberlink
02.01.2018  13:58    <DIR>          Diagnostics
28.02.2014  18:14    <DIR>          Downloaded Installations
29.01.2018  22:43    <DIR>          ElevatedDiagnostics
28.02.2014  17:49    <DIR>          ESET
09.11.2017  17:07           162˙328 GDIPFONTCACHEV1.DAT
26.05.2016  20:35    <DIR>          GHISLER
20.01.2018  14:56    <DIR>          Google
07.06.2015  12:36    <DIR>          GWX
29.08.2017  18:50    <DIR>          HP
06.02.2015  15:25    <DIR>          LG Electronics
27.02.2014  23:53    <DIR>          Macromedia
21.07.2016  15:14    <DIR>          Microsoft
06.03.2014  00:42    <DIR>          Microsoft Help
27.02.2014  23:26    <DIR>          Mozilla
27.02.2014  23:54    <DIR>          Opera Software
27.02.2014  22:27             1˙263 PDLSetup.20140227.222744.txt
27.02.2014  23:02    <DIR>          Programs
28.02.2014  18:19    <DIR>          Samsung
28.02.2014  20:39    <DIR>          Skype
09.02.2016  11:44    <DIR>          Sony
29.01.2018  19:30    <DIR>          Spotify
30.01.2018  17:38    <DIR>          Temp
18.04.2014  22:56    <DIR>          VirtualStore
29.02.2016  17:34    <DIR>          WMTools Downloaded Files
26.06.2014  13:36    <DIR>          Wuala
           Soubor…:      2,   Bajt…:                163˙591
           Adres ý…:    37,   Volněch bajt…: 28˙560˙736˙256

========= End of CMD: =========


========= dir "%appdata%" =========

 Svazek v jednotce C nem  § dnou jmenovku.
 S‚riov‚ źˇslo svazku je 748C-1E04.

 Věpis adres ýe C:\Users\Scorpion\AppData\Roaming

30.01.2018  12:14    <DIR>          .
30.01.2018  12:14    <DIR>          ..
15.01.2018  18:22    <DIR>          69093C9A-8080-481B-AF88-FEA00BC7E9E2
29.12.2017  00:31    <DIR>          Adobe
30.11.2017  15:53               132 Adobe Form t PNG CS5 - pýedvolby
03.01.2018  14:55               132 Adobe Form t PNG CS6 - pýedvolby
28.04.2014  15:24    <DIR>          Adobe Mini Bridge CS5
06.02.2016  17:19    <DIR>          Apowersoft
06.07.2016  08:38    <DIR>          Apple Computer
18.02.2016  12:26    <DIR>          AVS4YOU
17.10.2015  13:04    <DIR>          Canon
26.03.2014  00:38    <DIR>          chc
20.03.2014  23:41    <DIR>          chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
29.08.2016  22:27    <DIR>          Corel
12.07.2014  17:32    <DIR>          CyberLink
26.01.2015  11:06    <DIR>          DAEMON Tools Lite
30.01.2018  12:14    <DIR>          ESET
12.02.2016  14:26    <DIR>          GHISLER
05.09.2017  18:56    <DIR>          HpUpdate
27.02.2014  21:47    <DIR>          Identities
11.02.2015  23:15    <DIR>          IDM
27.02.2014  22:15    <DIR>          InstallShield
15.01.2018  18:04    <DIR>          Intel
16.01.2018  16:57    <DIR>          IObit
22.05.2017  00:41    <DIR>          IrfanView
10.06.2015  18:07    <DIR>          Lenovo
13.10.2016  00:21    <DIR>          LG Electronics
27.02.2014  23:53    <DIR>          Macromedia
12.04.2011  09:45    <DIR>          Media Center Programs
05.03.2014  12:14    <DIR>          Microsoft Web Folders
16.01.2018  17:22    <DIR>          Mozilla
30.10.2017  15:11    <DIR>          Nero
19.01.2017  00:51    <DIR>          NVIDIA
05.09.2017  22:20    <DIR>          ObviousIdea
27.02.2014  23:54    <DIR>          Opera Software
06.07.2016  08:40    <DIR>          ProductData
06.01.2016  17:42    <DIR>          PSpad
10.05.2015  09:58    <DIR>          Samsung
30.01.2018  17:38    <DIR>          Seznam.cz
06.10.2017  17:14    <DIR>          Skype
09.02.2016  11:44    <DIR>          Sony
05.01.2017  00:29    <DIR>          Spintires
29.01.2018  16:57    <DIR>          Spotify
28.04.2014  15:24    <DIR>          StageManager.BD092818F67280F4B42B04877600987F0111B594.1
15.01.2018  18:00    <DIR>          Sun
28.02.2014  21:49    <DIR>          Wargaming.net
28.02.2014  12:48    <DIR>          WinRAR
10.11.2017  02:53               600 winscp.rnd
26.06.2014  13:40    <DIR>          Wuala
           Soubor…:      3,   Bajt…:                    864
           Adres ý…:    46,   Volněch bajt…: 28˙560˙732˙160

========= End of CMD: =========

C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 8388608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 11589500 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 401071024 B
Edge => 0 B
Chrome => 5105713 B
Firefox => 1192411 B
Opera => 349748483 B

Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 0 B
Public => 0 B
ProgramData => 0 B
systemprofile => 128 B
systemprofile32 => 128 B
LocalService => 0 B
NetworkService => 2526 B
Scorpion => 64018002 B
UpdatusUser => 0 B

RecycleBin => 201908 B
EmptyTemp: => 802.3 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 17:41:06 ====