Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Ztrácí se mi místo na disku.

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Momos
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 08 dub 2015 17:35

Ztrácí se mi místo na disku.

#1 Příspěvek od Momos »

Dobrý den,

jsem na Vašich stránkách poprvé(na doporučení). Ztratilo se mi během měsíce 500gb. Prosím poradíte co s tím?
Děkuji

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Ztrácí se mi místo na disku.

#2 Příspěvek od Rudy »

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Momos
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 08 dub 2015 17:35

Re: Ztrácí se mi místo na disku.

#3 Příspěvek od Momos »

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Robocop (administrator) on ROBOCOP-PC on 08-04-2015 18:51:45
Running from C:\Users\Robocop\Desktop
Loaded Profiles: Robocop & UpdatusUser (Available profiles: Robocop & UpdatusUser)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Akamai Technologies, Inc.) C:\Users\Robocop\AppData\Local\Akamai\netsession_win.exe
(Akamai Technologies, Inc.) C:\Users\Robocop\AppData\Local\Akamai\netsession_win.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(ZONER software) C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDGesture.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\btplayerctrl.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
() C:\ProgramData\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602\plugincontainer.exe
() C:\Program Files (x86)\Common Files\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602\updater.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
() C:\ProgramData\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602\plugins\5\Plugin.exe
() C:\ProgramData\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602\plugins\8\Plugin.exe
() C:\ProgramData\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602\plugins\3\Plugin.exe
() C:\ProgramData\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602\plugins\3\Plugin.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Robocop\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1332296 2015-01-30] (Microsoft Corporation)
HKLM\...\Run: [ASUSQuickGesture(x86)] => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe [20352 2012-09-11] (ASUSTeK Computer Inc.)
HKLM\...\Run: [ASUSTPLoader(x64)] => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe [169856 2012-09-11] (AsusTek)
HKLM\...\Run: [ASUSQuickGesture(x64)] => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe [22400 2012-09-11] (ASUSTeK Computer Inc.)
HKLM\...\Run: [BLEServicesCtrl] => C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe [178960 2012-03-15] (Intel Corporation)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2661672 2012-02-20] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12936848 2012-07-13] (Realtek Semiconductor)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-02-07] (Intel Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227648 2015-03-30] (AVAST Software)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [335232 2015-03-07] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2971226956-2283341039-1508386245-1000\...\Run: [Akamai NetSession Interface] => C:\Users\Robocop\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.)
HKU\S-1-5-21-2971226956-2283341039-1508386245-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-2971226956-2283341039-1508386245-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-2971226956-2283341039-1508386245-1000\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\Overwolf.exe [40688 2015-03-25] (Overwolf LTD)
HKU\S-1-5-21-2971226956-2283341039-1508386245-1000\...\Run: [Zoner Photo Studio Autoupdate] => C:\PROGRAM FILES\ZONER\PHOTO STUDIO 15\Program32\ZPSTRAY.EXE [752736 2012-10-08] (ZONER software)
HKU\S-1-5-21-2971226956-2283341039-1508386245-1003\...\Run: [Akamai NetSession Interface] => C:\Users\Robocop\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [168616 2013-12-10] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [141336 2013-12-10] (NVIDIA Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type= ... earchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type= ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?type= ... earchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?type= ... earchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?type= ... earchTerms}
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?type= ... earchTerms}
BHO-x32: Positive Finds -> {30c85a3d-1d96-4589-b63f-91fb7ef45a41} -> C:\Program Files (x86)\Positive Finds\Extensions\30c85a3d-1d96-4589-b63f-91fb7ef45a41.dll [2015-01-31] ()
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-22] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-22] (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 194.228.41.65 194.228.41.113
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&t ... J9CD401401

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll [2015-03-11] ()
FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-14] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-03-11] ()
FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-22] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-22] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-14] ( Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll [2015-01-29] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll [2015-01-29] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-01-30]

Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\Robocop\AppData\Local\Google\Chrome\User Data\Profile 1
CHR Extension: (Avast SafePrice) - C:\Users\Robocop\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2015-02-04]
CHR Extension: (AdBlock) - C:\Users\Robocop\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-02-24]
CHR Extension: (Avast Online Security) - C:\Users\Robocop\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-01-30]
CHR Extension: (Google Wallet) - C:\Users\Robocop\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-30]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-01-30]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-01-30]
StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&t ... J9CD401401

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2015-01-30] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2015-01-30] (Avast Software)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23784 2015-01-30] (Microsoft Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2011-12-08] ()
S3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [366512 2015-01-30] (Microsoft Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1910640 2015-02-27] (Electronic Arts)
S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [998640 2015-03-25] (Overwolf LTD)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2015-02-25] ()
R2 Service Mgr PositiveFinds; C:\ProgramData\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602\plugincontainer.exe [639224 2015-04-08] ()
R2 Update Mgr PositiveFinds; C:\Program Files (x86)\Common Files\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602\updater.exe [559864 2015-04-08] ()
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2014-06-08] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [594704 2011-12-08] (Intel® Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2015-01-30] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [87912 2015-01-30] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2015-01-30] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2015-01-30] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2015-01-30] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2015-01-30] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2015-01-30] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2015-01-30] ()
S3 ATP; C:\Windows\System32\DRIVERS\AsusTP.sys [56704 2012-09-11] (ASUS Corporation)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2015-02-01] (Disc Soft Ltd)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [274696 2014-11-15] (Microsoft Corporation)
S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124560 2014-11-15] (Microsoft Corporation)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [271752 2015-01-30] (Avast Software)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-08 18:51 - 2015-04-08 18:52 - 00017998 _____ () C:\Users\Robocop\Desktop\FRST.txt
2015-04-08 18:50 - 2015-04-08 18:50 - 00015327 _____ () C:\Users\Robocop\Desktop\LM.bat
2015-04-08 18:49 - 2015-04-08 18:50 - 00029696 _____ () C:\Users\Robocop\AppData\Local\MSGBOX.EXE
2015-04-08 18:49 - 2015-04-08 18:49 - 00112640 _____ (forum.viry.cz) C:\Users\Robocop\Desktop\FRSTLauncher.exe
2015-04-08 18:45 - 2015-04-08 18:51 - 00000000 ____D () C:\FRST
2015-04-08 18:45 - 2015-04-08 18:45 - 02095616 _____ (Farbar) C:\Users\Robocop\Desktop\FRST64.exe
2015-04-08 16:20 - 2015-04-08 16:20 - 00000056 _____ () C:\Windows\setupact.log
2015-04-08 16:20 - 2015-04-08 16:20 - 00000000 _____ () C:\Windows\setuperr.log
2015-04-08 16:15 - 2015-04-08 16:15 - 00000197 _____ () C:\Windows\system32\2015-04-08-14-15-17.011-AvastVBoxSVC.exe-4988.log
2015-04-07 21:23 - 2015-04-07 21:23 - 00164437 _____ () C:\Users\Robocop\Downloads\GearScore+BonusScanner-3.3.5.rar
2015-04-07 21:21 - 2015-04-07 21:21 - 00097865 _____ () C:\Users\Robocop\Downloads\Gear-Score-(3.3.5).rar
2015-04-07 18:30 - 2015-04-07 18:31 - 00000000 ____D () C:\Users\Robocop\MINECRAFT
2015-04-07 17:52 - 2015-04-07 17:53 - 00000197 _____ () C:\Windows\system32\2015-04-07-15-52-49.087-AvastVBoxSVC.exe-264.log
2015-04-06 19:54 - 2015-04-06 19:54 - 00024357 _____ () C:\Users\Robocop\Downloads\[kickass.to]game.of.thrones.season.3.720p.bluray.x264.shaanig.torrent
2015-04-06 18:40 - 2015-04-06 18:40 - 00024351 _____ () C:\Users\Robocop\Downloads\[kickass.to]game.of.thrones.season.2.720p.bluray.x264.shaanig.torrent
2015-04-06 17:04 - 2015-04-06 17:05 - 00000000 ____D () C:\totalcmd
2015-04-06 17:04 - 2015-04-06 17:04 - 03722264 _____ (Ghisler Software GmbH) C:\Users\Robocop\Downloads\tcm851x32.exe
2015-04-06 17:04 - 2015-04-06 17:04 - 00000632 _____ () C:\Users\Robocop\Desktop\Total Commander.lnk
2015-04-06 17:04 - 2015-04-06 17:04 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2015-04-06 17:04 - 2015-04-06 17:04 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\GHISLER
2015-04-06 17:04 - 2014-04-23 08:51 - 00000545 _____ () C:\Windows\UC.PIF
2015-04-06 17:04 - 2014-04-23 08:51 - 00000545 _____ () C:\Windows\RAR.PIF
2015-04-06 17:04 - 2014-04-23 08:51 - 00000545 _____ () C:\Windows\PKZIP.PIF
2015-04-06 17:04 - 2014-04-23 08:51 - 00000545 _____ () C:\Windows\PKUNZIP.PIF
2015-04-06 17:04 - 2014-04-23 08:51 - 00000545 _____ () C:\Windows\LHA.PIF
2015-04-06 17:04 - 2014-04-23 08:51 - 00000545 _____ () C:\Windows\ARJ.PIF
2015-04-06 12:24 - 2015-04-06 12:25 - 00000197 _____ () C:\Windows\system32\2015-04-06-10-24-49.077-AvastVBoxSVC.exe-4856.log
2015-04-06 12:15 - 2015-04-06 12:15 - 00000000 ____D () C:\Users\Robocop\Downloads\Pointstone System Cleaner v7.3.6.329 Incl Crack [TorDigger]
2015-04-06 11:46 - 2015-04-07 17:45 - 00000000 ____D () C:\Program Files (x86)\Pointstone
2015-04-06 11:46 - 2015-04-06 17:02 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\Pointstone
2015-04-06 11:46 - 2015-04-06 11:46 - 00000000 ____D () C:\Windows\System32\Tasks\Pointstone
2015-04-06 11:45 - 2015-04-06 11:46 - 11616184 _____ (Pointstone Software, LLC) C:\Users\Robocop\Downloads\SystemCleanerSetup.exe
2015-04-05 16:33 - 2015-04-05 16:33 - 00000197 _____ () C:\Windows\system32\2015-04-05-14-33-30.089-AvastVBoxSVC.exe-2680.log
2015-04-05 12:57 - 2015-04-05 12:58 - 00000197 _____ () C:\Windows\system32\2015-04-05-10-57-51.083-AvastVBoxSVC.exe-4964.log
2015-04-04 15:53 - 2015-04-04 15:53 - 00000197 _____ () C:\Windows\system32\2015-04-04-13-53-05.015-AvastVBoxSVC.exe-4892.log
2015-04-04 11:07 - 2015-04-04 11:07 - 00000197 _____ () C:\Windows\system32\2015-04-04-09-07-35.061-AvastVBoxSVC.exe-2912.log
2015-04-03 19:53 - 2015-04-03 20:09 - 1093287430 _____ () C:\Users\Robocop\Downloads\Purpurové řeky 2 =2006-J.Reno-DVD-CZ.avi
2015-04-03 19:39 - 2015-04-03 19:39 - 00000197 _____ () C:\Windows\system32\2015-04-03-17-39-16.015-AvastVBoxSVC.exe-5524.log
2015-04-03 16:40 - 2015-04-03 16:40 - 00000197 _____ () C:\Windows\system32\2015-04-03-14-40-39.014-AvastVBoxSVC.exe-5144.log
2015-04-03 09:06 - 2015-04-03 09:06 - 00000197 _____ () C:\Windows\system32\2015-04-03-07-06-58.037-AvastVBoxSVC.exe-4384.log
2015-04-02 23:29 - 2015-04-02 23:29 - 00000197 _____ () C:\Windows\system32\2015-04-02-21-29-24.005-AvastVBoxSVC.exe-3308.log
2015-04-02 13:47 - 2015-04-02 13:47 - 00000794 _____ () C:\Users\Robocop\Downloads\p07.mid
2015-04-02 13:39 - 2015-04-02 13:39 - 00000431 _____ () C:\Users\Robocop\Downloads\p06.mid
2015-04-02 13:34 - 2015-04-02 13:34 - 00000419 _____ () C:\Users\Robocop\Downloads\p05.mid
2015-04-02 13:07 - 2015-04-02 13:07 - 00001003 _____ () C:\Users\Robocop\Downloads\p04 (1).mid
2015-04-02 12:57 - 2015-04-02 12:57 - 00000555 _____ () C:\Users\Robocop\Downloads\p03.mid
2015-04-02 10:26 - 2015-04-02 10:26 - 00000197 _____ () C:\Windows\system32\2015-04-02-08-26-15.080-AvastVBoxSVC.exe-4720.log
2015-04-01 20:55 - 2015-04-01 20:55 - 00002932 _____ () C:\Windows\System32\Tasks\{63074DDE-5866-42B2-963A-6D70DD71A370}
2015-04-01 20:51 - 2015-04-01 20:51 - 00002934 _____ () C:\Windows\System32\Tasks\{95181443-AA00-4E6E-A3AF-2C6162ABD2B9}
2015-04-01 20:46 - 2015-04-06 17:01 - 00000000 ____D () C:\Users\Robocop\AppData\Local\CrashDumps
2015-04-01 14:58 - 2015-04-01 14:58 - 00000197 _____ () C:\Windows\system32\2015-04-01-12-58-41.025-AvastVBoxSVC.exe-5140.log
2015-03-31 23:11 - 2015-04-01 20:40 - 00000000 ____D () C:\Users\Robocop\Downloads\Dr.-House-01x21-Tri-Pribehy-UP-FRD
2015-03-31 21:04 - 2015-03-31 21:04 - 00000000 ____D () C:\Users\Robocop\Documents\ZPS15
2015-03-31 21:04 - 2015-03-31 21:04 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\Zoner
2015-03-31 21:04 - 2015-03-31 21:04 - 00000000 ____D () C:\Users\Robocop\AppData\Local\Zoner
2015-03-31 21:04 - 2015-03-31 21:04 - 00000000 ____D () C:\ProgramData\Zoner
2015-03-31 21:03 - 2015-03-31 21:03 - 00001878 _____ () C:\Users\Public\Desktop\Zoner Photo Studio 15.lnk
2015-03-31 21:03 - 2015-03-31 21:03 - 00001878 _____ () C:\Users\Public\Desktop\Zoner Photo Studio 15 x64.lnk
2015-03-31 21:03 - 2015-03-31 21:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zoner Photo Studio 15
2015-03-31 21:01 - 2015-03-31 21:01 - 00000000 ____D () C:\Program Files\Zoner
2015-03-31 16:47 - 2015-03-31 16:47 - 00000197 _____ () C:\Windows\system32\2015-03-31-14-47-05.004-AvastVBoxSVC.exe-3752.log
2015-03-30 21:15 - 2015-04-02 15:02 - 00000000 ____D () C:\Users\Robocop\Downloads\Dr.-House-01x18-Nova-Generace-UP-FRD
2015-03-30 16:47 - 2015-04-04 19:50 - 00000000 ____D () C:\Program Files (x86)\Movies
2015-03-30 14:53 - 2015-03-30 14:53 - 00000197 _____ () C:\Windows\system32\2015-03-30-12-53-41.023-AvastVBoxSVC.exe-692.log
2015-03-29 12:13 - 2015-03-29 12:13 - 00000247 _____ () C:\Windows\system32\2015-03-29-10-13-37.087-aswFe.exe-2032.log
2015-03-29 11:58 - 2015-03-29 12:13 - 00000247 _____ () C:\Windows\system32\2015-03-29-09-58-37.016-aswFe.exe-748.log
2015-03-29 11:58 - 2015-03-29 11:58 - 00000197 _____ () C:\Windows\system32\2015-03-29-09-58-16.024-AvastVBoxSVC.exe-6272.log
2015-03-29 10:59 - 2015-03-29 10:59 - 00000000 ____D () C:\Users\Robocop\Downloads\KeiNett-Launcher-for-Minecraft-1.7.9
2015-03-29 10:58 - 2015-03-29 10:58 - 00000197 _____ () C:\Windows\system32\2015-03-29-08-58-24.065-AvastVBoxSVC.exe-6404.log
2015-03-28 10:38 - 2015-04-01 17:29 - 00000000 ____D () C:\Users\Robocop\Downloads\WoWCircle 5.4.8
2015-03-28 10:24 - 2015-03-28 10:24 - 00000197 _____ () C:\Windows\system32\2015-03-28-08-24-17.099-AvastVBoxSVC.exe-3184.log
2015-03-27 23:29 - 2015-03-27 23:29 - 00000197 _____ () C:\Windows\system32\2015-03-27-21-29-22.041-AvastVBoxSVC.exe-5640.log
2015-03-27 16:12 - 2015-03-27 16:12 - 00000197 _____ () C:\Windows\system32\2015-03-27-14-12-25.053-AvastVBoxSVC.exe-3756.log
2015-03-26 13:27 - 2015-03-26 13:27 - 00000197 _____ () C:\Windows\system32\2015-03-26-11-27-06.071-AvastVBoxSVC.exe-3668.log
2015-03-25 20:15 - 2015-03-25 20:35 - 1518874624 _____ () C:\Users\Robocop\Downloads\Hněv titánů - 2012 cz dab.fantas koko.avi
2015-03-25 20:06 - 2015-03-25 20:06 - 00000197 _____ () C:\Windows\system32\2015-03-25-18-06-22.030-AvastVBoxSVC.exe-4532.log
2015-03-25 15:59 - 2015-03-25 15:59 - 00000197 _____ () C:\Windows\system32\2015-03-25-13-59-47.056-AvastVBoxSVC.exe-4156.log
2015-03-24 17:53 - 2015-03-24 17:53 - 00000197 _____ () C:\Windows\system32\2015-03-24-15-53-04.017-AvastVBoxSVC.exe-5900.log
2015-03-23 17:15 - 2015-03-23 17:15 - 00000197 _____ () C:\Windows\system32\2015-03-23-15-15-26.022-AvastVBoxSVC.exe-5568.log
2015-03-22 23:38 - 2015-03-22 23:38 - 00952022 _____ () C:\Users\Robocop\Downloads\KeiNett-Launcher-for-Minecraft-1.7.9.rar
2015-03-22 23:30 - 2015-03-22 23:30 - 00003144 _____ () C:\Windows\System32\Tasks\{2CD4532C-94CC-4E2F-B8E8-0EAC198D6835}
2015-03-22 23:29 - 2015-03-22 23:29 - 00000000 ____D () C:\Users\Robocop\versions
2015-03-22 23:29 - 2015-03-22 23:29 - 00000000 ____D () C:\Users\Robocop\libraries
2015-03-22 23:28 - 2015-04-02 16:23 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\.minecraft
2015-03-22 23:22 - 2015-03-22 23:32 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\.mctitandinocraft
2015-03-22 23:15 - 2015-03-22 23:15 - 00000000 ____D () C:\ProgramData\Sun
2015-03-22 23:15 - 2015-03-22 23:14 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-03-22 23:14 - 2015-03-22 23:14 - 00000000 ____D () C:\ProgramData\Oracle
2015-03-22 23:14 - 2015-03-22 23:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-03-22 23:14 - 2015-03-22 23:14 - 00000000 ____D () C:\Program Files (x86)\Java
2015-03-22 23:12 - 2015-03-22 23:12 - 00561064 _____ (Oracle Corporation) C:\Users\Robocop\Downloads\chromeinstall-8u40.exe
2015-03-22 19:50 - 2015-04-02 10:31 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\TS3Client
2015-03-22 19:17 - 2015-04-07 21:26 - 00000000 ____D () C:\Users\Robocop\AppData\Local\Purplizer
2015-03-22 19:16 - 2015-03-22 19:16 - 00003726 _____ () C:\Windows\System32\Tasks\Overwolf Updater Task
2015-03-22 19:16 - 2015-03-22 19:16 - 00003296 _____ () C:\Windows\System32\Tasks\RunOW
2015-03-22 19:16 - 2015-03-22 19:16 - 00001973 _____ () C:\Users\Public\Desktop\Overwolf.lnk
2015-03-22 19:16 - 2015-03-22 19:16 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overwolf
2015-03-22 19:15 - 2015-03-30 19:16 - 00000000 ____D () C:\Program Files (x86)\Overwolf
2015-03-22 19:15 - 2015-03-22 19:16 - 00000000 ____D () C:\ProgramData\Overwolf
2015-03-22 19:14 - 2015-04-08 16:14 - 00000000 ____D () C:\Users\Robocop\AppData\Local\Overwolf
2015-03-22 19:14 - 2015-03-22 19:14 - 00000967 _____ () C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
2015-03-22 19:14 - 2015-03-22 19:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2015-03-22 19:14 - 2015-03-22 19:14 - 00000000 ____D () C:\Program Files\TeamSpeak 3 Client
2015-03-22 14:11 - 2015-03-22 14:12 - 00000197 _____ () C:\Windows\system32\2015-03-22-12-11-42.066-AvastVBoxSVC.exe-4640.log
2015-03-21 21:15 - 2015-03-24 22:42 - 00000000 ____D () C:\Users\Robocop\Downloads\Fyz
2015-03-21 21:15 - 2015-03-24 22:41 - 00000000 ____D () C:\Users\Robocop\Downloads\ZSV
2015-03-21 21:14 - 2015-03-23 20:42 - 00000000 ____D () C:\Users\Robocop\Downloads\Chemie
2015-03-21 21:13 - 2015-03-21 21:13 - 00000000 ____D () C:\Users\Robocop\Downloads\Bio
2015-03-21 21:12 - 2015-03-23 21:06 - 00000000 ____D () C:\Users\Robocop\Downloads\Zempl
2015-03-21 18:50 - 2015-03-21 18:50 - 00000197 _____ () C:\Windows\system32\2015-03-21-16-50-01.009-AvastVBoxSVC.exe-5460.log
2015-03-21 11:47 - 2015-03-21 11:47 - 00000197 _____ () C:\Windows\system32\2015-03-21-09-47-56.073-AvastVBoxSVC.exe-3868.log
2015-03-20 16:38 - 2015-03-20 16:38 - 00000197 _____ () C:\Windows\system32\2015-03-20-14-38-15.081-AvastVBoxSVC.exe-3016.log
2015-03-20 12:35 - 2015-03-20 12:35 - 00000197 _____ () C:\Windows\system32\2015-03-20-10-35-18.010-AvastVBoxSVC.exe-4372.log
2015-03-19 16:53 - 2015-03-19 16:53 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\NVIDIA
2015-03-19 16:52 - 2015-03-19 16:52 - 00001897 _____ () C:\Users\Public\Desktop\Blender.lnk
2015-03-19 16:52 - 2015-03-19 16:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blender Foundation
2015-03-19 16:50 - 2015-03-19 16:50 - 00000000 ____D () C:\Program Files\Blender Foundation
2015-03-19 16:47 - 2015-03-19 16:48 - 64542509 _____ () C:\Users\Robocop\Downloads\blender-2.73a-windows64.exe
2015-03-19 16:04 - 2015-04-08 18:16 - 00387656 _____ () C:\Windows\WindowsUpdate.log
2015-03-19 16:04 - 2015-03-19 16:05 - 00000197 _____ () C:\Windows\system32\2015-03-19-14-04-55.048-AvastVBoxSVC.exe-4688.log
2015-03-19 09:58 - 2015-03-19 09:58 - 00000197 _____ () C:\Windows\system32\2015-03-19-07-58-00.065-AvastVBoxSVC.exe-5228.log
2015-03-18 13:47 - 2015-03-18 13:47 - 00000197 _____ () C:\Windows\system32\2015-03-18-11-47-52.077-AvastVBoxSVC.exe-4880.log
2015-03-18 13:04 - 2015-03-18 13:04 - 00001003 _____ () C:\Users\Robocop\Downloads\p04.mid
2015-03-18 12:32 - 2015-03-18 12:33 - 00000197 _____ () C:\Windows\system32\2015-03-18-10-32-56.078-AvastVBoxSVC.exe-3080.log
2015-03-17 21:23 - 2015-03-17 23:02 - 908594630 _____ () C:\Users\Robocop\Downloads\Kung-Fu-panda-2-(cz).avi
2015-03-17 20:33 - 2015-03-17 20:49 - 1164068864 _____ () C:\Users\Robocop\Downloads\Ti druzí.avi
2015-03-17 17:19 - 2015-03-17 17:19 - 00000197 _____ () C:\Windows\system32\2015-03-17-15-19-24.030-AvastVBoxSVC.exe-3780.log
2015-03-17 10:30 - 2015-03-17 10:30 - 00000197 _____ () C:\Windows\system32\2015-03-17-08-30-18.015-AvastVBoxSVC.exe-4196.log
2015-03-17 00:19 - 2015-03-17 00:19 - 00000000 ____D () C:\Users\Robocop\AppData\Local\SKIDROW
2015-03-17 00:13 - 2015-03-17 00:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Catalyst
2015-03-16 23:58 - 2015-03-16 23:58 - 00000000 ____D () C:\Program Files (x86)\R.G. Catalyst
2015-03-16 13:31 - 2015-03-16 13:31 - 00000197 _____ () C:\Windows\system32\2015-03-16-11-31-03.017-AvastVBoxSVC.exe-4112.log
2015-03-16 09:42 - 2015-03-16 09:42 - 00000197 _____ () C:\Windows\system32\2015-03-16-07-42-07.073-AvastVBoxSVC.exe-3624.log
2015-03-15 15:59 - 2015-03-15 16:00 - 00000197 _____ () C:\Windows\system32\2015-03-15-13-59-27.078-AvastVBoxSVC.exe-4164.log
2015-03-14 19:31 - 2015-03-14 19:32 - 00000197 _____ () C:\Windows\system32\2015-03-14-17-31-32.094-AvastVBoxSVC.exe-5308.log
2015-03-14 10:06 - 2015-03-14 10:06 - 00000197 _____ () C:\Windows\system32\2015-03-14-08-06-16.076-AvastVBoxSVC.exe-4232.log
2015-03-13 23:20 - 2015-03-13 23:20 - 00000197 _____ () C:\Windows\system32\2015-03-13-21-20-29.012-AvastVBoxSVC.exe-5112.log
2015-03-13 18:04 - 2015-03-13 18:04 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\Macromedia
2015-03-13 15:54 - 2015-03-13 15:54 - 00000197 _____ () C:\Windows\system32\2015-03-13-13-54-55.063-AvastVBoxSVC.exe-4764.log
2015-03-12 17:39 - 2015-03-12 17:39 - 00000197 _____ () C:\Windows\system32\2015-03-12-15-39-13.076-AvastVBoxSVC.exe-4988.log
2015-03-11 22:10 - 2015-03-11 22:10 - 00000197 _____ () C:\Windows\system32\2015-03-11-20-10-16.071-AvastVBoxSVC.exe-3460.log
2015-03-11 17:51 - 2015-03-11 17:51 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-03-11 17:51 - 2015-03-11 17:51 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-03-11 17:51 - 2015-03-11 17:51 - 00000000 ____D () C:\Windows\system32\Macromed
2015-03-11 17:49 - 2015-03-11 17:51 - 00000000 ____D () C:\Users\Robocop\AppData\Local\Adobe
2015-03-11 17:40 - 2015-03-11 20:16 - 00000000 ____D () C:\Users\Robocop\Downloads\Compressed
2015-03-11 16:05 - 2015-03-11 16:05 - 00000000 ____D () C:\Users\Robocop\Downloads\Ubisoft
2015-03-11 15:23 - 2015-03-11 15:23 - 00000001 _____ () C:\Windows\SysWOW64\SI.bin
2015-03-11 14:43 - 2015-03-11 14:43 - 00000197 _____ () C:\Windows\system32\2015-03-11-12-43-28.013-AvastVBoxSVC.exe-1420.log
2015-03-11 12:35 - 2015-03-11 12:35 - 00000499 _____ () C:\Users\Robocop\Downloads\delkan.mid
2015-03-11 12:11 - 2015-03-11 12:11 - 00000197 _____ () C:\Windows\system32\2015-03-11-10-11-06.023-AvastVBoxSVC.exe-4492.log
2015-03-10 21:06 - 2015-03-10 21:06 - 00000197 _____ () C:\Windows\system32\2015-03-10-19-06-52.033-AvastVBoxSVC.exe-3276.log
2015-03-10 15:55 - 2015-03-10 15:55 - 00000197 _____ () C:\Windows\system32\2015-03-10-13-55-17.041-AvastVBoxSVC.exe-5128.log
2015-03-10 07:29 - 2015-03-10 07:30 - 00000197 _____ () C:\Windows\system32\2015-03-10-05-29-29.073-AvastVBoxSVC.exe-212.log
2015-03-09 15:50 - 2015-03-09 15:50 - 00000197 _____ () C:\Windows\system32\2015-03-09-13-50-10.021-AvastVBoxSVC.exe-3108.log

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-08 18:47 - 2015-01-29 21:42 - 00000954 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-08 16:22 - 2009-07-14 06:45 - 00027984 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-04-08 16:22 - 2009-07-14 06:45 - 00027984 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-04-08 16:12 - 2015-01-31 22:41 - 00000000 ____D () C:\ProgramData\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602
2015-04-08 16:10 - 2015-01-29 21:42 - 00000950 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-04-08 16:10 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-04-07 22:36 - 2015-01-31 14:29 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\vlc
2015-04-07 18:31 - 2015-01-29 20:45 - 00000000 ____D () C:\Users\Robocop
2015-04-07 18:30 - 2015-02-04 22:49 - 00098816 ___SH () C:\Users\Robocop\Thumbs.db
2015-04-06 21:12 - 2015-02-09 17:59 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\uTorrent
2015-04-06 17:02 - 2015-03-05 17:55 - 00000000 ____D () C:\Program Files (x86)\WarThunder
2015-04-06 16:54 - 2015-02-03 13:04 - 00000000 ____D () C:\Program Files (x86)\Diablo III
2015-04-06 16:48 - 2015-02-22 00:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Český překlad WoW
2015-04-05 16:36 - 2015-02-06 14:38 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\Skype
2015-04-04 11:06 - 2015-01-30 21:01 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2015-04-01 15:01 - 2010-11-21 11:27 - 00668376 _____ () C:\Windows\system32\perfh005.dat
2015-04-01 15:01 - 2010-11-21 11:27 - 00141004 _____ () C:\Windows\system32\perfc005.dat
2015-04-01 15:01 - 2009-07-14 07:13 - 01582262 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-29 11:03 - 2015-02-04 10:45 - 00000000 ___RD () C:\Users\Robocop\Desktop\Games
2015-03-24 18:06 - 2015-02-13 21:18 - 00000000 ____D () C:\Program Files (x86)\Valve
2015-03-15 20:27 - 2015-02-03 13:01 - 00000000 ____D () C:\Users\Robocop\AppData\Local\Battle.net
2015-03-14 00:27 - 2015-02-23 18:58 - 00000000 ____D () C:\ProgramData\Origin
2015-03-13 18:58 - 2015-02-25 19:57 - 00348672 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr
2015-03-13 18:58 - 2015-02-24 21:19 - 00348672 _____ () C:\Windows\SysWOW64\PnkBstrB.exe
2015-03-13 18:57 - 2015-02-24 21:19 - 00280904 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0
2015-03-13 18:04 - 2015-02-03 13:00 - 00000000 ____D () C:\Program Files (x86)\Battle.net
2015-03-12 17:41 - 2015-02-01 13:26 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\DAEMON Tools Lite
2015-03-11 16:12 - 2015-02-04 00:11 - 00000000 ____D () C:\Users\Robocop\Documents\My Games
2015-03-11 15:37 - 2015-01-29 21:33 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-03-11 15:35 - 2015-02-03 18:56 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games

==================== Files in the root of some directories =======

2013-02-26 08:28 - 2013-02-26 08:28 - 0027762 _____ () C:\Program Files (x86)\changes.txt
2013-02-26 08:56 - 2013-02-26 08:56 - 2391736 _____ (Beepa P/L) C:\Program Files (x86)\fraps.exe
2013-02-26 08:34 - 2013-02-26 08:34 - 0234168 _____ (Beepa P/L) C:\Program Files (x86)\fraps32.dll
2013-02-26 08:56 - 2013-02-26 08:56 - 0068792 _____ (Beepa P/L) C:\Program Files (x86)\fraps64.dat
2013-02-26 08:34 - 2013-02-26 08:34 - 0186552 _____ (Beepa P/L) C:\Program Files (x86)\fraps64.dll
2013-02-26 08:54 - 2013-02-26 08:54 - 0139776 _____ (Beepa P/L) C:\Program Files (x86)\frapslcd.dll
2015-02-17 19:34 - 2015-03-30 16:47 - 0000423 _____ () C:\Program Files (x86)\FRAPSLOG.TXT
2013-02-26 08:27 - 2013-02-26 08:27 - 0001894 _____ () C:\Program Files (x86)\README.HTM
2015-02-04 10:51 - 2015-02-04 10:51 - 0036079 _____ (Beepa Pty Ltd) C:\Program Files (x86)\uninstall.exe
2015-02-01 17:36 - 2013-04-23 17:58 - 0000084 _____ () C:\Program Files (x86)\update-DIRiptide.bat
2015-02-01 17:36 - 2012-06-15 19:24 - 0003153 _____ () C:\Program Files (x86)\visit-nosteam.ro.html
2015-04-08 18:49 - 2015-04-08 18:50 - 0029696 _____ () C:\Users\Robocop\AppData\Local\MSGBOX.EXE

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-03-26 21:22

==================== End Of Log ============================

Momos
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 08 dub 2015 17:35

Re: Ztrácí se mi místo na disku.

#4 Příspěvek od Momos »

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Robocop (administrator) on ROBOCOP-PC on 08-04-2015 18:51:45
Running from C:\Users\Robocop\Desktop
Loaded Profiles: Robocop & UpdatusUser (Available profiles: Robocop & UpdatusUser)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Akamai Technologies, Inc.) C:\Users\Robocop\AppData\Local\Akamai\netsession_win.exe
(Akamai Technologies, Inc.) C:\Users\Robocop\AppData\Local\Akamai\netsession_win.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(ZONER software) C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDGesture.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\btplayerctrl.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
() C:\ProgramData\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602\plugincontainer.exe
() C:\Program Files (x86)\Common Files\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602\updater.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
() C:\ProgramData\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602\plugins\5\Plugin.exe
() C:\ProgramData\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602\plugins\8\Plugin.exe
() C:\ProgramData\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602\plugins\3\Plugin.exe
() C:\ProgramData\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602\plugins\3\Plugin.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Robocop\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1332296 2015-01-30] (Microsoft Corporation)
HKLM\...\Run: [ASUSQuickGesture(x86)] => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe [20352 2012-09-11] (ASUSTeK Computer Inc.)
HKLM\...\Run: [ASUSTPLoader(x64)] => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe [169856 2012-09-11] (AsusTek)
HKLM\...\Run: [ASUSQuickGesture(x64)] => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe [22400 2012-09-11] (ASUSTeK Computer Inc.)
HKLM\...\Run: [BLEServicesCtrl] => C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe [178960 2012-03-15] (Intel Corporation)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2661672 2012-02-20] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12936848 2012-07-13] (Realtek Semiconductor)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-02-07] (Intel Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227648 2015-03-30] (AVAST Software)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [335232 2015-03-07] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2971226956-2283341039-1508386245-1000\...\Run: [Akamai NetSession Interface] => C:\Users\Robocop\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.)
HKU\S-1-5-21-2971226956-2283341039-1508386245-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-2971226956-2283341039-1508386245-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-2971226956-2283341039-1508386245-1000\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\Overwolf.exe [40688 2015-03-25] (Overwolf LTD)
HKU\S-1-5-21-2971226956-2283341039-1508386245-1000\...\Run: [Zoner Photo Studio Autoupdate] => C:\PROGRAM FILES\ZONER\PHOTO STUDIO 15\Program32\ZPSTRAY.EXE [752736 2012-10-08] (ZONER software)
HKU\S-1-5-21-2971226956-2283341039-1508386245-1003\...\Run: [Akamai NetSession Interface] => C:\Users\Robocop\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [168616 2013-12-10] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [141336 2013-12-10] (NVIDIA Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type= ... earchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type= ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?type= ... earchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?type= ... earchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?type= ... earchTerms}
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?type= ... earchTerms}
BHO-x32: Positive Finds -> {30c85a3d-1d96-4589-b63f-91fb7ef45a41} -> C:\Program Files (x86)\Positive Finds\Extensions\30c85a3d-1d96-4589-b63f-91fb7ef45a41.dll [2015-01-31] ()
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-22] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-22] (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 194.228.41.65 194.228.41.113
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&t ... J9CD401401

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll [2015-03-11] ()
FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-14] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-03-11] ()
FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-22] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-22] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-14] ( Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll [2015-01-29] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll [2015-01-29] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-01-30]

Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\Robocop\AppData\Local\Google\Chrome\User Data\Profile 1
CHR Extension: (Avast SafePrice) - C:\Users\Robocop\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2015-02-04]
CHR Extension: (AdBlock) - C:\Users\Robocop\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-02-24]
CHR Extension: (Avast Online Security) - C:\Users\Robocop\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-01-30]
CHR Extension: (Google Wallet) - C:\Users\Robocop\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-30]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-01-30]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-01-30]
StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&t ... J9CD401401

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2015-01-30] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2015-01-30] (Avast Software)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23784 2015-01-30] (Microsoft Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2011-12-08] ()
S3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [366512 2015-01-30] (Microsoft Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1910640 2015-02-27] (Electronic Arts)
S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [998640 2015-03-25] (Overwolf LTD)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2015-02-25] ()
R2 Service Mgr PositiveFinds; C:\ProgramData\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602\plugincontainer.exe [639224 2015-04-08] ()
R2 Update Mgr PositiveFinds; C:\Program Files (x86)\Common Files\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602\updater.exe [559864 2015-04-08] ()
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2014-06-08] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [594704 2011-12-08] (Intel® Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2015-01-30] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [87912 2015-01-30] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2015-01-30] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2015-01-30] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2015-01-30] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2015-01-30] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2015-01-30] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2015-01-30] ()
S3 ATP; C:\Windows\System32\DRIVERS\AsusTP.sys [56704 2012-09-11] (ASUS Corporation)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2015-02-01] (Disc Soft Ltd)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [274696 2014-11-15] (Microsoft Corporation)
S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124560 2014-11-15] (Microsoft Corporation)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [271752 2015-01-30] (Avast Software)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-08 18:51 - 2015-04-08 18:52 - 00017998 _____ () C:\Users\Robocop\Desktop\FRST.txt
2015-04-08 18:50 - 2015-04-08 18:50 - 00015327 _____ () C:\Users\Robocop\Desktop\LM.bat
2015-04-08 18:49 - 2015-04-08 18:50 - 00029696 _____ () C:\Users\Robocop\AppData\Local\MSGBOX.EXE
2015-04-08 18:49 - 2015-04-08 18:49 - 00112640 _____ (forum.viry.cz) C:\Users\Robocop\Desktop\FRSTLauncher.exe
2015-04-08 18:45 - 2015-04-08 18:51 - 00000000 ____D () C:\FRST
2015-04-08 18:45 - 2015-04-08 18:45 - 02095616 _____ (Farbar) C:\Users\Robocop\Desktop\FRST64.exe
2015-04-08 16:20 - 2015-04-08 16:20 - 00000056 _____ () C:\Windows\setupact.log
2015-04-08 16:20 - 2015-04-08 16:20 - 00000000 _____ () C:\Windows\setuperr.log
2015-04-08 16:15 - 2015-04-08 16:15 - 00000197 _____ () C:\Windows\system32\2015-04-08-14-15-17.011-AvastVBoxSVC.exe-4988.log
2015-04-07 21:23 - 2015-04-07 21:23 - 00164437 _____ () C:\Users\Robocop\Downloads\GearScore+BonusScanner-3.3.5.rar
2015-04-07 21:21 - 2015-04-07 21:21 - 00097865 _____ () C:\Users\Robocop\Downloads\Gear-Score-(3.3.5).rar
2015-04-07 18:30 - 2015-04-07 18:31 - 00000000 ____D () C:\Users\Robocop\MINECRAFT
2015-04-07 17:52 - 2015-04-07 17:53 - 00000197 _____ () C:\Windows\system32\2015-04-07-15-52-49.087-AvastVBoxSVC.exe-264.log
2015-04-06 19:54 - 2015-04-06 19:54 - 00024357 _____ () C:\Users\Robocop\Downloads\[kickass.to]game.of.thrones.season.3.720p.bluray.x264.shaanig.torrent
2015-04-06 18:40 - 2015-04-06 18:40 - 00024351 _____ () C:\Users\Robocop\Downloads\[kickass.to]game.of.thrones.season.2.720p.bluray.x264.shaanig.torrent
2015-04-06 17:04 - 2015-04-06 17:05 - 00000000 ____D () C:\totalcmd
2015-04-06 17:04 - 2015-04-06 17:04 - 03722264 _____ (Ghisler Software GmbH) C:\Users\Robocop\Downloads\tcm851x32.exe
2015-04-06 17:04 - 2015-04-06 17:04 - 00000632 _____ () C:\Users\Robocop\Desktop\Total Commander.lnk
2015-04-06 17:04 - 2015-04-06 17:04 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2015-04-06 17:04 - 2015-04-06 17:04 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\GHISLER
2015-04-06 17:04 - 2014-04-23 08:51 - 00000545 _____ () C:\Windows\UC.PIF
2015-04-06 17:04 - 2014-04-23 08:51 - 00000545 _____ () C:\Windows\RAR.PIF
2015-04-06 17:04 - 2014-04-23 08:51 - 00000545 _____ () C:\Windows\PKZIP.PIF
2015-04-06 17:04 - 2014-04-23 08:51 - 00000545 _____ () C:\Windows\PKUNZIP.PIF
2015-04-06 17:04 - 2014-04-23 08:51 - 00000545 _____ () C:\Windows\LHA.PIF
2015-04-06 17:04 - 2014-04-23 08:51 - 00000545 _____ () C:\Windows\ARJ.PIF
2015-04-06 12:24 - 2015-04-06 12:25 - 00000197 _____ () C:\Windows\system32\2015-04-06-10-24-49.077-AvastVBoxSVC.exe-4856.log
2015-04-06 12:15 - 2015-04-06 12:15 - 00000000 ____D () C:\Users\Robocop\Downloads\Pointstone System Cleaner v7.3.6.329 Incl Crack [TorDigger]
2015-04-06 11:46 - 2015-04-07 17:45 - 00000000 ____D () C:\Program Files (x86)\Pointstone
2015-04-06 11:46 - 2015-04-06 17:02 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\Pointstone
2015-04-06 11:46 - 2015-04-06 11:46 - 00000000 ____D () C:\Windows\System32\Tasks\Pointstone
2015-04-06 11:45 - 2015-04-06 11:46 - 11616184 _____ (Pointstone Software, LLC) C:\Users\Robocop\Downloads\SystemCleanerSetup.exe
2015-04-05 16:33 - 2015-04-05 16:33 - 00000197 _____ () C:\Windows\system32\2015-04-05-14-33-30.089-AvastVBoxSVC.exe-2680.log
2015-04-05 12:57 - 2015-04-05 12:58 - 00000197 _____ () C:\Windows\system32\2015-04-05-10-57-51.083-AvastVBoxSVC.exe-4964.log
2015-04-04 15:53 - 2015-04-04 15:53 - 00000197 _____ () C:\Windows\system32\2015-04-04-13-53-05.015-AvastVBoxSVC.exe-4892.log
2015-04-04 11:07 - 2015-04-04 11:07 - 00000197 _____ () C:\Windows\system32\2015-04-04-09-07-35.061-AvastVBoxSVC.exe-2912.log
2015-04-03 19:53 - 2015-04-03 20:09 - 1093287430 _____ () C:\Users\Robocop\Downloads\Purpurové řeky 2 =2006-J.Reno-DVD-CZ.avi
2015-04-03 19:39 - 2015-04-03 19:39 - 00000197 _____ () C:\Windows\system32\2015-04-03-17-39-16.015-AvastVBoxSVC.exe-5524.log
2015-04-03 16:40 - 2015-04-03 16:40 - 00000197 _____ () C:\Windows\system32\2015-04-03-14-40-39.014-AvastVBoxSVC.exe-5144.log
2015-04-03 09:06 - 2015-04-03 09:06 - 00000197 _____ () C:\Windows\system32\2015-04-03-07-06-58.037-AvastVBoxSVC.exe-4384.log
2015-04-02 23:29 - 2015-04-02 23:29 - 00000197 _____ () C:\Windows\system32\2015-04-02-21-29-24.005-AvastVBoxSVC.exe-3308.log
2015-04-02 13:47 - 2015-04-02 13:47 - 00000794 _____ () C:\Users\Robocop\Downloads\p07.mid
2015-04-02 13:39 - 2015-04-02 13:39 - 00000431 _____ () C:\Users\Robocop\Downloads\p06.mid
2015-04-02 13:34 - 2015-04-02 13:34 - 00000419 _____ () C:\Users\Robocop\Downloads\p05.mid
2015-04-02 13:07 - 2015-04-02 13:07 - 00001003 _____ () C:\Users\Robocop\Downloads\p04 (1).mid
2015-04-02 12:57 - 2015-04-02 12:57 - 00000555 _____ () C:\Users\Robocop\Downloads\p03.mid
2015-04-02 10:26 - 2015-04-02 10:26 - 00000197 _____ () C:\Windows\system32\2015-04-02-08-26-15.080-AvastVBoxSVC.exe-4720.log
2015-04-01 20:55 - 2015-04-01 20:55 - 00002932 _____ () C:\Windows\System32\Tasks\{63074DDE-5866-42B2-963A-6D70DD71A370}
2015-04-01 20:51 - 2015-04-01 20:51 - 00002934 _____ () C:\Windows\System32\Tasks\{95181443-AA00-4E6E-A3AF-2C6162ABD2B9}
2015-04-01 20:46 - 2015-04-06 17:01 - 00000000 ____D () C:\Users\Robocop\AppData\Local\CrashDumps
2015-04-01 14:58 - 2015-04-01 14:58 - 00000197 _____ () C:\Windows\system32\2015-04-01-12-58-41.025-AvastVBoxSVC.exe-5140.log
2015-03-31 23:11 - 2015-04-01 20:40 - 00000000 ____D () C:\Users\Robocop\Downloads\Dr.-House-01x21-Tri-Pribehy-UP-FRD
2015-03-31 21:04 - 2015-03-31 21:04 - 00000000 ____D () C:\Users\Robocop\Documents\ZPS15
2015-03-31 21:04 - 2015-03-31 21:04 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\Zoner
2015-03-31 21:04 - 2015-03-31 21:04 - 00000000 ____D () C:\Users\Robocop\AppData\Local\Zoner
2015-03-31 21:04 - 2015-03-31 21:04 - 00000000 ____D () C:\ProgramData\Zoner
2015-03-31 21:03 - 2015-03-31 21:03 - 00001878 _____ () C:\Users\Public\Desktop\Zoner Photo Studio 15.lnk
2015-03-31 21:03 - 2015-03-31 21:03 - 00001878 _____ () C:\Users\Public\Desktop\Zoner Photo Studio 15 x64.lnk
2015-03-31 21:03 - 2015-03-31 21:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zoner Photo Studio 15
2015-03-31 21:01 - 2015-03-31 21:01 - 00000000 ____D () C:\Program Files\Zoner
2015-03-31 16:47 - 2015-03-31 16:47 - 00000197 _____ () C:\Windows\system32\2015-03-31-14-47-05.004-AvastVBoxSVC.exe-3752.log
2015-03-30 21:15 - 2015-04-02 15:02 - 00000000 ____D () C:\Users\Robocop\Downloads\Dr.-House-01x18-Nova-Generace-UP-FRD
2015-03-30 16:47 - 2015-04-04 19:50 - 00000000 ____D () C:\Program Files (x86)\Movies
2015-03-30 14:53 - 2015-03-30 14:53 - 00000197 _____ () C:\Windows\system32\2015-03-30-12-53-41.023-AvastVBoxSVC.exe-692.log
2015-03-29 12:13 - 2015-03-29 12:13 - 00000247 _____ () C:\Windows\system32\2015-03-29-10-13-37.087-aswFe.exe-2032.log
2015-03-29 11:58 - 2015-03-29 12:13 - 00000247 _____ () C:\Windows\system32\2015-03-29-09-58-37.016-aswFe.exe-748.log
2015-03-29 11:58 - 2015-03-29 11:58 - 00000197 _____ () C:\Windows\system32\2015-03-29-09-58-16.024-AvastVBoxSVC.exe-6272.log
2015-03-29 10:59 - 2015-03-29 10:59 - 00000000 ____D () C:\Users\Robocop\Downloads\KeiNett-Launcher-for-Minecraft-1.7.9
2015-03-29 10:58 - 2015-03-29 10:58 - 00000197 _____ () C:\Windows\system32\2015-03-29-08-58-24.065-AvastVBoxSVC.exe-6404.log
2015-03-28 10:38 - 2015-04-01 17:29 - 00000000 ____D () C:\Users\Robocop\Downloads\WoWCircle 5.4.8
2015-03-28 10:24 - 2015-03-28 10:24 - 00000197 _____ () C:\Windows\system32\2015-03-28-08-24-17.099-AvastVBoxSVC.exe-3184.log
2015-03-27 23:29 - 2015-03-27 23:29 - 00000197 _____ () C:\Windows\system32\2015-03-27-21-29-22.041-AvastVBoxSVC.exe-5640.log
2015-03-27 16:12 - 2015-03-27 16:12 - 00000197 _____ () C:\Windows\system32\2015-03-27-14-12-25.053-AvastVBoxSVC.exe-3756.log
2015-03-26 13:27 - 2015-03-26 13:27 - 00000197 _____ () C:\Windows\system32\2015-03-26-11-27-06.071-AvastVBoxSVC.exe-3668.log
2015-03-25 20:15 - 2015-03-25 20:35 - 1518874624 _____ () C:\Users\Robocop\Downloads\Hněv titánů - 2012 cz dab.fantas koko.avi
2015-03-25 20:06 - 2015-03-25 20:06 - 00000197 _____ () C:\Windows\system32\2015-03-25-18-06-22.030-AvastVBoxSVC.exe-4532.log
2015-03-25 15:59 - 2015-03-25 15:59 - 00000197 _____ () C:\Windows\system32\2015-03-25-13-59-47.056-AvastVBoxSVC.exe-4156.log
2015-03-24 17:53 - 2015-03-24 17:53 - 00000197 _____ () C:\Windows\system32\2015-03-24-15-53-04.017-AvastVBoxSVC.exe-5900.log
2015-03-23 17:15 - 2015-03-23 17:15 - 00000197 _____ () C:\Windows\system32\2015-03-23-15-15-26.022-AvastVBoxSVC.exe-5568.log
2015-03-22 23:38 - 2015-03-22 23:38 - 00952022 _____ () C:\Users\Robocop\Downloads\KeiNett-Launcher-for-Minecraft-1.7.9.rar
2015-03-22 23:30 - 2015-03-22 23:30 - 00003144 _____ () C:\Windows\System32\Tasks\{2CD4532C-94CC-4E2F-B8E8-0EAC198D6835}
2015-03-22 23:29 - 2015-03-22 23:29 - 00000000 ____D () C:\Users\Robocop\versions
2015-03-22 23:29 - 2015-03-22 23:29 - 00000000 ____D () C:\Users\Robocop\libraries
2015-03-22 23:28 - 2015-04-02 16:23 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\.minecraft
2015-03-22 23:22 - 2015-03-22 23:32 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\.mctitandinocraft
2015-03-22 23:15 - 2015-03-22 23:15 - 00000000 ____D () C:\ProgramData\Sun
2015-03-22 23:15 - 2015-03-22 23:14 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-03-22 23:14 - 2015-03-22 23:14 - 00000000 ____D () C:\ProgramData\Oracle
2015-03-22 23:14 - 2015-03-22 23:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-03-22 23:14 - 2015-03-22 23:14 - 00000000 ____D () C:\Program Files (x86)\Java
2015-03-22 23:12 - 2015-03-22 23:12 - 00561064 _____ (Oracle Corporation) C:\Users\Robocop\Downloads\chromeinstall-8u40.exe
2015-03-22 19:50 - 2015-04-02 10:31 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\TS3Client
2015-03-22 19:17 - 2015-04-07 21:26 - 00000000 ____D () C:\Users\Robocop\AppData\Local\Purplizer
2015-03-22 19:16 - 2015-03-22 19:16 - 00003726 _____ () C:\Windows\System32\Tasks\Overwolf Updater Task
2015-03-22 19:16 - 2015-03-22 19:16 - 00003296 _____ () C:\Windows\System32\Tasks\RunOW
2015-03-22 19:16 - 2015-03-22 19:16 - 00001973 _____ () C:\Users\Public\Desktop\Overwolf.lnk
2015-03-22 19:16 - 2015-03-22 19:16 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overwolf
2015-03-22 19:15 - 2015-03-30 19:16 - 00000000 ____D () C:\Program Files (x86)\Overwolf
2015-03-22 19:15 - 2015-03-22 19:16 - 00000000 ____D () C:\ProgramData\Overwolf
2015-03-22 19:14 - 2015-04-08 16:14 - 00000000 ____D () C:\Users\Robocop\AppData\Local\Overwolf
2015-03-22 19:14 - 2015-03-22 19:14 - 00000967 _____ () C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
2015-03-22 19:14 - 2015-03-22 19:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2015-03-22 19:14 - 2015-03-22 19:14 - 00000000 ____D () C:\Program Files\TeamSpeak 3 Client
2015-03-22 14:11 - 2015-03-22 14:12 - 00000197 _____ () C:\Windows\system32\2015-03-22-12-11-42.066-AvastVBoxSVC.exe-4640.log
2015-03-21 21:15 - 2015-03-24 22:42 - 00000000 ____D () C:\Users\Robocop\Downloads\Fyz
2015-03-21 21:15 - 2015-03-24 22:41 - 00000000 ____D () C:\Users\Robocop\Downloads\ZSV
2015-03-21 21:14 - 2015-03-23 20:42 - 00000000 ____D () C:\Users\Robocop\Downloads\Chemie
2015-03-21 21:13 - 2015-03-21 21:13 - 00000000 ____D () C:\Users\Robocop\Downloads\Bio
2015-03-21 21:12 - 2015-03-23 21:06 - 00000000 ____D () C:\Users\Robocop\Downloads\Zempl
2015-03-21 18:50 - 2015-03-21 18:50 - 00000197 _____ () C:\Windows\system32\2015-03-21-16-50-01.009-AvastVBoxSVC.exe-5460.log
2015-03-21 11:47 - 2015-03-21 11:47 - 00000197 _____ () C:\Windows\system32\2015-03-21-09-47-56.073-AvastVBoxSVC.exe-3868.log
2015-03-20 16:38 - 2015-03-20 16:38 - 00000197 _____ () C:\Windows\system32\2015-03-20-14-38-15.081-AvastVBoxSVC.exe-3016.log
2015-03-20 12:35 - 2015-03-20 12:35 - 00000197 _____ () C:\Windows\system32\2015-03-20-10-35-18.010-AvastVBoxSVC.exe-4372.log
2015-03-19 16:53 - 2015-03-19 16:53 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\NVIDIA
2015-03-19 16:52 - 2015-03-19 16:52 - 00001897 _____ () C:\Users\Public\Desktop\Blender.lnk
2015-03-19 16:52 - 2015-03-19 16:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blender Foundation
2015-03-19 16:50 - 2015-03-19 16:50 - 00000000 ____D () C:\Program Files\Blender Foundation
2015-03-19 16:47 - 2015-03-19 16:48 - 64542509 _____ () C:\Users\Robocop\Downloads\blender-2.73a-windows64.exe
2015-03-19 16:04 - 2015-04-08 18:16 - 00387656 _____ () C:\Windows\WindowsUpdate.log
2015-03-19 16:04 - 2015-03-19 16:05 - 00000197 _____ () C:\Windows\system32\2015-03-19-14-04-55.048-AvastVBoxSVC.exe-4688.log
2015-03-19 09:58 - 2015-03-19 09:58 - 00000197 _____ () C:\Windows\system32\2015-03-19-07-58-00.065-AvastVBoxSVC.exe-5228.log
2015-03-18 13:47 - 2015-03-18 13:47 - 00000197 _____ () C:\Windows\system32\2015-03-18-11-47-52.077-AvastVBoxSVC.exe-4880.log
2015-03-18 13:04 - 2015-03-18 13:04 - 00001003 _____ () C:\Users\Robocop\Downloads\p04.mid
2015-03-18 12:32 - 2015-03-18 12:33 - 00000197 _____ () C:\Windows\system32\2015-03-18-10-32-56.078-AvastVBoxSVC.exe-3080.log
2015-03-17 21:23 - 2015-03-17 23:02 - 908594630 _____ () C:\Users\Robocop\Downloads\Kung-Fu-panda-2-(cz).avi
2015-03-17 20:33 - 2015-03-17 20:49 - 1164068864 _____ () C:\Users\Robocop\Downloads\Ti druzí.avi
2015-03-17 17:19 - 2015-03-17 17:19 - 00000197 _____ () C:\Windows\system32\2015-03-17-15-19-24.030-AvastVBoxSVC.exe-3780.log
2015-03-17 10:30 - 2015-03-17 10:30 - 00000197 _____ () C:\Windows\system32\2015-03-17-08-30-18.015-AvastVBoxSVC.exe-4196.log
2015-03-17 00:19 - 2015-03-17 00:19 - 00000000 ____D () C:\Users\Robocop\AppData\Local\SKIDROW
2015-03-17 00:13 - 2015-03-17 00:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Catalyst
2015-03-16 23:58 - 2015-03-16 23:58 - 00000000 ____D () C:\Program Files (x86)\R.G. Catalyst
2015-03-16 13:31 - 2015-03-16 13:31 - 00000197 _____ () C:\Windows\system32\2015-03-16-11-31-03.017-AvastVBoxSVC.exe-4112.log
2015-03-16 09:42 - 2015-03-16 09:42 - 00000197 _____ () C:\Windows\system32\2015-03-16-07-42-07.073-AvastVBoxSVC.exe-3624.log
2015-03-15 15:59 - 2015-03-15 16:00 - 00000197 _____ () C:\Windows\system32\2015-03-15-13-59-27.078-AvastVBoxSVC.exe-4164.log
2015-03-14 19:31 - 2015-03-14 19:32 - 00000197 _____ () C:\Windows\system32\2015-03-14-17-31-32.094-AvastVBoxSVC.exe-5308.log
2015-03-14 10:06 - 2015-03-14 10:06 - 00000197 _____ () C:\Windows\system32\2015-03-14-08-06-16.076-AvastVBoxSVC.exe-4232.log
2015-03-13 23:20 - 2015-03-13 23:20 - 00000197 _____ () C:\Windows\system32\2015-03-13-21-20-29.012-AvastVBoxSVC.exe-5112.log
2015-03-13 18:04 - 2015-03-13 18:04 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\Macromedia
2015-03-13 15:54 - 2015-03-13 15:54 - 00000197 _____ () C:\Windows\system32\2015-03-13-13-54-55.063-AvastVBoxSVC.exe-4764.log
2015-03-12 17:39 - 2015-03-12 17:39 - 00000197 _____ () C:\Windows\system32\2015-03-12-15-39-13.076-AvastVBoxSVC.exe-4988.log
2015-03-11 22:10 - 2015-03-11 22:10 - 00000197 _____ () C:\Windows\system32\2015-03-11-20-10-16.071-AvastVBoxSVC.exe-3460.log
2015-03-11 17:51 - 2015-03-11 17:51 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-03-11 17:51 - 2015-03-11 17:51 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-03-11 17:51 - 2015-03-11 17:51 - 00000000 ____D () C:\Windows\system32\Macromed
2015-03-11 17:49 - 2015-03-11 17:51 - 00000000 ____D () C:\Users\Robocop\AppData\Local\Adobe
2015-03-11 17:40 - 2015-03-11 20:16 - 00000000 ____D () C:\Users\Robocop\Downloads\Compressed
2015-03-11 16:05 - 2015-03-11 16:05 - 00000000 ____D () C:\Users\Robocop\Downloads\Ubisoft
2015-03-11 15:23 - 2015-03-11 15:23 - 00000001 _____ () C:\Windows\SysWOW64\SI.bin
2015-03-11 14:43 - 2015-03-11 14:43 - 00000197 _____ () C:\Windows\system32\2015-03-11-12-43-28.013-AvastVBoxSVC.exe-1420.log
2015-03-11 12:35 - 2015-03-11 12:35 - 00000499 _____ () C:\Users\Robocop\Downloads\delkan.mid
2015-03-11 12:11 - 2015-03-11 12:11 - 00000197 _____ () C:\Windows\system32\2015-03-11-10-11-06.023-AvastVBoxSVC.exe-4492.log
2015-03-10 21:06 - 2015-03-10 21:06 - 00000197 _____ () C:\Windows\system32\2015-03-10-19-06-52.033-AvastVBoxSVC.exe-3276.log
2015-03-10 15:55 - 2015-03-10 15:55 - 00000197 _____ () C:\Windows\system32\2015-03-10-13-55-17.041-AvastVBoxSVC.exe-5128.log
2015-03-10 07:29 - 2015-03-10 07:30 - 00000197 _____ () C:\Windows\system32\2015-03-10-05-29-29.073-AvastVBoxSVC.exe-212.log
2015-03-09 15:50 - 2015-03-09 15:50 - 00000197 _____ () C:\Windows\system32\2015-03-09-13-50-10.021-AvastVBoxSVC.exe-3108.log

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-08 18:47 - 2015-01-29 21:42 - 00000954 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-08 16:22 - 2009-07-14 06:45 - 00027984 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-04-08 16:22 - 2009-07-14 06:45 - 00027984 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-04-08 16:12 - 2015-01-31 22:41 - 00000000 ____D () C:\ProgramData\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602
2015-04-08 16:10 - 2015-01-29 21:42 - 00000950 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-04-08 16:10 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-04-07 22:36 - 2015-01-31 14:29 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\vlc
2015-04-07 18:31 - 2015-01-29 20:45 - 00000000 ____D () C:\Users\Robocop
2015-04-07 18:30 - 2015-02-04 22:49 - 00098816 ___SH () C:\Users\Robocop\Thumbs.db
2015-04-06 21:12 - 2015-02-09 17:59 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\uTorrent
2015-04-06 17:02 - 2015-03-05 17:55 - 00000000 ____D () C:\Program Files (x86)\WarThunder
2015-04-06 16:54 - 2015-02-03 13:04 - 00000000 ____D () C:\Program Files (x86)\Diablo III
2015-04-06 16:48 - 2015-02-22 00:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Český překlad WoW
2015-04-05 16:36 - 2015-02-06 14:38 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\Skype
2015-04-04 11:06 - 2015-01-30 21:01 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2015-04-01 15:01 - 2010-11-21 11:27 - 00668376 _____ () C:\Windows\system32\perfh005.dat
2015-04-01 15:01 - 2010-11-21 11:27 - 00141004 _____ () C:\Windows\system32\perfc005.dat
2015-04-01 15:01 - 2009-07-14 07:13 - 01582262 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-29 11:03 - 2015-02-04 10:45 - 00000000 ___RD () C:\Users\Robocop\Desktop\Games
2015-03-24 18:06 - 2015-02-13 21:18 - 00000000 ____D () C:\Program Files (x86)\Valve
2015-03-15 20:27 - 2015-02-03 13:01 - 00000000 ____D () C:\Users\Robocop\AppData\Local\Battle.net
2015-03-14 00:27 - 2015-02-23 18:58 - 00000000 ____D () C:\ProgramData\Origin
2015-03-13 18:58 - 2015-02-25 19:57 - 00348672 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr
2015-03-13 18:58 - 2015-02-24 21:19 - 00348672 _____ () C:\Windows\SysWOW64\PnkBstrB.exe
2015-03-13 18:57 - 2015-02-24 21:19 - 00280904 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0
2015-03-13 18:04 - 2015-02-03 13:00 - 00000000 ____D () C:\Program Files (x86)\Battle.net
2015-03-12 17:41 - 2015-02-01 13:26 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\DAEMON Tools Lite
2015-03-11 16:12 - 2015-02-04 00:11 - 00000000 ____D () C:\Users\Robocop\Documents\My Games
2015-03-11 15:37 - 2015-01-29 21:33 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-03-11 15:35 - 2015-02-03 18:56 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games

==================== Files in the root of some directories =======

2013-02-26 08:28 - 2013-02-26 08:28 - 0027762 _____ () C:\Program Files (x86)\changes.txt
2013-02-26 08:56 - 2013-02-26 08:56 - 2391736 _____ (Beepa P/L) C:\Program Files (x86)\fraps.exe
2013-02-26 08:34 - 2013-02-26 08:34 - 0234168 _____ (Beepa P/L) C:\Program Files (x86)\fraps32.dll
2013-02-26 08:56 - 2013-02-26 08:56 - 0068792 _____ (Beepa P/L) C:\Program Files (x86)\fraps64.dat
2013-02-26 08:34 - 2013-02-26 08:34 - 0186552 _____ (Beepa P/L) C:\Program Files (x86)\fraps64.dll
2013-02-26 08:54 - 2013-02-26 08:54 - 0139776 _____ (Beepa P/L) C:\Program Files (x86)\frapslcd.dll
2015-02-17 19:34 - 2015-03-30 16:47 - 0000423 _____ () C:\Program Files (x86)\FRAPSLOG.TXT
2013-02-26 08:27 - 2013-02-26 08:27 - 0001894 _____ () C:\Program Files (x86)\README.HTM
2015-02-04 10:51 - 2015-02-04 10:51 - 0036079 _____ (Beepa Pty Ltd) C:\Program Files (x86)\uninstall.exe
2015-02-01 17:36 - 2013-04-23 17:58 - 0000084 _____ () C:\Program Files (x86)\update-DIRiptide.bat
2015-02-01 17:36 - 2012-06-15 19:24 - 0003153 _____ () C:\Program Files (x86)\visit-nosteam.ro.html
2015-04-08 18:49 - 2015-04-08 18:50 - 0029696 _____ () C:\Users\Robocop\AppData\Local\MSGBOX.EXE

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-03-26 21:22

==================== End Of Log ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Ztrácí se mi místo na disku.

#5 Příspěvek od Rudy »

Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Momos
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 08 dub 2015 17:35

Re: Ztrácí se mi místo na disku.

#6 Příspěvek od Momos »

[#] Služba Smazáno : Service Mgr PositiveFinds

***** [ Soubory / Složky ] *****

Složka Smazáno : C:\ProgramData\IHProtectUpDate
Složka Smazáno : C:\ProgramData\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602
Složka Smazáno : C:\Program Files (x86)\XTab
Složka Smazáno : C:\Program Files (x86)\Positive Finds
Složka Smazáno : C:\Program Files (x86)\Common Files\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602
Složka Smazáno : C:\Users\Robocop\AppData\Roaming\OpenCandy
Soubor Smazáno : C:\Program Files (x86)\Uninstall.exe

***** [ Naplánované úlohy ] *****


***** [ Zástupci ] *****


***** [ Registry ] *****

Klíč Smazáno : HKLM\SOFTWARE\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\{9C81D00A-3DAA-48AB-90C7-8252119ABB93}
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\{1DA17428-323D-48FF-857C-98CFEE48BFD5}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{30C85A3D-1D96-4589-B63F-91FB7EF45A41}
Klíč Smazáno : HKLM\SOFTWARE\Classes\Interface\{50F60937-910A-4C05-8E36-FE4E299191CF}
Klíč Smazáno : HKLM\SOFTWARE\Classes\TypeLib\{63C63464-1423-4FDB-BA5D-6F75F491C63E}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30C85A3D-1D96-4589-B63F-91FB7EF45A41}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Classes\Interface\{50F60937-910A-4C05-8E36-FE4E299191CF}
Data Obnoveno : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
Data Obnoveno : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\Google Chrome\shell\open\command
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Klíč Smazáno : HKLM\SOFTWARE\SupDp
Klíč Smazáno : HKLM\SOFTWARE\mystartsearchSoftware
Klíč Smazáno : HKLM\SOFTWARE\IHProtect
Klíč Smazáno : HKLM\SOFTWARE\PositiveFinds
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Positive Finds
Data Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - <local>

***** [ Prohlížeče ] *****

-\\ Internet Explorer v11.0.9600.17631

Nastavení Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Nastavení Obnoveno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]

-\\ Google Chrome v40.0.2214.94


-\\ Chromium v


*************************

AdwCleaner[R0].txt - [3587 bytů] - [08/04/2015 19:44:03]
AdwCleaner[S0].txt - [2886 bytů] - [08/04/2015 19:45:54]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2944 bytů] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Ztrácí se mi místo na disku.

#7 Příspěvek od Rudy »

Dejte nový log FRST.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Momos
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 08 dub 2015 17:35

Re: Ztrácí se mi místo na disku.

#8 Příspěvek od Momos »

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Robocop (administrator) on ROBOCOP-PC on 08-04-2015 20:56:50
Running from C:\Users\Robocop\Desktop
Loaded Profiles: Robocop & UpdatusUser (Available profiles: Robocop & UpdatusUser)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Akamai Technologies, Inc.) C:\Users\Robocop\AppData\Local\Akamai\netsession_win.exe
(Akamai Technologies, Inc.) C:\Users\Robocop\AppData\Local\Akamai\netsession_win.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(ZONER software) C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDGesture.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\btplayerctrl.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Overwolf LTD) C:\Program Files (x86)\Overwolf\Overwolf.exe
(Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.84.92.0\OverwolfHelper.exe
(Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.84.92.0\OverwolfHelper64.exe
(Overwolf LTD) C:\Program Files (x86)\Overwolf\0.84.92.0\Purplizer\Purplizer.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1332296 2015-01-30] (Microsoft Corporation)
HKLM\...\Run: [ASUSQuickGesture(x86)] => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe [20352 2012-09-11] (ASUSTeK Computer Inc.)
HKLM\...\Run: [ASUSTPLoader(x64)] => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe [169856 2012-09-11] (AsusTek)
HKLM\...\Run: [ASUSQuickGesture(x64)] => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe [22400 2012-09-11] (ASUSTeK Computer Inc.)
HKLM\...\Run: [BLEServicesCtrl] => C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe [178960 2012-03-15] (Intel Corporation)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2661672 2012-02-20] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12936848 2012-07-13] (Realtek Semiconductor)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-02-07] (Intel Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227648 2015-03-30] (AVAST Software)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [335232 2015-03-07] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2971226956-2283341039-1508386245-1000\...\Run: [Akamai NetSession Interface] => C:\Users\Robocop\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.)
HKU\S-1-5-21-2971226956-2283341039-1508386245-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-2971226956-2283341039-1508386245-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-2971226956-2283341039-1508386245-1000\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\Overwolf.exe [40688 2015-03-25] (Overwolf LTD)
HKU\S-1-5-21-2971226956-2283341039-1508386245-1000\...\Run: [Zoner Photo Studio Autoupdate] => C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTRAY.EXE [752736 2012-10-08] (ZONER software)
HKU\S-1-5-21-2971226956-2283341039-1508386245-1003\...\Run: [Akamai NetSession Interface] => C:\Users\Robocop\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [168616 2013-12-10] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [141336 2013-12-10] (NVIDIA Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-22] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-22] (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 194.228.41.65 194.228.41.113

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll [2015-03-11] ()
FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-14] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-03-11] ()
FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-22] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-22] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-14] ( Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll [2015-01-29] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll [2015-01-29] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-01-30]

Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\Robocop\AppData\Local\Google\Chrome\User Data\Profile 1
CHR Extension: (AdBlock) - C:\Users\Robocop\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-02-24]
CHR Extension: (Avast Online Security) - C:\Users\Robocop\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-01-30]
CHR Extension: (Google Wallet) - C:\Users\Robocop\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-30]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-01-30]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2015-01-30] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2015-01-30] (Avast Software)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23784 2015-01-30] (Microsoft Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2011-12-08] ()
S3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [366512 2015-01-30] (Microsoft Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1910640 2015-02-27] (Electronic Arts)
S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [998640 2015-03-25] (Overwolf LTD)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2015-02-25] ()
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2014-06-08] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [594704 2011-12-08] (Intel® Corporation)
S2 Update Mgr PositiveFinds; "C:\Program Files (x86)\Common Files\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602\updater.exe" [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2015-01-30] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [87912 2015-01-30] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2015-01-30] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2015-01-30] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2015-01-30] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2015-01-30] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2015-01-30] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2015-01-30] ()
S3 ATP; C:\Windows\System32\DRIVERS\AsusTP.sys [56704 2012-09-11] (ASUS Corporation)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2015-02-01] (Disc Soft Ltd)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [274696 2014-11-15] (Microsoft Corporation)
S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124560 2014-11-15] (Microsoft Corporation)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [271752 2015-01-30] (Avast Software)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-08 19:53 - 2015-04-08 19:53 - 00000197 _____ () C:\Windows\system32\2015-04-08-17-53-12.068-AvastVBoxSVC.exe-5764.log
2015-04-08 19:44 - 2015-04-08 19:46 - 00000000 ____D () C:\AdwCleaner
2015-04-08 19:43 - 2015-04-08 19:43 - 02217984 _____ () C:\Users\Robocop\Downloads\adwcleaner_4.201.exe
2015-04-08 19:20 - 2015-04-08 19:20 - 00000110 ____H () C:\Users\Robocop\Downloads\Blitz-Sport-Kung-Fu-Black-Wallpaper-1920x1080.jpg.uid-zps
2015-04-08 18:52 - 2015-04-08 18:53 - 00028133 _____ () C:\Users\Robocop\Desktop\Addition.txt
2015-04-08 18:51 - 2015-04-08 20:56 - 00015104 _____ () C:\Users\Robocop\Desktop\FRST.txt
2015-04-08 18:49 - 2015-04-08 18:49 - 00112640 _____ (forum.viry.cz) C:\Users\Robocop\Desktop\FRSTLauncher.exe
2015-04-08 18:45 - 2015-04-08 20:56 - 00000000 ____D () C:\FRST
2015-04-08 18:45 - 2015-04-08 18:45 - 02095616 _____ (Farbar) C:\Users\Robocop\Desktop\FRST64.exe
2015-04-08 16:20 - 2015-04-08 20:41 - 00000168 _____ () C:\Windows\setupact.log
2015-04-08 16:20 - 2015-04-08 16:20 - 00000000 _____ () C:\Windows\setuperr.log
2015-04-08 16:15 - 2015-04-08 16:15 - 00000197 _____ () C:\Windows\system32\2015-04-08-14-15-17.011-AvastVBoxSVC.exe-4988.log
2015-04-07 21:23 - 2015-04-07 21:23 - 00164437 _____ () C:\Users\Robocop\Downloads\GearScore+BonusScanner-3.3.5.rar
2015-04-07 21:21 - 2015-04-07 21:21 - 00097865 _____ () C:\Users\Robocop\Downloads\Gear-Score-(3.3.5).rar
2015-04-07 18:30 - 2015-04-07 18:31 - 00000000 ____D () C:\Users\Robocop\MINECRAFT
2015-04-07 17:52 - 2015-04-07 17:53 - 00000197 _____ () C:\Windows\system32\2015-04-07-15-52-49.087-AvastVBoxSVC.exe-264.log
2015-04-06 19:54 - 2015-04-06 19:54 - 00024357 _____ () C:\Users\Robocop\Downloads\[kickass.to]game.of.thrones.season.3.720p.bluray.x264.shaanig.torrent
2015-04-06 18:40 - 2015-04-06 18:40 - 00024351 _____ () C:\Users\Robocop\Downloads\[kickass.to]game.of.thrones.season.2.720p.bluray.x264.shaanig.torrent
2015-04-06 17:04 - 2015-04-06 17:05 - 00000000 ____D () C:\totalcmd
2015-04-06 17:04 - 2015-04-06 17:04 - 03722264 _____ (Ghisler Software GmbH) C:\Users\Robocop\Downloads\tcm851x32.exe
2015-04-06 17:04 - 2015-04-06 17:04 - 00000632 _____ () C:\Users\Robocop\Desktop\Total Commander.lnk
2015-04-06 17:04 - 2015-04-06 17:04 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2015-04-06 17:04 - 2015-04-06 17:04 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\GHISLER
2015-04-06 17:04 - 2014-04-23 08:51 - 00000545 _____ () C:\Windows\UC.PIF
2015-04-06 17:04 - 2014-04-23 08:51 - 00000545 _____ () C:\Windows\RAR.PIF
2015-04-06 17:04 - 2014-04-23 08:51 - 00000545 _____ () C:\Windows\PKZIP.PIF
2015-04-06 17:04 - 2014-04-23 08:51 - 00000545 _____ () C:\Windows\PKUNZIP.PIF
2015-04-06 17:04 - 2014-04-23 08:51 - 00000545 _____ () C:\Windows\LHA.PIF
2015-04-06 17:04 - 2014-04-23 08:51 - 00000545 _____ () C:\Windows\ARJ.PIF
2015-04-06 12:24 - 2015-04-06 12:25 - 00000197 _____ () C:\Windows\system32\2015-04-06-10-24-49.077-AvastVBoxSVC.exe-4856.log
2015-04-06 12:15 - 2015-04-06 12:15 - 00000000 ____D () C:\Users\Robocop\Downloads\Pointstone System Cleaner v7.3.6.329 Incl Crack [TorDigger]
2015-04-06 11:46 - 2015-04-07 17:45 - 00000000 ____D () C:\Program Files (x86)\Pointstone
2015-04-06 11:46 - 2015-04-06 17:02 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\Pointstone
2015-04-06 11:46 - 2015-04-06 11:46 - 00000000 ____D () C:\Windows\System32\Tasks\Pointstone
2015-04-06 11:45 - 2015-04-06 11:46 - 11616184 _____ (Pointstone Software, LLC) C:\Users\Robocop\Downloads\SystemCleanerSetup.exe
2015-04-05 16:33 - 2015-04-05 16:33 - 00000197 _____ () C:\Windows\system32\2015-04-05-14-33-30.089-AvastVBoxSVC.exe-2680.log
2015-04-05 12:57 - 2015-04-05 12:58 - 00000197 _____ () C:\Windows\system32\2015-04-05-10-57-51.083-AvastVBoxSVC.exe-4964.log
2015-04-04 15:53 - 2015-04-04 15:53 - 00000197 _____ () C:\Windows\system32\2015-04-04-13-53-05.015-AvastVBoxSVC.exe-4892.log
2015-04-04 11:07 - 2015-04-04 11:07 - 00000197 _____ () C:\Windows\system32\2015-04-04-09-07-35.061-AvastVBoxSVC.exe-2912.log
2015-04-03 19:53 - 2015-04-03 20:09 - 1093287430 _____ () C:\Users\Robocop\Downloads\Purpurové řeky 2 =2006-J.Reno-DVD-CZ.avi
2015-04-03 19:39 - 2015-04-03 19:39 - 00000197 _____ () C:\Windows\system32\2015-04-03-17-39-16.015-AvastVBoxSVC.exe-5524.log
2015-04-03 16:40 - 2015-04-03 16:40 - 00000197 _____ () C:\Windows\system32\2015-04-03-14-40-39.014-AvastVBoxSVC.exe-5144.log
2015-04-03 09:06 - 2015-04-03 09:06 - 00000197 _____ () C:\Windows\system32\2015-04-03-07-06-58.037-AvastVBoxSVC.exe-4384.log
2015-04-02 23:29 - 2015-04-02 23:29 - 00000197 _____ () C:\Windows\system32\2015-04-02-21-29-24.005-AvastVBoxSVC.exe-3308.log
2015-04-02 13:47 - 2015-04-02 13:47 - 00000794 _____ () C:\Users\Robocop\Downloads\p07.mid
2015-04-02 13:39 - 2015-04-02 13:39 - 00000431 _____ () C:\Users\Robocop\Downloads\p06.mid
2015-04-02 13:34 - 2015-04-02 13:34 - 00000419 _____ () C:\Users\Robocop\Downloads\p05.mid
2015-04-02 13:07 - 2015-04-02 13:07 - 00001003 _____ () C:\Users\Robocop\Downloads\p04 (1).mid
2015-04-02 12:57 - 2015-04-02 12:57 - 00000555 _____ () C:\Users\Robocop\Downloads\p03.mid
2015-04-02 10:26 - 2015-04-02 10:26 - 00000197 _____ () C:\Windows\system32\2015-04-02-08-26-15.080-AvastVBoxSVC.exe-4720.log
2015-04-01 20:55 - 2015-04-01 20:55 - 00002932 _____ () C:\Windows\System32\Tasks\{63074DDE-5866-42B2-963A-6D70DD71A370}
2015-04-01 20:51 - 2015-04-01 20:51 - 00002934 _____ () C:\Windows\System32\Tasks\{95181443-AA00-4E6E-A3AF-2C6162ABD2B9}
2015-04-01 20:46 - 2015-04-06 17:01 - 00000000 ____D () C:\Users\Robocop\AppData\Local\CrashDumps
2015-04-01 14:58 - 2015-04-01 14:58 - 00000197 _____ () C:\Windows\system32\2015-04-01-12-58-41.025-AvastVBoxSVC.exe-5140.log
2015-03-31 23:11 - 2015-04-01 20:40 - 00000000 ____D () C:\Users\Robocop\Downloads\Dr.-House-01x21-Tri-Pribehy-UP-FRD
2015-03-31 21:04 - 2015-03-31 21:04 - 00000000 ____D () C:\Users\Robocop\Documents\ZPS15
2015-03-31 21:04 - 2015-03-31 21:04 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\Zoner
2015-03-31 21:04 - 2015-03-31 21:04 - 00000000 ____D () C:\Users\Robocop\AppData\Local\Zoner
2015-03-31 21:04 - 2015-03-31 21:04 - 00000000 ____D () C:\ProgramData\Zoner
2015-03-31 21:03 - 2015-03-31 21:03 - 00001878 _____ () C:\Users\Public\Desktop\Zoner Photo Studio 15.lnk
2015-03-31 21:03 - 2015-03-31 21:03 - 00001878 _____ () C:\Users\Public\Desktop\Zoner Photo Studio 15 x64.lnk
2015-03-31 21:03 - 2015-03-31 21:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zoner Photo Studio 15
2015-03-31 21:01 - 2015-03-31 21:01 - 00000000 ____D () C:\Program Files\Zoner
2015-03-31 16:47 - 2015-03-31 16:47 - 00000197 _____ () C:\Windows\system32\2015-03-31-14-47-05.004-AvastVBoxSVC.exe-3752.log
2015-03-30 21:15 - 2015-04-02 15:02 - 00000000 ____D () C:\Users\Robocop\Downloads\Dr.-House-01x18-Nova-Generace-UP-FRD
2015-03-30 16:47 - 2015-04-04 19:50 - 00000000 ____D () C:\Program Files (x86)\Movies
2015-03-30 14:53 - 2015-03-30 14:53 - 00000197 _____ () C:\Windows\system32\2015-03-30-12-53-41.023-AvastVBoxSVC.exe-692.log
2015-03-29 12:13 - 2015-03-29 12:13 - 00000247 _____ () C:\Windows\system32\2015-03-29-10-13-37.087-aswFe.exe-2032.log
2015-03-29 11:58 - 2015-03-29 12:13 - 00000247 _____ () C:\Windows\system32\2015-03-29-09-58-37.016-aswFe.exe-748.log
2015-03-29 11:58 - 2015-03-29 11:58 - 00000197 _____ () C:\Windows\system32\2015-03-29-09-58-16.024-AvastVBoxSVC.exe-6272.log
2015-03-29 10:59 - 2015-03-29 10:59 - 00000000 ____D () C:\Users\Robocop\Downloads\KeiNett-Launcher-for-Minecraft-1.7.9
2015-03-29 10:58 - 2015-03-29 10:58 - 00000197 _____ () C:\Windows\system32\2015-03-29-08-58-24.065-AvastVBoxSVC.exe-6404.log
2015-03-28 10:38 - 2015-04-01 17:29 - 00000000 ____D () C:\Users\Robocop\Downloads\WoWCircle 5.4.8
2015-03-28 10:24 - 2015-03-28 10:24 - 00000197 _____ () C:\Windows\system32\2015-03-28-08-24-17.099-AvastVBoxSVC.exe-3184.log
2015-03-27 23:29 - 2015-03-27 23:29 - 00000197 _____ () C:\Windows\system32\2015-03-27-21-29-22.041-AvastVBoxSVC.exe-5640.log
2015-03-27 16:12 - 2015-03-27 16:12 - 00000197 _____ () C:\Windows\system32\2015-03-27-14-12-25.053-AvastVBoxSVC.exe-3756.log
2015-03-26 13:27 - 2015-03-26 13:27 - 00000197 _____ () C:\Windows\system32\2015-03-26-11-27-06.071-AvastVBoxSVC.exe-3668.log
2015-03-25 20:15 - 2015-03-25 20:35 - 1518874624 _____ () C:\Users\Robocop\Downloads\Hněv titánů - 2012 cz dab.fantas koko.avi
2015-03-25 20:06 - 2015-03-25 20:06 - 00000197 _____ () C:\Windows\system32\2015-03-25-18-06-22.030-AvastVBoxSVC.exe-4532.log
2015-03-25 15:59 - 2015-03-25 15:59 - 00000197 _____ () C:\Windows\system32\2015-03-25-13-59-47.056-AvastVBoxSVC.exe-4156.log
2015-03-24 17:53 - 2015-03-24 17:53 - 00000197 _____ () C:\Windows\system32\2015-03-24-15-53-04.017-AvastVBoxSVC.exe-5900.log
2015-03-23 17:15 - 2015-03-23 17:15 - 00000197 _____ () C:\Windows\system32\2015-03-23-15-15-26.022-AvastVBoxSVC.exe-5568.log
2015-03-22 23:38 - 2015-03-22 23:38 - 00952022 _____ () C:\Users\Robocop\Downloads\KeiNett-Launcher-for-Minecraft-1.7.9.rar
2015-03-22 23:30 - 2015-03-22 23:30 - 00003144 _____ () C:\Windows\System32\Tasks\{2CD4532C-94CC-4E2F-B8E8-0EAC198D6835}
2015-03-22 23:29 - 2015-03-22 23:29 - 00000000 ____D () C:\Users\Robocop\versions
2015-03-22 23:29 - 2015-03-22 23:29 - 00000000 ____D () C:\Users\Robocop\libraries
2015-03-22 23:28 - 2015-04-02 16:23 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\.minecraft
2015-03-22 23:22 - 2015-03-22 23:32 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\.mctitandinocraft
2015-03-22 23:15 - 2015-03-22 23:15 - 00000000 ____D () C:\ProgramData\Sun
2015-03-22 23:15 - 2015-03-22 23:14 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-03-22 23:14 - 2015-03-22 23:14 - 00000000 ____D () C:\ProgramData\Oracle
2015-03-22 23:14 - 2015-03-22 23:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-03-22 23:14 - 2015-03-22 23:14 - 00000000 ____D () C:\Program Files (x86)\Java
2015-03-22 23:12 - 2015-03-22 23:12 - 00561064 _____ (Oracle Corporation) C:\Users\Robocop\Downloads\chromeinstall-8u40.exe
2015-03-22 19:50 - 2015-04-02 10:31 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\TS3Client
2015-03-22 19:17 - 2015-04-08 19:55 - 00000000 ____D () C:\Users\Robocop\AppData\Local\Purplizer
2015-03-22 19:16 - 2015-03-22 19:16 - 00003726 _____ () C:\Windows\System32\Tasks\Overwolf Updater Task
2015-03-22 19:16 - 2015-03-22 19:16 - 00003296 _____ () C:\Windows\System32\Tasks\RunOW
2015-03-22 19:16 - 2015-03-22 19:16 - 00001973 _____ () C:\Users\Public\Desktop\Overwolf.lnk
2015-03-22 19:16 - 2015-03-22 19:16 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overwolf
2015-03-22 19:15 - 2015-03-30 19:16 - 00000000 ____D () C:\Program Files (x86)\Overwolf
2015-03-22 19:15 - 2015-03-22 19:16 - 00000000 ____D () C:\ProgramData\Overwolf
2015-03-22 19:14 - 2015-04-08 19:54 - 00000000 ____D () C:\Users\Robocop\AppData\Local\Overwolf
2015-03-22 19:14 - 2015-03-22 19:14 - 00000967 _____ () C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
2015-03-22 19:14 - 2015-03-22 19:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2015-03-22 19:14 - 2015-03-22 19:14 - 00000000 ____D () C:\Program Files\TeamSpeak 3 Client
2015-03-22 14:11 - 2015-03-22 14:12 - 00000197 _____ () C:\Windows\system32\2015-03-22-12-11-42.066-AvastVBoxSVC.exe-4640.log
2015-03-21 21:15 - 2015-03-24 22:42 - 00000000 ____D () C:\Users\Robocop\Downloads\Fyz
2015-03-21 21:15 - 2015-03-24 22:41 - 00000000 ____D () C:\Users\Robocop\Downloads\ZSV
2015-03-21 21:14 - 2015-03-23 20:42 - 00000000 ____D () C:\Users\Robocop\Downloads\Chemie
2015-03-21 21:13 - 2015-03-21 21:13 - 00000000 ____D () C:\Users\Robocop\Downloads\Bio
2015-03-21 21:12 - 2015-03-23 21:06 - 00000000 ____D () C:\Users\Robocop\Downloads\Zempl
2015-03-21 18:50 - 2015-03-21 18:50 - 00000197 _____ () C:\Windows\system32\2015-03-21-16-50-01.009-AvastVBoxSVC.exe-5460.log
2015-03-21 11:47 - 2015-03-21 11:47 - 00000197 _____ () C:\Windows\system32\2015-03-21-09-47-56.073-AvastVBoxSVC.exe-3868.log
2015-03-20 16:38 - 2015-03-20 16:38 - 00000197 _____ () C:\Windows\system32\2015-03-20-14-38-15.081-AvastVBoxSVC.exe-3016.log
2015-03-20 12:35 - 2015-03-20 12:35 - 00000197 _____ () C:\Windows\system32\2015-03-20-10-35-18.010-AvastVBoxSVC.exe-4372.log
2015-03-19 16:53 - 2015-03-19 16:53 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\NVIDIA
2015-03-19 16:52 - 2015-03-19 16:52 - 00001897 _____ () C:\Users\Public\Desktop\Blender.lnk
2015-03-19 16:52 - 2015-03-19 16:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blender Foundation
2015-03-19 16:50 - 2015-03-19 16:50 - 00000000 ____D () C:\Program Files\Blender Foundation
2015-03-19 16:47 - 2015-03-19 16:48 - 64542509 _____ () C:\Users\Robocop\Downloads\blender-2.73a-windows64.exe
2015-03-19 16:04 - 2015-04-08 19:56 - 00425804 _____ () C:\Windows\WindowsUpdate.log
2015-03-19 16:04 - 2015-03-19 16:05 - 00000197 _____ () C:\Windows\system32\2015-03-19-14-04-55.048-AvastVBoxSVC.exe-4688.log
2015-03-19 09:58 - 2015-03-19 09:58 - 00000197 _____ () C:\Windows\system32\2015-03-19-07-58-00.065-AvastVBoxSVC.exe-5228.log
2015-03-18 13:47 - 2015-03-18 13:47 - 00000197 _____ () C:\Windows\system32\2015-03-18-11-47-52.077-AvastVBoxSVC.exe-4880.log
2015-03-18 13:04 - 2015-03-18 13:04 - 00001003 _____ () C:\Users\Robocop\Downloads\p04.mid
2015-03-18 12:32 - 2015-03-18 12:33 - 00000197 _____ () C:\Windows\system32\2015-03-18-10-32-56.078-AvastVBoxSVC.exe-3080.log
2015-03-17 21:23 - 2015-03-17 23:02 - 908594630 _____ () C:\Users\Robocop\Downloads\Kung-Fu-panda-2-(cz).avi
2015-03-17 20:33 - 2015-03-17 20:49 - 1164068864 _____ () C:\Users\Robocop\Downloads\Ti druzí.avi
2015-03-17 17:19 - 2015-03-17 17:19 - 00000197 _____ () C:\Windows\system32\2015-03-17-15-19-24.030-AvastVBoxSVC.exe-3780.log
2015-03-17 10:30 - 2015-03-17 10:30 - 00000197 _____ () C:\Windows\system32\2015-03-17-08-30-18.015-AvastVBoxSVC.exe-4196.log
2015-03-17 00:19 - 2015-03-17 00:19 - 00000000 ____D () C:\Users\Robocop\AppData\Local\SKIDROW
2015-03-17 00:13 - 2015-03-17 00:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Catalyst
2015-03-16 23:58 - 2015-03-16 23:58 - 00000000 ____D () C:\Program Files (x86)\R.G. Catalyst
2015-03-16 13:31 - 2015-03-16 13:31 - 00000197 _____ () C:\Windows\system32\2015-03-16-11-31-03.017-AvastVBoxSVC.exe-4112.log
2015-03-16 09:42 - 2015-03-16 09:42 - 00000197 _____ () C:\Windows\system32\2015-03-16-07-42-07.073-AvastVBoxSVC.exe-3624.log
2015-03-15 15:59 - 2015-03-15 16:00 - 00000197 _____ () C:\Windows\system32\2015-03-15-13-59-27.078-AvastVBoxSVC.exe-4164.log
2015-03-14 19:31 - 2015-03-14 19:32 - 00000197 _____ () C:\Windows\system32\2015-03-14-17-31-32.094-AvastVBoxSVC.exe-5308.log
2015-03-14 10:06 - 2015-03-14 10:06 - 00000197 _____ () C:\Windows\system32\2015-03-14-08-06-16.076-AvastVBoxSVC.exe-4232.log
2015-03-13 23:20 - 2015-03-13 23:20 - 00000197 _____ () C:\Windows\system32\2015-03-13-21-20-29.012-AvastVBoxSVC.exe-5112.log
2015-03-13 18:04 - 2015-03-13 18:04 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\Macromedia
2015-03-13 15:54 - 2015-03-13 15:54 - 00000197 _____ () C:\Windows\system32\2015-03-13-13-54-55.063-AvastVBoxSVC.exe-4764.log
2015-03-12 17:39 - 2015-03-12 17:39 - 00000197 _____ () C:\Windows\system32\2015-03-12-15-39-13.076-AvastVBoxSVC.exe-4988.log
2015-03-11 22:10 - 2015-03-11 22:10 - 00000197 _____ () C:\Windows\system32\2015-03-11-20-10-16.071-AvastVBoxSVC.exe-3460.log
2015-03-11 17:51 - 2015-03-11 17:51 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-03-11 17:51 - 2015-03-11 17:51 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-03-11 17:51 - 2015-03-11 17:51 - 00000000 ____D () C:\Windows\system32\Macromed
2015-03-11 17:49 - 2015-03-11 17:51 - 00000000 ____D () C:\Users\Robocop\AppData\Local\Adobe
2015-03-11 17:40 - 2015-03-11 20:16 - 00000000 ____D () C:\Users\Robocop\Downloads\Compressed
2015-03-11 16:05 - 2015-03-11 16:05 - 00000000 ____D () C:\Users\Robocop\Downloads\Ubisoft
2015-03-11 15:23 - 2015-03-11 15:23 - 00000001 _____ () C:\Windows\SysWOW64\SI.bin
2015-03-11 14:43 - 2015-03-11 14:43 - 00000197 _____ () C:\Windows\system32\2015-03-11-12-43-28.013-AvastVBoxSVC.exe-1420.log
2015-03-11 12:35 - 2015-03-11 12:35 - 00000499 _____ () C:\Users\Robocop\Downloads\delkan.mid
2015-03-11 12:11 - 2015-03-11 12:11 - 00000197 _____ () C:\Windows\system32\2015-03-11-10-11-06.023-AvastVBoxSVC.exe-4492.log
2015-03-10 21:06 - 2015-03-10 21:06 - 00000197 _____ () C:\Windows\system32\2015-03-10-19-06-52.033-AvastVBoxSVC.exe-3276.log
2015-03-10 15:55 - 2015-03-10 15:55 - 00000197 _____ () C:\Windows\system32\2015-03-10-13-55-17.041-AvastVBoxSVC.exe-5128.log
2015-03-10 07:29 - 2015-03-10 07:30 - 00000197 _____ () C:\Windows\system32\2015-03-10-05-29-29.073-AvastVBoxSVC.exe-212.log
2015-03-09 15:50 - 2015-03-09 15:50 - 00000197 _____ () C:\Windows\system32\2015-03-09-13-50-10.021-AvastVBoxSVC.exe-3108.log

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-08 20:47 - 2015-01-29 21:42 - 00000954 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-08 20:47 - 2015-01-29 21:42 - 00000950 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-04-08 20:00 - 2009-07-14 06:45 - 00027984 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-04-08 20:00 - 2009-07-14 06:45 - 00027984 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-04-08 19:48 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-04-07 22:36 - 2015-01-31 14:29 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\vlc
2015-04-07 18:31 - 2015-01-29 20:45 - 00000000 ____D () C:\Users\Robocop
2015-04-07 18:30 - 2015-02-04 22:49 - 00098816 ___SH () C:\Users\Robocop\Thumbs.db
2015-04-06 21:12 - 2015-02-09 17:59 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\uTorrent
2015-04-06 17:02 - 2015-03-05 17:55 - 00000000 ____D () C:\Program Files (x86)\WarThunder
2015-04-06 16:54 - 2015-02-03 13:04 - 00000000 ____D () C:\Program Files (x86)\Diablo III
2015-04-06 16:48 - 2015-02-22 00:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Český překlad WoW
2015-04-05 16:36 - 2015-02-06 14:38 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\Skype
2015-04-04 11:06 - 2015-01-30 21:01 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2015-04-01 15:01 - 2010-11-21 11:27 - 00668376 _____ () C:\Windows\system32\perfh005.dat
2015-04-01 15:01 - 2010-11-21 11:27 - 00141004 _____ () C:\Windows\system32\perfc005.dat
2015-04-01 15:01 - 2009-07-14 07:13 - 01582262 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-29 11:03 - 2015-02-04 10:45 - 00000000 ___RD () C:\Users\Robocop\Desktop\Games
2015-03-24 18:06 - 2015-02-13 21:18 - 00000000 ____D () C:\Program Files (x86)\Valve
2015-03-15 20:27 - 2015-02-03 13:01 - 00000000 ____D () C:\Users\Robocop\AppData\Local\Battle.net
2015-03-14 00:27 - 2015-02-23 18:58 - 00000000 ____D () C:\ProgramData\Origin
2015-03-13 18:58 - 2015-02-25 19:57 - 00348672 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr
2015-03-13 18:58 - 2015-02-24 21:19 - 00348672 _____ () C:\Windows\SysWOW64\PnkBstrB.exe
2015-03-13 18:57 - 2015-02-24 21:19 - 00280904 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0
2015-03-13 18:04 - 2015-02-03 13:00 - 00000000 ____D () C:\Program Files (x86)\Battle.net
2015-03-12 17:41 - 2015-02-01 13:26 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\DAEMON Tools Lite
2015-03-11 16:12 - 2015-02-04 00:11 - 00000000 ____D () C:\Users\Robocop\Documents\My Games
2015-03-11 15:37 - 2015-01-29 21:33 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-03-11 15:35 - 2015-02-03 18:56 - 00000000 ____D () C:\Users\Robocop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games

==================== Files in the root of some directories =======

2013-02-26 08:28 - 2013-02-26 08:28 - 0027762 _____ () C:\Program Files (x86)\changes.txt
2013-02-26 08:56 - 2013-02-26 08:56 - 2391736 _____ (Beepa P/L) C:\Program Files (x86)\fraps.exe
2013-02-26 08:34 - 2013-02-26 08:34 - 0234168 _____ (Beepa P/L) C:\Program Files (x86)\fraps32.dll
2013-02-26 08:56 - 2013-02-26 08:56 - 0068792 _____ (Beepa P/L) C:\Program Files (x86)\fraps64.dat
2013-02-26 08:34 - 2013-02-26 08:34 - 0186552 _____ (Beepa P/L) C:\Program Files (x86)\fraps64.dll
2013-02-26 08:54 - 2013-02-26 08:54 - 0139776 _____ (Beepa P/L) C:\Program Files (x86)\frapslcd.dll
2015-02-17 19:34 - 2015-03-30 16:47 - 0000423 _____ () C:\Program Files (x86)\FRAPSLOG.TXT
2013-02-26 08:27 - 2013-02-26 08:27 - 0001894 _____ () C:\Program Files (x86)\README.HTM
2015-02-01 17:36 - 2013-04-23 17:58 - 0000084 _____ () C:\Program Files (x86)\update-DIRiptide.bat
2015-02-01 17:36 - 2012-06-15 19:24 - 0003153 _____ () C:\Program Files (x86)\visit-nosteam.ro.html

Some content of TEMP:
====================
C:\Users\Robocop\AppData\Local\Temp\Quarantine.exe
C:\Users\Robocop\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-03-26 21:22

==================== End Of Log ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Ztrácí se mi místo na disku.

#9 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [335232 2015-03-07] (Oracle Corporation)
HKU\S-1-5-21-2971226956-2283341039-1508386245-1003\...\Run: [Akamai NetSession Interface] => C:\Users\Robocop\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.)
C:\Users\Robocop\AppData\Local\Akamai
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
CHR dev: Chrome dev build detected! <======= ATTENTION
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Users\Robocop\AppData\Local\Temp
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Momos
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 08 dub 2015 17:35

Re: Ztrácí se mi místo na disku.

#10 Příspěvek od Momos »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-03-2015
Ran by Robocop at 2015-04-08 21:19:49 Run:1
Running from C:\Users\Robocop\Desktop
Loaded Profiles: Robocop & UpdatusUser (Available profiles: Robocop & UpdatusUser)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [335232 2015-03-07] (Oracle Corporation)
HKU\S-1-5-21-2971226956-2283341039-1508386245-1003\...\Run: [Akamai NetSession Interface] => C:\Users\Robocop\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.)
C:\Users\Robocop\AppData\Local\Akamai
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
CHR dev: Chrome dev build detected! <======= ATTENTION
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Users\Robocop\AppData\Local\Temp
End
*****************

HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully.
HKU\S-1-5-21-2971226956-2283341039-1508386245-1003\Software\Microsoft\Windows\CurrentVersion\Run\\Akamai NetSession Interface => value deleted successfully.

"C:\Users\Robocop\AppData\Local\Akamai" directory move:

Could not move "C:\Users\Robocop\AppData\Local\Akamai" directory. => Scheduled to move on reboot.

"HKLM\SOFTWARE\Policies\Google" => Key deleted successfully.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
CHR dev: Chrome dev build detected! <======= ATTENTION => Error: No automatic fix found for this entry.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.

"C:\Users\Robocop\AppData\Local\Temp" directory move:

Could not move "C:\Users\Robocop\AppData\Local\Temp" directory. => Scheduled to move on reboot.


=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2015-04-08 21:23:22)<=

C:\Users\Robocop\AppData\Local\Akamai => Is moved successfully.
C:\Users\Robocop\AppData\Local\Temp => Moved successfully.

==== End of Fixlog 21:23:24 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Ztrácí se mi místo na disku.

#11 Příspěvek od Rudy »

Smazáno. Ještě bych doporučil kompletní sken MBAM: http://www.malwarebytes.org/mbam.php . Dejte log, předem noc nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět