Stránka 1 z 2

Vysoký ping

Napsal: 03 dub 2015 20:59
od akekel
Dobrý den.
Předem děkuji za ochotu pomoci jelikož už opravdu nevím jak to mám řešit. :)
Doteď vše fungovalo bezvadně. Ping okolo 30 - 50. Ale poslední týden teď po 20 min. vystřelí na 160 - 180 trvale a v tento den se už nesníží. Jinak jsem připojen přes kabel. Hraji hry Moba typu. League of Legends, Smite... Můj brácha vedle v pokoji jede na stejném netu a taky je připojen přes kabel a žádné problémy nemá. Řešil jsem to s providerem, ten prej něco přesměroval nebo co. Ale je divné, že na jiném pc to jede běžně jak má, ale na mém se to naráz z ničeho nic pokazilo. To samé se mi ději při připojení přes wifi, ale u bráchy na pc všechno šlape. Tak je chyba asi v pc, ale zaboha už nevím jaká :D Při 160 ping je to opravdu už nehratelné, a tak mi dochází trpělivost. Děkuji za pomoc. :)
S pozdravem akekel.

Re: Vysoký ping

Napsal: 03 dub 2015 21:38
od Rudy

Re: Vysoký ping

Napsal: 04 dub 2015 11:02
od akekel
Tady to je. :)

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Libor (administrator) on PC-LIBOR-ML on 04-04-2015 11:44:39
Running from C:\Users\Libor\Desktop
Loaded Profiles: Libor (Available profiles: Libor)
Platform: Windows 8.1 Connected (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
() C:\Program Files\ATI Technologies\ATI.ACE\a4\AdaptiveSleepService.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Maxthon) C:\Program Files (x86)\Maxthon\Modules\Service\Update\MaxthonUpdateSvc.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(Symantec Corporation) C:\Program Files (x86)\Norton AntiVirus\Engine\21.6.0.32\nav.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
() C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe
() C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
(MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
(Acer Cloud Technology) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
(McAfee, Inc.) C:\Program Files\mcafee\vul\McVulCtr.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.11.42\nst.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.11.42\nst.exe
(Symantec Corporation) C:\Program Files (x86)\Norton AntiVirus\Engine\21.6.0.32\nav.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
(Qualcomm®Atheros®) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
() C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
(Realtek semiconductor) C:\Windows\RTFTrack.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(Pokki) C:\Users\Libor\AppData\Local\Pokki\Engine\HostAppServiceUpdater.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Deskjet 5520 series\Bin\ScanToPCActivationApp.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Pokki) C:\Users\Libor\AppData\Local\Pokki\Engine\HostAppServiceUpdater.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Nullsoft, Inc.) C:\Program Files (x86)\Winamp\winamp.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Deskjet 5520 series\Bin\HPNetworkCommunicator.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [903384 2013-07-25] (Conexant Systems, Inc.)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1647616 2012-06-13] (Conexant Systems, Inc.)
HKLM\...\Run: [RtsFT] => C:\windows\RTFTrack.exe [6340312 2013-07-19] (Realtek semiconductor)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17111056 2014-05-29] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [193008 2014-05-29] (Lenovo(beijing) Limited)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-12-07] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\McAfee.com\Agent\mcagent.exe [537992 2014-04-25] (McAfee, Inc.)
HKLM-x32\...\Run: [UpdateP2GShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [214312 2011-12-07] (CyberLink Corp.)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2011-10-28] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
HKLM-x32\...\Run: [BacKGround Agent] => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [65280 2015-03-04] (Acer Incorporated)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [132736 2013-09-25] ( (Qualcomm®Atheros®))
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\...\Run: [Pokki] => "%LOCALAPPDATA%\Pokki\Engine\HostAppServiceUpdater.exe" /LOGON
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30524520 2014-11-27] (Skype Technologies S.A.)
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6501656 2014-10-23] (Piriform Ltd)
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\...\Run: [GSplay.exe] => C:\Users\Libor\AppData\Local\Temp\Rar$EXa0.278\GSplay.exe <===== ATTENTION
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\...\Run: [HP Deskjet 5520 series (NET)] => C:\Program Files\HP\HP Deskjet 5520 series\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\...\MountPoints2: {61d56382-e746-11e3-8254-806e6f6e6963} - "E:\Start.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\simplicheck.lnk
ShortcutTarget: simplicheck.lnk -> C:\Program Files (x86)\simplitec\simplicheck\simplicheck.exe (simplitec)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com/?pc=LCJB
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.lenovo.com
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-643025375-3208447214-1379279409-1002 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?PC=WCUG&FORM ... earchTerms}
SearchScopes: HKU\S-1-5-21-643025375-3208447214-1379279409-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?PC=WCUG&FORM ... earchTerms}
SearchScopes: HKU\S-1-5-21-643025375-3208447214-1379279409-1002 -> {F6C3D691-9A89-4CE3-A446-6EC4295F6B96} URL =
BHO: Norton Identity Protection -> {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} -> C:\Program Files (x86)\Norton Identity Safe\Engine64\2014.7.11.42\coIEPlg.dll [2015-03-05] (Symantec Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
BHO-x32: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files (x86)\Norton AntiVirus\Engine\21.6.0.32\IPS\IPSBHO.DLL [2014-07-23] (Symantec Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-08-14] (Oracle Corporation)
BHO-x32: Norton Identity Protection -> {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} -> C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.11.42\coIEPlg.dll [2015-03-05] (Symantec Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-08-14] (Oracle Corporation)
Toolbar: HKLM - Norton Identity Safe Toolbar - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - C:\Program Files (x86)\Norton Identity Safe\Engine64\2014.7.11.42\coIEPlg.dll [2015-03-05] (Symantec Corporation)
Toolbar: HKLM-x32 - Norton Identity Safe Toolbar - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.11.42\coIEPlg.dll [2015-03-05] (Symantec Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll [2014-04-25] (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll [2014-04-25] (McAfee, Inc.)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.1

FireFox:
========
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2014-04-25] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32.dll [2014-12-29] ()
FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-08-14] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2014-08-14] (Oracle Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2014-04-25] ()
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-04] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-04] (Google Inc.)
FF Plugin HKU\S-1-5-21-643025375-3208447214-1379279409-1002: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Libor\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2009-11-30] (Unity Technologies ApS)
FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_21.4.0.13\IPSFF
FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_21.4.0.13\IPSFF [2014-08-09]
FF HKLM-x32\...\Firefox\Extensions: [{F04D2D30-776C-4d02-8627-8E4385ECA58D}] - C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2014.7.3.12\coFFPlgn
FF Extension: Norton Identity Safe Toolbar - C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2014.7.3.12\coFFPlgn [2015-03-24]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2014-05-29]

Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.cz/
CHR StartupUrls: Default -> "hxxp://tuvaro.com/ws/?source=4c3f95e5&tbp=homepage&toolbarid=base&u=a43664880000000000000017c4bc8e67", "hxxp://mixidj.delta-search.com/?babsrc=HP_ss&mntrId=7AB90017C4BC8E67&affID=121125&tsp=4920", "hxxp://www.search.ask.com/?o=APN10647A&gct=hp& ... 07-215&t=4"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-08-09]
CHR Extension: (Google Drive) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-08-09]
CHR Extension: (Seznam Lištička - Email) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2014-10-27]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2014-10-27]
CHR Extension: (YouTube) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-08-09]
CHR Extension: (Google Search) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-08-09]
CHR Extension: (AdBlock) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-10-27]
CHR Extension: (Google Wallet) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-08-09]
CHR Extension: (Norton Security Toolbar) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nppllibpnmahfaklnpggkibhkapjkeob [2014-08-09]
CHR Extension: (Battlefield Play4Free) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiokahphinmbmakkehgelkmpolmnbkdh [2014-10-27]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2014-10-27]
CHR Extension: (Gmail) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-08-09]
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - https://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [nppllibpnmahfaklnpggkibhkapjkeob] - C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.11.42\Exts\Chrome.crx [2015-03-24]
CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]
CHR HKLM-x32\...\Chrome\Extension: [nppllibpnmahfaklnpggkibhkapjkeob] - C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.11.42\Exts\Chrome.crx [2015-03-24]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdaptiveSleepService; C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [99328 2013-12-07] () [File not signed]
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2013-12-07] (Advanced Micro Devices, Inc.) [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [312448 2013-09-25] (Windows (R) Win 7 DDK provider) [File not signed]
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2840832 2015-03-04] (Acer Incorporated)
R2 Fabs; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [1840128 2011-05-24] (MAGIX AG) [File not signed]
S3 FirebirdServerMAGIXInstance; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [2702848 2011-04-26] (MAGIX®) [File not signed]
U2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9216 2015-03-12] (Hi-Rez Studios) [File not signed]
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 MaxthonUpdateSvc; C:\Program Files (x86)\Maxthon\Modules\Service\Update\MaxthonUpdateSvc.exe [1851192 2014-12-02] (Maxthon)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178528 2014-04-25] (McAfee, Inc.)
S3 McAWFwk; c:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe [334608 2013-07-30] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [603424 2014-06-12] (McAfee, Inc.)
S4 McOobeSv2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1041192 2014-07-24] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219752 2014-06-20] (McAfee, Inc.)
R2 mfevtp; C:\windows\system32\mfevtps.exe [189912 2014-06-20] (McAfee, Inc.)
R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 NAV; C:\Program Files (x86)\Norton AntiVirus\Engine\21.7.0.11\NAV.exe [262928 2015-03-07] (Symantec Corporation)
R2 NCO; C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.11.42\NST.exe [131144 2015-03-05] (Symantec Corporation)
R2 PnkBstrA; C:\windows\SysWOW64\PnkBstrA.exe [76888 2014-10-27] ()
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390632 2012-04-24] ()
R2 VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe [68368 2014-05-29] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2013-09-25] (Atheros) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 AmdAS4; C:\Windows\System32\drivers\AmdAS4.sys [17504 2013-02-07] (Advanced Micro Devices, INC.)
R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [36096 2013-05-21] (Advanced Micro Devices, Inc.)
R2 APXACC; C:\Windows\system32\DRIVERS\appexDrv.sys [219360 2013-04-18] (AppEx Networks Corporation)
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3859968 2013-08-16] (Qualcomm Atheros Communications, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [222720 2013-09-24] (Advanced Micro Devices)
R1 BHDrvx64; C:\Program Files (x86)\Norton AntiVirus\NortonData\21.4.0.13\Definitions\BASHDefs\20150321.001\BHDrvx64.sys [1622744 2015-02-03] (Symantec Corporation)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-09-25] (Qualcomm Atheros)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
R1 ccSet_NAV; C:\Windows\system32\drivers\NAVx64\1507000.00B\ccSetx64.sys [162392 2014-02-21] (Symantec Corporation)
R1 ccSet_NST; C:\Windows\system32\drivers\NSTx64\7DE070B0.02A\ccSetx64.sys [162392 2013-09-27] (Symantec Corporation)
R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [72128 2014-06-20] (McAfee, Inc.)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-08-09] (Disc Soft Ltd)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [487216 2014-12-11] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [142640 2014-12-11] (Symantec Corporation)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)
R1 IDSVia64; C:\Program Files (x86)\Norton AntiVirus\NortonData\21.4.0.13\Definitions\IPSDefs\20150403.001\IDSvia64.sys [671448 2015-03-27] (Symantec Corporation)
R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [181704 2014-06-20] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [313544 2014-06-20] (McAfee, Inc.)
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [70600 2014-06-20] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [523792 2014-06-20] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [786296 2014-06-20] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\system32\DRIVERS\mfencbdc.sys [444720 2014-07-24] (McAfee, Inc.)
S3 mfencrk; C:\Windows\system32\DRIVERS\mfencrk.sys [96592 2014-07-24] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [348552 2014-06-20] (McAfee, Inc.)
R3 NAVENG; C:\Program Files (x86)\Norton AntiVirus\NortonData\21.4.0.13\Definitions\VirusDefs\20150403.019\ENG64.SYS [129752 2015-01-23] (Symantec Corporation)
R3 NAVEX15; C:\Program Files (x86)\Norton AntiVirus\NortonData\21.4.0.13\Definitions\VirusDefs\20150403.019\EX64.SYS [2137304 2015-01-23] (Symantec Corporation)
S3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew02.sys [4649440 2013-06-18] (Intel Corporation)
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [8247640 2013-07-19] (Realtek Semiconductor Corp.)
R3 SRTSP; C:\Windows\System32\Drivers\NAVx64\1506000.020\SRTSP64.SYS [876248 2014-08-26] (Symantec Corporation)
R1 SRTSPX; C:\Windows\system32\drivers\NAVx64\1507000.00B\SRTSPX64.SYS [37592 2014-08-26] (Symantec Corporation)
R0 SymDS; C:\Windows\System32\drivers\NAVx64\1507000.00B\SYMDS64.SYS [493656 2013-10-30] (Symantec Corporation)
R0 SymEFA; C:\Windows\System32\drivers\NAVx64\1507000.00B\SYMEFA64.SYS [1148120 2014-03-04] (Symantec Corporation)
S0 SymELAM; C:\Windows\System32\drivers\NAVx64\1507000.00B\SymELAM.sys [23568 2013-10-30] (Symantec Corporation)
R3 SymEvent; C:\windows\system32\Drivers\SYMEVENT64x86.SYS [177752 2014-08-09] (Symantec Corporation)
R1 SymIRON; C:\Windows\system32\drivers\NAVx64\1507000.00B\Ironx64.SYS [266968 2014-08-06] (Symantec Corporation)
R3 SymNetS; C:\Windows\System32\Drivers\NAVx64\1506000.020\SYMNETS.SYS [593112 2014-02-18] (Symantec Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-14] ("CyberLink)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-04 11:44 - 2015-04-04 11:46 - 00026486 _____ () C:\Users\Libor\Desktop\FRST.txt
2015-04-04 11:43 - 2015-04-04 11:44 - 00000000 ____D () C:\FRST
2015-04-04 11:38 - 2015-04-04 11:38 - 02095616 _____ (Farbar) C:\Users\Libor\Desktop\FRST64.exe
2015-04-03 20:02 - 2015-04-03 20:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2015-04-03 11:28 - 2015-04-03 11:28 - 00000000 _____ () C:\windows\setuperr.log
2015-04-03 11:28 - 2015-04-03 11:28 - 00000000 _____ () C:\windows\setupact.log
2015-04-02 14:13 - 2013-10-05 01:29 - 00421744 _____ (Network Tunnel Lab) C:\windows\SysWOW64\networkdlllsp.dll
2015-04-02 14:12 - 2015-04-02 14:12 - 00000038 ___SH () C:\Users\Libor\AppData\Local\1754111884ee9ab5277ca00.95260103
2015-04-02 14:12 - 2015-04-02 14:12 - 00000000 __SHD () C:\Users\Libor\wc
2015-04-02 14:12 - 2015-04-02 14:12 - 00000000 __SHD () C:\Users\Libor\AppData\Roaming\wyUpdate AU
2015-04-02 14:12 - 2015-04-02 14:12 - 00000000 ____D () C:\Users\Libor\AppData\Local\BattlePing
2015-04-02 14:10 - 2015-04-02 14:10 - 05339992 _____ (BattlePing) C:\Users\Libor\Downloads\BattlePing1.3.5.8.exe
2015-04-01 19:52 - 2015-04-01 19:52 - 00000000 ____D () C:\Users\Libor\AppData\Local\Razer_Inc
2015-04-01 19:51 - 2015-04-01 19:51 - 00000000 ____D () C:\Users\Libor\Documents\Razer
2015-04-01 19:44 - 2015-04-02 14:17 - 00000000 ____D () C:\Users\Libor\AppData\Local\Razer
2015-04-01 19:27 - 2015-04-02 14:17 - 00000000 ____D () C:\ProgramData\Razer
2015-04-01 19:27 - 2015-04-02 14:17 - 00000000 ____D () C:\Program Files (x86)\Razer
2015-04-01 19:24 - 2015-04-01 19:25 - 41954352 _____ (Razer Inc. ) C:\Users\Libor\Downloads\RazerGameBoosterSetup_4.2.45.0.exe
2015-03-29 17:04 - 2015-03-29 17:04 - 01882414 _____ () C:\Users\Libor\Downloads\09Uvod_do_studia_organicke_chemie3.pptx
2015-03-19 10:39 - 2015-03-19 10:41 - 00002008 _____ () C:\Users\Public\Desktop\abMedia.lnk
2015-03-13 16:47 - 2015-03-13 16:47 - 00001002 _____ () C:\Users\Public\Desktop\Winamp.lnk
2015-03-13 16:47 - 2015-03-13 16:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamp
2015-03-13 16:45 - 2015-03-20 16:10 - 00000000 ____D () C:\Users\Libor\AppData\Roaming\Winamp
2015-03-13 16:45 - 2015-03-13 16:47 - 00000000 ____D () C:\Program Files (x86)\Winamp
2015-03-13 16:41 - 2015-03-13 16:42 - 24379941 _____ () C:\Users\Libor\Downloads\Winamp-fullsetup.exe
2015-03-11 16:38 - 2015-03-06 04:53 - 00430080 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2015-03-11 16:38 - 2015-03-06 04:33 - 00358912 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2015-03-11 16:38 - 2015-02-26 01:26 - 04178944 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2015-03-11 16:38 - 2015-02-20 05:03 - 00358912 _____ (Adobe Systems Incorporated) C:\windows\system32\atmfd.dll
2015-03-11 16:38 - 2015-02-20 04:58 - 00044032 _____ (Adobe Systems) C:\windows\system32\atmlib.dll
2015-03-11 16:38 - 2015-02-20 04:20 - 00301056 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\atmfd.dll
2015-03-11 16:38 - 2015-02-20 04:15 - 00035840 _____ (Adobe Systems) C:\windows\SysWOW64\atmlib.dll
2015-03-11 16:38 - 2015-02-07 01:09 - 00396419 _____ () C:\windows\system32\ApnDatabase.xml
2015-03-11 16:38 - 2015-02-04 01:58 - 00264000 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WdFilter.sys
2015-03-11 16:38 - 2015-02-04 01:58 - 00114496 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WdNisDrv.sys
2015-03-11 16:38 - 2015-02-04 01:58 - 00044024 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WdBoot.sys
2015-03-11 16:38 - 2015-02-03 01:53 - 00014848 _____ (Microsoft Corporation) C:\windows\system32\winshfhc.dll
2015-03-11 16:38 - 2015-02-03 01:53 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\winshfhc.dll
2015-03-11 16:38 - 2015-01-31 01:42 - 03097600 _____ (Microsoft Corporation) C:\windows\system32\msftedit.dll
2015-03-11 16:38 - 2015-01-31 01:29 - 02484224 _____ (Microsoft Corporation) C:\windows\SysWOW64\msftedit.dll
2015-03-11 16:38 - 2015-01-31 01:20 - 00203264 _____ (Microsoft Corporation) C:\windows\system32\ubpm.dll
2015-03-11 16:38 - 2015-01-29 03:58 - 00347136 _____ (Microsoft Corporation) C:\windows\system32\photowiz.dll
2015-03-11 16:38 - 2015-01-29 03:29 - 00290816 _____ (Microsoft Corporation) C:\windows\SysWOW64\photowiz.dll
2015-03-11 16:38 - 2015-01-29 03:11 - 00274944 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-11 16:38 - 2015-01-29 03:04 - 01091072 _____ (Microsoft Corporation) C:\windows\system32\localspl.dll
2015-03-11 16:38 - 2015-01-29 03:04 - 00864256 _____ (Microsoft Corporation) C:\windows\system32\win32spl.dll
2015-03-11 16:38 - 2015-01-29 03:00 - 00210944 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-11 16:38 - 2015-01-29 02:59 - 02773504 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2015-03-11 16:38 - 2015-01-29 02:55 - 00971776 _____ (Microsoft Corporation) C:\windows\system32\WSShared.dll
2015-03-11 16:38 - 2015-01-29 02:50 - 00811008 _____ (Microsoft Corporation) C:\windows\SysWOW64\WSShared.dll
2015-03-11 16:38 - 2015-01-29 02:49 - 02459136 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2015-03-11 16:38 - 2015-01-28 17:41 - 07472960 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2015-03-11 16:38 - 2015-01-28 17:41 - 01733440 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2015-03-11 16:38 - 2015-01-28 17:41 - 01498360 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2015-03-11 16:38 - 2015-01-28 04:24 - 00075264 _____ (Microsoft Corporation) C:\windows\system32\StorageContextHandler.dll
2015-03-11 16:38 - 2015-01-28 03:47 - 00060928 _____ (Microsoft Corporation) C:\windows\SysWOW64\StorageContextHandler.dll
2015-03-11 16:38 - 2015-01-27 06:22 - 00131584 _____ (Microsoft Corporation) C:\windows\system32\rdpudd.dll
2015-03-11 16:38 - 2015-01-27 05:44 - 00933888 _____ (Microsoft Corporation) C:\windows\system32\calc.exe
2015-03-11 16:38 - 2015-01-27 04:11 - 03547648 _____ (Microsoft Corporation) C:\windows\system32\rdpcorets.dll
2015-03-11 16:38 - 2015-01-24 03:51 - 00816128 _____ (Microsoft Corporation) C:\windows\SysWOW64\calc.exe
2015-03-11 16:38 - 2015-01-23 09:17 - 00723072 _____ (Microsoft Corporation) C:\windows\system32\SHCore.dll
2015-03-11 16:38 - 2015-01-23 07:02 - 00560392 _____ (Microsoft Corporation) C:\windows\SysWOW64\SHCore.dll
2015-03-11 16:38 - 2014-10-29 05:56 - 00027456 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rdpvideominiport.sys
2015-03-11 16:38 - 2014-10-29 04:49 - 00003072 _____ (Microsoft Corporation) C:\windows\system32\lpk.dll
2015-03-11 16:38 - 2014-10-29 04:44 - 00096256 _____ (Microsoft Corporation) C:\windows\system32\fontsub.dll
2015-03-11 16:38 - 2014-10-29 04:44 - 00014848 _____ (Microsoft Corporation) C:\windows\system32\dciman32.dll
2015-03-11 16:38 - 2014-10-29 04:43 - 00062976 _____ (Microsoft Corporation) C:\windows\system32\printui.exe
2015-03-11 16:38 - 2014-10-29 04:37 - 00040448 _____ (Microsoft Corporation) C:\windows\system32\rfxvmt.dll
2015-03-11 16:38 - 2014-10-29 04:34 - 00309760 _____ (Microsoft Corporation) C:\windows\system32\compstui.dll
2015-03-11 16:38 - 2014-10-29 04:34 - 00084992 _____ (Microsoft Corporation) C:\windows\system32\WSCollect.exe
2015-03-11 16:38 - 2014-10-29 04:34 - 00079872 _____ (Microsoft Corporation) C:\windows\system32\WSReset.exe
2015-03-11 16:38 - 2014-10-29 04:04 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\findnetprinters.dll
2015-03-11 16:38 - 2014-10-29 04:04 - 00003072 _____ (Microsoft Corporation) C:\windows\SysWOW64\lpk.dll
2015-03-11 16:38 - 2014-10-29 04:00 - 00077824 _____ (Microsoft Corporation) C:\windows\SysWOW64\fontsub.dll
2015-03-11 16:38 - 2014-10-29 04:00 - 00011776 _____ (Microsoft Corporation) C:\windows\SysWOW64\dciman32.dll
2015-03-11 16:38 - 2014-10-29 03:58 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\printui.exe
2015-03-11 16:38 - 2014-10-29 03:52 - 00289280 _____ (Microsoft Corporation) C:\windows\SysWOW64\compstui.dll
2015-03-11 16:38 - 2014-10-29 03:51 - 00477184 _____ (Microsoft Corporation) C:\windows\system32\puiobj.dll
2015-03-11 16:38 - 2014-10-29 03:45 - 00221184 _____ (Microsoft Corporation) C:\windows\system32\prnntfy.dll
2015-03-11 16:38 - 2014-10-29 03:28 - 00055808 _____ (Microsoft Corporation) C:\windows\SysWOW64\findnetprinters.dll
2015-03-11 16:38 - 2014-10-29 03:20 - 00367104 _____ (Microsoft Corporation) C:\windows\SysWOW64\puiobj.dll
2015-03-11 16:38 - 2014-10-29 03:15 - 00199168 _____ (Microsoft Corporation) C:\windows\SysWOW64\prnntfy.dll
2015-03-11 16:38 - 2014-10-29 03:13 - 00315392 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Store.dll
2015-03-11 16:38 - 2014-10-29 02:55 - 00223744 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Store.dll
2015-03-11 16:38 - 2014-10-29 02:55 - 00192512 _____ (Microsoft Corporation) C:\windows\system32\puiapi.dll
2015-03-11 16:38 - 2014-10-29 02:44 - 00167424 _____ (Microsoft Corporation) C:\windows\SysWOW64\puiapi.dll
2015-03-11 16:38 - 2014-10-29 02:41 - 00269312 _____ (Microsoft Corporation) C:\windows\system32\DafPrintProvider.dll
2015-03-11 16:38 - 2014-10-29 02:35 - 00203776 _____ (Microsoft Corporation) C:\windows\SysWOW64\DafPrintProvider.dll
2015-03-11 16:37 - 2015-02-21 03:16 - 25021440 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2015-03-11 16:37 - 2015-02-21 02:41 - 12827648 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2015-03-11 16:37 - 2015-02-21 02:27 - 00285696 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2015-03-11 16:37 - 2015-02-21 02:27 - 00128000 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll
2015-03-11 16:37 - 2015-02-21 02:25 - 19720192 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2015-03-11 16:37 - 2015-02-21 01:58 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2015-03-11 16:37 - 2015-02-21 01:32 - 00076288 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2015-03-11 16:37 - 2015-02-20 04:49 - 00584192 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2015-03-11 16:37 - 2015-02-20 04:48 - 02886144 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2015-03-11 16:37 - 2015-02-20 04:47 - 00088064 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2015-03-11 16:37 - 2015-02-20 04:35 - 00816128 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2015-03-11 16:37 - 2015-02-20 04:34 - 00814080 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2015-03-11 16:37 - 2015-02-20 04:32 - 06035456 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2015-03-11 16:37 - 2015-02-20 04:09 - 00503296 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2015-03-11 16:37 - 2015-02-20 04:07 - 00145408 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll
2015-03-11 16:37 - 2015-02-20 04:06 - 00064000 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2015-03-11 16:37 - 2015-02-20 04:05 - 00316928 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2015-03-11 16:37 - 2015-02-20 04:03 - 02278400 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2015-03-11 16:37 - 2015-02-20 03:59 - 01032704 _____ (Microsoft Corporation) C:\windows\system32\inetcomm.dll
2015-03-11 16:37 - 2015-02-20 03:56 - 00664064 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2015-03-11 16:37 - 2015-02-20 03:52 - 00262144 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2015-03-11 16:37 - 2015-02-20 03:49 - 00801280 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2015-03-11 16:37 - 2015-02-20 03:49 - 00374272 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2015-03-11 16:37 - 2015-02-20 03:46 - 02125824 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2015-03-11 16:37 - 2015-02-20 03:43 - 14398976 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2015-03-11 16:37 - 2015-02-20 03:30 - 04300288 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2015-03-11 16:37 - 2015-02-20 03:30 - 00880128 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcomm.dll
2015-03-11 16:37 - 2015-02-20 03:29 - 02865152 _____ (Microsoft Corporation) C:\windows\system32\actxprxy.dll
2015-03-11 16:37 - 2015-02-20 03:28 - 02358784 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2015-03-11 16:37 - 2015-02-20 03:26 - 00230400 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2015-03-11 16:37 - 2015-02-20 03:24 - 02052608 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2015-03-11 16:37 - 2015-02-20 03:24 - 00689152 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2015-03-11 16:37 - 2015-02-20 03:16 - 01548288 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2015-03-11 16:37 - 2015-02-20 03:03 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2015-03-11 16:37 - 2015-02-20 03:01 - 01888256 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2015-03-11 16:37 - 2015-02-20 02:57 - 01311232 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2015-03-11 16:37 - 2015-02-20 02:55 - 00710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2015-03-11 16:37 - 2015-02-06 03:28 - 02257408 _____ (Microsoft Corporation) C:\windows\system32\dwmcore.dll
2015-03-11 16:37 - 2015-02-06 03:08 - 01943040 _____ (Microsoft Corporation) C:\windows\SysWOW64\dwmcore.dll
2015-03-11 16:37 - 2015-02-05 22:24 - 01113920 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndis.sys
2015-03-11 16:37 - 2015-02-03 02:03 - 03551744 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DCompiler_47.dll
2015-03-11 16:37 - 2015-02-03 02:02 - 04298240 _____ (Microsoft Corporation) C:\windows\system32\D3DCompiler_47.dll
2015-03-11 16:37 - 2015-01-30 05:01 - 00097792 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidbth.sys
2015-03-11 16:37 - 2015-01-30 05:00 - 00167424 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rfcomm.sys
2015-03-11 16:37 - 2015-01-30 04:03 - 01488896 _____ (Microsoft Corporation) C:\windows\system32\mfc42u.dll
2015-03-11 16:37 - 2015-01-30 04:03 - 01464832 _____ (Microsoft Corporation) C:\windows\system32\mfc42.dll
2015-03-11 16:37 - 2015-01-30 04:02 - 00102912 _____ (Microsoft Corporation) C:\windows\system32\eappgnui.dll
2015-03-11 16:37 - 2015-01-30 03:44 - 01230336 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfc42u.dll
2015-03-11 16:37 - 2015-01-30 03:42 - 01204224 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfc42.dll
2015-03-11 16:37 - 2015-01-30 03:40 - 00091648 _____ (Microsoft Corporation) C:\windows\SysWOW64\eappgnui.dll
2015-03-11 16:37 - 2015-01-30 03:37 - 00331776 _____ (Microsoft Corporation) C:\windows\system32\eapp3hst.dll
2015-03-11 16:37 - 2015-01-30 03:29 - 00035840 _____ (Microsoft Corporation) C:\windows\SysWOW64\atlthunk.dll
2015-03-11 16:37 - 2015-01-30 03:24 - 00339456 _____ (Microsoft Corporation) C:\windows\system32\eapphost.dll
2015-03-11 16:37 - 2015-01-30 03:24 - 00250880 _____ (Microsoft Corporation) C:\windows\SysWOW64\eapp3hst.dll
2015-03-11 16:37 - 2015-01-30 03:16 - 00266752 _____ (Microsoft Corporation) C:\windows\SysWOW64\eapphost.dll
2015-03-11 16:37 - 2015-01-30 03:08 - 00346112 _____ (Microsoft Corporation) C:\windows\system32\eappcfg.dll
2015-03-11 16:37 - 2015-01-30 03:06 - 00278016 _____ (Microsoft Corporation) C:\windows\SysWOW64\eappcfg.dll
2015-03-11 16:37 - 2014-10-29 04:46 - 00081920 _____ (Microsoft Corporation) C:\windows\system32\Drivers\BTHUSB.SYS
2015-03-11 16:37 - 2014-10-29 04:46 - 00053248 _____ (Microsoft Corporation) C:\windows\system32\Drivers\bthenum.sys
2015-03-11 16:37 - 2014-10-29 04:45 - 01198080 _____ (Microsoft Corporation) C:\windows\system32\Drivers\bthport.sys
2015-03-11 16:37 - 2014-10-29 04:03 - 00241152 _____ (Microsoft Corporation) C:\windows\system32\fsquirt.exe
2015-03-11 16:37 - 2014-10-29 03:28 - 00048128 _____ (Microsoft Corporation) C:\windows\system32\atlthunk.dll
2015-03-11 16:37 - 2014-10-29 03:19 - 00070656 _____ (Microsoft Corporation) C:\windows\system32\eappprxy.dll
2015-03-11 16:37 - 2014-10-29 02:59 - 00056320 _____ (Microsoft Corporation) C:\windows\SysWOW64\eappprxy.dll
2015-03-11 16:36 - 2015-02-12 19:40 - 22291584 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2015-03-11 16:36 - 2015-02-12 19:34 - 19731824 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2015-03-11 16:36 - 2015-02-08 01:57 - 01090048 _____ (Microsoft Corporation) C:\windows\system32\MrmCoreR.dll
2015-03-11 16:36 - 2015-02-08 01:49 - 00791040 _____ (Microsoft Corporation) C:\windows\SysWOW64\MrmCoreR.dll
2015-03-11 16:36 - 2015-01-29 20:45 - 01763352 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2015-03-11 16:36 - 2015-01-29 20:34 - 01488040 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecs.dll
2015-03-11 16:36 - 2015-01-28 03:31 - 00402432 _____ (Microsoft Corporation) C:\windows\system32\WMPhoto.dll
2015-03-11 16:36 - 2015-01-28 03:11 - 00357376 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMPhoto.dll
2015-03-11 16:36 - 2015-01-28 01:47 - 02501368 _____ (Microsoft Corporation) C:\windows\explorer.exe
2015-03-11 16:36 - 2015-01-28 01:41 - 02207488 _____ (Microsoft Corporation) C:\windows\SysWOW64\explorer.exe
2015-03-11 16:36 - 2015-01-21 07:54 - 01384712 _____ (Microsoft Corporation) C:\windows\system32\msctf.dll
2015-03-11 16:36 - 2015-01-21 07:15 - 01123848 _____ (Microsoft Corporation) C:\windows\SysWOW64\msctf.dll
2015-03-11 16:36 - 2014-12-11 07:36 - 00046456 _____ (Microsoft Corporation) C:\windows\system32\LockScreenContentServer.exe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-04 11:34 - 2013-08-22 17:36 - 00000000 ____D () C:\windows\AppReadiness
2015-04-04 11:26 - 2013-08-22 17:20 - 00000000 ____D () C:\windows\CbsTemp
2015-04-04 11:25 - 2014-08-09 11:13 - 00003982 _____ () C:\windows\System32\Tasks\User_Feed_Synchronization-{AB80B7DF-3229-4434-81B8-F3C6E33048EF}
2015-04-04 11:22 - 2014-08-09 10:53 - 00000000 ____D () C:\Users\Libor\AppData\Local\Pokki
2015-04-04 11:21 - 2013-08-22 17:36 - 00000000 ____D () C:\windows\system32\sru
2015-04-03 23:18 - 2014-12-14 13:42 - 01465726 _____ () C:\windows\WindowsUpdate.log
2015-04-03 23:15 - 2014-08-09 15:26 - 00000000 ____D () C:\Users\Libor\Documents\Euro Truck Simulator 2
2015-04-03 22:59 - 2014-08-09 11:37 - 00000984 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-03 22:31 - 2014-09-03 16:14 - 00000000 ____D () C:\Program Files (x86)\Hearthstone
2015-04-03 22:30 - 2014-09-03 16:11 - 00000000 ____D () C:\Users\Libor\AppData\Local\Battle.net
2015-04-03 22:10 - 2014-09-03 16:10 - 00000000 ____D () C:\Program Files (x86)\Battle.net
2015-04-03 22:05 - 2013-08-22 17:36 - 00000000 ____D () C:\windows\system32\NDF
2015-04-03 22:03 - 2015-02-09 20:43 - 00000717 _____ () C:\Users\Libor\Desktop\AJ.txt
2015-04-03 20:07 - 2014-08-09 11:03 - 00003596 _____ () C:\windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-643025375-3208447214-1379279409-1002
2015-04-03 11:28 - 2014-10-26 23:14 - 00000000 ____D () C:\Users\Libor\AppData\Roaming\Skype
2015-04-02 23:19 - 2014-08-09 10:59 - 00000000 ____D () C:\Users\Libor\Documents\Bluetooth Folder
2015-04-02 22:25 - 2014-08-10 10:33 - 07047434 _____ () C:\Users\Public\CAFADEBUG.log
2015-04-02 22:09 - 2014-05-29 18:27 - 00739924 _____ () C:\windows\system32\perfh005.dat
2015-04-02 22:09 - 2014-05-29 18:27 - 00151610 _____ () C:\windows\system32\perfc005.dat
2015-04-02 22:09 - 2014-03-18 11:53 - 01745984 _____ () C:\windows\system32\PerfStringBackup.INI
2015-04-02 22:08 - 2014-08-09 11:01 - 00000000 __RDO () C:\Users\Libor\OneDrive
2015-04-02 22:07 - 2014-08-09 11:37 - 00000980 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-04-02 14:12 - 2014-08-09 10:53 - 00000000 ____D () C:\Users\Libor
2015-04-01 19:28 - 2014-08-09 11:18 - 01081344 ___SH () C:\Users\Libor\Desktop\Thumbs.db
2015-04-01 19:12 - 2014-09-12 17:25 - 00000000 ___RD () C:\Users\Libor\Desktop\Smite songs
2015-04-01 19:11 - 2014-09-19 10:16 - 00000000 ____D () C:\Program Files (x86)\Steam
2015-04-01 19:11 - 2014-08-09 14:28 - 00000000 ____D () C:\Users\Libor\AppData\Roaming\uTorrent
2015-04-01 19:10 - 2014-08-09 19:01 - 00000000 ____D () C:\Users\Libor\AppData\Local\CrashDumps
2015-03-25 21:04 - 2014-08-09 17:55 - 00000000 ____D () C:\windows\System32\Tasks\Norton Identity Safe
2015-03-24 19:21 - 2014-09-27 16:49 - 00249856 ___SH () C:\Users\Libor\Downloads\Thumbs.db
2015-03-24 18:31 - 2014-08-09 11:29 - 00000000 ____D () C:\windows\system32\Drivers\NSTx64
2015-03-19 10:41 - 2015-02-14 11:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
2015-03-19 10:41 - 2015-02-14 11:38 - 00000000 ____D () C:\Program Files (x86)\Acer
2015-03-19 10:38 - 2014-05-29 18:30 - 00000000 ____D () C:\ProgramData\Office2013
2015-03-19 10:33 - 2015-02-14 11:40 - 00000000 ____D () C:\Users\Libor\AppData\Local\clear.fi
2015-03-19 10:29 - 2014-08-09 11:27 - 00000000 ____D () C:\windows\system32\Drivers\NAVx64
2015-03-15 13:29 - 2013-08-22 17:36 - 00000000 ____D () C:\windows\rescache
2015-03-15 12:16 - 2013-08-22 15:25 - 00262144 ___SH () C:\windows\system32\config\ELAM
2015-03-15 12:15 - 2013-08-22 16:45 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2015-03-13 19:33 - 2015-01-07 16:43 - 00000003 _____ () C:\windows\system32\HRUPPROG.TXT
2015-03-13 15:48 - 2013-08-22 16:44 - 00568312 _____ () C:\windows\system32\FNTCACHE.DAT
2015-03-13 15:46 - 2014-05-29 18:29 - 00006656 _____ () C:\windows\system32\VfService.trf
2015-03-13 15:46 - 2013-08-22 15:25 - 00262144 ___SH () C:\windows\system32\config\BBI
2015-03-13 15:41 - 2013-08-22 17:36 - 00000000 ___RD () C:\windows\ToastData
2015-03-13 15:41 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-13 15:41 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-13 15:41 - 2013-08-22 17:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-13 15:41 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Windows Defender
2015-03-13 15:40 - 2013-08-22 17:36 - 00000000 ____D () C:\windows\WinStore
2015-03-13 15:40 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-03-12 19:16 - 2014-08-11 16:42 - 00000000 ____D () C:\windows\system32\MRT
2015-03-12 19:05 - 2014-08-11 16:42 - 122905848 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2015-03-08 20:14 - 2014-08-13 16:29 - 00000000 ____D () C:\Users\Libor\AppData\Local\Windows Live

==================== Files in the root of some directories =======

2015-04-02 14:12 - 2015-04-02 14:12 - 0000038 ___SH () C:\Users\Libor\AppData\Local\1754111884ee9ab5277ca00.95260103
2014-08-09 11:43 - 2014-08-09 11:43 - 0000057 _____ () C:\ProgramData\Ament.ini
2014-05-29 17:54 - 2014-05-29 17:54 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Some content of TEMP:
====================
C:\Users\Libor\AppData\Local\Temp\oct7BFC.tmp.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-03-13 20:36

==================== End Of Log ============================

Re: Vysoký ping

Napsal: 04 dub 2015 11:53
od Rudy
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://www.stahuj.centrum.cz/utility_a_ ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve >Scan< a potom na >Clean< (smazat)
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: Vysoký ping

Napsal: 04 dub 2015 13:53
od akekel
Zde :)

# AdwCleaner v4.200 - Log vytvooen 04/04/2015 v 14:45:08
# Aktualizováno 29/03/2015 by Xplode
# Databáze : 2015-03-29.1 [Server]
# Operaení system : Windows 8.1 Connected (x64)
# Uživatelské jméno : Libor - PC-LIBOR-ML
# Spuštino z : C:\Users\Libor\Desktop\adwcleaner_4.200.exe
# Nastavení : Eištiní

***** [ Služby ] *****


***** [ Soubory / Složky ] *****

Složka Smazáno : C:\ProgramData\simplitec
Složka Smazáno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\simplitec
Složka Smazáno : C:\Program Files (x86)\simplitec
Složka Smazáno : C:\Users\Libor\AppData\Roaming\simplitec
Složka Smazáno : C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiokahphinmbmakkehgelkmpolmnbkdh
Složka Smazáno : C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nppllibpnmahfaklnpggkibhkapjkeob
Soubor Smazáno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\simplicheck.lnk

***** [ Naplánované úlohy ] *****


***** [ Zástupci ] *****


***** [ Registry ] *****

Klíe Smazáno : HKLM\SOFTWARE\Google\Chrome\Extensions\nppllibpnmahfaklnpggkibhkapjkeob
Klíe Smazáno : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\nppllibpnmahfaklnpggkibhkapjkeob
Klíe Smazáno : HKCU\Software\Classes\pokki
Hodnota Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Pokki]
Klíe Smazáno : HKCU\Software\Pokki
Klíe Smazáno : HKLM\SOFTWARE\simplitec
Klíe Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki
Klíe Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\499E8534DA7E759419D2048CB780D3D5
Klíe Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5DCE3C04E576AD15F972B67D0725120C
Klíe Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\62255E52F19EC97429A42D59D49024FA
Klíe Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\930D9472A978D7A4EB16BF4DECB173B7
Klíe Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AEB93799E8B47D14CA356E4343D632A4
Klíe Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAE7C2A75DF08824E9CEFDE20F655BD9

***** [ Prohlížeee ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Google Chrome v41.0.2272.118

[C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://www1.delta-search.com/?q={searchTerms}&affID=119529&tt=gc_&babsrc=SP_ss&mntrId=A4360017C4BC8E67
[C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=&apn_dtid=OSJ000&apn_uid=386A052B-6BA1-4EF1-B74E-C1CC25E4CF8E&apn_sauid=6EF9D17D-5B54-45A6-AA2D-B6B5877884F7
[C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://search.sweetim.com/search.asp?src=6&crg=3.1010000&st=18&q={searchTerms}&barid={70314CDE-D4B2-11E1-A9CD-00262D53C583}
[C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://dts.search.ask.com/sr?src=crb&gct=ds&appid=0&systemid=405&v=n10807-215&apn_uid=9165421417694337&apn_dtid=BND405&o=APN10647&apn_ptnrs=AG8&q={searchTerms}
[C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=FF&o=14594&locale=en_EU&apn_uid=953a95a7-4b19-4f86-bff0-e880a1a98695&apn_ptnrs=%5EFV&apn_sauid=78A27875-7D16-425C-B7C5-6C8E17D87995&apn_dtid=%5EYYYYYY%5EYY%5ECZ&q={searchTerms}
[C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://dts.search.ask.com/sr?src=crb&gct=ds&appid=0&systemid=405&v=a11474-215&apn_uid=9165421417694337&apn_dtid=BND405&o=APN10647&apn_ptnrs=AG8&q={searchTerms}
[C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://tuvaro.com/ws/?source=4c3f95e5&tbp=url&toolbarid=base&u=a43664880000000000000017c4bc8e67&q={searchTerms}
[C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://search.babylon.com/?q={searchTerms}&affID=116987&tt=4812_8&babsrc=SP_ss&mntrId=a43664880000000000000017c4bc8e67
[C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : oiokahphinmbmakkehgelkmpolmnbkdh
[C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : nppllibpnmahfaklnpggkibhkapjkeob
[C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Startup_URLs] : hxxp://tuvaro.com/ws/?source=4c3f95e5&tbp=homepage&toolbarid=base&u=a43664880000000000000017c4bc8e67

*************************

AdwCleaner[R0].txt - [5232 bytu] - [04/04/2015 14:41:08]
AdwCleaner[S0].txt - [5055 bytu] - [04/04/2015 14:45:08]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [5113 bytu] ##########

Re: Vysoký ping

Napsal: 04 dub 2015 17:27
od Rudy
Dejte nový log FRST.

Re: Vysoký ping

Napsal: 04 dub 2015 17:38
od akekel
Tu :)

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Libor (administrator) on PC-LIBOR-ML on 04-04-2015 18:34:07
Running from C:\Users\Libor\Desktop
Loaded Profiles: Libor (Available profiles: Libor)
Platform: Windows 8.1 Connected (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
() C:\Program Files\ATI Technologies\ATI.ACE\a4\AdaptiveSleepService.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
(Maxthon) C:\Program Files (x86)\Maxthon\Modules\Service\Update\MaxthonUpdateSvc.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.11.42\nst.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
() C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe
() C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.11.42\nst.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Symantec Corporation) C:\Program Files (x86)\Norton AntiVirus\Engine\21.7.0.11\nav.exe
(Symantec Corporation) C:\Program Files (x86)\Norton AntiVirus\Engine\21.7.0.11\nav.exe
(Qualcomm®Atheros®) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
() C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
(Realtek semiconductor) C:\Windows\RTFTrack.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Deskjet 5520 series\Bin\ScanToPCActivationApp.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
(Acer Cloud Technology) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
(MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [903384 2013-07-25] (Conexant Systems, Inc.)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1647616 2012-06-13] (Conexant Systems, Inc.)
HKLM\...\Run: [RtsFT] => C:\windows\RTFTrack.exe [6340312 2013-07-19] (Realtek semiconductor)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17111056 2014-05-29] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [193008 2014-05-29] (Lenovo(beijing) Limited)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-12-07] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\McAfee.com\Agent\mcagent.exe [537992 2014-04-25] (McAfee, Inc.)
HKLM-x32\...\Run: [UpdateP2GShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [214312 2011-12-07] (CyberLink Corp.)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2011-10-28] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
HKLM-x32\...\Run: [BacKGround Agent] => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [65280 2015-03-04] (Acer Incorporated)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [132736 2013-09-25] ( (Qualcomm®Atheros®))
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30524520 2014-11-27] (Skype Technologies S.A.)
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6501656 2014-10-23] (Piriform Ltd)
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\...\Run: [GSplay.exe] => C:\Users\Libor\AppData\Local\Temp\Rar$EXa0.278\GSplay.exe <===== ATTENTION
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\...\Run: [HP Deskjet 5520 series (NET)] => C:\Program Files\HP\HP Deskjet 5520 series\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\...\MountPoints2: {d615a7db-1fa2-11e4-825a-b8ee65886d79} - "F:\setup.exe" /autorun

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com/?pc=LCJB
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.lenovo.com
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-643025375-3208447214-1379279409-1002 -> {F6C3D691-9A89-4CE3-A446-6EC4295F6B96} URL =
BHO: Norton Identity Protection -> {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} -> C:\Program Files (x86)\Norton Identity Safe\Engine64\2014.7.11.42\coIEPlg.dll [2015-03-05] (Symantec Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
BHO-x32: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files (x86)\Norton AntiVirus\Engine\21.7.0.11\IPS\IPSBHO.DLL [2015-03-05] (Symantec Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-08-14] (Oracle Corporation)
BHO-x32: Norton Identity Protection -> {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} -> C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.11.42\coIEPlg.dll [2015-03-05] (Symantec Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-08-14] (Oracle Corporation)
Toolbar: HKLM - Norton Identity Safe Toolbar - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - C:\Program Files (x86)\Norton Identity Safe\Engine64\2014.7.11.42\coIEPlg.dll [2015-03-05] (Symantec Corporation)
Toolbar: HKLM-x32 - Norton Identity Safe Toolbar - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.11.42\coIEPlg.dll [2015-03-05] (Symantec Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll [2014-04-25] (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll [2014-04-25] (McAfee, Inc.)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.1

FireFox:
========
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2014-04-25] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32.dll [2014-12-29] ()
FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-08-14] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2014-08-14] (Oracle Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2014-04-25] ()
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-04] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-04] (Google Inc.)
FF Plugin HKU\S-1-5-21-643025375-3208447214-1379279409-1002: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Libor\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2009-11-30] (Unity Technologies ApS)
FF HKLM-x32\...\Firefox\Extensions: [{F04D2D30-776C-4d02-8627-8E4385ECA58D}] - C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2014.7.3.12\coFFPlgn
FF Extension: Norton Identity Safe Toolbar - C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2014.7.3.12\coFFPlgn [2015-04-04]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2014-05-29]

Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.cz/
CHR StartupUrls: Default -> "hxxp://tuvaro.com/ws/?source=4c3f95e5&tbp=homepage&toolbarid=base&u=a43664880000000000000017c4bc8e67", "hxxp://mixidj.delta-search.com/?babsrc=HP_ss&mntrId=7AB90017C4BC8E67&affID=121125&tsp=4920", "hxxp://www.search.ask.com/?o=APN10647A&gct=hp& ... 07-215&t=4"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-08-09]
CHR Extension: (Google Drive) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-08-09]
CHR Extension: (Seznam Lištička - Email) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2014-10-27]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2014-10-27]
CHR Extension: (YouTube) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-08-09]
CHR Extension: (Google Search) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-08-09]
CHR Extension: (AdBlock) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-10-27]
CHR Extension: (Google Wallet) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-08-09]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2014-10-27]
CHR Extension: (Gmail) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-08-09]
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdaptiveSleepService; C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [99328 2013-12-07] () [File not signed]
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2013-12-07] (Advanced Micro Devices, Inc.) [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [312448 2013-09-25] (Windows (R) Win 7 DDK provider) [File not signed]
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2840832 2015-03-04] (Acer Incorporated)
R2 Fabs; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [1840128 2011-05-24] (MAGIX AG) [File not signed]
S3 FirebirdServerMAGIXInstance; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [2702848 2011-04-26] (MAGIX®) [File not signed]
U2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9216 2015-03-12] (Hi-Rez Studios) [File not signed]
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 MaxthonUpdateSvc; C:\Program Files (x86)\Maxthon\Modules\Service\Update\MaxthonUpdateSvc.exe [1851192 2014-12-02] (Maxthon)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178528 2014-04-25] (McAfee, Inc.)
S3 McAWFwk; c:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe [334608 2013-07-30] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [603424 2014-06-12] (McAfee, Inc.)
S4 McOobeSv2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1041192 2014-07-24] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219752 2014-06-20] (McAfee, Inc.)
R2 mfevtp; C:\windows\system32\mfevtps.exe [189912 2014-06-20] (McAfee, Inc.)
R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 NAV; C:\Program Files (x86)\Norton AntiVirus\Engine\21.7.0.11\NAV.exe [262928 2015-03-07] (Symantec Corporation)
R2 NCO; C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.11.42\NST.exe [131144 2015-03-05] (Symantec Corporation)
R2 PnkBstrA; C:\windows\SysWOW64\PnkBstrA.exe [76888 2014-10-27] ()
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390632 2012-04-24] ()
R2 VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe [68368 2014-05-29] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2013-09-25] (Atheros) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 AmdAS4; C:\Windows\System32\drivers\AmdAS4.sys [17504 2013-02-07] (Advanced Micro Devices, INC.)
R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [36096 2013-05-21] (Advanced Micro Devices, Inc.)
R2 APXACC; C:\Windows\system32\DRIVERS\appexDrv.sys [219360 2013-04-18] (AppEx Networks Corporation)
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3859968 2013-08-16] (Qualcomm Atheros Communications, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [222720 2013-09-24] (Advanced Micro Devices)
R1 BHDrvx64; C:\Program Files (x86)\Norton AntiVirus\NortonData\21.4.0.13\Definitions\BASHDefs\20150321.001\BHDrvx64.sys [1622744 2015-02-03] (Symantec Corporation)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-09-25] (Qualcomm Atheros)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
R1 ccSet_NAV; C:\Windows\system32\drivers\NAVx64\1507000.00B\ccSetx64.sys [162392 2014-02-21] (Symantec Corporation)
R1 ccSet_NST; C:\Windows\system32\drivers\NSTx64\7DE070B0.02A\ccSetx64.sys [162392 2013-09-27] (Symantec Corporation)
R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [72128 2014-06-20] (McAfee, Inc.)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-08-09] (Disc Soft Ltd)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [487216 2014-12-11] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [142640 2014-12-11] (Symantec Corporation)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)
R1 IDSVia64; C:\Program Files (x86)\Norton AntiVirus\NortonData\21.4.0.13\Definitions\IPSDefs\20150403.001\IDSvia64.sys [671448 2015-03-27] (Symantec Corporation)
R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [181704 2014-06-20] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [313544 2014-06-20] (McAfee, Inc.)
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [70600 2014-06-20] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [523792 2014-06-20] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [786296 2014-06-20] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\system32\DRIVERS\mfencbdc.sys [444720 2014-07-24] (McAfee, Inc.)
S3 mfencrk; C:\Windows\system32\DRIVERS\mfencrk.sys [96592 2014-07-24] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [348552 2014-06-20] (McAfee, Inc.)
R3 NAVENG; C:\Program Files (x86)\Norton AntiVirus\NortonData\21.4.0.13\Definitions\VirusDefs\20150403.019\ENG64.SYS [129752 2015-01-23] (Symantec Corporation)
R3 NAVEX15; C:\Program Files (x86)\Norton AntiVirus\NortonData\21.4.0.13\Definitions\VirusDefs\20150403.019\EX64.SYS [2137304 2015-01-23] (Symantec Corporation)
S3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew02.sys [4649440 2013-06-18] (Intel Corporation)
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [8247640 2013-07-19] (Realtek Semiconductor Corp.)
R3 SRTSP; C:\Windows\System32\Drivers\NAVx64\1507000.00B\SRTSP64.SYS [876248 2014-08-26] (Symantec Corporation)
R1 SRTSPX; C:\Windows\system32\drivers\NAVx64\1507000.00B\SRTSPX64.SYS [37592 2014-08-26] (Symantec Corporation)
R0 SymDS; C:\Windows\System32\drivers\NAVx64\1507000.00B\SYMDS64.SYS [493656 2013-10-30] (Symantec Corporation)
R0 SymEFA; C:\Windows\System32\drivers\NAVx64\1507000.00B\SYMEFA64.SYS [1148120 2014-03-04] (Symantec Corporation)
S0 SymELAM; C:\Windows\System32\drivers\NAVx64\1507000.00B\SymELAM.sys [23568 2013-10-30] (Symantec Corporation)
R3 SymEvent; C:\windows\system32\Drivers\SYMEVENT64x86.SYS [177752 2014-08-09] (Symantec Corporation)
R1 SymIRON; C:\Windows\system32\drivers\NAVx64\1507000.00B\Ironx64.SYS [266968 2014-08-06] (Symantec Corporation)
R1 SymNetS; C:\Windows\System32\Drivers\NAVx64\1507000.00B\SYMNETS.SYS [593112 2014-02-18] (Symantec Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-14] ("CyberLink)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-04 15:00 - 2015-04-04 15:00 - 00000000 ____D () C:\windows\System32\Tasks\Norton AntiVirus
2015-04-04 14:54 - 2015-04-04 14:54 - 00005220 _____ () C:\Users\Libor\Desktop\AdwCleaner[S0].txt
2015-04-04 14:50 - 2015-04-04 14:50 - 00148086 _____ () C:\windows\PFRO.log
2015-04-04 14:41 - 2015-04-04 14:45 - 00000000 ____D () C:\AdwCleaner
2015-04-04 14:39 - 2015-04-04 14:39 - 02208768 _____ () C:\Users\Libor\Desktop\adwcleaner_4.200.exe
2015-04-04 11:52 - 2015-04-04 11:55 - 00000000 ___SD () C:\windows\system32\GWX
2015-04-04 11:52 - 2015-04-04 11:52 - 00000000 ___SD () C:\windows\SysWOW64\GWX
2015-04-04 11:47 - 2015-04-04 11:50 - 00032557 _____ () C:\Users\Libor\Desktop\Addition.txt
2015-04-04 11:44 - 2015-04-04 18:35 - 00024664 _____ () C:\Users\Libor\Desktop\FRST.txt
2015-04-04 11:43 - 2015-04-04 18:34 - 00000000 ____D () C:\FRST
2015-04-04 11:38 - 2015-04-04 11:38 - 02095616 _____ (Farbar) C:\Users\Libor\Desktop\FRST64.exe
2015-04-03 11:28 - 2015-04-04 14:51 - 00000116 _____ () C:\windows\setupact.log
2015-04-03 11:28 - 2015-04-03 11:28 - 00000000 _____ () C:\windows\setuperr.log
2015-04-02 14:13 - 2013-10-05 01:29 - 00421744 _____ (Network Tunnel Lab) C:\windows\SysWOW64\networkdlllsp.dll
2015-04-02 14:12 - 2015-04-02 14:12 - 00000038 ___SH () C:\Users\Libor\AppData\Local\1754111884ee9ab5277ca00.95260103
2015-04-02 14:12 - 2015-04-02 14:12 - 00000000 __SHD () C:\Users\Libor\wc
2015-04-02 14:12 - 2015-04-02 14:12 - 00000000 __SHD () C:\Users\Libor\AppData\Roaming\wyUpdate AU
2015-04-02 14:12 - 2015-04-02 14:12 - 00000000 ____D () C:\Users\Libor\AppData\Local\BattlePing
2015-04-02 14:10 - 2015-04-02 14:10 - 05339992 _____ (BattlePing) C:\Users\Libor\Downloads\BattlePing1.3.5.8.exe
2015-04-01 19:52 - 2015-04-01 19:52 - 00000000 ____D () C:\Users\Libor\AppData\Local\Razer_Inc
2015-04-01 19:51 - 2015-04-01 19:51 - 00000000 ____D () C:\Users\Libor\Documents\Razer
2015-04-01 19:44 - 2015-04-02 14:17 - 00000000 ____D () C:\Users\Libor\AppData\Local\Razer
2015-04-01 19:27 - 2015-04-02 14:17 - 00000000 ____D () C:\ProgramData\Razer
2015-04-01 19:27 - 2015-04-02 14:17 - 00000000 ____D () C:\Program Files (x86)\Razer
2015-04-01 19:24 - 2015-04-01 19:25 - 41954352 _____ (Razer Inc. ) C:\Users\Libor\Downloads\RazerGameBoosterSetup_4.2.45.0.exe
2015-03-29 17:04 - 2015-03-29 17:04 - 01882414 _____ () C:\Users\Libor\Downloads\09Uvod_do_studia_organicke_chemie3.pptx
2015-03-19 10:39 - 2015-03-19 10:41 - 00002008 _____ () C:\Users\Public\Desktop\abMedia.lnk
2015-03-13 16:47 - 2015-03-13 16:47 - 00001002 _____ () C:\Users\Public\Desktop\Winamp.lnk
2015-03-13 16:47 - 2015-03-13 16:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamp
2015-03-13 16:45 - 2015-03-20 16:10 - 00000000 ____D () C:\Users\Libor\AppData\Roaming\Winamp
2015-03-13 16:45 - 2015-03-13 16:47 - 00000000 ____D () C:\Program Files (x86)\Winamp
2015-03-13 16:41 - 2015-03-13 16:42 - 24379941 _____ () C:\Users\Libor\Downloads\Winamp-fullsetup.exe
2015-03-11 16:38 - 2015-03-06 04:53 - 00430080 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2015-03-11 16:38 - 2015-03-06 04:33 - 00358912 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2015-03-11 16:38 - 2015-02-26 01:26 - 04178944 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2015-03-11 16:38 - 2015-02-20 05:03 - 00358912 _____ (Adobe Systems Incorporated) C:\windows\system32\atmfd.dll
2015-03-11 16:38 - 2015-02-20 04:58 - 00044032 _____ (Adobe Systems) C:\windows\system32\atmlib.dll
2015-03-11 16:38 - 2015-02-20 04:20 - 00301056 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\atmfd.dll
2015-03-11 16:38 - 2015-02-20 04:15 - 00035840 _____ (Adobe Systems) C:\windows\SysWOW64\atmlib.dll
2015-03-11 16:38 - 2015-02-07 01:09 - 00396419 _____ () C:\windows\system32\ApnDatabase.xml
2015-03-11 16:38 - 2015-02-04 01:58 - 00264000 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WdFilter.sys
2015-03-11 16:38 - 2015-02-04 01:58 - 00114496 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WdNisDrv.sys
2015-03-11 16:38 - 2015-02-04 01:58 - 00044024 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WdBoot.sys
2015-03-11 16:38 - 2015-02-03 01:53 - 00014848 _____ (Microsoft Corporation) C:\windows\system32\winshfhc.dll
2015-03-11 16:38 - 2015-02-03 01:53 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\winshfhc.dll
2015-03-11 16:38 - 2015-01-31 01:42 - 03097600 _____ (Microsoft Corporation) C:\windows\system32\msftedit.dll
2015-03-11 16:38 - 2015-01-31 01:29 - 02484224 _____ (Microsoft Corporation) C:\windows\SysWOW64\msftedit.dll
2015-03-11 16:38 - 2015-01-31 01:20 - 00203264 _____ (Microsoft Corporation) C:\windows\system32\ubpm.dll
2015-03-11 16:38 - 2015-01-29 03:58 - 00347136 _____ (Microsoft Corporation) C:\windows\system32\photowiz.dll
2015-03-11 16:38 - 2015-01-29 03:29 - 00290816 _____ (Microsoft Corporation) C:\windows\SysWOW64\photowiz.dll
2015-03-11 16:38 - 2015-01-29 03:11 - 00274944 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-11 16:38 - 2015-01-29 03:04 - 01091072 _____ (Microsoft Corporation) C:\windows\system32\localspl.dll
2015-03-11 16:38 - 2015-01-29 03:04 - 00864256 _____ (Microsoft Corporation) C:\windows\system32\win32spl.dll
2015-03-11 16:38 - 2015-01-29 03:00 - 00210944 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-11 16:38 - 2015-01-29 02:59 - 02773504 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2015-03-11 16:38 - 2015-01-29 02:55 - 00971776 _____ (Microsoft Corporation) C:\windows\system32\WSShared.dll
2015-03-11 16:38 - 2015-01-29 02:50 - 00811008 _____ (Microsoft Corporation) C:\windows\SysWOW64\WSShared.dll
2015-03-11 16:38 - 2015-01-29 02:49 - 02459136 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2015-03-11 16:38 - 2015-01-28 17:41 - 07472960 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2015-03-11 16:38 - 2015-01-28 17:41 - 01733440 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2015-03-11 16:38 - 2015-01-28 17:41 - 01498360 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2015-03-11 16:38 - 2015-01-28 04:24 - 00075264 _____ (Microsoft Corporation) C:\windows\system32\StorageContextHandler.dll
2015-03-11 16:38 - 2015-01-28 03:47 - 00060928 _____ (Microsoft Corporation) C:\windows\SysWOW64\StorageContextHandler.dll
2015-03-11 16:38 - 2015-01-27 06:22 - 00131584 _____ (Microsoft Corporation) C:\windows\system32\rdpudd.dll
2015-03-11 16:38 - 2015-01-27 05:44 - 00933888 _____ (Microsoft Corporation) C:\windows\system32\calc.exe
2015-03-11 16:38 - 2015-01-27 04:11 - 03547648 _____ (Microsoft Corporation) C:\windows\system32\rdpcorets.dll
2015-03-11 16:38 - 2015-01-24 03:51 - 00816128 _____ (Microsoft Corporation) C:\windows\SysWOW64\calc.exe
2015-03-11 16:38 - 2015-01-23 09:17 - 00723072 _____ (Microsoft Corporation) C:\windows\system32\SHCore.dll
2015-03-11 16:38 - 2015-01-23 07:02 - 00560392 _____ (Microsoft Corporation) C:\windows\SysWOW64\SHCore.dll
2015-03-11 16:38 - 2014-10-29 05:56 - 00027456 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rdpvideominiport.sys
2015-03-11 16:38 - 2014-10-29 04:49 - 00003072 _____ (Microsoft Corporation) C:\windows\system32\lpk.dll
2015-03-11 16:38 - 2014-10-29 04:44 - 00096256 _____ (Microsoft Corporation) C:\windows\system32\fontsub.dll
2015-03-11 16:38 - 2014-10-29 04:44 - 00014848 _____ (Microsoft Corporation) C:\windows\system32\dciman32.dll
2015-03-11 16:38 - 2014-10-29 04:43 - 00062976 _____ (Microsoft Corporation) C:\windows\system32\printui.exe
2015-03-11 16:38 - 2014-10-29 04:37 - 00040448 _____ (Microsoft Corporation) C:\windows\system32\rfxvmt.dll
2015-03-11 16:38 - 2014-10-29 04:34 - 00309760 _____ (Microsoft Corporation) C:\windows\system32\compstui.dll
2015-03-11 16:38 - 2014-10-29 04:34 - 00084992 _____ (Microsoft Corporation) C:\windows\system32\WSCollect.exe
2015-03-11 16:38 - 2014-10-29 04:34 - 00079872 _____ (Microsoft Corporation) C:\windows\system32\WSReset.exe
2015-03-11 16:38 - 2014-10-29 04:04 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\findnetprinters.dll
2015-03-11 16:38 - 2014-10-29 04:04 - 00003072 _____ (Microsoft Corporation) C:\windows\SysWOW64\lpk.dll
2015-03-11 16:38 - 2014-10-29 04:00 - 00077824 _____ (Microsoft Corporation) C:\windows\SysWOW64\fontsub.dll
2015-03-11 16:38 - 2014-10-29 04:00 - 00011776 _____ (Microsoft Corporation) C:\windows\SysWOW64\dciman32.dll
2015-03-11 16:38 - 2014-10-29 03:58 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\printui.exe
2015-03-11 16:38 - 2014-10-29 03:52 - 00289280 _____ (Microsoft Corporation) C:\windows\SysWOW64\compstui.dll
2015-03-11 16:38 - 2014-10-29 03:51 - 00477184 _____ (Microsoft Corporation) C:\windows\system32\puiobj.dll
2015-03-11 16:38 - 2014-10-29 03:45 - 00221184 _____ (Microsoft Corporation) C:\windows\system32\prnntfy.dll
2015-03-11 16:38 - 2014-10-29 03:28 - 00055808 _____ (Microsoft Corporation) C:\windows\SysWOW64\findnetprinters.dll
2015-03-11 16:38 - 2014-10-29 03:20 - 00367104 _____ (Microsoft Corporation) C:\windows\SysWOW64\puiobj.dll
2015-03-11 16:38 - 2014-10-29 03:15 - 00199168 _____ (Microsoft Corporation) C:\windows\SysWOW64\prnntfy.dll
2015-03-11 16:38 - 2014-10-29 03:13 - 00315392 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Store.dll
2015-03-11 16:38 - 2014-10-29 02:55 - 00223744 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Store.dll
2015-03-11 16:38 - 2014-10-29 02:55 - 00192512 _____ (Microsoft Corporation) C:\windows\system32\puiapi.dll
2015-03-11 16:38 - 2014-10-29 02:44 - 00167424 _____ (Microsoft Corporation) C:\windows\SysWOW64\puiapi.dll
2015-03-11 16:38 - 2014-10-29 02:41 - 00269312 _____ (Microsoft Corporation) C:\windows\system32\DafPrintProvider.dll
2015-03-11 16:38 - 2014-10-29 02:35 - 00203776 _____ (Microsoft Corporation) C:\windows\SysWOW64\DafPrintProvider.dll
2015-03-11 16:37 - 2015-02-21 03:16 - 25021440 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2015-03-11 16:37 - 2015-02-21 02:41 - 12827648 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2015-03-11 16:37 - 2015-02-21 02:27 - 00285696 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2015-03-11 16:37 - 2015-02-21 02:27 - 00128000 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll
2015-03-11 16:37 - 2015-02-21 02:25 - 19720192 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2015-03-11 16:37 - 2015-02-21 01:58 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2015-03-11 16:37 - 2015-02-21 01:32 - 00076288 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2015-03-11 16:37 - 2015-02-20 04:49 - 00584192 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2015-03-11 16:37 - 2015-02-20 04:48 - 02886144 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2015-03-11 16:37 - 2015-02-20 04:47 - 00088064 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2015-03-11 16:37 - 2015-02-20 04:35 - 00816128 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2015-03-11 16:37 - 2015-02-20 04:34 - 00814080 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2015-03-11 16:37 - 2015-02-20 04:32 - 06035456 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2015-03-11 16:37 - 2015-02-20 04:09 - 00503296 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2015-03-11 16:37 - 2015-02-20 04:07 - 00145408 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll
2015-03-11 16:37 - 2015-02-20 04:06 - 00064000 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2015-03-11 16:37 - 2015-02-20 04:05 - 00316928 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2015-03-11 16:37 - 2015-02-20 04:03 - 02278400 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2015-03-11 16:37 - 2015-02-20 03:59 - 01032704 _____ (Microsoft Corporation) C:\windows\system32\inetcomm.dll
2015-03-11 16:37 - 2015-02-20 03:56 - 00664064 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2015-03-11 16:37 - 2015-02-20 03:52 - 00262144 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2015-03-11 16:37 - 2015-02-20 03:49 - 00801280 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2015-03-11 16:37 - 2015-02-20 03:49 - 00374272 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2015-03-11 16:37 - 2015-02-20 03:46 - 02125824 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2015-03-11 16:37 - 2015-02-20 03:43 - 14398976 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2015-03-11 16:37 - 2015-02-20 03:30 - 04300288 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2015-03-11 16:37 - 2015-02-20 03:30 - 00880128 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcomm.dll
2015-03-11 16:37 - 2015-02-20 03:29 - 02865152 _____ (Microsoft Corporation) C:\windows\system32\actxprxy.dll
2015-03-11 16:37 - 2015-02-20 03:28 - 02358784 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2015-03-11 16:37 - 2015-02-20 03:26 - 00230400 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2015-03-11 16:37 - 2015-02-20 03:24 - 02052608 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2015-03-11 16:37 - 2015-02-20 03:24 - 00689152 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2015-03-11 16:37 - 2015-02-20 03:16 - 01548288 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2015-03-11 16:37 - 2015-02-20 03:03 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2015-03-11 16:37 - 2015-02-20 03:01 - 01888256 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2015-03-11 16:37 - 2015-02-20 02:57 - 01311232 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2015-03-11 16:37 - 2015-02-20 02:55 - 00710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2015-03-11 16:37 - 2015-02-06 03:28 - 02257408 _____ (Microsoft Corporation) C:\windows\system32\dwmcore.dll
2015-03-11 16:37 - 2015-02-06 03:08 - 01943040 _____ (Microsoft Corporation) C:\windows\SysWOW64\dwmcore.dll
2015-03-11 16:37 - 2015-02-05 22:24 - 01113920 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndis.sys
2015-03-11 16:37 - 2015-02-03 02:03 - 03551744 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DCompiler_47.dll
2015-03-11 16:37 - 2015-02-03 02:02 - 04298240 _____ (Microsoft Corporation) C:\windows\system32\D3DCompiler_47.dll
2015-03-11 16:37 - 2015-01-30 05:01 - 00097792 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidbth.sys
2015-03-11 16:37 - 2015-01-30 05:00 - 00167424 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rfcomm.sys
2015-03-11 16:37 - 2015-01-30 04:03 - 01488896 _____ (Microsoft Corporation) C:\windows\system32\mfc42u.dll
2015-03-11 16:37 - 2015-01-30 04:03 - 01464832 _____ (Microsoft Corporation) C:\windows\system32\mfc42.dll
2015-03-11 16:37 - 2015-01-30 04:02 - 00102912 _____ (Microsoft Corporation) C:\windows\system32\eappgnui.dll
2015-03-11 16:37 - 2015-01-30 03:44 - 01230336 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfc42u.dll
2015-03-11 16:37 - 2015-01-30 03:42 - 01204224 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfc42.dll
2015-03-11 16:37 - 2015-01-30 03:40 - 00091648 _____ (Microsoft Corporation) C:\windows\SysWOW64\eappgnui.dll
2015-03-11 16:37 - 2015-01-30 03:37 - 00331776 _____ (Microsoft Corporation) C:\windows\system32\eapp3hst.dll
2015-03-11 16:37 - 2015-01-30 03:29 - 00035840 _____ (Microsoft Corporation) C:\windows\SysWOW64\atlthunk.dll
2015-03-11 16:37 - 2015-01-30 03:24 - 00339456 _____ (Microsoft Corporation) C:\windows\system32\eapphost.dll
2015-03-11 16:37 - 2015-01-30 03:24 - 00250880 _____ (Microsoft Corporation) C:\windows\SysWOW64\eapp3hst.dll
2015-03-11 16:37 - 2015-01-30 03:16 - 00266752 _____ (Microsoft Corporation) C:\windows\SysWOW64\eapphost.dll
2015-03-11 16:37 - 2015-01-30 03:08 - 00346112 _____ (Microsoft Corporation) C:\windows\system32\eappcfg.dll
2015-03-11 16:37 - 2015-01-30 03:06 - 00278016 _____ (Microsoft Corporation) C:\windows\SysWOW64\eappcfg.dll
2015-03-11 16:37 - 2014-10-29 04:46 - 00081920 _____ (Microsoft Corporation) C:\windows\system32\Drivers\BTHUSB.SYS
2015-03-11 16:37 - 2014-10-29 04:46 - 00053248 _____ (Microsoft Corporation) C:\windows\system32\Drivers\bthenum.sys
2015-03-11 16:37 - 2014-10-29 04:45 - 01198080 _____ (Microsoft Corporation) C:\windows\system32\Drivers\bthport.sys
2015-03-11 16:37 - 2014-10-29 04:03 - 00241152 _____ (Microsoft Corporation) C:\windows\system32\fsquirt.exe
2015-03-11 16:37 - 2014-10-29 03:28 - 00048128 _____ (Microsoft Corporation) C:\windows\system32\atlthunk.dll
2015-03-11 16:37 - 2014-10-29 03:19 - 00070656 _____ (Microsoft Corporation) C:\windows\system32\eappprxy.dll
2015-03-11 16:37 - 2014-10-29 02:59 - 00056320 _____ (Microsoft Corporation) C:\windows\SysWOW64\eappprxy.dll
2015-03-11 16:36 - 2015-02-12 19:40 - 22291584 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2015-03-11 16:36 - 2015-02-12 19:34 - 19731824 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2015-03-11 16:36 - 2015-02-08 01:57 - 01090048 _____ (Microsoft Corporation) C:\windows\system32\MrmCoreR.dll
2015-03-11 16:36 - 2015-02-08 01:49 - 00791040 _____ (Microsoft Corporation) C:\windows\SysWOW64\MrmCoreR.dll
2015-03-11 16:36 - 2015-01-29 20:45 - 01763352 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2015-03-11 16:36 - 2015-01-29 20:34 - 01488040 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecs.dll
2015-03-11 16:36 - 2015-01-28 03:31 - 00402432 _____ (Microsoft Corporation) C:\windows\system32\WMPhoto.dll
2015-03-11 16:36 - 2015-01-28 03:11 - 00357376 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMPhoto.dll
2015-03-11 16:36 - 2015-01-28 01:47 - 02501368 _____ (Microsoft Corporation) C:\windows\explorer.exe
2015-03-11 16:36 - 2015-01-28 01:41 - 02207488 _____ (Microsoft Corporation) C:\windows\SysWOW64\explorer.exe
2015-03-11 16:36 - 2015-01-21 07:54 - 01384712 _____ (Microsoft Corporation) C:\windows\system32\msctf.dll
2015-03-11 16:36 - 2015-01-21 07:15 - 01123848 _____ (Microsoft Corporation) C:\windows\SysWOW64\msctf.dll
2015-03-11 16:36 - 2014-12-11 07:36 - 00046456 _____ (Microsoft Corporation) C:\windows\system32\LockScreenContentServer.exe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-04 18:13 - 2014-09-03 16:11 - 00000000 ____D () C:\Users\Libor\AppData\Local\Battle.net
2015-04-04 18:13 - 2014-08-09 15:26 - 00000000 ____D () C:\Users\Libor\Documents\Euro Truck Simulator 2
2015-04-04 18:00 - 2013-08-22 17:36 - 00000000 ____D () C:\windows\system32\sru
2015-04-04 17:59 - 2014-08-09 11:37 - 00000984 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-04 17:37 - 2014-08-09 11:13 - 00003982 _____ () C:\windows\System32\Tasks\User_Feed_Synchronization-{AB80B7DF-3229-4434-81B8-F3C6E33048EF}
2015-04-04 17:35 - 2014-12-14 13:42 - 01637573 _____ () C:\windows\WindowsUpdate.log
2015-04-04 17:25 - 2014-08-09 11:03 - 00003596 _____ () C:\windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-643025375-3208447214-1379279409-1002
2015-04-04 15:59 - 2014-08-09 11:37 - 00000980 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-04-04 14:55 - 2013-08-22 15:25 - 00262144 ___SH () C:\windows\system32\config\ELAM
2015-04-04 14:53 - 2014-08-09 11:01 - 00000000 ___DO () C:\Users\Libor\OneDrive
2015-04-04 14:52 - 2014-08-09 11:29 - 00003218 _____ () C:\windows\System32\Tasks\Norton WSC Integration
2015-04-04 14:52 - 2014-08-09 11:27 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton AntiVirus
2015-04-04 14:52 - 2014-08-09 11:27 - 00000000 ____D () C:\windows\system32\Drivers\NAVx64
2015-04-04 14:52 - 2013-08-22 17:36 - 00000000 ___HD () C:\windows\ELAMBKUP
2015-04-04 14:51 - 2013-08-22 16:45 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2015-04-04 14:49 - 2013-08-22 15:25 - 00262144 ___SH () C:\windows\system32\config\BBI
2015-04-04 14:48 - 2014-05-29 18:29 - 00006656 _____ () C:\windows\system32\VfService.trf
2015-04-04 14:47 - 2013-08-22 17:36 - 00000000 ____D () C:\windows\AppReadiness
2015-04-04 14:45 - 2014-08-10 10:33 - 07074746 _____ () C:\Users\Public\CAFADEBUG.log
2015-04-04 12:35 - 2014-08-09 19:01 - 00000000 ____D () C:\Users\Libor\AppData\Local\CrashDumps
2015-04-04 11:55 - 2013-08-22 17:20 - 00000000 ____D () C:\windows\CbsTemp
2015-04-04 11:22 - 2014-08-09 10:53 - 00000000 ____D () C:\Users\Libor\AppData\Local\Pokki
2015-04-03 22:31 - 2014-09-03 16:14 - 00000000 ____D () C:\Program Files (x86)\Hearthstone
2015-04-03 22:10 - 2014-09-03 16:10 - 00000000 ____D () C:\Program Files (x86)\Battle.net
2015-04-03 22:05 - 2013-08-22 17:36 - 00000000 ____D () C:\windows\system32\NDF
2015-04-03 22:03 - 2015-02-09 20:43 - 00000717 _____ () C:\Users\Libor\Desktop\AJ.txt
2015-04-03 11:28 - 2014-10-26 23:14 - 00000000 ____D () C:\Users\Libor\AppData\Roaming\Skype
2015-04-02 23:19 - 2014-08-09 10:59 - 00000000 ____D () C:\Users\Libor\Documents\Bluetooth Folder
2015-04-02 22:09 - 2014-05-29 18:27 - 00739924 _____ () C:\windows\system32\perfh005.dat
2015-04-02 22:09 - 2014-05-29 18:27 - 00151610 _____ () C:\windows\system32\perfc005.dat
2015-04-02 22:09 - 2014-03-18 11:53 - 01745984 _____ () C:\windows\system32\PerfStringBackup.INI
2015-04-02 14:12 - 2014-08-09 10:53 - 00000000 ____D () C:\Users\Libor
2015-04-01 19:28 - 2014-08-09 11:18 - 01081344 ___SH () C:\Users\Libor\Desktop\Thumbs.db
2015-04-01 19:12 - 2014-09-12 17:25 - 00000000 ___RD () C:\Users\Libor\Desktop\Smite songs
2015-04-01 19:11 - 2014-09-19 10:16 - 00000000 ____D () C:\Program Files (x86)\Steam
2015-04-01 19:11 - 2014-08-09 14:28 - 00000000 ____D () C:\Users\Libor\AppData\Roaming\uTorrent
2015-03-25 21:04 - 2014-08-09 17:55 - 00000000 ____D () C:\windows\System32\Tasks\Norton Identity Safe
2015-03-24 19:21 - 2014-09-27 16:49 - 00249856 ___SH () C:\Users\Libor\Downloads\Thumbs.db
2015-03-24 18:31 - 2014-08-09 11:29 - 00000000 ____D () C:\windows\system32\Drivers\NSTx64
2015-03-19 10:41 - 2015-02-14 11:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
2015-03-19 10:41 - 2015-02-14 11:38 - 00000000 ____D () C:\Program Files (x86)\Acer
2015-03-19 10:38 - 2014-05-29 18:30 - 00000000 ____D () C:\ProgramData\Office2013
2015-03-19 10:33 - 2015-02-14 11:40 - 00000000 ____D () C:\Users\Libor\AppData\Local\clear.fi
2015-03-15 13:29 - 2013-08-22 17:36 - 00000000 ____D () C:\windows\rescache
2015-03-13 19:33 - 2015-01-07 16:43 - 00000003 _____ () C:\windows\system32\HRUPPROG.TXT
2015-03-13 15:48 - 2013-08-22 16:44 - 00568312 _____ () C:\windows\system32\FNTCACHE.DAT
2015-03-13 15:41 - 2013-08-22 17:36 - 00000000 ___RD () C:\windows\ToastData
2015-03-13 15:41 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-13 15:41 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-13 15:41 - 2013-08-22 17:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-13 15:41 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Windows Defender
2015-03-13 15:40 - 2013-08-22 17:36 - 00000000 ____D () C:\windows\WinStore
2015-03-13 15:40 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-03-12 19:16 - 2014-08-11 16:42 - 00000000 ____D () C:\windows\system32\MRT
2015-03-12 19:05 - 2014-08-11 16:42 - 122905848 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2015-03-08 20:14 - 2014-08-13 16:29 - 00000000 ____D () C:\Users\Libor\AppData\Local\Windows Live

==================== Files in the root of some directories =======

2015-04-02 14:12 - 2015-04-02 14:12 - 0000038 ___SH () C:\Users\Libor\AppData\Local\1754111884ee9ab5277ca00.95260103
2014-08-09 11:43 - 2014-08-09 11:43 - 0000057 _____ () C:\ProgramData\Ament.ini
2014-05-29 17:54 - 2014-05-29 17:54 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Some content of TEMP:
====================
C:\Users\Libor\AppData\Local\Temp\oct7BFC.tmp.exe
C:\Users\Libor\AppData\Local\Temp\Quarantine.exe
C:\Users\Libor\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-03-13 20:36

==================== End Of Log ============================

Re: Vysoký ping

Napsal: 04 dub 2015 18:35
od Rudy
Otevřte poznámkový blok a zkopírujte do něj:
Start
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\...\MountPoints2: {d615a7db-1fa2-11e4-825a-b8ee65886d79} - "F:\setup.exe" /autorun
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-643025375-3208447214-1379279409-1002 -> {F6C3D691-9A89-4CE3-A446-6EC4295F6B96} URL =
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
C:\Program Files (x86)\Skype\Toolbars
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
CHR StartupUrls: Default -> "hxxp://tuvaro.com/ws/?source=4c3f95e5&tbp=homepage&toolbarid=base&u=a43664880000000000000017c4bc8e67", "hxxp://mixidj.delta-search.com/?babsrc=HP_ss&mntrId=7AB90017C4BC8E67&affID=121125&tsp=4920", "hxxp://www.search.ask.com/?o=APN10647A&gct=hp& ... 07-215&t=4"
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
C:\windows\system32\ApnDatabase.xml
C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\ProgramData\DP45977C.lfl
C:\Users\Libor\AppData\Local\Temp
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Vysoký ping

Napsal: 04 dub 2015 20:01
od akekel
Tady :)

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-03-2015
Ran by Libor at 2015-04-04 20:55:20 Run:1
Running from C:\Users\Libor\Desktop
Loaded Profiles: Libor (Available profiles: Libor)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKU\S-1-5-21-643025375-3208447214-1379279409-1002\...\MountPoints2: {d615a7db-1fa2-11e4-825a-b8ee65886d79} - "F:\setup.exe" /autorun
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-643025375-3208447214-1379279409-1002 -> {F6C3D691-9A89-4CE3-A446-6EC4295F6B96} URL =
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
C:\Program Files (x86)\Skype\Toolbars
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
CHR StartupUrls: Default -> "hxxp://tuvaro.com/ws/?source=4c3f95e5&tbp=homepage&toolbarid=base&u=a43664880000000000000017c4bc8e67", "hxxp://mixidj.delta-search.com/?babsrc=HP_ss&mntrId=7AB90017C4BC8E67&affID=121125&tsp=4920", "hxxp://www.search.ask.com/?o=APN10647A&gct=hp& ... 07-215&t=4"
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
C:\windows\system32\ApnDatabase.xml
C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\ProgramData\DP45977C.lfl
C:\Users\Libor\AppData\Local\Temp
End
*****************

HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoControlPanel => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoFolderOptions => value deleted successfully.
"HKU\S-1-5-21-643025375-3208447214-1379279409-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d615a7db-1fa2-11e4-825a-b8ee65886d79}" => Key deleted successfully.
HKCR\CLSID\{d615a7db-1fa2-11e4-825a-b8ee65886d79} => Key not found.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"HKU\S-1-5-21-643025375-3208447214-1379279409-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{F6C3D691-9A89-4CE3-A446-6EC4295F6B96}" => Key deleted successfully.
HKCR\CLSID\{F6C3D691-9A89-4CE3-A446-6EC4295F6B96} => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => Key deleted successfully.
"HKCR\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => Key deleted successfully.
C:\Program Files (x86)\Skype\Toolbars => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} => Key not found.
HKCR\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => Key deleted successfully.
"HKCR\PROTOCOLS\Handler\skypec2c" => Key deleted successfully.
"HKCR\CLSID\{91774881-D725-4E58-B298-07617B9B86A8}" => Key deleted successfully.
HKCR\Wow6432Node\PROTOCOLS\Handler\skypec2c => Key not found.
"HKCR\Wow6432Node\CLSID\{91774881-D725-4E58-B298-07617B9B86A8}" => Key deleted successfully.
Chrome StartupUrls deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl" => Key deleted successfully.
"C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx" => File/Directory not found.
c2cautoupdatesvc => Unable to stop service
c2cautoupdatesvc => Service deleted successfully.
c2cpnrsvc => Unable to stop service
c2cpnrsvc => Service deleted successfully.
C:\windows\system32\ApnDatabase.xml => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
Could not move "C:\ProgramData\DP45977C.lfl" => Scheduled to move on reboot.

"C:\Users\Libor\AppData\Local\Temp" directory move:

Could not move "C:\Users\Libor\AppData\Local\Temp" directory. => Scheduled to move on reboot.


=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2015-04-04 20:59:05)<=

C:\ProgramData\DP45977C.lfl => Is moved successfully.
C:\Users\Libor\AppData\Local\Temp => Moved successfully.

==== End of Fixlog 20:59:07 ====

Re: Vysoký ping

Napsal: 04 dub 2015 21:13
od Rudy
Smazáno. Nastala nějaká změna?

Re: Vysoký ping

Napsal: 05 dub 2015 10:05
od akekel
Včera a dnes jsem testoval a beze změny :/

Re: Vysoký ping

Napsal: 05 dub 2015 10:18
od Rudy
Udělejte ještě kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte. Obávám se ale, že to bude problém providera.

Re: Vysoký ping

Napsal: 05 dub 2015 12:13
od akekel
Nejsem si jist, zda-li tady toto je to správné...

Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 5. 4. 2015
Čas skenování: 12:04:45
Protokol: log.txt
Správce: Ano

Verze: 2.01.4.1018
Databáze malwaru: v2015.04.05.01
Databáze rootkitů: v2015.03.31.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto

OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: Libor

Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 343920
Uplynulý čas: 46 min, 58 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(Nenalezeny žádné škodlivé položky)

Moduly: 0
(Nenalezeny žádné škodlivé položky)

Klíče registru: 0
(Nenalezeny žádné škodlivé položky)

Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 0
(Nenalezeny žádné škodlivé položky)

Soubory: 1
PUP.Optional.Seznam, C:\Users\Libor\Downloads\Winamp-fullsetup.exe, Do karantény, [a84d5315a5e5f93d5169e26c2ad7c43c],

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)

Re: Vysoký ping

Napsal: 05 dub 2015 15:06
od akekel
Je to o něco lepší :) vydrží to déle, ale poté opět 170 :D

Re: Vysoký ping

Napsal: 05 dub 2015 17:28
od Rudy
Tu položku, co nalezl MBAM, smažte.