Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Hostitel služby vytěžuje disk

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
SteveOxford
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 27 lis 2015 20:55

Hostitel služby vytěžuje disk

#1 Příspěvek od SteveOxford »

Zdravím,
poslední dobou se mi stává, že mi od startu PC hostitel služby zatěžuje disk na 99% různě se to mění, mám win 10.

Prosím, poraďte.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Hostitel služby vytěžuje disk

#2 Příspěvek od Rudy »

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

SteveOxford
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 27 lis 2015 20:55

Re: Hostitel služby vytěžuje disk

#3 Příspěvek od SteveOxford »

Díky za reakci, tady to je:

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:29-11-2015
Ran by Stanley (administrator) on MASTER (30-11-2015 19:01:46)
Running from C:\Users\Stanley\Desktop
Loaded Profiles: Stanley & Alinka (Available Profiles: Stanley & Alinka & DefaultAppPool)
Platform: Windows 10 Pro (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\WTabletServiceCon.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
() C:\Program Files\DAZ 3D\Content Management Service\ContentManagementServer.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe
(Mr. John aka japamd) C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe
(Realtek) C:\Program Files (x86)\Hama\Wireless LAN RTL8192SU\RtlService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Gigabyte Technology CO., LTD.) C:\Program Files (x86)\GIGABYTE\smart6\timelock\TimeMgmtDaemon.exe
(Crawler Group) C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.0\ToolbarUpdater.exe
() C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.0\loggingserver.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler64.exe
(Gigabyte Technology CO., LTD.) C:\Program Files (x86)\GIGABYTE\smart6\timelock\AlarmClock.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TabletUser.exe
(Wacom Technology) C:\Program Files\Tablet\Pen\WacomHost.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_Tablet.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TouchUser.exe
(Realtek Semiconductor Corp.) C:\Program Files (x86)\Hama\Wireless LAN RTL8192SU\RtWLan.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
() C:\Program Files (x86)\AVG Web TuneUp\vprot.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Windows\SoftwareDistribution\Download\197e5f81f41f9be143011423cc2e87ec\WindowsUpdateBox.exe
(Microsoft Corporation) C:\$WINDOWS.~BT\Sources\SetupHost.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera_crashreporter.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera.exe
(MY.COM B.V.) C:\Users\Stanley\AppData\Local\MyComGames\MyComGames.exe
(MY.COM B.V.) C:\Users\Stanley\AppData\Local\MyComGames\MyComGames.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13885696 2015-06-24] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2757424 2015-11-12] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [SpywareTerminatorShield] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe [3884368 2015-09-02] (Crawler Group, LLC)
HKLM\...\Run: [SpywareTerminatorUpdater] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe [5473104 2015-09-02] (Crawler Group, LLC)
HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [BambooCore] => C:\Program Files (x86)\Bamboo Dock\BambooCore.exe [646744 2012-10-16] ()
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5579624 2015-08-03] (LogMeIn Inc.)
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguix.exe [1136552 2015-11-12] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Av\avgui.exe [3826600 2015-10-30] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Web TuneUp\vprot.exe [2817424 2015-11-10] ()
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\...\Run: [Steam] => D:\Program Files (x86)\Steam\steam.exe [3011152 2015-11-10] (Valve Corporation)
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\...\Run: [EvolveClient] => C:\Program Files\Echobit\Evolve\EvolveClient.exe [3334016 2015-07-23] (Echobit LLC)
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\...\Run: [MyComGames] => C:\Users\Stanley\AppData\Local\MyComGames\MyComGames.exe [4650952 2015-11-30] (MY.COM B.V.)
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\...\RunOnce: [Uninstall C:\Users\Stanley\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Stanley\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\...\RunOnce: [Uninstall C:\Users\Stanley\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Stanley\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64"
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\...\RunOnce: [Uninstall C:\Users\Stanley\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Stanley\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64"
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\...\RunOnce: [Uninstall C:\Users\Stanley\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Stanley\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\amd64"
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\...\MountPoints2: {c2ff9510-5eb3-11e4-bd35-1c6f65352380} - "E:\SETUP.EXE"
HKU\S-1-5-21-3962638898-2331993480-1807031265-1003\...\Run: [Dropbox Update] => C:\Users\Alinka\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-18] (Dropbox, Inc.)
HKU\S-1-5-21-3962638898-2331993480-1807031265-1003\...\Run: [BingSvc] => C:\Users\Alinka\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-11-13] (© 2015 Microsoft Corporation)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stanley\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stanley\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stanley\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stanley\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stanley\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stanley\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stanley\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stanley\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => No File
Startup: C:\Users\Alinka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-11-12]
ShortcutTarget: Dropbox.lnk -> C:\Users\Stanley\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GIGABYTE OC_GURU.lnk [2015-05-11]
ShortcutTarget: GIGABYTE OC_GURU.lnk -> C:\Program Files (x86)\GIGABYTE\GIGABYTE OC_GURU II\OC_GURU.exe (GIGABYTE Technology Co.,Ltd.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{03fd1e45-357c-4218-aa56-e6ae2aff1595}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{20e9f00c-1aa2-4ad6-9576-d91a03c7d041}: [DhcpNameServer] 192.168.137.1
Tcpip\..\Interfaces\{cf8132c6-78cd-42b7-ac8c-540bf1448b0d}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://mysearch.avg.com/?cid={CA2DD553-1656-42E5-AE6B-59B4A3B91E0F}&mid=26030044bb1547ccb84fcd2623d1ca73-9a74c5f4f61a10bdc6e844f99444e6abad5dd9ef&lang=cs&ds=AVG&coid=avgtbavg&cmpid=0615pi&pr=fr&d=2015-11-07 06:25:25&v=4.1.8.599&pid=wtu&sg=&sap=hp
HKU\S-1-5-21-3962638898-2331993480-1807031265-1003\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com
SearchScopes: HKU\S-1-5-21-3962638898-2331993480-1807031265-1000 -> DefaultScope {80E02386-CF9A-4F7C-9FCF-0150979E392B} URL = hxxps://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3962638898-2331993480-1807031265-1000 -> {80E02386-CF9A-4F7C-9FCF-0150979E392B} URL = hxxps://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3962638898-2331993480-1807031265-1000 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={CA2DD553-1656-42E5-AE6B-59B4A3B91E0F}&mid=26030044bb1547ccb84fcd2623d1ca73-9a74c5f4f61a10bdc6e844f99444e6abad5dd9ef&lang=cs&ds=AVG&coid=avgtbavg&cmpid=0615pi&pr=fr&d=2015-11-07 06:25:25&v=4.1.8.599&pid=wtu&sg=&sap=dsp&q={searchTerms}
BHO: PriceSparrow BHO -> {2A965DDC-C64C-4562-862B-5EE487A7DEFC} -> C:\Program Files (x86)\pricesparrow\Internet Explorer\pricesparrow64.dll [2015-03-25] ()
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-10-20] (Microsoft Corporation)
BHO: GBHO.BHO -> {45d30484-7ded-43d9-957a-d2fd1f046511} -> C:\Windows\system32\mscoree.dll [2015-07-10] (Microsoft Corporation)
BHO: Spyware Terminator 2015 Internet Guard -> {82A76710-4F98-4957-92BE-99648A4E2475} -> C:\Program Files (x86)\Spyware Terminator\STInternetGuard64.dll [2015-09-02] (Crawler Group, LLC)
BHO: AVG Web TuneUp -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> C:\Program Files\AVG Web TuneUp\4.2.0.886\AVG Web TuneUp.dll [2015-11-10] (AVG)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-10-13] (Microsoft Corporation)
BHO-x32: PriceSparrow BHO -> {2A965DDC-C64C-4562-862B-5EE487A7DEFC} -> C:\Program Files (x86)\pricesparrow\Internet Explorer\pricesparrow32.dll [2015-03-25] ()
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-10-20] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-01-30] (Oracle Corporation)
BHO-x32: Spyware Terminator 2015 Internet Guard -> {82A76710-4F98-4957-92BE-99648A4E2475} -> C:\Program Files (x86)\Spyware Terminator\STInternetGuard.dll [2015-09-02] (Crawler Group, LLC)
BHO-x32: AVG Web TuneUp -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> C:\Program Files (x86)\AVG Web TuneUp\4.2.0.886\AVG Web TuneUp.dll [2015-11-10] (AVG)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-10-13] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-30] (Oracle Corporation)
Toolbar: HKLM - Smart Recovery 2 - {1d09c093-f71e-43c3-b948-19316cbd695e} - C:\Windows\system32\mscoree.dll [2015-07-10] (Microsoft Corporation)
DPF: HKLM-x32 {1ABA5FAC-1417-422B-BA82-45C35E2C908B} hxxp://kitchenplanner.ikea.com/CZ/Core/Player/2020PlayerAX_IKEA_Win32.cab

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_19_0_0_245.dll [2015-11-11] ()
FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll [No File]
FF Plugin: @esn/npbattlelog,version=2.7.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.0\npbattlelogx64.dll [2015-03-10] (EA Digital Illusions CE AB)
FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
FF Plugin: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-11] ()
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\40.2.0\\npsitesafety.dll [No File]
FF Plugin-x32: @esn/npbattlelog,version=2.4.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll [No File]
FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll [No File]
FF Plugin-x32: @esn/npbattlelog,version=2.7.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.0\npbattlelog.dll [2015-03-10] (EA Digital Illusions CE AB)
FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-20] (Google)
FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-01-30] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-01-30] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-03-31] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-11-02] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-11-02] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.)
FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-09-27] (Adobe Systems Inc.)
FF Plugin-x32: wacom.com/WacomTabletPlugin -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
FF Plugin HKU\S-1-5-21-3962638898-2331993480-1807031265-1000: @my.com/Games -> C:\Users\Stanley\AppData\Local\MyComGames\NPMyComDetector.dll [2015-11-30] (My.com, Inc)
FF Plugin HKU\S-1-5-21-3962638898-2331993480-1807031265-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Stanley\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-06-19] (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-3962638898-2331993480-1807031265-1000: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [2015-04-01] ()
FF Plugin HKU\S-1-5-21-3962638898-2331993480-1807031265-1003: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Alinka\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2009-11-30] (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-03-31] (Microsoft Corporation)

Chrome:
=======
CHR Profile: C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-05]
CHR Extension: (Dokumenty Google) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-05]
CHR Extension: (Disk Google) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-19]
CHR Extension: (YouTube) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-27]
CHR Extension: (Vyhledávání Google) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-19]
CHR Extension: (Dark Vibe) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkckeanhmkjaechlhllmapjaaglgpcbj [2015-03-06]
CHR Extension: (Tabulky Google) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-05]
CHR Extension: (Dokumenty Google offline) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-29]
CHR Extension: (AdBlock) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-11-29]
CHR Extension: (Audio EQ) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfafdlnjaliaghpjdajmlcnnblkgcefh [2015-07-20]
CHR Extension: (Recording Studio . BZ) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbkljjmmneldbdcfflaelejfhijbchbe [2015-10-19]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-24]
CHR Extension: (Gmail) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-28]
CHR HKU\S-1-5-21-3962638898-2331993480-1807031265-1003\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [595376 2015-10-30] (AVG Technologies CZ, s.r.o.)
S2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagent.exe [3815648 2015-10-30] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1046952 2015-11-12] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe [579776 2015-10-30] (AVG Technologies CZ, s.r.o.)
R2 DAZContentManagementService; C:\Program Files\DAZ 3D\Content Management Service\ContentManagementServer.exe [22528 2011-05-05] () [File not signed]
S3 EvoSvc; C:\Program Files\Echobit\Evolve\EvoSvc.exe [1583488 2015-06-03] (Echobit LLC)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [520416 2014-01-28] (Futuremark)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1156400 2015-11-12] (NVIDIA Corporation)
S3 ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [160256 2011-08-30] (Intel Corporation) [File not signed]
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-03] (Macrovision Corporation) [File not signed]
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2015-08-03] (LogMeIn, Inc.)
R2 MSMQ; C:\Windows\system32\mqsvc.exe [26112 2015-08-12] (Microsoft Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872688 2015-11-12] (NVIDIA Corporation)
R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [8133424 2015-11-12] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5915440 2015-11-12] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2099720 2015-11-16] (Electronic Arts)
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2015-03-03] ()
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2015-03-18] ()
R2 RadeonPro Support Service; C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe [20608 2013-11-04] (Mr. John aka japamd) [File not signed]
S2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [187072 2015-02-05] ()
R2 Realtek11nSU; C:\Program Files (x86)\Hama\Wireless LAN RTL8192SU\RtlService.exe [36864 2010-04-16] (Realtek) [File not signed]
R2 RzKLService; C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe [129168 2015-01-26] (Razer Inc.)
R2 Smart TimeLock; C:\Program Files (x86)\GIGABYTE\Smart6\Timelock\TimeMgmtDaemon.exe [114688 2009-10-13] (Gigabyte Technology CO., LTD.) [File not signed]
R2 ST2012_Svc; C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe [3037520 2015-09-02] (Crawler Group)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5613328 2015-07-29] (TeamViewer GmbH)
R2 vToolbarUpdater40.2.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.0\ToolbarUpdater.exe [1921424 2015-11-10] (AVG Secure Search)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
R2 WTabletServiceCon; C:\Program Files\Tablet\Pen\WTabletServiceCon.exe [656664 2014-08-19] (Wacom Technology, Corp.)
R2 WtuSystemSupport; C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe [1165200 2015-11-10] ()

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S0 Avgboota; C:\Windows\System32\DRIVERS\avgboota.sys [23152 2015-09-09] (AVG Technologies CZ, s.r.o.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [197040 2015-08-10] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [313776 2015-10-19] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [298416 2015-08-20] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [284080 2015-10-21] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [398256 2015-08-14] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [255408 2015-10-21] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [42416 2015-08-10] (AVG Technologies CZ, s.r.o.)
R1 Avgwfpa; C:\Windows\system32\DRIVERS\avgwfpa.sys [306608 2015-10-08] (AVG Technologies CZ, s.r.o.)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-10-28] (Disc Soft Ltd)
S3 GVTDrv64; C:\Windows\GVTDrv64.sys [30528 2015-06-01] ()
S3 hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2015-08-03] (LogMeIn Inc.)
R1 HWiNFO32; C:\WINDOWS\system32\drivers\HWiNFO64A.SYS [27552 2015-09-15] (REALiX(tm))
R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [31648 2015-05-24] (REALiX(tm))
S3 MotioninJoyXFilter; C:\Windows\System32\drivers\MijXfilt.sys [115272 2012-03-25] (MotioninJoy) [File not signed]
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19760 2015-11-12] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [587264 2015-07-10] (Realtek )
R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [37184 2015-02-05] (Razer, Inc.)
R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [129600 2015-02-04] (Razer, Inc.)
S3 RZSURROUNDVADService; C:\Windows\System32\drivers\RzSurroundVAD.sys [40640 2015-02-09] (Windows (R) Win 7 DDK provider)
R3 ScpVBus; C:\Windows\System32\drivers\ScpVBus.sys [39168 2013-05-05] (Scarlet.Crush Productions)
R2 sp_rsdrv2; C:\Windows\System32\DRIVERS\stflt.sys [51496 2011-08-24] (Windows (R) Win 7 DDK provider)
S3 TrojanKillerDriver; C:\Windows\System32\DRIVERS\gtkdrv.sys [16640 2014-09-25] (Windows (R) Win 7 DDK provider)
S3 tsusbhub; C:\Windows\System32\drivers\tsusbhub.sys [117248 2010-11-21] (Microsoft Corporation) [File not signed]
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
U3 idsvc; no ImagePath
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
U3 wpcsvc; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-30 19:01 - 2015-11-30 19:03 - 00031528 _____ C:\Users\Stanley\Desktop\FRST.txt
2015-11-30 19:01 - 2015-11-30 19:01 - 00015327 _____ C:\Users\Stanley\Desktop\LM.bat
2015-11-30 19:01 - 2015-11-30 19:01 - 00000000 ____D C:\FRST
2015-11-30 19:00 - 2015-11-30 19:01 - 00112640 _____ (forum.viry.cz) C:\Users\Stanley\Desktop\FRSTLauncher.exe
2015-11-30 18:59 - 2015-11-30 19:01 - 02350080 _____ (Farbar) C:\Users\Stanley\Desktop\FRST64.exe
2015-11-30 17:45 - 2015-11-30 17:45 - 00016148 _____ C:\WINDOWS\system32\MASTER_Stanley_HistoryPrediction.bin
2015-11-30 17:37 - 2015-11-30 17:37 - 00000126 _____ C:\Users\Stanley\Desktop\Armored Warfare.url
2015-11-30 17:37 - 2015-11-30 17:37 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Armored Warfare MyCom Beta
2015-11-30 17:04 - 2015-11-30 17:06 - 00000000 ____D C:\Users\Stanley\AppData\Local\MyComGames
2015-11-30 17:04 - 2015-11-30 17:04 - 00002135 _____ C:\Users\Stanley\Desktop\My.com Game Center.lnk
2015-11-30 17:04 - 2015-11-30 17:04 - 00000142 _____ C:\Users\Stanley\Desktop\Armored Warfare MyCom Beta.url
2015-11-30 17:04 - 2015-11-30 17:04 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My.com Games
2015-11-28 15:01 - 2015-11-30 16:10 - 00000000 ____D C:\WINDOWS\Panther
2015-11-27 22:15 - 2015-11-27 22:15 - 00000000 ____D C:\Users\Stanley\Documents\DyingLight
2015-11-27 22:04 - 2015-11-27 22:04 - 00000783 _____ C:\Users\Stanley\Desktop\Dying Light.lnk
2015-11-27 22:04 - 2015-11-27 22:04 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\Dying Light
2015-11-24 19:34 - 2015-11-24 19:34 - 00000000 ____D C:\Users\Stanley\Desktop\Nová složka (2)
2015-11-21 21:13 - 2015-11-24 09:12 - 00000706 _____ C:\Users\Stanley\Desktop\Watch Dogs.lnk
2015-11-21 21:13 - 2015-11-21 21:13 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\Watch Dogs
2015-11-21 21:06 - 2014-06-21 18:22 - 20153113 _____ C:\Users\Stanley\Desktop\patch.dat
2015-11-21 21:06 - 2014-06-21 18:22 - 00001060 _____ C:\Users\Stanley\Desktop\patch.fat
2015-11-21 21:00 - 2015-11-12 19:37 - 00112712 _____ C:\WINDOWS\system32\NvRtmpStreamer64.dll
2015-11-21 14:01 - 2015-11-21 20:17 - 00000000 ____D C:\Users\Stanley\Documents\The Witcher 3
2015-11-21 12:47 - 2015-11-21 12:47 - 00001067 _____ C:\Users\Public\Desktop\The Witcher® 3 - Wild Hunt.lnk
2015-11-21 12:47 - 2015-11-21 12:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Witcher® 3 - Wild Hunt [GOG.com]
2015-11-19 10:58 - 2015-11-19 10:58 - 00016148 _____ C:\WINDOWS\system32\MASTER_Alinka_HistoryPrediction.bin
2015-11-18 10:02 - 2015-11-18 10:02 - 00238532 _____ C:\Users\Alinka\Downloads\KSCB035_sylabus_2015.pdf
2015-11-17 13:11 - 2015-11-17 13:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 4
2015-11-16 23:33 - 2015-11-24 16:45 - 00000000 ____D C:\ProgramData\Spyware Terminator
2015-11-16 23:33 - 2015-11-16 23:36 - 00000000 ____D C:\Program Files (x86)\Spyware Terminator
2015-11-16 23:33 - 2015-11-16 23:33 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\Spyware Terminator
2015-11-16 23:33 - 2015-11-16 23:33 - 00000000 ____D C:\Users\Stanley\AppData\LocalLow\Spyware Terminator
2015-11-16 23:33 - 2015-11-16 23:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spyware Terminator 2015
2015-11-16 21:19 - 2015-11-16 21:26 - 00000000 ____D C:\Users\Alinka\Desktop\obrázky japonština
2015-11-15 00:38 - 2015-11-15 00:38 - 00055861 _____ C:\Users\Alinka\Downloads\A2C4.tmp
2015-11-15 00:33 - 2015-11-15 00:33 - 00055861 _____ C:\Users\Alinka\Downloads\4621.tmp
2015-11-14 13:23 - 2015-11-14 13:25 - 364883968 _____ C:\Users\Alinka\Desktop\Bones.S10E19.HDTV.XviD-FUM-cz-titulky.avi
2015-11-13 19:21 - 2015-11-30 15:16 - 00003128 _____ C:\WINDOWS\System32\Tasks\MSIAfterburner
2015-11-13 12:25 - 2015-11-13 12:35 - 00000000 ____D C:\Users\Alinka\Desktop\adventní kalendář
2015-11-12 14:13 - 2015-11-12 14:13 - 00003048 _____ C:\WINDOWS\System32\Tasks\0615piUpdateInfo
2015-11-12 14:13 - 2015-11-12 14:13 - 00000000 ____D C:\ProgramData\Avg_Update_0615pi
2015-11-12 09:48 - 2015-11-12 09:48 - 00000000 ____D C:\Users\Alinka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-11-11 14:28 - 2015-11-05 06:15 - 00541024 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2015-11-11 14:28 - 2015-11-05 06:14 - 00459104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2015-11-11 14:28 - 2015-11-05 06:13 - 00577888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2015-11-11 14:28 - 2015-11-05 06:06 - 03621248 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-11-11 14:28 - 2015-11-05 05:56 - 00116064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys
2015-11-11 14:28 - 2015-11-05 05:56 - 00025280 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2015-11-11 14:28 - 2015-11-05 05:30 - 00961376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2015-11-11 14:28 - 2015-11-05 05:24 - 02878512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-11-11 14:28 - 2015-11-05 05:23 - 00762888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2015-11-11 14:28 - 2015-11-05 05:23 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2015-11-11 14:28 - 2015-11-05 05:20 - 21873664 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-11-11 14:28 - 2015-11-05 05:18 - 03248128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-11-11 14:28 - 2015-11-05 05:10 - 02987520 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2015-11-11 14:28 - 2015-11-05 05:07 - 01068032 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-11-11 14:28 - 2015-11-05 05:03 - 02180608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-11-11 14:28 - 2015-11-05 04:59 - 02675200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2015-11-11 14:28 - 2015-11-05 04:58 - 00627712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2015-11-11 14:28 - 2015-11-05 04:56 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-11-11 14:28 - 2015-11-05 04:55 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2015-11-11 14:28 - 2015-11-05 04:54 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2015-11-11 14:28 - 2015-11-05 04:47 - 19326464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-11-11 14:28 - 2015-11-05 04:42 - 02647040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2015-11-11 14:28 - 2015-11-05 04:40 - 01918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-11-11 14:28 - 2015-11-05 04:35 - 18803712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2015-11-11 14:28 - 2015-11-05 04:35 - 02639872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2015-11-11 14:28 - 2015-11-05 04:33 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-11-11 14:28 - 2015-11-05 04:33 - 00650240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-11-11 14:28 - 2015-11-05 04:30 - 00767488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2015-11-11 14:28 - 2015-11-05 04:28 - 11262976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-11-11 14:28 - 2015-11-05 04:27 - 02049536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2015-11-11 14:28 - 2015-11-05 04:27 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2015-11-11 14:28 - 2015-11-05 04:23 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll
2015-11-11 14:27 - 2015-11-05 05:18 - 00539728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2015-11-11 14:27 - 2015-11-05 04:34 - 00311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2015-11-11 14:24 - 2015-11-05 06:15 - 08020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-11-11 14:24 - 2015-11-05 06:11 - 01392480 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-11-11 14:24 - 2015-11-05 06:06 - 00966416 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2015-11-11 14:24 - 2015-11-05 06:01 - 00607408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2015-11-11 14:24 - 2015-11-05 05:56 - 01083072 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2015-11-11 14:24 - 2015-11-05 05:18 - 24597504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-11-11 14:24 - 2015-11-05 05:17 - 02418688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-11-11 14:24 - 2015-11-05 05:12 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\internetmail.dll
2015-11-11 14:24 - 2015-11-05 05:11 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2015-11-11 14:24 - 2015-11-05 05:10 - 12504064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-11-11 14:24 - 2015-11-05 05:06 - 00453120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2015-11-11 14:24 - 2015-11-05 05:05 - 01602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-11-11 14:24 - 2015-11-05 05:05 - 00826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-11-11 14:24 - 2015-11-05 05:03 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2015-11-11 14:24 - 2015-11-05 05:01 - 00949760 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2015-11-11 14:24 - 2015-11-05 05:01 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-11-11 14:24 - 2015-11-05 04:59 - 03587072 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-11-11 14:24 - 2015-11-05 04:58 - 01383936 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-11-11 14:23 - 2015-11-05 05:01 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2015-11-10 14:44 - 2015-11-10 14:44 - 00000000 ____D C:\Program Files\Common Files\AVG Secure Search
2015-11-09 13:57 - 2015-11-09 14:14 - 00000000 ____D C:\Users\Alinka\Desktop\munispace knihy
2015-11-07 23:52 - 2015-11-07 23:52 - 02208951 _____ C:\Users\Alinka\Desktop\inkluzivni-skola.pdf
2015-11-07 18:13 - 2015-11-07 18:15 - 00000000 ____D C:\Users\Alinka\AppData\Local\Comms
2015-11-07 18:08 - 2015-11-07 18:08 - 00000000 ____D C:\Users\Alinka\AppData\Roaming\AVG
2015-11-07 18:08 - 2015-11-07 18:08 - 00000000 ____D C:\Users\Alinka\AppData\Local\AVG Web TuneUp
2015-11-07 18:07 - 2015-11-07 18:07 - 00000000 ____D C:\Users\Alinka\AppData\Local\Avg
2015-11-07 06:25 - 2015-11-10 14:44 - 00000000 ____D C:\Program Files\AVG Web TuneUp
2015-11-07 06:25 - 2015-11-10 14:44 - 00000000 ____D C:\Program Files (x86)\AVG Web TuneUp
2015-11-07 06:25 - 2015-11-07 06:25 - 00000000 ____D C:\Users\Stanley\AppData\Local\AVG Web TuneUp
2015-11-07 06:25 - 2015-11-07 06:25 - 00000000 ____D C:\ProgramData\AVG Web TuneUp
2015-11-07 06:25 - 2015-11-07 06:25 - 00000000 ____D C:\ProgramData\AVG Security Toolbar
2015-11-07 06:25 - 2015-11-07 06:25 - 00000000 ____D C:\ProgramData\AVG Secure Search
2015-11-07 06:22 - 2015-11-07 06:22 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\AVG
2015-11-07 06:20 - 2015-11-07 06:20 - 00000000 ___HD C:\$AVG
2015-11-07 06:20 - 2015-11-07 06:20 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\TuneUp Software
2015-11-07 06:20 - 2015-11-07 06:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2015-11-07 06:19 - 2015-11-07 06:20 - 00000000 ____D C:\ProgramData\Avg
2015-11-07 06:19 - 2015-11-07 06:20 - 00000000 ____D C:\Program Files (x86)\AVG
2015-11-07 06:18 - 2015-11-30 15:17 - 00000000 ____D C:\ProgramData\MFAData
2015-11-07 06:18 - 2015-11-07 06:22 - 00000000 ____D C:\Users\Stanley\AppData\Local\Avg
2015-11-07 06:18 - 2015-11-07 06:19 - 00000000 ____D C:\Users\Stanley\AppData\Local\AvgSetupLog
2015-11-07 06:18 - 2015-11-07 06:18 - 00000000 ____D C:\Users\Stanley\AppData\Local\MFAData
2015-11-07 06:18 - 2015-11-07 06:18 - 00000000 ____D C:\Users\Stanley\AppData\Local\Avg2015
2015-11-06 20:05 - 2015-11-02 14:18 - 00102520 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
2015-11-06 20:01 - 2015-11-02 23:49 - 00039240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 42914096 _____ C:\WINDOWS\system32\nvcompiler.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 37882160 _____ C:\WINDOWS\SysWOW64\nvcompiler.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 22343800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 18389112 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 16561128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 14844304 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 13533416 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 12040952 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 02876536 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 02496632 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 01905272 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6435887.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 01564976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6435887.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 01016544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 01013960 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00877688 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00861816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00823232 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00820672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00689784 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00673912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00601240 _____ C:\WINDOWS\system32\nvmcumd.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00539464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00503416 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00501056 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00446584 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00445216 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00422568 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00413816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00369272 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00177416 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00155792 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00151368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00128512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00034493 _____ C:\WINDOWS\system32\nvinfo.pb
2015-11-05 20:31 - 2015-11-05 20:31 - 00000000 ____D C:\Users\Stanley\AppData\Local\BridgeProject
2015-11-03 17:41 - 2015-11-03 17:41 - 00000000 ____D C:\Users\Stanley\AppData\LocalLow\Temp
2015-11-03 17:40 - 2015-11-03 17:40 - 00244032 _____ C:\Users\Stanley\Downloads\Skola_pre_hluchoslepe_deti_1_.pdf
2015-11-03 10:36 - 2015-11-03 10:36 - 00244032 _____ C:\Users\Alinka\Desktop\NÁVOD - UKÁZKA SPEC PED PRÁCE.pdf
2015-11-03 09:24 - 2015-11-03 11:51 - 00000000 ____D C:\Users\Alinka\Desktop\Londýn
2015-11-01 08:48 - 2015-11-01 08:48 - 00000000 ____D C:\ProgramData\MetaQuotes
2015-11-01 08:47 - 2015-11-01 08:47 - 05998776 _____ (MetaQuotes Software Corp.) C:\WINDOWS\system32\MetaViewer64.dll
2015-11-01 08:47 - 2015-11-01 08:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XM MT4
2015-11-01 08:47 - 2015-11-01 08:47 - 00000000 ____D C:\Program Files (x86)\XM MT4
2015-11-01 08:45 - 2015-11-01 08:47 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\MetaQuotes
2015-10-31 21:59 - 2015-10-31 21:59 - 00000222 _____ C:\Users\Stanley\Desktop\Bridge Project.url
2015-10-31 18:41 - 2015-10-31 18:41 - 00000222 _____ C:\Users\Stanley\Desktop\Batman Arkham Origins.url
2015-10-31 18:41 - 2015-10-31 18:41 - 00000221 _____ C:\Users\Stanley\Desktop\The Witcher 2 Assassins of Kings Enhanced Edition.url

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-30 19:01 - 2015-07-10 10:05 - 00000000 ____D C:\Windows
2015-11-30 19:01 - 2015-06-18 06:43 - 00000922 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-3962638898-2331993480-1807031265-1003UA.job
2015-11-30 18:57 - 2014-08-10 03:09 - 00000974 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-11-30 18:19 - 2014-08-10 22:41 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-11-30 15:24 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-11-30 15:19 - 2015-08-14 15:20 - 00004198 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{3311D562-C8EB-47F3-A965-B8FC3D5F6C3D}
2015-11-30 15:19 - 2015-07-10 12:04 - 00000000 ___HD C:\Program Files\WindowsApps
2015-11-30 15:14 - 2014-08-10 03:09 - 00000970 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-11-29 14:23 - 2015-07-10 10:05 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2015-11-29 11:00 - 2015-06-18 06:43 - 00000870 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-3962638898-2331993480-1807031265-1003Core.job
2015-11-28 22:42 - 2015-07-04 09:55 - 00000958 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job
2015-11-28 15:16 - 2015-08-12 17:01 - 00000000 ____D C:\Users\Stanley
2015-11-28 14:24 - 2015-08-12 17:00 - 02030544 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-11-28 14:24 - 2015-07-10 17:02 - 00839102 _____ C:\WINDOWS\system32\perfh005.dat
2015-11-28 14:24 - 2015-07-10 17:02 - 00191430 _____ C:\WINDOWS\system32\perfc005.dat
2015-11-28 14:24 - 2015-07-10 12:02 - 00000000 ____D C:\WINDOWS\INF
2015-11-28 13:57 - 2015-07-10 13:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-11-28 13:57 - 2014-07-13 19:33 - 00000000 ____D C:\ProgramData\NVIDIA
2015-11-28 00:00 - 2015-06-14 11:57 - 00000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server
2015-11-28 00:00 - 2015-04-17 21:22 - 00000000 ____D C:\Program Files (x86)\MSI Afterburner
2015-11-27 22:04 - 2015-03-27 19:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
2015-11-27 20:42 - 2015-08-12 17:01 - 00000000 ____D C:\Users\Alinka
2015-11-27 16:07 - 2015-06-24 13:30 - 00000000 ___RD C:\Users\Stanley\Desktop\Nová složka
2015-11-27 14:33 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\rescache
2015-11-22 10:48 - 2015-04-18 15:52 - 00000080 _____ C:\Users\Stanley\AppData\Local剜捯獫慴⁲慇敭屳呇⁁屖湥楴汴浥湥⹴湩潦
2015-11-21 22:23 - 2014-10-10 20:14 - 00000000 ____D C:\ProgramData\Orbit
2015-11-21 22:23 - 2014-08-20 09:48 - 00000000 ____D C:\Users\Stanley\Documents\My Games
2015-11-21 20:59 - 2014-09-21 11:39 - 00000000 ____D C:\Users\Stanley\AppData\Local\NVIDIA Corporation
2015-11-21 20:53 - 2014-08-30 12:57 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\uTorrent
2015-11-21 13:45 - 2014-09-07 13:01 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\vlc
2015-11-21 12:47 - 2014-08-11 20:06 - 00000000 ____D C:\ProgramData\Package Cache
2015-11-21 10:48 - 2015-02-05 00:50 - 00000000 ____D C:\ProgramData\Origin
2015-11-21 10:10 - 2014-11-08 17:58 - 00214392 _____ C:\WINDOWS\SysWOW64\PnkBstrB.exe
2015-11-21 10:10 - 2014-11-08 17:58 - 00214392 _____ C:\WINDOWS\SysWOW64\PnkBstrB.ex0
2015-11-19 17:50 - 2015-03-09 20:07 - 00003936 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1425928036
2015-11-19 17:50 - 2015-03-09 20:07 - 00001120 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2015-11-19 17:50 - 2015-03-09 20:06 - 00000000 ____D C:\Program Files (x86)\Opera
2015-11-19 09:46 - 2015-07-02 22:17 - 00000000 ____D C:\Users\Alinka\Downloads\filmy
2015-11-19 09:44 - 2015-04-01 08:13 - 00000000 ____D C:\Users\Alinka\Desktop\smazat
2015-11-19 09:44 - 2014-08-23 08:41 - 00000000 ___RD C:\Users\Alinka\Dropbox
2015-11-19 09:44 - 2014-08-23 08:39 - 00000000 ____D C:\Users\Alinka\AppData\Roaming\Dropbox
2015-11-19 09:39 - 2015-07-10 10:05 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2015-11-18 18:09 - 2015-08-13 09:55 - 00000000 ____D C:\Users\Alinka\AppData\Local\Packages
2015-11-18 09:55 - 2014-08-23 21:47 - 00000000 ____D C:\Users\Alinka\AppData\Roaming\vlc
2015-11-17 09:45 - 2015-02-20 07:42 - 00000000 ____D C:\Users\Stanley\AppData\Local\Steam
2015-11-16 23:24 - 2014-08-10 03:12 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\DAEMON Tools Lite
2015-11-16 15:59 - 2015-02-05 11:17 - 00000000 ____D C:\Program Files (x86)\Origin
2015-11-15 01:01 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-11-14 11:37 - 2015-08-02 21:21 - 00000000 ____D C:\Users\Alinka\Desktop\nalkoš
2015-11-13 18:34 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2015-11-12 19:37 - 2014-09-21 11:39 - 01828160 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2015-11-12 19:37 - 2014-09-21 11:39 - 01756424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll
2015-11-12 19:37 - 2014-09-21 11:39 - 01509824 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2015-11-12 19:37 - 2014-09-21 11:39 - 01316000 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll
2015-11-11 16:19 - 2015-07-04 09:55 - 00004086 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
2015-11-11 15:21 - 2014-08-14 17:24 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-11-11 15:20 - 2014-08-14 17:27 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-11-11 15:19 - 2015-07-10 11:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-11-11 15:11 - 2014-07-13 19:42 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-11-11 15:03 - 2014-07-13 19:42 - 145617392 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-11-11 15:02 - 2009-07-14 03:34 - 00000580 _____ C:\WINDOWS\win.ini
2015-11-09 15:00 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-11-09 14:27 - 2015-09-26 14:43 - 00000000 ____D C:\Users\Alinka\Desktop\Judaismus
2015-11-09 11:20 - 2015-02-06 10:17 - 00000000 ____D C:\Users\Alinka\Desktop\mamka
2015-11-07 18:08 - 2015-08-13 10:00 - 00002401 _____ C:\Users\Alinka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-11-07 18:08 - 2015-08-13 10:00 - 00000000 ___RD C:\Users\Alinka\OneDrive
2015-11-07 16:05 - 2014-09-12 17:18 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\The Creative Assembly
2015-11-07 06:25 - 2015-04-16 20:52 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-11-07 06:20 - 2015-07-10 12:04 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2015-11-07 06:11 - 2015-08-12 18:21 - 00002404 _____ C:\Users\Stanley\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-11-07 06:11 - 2015-08-12 18:21 - 00000000 ___RD C:\Users\Stanley\OneDrive
2015-11-06 20:05 - 2015-08-12 16:54 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2015-11-06 20:05 - 2014-09-21 11:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-11-04 06:25 - 2015-08-12 19:56 - 11227280 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2015-11-03 19:20 - 2015-10-05 15:37 - 00810488 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-11-03 19:20 - 2015-10-05 15:37 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-11-03 17:41 - 2015-08-12 18:13 - 00000000 ____D C:\Users\Stanley\AppData\Local\Packages
2015-11-03 12:09 - 2015-09-08 10:39 - 00000000 ____D C:\Users\Alinka\AppData\Local\ElevatedDiagnostics
2015-11-03 09:13 - 2014-08-14 17:37 - 00000000 ____D C:\Users\Alinka\AppData\Local\LogMeIn Hamachi
2015-11-03 09:07 - 2015-08-12 18:13 - 00000000 __RHD C:\Users\Public\AccountPictures
2015-11-02 23:49 - 2015-08-12 19:56 - 01572496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll
2015-11-02 23:49 - 2015-08-12 19:56 - 00205456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2015-11-02 18:03 - 2015-10-08 14:38 - 12870384 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll
2015-11-02 18:03 - 2015-09-22 21:24 - 15932376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll
2015-11-02 18:03 - 2015-08-12 19:56 - 18486504 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll
2015-11-02 18:03 - 2015-08-12 19:56 - 15839200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll
2015-11-02 18:03 - 2015-08-12 19:56 - 03540360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2015-11-02 18:03 - 2015-08-12 19:56 - 03126984 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2015-11-02 18:03 - 2014-07-13 19:33 - 00112760 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2015-11-02 18:03 - 2014-07-13 19:33 - 00105264 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2015-11-02 14:36 - 2014-07-13 19:33 - 06358832 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2015-11-02 14:36 - 2014-07-13 19:33 - 02983032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2015-11-02 14:36 - 2014-07-13 19:33 - 02554488 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2015-11-02 14:36 - 2014-07-13 19:33 - 00938800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe
2015-11-02 14:36 - 2014-07-13 19:33 - 00385328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2015-11-02 14:36 - 2014-07-13 19:33 - 00062768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2015-11-01 12:14 - 2015-08-30 22:28 - 00000000 ____D C:\Users\Stanley\Documents\WB Games
2015-10-31 21:19 - 2014-12-24 10:11 - 00003972 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task

==================== Files in the root of some directories =======

2015-01-20 18:03 - 2015-10-06 19:30 - 0000132 _____ () C:\Users\Stanley\AppData\Roaming\Adobe Formát BMP CS6 – předvolby
2014-12-12 19:38 - 2015-09-27 07:19 - 0000132 _____ () C:\Users\Stanley\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2014-12-11 19:16 - 2014-12-11 19:16 - 0000132 _____ () C:\Users\Stanley\AppData\Roaming\Filtr IIIExport Adobe CS6 – předvolby
2014-09-01 09:18 - 2014-09-01 09:18 - 0002086 _____ () C:\Users\Stanley\AppData\Roaming\JU
2014-11-29 15:29 - 2014-11-29 15:29 - 2051032 _____ () C:\Users\Stanley\AppData\Roaming\PQWBVJPG.exe
2014-10-08 19:42 - 2014-10-08 19:42 - 0001181 _____ () C:\Users\Stanley\AppData\Roaming\trace_FilterInstaller.1.txt
2014-10-08 19:42 - 2014-10-28 12:53 - 0000919 _____ () C:\Users\Stanley\AppData\Roaming\trace_FilterInstaller.txt
2014-10-08 19:42 - 2014-10-28 12:53 - 0000000 _____ () C:\Users\Stanley\AppData\Roaming\trace_FilterInstaller.txt-CRT.txt
2015-02-01 19:33 - 2015-02-24 14:17 - 0004608 _____ () C:\Users\Stanley\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-07-15 12:52 - 2015-09-30 11:54 - 2128896 _____ () C:\Users\Stanley\AppData\Local\file__0.localstorage
2014-10-28 21:09 - 2015-09-19 19:07 - 0007622 _____ () C:\Users\Stanley\AppData\Local\Resmon.ResmonCfg
2015-06-07 17:32 - 2015-06-07 17:43 - 0000080 _____ () C:\Users\Stanley\AppData\Local\X-Plane Installer.prf
2015-06-07 17:32 - 2015-06-07 17:44 - 0000015 _____ () C:\Users\Stanley\AppData\Local\X-Plane_drm.prf
2015-06-07 16:06 - 2015-06-07 16:06 - 0000027 _____ () C:\Users\Stanley\AppData\Local\x-plane_install_10.txt
2015-08-18 09:36 - 2015-08-18 09:36 - 0000000 _____ () C:\Users\Stanley\AppData\Local\{A6A66D19-14C0-40A4-8A18-C58506888A84}
2015-08-12 16:58 - 2015-08-12 16:58 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Some files in TEMP:
====================
C:\Users\Alinka\AppData\Local\Temp\BingSvc.exe
C:\Users\Alinka\AppData\Local\Temp\BSvcProcessor.exe
C:\Users\Alinka\AppData\Local\Temp\BSvcUpdater.exe
C:\Users\Alinka\AppData\Local\Temp\DefaultPack.EXE
C:\Users\Alinka\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmppgvqqb.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-11-30 16:51

==================== End of FRST.txt ============================
Přílohy
Addition.rar
(25.49 KiB) Staženo 46 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Hostitel služby vytěžuje disk

#4 Příspěvek od Rudy »

Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

SteveOxford
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 27 lis 2015 20:55

Re: Hostitel služby vytěžuje disk

#5 Příspěvek od SteveOxford »

# AdwCleaner v5.023 - Logfile created 01/12/2015 at 15:13:05
# Updated 30/11/2015 by Xplode
# Database : 2015-11-30.1 [Server]
# Operating system : Windows 10 Pro (x64)
# Username : Stanley - MASTER
# Running from : C:\Users\Stanley\Desktop\adwcleaner_5.023.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****

[-] Service Deleted : sp_rsdrv2
[-] Service Deleted : vToolbarUpdater40.2.0

***** [ Folders ] *****

[-] Folder Deleted : C:\Program Files (x86)\PriceSparrow
[-] Folder Deleted : C:\Program Files (x86)\SourceApp
[-] Folder Deleted : C:\Program Files (x86)\Common Files\AVG Secure Search
[-] Folder Deleted : C:\Program Files\Common Files\AVG Secure Search
[-] Folder Deleted : C:\ProgramData\AVG Secure Search
[-] Folder Deleted : C:\ProgramData\AVG Security Toolbar
[-] Folder Deleted : C:\Users\Stanley\AppData\Local\AppsHat Mobile Apps

***** [ Files ] *****


***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****

[-] Task Deleted : pricesparrowSWU

***** [ Registry ] *****

[-] Key Deleted : HKLM\SOFTWARE\Classes\pricesparrow.pricesparrowBHO
[-] Key Deleted : HKLM\SOFTWARE\Classes\pricesparrow.pricesparrowBHO.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
[-] Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt]
[-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\NativeMessagingHosts\avgsh
[-] Key Deleted : HKCU\Software\Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CA3A5461-96B5-46DD-9341-5350D3C94615}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{444785F1-DE89-4295-863A-D46C3A781394}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{444785F1-DE89-4295-863A-D46C3A781394}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f53ec58f-c289-41ce-b519-04fc55a3be81}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f53ec58f-c289-41ce-b519-04fc55a3be81}
[-] Key Deleted : HKCU\Software\Ciuvo
[-] Key Deleted : HKCU\Software\OCS
[-] Key Deleted : HKCU\Software\Softonic
[-] Key Deleted : HKCU\Software\WEDLMNGR
[-] Key Deleted : HKCU\Software\Avg Secure Update
[-] Key Deleted : HKLM\SOFTWARE\AppDataLow\SOFTWARE\Crossrider
[-] Key Deleted : HKLM\SOFTWARE\Avg Secure Update
[-] Key Deleted : HKU\.DEFAULT\Software\Avg Secure Update
[-] Key Deleted : HKU\.DEFAULT\Software\AppDataLow\Software\_CrossriderRegNamePlaceHolder_
[-] Key Deleted : HKU\S-1-5-21-3962638898-2331993480-1807031265-1003\Software\GlobalUpdate
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}

***** [ Web browsers ] *****


*************************

:: "Tracing" keys removed
:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [5796 bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Hostitel služby vytěžuje disk

#6 Příspěvek od Rudy »

Dejte nový log FRST.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

SteveOxford
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 27 lis 2015 20:55

Re: Hostitel služby vytěžuje disk

#7 Příspěvek od SteveOxford »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:29-11-2015
Ran by Stanley (administrator) on MASTER (01-12-2015 17:58:30)
Running from C:\Users\Stanley\Desktop
Loaded Profiles: Stanley (Available Profiles: Stanley & Alinka & DefaultAppPool)
Platform: Windows 10 Pro (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgcsrva.exe
() C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\WTabletServiceCon.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgidsagent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
() C:\Program Files\DAZ 3D\Content Management Service\ContentManagementServer.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(Mr. John aka japamd) C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe
(Realtek) C:\Program Files (x86)\Hama\Wireless LAN RTL8192SU\RtlService.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
() C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe
(Crawler Group) C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe
(Gigabyte Technology CO., LTD.) C:\Program Files (x86)\GIGABYTE\smart6\timelock\TimeMgmtDaemon.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgemca.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TabletUser.exe
(Wacom Technology) C:\Program Files\Tablet\Pen\WacomHost.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_Tablet.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TouchUser.exe
(Realtek Semiconductor Corp.) C:\Program Files (x86)\Hama\Wireless LAN RTL8192SU\RtWLan.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(MY.COM B.V.) C:\Users\Stanley\AppData\Local\MyComGames\MyComGames.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Gigabyte Technology CO., LTD.) C:\Program Files (x86)\GIGABYTE\smart6\timelock\AlarmClock.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera_crashreporter.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Valve Corporation) D:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) D:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\33.0.1990.115\opera.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13885696 2015-06-24] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2757424 2015-11-12] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [SpywareTerminatorShield] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe [3884368 2015-09-02] (Crawler Group, LLC)
HKLM\...\Run: [SpywareTerminatorUpdater] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe [5473104 2015-09-02] (Crawler Group, LLC)
HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [BambooCore] => C:\Program Files (x86)\Bamboo Dock\BambooCore.exe [646744 2012-10-16] ()
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguix.exe [1136552 2015-11-12] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Av\avgui.exe [3826600 2015-10-30] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5565448 2015-11-12] (LogMeIn Inc.)
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\...\Run: [Steam] => D:\Program Files (x86)\Steam\steam.exe [3011152 2015-11-10] (Valve Corporation)
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\...\Run: [EvolveClient] => C:\Program Files\Echobit\Evolve\EvolveClient.exe [3334016 2015-07-23] (Echobit LLC)
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\...\Run: [MyComGames] => C:\Users\Stanley\AppData\Local\MyComGames\MyComGames.exe [4650952 2015-11-30] (MY.COM B.V.)
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\...\RunOnce: [Uninstall C:\Users\Stanley\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Stanley\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\...\RunOnce: [Uninstall C:\Users\Stanley\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Stanley\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64"
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\...\RunOnce: [Uninstall C:\Users\Stanley\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Stanley\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64"
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\...\RunOnce: [Uninstall C:\Users\Stanley\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Stanley\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\amd64"
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\...\MountPoints2: {c2ff9510-5eb3-11e4-bd35-1c6f65352380} - "E:\SETUP.EXE"
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stanley\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stanley\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stanley\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stanley\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stanley\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stanley\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stanley\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stanley\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => No File
Startup: C:\Users\Alinka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-11-12]
ShortcutTarget: Dropbox.lnk -> C:\Users\Stanley\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GIGABYTE OC_GURU.lnk [2015-05-11]
ShortcutTarget: GIGABYTE OC_GURU.lnk -> C:\Program Files (x86)\GIGABYTE\GIGABYTE OC_GURU II\OC_GURU.exe (GIGABYTE Technology Co.,Ltd.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{03fd1e45-357c-4218-aa56-e6ae2aff1595}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{20e9f00c-1aa2-4ad6-9576-d91a03c7d041}: [DhcpNameServer] 192.168.137.1
Tcpip\..\Interfaces\{cf8132c6-78cd-42b7-ac8c-540bf1448b0d}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.bing.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = www.bing.com
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\Software\Microsoft\Internet Explorer\Main,Search Page = www.bing.com
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://mysearch.avg.com/?cid={CA2DD553-1656-42E5-AE6B-59B4A3B91E0F}&mid=26030044bb1547ccb84fcd2623d1ca73-9a74c5f4f61a10bdc6e844f99444e6abad5dd9ef&lang=cs&ds=AVG&coid=avgtbavg&cmpid=0615pi&pr=fr&d=2015-11-07 06:25:25&v=4.1.8.599&pid=wtu&sg=&sap=hp
SearchScopes: HKU\S-1-5-21-3962638898-2331993480-1807031265-1000 -> DefaultScope {80E02386-CF9A-4F7C-9FCF-0150979E392B} URL = hxxps://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3962638898-2331993480-1807031265-1000 -> {80E02386-CF9A-4F7C-9FCF-0150979E392B} URL = hxxps://www.google.com/search?q={searchTerms}
BHO: PriceSparrow BHO -> {2A965DDC-C64C-4562-862B-5EE487A7DEFC} -> C:\Program Files (x86)\pricesparrow\Internet Explorer\pricesparrow64.dll => No File
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-10-20] (Microsoft Corporation)
BHO: GBHO.BHO -> {45d30484-7ded-43d9-957a-d2fd1f046511} -> C:\Windows\system32\mscoree.dll [2015-07-10] (Microsoft Corporation)
BHO: Spyware Terminator 2015 Internet Guard -> {82A76710-4F98-4957-92BE-99648A4E2475} -> C:\Program Files (x86)\Spyware Terminator\STInternetGuard64.dll [2015-09-02] (Crawler Group, LLC)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-10-13] (Microsoft Corporation)
BHO-x32: PriceSparrow BHO -> {2A965DDC-C64C-4562-862B-5EE487A7DEFC} -> C:\Program Files (x86)\pricesparrow\Internet Explorer\pricesparrow32.dll => No File
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-10-20] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-01-30] (Oracle Corporation)
BHO-x32: Spyware Terminator 2015 Internet Guard -> {82A76710-4F98-4957-92BE-99648A4E2475} -> C:\Program Files (x86)\Spyware Terminator\STInternetGuard.dll [2015-09-02] (Crawler Group, LLC)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-10-13] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-30] (Oracle Corporation)
Toolbar: HKLM - Smart Recovery 2 - {1d09c093-f71e-43c3-b948-19316cbd695e} - C:\Windows\system32\mscoree.dll [2015-07-10] (Microsoft Corporation)
DPF: HKLM-x32 {1ABA5FAC-1417-422B-BA82-45C35E2C908B} hxxp://kitchenplanner.ikea.com/CZ/Core/Player/2020PlayerAX_IKEA_Win32.cab

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_19_0_0_245.dll [2015-11-11] ()
FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll [No File]
FF Plugin: @esn/npbattlelog,version=2.7.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.0\npbattlelogx64.dll [2015-03-10] (EA Digital Illusions CE AB)
FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
FF Plugin: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-11] ()
FF Plugin-x32: @esn/npbattlelog,version=2.4.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll [No File]
FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll [No File]
FF Plugin-x32: @esn/npbattlelog,version=2.7.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.0\npbattlelog.dll [2015-03-10] (EA Digital Illusions CE AB)
FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-20] (Google)
FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-01-30] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-01-30] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-03-31] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-11-02] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-11-02] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.)
FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-09-27] (Adobe Systems Inc.)
FF Plugin-x32: wacom.com/WacomTabletPlugin -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
FF Plugin HKU\S-1-5-21-3962638898-2331993480-1807031265-1000: @my.com/Games -> C:\Users\Stanley\AppData\Local\MyComGames\NPMyComDetector.dll [2015-11-30] (My.com, Inc)
FF Plugin HKU\S-1-5-21-3962638898-2331993480-1807031265-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Stanley\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-06-19] (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-3962638898-2331993480-1807031265-1000: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [2015-04-01] ()
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-03-31] (Microsoft Corporation)

Chrome:
=======
CHR Profile: C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-05]
CHR Extension: (Dokumenty Google) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-05]
CHR Extension: (Disk Google) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-19]
CHR Extension: (YouTube) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-27]
CHR Extension: (Vyhledávání Google) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-19]
CHR Extension: (Dark Vibe) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkckeanhmkjaechlhllmapjaaglgpcbj [2015-03-06]
CHR Extension: (Tabulky Google) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-05]
CHR Extension: (Dokumenty Google offline) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-29]
CHR Extension: (AdBlock) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-11-29]
CHR Extension: (Audio EQ) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfafdlnjaliaghpjdajmlcnnblkgcefh [2015-07-20]
CHR Extension: (Recording Studio . BZ) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbkljjmmneldbdcfflaelejfhijbchbe [2015-10-19]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-24]
CHR Extension: (Gmail) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-28]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [595376 2015-10-30] (AVG Technologies CZ, s.r.o.)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagent.exe [3815648 2015-10-30] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1046952 2015-11-12] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe [579776 2015-10-30] (AVG Technologies CZ, s.r.o.)
R2 DAZContentManagementService; C:\Program Files\DAZ 3D\Content Management Service\ContentManagementServer.exe [22528 2011-05-05] () [File not signed]
S3 EvoSvc; C:\Program Files\Echobit\Evolve\EvoSvc.exe [1583488 2015-06-03] (Echobit LLC)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [520416 2014-01-28] (Futuremark)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1156400 2015-11-12] (NVIDIA Corporation)
S3 ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [160256 2011-08-30] (Intel Corporation) [File not signed]
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-03] (Macrovision Corporation) [File not signed]
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2015-11-12] (LogMeIn, Inc.)
R2 MSMQ; C:\Windows\system32\mqsvc.exe [26112 2015-08-12] (Microsoft Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872688 2015-11-12] (NVIDIA Corporation)
R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [8133424 2015-11-12] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5915440 2015-11-12] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2099720 2015-11-16] (Electronic Arts)
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2015-03-03] ()
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2015-03-18] ()
R2 RadeonPro Support Service; C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe [20608 2013-11-04] (Mr. John aka japamd) [File not signed]
R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [187072 2015-02-05] ()
R2 Realtek11nSU; C:\Program Files (x86)\Hama\Wireless LAN RTL8192SU\RtlService.exe [36864 2010-04-16] (Realtek) [File not signed]
R2 RzKLService; C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe [129168 2015-01-26] (Razer Inc.)
R2 Smart TimeLock; C:\Program Files (x86)\GIGABYTE\Smart6\Timelock\TimeMgmtDaemon.exe [114688 2009-10-13] (Gigabyte Technology CO., LTD.) [File not signed]
R2 ST2012_Svc; C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe [3037520 2015-09-02] (Crawler Group)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5613328 2015-07-29] (TeamViewer GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
R2 WTabletServiceCon; C:\Program Files\Tablet\Pen\WTabletServiceCon.exe [656664 2014-08-19] (Wacom Technology, Corp.)
R2 WtuSystemSupport; C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe [1165200 2015-11-10] ()

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S0 Avgboota; C:\Windows\System32\DRIVERS\avgboota.sys [23152 2015-09-09] (AVG Technologies CZ, s.r.o.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [197040 2015-08-10] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [313776 2015-10-19] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [298416 2015-08-20] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [284080 2015-10-21] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [398256 2015-08-14] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [255408 2015-10-21] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [42416 2015-08-10] (AVG Technologies CZ, s.r.o.)
R1 Avgwfpa; C:\Windows\system32\DRIVERS\avgwfpa.sys [306608 2015-10-08] (AVG Technologies CZ, s.r.o.)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-10-28] (Disc Soft Ltd)
S3 GVTDrv64; C:\Windows\GVTDrv64.sys [30528 2015-06-01] ()
R3 hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2015-08-03] (LogMeIn Inc.)
R1 HWiNFO32; C:\WINDOWS\system32\drivers\HWiNFO64A.SYS [27552 2015-09-15] (REALiX(tm))
R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [31648 2015-05-24] (REALiX(tm))
S3 MotioninJoyXFilter; C:\Windows\System32\drivers\MijXfilt.sys [115272 2012-03-25] (MotioninJoy) [File not signed]
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19760 2015-11-12] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [587264 2015-07-10] (Realtek )
R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [37184 2015-02-05] (Razer, Inc.)
R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [129600 2015-02-04] (Razer, Inc.)
S3 RZSURROUNDVADService; C:\Windows\System32\drivers\RzSurroundVAD.sys [40640 2015-02-09] (Windows (R) Win 7 DDK provider)
R3 ScpVBus; C:\Windows\System32\drivers\ScpVBus.sys [39168 2013-05-05] (Scarlet.Crush Productions)
S2 sp_rsdrv2; C:\Windows\System32\DRIVERS\stflt.sys [51496 2011-08-24] (Windows (R) Win 7 DDK provider)
S3 TrojanKillerDriver; C:\Windows\System32\DRIVERS\gtkdrv.sys [16640 2014-09-25] (Windows (R) Win 7 DDK provider)
S3 tsusbhub; C:\Windows\System32\drivers\tsusbhub.sys [117248 2010-11-21] (Microsoft Corporation) [File not signed]
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
U3 idsvc; no ImagePath
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
U3 wpcsvc; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-12-01 15:19 - 2015-12-01 15:19 - 00005397 _____ C:\Users\Stanley\Desktop\AdwCleaner[C2].txt
2015-12-01 15:17 - 2015-12-01 15:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2015-12-01 15:17 - 2015-12-01 15:17 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi
2015-12-01 15:16 - 2015-12-01 15:16 - 00016148 _____ C:\WINDOWS\system32\MASTER_Stanley_HistoryPrediction.bin
2015-12-01 15:10 - 2015-12-01 15:13 - 00000000 ____D C:\AdwCleaner
2015-12-01 15:09 - 2015-12-01 15:10 - 01736704 _____ C:\Users\Stanley\Desktop\adwcleaner_5.023.exe
2015-11-30 19:01 - 2015-12-01 17:58 - 00029365 _____ C:\Users\Stanley\Desktop\FRST.txt
2015-11-30 19:01 - 2015-12-01 17:58 - 00000000 ____D C:\FRST
2015-11-30 19:01 - 2015-11-30 19:01 - 00015327 _____ C:\Users\Stanley\Desktop\LM.bat
2015-11-30 19:00 - 2015-11-30 19:01 - 00112640 _____ C:\Users\Stanley\Desktop\FRSTLauncher.exe
2015-11-30 18:59 - 2015-11-30 19:01 - 02350080 _____ (Farbar) C:\Users\Stanley\Desktop\FRST64.exe
2015-11-30 17:37 - 2015-11-30 19:21 - 00000126 _____ C:\Users\Stanley\Desktop\Armored Warfare.url
2015-11-30 17:37 - 2015-11-30 19:21 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Armored Warfare MyCom Beta
2015-11-30 17:04 - 2015-12-01 17:13 - 00000000 ____D C:\Users\Stanley\AppData\Local\MyComGames
2015-11-30 17:04 - 2015-11-30 17:04 - 00002135 _____ C:\Users\Stanley\Desktop\My.com Game Center.lnk
2015-11-30 17:04 - 2015-11-30 17:04 - 00000142 _____ C:\Users\Stanley\Desktop\Armored Warfare MyCom Beta.url
2015-11-30 17:04 - 2015-11-30 17:04 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My.com Games
2015-11-28 15:01 - 2015-11-30 19:27 - 00000000 ____D C:\WINDOWS\Panther
2015-11-27 22:15 - 2015-11-27 22:15 - 00000000 ____D C:\Users\Stanley\Documents\DyingLight
2015-11-27 22:04 - 2015-11-27 22:04 - 00000783 _____ C:\Users\Stanley\Desktop\Dying Light.lnk
2015-11-27 22:04 - 2015-11-27 22:04 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\Dying Light
2015-11-24 19:34 - 2015-11-24 19:34 - 00000000 ____D C:\Users\Stanley\Desktop\Nová složka (2)
2015-11-21 21:13 - 2015-11-24 09:12 - 00000706 _____ C:\Users\Stanley\Desktop\Watch Dogs.lnk
2015-11-21 21:13 - 2015-11-21 21:13 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\Watch Dogs
2015-11-21 21:06 - 2014-06-21 18:22 - 20153113 _____ C:\Users\Stanley\Desktop\patch.dat
2015-11-21 21:06 - 2014-06-21 18:22 - 00001060 _____ C:\Users\Stanley\Desktop\patch.fat
2015-11-21 21:00 - 2015-11-12 19:37 - 00112712 _____ C:\WINDOWS\system32\NvRtmpStreamer64.dll
2015-11-21 14:01 - 2015-11-21 20:17 - 00000000 ____D C:\Users\Stanley\Documents\The Witcher 3
2015-11-21 12:47 - 2015-11-21 12:47 - 00001067 _____ C:\Users\Public\Desktop\The Witcher® 3 - Wild Hunt.lnk
2015-11-21 12:47 - 2015-11-21 12:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Witcher® 3 - Wild Hunt [GOG.com]
2015-11-19 10:58 - 2015-11-19 10:58 - 00016148 _____ C:\WINDOWS\system32\MASTER_Alinka_HistoryPrediction.bin
2015-11-18 10:02 - 2015-11-18 10:02 - 00238532 _____ C:\Users\Alinka\Downloads\KSCB035_sylabus_2015.pdf
2015-11-17 13:11 - 2015-11-17 13:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 4
2015-11-16 23:33 - 2015-11-24 16:45 - 00000000 ____D C:\ProgramData\Spyware Terminator
2015-11-16 23:33 - 2015-11-16 23:36 - 00000000 ____D C:\Program Files (x86)\Spyware Terminator
2015-11-16 23:33 - 2015-11-16 23:33 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\Spyware Terminator
2015-11-16 23:33 - 2015-11-16 23:33 - 00000000 ____D C:\Users\Stanley\AppData\LocalLow\Spyware Terminator
2015-11-16 23:33 - 2015-11-16 23:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spyware Terminator 2015
2015-11-16 21:19 - 2015-11-16 21:26 - 00000000 ____D C:\Users\Alinka\Desktop\obrázky japonština
2015-11-15 00:38 - 2015-11-15 00:38 - 00055861 _____ C:\Users\Alinka\Downloads\A2C4.tmp
2015-11-15 00:33 - 2015-11-15 00:33 - 00055861 _____ C:\Users\Alinka\Downloads\4621.tmp
2015-11-14 13:23 - 2015-11-14 13:25 - 364883968 _____ C:\Users\Alinka\Desktop\Bones.S10E19.HDTV.XviD-FUM-cz-titulky.avi
2015-11-13 19:21 - 2015-12-01 15:19 - 00003128 _____ C:\WINDOWS\System32\Tasks\MSIAfterburner
2015-11-13 12:25 - 2015-11-13 12:35 - 00000000 ____D C:\Users\Alinka\Desktop\adventní kalendář
2015-11-12 14:13 - 2015-11-12 14:13 - 00003048 _____ C:\WINDOWS\System32\Tasks\0615piUpdateInfo
2015-11-12 14:13 - 2015-11-12 14:13 - 00000000 ____D C:\ProgramData\Avg_Update_0615pi
2015-11-12 09:48 - 2015-11-12 09:48 - 00000000 ____D C:\Users\Alinka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-11-11 14:28 - 2015-11-05 06:15 - 00541024 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2015-11-11 14:28 - 2015-11-05 06:14 - 00459104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2015-11-11 14:28 - 2015-11-05 06:13 - 00577888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2015-11-11 14:28 - 2015-11-05 06:06 - 03621248 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-11-11 14:28 - 2015-11-05 05:56 - 00116064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys
2015-11-11 14:28 - 2015-11-05 05:56 - 00025280 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2015-11-11 14:28 - 2015-11-05 05:30 - 00961376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2015-11-11 14:28 - 2015-11-05 05:24 - 02878512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-11-11 14:28 - 2015-11-05 05:23 - 00762888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2015-11-11 14:28 - 2015-11-05 05:23 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2015-11-11 14:28 - 2015-11-05 05:20 - 21873664 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-11-11 14:28 - 2015-11-05 05:18 - 03248128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-11-11 14:28 - 2015-11-05 05:10 - 02987520 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2015-11-11 14:28 - 2015-11-05 05:07 - 01068032 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-11-11 14:28 - 2015-11-05 05:03 - 02180608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-11-11 14:28 - 2015-11-05 04:59 - 02675200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2015-11-11 14:28 - 2015-11-05 04:58 - 00627712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2015-11-11 14:28 - 2015-11-05 04:56 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-11-11 14:28 - 2015-11-05 04:55 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2015-11-11 14:28 - 2015-11-05 04:54 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2015-11-11 14:28 - 2015-11-05 04:47 - 19326464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-11-11 14:28 - 2015-11-05 04:42 - 02647040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2015-11-11 14:28 - 2015-11-05 04:40 - 01918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-11-11 14:28 - 2015-11-05 04:35 - 18803712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2015-11-11 14:28 - 2015-11-05 04:35 - 02639872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2015-11-11 14:28 - 2015-11-05 04:33 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-11-11 14:28 - 2015-11-05 04:33 - 00650240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-11-11 14:28 - 2015-11-05 04:30 - 00767488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2015-11-11 14:28 - 2015-11-05 04:28 - 11262976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-11-11 14:28 - 2015-11-05 04:27 - 02049536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2015-11-11 14:28 - 2015-11-05 04:27 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2015-11-11 14:28 - 2015-11-05 04:23 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll
2015-11-11 14:27 - 2015-11-05 05:18 - 00539728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2015-11-11 14:27 - 2015-11-05 04:34 - 00311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2015-11-11 14:24 - 2015-11-05 06:15 - 08020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-11-11 14:24 - 2015-11-05 06:11 - 01392480 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-11-11 14:24 - 2015-11-05 06:06 - 00966416 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2015-11-11 14:24 - 2015-11-05 06:01 - 00607408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2015-11-11 14:24 - 2015-11-05 05:56 - 01083072 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2015-11-11 14:24 - 2015-11-05 05:18 - 24597504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-11-11 14:24 - 2015-11-05 05:17 - 02418688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-11-11 14:24 - 2015-11-05 05:12 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\internetmail.dll
2015-11-11 14:24 - 2015-11-05 05:11 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2015-11-11 14:24 - 2015-11-05 05:10 - 12504064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-11-11 14:24 - 2015-11-05 05:06 - 00453120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2015-11-11 14:24 - 2015-11-05 05:05 - 01602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-11-11 14:24 - 2015-11-05 05:05 - 00826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-11-11 14:24 - 2015-11-05 05:03 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2015-11-11 14:24 - 2015-11-05 05:01 - 00949760 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2015-11-11 14:24 - 2015-11-05 05:01 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-11-11 14:24 - 2015-11-05 04:59 - 03587072 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-11-11 14:24 - 2015-11-05 04:58 - 01383936 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-11-11 14:23 - 2015-11-05 05:01 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2015-11-09 13:57 - 2015-11-09 14:14 - 00000000 ____D C:\Users\Alinka\Desktop\munispace knihy
2015-11-07 23:52 - 2015-11-07 23:52 - 02208951 _____ C:\Users\Alinka\Desktop\inkluzivni-skola.pdf
2015-11-07 18:13 - 2015-11-07 18:15 - 00000000 ____D C:\Users\Alinka\AppData\Local\Comms
2015-11-07 18:08 - 2015-11-07 18:08 - 00000000 ____D C:\Users\Alinka\AppData\Roaming\AVG
2015-11-07 18:08 - 2015-11-07 18:08 - 00000000 ____D C:\Users\Alinka\AppData\Local\AVG Web TuneUp
2015-11-07 18:07 - 2015-11-07 18:07 - 00000000 ____D C:\Users\Alinka\AppData\Local\Avg
2015-11-07 06:25 - 2015-11-10 14:44 - 00000000 ____D C:\Program Files\AVG Web TuneUp
2015-11-07 06:25 - 2015-11-10 14:44 - 00000000 ____D C:\Program Files (x86)\AVG Web TuneUp
2015-11-07 06:25 - 2015-11-07 06:25 - 00000000 ____D C:\Users\Stanley\AppData\Local\AVG Web TuneUp
2015-11-07 06:25 - 2015-11-07 06:25 - 00000000 ____D C:\ProgramData\AVG Web TuneUp
2015-11-07 06:22 - 2015-11-07 06:22 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\AVG
2015-11-07 06:20 - 2015-11-07 06:20 - 00000000 ___HD C:\$AVG
2015-11-07 06:20 - 2015-11-07 06:20 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\TuneUp Software
2015-11-07 06:20 - 2015-11-07 06:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2015-11-07 06:19 - 2015-11-07 06:20 - 00000000 ____D C:\ProgramData\Avg
2015-11-07 06:19 - 2015-11-07 06:20 - 00000000 ____D C:\Program Files (x86)\AVG
2015-11-07 06:18 - 2015-12-01 14:48 - 00000000 ____D C:\ProgramData\MFAData
2015-11-07 06:18 - 2015-11-07 06:22 - 00000000 ____D C:\Users\Stanley\AppData\Local\Avg
2015-11-07 06:18 - 2015-11-07 06:19 - 00000000 ____D C:\Users\Stanley\AppData\Local\AvgSetupLog
2015-11-07 06:18 - 2015-11-07 06:18 - 00000000 ____D C:\Users\Stanley\AppData\Local\MFAData
2015-11-07 06:18 - 2015-11-07 06:18 - 00000000 ____D C:\Users\Stanley\AppData\Local\Avg2015
2015-11-06 20:05 - 2015-11-02 14:18 - 00102520 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
2015-11-06 20:01 - 2015-11-02 23:49 - 00039240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 42914096 _____ C:\WINDOWS\system32\nvcompiler.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 37882160 _____ C:\WINDOWS\SysWOW64\nvcompiler.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 22343800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 18389112 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 16561128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 14844304 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 13533416 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 12040952 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 02876536 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 02496632 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 01905272 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6435887.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 01564976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6435887.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 01016544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 01013960 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00877688 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00861816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00823232 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00820672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00689784 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00673912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00601240 _____ C:\WINDOWS\system32\nvmcumd.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00539464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00503416 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00501056 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00446584 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00445216 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00422568 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00413816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00369272 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00177416 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00155792 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00151368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00128512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll
2015-11-06 20:01 - 2015-11-02 18:03 - 00034493 _____ C:\WINDOWS\system32\nvinfo.pb
2015-11-05 20:31 - 2015-11-05 20:31 - 00000000 ____D C:\Users\Stanley\AppData\Local\BridgeProject
2015-11-03 17:41 - 2015-11-03 17:41 - 00000000 ____D C:\Users\Stanley\AppData\LocalLow\Temp
2015-11-03 17:40 - 2015-11-03 17:40 - 00244032 _____ C:\Users\Stanley\Downloads\Skola_pre_hluchoslepe_deti_1_.pdf
2015-11-03 10:36 - 2015-11-03 10:36 - 00244032 _____ C:\Users\Alinka\Desktop\NÁVOD - UKÁZKA SPEC PED PRÁCE.pdf
2015-11-03 09:24 - 2015-11-03 11:51 - 00000000 ____D C:\Users\Alinka\Desktop\Londýn
2015-11-01 08:48 - 2015-11-01 08:48 - 00000000 ____D C:\ProgramData\MetaQuotes
2015-11-01 08:47 - 2015-11-01 08:47 - 05998776 _____ (MetaQuotes Software Corp.) C:\WINDOWS\system32\MetaViewer64.dll
2015-11-01 08:47 - 2015-11-01 08:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XM MT4
2015-11-01 08:47 - 2015-11-01 08:47 - 00000000 ____D C:\Program Files (x86)\XM MT4
2015-11-01 08:45 - 2015-11-01 08:47 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\MetaQuotes

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-12-01 17:57 - 2014-08-10 03:09 - 00000974 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-12-01 17:19 - 2014-08-10 22:41 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-12-01 17:01 - 2015-06-18 06:43 - 00000922 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-3962638898-2331993480-1807031265-1003UA.job
2015-12-01 16:46 - 2015-06-24 13:30 - 00000000 ___RD C:\Users\Stanley\Desktop\Nová složka
2015-12-01 16:00 - 2015-08-14 15:20 - 00004198 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{3311D562-C8EB-47F3-A965-B8FC3D5F6C3D}
2015-12-01 15:17 - 2015-07-10 12:02 - 00000000 ____D C:\WINDOWS\INF
2015-12-01 15:17 - 2014-08-10 03:09 - 00000970 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-12-01 15:15 - 2015-07-10 13:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-12-01 15:15 - 2014-07-13 19:33 - 00000000 ____D C:\ProgramData\NVIDIA
2015-12-01 15:13 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-12-01 15:13 - 2015-07-10 10:05 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2015-11-30 19:15 - 2015-10-30 20:11 - 00000000 ___HD C:\$WINDOWS.~BT
2015-11-30 19:05 - 2015-07-10 10:05 - 00000000 ____D C:\Windows
2015-11-30 15:19 - 2015-07-10 12:04 - 00000000 ___HD C:\Program Files\WindowsApps
2015-11-29 14:23 - 2015-07-10 10:05 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2015-11-29 11:00 - 2015-06-18 06:43 - 00000870 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-3962638898-2331993480-1807031265-1003Core.job
2015-11-28 22:42 - 2015-07-04 09:55 - 00000958 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job
2015-11-28 15:16 - 2015-08-12 17:01 - 00000000 ____D C:\Users\Stanley
2015-11-28 14:24 - 2015-08-12 17:00 - 02030544 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-11-28 14:24 - 2015-07-10 17:02 - 00839102 _____ C:\WINDOWS\system32\perfh005.dat
2015-11-28 14:24 - 2015-07-10 17:02 - 00191430 _____ C:\WINDOWS\system32\perfc005.dat
2015-11-28 00:00 - 2015-06-14 11:57 - 00000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server
2015-11-28 00:00 - 2015-04-17 21:22 - 00000000 ____D C:\Program Files (x86)\MSI Afterburner
2015-11-27 22:04 - 2015-03-27 19:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
2015-11-27 20:42 - 2015-08-12 17:01 - 00000000 ____D C:\Users\Alinka
2015-11-27 14:33 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\rescache
2015-11-22 10:48 - 2015-04-18 15:52 - 00000080 _____ C:\Users\Stanley\AppData\Local剜捯獫慴⁲慇敭屳呇⁁屖湥楴汴浥湥⹴湩潦
2015-11-21 22:23 - 2014-10-10 20:14 - 00000000 ____D C:\ProgramData\Orbit
2015-11-21 22:23 - 2014-08-20 09:48 - 00000000 ____D C:\Users\Stanley\Documents\My Games
2015-11-21 20:59 - 2014-09-21 11:39 - 00000000 ____D C:\Users\Stanley\AppData\Local\NVIDIA Corporation
2015-11-21 20:53 - 2014-08-30 12:57 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\uTorrent
2015-11-21 13:45 - 2014-09-07 13:01 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\vlc
2015-11-21 12:47 - 2014-08-11 20:06 - 00000000 ____D C:\ProgramData\Package Cache
2015-11-21 10:48 - 2015-02-05 00:50 - 00000000 ____D C:\ProgramData\Origin
2015-11-21 10:10 - 2014-11-08 17:58 - 00214392 _____ C:\WINDOWS\SysWOW64\PnkBstrB.exe
2015-11-21 10:10 - 2014-11-08 17:58 - 00214392 _____ C:\WINDOWS\SysWOW64\PnkBstrB.ex0
2015-11-19 17:50 - 2015-03-09 20:07 - 00003936 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1425928036
2015-11-19 17:50 - 2015-03-09 20:07 - 00001120 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2015-11-19 17:50 - 2015-03-09 20:06 - 00000000 ____D C:\Program Files (x86)\Opera
2015-11-19 09:46 - 2015-07-02 22:17 - 00000000 ____D C:\Users\Alinka\Downloads\filmy
2015-11-19 09:44 - 2015-04-01 08:13 - 00000000 ____D C:\Users\Alinka\Desktop\smazat
2015-11-19 09:44 - 2014-08-23 08:41 - 00000000 ___RD C:\Users\Alinka\Dropbox
2015-11-19 09:44 - 2014-08-23 08:39 - 00000000 ____D C:\Users\Alinka\AppData\Roaming\Dropbox
2015-11-18 18:09 - 2015-08-13 09:55 - 00000000 ____D C:\Users\Alinka\AppData\Local\Packages
2015-11-18 09:55 - 2014-08-23 21:47 - 00000000 ____D C:\Users\Alinka\AppData\Roaming\vlc
2015-11-17 09:45 - 2015-02-20 07:42 - 00000000 ____D C:\Users\Stanley\AppData\Local\Steam
2015-11-16 23:24 - 2014-08-10 03:12 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\DAEMON Tools Lite
2015-11-16 15:59 - 2015-02-05 11:17 - 00000000 ____D C:\Program Files (x86)\Origin
2015-11-15 01:01 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-11-14 11:37 - 2015-08-02 21:21 - 00000000 ____D C:\Users\Alinka\Desktop\nalkoš
2015-11-13 18:34 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2015-11-12 19:37 - 2014-09-21 11:39 - 01828160 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2015-11-12 19:37 - 2014-09-21 11:39 - 01756424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll
2015-11-12 19:37 - 2014-09-21 11:39 - 01509824 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2015-11-12 19:37 - 2014-09-21 11:39 - 01316000 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll
2015-11-11 16:19 - 2015-07-04 09:55 - 00004086 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
2015-11-11 15:21 - 2014-08-14 17:24 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-11-11 15:20 - 2014-08-14 17:27 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-11-11 15:19 - 2015-07-10 11:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-11-11 15:11 - 2014-07-13 19:42 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-11-11 15:03 - 2014-07-13 19:42 - 145617392 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-11-11 15:02 - 2009-07-14 03:34 - 00000580 _____ C:\WINDOWS\win.ini
2015-11-09 15:00 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-11-09 14:27 - 2015-09-26 14:43 - 00000000 ____D C:\Users\Alinka\Desktop\Judaismus
2015-11-09 11:20 - 2015-02-06 10:17 - 00000000 ____D C:\Users\Alinka\Desktop\mamka
2015-11-07 18:08 - 2015-08-13 10:00 - 00002401 _____ C:\Users\Alinka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-11-07 18:08 - 2015-08-13 10:00 - 00000000 ___RD C:\Users\Alinka\OneDrive
2015-11-07 16:05 - 2014-09-12 17:18 - 00000000 ____D C:\Users\Stanley\AppData\Roaming\The Creative Assembly
2015-11-07 06:25 - 2015-04-16 20:52 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-11-07 06:20 - 2015-07-10 12:04 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2015-11-07 06:11 - 2015-08-12 18:21 - 00002404 _____ C:\Users\Stanley\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-11-07 06:11 - 2015-08-12 18:21 - 00000000 ___RD C:\Users\Stanley\OneDrive
2015-11-06 20:05 - 2015-08-12 16:54 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2015-11-06 20:05 - 2014-09-21 11:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-11-04 06:25 - 2015-08-12 19:56 - 11227280 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2015-11-03 19:20 - 2015-10-05 15:37 - 00810488 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-11-03 19:20 - 2015-10-05 15:37 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-11-03 17:41 - 2015-08-12 18:13 - 00000000 ____D C:\Users\Stanley\AppData\Local\Packages
2015-11-03 12:09 - 2015-09-08 10:39 - 00000000 ____D C:\Users\Alinka\AppData\Local\ElevatedDiagnostics
2015-11-03 09:13 - 2014-08-14 17:37 - 00000000 ____D C:\Users\Alinka\AppData\Local\LogMeIn Hamachi
2015-11-03 09:07 - 2015-08-12 18:13 - 00000000 __RHD C:\Users\Public\AccountPictures
2015-11-02 23:49 - 2015-08-12 19:56 - 01572496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll
2015-11-02 23:49 - 2015-08-12 19:56 - 00205456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2015-11-02 18:03 - 2015-10-08 14:38 - 12870384 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll
2015-11-02 18:03 - 2015-09-22 21:24 - 15932376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll
2015-11-02 18:03 - 2015-08-12 19:56 - 18486504 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll
2015-11-02 18:03 - 2015-08-12 19:56 - 15839200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll
2015-11-02 18:03 - 2015-08-12 19:56 - 03540360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2015-11-02 18:03 - 2015-08-12 19:56 - 03126984 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2015-11-02 18:03 - 2014-07-13 19:33 - 00112760 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2015-11-02 18:03 - 2014-07-13 19:33 - 00105264 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2015-11-02 14:36 - 2014-07-13 19:33 - 06358832 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2015-11-02 14:36 - 2014-07-13 19:33 - 02983032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2015-11-02 14:36 - 2014-07-13 19:33 - 02554488 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2015-11-02 14:36 - 2014-07-13 19:33 - 00938800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe
2015-11-02 14:36 - 2014-07-13 19:33 - 00385328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2015-11-02 14:36 - 2014-07-13 19:33 - 00062768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2015-11-01 12:14 - 2015-08-30 22:28 - 00000000 ____D C:\Users\Stanley\Documents\WB Games

==================== Files in the root of some directories =======

2015-01-20 18:03 - 2015-10-06 19:30 - 0000132 _____ () C:\Users\Stanley\AppData\Roaming\Adobe Formát BMP CS6 – předvolby
2014-12-12 19:38 - 2015-09-27 07:19 - 0000132 _____ () C:\Users\Stanley\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2014-12-11 19:16 - 2014-12-11 19:16 - 0000132 _____ () C:\Users\Stanley\AppData\Roaming\Filtr IIIExport Adobe CS6 – předvolby
2014-09-01 09:18 - 2014-09-01 09:18 - 0002086 _____ () C:\Users\Stanley\AppData\Roaming\JU
2014-11-29 15:29 - 2014-11-29 15:29 - 2051032 _____ () C:\Users\Stanley\AppData\Roaming\PQWBVJPG.exe
2014-10-08 19:42 - 2014-10-08 19:42 - 0001181 _____ () C:\Users\Stanley\AppData\Roaming\trace_FilterInstaller.1.txt
2014-10-08 19:42 - 2014-10-28 12:53 - 0000919 _____ () C:\Users\Stanley\AppData\Roaming\trace_FilterInstaller.txt
2014-10-08 19:42 - 2014-10-28 12:53 - 0000000 _____ () C:\Users\Stanley\AppData\Roaming\trace_FilterInstaller.txt-CRT.txt
2015-02-01 19:33 - 2015-02-24 14:17 - 0004608 _____ () C:\Users\Stanley\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-07-15 12:52 - 2015-09-30 11:54 - 2128896 _____ () C:\Users\Stanley\AppData\Local\file__0.localstorage
2014-10-28 21:09 - 2015-09-19 19:07 - 0007622 _____ () C:\Users\Stanley\AppData\Local\Resmon.ResmonCfg
2015-06-07 17:32 - 2015-06-07 17:43 - 0000080 _____ () C:\Users\Stanley\AppData\Local\X-Plane Installer.prf
2015-06-07 17:32 - 2015-06-07 17:44 - 0000015 _____ () C:\Users\Stanley\AppData\Local\X-Plane_drm.prf
2015-06-07 16:06 - 2015-06-07 16:06 - 0000027 _____ () C:\Users\Stanley\AppData\Local\x-plane_install_10.txt
2015-08-18 09:36 - 2015-08-18 09:36 - 0000000 _____ () C:\Users\Stanley\AppData\Local\{A6A66D19-14C0-40A4-8A18-C58506888A84}
2015-08-12 16:58 - 2015-08-12 16:58 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Some files in TEMP:
====================
C:\Users\Alinka\AppData\Local\Temp\BingSvc.exe
C:\Users\Alinka\AppData\Local\Temp\BSvcProcessor.exe
C:\Users\Alinka\AppData\Local\Temp\BSvcUpdater.exe
C:\Users\Alinka\AppData\Local\Temp\DefaultPack.EXE
C:\Users\Alinka\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmppgvqqb.dll
C:\Users\Stanley\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-11-30 16:51

==================== End of FRST.txt ============================
Přílohy
Addition.rar
(25.65 KiB) Staženo 39 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Hostitel služby vytěžuje disk

#8 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\...\MountPoints2: {c2ff9510-5eb3-11e4-bd35-1c6f65352380} - "E:\SETUP.EXE"
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => No File
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.bing.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = www.bing.com
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\Software\Microsoft\Internet Explorer\Main,Search Page = www.bing.com
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://mysearch.avg.com/?cid={CA2DD553-1656-42E5-AE6B-59B4A3B91E0F}&mid=26030044bb1547ccb84fcd2623d1ca73-9a74c5f4f61a10bdc6e844f99444e6abad5dd9ef&lang=cs&ds=AVG&coid=avgtbavg&cmpid=0615pi&pr=fr&d=2015-11-07 06:25:25&v=4.1.8.599&pid=wtu&sg=&sap=hp
BHO-x32: PriceSparrow BHO -> {2A965DDC-C64C-4562-862B-5EE487A7DEFC} -> C:\Program Files (x86)\pricesparrow\Internet Explorer\pricesparrow32.dll => No File
FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll [No File]
FF Plugin-x32: @esn/npbattlelog,version=2.4.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll [No File]
FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll [No File]
CHR Extension: (Dark Vibe) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkckeanhmkjaechlhllmapjaaglgpcbj [2015-03-06]
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath
C:\Users\Alinka\Downloads\A2C4.tmp
C:\Users\Alinka\Downloads\4621.tmp
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\Users\Stanley\AppData\Local剜捯獫慴⁲慇敭屳呇⁁屖湥楴汴浥湥⹴湩潦
C:\ProgramData\DP45977C.lfl
C:\Users\Alinka\AppData\Local\Temp
Task: {039B174C-6DAF-4AD6-A72A-7B0AE511F36E} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {0D7D9746-ADDD-44A1-978F-6FC8411AAF4F} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {103D7605-91D2-4B3C-8D57-D95A040DCF2D} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {3B8B02B6-C5D3-402A-B207-6ABEFDD56640} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {424B2C78-AEA7-4D62-B7F5-A5CB938231D6} - \7fc0c2a1-1525-480d-8449-6b16eca74cb3-6 -> No File <==== ATTENTION
Task: {57AC1738-49F0-4C06-8EF4-B8DC67727B7C} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {5894F842-04E5-4830-8FBD-495D6595331A} - \7fc0c2a1-1525-480d-8449-6b16eca74cb3-7 -> No File <==== ATTENTION
Task: {58A3F9DA-7005-4391-A7BA-78FE8B53E5A2} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {5D4F041D-0ABA-4021-BD26-413C0E8AD3FF} - \7fc0c2a1-1525-480d-8449-6b16eca74cb3-11 -> No File <==== ATTENTION
Task: {5F961553-4314-46F4-AADD-DA1FB140CC7A} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {6B1A388F-1E85-4CBE-803C-F9E77B24B1B2} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {75F2CFA0-BFBD-424E-83A4-6797B2D5C1AC} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {7A45E238-E8CB-4A18-9B27-4EF5395A91BE} - \8e44c6be-c856-496e-8ca0-f0341a21ce17 -> No File <==== ATTENTION
Task: {7C06C5A9-C155-4A0A-87D9-9ADB80703437} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {8969D287-8967-44F0-8A99-434C071C855B} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {920FABEC-4541-477C-9B28-520C53DA3A4B} - \7fc0c2a1-1525-480d-8449-6b16eca74cb3-2 -> No File <==== ATTENTION
Task: {96D0D9DE-D3F8-4E34-B0DD-992BC094DB10} - \Microsoft\Windows\Offline Files\Background Synchronization -> No File <==== ATTENTION
Task: {A5D31AED-F6E8-43F3-AD1F-55A8EFFBFC0F} - \Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector -> No File <==== ATTENTION
Task: {A779DB77-CED1-4E90-9E83-343F3C91F149} - \7fc0c2a1-1525-480d-8449-6b16eca74cb3-5 -> No File <==== ATTENTION
Task: {A9545618-A033-4AD3-A317-EBF49F97F221} - \e9f193f7-85a2-4a39-ba85-d99cb26a114b -> No File <==== ATTENTION
Task: {D9CEC22A-9AF0-4494-AAEF-E1D4EA16F9F0} - \Microsoft\Windows\File Classification Infrastructure\Property Definition Sync -> No File <==== ATTENTION
Task: {DAD0E89D-5C97-4C76-9E3D-FA84AB954F19} - \7fc0c2a1-1525-480d-8449-6b16eca74cb3-1 -> No File <==== ATTENTION
Task: {E52AB798-4D3E-48C1-9A5E-2B839E529D96} - \Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver -> No File <==== ATTENTION
Task: {EAB4757F-061D-4A25-B9AE-4AD5D75AF098} - \7fc0c2a1-1525-480d-8449-6b16eca74cb3-5_user -> No File <==== ATTENTION
Task: {FEDC3FB5-622F-4B30-B0B5-98B14CD8D432} - \Microsoft\Windows\Offline Files\Logon Synchronization -> No File <==== ATTENTION
AlternateDataStreams: C:\0ca20b29c742cfa133a29d5f53:Win32App
AlternateDataStreams: C:\166eccf2f37d1fc87402ed79406762:Win32App
AlternateDataStreams: C:\1a02853b84795276c60380:Win32App
AlternateDataStreams: C:\37b383f8b8f48ca73f443c650e66ab3c:Win32App
AlternateDataStreams: C:\7138653e50026bbc1f00:Win32App
AlternateDataStreams: C:\8134a029f59e35b9a13e:Win32App
AlternateDataStreams: C:\df788f83d196bd89f576188925194af4:Win32App
AlternateDataStreams: C:\ee01e0ce5ab0f176bd2e8a520680eb:Win32App
AlternateDataStreams: C:\Program Files\CCleaner:Win32App
AlternateDataStreams: C:\Program Files\Defraggler:Win32App
AlternateDataStreams: C:\Program Files\HWiNFO64:Win32App
AlternateDataStreams: C:\Program Files\Microsoft Silverlight:Win32App
AlternateDataStreams: C:\Program Files\Microsoft SQL Server Compact Edition:Win32App
AlternateDataStreams: C:\Program Files\MotioninJoy:Win32App
AlternateDataStreams: C:\Program Files\Nexus Mod Manager:Win32App
AlternateDataStreams: C:\Program Files (x86)\Adobe:Win32App
AlternateDataStreams: C:\Program Files (x86)\AMR to MP3 Converter:Win32App
AlternateDataStreams: C:\Program Files (x86)\android_driver_install:Win32App
AlternateDataStreams: C:\Program Files (x86)\Audacity:Win32App
AlternateDataStreams: C:\Program Files (x86)\Bamboo Dock:Win32App
AlternateDataStreams: C:\Program Files (x86)\Battle.net:Win32App
AlternateDataStreams: C:\Program Files (x86)\Battlelog Web Plugins:Win32App
AlternateDataStreams: C:\Program Files (x86)\BRS:Win32App
AlternateDataStreams: C:\Program Files (x86)\GIGABYTE:Win32App
AlternateDataStreams: C:\Program Files (x86)\Hearthstone:Win32App
AlternateDataStreams: C:\Program Files (x86)\HWiNFO32:Win32App
AlternateDataStreams: C:\Program Files (x86)\Maxthon:Win32App
AlternateDataStreams: C:\Program Files (x86)\Microsoft Office:Win32App
AlternateDataStreams: C:\Program Files (x86)\Microsoft SQL Server Compact Edition:Win32App
AlternateDataStreams: C:\Program Files (x86)\Microsoft.NET:Win32App
AlternateDataStreams: C:\Program Files (x86)\MonitorDriver:Win32App
AlternateDataStreams: C:\Program Files (x86)\Opera:Win32App
AlternateDataStreams: C:\Program Files (x86)\Origin:Win32App
AlternateDataStreams: C:\Program Files (x86)\RadeonPro:Win32App
AlternateDataStreams: C:\Program Files (x86)\Razer:Win32App
AlternateDataStreams: C:\Program Files (x86)\TeamViewer:Win32App
AlternateDataStreams: C:\Program Files (x86)\WinRAR:Win32App
AlternateDataStreams: C:\Program Files\Common Files\microsoft shared:Win32App
AlternateDataStreams: C:\Users\Alinka\AppData\Local\Temp:Win32App
AlternateDataStreams: C:\ProgramData\regid.1991-06.com.microsoft:Win32App
AlternateDataStreams: C:\ProgramData\regid.1995-08.com.techsmith:Win32App
AlternateDataStreams: C:\ProgramData\TEMP:02DD996C
AlternateDataStreams: C:\ProgramData\TEMP:1CE11B51
AlternateDataStreams: C:\ProgramData\TEMP:2CB9631F
AlternateDataStreams: C:\ProgramData\TEMP:7FA0D639
AlternateDataStreams: C:\Users\Stanley\Downloads\SMART6:Win32App
AlternateDataStreams: C:\Users\Stanley\Downloads\UxStyle_Core_jul13_bits:Win32App
AlternateDataStreams: C:\Users\Stanley\Downloads\win_7_theme_installer_1_0_1_2_by_maksl5-d321cjc:Win32App
AlternateDataStreams: C:\Users\Stanley\AppData\Local\Temp:Win32App

ResetHosts:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

SteveOxford
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 27 lis 2015 20:55

Re: Hostitel služby vytěžuje disk

#9 Příspěvek od SteveOxford »

Fix result of Farbar Recovery Scan Tool (x64) Version:29-11-2015
Ran by Stanley (2015-12-02 14:32:38) Run:1
Running from C:\Users\Stanley\Desktop
Loaded Profiles: Stanley (Available Profiles: Stanley & Alinka & DefaultAppPool)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\...\MountPoints2: {c2ff9510-5eb3-11e4-bd35-1c6f65352380} - "E:\SETUP.EXE"
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => No File
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.bing.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = www.bing.com
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\Software\Microsoft\Internet Explorer\Main,Search Page = www.bing.com
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://mysearch.avg.com/?cid={CA2DD553-1656-42E5-AE6B-59B4A3B91E0F}&mid=26030044bb1547ccb84fcd2623d1ca73-9a74c5f4f61a10bdc6e844f99444e6abad5dd9ef&lang=cs&ds=AVG&coid=avgtbavg&cmpid=0615pi&pr=fr&d=2015-11-07 06:25:25&v=4.1.8.599&pid=wtu&sg=&sap=hp
BHO-x32: PriceSparrow BHO -> {2A965DDC-C64C-4562-862B-5EE487A7DEFC} -> C:\Program Files (x86)\pricesparrow\Internet Explorer\pricesparrow32.dll => No File
FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll [No File]
FF Plugin-x32: @esn/npbattlelog,version=2.4.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll [No File]
FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll [No File]
CHR Extension: (Dark Vibe) - C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkckeanhmkjaechlhllmapjaaglgpcbj [2015-03-06]
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath
C:\Users\Alinka\Downloads\A2C4.tmp
C:\Users\Alinka\Downloads\4621.tmp
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\Users\Stanley\AppData\Local剜捯獫慴⁲慇敭屳呇⁁屖湥楴汴浥湥⹴湩潦
C:\ProgramData\DP45977C.lfl
C:\Users\Alinka\AppData\Local\Temp
Task: {039B174C-6DAF-4AD6-A72A-7B0AE511F36E} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {0D7D9746-ADDD-44A1-978F-6FC8411AAF4F} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {103D7605-91D2-4B3C-8D57-D95A040DCF2D} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {3B8B02B6-C5D3-402A-B207-6ABEFDD56640} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {424B2C78-AEA7-4D62-B7F5-A5CB938231D6} - \7fc0c2a1-1525-480d-8449-6b16eca74cb3-6 -> No File <==== ATTENTION
Task: {57AC1738-49F0-4C06-8EF4-B8DC67727B7C} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {5894F842-04E5-4830-8FBD-495D6595331A} - \7fc0c2a1-1525-480d-8449-6b16eca74cb3-7 -> No File <==== ATTENTION
Task: {58A3F9DA-7005-4391-A7BA-78FE8B53E5A2} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {5D4F041D-0ABA-4021-BD26-413C0E8AD3FF} - \7fc0c2a1-1525-480d-8449-6b16eca74cb3-11 -> No File <==== ATTENTION
Task: {5F961553-4314-46F4-AADD-DA1FB140CC7A} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {6B1A388F-1E85-4CBE-803C-F9E77B24B1B2} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {75F2CFA0-BFBD-424E-83A4-6797B2D5C1AC} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {7A45E238-E8CB-4A18-9B27-4EF5395A91BE} - \8e44c6be-c856-496e-8ca0-f0341a21ce17 -> No File <==== ATTENTION
Task: {7C06C5A9-C155-4A0A-87D9-9ADB80703437} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {8969D287-8967-44F0-8A99-434C071C855B} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {920FABEC-4541-477C-9B28-520C53DA3A4B} - \7fc0c2a1-1525-480d-8449-6b16eca74cb3-2 -> No File <==== ATTENTION
Task: {96D0D9DE-D3F8-4E34-B0DD-992BC094DB10} - \Microsoft\Windows\Offline Files\Background Synchronization -> No File <==== ATTENTION
Task: {A5D31AED-F6E8-43F3-AD1F-55A8EFFBFC0F} - \Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector -> No File <==== ATTENTION
Task: {A779DB77-CED1-4E90-9E83-343F3C91F149} - \7fc0c2a1-1525-480d-8449-6b16eca74cb3-5 -> No File <==== ATTENTION
Task: {A9545618-A033-4AD3-A317-EBF49F97F221} - \e9f193f7-85a2-4a39-ba85-d99cb26a114b -> No File <==== ATTENTION
Task: {D9CEC22A-9AF0-4494-AAEF-E1D4EA16F9F0} - \Microsoft\Windows\File Classification Infrastructure\Property Definition Sync -> No File <==== ATTENTION
Task: {DAD0E89D-5C97-4C76-9E3D-FA84AB954F19} - \7fc0c2a1-1525-480d-8449-6b16eca74cb3-1 -> No File <==== ATTENTION
Task: {E52AB798-4D3E-48C1-9A5E-2B839E529D96} - \Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver -> No File <==== ATTENTION
Task: {EAB4757F-061D-4A25-B9AE-4AD5D75AF098} - \7fc0c2a1-1525-480d-8449-6b16eca74cb3-5_user -> No File <==== ATTENTION
Task: {FEDC3FB5-622F-4B30-B0B5-98B14CD8D432} - \Microsoft\Windows\Offline Files\Logon Synchronization -> No File <==== ATTENTION
AlternateDataStreams: C:\0ca20b29c742cfa133a29d5f53:Win32App
AlternateDataStreams: C:\166eccf2f37d1fc87402ed79406762:Win32App
AlternateDataStreams: C:\1a02853b84795276c60380:Win32App
AlternateDataStreams: C:\37b383f8b8f48ca73f443c650e66ab3c:Win32App
AlternateDataStreams: C:\7138653e50026bbc1f00:Win32App
AlternateDataStreams: C:\8134a029f59e35b9a13e:Win32App
AlternateDataStreams: C:\df788f83d196bd89f576188925194af4:Win32App
AlternateDataStreams: C:\ee01e0ce5ab0f176bd2e8a520680eb:Win32App
AlternateDataStreams: C:\Program Files\CCleaner:Win32App
AlternateDataStreams: C:\Program Files\Defraggler:Win32App
AlternateDataStreams: C:\Program Files\HWiNFO64:Win32App
AlternateDataStreams: C:\Program Files\Microsoft Silverlight:Win32App
AlternateDataStreams: C:\Program Files\Microsoft SQL Server Compact Edition:Win32App
AlternateDataStreams: C:\Program Files\MotioninJoy:Win32App
AlternateDataStreams: C:\Program Files\Nexus Mod Manager:Win32App
AlternateDataStreams: C:\Program Files (x86)\Adobe:Win32App
AlternateDataStreams: C:\Program Files (x86)\AMR to MP3 Converter:Win32App
AlternateDataStreams: C:\Program Files (x86)\android_driver_install:Win32App
AlternateDataStreams: C:\Program Files (x86)\Audacity:Win32App
AlternateDataStreams: C:\Program Files (x86)\Bamboo Dock:Win32App
AlternateDataStreams: C:\Program Files (x86)\Battle.net:Win32App
AlternateDataStreams: C:\Program Files (x86)\Battlelog Web Plugins:Win32App
AlternateDataStreams: C:\Program Files (x86)\BRS:Win32App
AlternateDataStreams: C:\Program Files (x86)\GIGABYTE:Win32App
AlternateDataStreams: C:\Program Files (x86)\Hearthstone:Win32App
AlternateDataStreams: C:\Program Files (x86)\HWiNFO32:Win32App
AlternateDataStreams: C:\Program Files (x86)\Maxthon:Win32App
AlternateDataStreams: C:\Program Files (x86)\Microsoft Office:Win32App
AlternateDataStreams: C:\Program Files (x86)\Microsoft SQL Server Compact Edition:Win32App
AlternateDataStreams: C:\Program Files (x86)\Microsoft.NET:Win32App
AlternateDataStreams: C:\Program Files (x86)\MonitorDriver:Win32App
AlternateDataStreams: C:\Program Files (x86)\Opera:Win32App
AlternateDataStreams: C:\Program Files (x86)\Origin:Win32App
AlternateDataStreams: C:\Program Files (x86)\RadeonPro:Win32App
AlternateDataStreams: C:\Program Files (x86)\Razer:Win32App
AlternateDataStreams: C:\Program Files (x86)\TeamViewer:Win32App
AlternateDataStreams: C:\Program Files (x86)\WinRAR:Win32App
AlternateDataStreams: C:\Program Files\Common Files\microsoft shared:Win32App
AlternateDataStreams: C:\Users\Alinka\AppData\Local\Temp:Win32App
AlternateDataStreams: C:\ProgramData\regid.1991-06.com.microsoft:Win32App
AlternateDataStreams: C:\ProgramData\regid.1995-08.com.techsmith:Win32App
AlternateDataStreams: C:\ProgramData\TEMP:02DD996C
AlternateDataStreams: C:\ProgramData\TEMP:1CE11B51
AlternateDataStreams: C:\ProgramData\TEMP:2CB9631F
AlternateDataStreams: C:\ProgramData\TEMP:7FA0D639
AlternateDataStreams: C:\Users\Stanley\Downloads\SMART6:Win32App
AlternateDataStreams: C:\Users\Stanley\Downloads\UxStyle_Core_jul13_bits:Win32App
AlternateDataStreams: C:\Users\Stanley\Downloads\win_7_theme_installer_1_0_1_2_by_maksl5-d321cjc:Win32App
AlternateDataStreams: C:\Users\Stanley\AppData\Local\Temp:Win32App

ResetHosts:
End
*****************

HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully
"HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c2ff9510-5eb3-11e4-bd35-1c6f65352380}" => key removed successfully
HKCR\CLSID\{c2ff9510-5eb3-11e4-bd35-1c6f65352380} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt3"" => key removed successfully
HKCR\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt4"" => key removed successfully
HKCR\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt6"" => key removed successfully
HKCR\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt8"" => key removed successfully
HKCR\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast" => key removed successfully
HKCR\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => key not found.
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt3"" => key removed successfully
HKCR\Wow6432Node\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => key not found.
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt4"" => key removed successfully
HKCR\Wow6432Node\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => key not found.
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt6"" => key removed successfully
HKCR\Wow6432Node\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => key not found.
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt8"" => key removed successfully
HKCR\Wow6432Node\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => key not found.
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Search Page => value removed successfully
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\Software\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKU\S-1-5-21-3962638898-2331993480-1807031265-1000\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A965DDC-C64C-4562-862B-5EE487A7DEFC}" => key removed successfully
"HKCR\Wow6432Node\CLSID\{2A965DDC-C64C-4562-862B-5EE487A7DEFC}" => key removed successfully
"HKLM\Software\MozillaPlugins\@esn/npbattlelog,version=2.5.1" => key removed successfully
"HKLM\Software\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.4.0" => key removed successfully
"HKLM\Software\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.5.1" => key removed successfully
C:\Users\Stanley\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkckeanhmkjaechlhllmapjaaglgpcbj => moved successfully
idsvc => service removed successfully
wpcsvc => service removed successfully
C:\Users\Alinka\Downloads\A2C4.tmp => moved successfully
C:\Users\Alinka\Downloads\4621.tmp => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\Users\Stanley\AppData\Local剜捯獫慴⁲慇敭屳呇⁁屖湥楴汴浥湥⹴湩潦 => moved successfully
C:\ProgramData\DP45977C.lfl => moved successfully
C:\Users\Alinka\AppData\Local\Temp => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{039B174C-6DAF-4AD6-A72A-7B0AE511F36E}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{039B174C-6DAF-4AD6-A72A-7B0AE511F36E}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0D7D9746-ADDD-44A1-978F-6FC8411AAF4F}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0D7D9746-ADDD-44A1-978F-6FC8411AAF4F}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{103D7605-91D2-4B3C-8D57-D95A040DCF2D}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{103D7605-91D2-4B3C-8D57-D95A040DCF2D}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3B8B02B6-C5D3-402A-B207-6ABEFDD56640}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3B8B02B6-C5D3-402A-B207-6ABEFDD56640}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{424B2C78-AEA7-4D62-B7F5-A5CB938231D6}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{424B2C78-AEA7-4D62-B7F5-A5CB938231D6}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\7fc0c2a1-1525-480d-8449-6b16eca74cb3-6" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{57AC1738-49F0-4C06-8EF4-B8DC67727B7C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{57AC1738-49F0-4C06-8EF4-B8DC67727B7C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5894F842-04E5-4830-8FBD-495D6595331A}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5894F842-04E5-4830-8FBD-495D6595331A}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\7fc0c2a1-1525-480d-8449-6b16eca74cb3-7" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{58A3F9DA-7005-4391-A7BA-78FE8B53E5A2}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{58A3F9DA-7005-4391-A7BA-78FE8B53E5A2}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5D4F041D-0ABA-4021-BD26-413C0E8AD3FF}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5D4F041D-0ABA-4021-BD26-413C0E8AD3FF}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\7fc0c2a1-1525-480d-8449-6b16eca74cb3-11" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5F961553-4314-46F4-AADD-DA1FB140CC7A}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5F961553-4314-46F4-AADD-DA1FB140CC7A}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6B1A388F-1E85-4CBE-803C-F9E77B24B1B2}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6B1A388F-1E85-4CBE-803C-F9E77B24B1B2}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{75F2CFA0-BFBD-424E-83A4-6797B2D5C1AC}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{75F2CFA0-BFBD-424E-83A4-6797B2D5C1AC}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{7A45E238-E8CB-4A18-9B27-4EF5395A91BE}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7A45E238-E8CB-4A18-9B27-4EF5395A91BE}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\8e44c6be-c856-496e-8ca0-f0341a21ce17" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7C06C5A9-C155-4A0A-87D9-9ADB80703437}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7C06C5A9-C155-4A0A-87D9-9ADB80703437}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8969D287-8967-44F0-8A99-434C071C855B}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8969D287-8967-44F0-8A99-434C071C855B}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{920FABEC-4541-477C-9B28-520C53DA3A4B}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{920FABEC-4541-477C-9B28-520C53DA3A4B}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\7fc0c2a1-1525-480d-8449-6b16eca74cb3-2" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{96D0D9DE-D3F8-4E34-B0DD-992BC094DB10}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96D0D9DE-D3F8-4E34-B0DD-992BC094DB10}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Offline Files\Background Synchronization" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A5D31AED-F6E8-43F3-AD1F-55A8EFFBFC0F}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A5D31AED-F6E8-43F3-AD1F-55A8EFFBFC0F}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A779DB77-CED1-4E90-9E83-343F3C91F149}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A779DB77-CED1-4E90-9E83-343F3C91F149}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\7fc0c2a1-1525-480d-8449-6b16eca74cb3-5" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A9545618-A033-4AD3-A317-EBF49F97F221}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A9545618-A033-4AD3-A317-EBF49F97F221}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e9f193f7-85a2-4a39-ba85-d99cb26a114b" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D9CEC22A-9AF0-4494-AAEF-E1D4EA16F9F0}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D9CEC22A-9AF0-4494-AAEF-E1D4EA16F9F0}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\File Classification Infrastructure\Property Definition Sync" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{DAD0E89D-5C97-4C76-9E3D-FA84AB954F19}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DAD0E89D-5C97-4C76-9E3D-FA84AB954F19}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\7fc0c2a1-1525-480d-8449-6b16eca74cb3-1" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E52AB798-4D3E-48C1-9A5E-2B839E529D96}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E52AB798-4D3E-48C1-9A5E-2B839E529D96}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{EAB4757F-061D-4A25-B9AE-4AD5D75AF098}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EAB4757F-061D-4A25-B9AE-4AD5D75AF098}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\7fc0c2a1-1525-480d-8449-6b16eca74cb3-5_user" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{FEDC3FB5-622F-4B30-B0B5-98B14CD8D432}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FEDC3FB5-622F-4B30-B0B5-98B14CD8D432}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Offline Files\Logon Synchronization" => key removed successfully
C:\0ca20b29c742cfa133a29d5f53 => ":Win32App" ADS removed successfully.
C:\166eccf2f37d1fc87402ed79406762 => ":Win32App" ADS removed successfully.
C:\1a02853b84795276c60380 => ":Win32App" ADS removed successfully.
C:\37b383f8b8f48ca73f443c650e66ab3c => ":Win32App" ADS removed successfully.
C:\7138653e50026bbc1f00 => ":Win32App" ADS removed successfully.
C:\8134a029f59e35b9a13e => ":Win32App" ADS removed successfully.
C:\df788f83d196bd89f576188925194af4 => ":Win32App" ADS removed successfully.
C:\ee01e0ce5ab0f176bd2e8a520680eb => ":Win32App" ADS removed successfully.
C:\Program Files\CCleaner => ":Win32App" ADS removed successfully.
C:\Program Files\Defraggler => ":Win32App" ADS removed successfully.
C:\Program Files\HWiNFO64 => ":Win32App" ADS removed successfully.
C:\Program Files\Microsoft Silverlight => ":Win32App" ADS removed successfully.
C:\Program Files\Microsoft SQL Server Compact Edition => ":Win32App" ADS removed successfully.
C:\Program Files\MotioninJoy => ":Win32App" ADS removed successfully.
C:\Program Files\Nexus Mod Manager => ":Win32App" ADS removed successfully.
C:\Program Files (x86)\Adobe => ":Win32App" ADS removed successfully.
C:\Program Files (x86)\AMR to MP3 Converter => ":Win32App" ADS removed successfully.
C:\Program Files (x86)\android_driver_install => ":Win32App" ADS removed successfully.
C:\Program Files (x86)\Audacity => ":Win32App" ADS removed successfully.
C:\Program Files (x86)\Bamboo Dock => ":Win32App" ADS removed successfully.
C:\Program Files (x86)\Battle.net => ":Win32App" ADS removed successfully.
C:\Program Files (x86)\Battlelog Web Plugins => ":Win32App" ADS removed successfully.
C:\Program Files (x86)\BRS => ":Win32App" ADS removed successfully.
C:\Program Files (x86)\GIGABYTE => ":Win32App" ADS removed successfully.
C:\Program Files (x86)\Hearthstone => ":Win32App" ADS removed successfully.
C:\Program Files (x86)\HWiNFO32 => ":Win32App" ADS removed successfully.
C:\Program Files (x86)\Maxthon => ":Win32App" ADS removed successfully.
C:\Program Files (x86)\Microsoft Office => ":Win32App" ADS removed successfully.
C:\Program Files (x86)\Microsoft SQL Server Compact Edition => ":Win32App" ADS removed successfully.
C:\Program Files (x86)\Microsoft.NET => ":Win32App" ADS removed successfully.
C:\Program Files (x86)\MonitorDriver => ":Win32App" ADS removed successfully.
C:\Program Files (x86)\Opera => ":Win32App" ADS removed successfully.
C:\Program Files (x86)\Origin => ":Win32App" ADS removed successfully.
C:\Program Files (x86)\RadeonPro => ":Win32App" ADS removed successfully.
C:\Program Files (x86)\Razer => ":Win32App" ADS removed successfully.
C:\Program Files (x86)\TeamViewer => ":Win32App" ADS removed successfully.
C:\Program Files (x86)\WinRAR => ":Win32App" ADS removed successfully.
C:\Program Files\Common Files\microsoft shared => ":Win32App" ADS removed successfully.
"C:\Users\Alinka\AppData\Local\Temp" => ":Win32App" ADS not found.
C:\ProgramData\regid.1991-06.com.microsoft => ":Win32App" ADS removed successfully.
C:\ProgramData\regid.1995-08.com.techsmith => ":Win32App" ADS removed successfully.
C:\ProgramData\TEMP => ":02DD996C" ADS removed successfully.
C:\ProgramData\TEMP => ":1CE11B51" ADS removed successfully.
C:\ProgramData\TEMP => ":2CB9631F" ADS removed successfully.
C:\ProgramData\TEMP => ":7FA0D639" ADS removed successfully.
C:\Users\Stanley\Downloads\SMART6 => ":Win32App" ADS removed successfully.
C:\Users\Stanley\Downloads\UxStyle_Core_jul13_bits => ":Win32App" ADS removed successfully.
C:\Users\Stanley\Downloads\win_7_theme_installer_1_0_1_2_by_maksl5-d321cjc => ":Win32App" ADS removed successfully.
C:\Users\Stanley\AppData\Local\Temp => ":Win32App" ADS removed successfully.
ResetHosts: => Error: No automatic fix found for this entry.

==== End of Fixlog 14:32:47 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Hostitel služby vytěžuje disk

#10 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět