Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu (problém s připojením, stabilitou,..)

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
djtomekkk
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 06 bře 2013 17:50

Prosím o kontrolu logu (problém s připojením, stabilitou,..)

#1 Příspěvek od djtomekkk »

Ahoj, prosím o kontrolu logu. Již delší dobu mám problém s připojením, připojení není stabilní, "vypadává", restart routeru nepomáhá, restart adaptéru pro bezdrát také ne. Na jiných zařízeních (tablet, mobilní telefon, stolní počítač, jiný notebook) funguje bez problému.

Zařízení: Toshiba Satellite C55-A-1NU

Addition v příloze.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:07-11-2015
Ran by Tomek (administrator) on TOMAS (07-11-2015 21:42:09)
Running from C:\Users\Tomek\Desktop
Loaded Profiles: Tomek (Available Profiles: Tomek)
Platform: Windows 10 Pro (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
() C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Nero AG) C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
() C:\Program Files\Hercules\Audio\DJ Console Series\HerculesDJControlMP3.EXE
() C:\Windows\SysWOW64\PnkBstrA.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\CisTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Power Software Ltd) D:\Program Files (x86)\PowerISO\PWRISOVM.EXE
(Hercules®) C:\Program Files\Hercules\Audio\DJ Console Series\HDJSeriesCPL.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cis.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1026.13580.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [TCrdMain] => C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2556768 2013-08-17] (TOSHIBA Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634872 2015-09-01] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [396688 2015-07-29] ()
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3946184 2015-08-05] (Synaptics Incorporated)
HKLM\...\Run: [COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10}] => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [1427648 2015-08-05] (COMODO)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-10-31] (Apple Inc.)
HKLM-x32\...\Run: [PWRISOVM.EXE] => D:\Program Files (x86)\PowerISO\PWRISOVM.EXE [377368 2013-10-23] (Power Software Ltd)
HKLM-x32\...\Run: [Hercules DJ Series] => C:\Program Files\Hercules\Audio\DJ Console Series\HDJSeriesCPL.exe [639784 2009-10-23] (Hercules®)
HKU\S-1-5-21-3958314789-77703271-805275342-1001\...\Run: [deskPDF Creator] => D:\Program Files (x86)\Docudesk\deskPDF Studio X\deskPDFCreator.exe [2614072 2015-03-16] (Docudesk Corporation)
HKU\S-1-5-21-3958314789-77703271-805275342-1001\...\Run: [TomTomHOME.exe] => C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [248176 2015-07-07] (TomTom)
HKU\S-1-5-21-3958314789-77703271-805275342-1001\...\Run: [Steam] => D:\Program Files (x86)\Steam\steam.exe [2899136 2015-08-25] (Valve Corporation)
HKU\S-1-5-21-3958314789-77703271-805275342-1001\...\MountPoints2: G - "G:\Autorun\autorun.exe"
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [177088 2015-10-09] (NVIDIA Corporation)
AppInit_DLLs: ,C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [177088 2015-10-09] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\WINDOWS\SysWOW64\nvinit.dll => C:\WINDOWS\SysWOW64\nvinit.dll [155280 2015-10-09] (NVIDIA Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{7d93ded1-4a4e-48ff-8d14-a7c53b54ecc4}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{8cdae813-4539-4063-97d2-c51120f70b59}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{ca8e23c1-3161-417d-8ece-2fa88d2e0ce4}: [DhcpNameServer] 172.20.10.1

Internet Explorer:
==================
HKU\S-1-5-21-3958314789-77703271-805275342-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://us.yahoo.com?fr=fp-comodo
SearchScopes: HKU\S-1-5-21-3958314789-77703271-805275342-1001 -> DefaultScope {8EEAC88A-079B-4b2c-80C1-7836F79EB40A} URL = hxxp://us.search.yahoo.com/search?p={searchTerms}&fr=chr-comodo
SearchScopes: HKU\S-1-5-21-3958314789-77703271-805275342-1001 -> {8EEAC88A-079B-4b2c-80C1-7836F79EB40A} URL = hxxp://us.search.yahoo.com/search?p={searchTerms}&fr=chr-comodo
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> D:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-09-29] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> D:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-09-15] (Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-09-29] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-09-15] (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - D:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2015-02-17] (Microsoft Corporation)

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> D:\Program Files\Microsoft Office\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-10-08] ()
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-04-22] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-10-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-10-02] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> D:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> D:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-04-22] (Microsoft Corporation)

Chrome:
=======
CHR HomePage: Default -> hxxp://google.com/
CHR StartupUrls: Default -> "hxxps://www.facebook.com/?ref=logo","hxxp://us. ... fpc-comodo"
CHR Profile: C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Seznam Lištička - Email) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2015-10-03]
CHR Extension: (Adblock Plus) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-10-03]
CHR Extension: (Photo Zoom for Facebook) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\elioihkkcdgakfbahdoddophfngopipi [2015-10-03]
CHR Extension: (Záložky na iCloudu) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkepacicchenbjecpbpbclokcabebhah [2015-10-03]
CHR Extension: (Select all FB) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfpcloingkingimcaedjnppconpcjoan [2015-10-03]
CHR Extension: (Plants vs Zombies) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmcegpfdgcoclcdfkjahiimlikdpnina [2015-10-03]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-10-03]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-31] (Apple Inc.)
R2 CmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [5542472 2015-10-02] (COMODO)
S3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2265792 2015-08-05] (COMODO)
R2 dts_apo_service; C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe [19792 2013-09-10] ()
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155192 2015-08-27] (NVIDIA Corporation)
R2 HerculesDJControlMP3; C:\Program Files\Hercules\Audio\DJ Console Series\HerculesDJControlMP3.EXE [20480 2007-11-21] () [File not signed]
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [351120 2015-07-29] (Intel Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872504 2015-09-01] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544568 2015-08-27] (NVIDIA Corporation)
S3 Origin Client Service; D:\Program Files (x86)\Origin\OriginClientService.exe [1910128 2015-02-25] (Electronic Arts)
R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [75064 2015-10-04] ()
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [332800 2015-08-10] (IDT, Inc.) [File not signed]
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [246472 2015-08-05] (Synaptics Incorporated)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\Windows\System32\drivers\athw10x.sys [4325544 2015-06-28] (Qualcomm Atheros Communications, Inc.)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [237568 2015-07-10] (Microsoft Corporation)
S3 Bulk; C:\Windows\System32\Drivers\HDJBulk.sys [154112 2009-10-02] (© Guillemot R&D, 2009. All rights reserved.)
R1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys [21720 2015-08-05] (COMODO)
R1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [827632 2015-08-05] (COMODO)
R1 cmdhlp; C:\Windows\system32\DRIVERS\cmdhlp.sys [35056 2015-08-05] (COMODO)
S3 HDJMidi; C:\Windows\system32\DRIVERS\HDJMidi.sys [144896 2009-10-02] (© Guillemot R&D, 2009. All rights reserved.)
R1 inspect; C:\Windows\system32\DRIVERS\inspect.sys [127232 2015-08-05] (COMODO)
R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [193336 2015-08-24] (Intel Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19576 2015-08-27] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50472 2015-09-01] (NVIDIA Corporation)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [42696 2015-08-05] (Synaptics Incorporated)
R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [54424 2015-07-29] (Toshiba Corporation)
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-07 21:42 - 2015-11-07 21:44 - 00014888 _____ C:\Users\Tomek\Desktop\FRST.txt
2015-11-07 21:41 - 2015-11-07 21:42 - 00000000 ____D C:\FRST
2015-11-07 21:36 - 2015-11-07 21:36 - 00112640 _____ (forum.viry.cz) C:\Users\Tomek\Desktop\FRSTLauncher.exe
2015-11-07 21:33 - 2015-11-07 21:41 - 02198528 _____ (Farbar) C:\Users\Tomek\Desktop\FRST64.exe
2015-11-07 21:22 - 2015-11-07 21:22 - 00016148 _____ C:\WINDOWS\system32\TOMAS_Tomek_HistoryPrediction.bin
2015-11-06 14:52 - 2015-11-06 14:52 - 00000000 ____D C:\WINDOWS\LastGood
2015-11-04 13:50 - 2015-11-04 13:50 - 00000000 ____D C:\WINDOWS\LastGood.Tmp
2015-11-03 17:52 - 2015-11-03 18:13 - 00000000 ____D C:\Users\Tomek\Desktop\vans
2015-11-02 17:59 - 2015-11-02 18:56 - 00000000 ____D C:\Users\Tomek\AppData\Local\The Witcher
2015-11-02 17:59 - 2015-11-02 18:32 - 00000000 ____D C:\Users\Tomek\Documents\The Witcher
2015-11-02 17:52 - 2015-11-02 17:52 - 00001056 _____ C:\Users\Tomek\Desktop\Spustit hru Zaklínač .lnk
2015-11-02 17:51 - 2015-11-02 17:52 - 00000000 ____D C:\Users\Public\Documents\The Witcher
2015-10-31 18:47 - 2015-10-31 18:47 - 00001822 _____ C:\Users\Public\Desktop\iTunes.lnk
2015-10-31 18:47 - 2015-10-31 18:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2015-10-31 18:46 - 2015-10-31 18:47 - 00000000 ____D C:\Program Files\iTunes
2015-10-31 18:46 - 2015-10-31 18:46 - 00000000 ____D C:\Program Files\iPod
2015-10-31 18:46 - 2015-10-31 18:46 - 00000000 ____D C:\Program Files (x86)\iTunes
2015-10-31 17:25 - 2015-10-31 17:25 - 24595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 21871616 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 19326464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 18801664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 03621248 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 03248128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 02987520 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 02878512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 02675200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 02647040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 02639872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 02418688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 02179584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 02049536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 01918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 01602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 01392480 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 01068032 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00961376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00627712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-10-31 17:25 - 2015-10-31 17:25 - 00541024 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00459104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2015-10-31 17:25 - 2015-10-31 17:25 - 00453120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2015-10-25 19:02 - 2015-10-25 01:49 - 65543383 ____N C:\Users\Tomek\Desktop\IMG_2527.MOV
2015-10-25 19:02 - 2015-10-25 01:43 - 79429839 ____N C:\Users\Tomek\Desktop\IMG_2525.MOV
2015-10-25 19:02 - 2015-10-25 01:43 - 63282658 ____N C:\Users\Tomek\Desktop\IMG_2526.MOV
2015-10-25 19:02 - 2015-10-25 00:45 - 113351104 ____N C:\Users\Tomek\Desktop\IMG_2524.MOV
2015-10-25 19:01 - 2015-10-25 01:08 - 76575376 ____N C:\Users\Tomek\Desktop\IMG_2528.MOV
2015-10-25 19:01 - 2015-10-25 00:10 - 79666980 ____N C:\Users\Tomek\Desktop\IMG_2523.MOV
2015-10-25 14:35 - 2015-10-30 15:10 - 00000000 ____D C:\Users\Tomek\Desktop\vonzipper
2015-10-14 15:56 - 2015-10-14 15:43 - 20858360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 13027840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 11262976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 03580416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 01997336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 01594368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00928256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00766976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00650240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00625152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00579584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00574464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00525312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00466432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallHistoryClient.dll
2015-10-14 15:55 - 2015-10-14 15:43 - 03586560 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-10-14 15:55 - 2015-10-14 15:43 - 01423872 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2015-10-14 15:55 - 2015-10-14 15:43 - 01382400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-10-14 15:55 - 2015-10-14 15:43 - 01276416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2015-10-14 15:55 - 2015-10-14 15:43 - 01205248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2015-10-14 15:55 - 2015-10-14 15:43 - 00856576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2015-10-14 15:55 - 2015-10-14 15:43 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2015-10-14 15:55 - 2015-10-14 15:43 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2015-10-14 15:55 - 2015-10-14 15:43 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2015-10-14 15:55 - 2015-10-14 15:43 - 00498016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys
2015-10-14 15:55 - 2015-10-14 15:43 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
2015-10-14 15:55 - 2015-10-14 15:43 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll
2015-10-14 15:55 - 2015-10-14 15:43 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2015-10-14 15:55 - 2015-10-14 15:43 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 22322624 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 16708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 12504064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 08020320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-10-14 15:54 - 2015-10-14 15:43 - 07523840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 04792320 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 02573768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 01871360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 01294352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2015-10-14 15:54 - 2015-10-14 15:43 - 01123400 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2015-10-14 15:54 - 2015-10-14 15:43 - 01018568 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2015-10-14 15:54 - 2015-10-14 15:43 - 00980832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2015-10-14 15:54 - 2015-10-14 15:43 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 00858408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2015-10-14 15:54 - 2015-10-14 15:43 - 00826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 00796160 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 00771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 00757760 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 00078528 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2015-10-13 02:36 - 2015-10-21 18:50 - 00810488 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-10-13 02:36 - 2015-10-21 18:50 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-10-11 10:58 - 2015-10-11 13:57 - 00000000 ____D C:\Users\Tomek\Desktop\machac
2015-10-09 15:16 - 2015-10-09 15:16 - 00000000 ____D C:\Program Files\Bonjour
2015-10-09 15:16 - 2015-10-09 15:16 - 00000000 ____D C:\Program Files (x86)\Bonjour
2015-10-09 15:15 - 2015-10-09 15:15 - 00000000 ____D C:\WINDOWS\System32\Tasks\Apple
2015-10-09 15:15 - 2015-10-09 15:15 - 00000000 ____D C:\Program Files (x86)\Apple Software Update

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-07 21:25 - 2015-10-01 22:16 - 01474832 _____ C:\WINDOWS\system32\Drivers\sfi.dat
2015-11-07 21:24 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-11-07 21:01 - 2015-10-02 19:56 - 00000962 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-11-07 21:01 - 2015-10-02 19:56 - 00000958 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-11-07 20:52 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\sru
2015-11-07 16:43 - 2015-02-11 18:27 - 00004186 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{17DCE6EA-D174-41BA-8ADD-652DDF3709AB}
2015-11-07 16:05 - 2015-08-05 16:18 - 00937616 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe
2015-11-07 16:02 - 2015-08-14 19:05 - 00031976 _____ C:\WINDOWS\system32\nvinfo.pb
2015-11-07 15:24 - 2015-08-05 16:17 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-11-07 11:28 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-11-06 20:23 - 2015-02-12 19:44 - 00000000 ____D C:\Users\Tomek\AppData\Roaming\vlc
2015-11-06 20:07 - 2015-07-10 13:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-11-06 20:06 - 2015-07-10 10:05 - 00131072 ___SH C:\WINDOWS\system32\config\BBI
2015-11-06 19:50 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\rescache
2015-11-06 00:43 - 2015-02-11 20:21 - 00000000 ____D C:\Users\Tomek\AppData\Roaming\BitTorrent
2015-11-04 11:58 - 2015-02-11 18:15 - 00000000 ____D C:\Users\Tomek\AppData\Local\Packages
2015-11-04 09:37 - 2015-08-05 16:40 - 02088774 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-11-04 09:37 - 2015-07-10 17:02 - 00982910 _____ C:\WINDOWS\system32\perfh005.dat
2015-11-04 09:37 - 2015-07-10 17:02 - 00235196 _____ C:\WINDOWS\system32\perfc005.dat
2015-11-04 09:30 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-11-03 19:18 - 2015-08-05 16:54 - 00002354 _____ C:\Users\Tomek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-11-03 19:18 - 2015-08-05 16:54 - 00000000 ___RD C:\Users\Tomek\OneDrive
2015-11-03 00:18 - 2015-10-04 16:21 - 00214520 _____ C:\WINDOWS\SysWOW64\PnkBstrB.xtr
2015-11-03 00:18 - 2015-10-04 16:21 - 00214520 _____ C:\WINDOWS\SysWOW64\PnkBstrB.exe
2015-11-02 12:10 - 2015-10-04 15:53 - 00088440 _____ C:\WINDOWS\system32\Drivers\fvstore.dat
2015-11-01 02:16 - 2015-05-13 15:12 - 00000000 ____D C:\Users\Tomek\Desktop\písák
2015-10-31 18:46 - 2015-02-11 18:23 - 00000000 ____D C:\Program Files\Common Files\Apple
2015-10-31 17:53 - 2015-07-10 11:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-10-25 12:11 - 2015-07-10 13:20 - 00352088 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-10-22 21:04 - 2015-10-02 19:59 - 00002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-10-14 16:29 - 2015-02-11 21:37 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-10-14 16:29 - 2015-02-11 20:08 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-10-14 16:20 - 2013-08-22 14:25 - 00000167 _____ C:\WINDOWS\win.ini
2015-10-14 16:13 - 2015-02-14 18:32 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-10-14 16:08 - 2015-02-14 18:32 - 143481208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-10-13 02:32 - 2015-07-10 12:04 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2015-10-13 02:32 - 2015-07-10 12:04 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-10-13 02:31 - 2015-07-10 17:05 - 00000000 ____D C:\Program Files\Windows Journal
2015-10-13 02:31 - 2015-07-10 12:04 - 00000000 ___SD C:\WINDOWS\system32\F12
2015-10-13 02:31 - 2015-07-10 12:04 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2015-10-13 02:31 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2015-10-13 02:31 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2015-10-13 02:31 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\Provisioning
2015-10-13 02:31 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\L2Schemas
2015-10-12 12:41 - 2015-02-18 12:03 - 00001260 _____ C:\coinst.txt
2015-10-12 12:41 - 2015-02-18 12:02 - 00270848 _____ (CANON INC.) C:\WINDOWS\system32\CNMLM83.DLL
2015-10-12 12:39 - 2015-07-10 11:59 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbscan.sys
2015-10-12 12:39 - 2015-02-18 12:02 - 00018944 _____ (Canon Inc.) C:\WINDOWS\system32\cnco160.dll
2015-10-12 12:38 - 2015-02-18 12:02 - 01321984 _____ (CANON INC.) C:\WINDOWS\system32\CNCC160.DLL
2015-10-12 12:38 - 2015-02-18 12:02 - 00089600 _____ (Canon Inc.) C:\WINDOWS\system32\CNCL160.DLL
2015-10-12 12:38 - 2015-02-18 12:02 - 00049664 _____ (CANON INC.) C:\WINDOWS\system32\CNCI160.DLL
2015-10-09 15:41 - 2015-10-07 22:10 - 00031560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvpciflt.sys
2015-10-09 15:41 - 2015-09-22 18:20 - 03344672 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 37748880 _____ C:\WINDOWS\SysWOW64\nvcompiler.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 30518928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 22972560 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 18514616 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 16159608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 16009800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 15892904 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 14510584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 13274560 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 12972336 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 11842680 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 11139216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2015-10-09 15:41 - 2015-07-13 19:45 - 02955832 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 02360976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 02163856 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 01165192 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 01061192 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 01052488 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 00991336 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 00983368 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 00976528 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 00177088 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 00155280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 00150832 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll
2015-10-09 15:41 - 2015-07-13 19:45 - 00128512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll
2015-10-09 15:16 - 2015-08-12 15:03 - 00096528 _____ (Apple Inc.) C:\WINDOWS\system32\dns-sd.exe
2015-10-09 15:16 - 2015-08-12 15:03 - 00084240 _____ (Apple Inc.) C:\WINDOWS\SysWOW64\dns-sd.exe
2015-10-09 15:15 - 2015-02-11 18:23 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-11-04 16:02

==================== End of FRST.txt ============================
Přílohy
Addition.rar
(13.17 KiB) Staženo 47 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu (problém s připojením, stabilitou

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

djtomekkk
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 06 bře 2013 17:50

Re: Prosím o kontrolu logu (problém s připojením, stabilitou

#3 Příspěvek od djtomekkk »

Díky za odpověď.

Log z ADW:


# AdwCleaner v5.019 - Logfile created 08/11/2015 at 22:51:23
# Updated 08/11/2015 by Xplode
# Database : 2015-11-08.2 [Server]
# Operating system : Windows 10 Pro (x64)
# Username : Tomek - TOMAS
# Running from : C:\Users\Tomek\Desktop\adwcleaner_5.019.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****

[-] Folder Deleted : C:\ProgramData\apn

***** [ Files ] *****


***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****


***** [ Web browsers ] *****

[-] [C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : trovi.com
[-] [C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : okresnisoud.cz

*************************

:: "Tracing" keys removed
:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [931 bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu (problém s připojením, stabilitou

#4 Příspěvek od Rudy »

Dejte nový log FRST.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

djtomekkk
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 06 bře 2013 17:50

Re: Prosím o kontrolu logu (problém s připojením, stabilitou

#5 Příspěvek od djtomekkk »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:07-11-2015
Ran by Tomek (administrator) on TOMAS (09-11-2015 22:26:29)
Running from C:\Users\Tomek\Desktop
Loaded Profiles: Tomek (Available Profiles: Tomek)
Platform: Windows 10 Pro (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
() C:\Program Files\Hercules\Audio\DJ Console Series\HerculesDJControlMP3.EXE
() C:\Windows\SysWOW64\PnkBstrA.exe
() C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe
(TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
(Nero AG) C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Power Software Ltd) D:\Program Files (x86)\PowerISO\PWRISOVM.EXE
(Hercules®) C:\Program Files\Hercules\Audio\DJ Console Series\HDJSeriesCPL.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1026.13580.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [TCrdMain] => C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2556768 2013-08-17] (TOSHIBA Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634872 2015-09-01] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [396688 2015-07-29] ()
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3946184 2015-08-05] (Synaptics Incorporated)
HKLM\...\Run: [COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10}] => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [1427648 2015-08-05] (COMODO)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-10-31] (Apple Inc.)
HKLM-x32\...\Run: [PWRISOVM.EXE] => D:\Program Files (x86)\PowerISO\PWRISOVM.EXE [377368 2013-10-23] (Power Software Ltd)
HKLM-x32\...\Run: [Hercules DJ Series] => C:\Program Files\Hercules\Audio\DJ Console Series\HDJSeriesCPL.exe [639784 2009-10-23] (Hercules®)
HKU\S-1-5-21-3958314789-77703271-805275342-1001\...\Run: [deskPDF Creator] => D:\Program Files (x86)\Docudesk\deskPDF Studio X\deskPDFCreator.exe [2614072 2015-03-16] (Docudesk Corporation)
HKU\S-1-5-21-3958314789-77703271-805275342-1001\...\Run: [TomTomHOME.exe] => C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [248176 2015-07-07] (TomTom)
HKU\S-1-5-21-3958314789-77703271-805275342-1001\...\Run: [Steam] => D:\Program Files (x86)\Steam\steam.exe [2899136 2015-08-25] (Valve Corporation)
HKU\S-1-5-21-3958314789-77703271-805275342-1001\...\MountPoints2: G - "G:\Autorun\autorun.exe"
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [177088 2015-10-09] (NVIDIA Corporation)
AppInit_DLLs: ,C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [177088 2015-10-09] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\WINDOWS\SysWOW64\nvinit.dll => C:\WINDOWS\SysWOW64\nvinit.dll [155280 2015-10-09] (NVIDIA Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{7d93ded1-4a4e-48ff-8d14-a7c53b54ecc4}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{8cdae813-4539-4063-97d2-c51120f70b59}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{ca8e23c1-3161-417d-8ece-2fa88d2e0ce4}: [DhcpNameServer] 172.20.10.1

Internet Explorer:
==================
HKU\S-1-5-21-3958314789-77703271-805275342-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://us.yahoo.com?fr=fp-comodo
SearchScopes: HKU\S-1-5-21-3958314789-77703271-805275342-1001 -> DefaultScope {8EEAC88A-079B-4b2c-80C1-7836F79EB40A} URL = hxxp://us.search.yahoo.com/search?p={searchTerms}&fr=chr-comodo
SearchScopes: HKU\S-1-5-21-3958314789-77703271-805275342-1001 -> {8EEAC88A-079B-4b2c-80C1-7836F79EB40A} URL = hxxp://us.search.yahoo.com/search?p={searchTerms}&fr=chr-comodo
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> D:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-09-29] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> D:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-09-15] (Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-09-29] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-09-15] (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - D:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2015-02-17] (Microsoft Corporation)

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> D:\Program Files\Microsoft Office\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-10-08] ()
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-04-22] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-10-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-10-02] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> D:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> D:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-04-22] (Microsoft Corporation)

Chrome:
=======
CHR HomePage: Default -> hxxp://google.com/
CHR StartupUrls: Default -> "hxxps://www.facebook.com/?ref=logo","hxxp://us. ... fpc-comodo"
CHR Profile: C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Seznam Lištička - Email) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2015-10-03]
CHR Extension: (Adblock Plus) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-10-03]
CHR Extension: (Photo Zoom for Facebook) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\elioihkkcdgakfbahdoddophfngopipi [2015-10-03]
CHR Extension: (Záložky na iCloudu) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkepacicchenbjecpbpbclokcabebhah [2015-10-03]
CHR Extension: (Select all FB) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfpcloingkingimcaedjnppconpcjoan [2015-10-03]
CHR Extension: (Plants vs Zombies) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmcegpfdgcoclcdfkjahiimlikdpnina [2015-10-03]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-10-03]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-31] (Apple Inc.)
R2 CmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [5542472 2015-10-02] (COMODO)
R3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2265792 2015-08-05] (COMODO)
R2 dts_apo_service; C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe [19792 2013-09-10] ()
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155192 2015-08-27] (NVIDIA Corporation)
R2 HerculesDJControlMP3; C:\Program Files\Hercules\Audio\DJ Console Series\HerculesDJControlMP3.EXE [20480 2007-11-21] () [File not signed]
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [351120 2015-07-29] (Intel Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872504 2015-09-01] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544568 2015-08-27] (NVIDIA Corporation)
S3 Origin Client Service; D:\Program Files (x86)\Origin\OriginClientService.exe [1910128 2015-02-25] (Electronic Arts)
R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [75064 2015-10-04] ()
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [332800 2015-08-10] (IDT, Inc.) [File not signed]
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [246472 2015-08-05] (Synaptics Incorporated)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\Windows\System32\drivers\athw10x.sys [4325544 2015-06-28] (Qualcomm Atheros Communications, Inc.)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [237568 2015-07-10] (Microsoft Corporation)
S3 Bulk; C:\Windows\System32\Drivers\HDJBulk.sys [154112 2009-10-02] (© Guillemot R&D, 2009. All rights reserved.)
R1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys [21720 2015-08-05] (COMODO)
R1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [827632 2015-08-05] (COMODO)
R1 cmdhlp; C:\Windows\system32\DRIVERS\cmdhlp.sys [35056 2015-08-05] (COMODO)
S3 HDJMidi; C:\Windows\system32\DRIVERS\HDJMidi.sys [144896 2009-10-02] (© Guillemot R&D, 2009. All rights reserved.)
R1 inspect; C:\Windows\system32\DRIVERS\inspect.sys [127232 2015-08-05] (COMODO)
R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [193336 2015-08-24] (Intel Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19576 2015-08-27] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50472 2015-09-01] (NVIDIA Corporation)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [42696 2015-08-05] (Synaptics Incorporated)
R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [54424 2015-07-29] (Toshiba Corporation)
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-09 22:24 - 2015-11-09 22:25 - 00029696 _____ C:\Users\Tomek\AppData\Local\MSGBOX.EXE
2015-11-09 22:24 - 2015-11-09 22:25 - 00015327 _____ C:\Users\Tomek\AppData\Local\LM.bat
2015-11-09 22:23 - 2015-11-09 22:24 - 00112640 _____ (forum.viry.cz) C:\Users\Tomek\Desktop\FRSTLauncher.exe
2015-11-09 20:30 - 2015-11-09 20:30 - 00016148 _____ C:\WINDOWS\system32\TOMAS_Tomek_HistoryPrediction.bin
2015-11-09 20:07 - 2015-11-09 20:07 - 00000000 _____ C:\WINDOWS\setuperr.log
2015-11-09 20:07 - 2015-11-09 20:07 - 00000000 _____ C:\WINDOWS\setupact.log
2015-11-09 16:51 - 2015-11-09 16:51 - 126776016 _____ C:\Users\Tomek\Desktop\TC80091200D.exe
2015-11-09 16:12 - 2015-11-09 16:15 - 00000000 ____D C:\Users\Tomek\Desktop\Nová složka
2015-11-09 06:22 - 2015-11-09 21:43 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log
2015-11-08 22:50 - 2015-11-08 22:51 - 00000000 ____D C:\AdwCleaner
2015-11-08 22:40 - 2015-11-08 22:50 - 01712128 _____ C:\Users\Tomek\Desktop\adwcleaner_5.019.exe
2015-11-07 21:47 - 2015-11-07 21:47 - 00013490 _____ C:\Users\Tomek\Desktop\Addition.rar
2015-11-07 21:44 - 2015-11-07 21:44 - 00062543 _____ C:\Users\Tomek\Desktop\Addition.txt
2015-11-07 21:42 - 2015-11-09 22:26 - 00015010 _____ C:\Users\Tomek\Desktop\FRST.txt
2015-11-07 21:41 - 2015-11-09 22:26 - 00000000 ____D C:\FRST
2015-11-07 21:33 - 2015-11-07 21:41 - 02198528 _____ (Farbar) C:\Users\Tomek\Desktop\FRST64.exe
2015-11-06 14:52 - 2015-11-06 14:52 - 00000000 ____D C:\WINDOWS\LastGood
2015-11-04 13:50 - 2015-11-04 13:50 - 00000000 ____D C:\WINDOWS\LastGood.Tmp
2015-11-03 17:52 - 2015-11-03 18:13 - 00000000 ____D C:\Users\Tomek\Desktop\vans
2015-11-02 17:59 - 2015-11-02 18:56 - 00000000 ____D C:\Users\Tomek\AppData\Local\The Witcher
2015-11-02 17:59 - 2015-11-02 18:32 - 00000000 ____D C:\Users\Tomek\Documents\The Witcher
2015-11-02 17:52 - 2015-11-02 17:52 - 00001056 _____ C:\Users\Tomek\Desktop\Spustit hru Zaklínač .lnk
2015-11-02 17:51 - 2015-11-02 17:52 - 00000000 ____D C:\Users\Public\Documents\The Witcher
2015-10-31 18:47 - 2015-10-31 18:47 - 00001822 _____ C:\Users\Public\Desktop\iTunes.lnk
2015-10-31 18:47 - 2015-10-31 18:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2015-10-31 18:46 - 2015-10-31 18:47 - 00000000 ____D C:\Program Files\iTunes
2015-10-31 18:46 - 2015-10-31 18:46 - 00000000 ____D C:\Program Files\iPod
2015-10-31 18:46 - 2015-10-31 18:46 - 00000000 ____D C:\Program Files (x86)\iTunes
2015-10-31 17:25 - 2015-10-31 17:25 - 24595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 21871616 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 19326464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 18801664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 03621248 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 03248128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 02987520 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 02878512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 02675200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 02647040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 02639872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 02418688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 02179584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 02049536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 01918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 01602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 01392480 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 01068032 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00961376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00627712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-10-31 17:25 - 2015-10-31 17:25 - 00541024 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00459104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2015-10-31 17:25 - 2015-10-31 17:25 - 00453120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2015-10-31 17:25 - 2015-10-31 17:25 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2015-10-25 19:02 - 2015-10-25 01:49 - 65543383 ____N C:\Users\Tomek\Desktop\IMG_2527.MOV
2015-10-25 19:02 - 2015-10-25 01:43 - 79429839 ____N C:\Users\Tomek\Desktop\IMG_2525.MOV
2015-10-25 19:02 - 2015-10-25 01:43 - 63282658 ____N C:\Users\Tomek\Desktop\IMG_2526.MOV
2015-10-25 19:02 - 2015-10-25 00:45 - 113351104 ____N C:\Users\Tomek\Desktop\IMG_2524.MOV
2015-10-25 19:01 - 2015-10-25 01:08 - 76575376 ____N C:\Users\Tomek\Desktop\IMG_2528.MOV
2015-10-25 19:01 - 2015-10-25 00:10 - 79666980 ____N C:\Users\Tomek\Desktop\IMG_2523.MOV
2015-10-25 14:35 - 2015-10-30 15:10 - 00000000 ____D C:\Users\Tomek\Desktop\vonzipper
2015-10-14 15:56 - 2015-10-14 15:43 - 20858360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 13027840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 11262976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 03580416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 01997336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 01594368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00928256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00766976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00650240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00625152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00579584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00574464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00525312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00466432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll
2015-10-14 15:56 - 2015-10-14 15:43 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallHistoryClient.dll
2015-10-14 15:55 - 2015-10-14 15:43 - 03586560 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-10-14 15:55 - 2015-10-14 15:43 - 01423872 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2015-10-14 15:55 - 2015-10-14 15:43 - 01382400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-10-14 15:55 - 2015-10-14 15:43 - 01276416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2015-10-14 15:55 - 2015-10-14 15:43 - 01205248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2015-10-14 15:55 - 2015-10-14 15:43 - 00856576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2015-10-14 15:55 - 2015-10-14 15:43 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2015-10-14 15:55 - 2015-10-14 15:43 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2015-10-14 15:55 - 2015-10-14 15:43 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2015-10-14 15:55 - 2015-10-14 15:43 - 00498016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys
2015-10-14 15:55 - 2015-10-14 15:43 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
2015-10-14 15:55 - 2015-10-14 15:43 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll
2015-10-14 15:55 - 2015-10-14 15:43 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2015-10-14 15:55 - 2015-10-14 15:43 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 22322624 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 16708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 12504064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 08020320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-10-14 15:54 - 2015-10-14 15:43 - 07523840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 04792320 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 02573768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 01871360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 01294352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2015-10-14 15:54 - 2015-10-14 15:43 - 01123400 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2015-10-14 15:54 - 2015-10-14 15:43 - 01018568 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2015-10-14 15:54 - 2015-10-14 15:43 - 00980832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2015-10-14 15:54 - 2015-10-14 15:43 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 00858408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2015-10-14 15:54 - 2015-10-14 15:43 - 00826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 00796160 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 00771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 00757760 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-10-14 15:54 - 2015-10-14 15:43 - 00078528 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2015-10-13 02:36 - 2015-10-21 18:50 - 00810488 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-10-13 02:36 - 2015-10-21 18:50 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-10-11 10:58 - 2015-10-11 13:57 - 00000000 ____D C:\Users\Tomek\Desktop\machac

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-09 22:19 - 2015-10-01 22:16 - 01474832 _____ C:\WINDOWS\system32\Drivers\sfi.dat
2015-11-09 22:17 - 2015-10-04 15:53 - 00088440 _____ C:\WINDOWS\system32\Drivers\fvstore.dat
2015-11-09 22:13 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-11-09 22:01 - 2015-10-02 19:56 - 00000962 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-11-09 21:37 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\sru
2015-11-09 21:01 - 2015-10-02 19:56 - 00000958 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-11-09 20:47 - 2015-02-11 18:27 - 00004186 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{17DCE6EA-D174-41BA-8ADD-652DDF3709AB}
2015-11-09 20:10 - 2015-08-05 16:18 - 00937616 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe
2015-11-09 20:06 - 2015-08-14 19:05 - 00031976 _____ C:\WINDOWS\system32\nvinfo.pb
2015-11-09 14:30 - 2015-08-05 16:17 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-11-09 06:20 - 2015-07-10 13:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-11-09 06:19 - 2015-07-10 10:05 - 00131072 ___SH C:\WINDOWS\system32\config\BBI
2015-11-08 21:44 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-11-06 20:23 - 2015-02-12 19:44 - 00000000 ____D C:\Users\Tomek\AppData\Roaming\vlc
2015-11-06 19:50 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\rescache
2015-11-06 00:43 - 2015-02-11 20:21 - 00000000 ____D C:\Users\Tomek\AppData\Roaming\BitTorrent
2015-11-04 11:58 - 2015-02-11 18:15 - 00000000 ____D C:\Users\Tomek\AppData\Local\Packages
2015-11-04 09:37 - 2015-08-05 16:40 - 02088774 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-11-04 09:37 - 2015-07-10 17:02 - 00982910 _____ C:\WINDOWS\system32\perfh005.dat
2015-11-04 09:37 - 2015-07-10 17:02 - 00235196 _____ C:\WINDOWS\system32\perfc005.dat
2015-11-04 09:30 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-11-03 19:18 - 2015-08-05 16:54 - 00002354 _____ C:\Users\Tomek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-11-03 19:18 - 2015-08-05 16:54 - 00000000 ___RD C:\Users\Tomek\OneDrive
2015-11-03 00:18 - 2015-10-04 16:21 - 00214520 _____ C:\WINDOWS\SysWOW64\PnkBstrB.xtr
2015-11-03 00:18 - 2015-10-04 16:21 - 00214520 _____ C:\WINDOWS\SysWOW64\PnkBstrB.exe
2015-11-01 02:16 - 2015-05-13 15:12 - 00000000 ____D C:\Users\Tomek\Desktop\písák
2015-10-31 18:46 - 2015-02-11 18:23 - 00000000 ____D C:\Program Files\Common Files\Apple
2015-10-31 17:53 - 2015-07-10 11:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-10-25 12:11 - 2015-07-10 13:20 - 00352088 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-10-22 21:04 - 2015-10-02 19:59 - 00002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-10-14 16:29 - 2015-02-11 21:37 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-10-14 16:29 - 2015-02-11 20:08 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-10-14 16:20 - 2013-08-22 14:25 - 00000167 _____ C:\WINDOWS\win.ini
2015-10-14 16:13 - 2015-02-14 18:32 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-10-14 16:08 - 2015-02-14 18:32 - 143481208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-10-13 02:32 - 2015-07-10 12:04 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2015-10-13 02:32 - 2015-07-10 12:04 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-10-13 02:31 - 2015-07-10 17:05 - 00000000 ____D C:\Program Files\Windows Journal
2015-10-13 02:31 - 2015-07-10 12:04 - 00000000 ___SD C:\WINDOWS\system32\F12
2015-10-13 02:31 - 2015-07-10 12:04 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2015-10-13 02:31 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2015-10-13 02:31 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2015-10-13 02:31 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\Provisioning
2015-10-13 02:31 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\L2Schemas
2015-10-12 12:41 - 2015-02-18 12:03 - 00001260 _____ C:\coinst.txt
2015-10-12 12:41 - 2015-02-18 12:02 - 00270848 _____ (CANON INC.) C:\WINDOWS\system32\CNMLM83.DLL
2015-10-12 12:39 - 2015-07-10 11:59 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbscan.sys
2015-10-12 12:39 - 2015-02-18 12:02 - 00018944 _____ (Canon Inc.) C:\WINDOWS\system32\cnco160.dll
2015-10-12 12:38 - 2015-02-18 12:02 - 01321984 _____ (CANON INC.) C:\WINDOWS\system32\CNCC160.DLL
2015-10-12 12:38 - 2015-02-18 12:02 - 00089600 _____ (Canon Inc.) C:\WINDOWS\system32\CNCL160.DLL
2015-10-12 12:38 - 2015-02-18 12:02 - 00049664 _____ (CANON INC.) C:\WINDOWS\system32\CNCI160.DLL

==================== Files in the root of some directories =======

2015-11-09 22:24 - 2015-11-09 22:25 - 0015327 _____ () C:\Users\Tomek\AppData\Local\LM.bat
2015-11-09 22:24 - 2015-11-09 22:25 - 0029696 _____ () C:\Users\Tomek\AppData\Local\MSGBOX.EXE

Some files in TEMP:
====================
C:\Users\Tomek\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-11-04 16:02

==================== End of FRST.txt ============================
Naposledy upravil(a) djtomekkk dne 09 lis 2015 22:29, celkem upraveno 1 x.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu (problém s připojením, stabilitou

#6 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
HKU\S-1-5-21-3958314789-77703271-805275342-1001\...\MountPoints2: G - "G:\Autorun\autorun.exe"
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
C:\Users\Tomek\AppData\Local\Temp
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

djtomekkk
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 06 bře 2013 17:50

Re: Prosím o kontrolu logu (problém s připojením, stabilitou

#7 Příspěvek od djtomekkk »

Log po fixu:


Fix result of Farbar Recovery Scan Tool (x64) Version:07-11-2015
Ran by Tomek (2015-11-09 22:30:09) Run:1
Running from C:\Users\Tomek\Desktop
Loaded Profiles: Tomek (Available Profiles: Tomek)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
HKU\S-1-5-21-3958314789-77703271-805275342-1001\...\MountPoints2: G - "G:\Autorun\autorun.exe"
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
C:\Users\Tomek\AppData\Local\Temp
End
*****************

"HKU\S-1-5-21-3958314789-77703271-805275342-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\G" => key removed successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat => moved successfully
C:\Users\Tomek\AppData\Local\Temp => moved successfully

==== End of Fixlog 22:30:10 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu (problém s připojením, stabilitou

#8 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět