Stránka 1 z 1

Pomalé načítání stránek

Napsal: 26 říj 2015 15:05
od nervosaur
Zdravím,

mám problém s pomalým načítáním stránek, když zadám www adresu a chci přejít na stránku tak se stránka otevírá třeba i 20 vteřin... Nevím co s tím, zkoušel jsem projet pc mbamem a nic. Předem děkuji za pomoc.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:25-10-2015 02
Ran by xxx (administrator) on XXXX (26-10-2015 14:59:48)
Running from C:\Users\xxx\Desktop
Loaded Profiles: xxx & (Available Profiles: xxx)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cistray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Synaptics) C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.11.163\SSScheduler.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(Realtek) C:\Program Files (x86)\Realtek\USB Wireless LAN Utility\RtlService.exe
() C:\Windows\runSW.exe
(Realtek) C:\Windows\SwUSB.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cis.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\xxx\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1212048 2012-06-07] (Realtek Semiconductor)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2872720 2012-09-05] (ELAN Microelectronics Corp.)
HKLM\...\Run: [SynLenovoGestureMgr] => C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe [665400 2012-08-27] (Synaptics)
HKLM\...\Run: [RtsFT] => C:\Windows\RTFTrack.exe [6334096 2012-08-27] (Realtek semiconductor)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17080376 2015-02-03] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [191544 2015-02-03] (Lenovo(beijing) Limited)
HKLM\...\Run: [COMODO Internet Security] => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [1427648 2015-08-07] (COMODO)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2654512 2015-10-06] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2015-03-12] (Adobe Systems Incorporated)
HKLM\...\Run: [snpstd3] => C:\Windows\vsnpstd3.exe [843776 2006-09-18] ()
HKLM-x32\...\Run: [PrivDogService] => C:\Program Files (x86)\AdTrustMedia\PrivDog\1.8.0.15\trustedadssvc.exe [525480 2013-11-15] (AdTrustMedia)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2015-03-12] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2015-03-12] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291648 2015-06-23] (Intel Corporation)
HKLM-x32\...\Run: [tsnpstd3] => C:\Windows\tsnpstd3.exe [262144 2007-03-30] (SONIX)
HKLM-x32\...\RunOnce: [Malwarebytes Anti-Malware (cleanup)] => C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe [54072 2015-10-26] (Malwarebytes)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1680505892-3545855206-2625938771-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2901584 2015-10-15] (Valve Corporation)
HKU\S-1-5-21-1680505892-3545855206-2625938771-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1680505892-3545855206-2625938771-1000\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-1680505892-3545855206-2625938771-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-08-07] (Piriform Ltd)
HKU\S-1-5-21-1680505892-3545855206-2625938771-1000\...\MountPoints2: {d9d17d9d-ac2c-11e4-a400-2cd05ae4c20a} - F:\SETUP.EXE
HKU\S-1-5-21-1680505892-3545855206-2625938771-1000\...\MountPoints2: {db1c640c-0fff-11e5-8dac-2cd05ae4c20a} - G:\iLinker.exe
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [266448 2015-10-12] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [214448 2015-10-12] (NVIDIA Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2015-09-24]
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.163\SSScheduler.exe (McAfee, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: 0.0.0.1 mssplus.mcafee.com
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{118FED83-A6D1-4581-894C-847FF266E67A}: [NameServer] 156.154.70.25,156.154.71.25
Tcpip\..\Interfaces\{1A4190B8-FADC-4593-94A4-C1A953EEDCC6}: [NameServer] 156.154.70.25,156.154.71.25
Tcpip\..\Interfaces\{D7314F53-CC3C-40A8-877D-3ADDA9936DDA}: [DhcpNameServer] 10.0.0.138

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
SearchScopes: HKU\S-1-5-21-1680505892-3545855206-2625938771-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> D:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> D:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
BHO: PrivDog Extension -> {FB16E5C3-A9E2-47A2-8EFC-319E775E62CC} -> C:\Program Files\AdTrustMedia\PrivDog\1.8.0.15\trustedads.dll [2013-11-15] (AdTrustMedia)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: PrivDog Extension -> {FB16E5C3-A9E2-47A2-8EFC-319E775E62CC} -> C:\Program Files (x86)\AdTrustMedia\PrivDog\1.8.0.15\trustedads.dll [2013-11-15] (AdTrustMedia)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - D:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF ProfilePath: C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\lccualxo.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll [2015-09-20] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> D:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-09-20] ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Extension: Adblock Plus - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\lccualxo.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-10-03]

Chrome:
=======
CHR Profile: C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-05-16]
CHR Extension: (Dokumenty Google) - C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-05-16]
CHR Extension: (Disk Google) - C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (YouTube) - C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25]
CHR Extension: (Vyhledávání Google) - C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-25]
CHR Extension: (Tabulky Google) - C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-05-16]
CHR Extension: (Dokumenty Google offline) - C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-05]
CHR Extension: (AdBlock) - C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-10-14]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-24]
CHR Extension: (Gmail) - C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-05-16]

Opera:
=======
OPR Extension: (afmdpmddiokpdknaeofdnlclbpgehhce) - C:\Users\xxx\AppData\Roaming\Opera Software\Opera Stable\Extensions\afmdpmddiokpdknaeofdnlclbpgehhce [2015-04-06]
OPR Extension: (Opera Addons Portal) - C:\Users\xxx\AppData\Roaming\Opera Software\Opera Stable\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-05-19]
OPR Extension: (Opera Addons Portal) - C:\Users\xxx\AppData\Roaming\Opera Software\Opera Stable\Extensions\deoodoglhbmpafkajmlggnjnngdclnie [2015-04-02]
OPR Extension: (Opera Addons Portal) - C:\Users\xxx\AppData\Roaming\Opera Software\Opera Stable\Extensions\dlabcihlajghaekmikmkncdhekcaaenl [2015-04-03]
OPR Extension: (Opera Addons Portal) - C:\Users\xxx\AppData\Roaming\Opera Software\Opera Stable\Extensions\kihhefcbenhkjgjhchanjfhhflaojldn [2015-04-03]
OPR Extension: (Opera Addons Portal) - C:\Users\xxx\AppData\Roaming\Opera Software\Opera Stable\Extensions\ndabmaflbdfldmdlccmpccenpkgklhln [2015-04-02]
OPR Extension: (Opera Addons Portal) - C:\Users\xxx\AppData\Roaming\Opera Software\Opera Stable\Extensions\pnmjaflneibolacpepklokkjnakmikmg [2015-04-07]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 CmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [5542472 2015-10-09] (COMODO)
S3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2265792 2015-08-07] (COMODO)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155376 2015-10-06] (NVIDIA Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-26] (Malwarebytes)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.163\McCHSvc.exe [289256 2015-09-24] (McAfee, Inc.)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872688 2015-10-06] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5568816 2015-10-06] (NVIDIA Corporation)
R2 RealtekWlanU; C:\Program Files (x86)\Realtek\USB Wireless LAN Utility\RtlService.exe [36864 2010-04-16] (Realtek) [File not signed]
S2 RTLDHCPService; C:\Program Files (x86)\Realtek\USB Wireless LAN Utility\RTLDHCP.exe [261848 2013-11-12] (Realtek)
R2 RunSwUSB; C:\Windows\runSW.exe [48856 2013-10-18] ()
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2015-03-12] (Adobe Systems Incorporated) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2014-06-08] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys [21184 2015-08-05] (COMODO)
R1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [806032 2015-08-05] (COMODO)
R1 cmdHlp; C:\Windows\System32\DRIVERS\cmdhlp.sys [45856 2015-08-05] (COMODO)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2015-02-08] (Disc Soft Ltd)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
U0 firbqq; C:\Windows\System32\drivers\rvuxpgv.sys [79064 2015-10-26] (Malwarebytes)
R1 inspect; C:\Windows\System32\DRIVERS\inspect.sys [105096 2015-08-05] (COMODO)
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-26] (Malwarebytes)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-26] (Malwarebytes Corporation)
R3 MTKSCVAD; C:\Windows\System32\drivers\mtkvadx.sys [44544 2012-07-16] (Ralink Technology, Corp.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19760 2015-10-04] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [50472 2015-10-12] (NVIDIA Corporation)
R3 rtsuvc; C:\Windows\System32\DRIVERS\rtsuvc.sys [8227216 2012-08-27] (Realtek Semiconductor Corp.)
R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [43832 2012-08-27] (Synaptics Incorporated)
S3 SNPSTD3; C:\Windows\System32\DRIVERS\snpstd3.sys [10535040 2015-06-23] (Sonix Co. Ltd.)
S3 SNPSTD3; C:\Windows\SysWOW64\DRIVERS\snpstd3.sys [10246144 2015-06-23] (Sonix Co. Ltd.)
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-10-26 14:59 - 2015-10-26 15:00 - 00019098 _____ C:\Users\xxx\Desktop\FRST.txt
2015-10-26 14:58 - 2015-10-26 14:59 - 00000000 ____D C:\FRST
2015-10-26 14:58 - 2015-10-26 14:55 - 02197504 _____ (Farbar) C:\Users\xxx\Desktop\FRST64.exe
2015-10-26 14:57 - 2015-10-26 14:57 - 02197504 _____ (Farbar) C:\Users\xxx\Downloads\FRST64 (1).exe
2015-10-26 14:56 - 2015-10-26 14:30 - 00112640 _____ (forum.viry.cz) C:\Users\xxx\Desktop\FRSTLauncher.exe
2015-10-26 14:55 - 2015-10-26 14:55 - 02197504 _____ (Farbar) C:\Users\xxx\Downloads\FRST64.exe
2015-10-26 14:30 - 2015-10-26 14:30 - 00000080 _____ C:\Users\xxx\Desktop\uTorrent.lnk
2015-10-26 14:30 - 2015-10-26 14:30 - 00000080 _____ C:\Users\xxx\Desktop\TOTALCMD - zástupce.lnk
2015-10-26 14:30 - 2015-10-26 14:30 - 00000080 _____ C:\Users\xxx\Desktop\Ovládací panely - zástupce.lnk
2015-10-26 14:29 - 2015-10-26 14:30 - 00112640 _____ (forum.viry.cz) C:\Users\xxx\Downloads\FRSTLauncher.exe
2015-10-26 14:29 - 2015-10-26 14:29 - 00079064 _____ (Malwarebytes) C:\Windows\system32\Drivers\rvuxpgv.sys
2015-10-26 13:48 - 2015-10-26 13:58 - 00000000 ____D C:\ProgramData\Avg
2015-10-26 13:44 - 2015-10-26 13:50 - 00000000 ____D C:\Users\xxx\AppData\Local\AvgSetupLog
2015-10-26 13:43 - 2015-10-26 13:43 - 00000000 ____D C:\Users\xxx\AppData\Local\MFAData
2015-10-26 13:43 - 2015-10-26 13:43 - 00000000 ____D C:\Users\xxx\AppData\Local\Avg2015
2015-10-26 13:43 - 2015-10-26 13:43 - 00000000 ____D C:\Users\xxx\AppData\Local\Avg
2015-10-26 13:43 - 2015-10-26 13:43 - 00000000 ____D C:\ProgramData\MFAData
2015-10-26 13:42 - 2015-10-26 13:42 - 05051824 _____ (AVG Technologies) C:\Users\xxx\Downloads\avg_free_stb_all_2015_ltst_611.exe
2015-10-24 15:18 - 2015-10-24 15:18 - 00207201 _____ C:\Users\xxx\Downloads\VY_32_INOVACE_13_A_18_Základní_dopravní_dokumentace_v_ŽD.pptx
2015-10-24 12:44 - 2015-10-24 12:44 - 00000000 ____D C:\Users\xxx\Downloads\otazky vlečka
2015-10-24 12:43 - 2015-10-24 12:43 - 03317133 _____ C:\Users\xxx\Downloads\otazky vlečka.zip
2015-10-23 19:02 - 2015-10-23 19:05 - 00000000 ____D C:\Users\xxx\Desktop\ondrašik foto
2015-10-23 15:49 - 2015-10-23 15:49 - 03431051 _____ C:\Users\xxx\Desktop\rosta.psd
2015-10-23 15:15 - 2015-10-23 15:16 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Samsung
2015-10-23 15:07 - 2015-10-23 15:07 - 00000000 ____D C:\Users\xxx\Documents\Vlastní šablony Office
2015-10-23 15:06 - 2015-10-23 15:06 - 00400056 _____ C:\Users\xxx\Downloads\mudrjrakova.bmp
2015-10-23 13:49 - 2015-10-23 15:16 - 00000000 ____D C:\ProgramData\Samsung
2015-10-23 13:48 - 2015-10-23 13:48 - 00089600 _____ (SS) C:\Windows\system32\ux003ci.dll
2015-10-23 13:48 - 2015-10-23 13:48 - 00022528 _____ () C:\Windows\system32\ux003lm.dll
2015-10-23 13:48 - 2015-10-23 13:43 - 00158016 _____ C:\Windows\system32\ux003ci.exe
2015-10-23 13:48 - 2015-09-14 06:09 - 02073600 ____N C:\Windows\SysWOW64\DlgSearchEngine.dll
2015-10-23 13:36 - 2014-08-18 13:59 - 00011576 ____N (Samsung Electronics) C:\Windows\system32\Drivers\SSPORT.SYS
2015-10-23 13:33 - 2015-10-23 13:33 - 28455728 _____ C:\Users\xxx\Downloads\SamsungUniversalPrintDriver3XPS.exe
2015-10-22 19:42 - 2015-10-22 19:42 - 00038912 _____ C:\Users\xxx\Downloads\fl (1) (1).xls
2015-10-22 19:41 - 2015-10-22 19:41 - 00038912 _____ C:\Users\xxx\Downloads\fl (1).xls
2015-10-22 14:13 - 2015-10-22 14:31 - 1736622080 _____ C:\Users\xxx\Downloads\kobry a užovky 480p.avi
2015-10-22 06:34 - 2015-10-26 13:48 - 00000000 ____D C:\Windows\Downloaded Installations
2015-10-22 06:31 - 2015-10-22 06:32 - 113060248 _____ (Macromedia, Inc. ) C:\Users\xxx\Downloads\Flash_Professional_8.exe
2015-10-21 22:43 - 2015-10-24 15:31 - 00000000 ____D C:\Users\xxx\Desktop\test v8 a vlečka
2015-10-21 11:21 - 2015-10-21 11:21 - 00000055 _____ C:\Users\Public\Documents\pre_fileassoc.tmp
2015-10-21 11:11 - 2015-10-21 11:18 - 38831056 _____ (Foxit Software Inc. ) C:\Users\xxx\Downloads\FoxitReader722.0929_enu_Setup.exe
2015-10-21 11:07 - 2015-10-21 23:22 - 00000000 ____D C:\Users\xxx\Downloads\zoz
2015-10-21 11:04 - 2015-10-21 11:04 - 00415717 _____ C:\Users\xxx\Downloads\zoz.zip
2015-10-18 11:16 - 2015-10-18 11:23 - 732266496 _____ C:\Users\xxx\Downloads\Kamarád do deště.avi
2015-10-17 21:09 - 2015-10-16 22:28 - 00015676 _____ C:\Users\xxx\Downloads\VV Mozolky 42,Brno (2) (1).xlsx
2015-10-17 21:09 - 2015-10-16 22:28 - 00015676 _____ C:\Users\xxx\Downloads\VV Mozolky 42,Brno (2) (1) (1).xlsx
2015-10-17 21:06 - 2015-10-16 22:28 - 00015676 _____ C:\Users\xxx\Downloads\VV Mozolky 42,Brno (2).xlsx
2015-10-17 13:41 - 2015-10-17 13:41 - 00000000 __RHD C:\MSOCache
2015-10-17 13:36 - 2015-10-17 13:36 - 00015373 _____ C:\Users\xxx\Downloads\VV Mozolky 42,Brno (1).xlsx
2015-10-17 13:10 - 2015-10-17 13:10 - 00000000 ____D C:\Users\xxx\Downloads\dlls_x64
2015-10-17 13:10 - 2015-10-17 13:10 - 00000000 ____D C:\Users\xxx\Desktop\dlls_x64
2015-10-17 13:03 - 2015-10-17 13:03 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2015-10-17 13:02 - 2015-10-17 13:02 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2015-10-17 12:57 - 2015-10-17 12:57 - 05798953 _____ C:\Users\xxx\Downloads\dlls_x64.zip
2015-10-17 12:52 - 2015-10-17 12:52 - 00000000 ____D C:\Program Files\KMSnano
2015-10-17 12:47 - 2015-10-17 12:47 - 00000000 ____D C:\Users\xxx\AppData\Local\@ByELDI
2015-10-17 12:40 - 2015-10-17 12:52 - 00003478 _____ C:\Windows\System32\Tasks\Trigger KMS Activation
2015-10-17 12:40 - 2015-10-17 12:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSnano
2015-10-17 12:34 - 2015-10-17 13:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-10-17 12:31 - 2015-10-17 13:02 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2015-10-17 12:31 - 2015-10-17 12:31 - 00000000 ____D C:\Windows\PCHEALTH
2015-10-17 12:29 - 2015-10-17 12:29 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2015-10-17 12:29 - 2015-10-17 12:29 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2015-10-17 12:29 - 2015-10-17 12:29 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2015-10-17 12:27 - 2015-10-17 12:27 - 00000000 ____D C:\Users\xxx\AppData\Local\Microsoft Toolkit
2015-10-17 12:25 - 2015-10-17 12:25 - 00000000 ____D C:\Users\xxx\Downloads\Microsoft-Office-2013-CZ-x64-+-aktivator
2015-10-17 12:19 - 2015-10-17 12:25 - 805291307 _____ C:\Users\xxx\Downloads\Microsoft-Office-2013-CZ-x64-+-aktivator.rar
2015-10-17 12:03 - 2015-10-17 12:03 - 00011055 _____ C:\Users\xxx\Downloads\kms.rar
2015-10-17 12:03 - 2015-10-17 12:03 - 00000000 ____D C:\Users\xxx\Downloads\kms
2015-10-17 11:13 - 2015-10-17 11:13 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2015-10-17 11:08 - 2015-10-17 13:05 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-10-17 11:08 - 2015-10-17 11:08 - 00000000 ____D C:\Users\xxx\AppData\Local\Microsoft Help
2015-10-17 10:37 - 2015-10-17 11:03 - 2780370944 _____ C:\Users\xxx\Downloads\cs_office_professional_plus_2013_sp1_x64_volume_sep15.iso
2015-10-17 10:01 - 2015-10-16 22:28 - 00015676 _____ C:\Users\xxx\Downloads\VV Mozolky 42,Brno .xlsx
2015-10-17 08:59 - 2015-10-17 09:03 - 570570144 _____ (Microsoft Corporation) C:\Users\xxx\Downloads\X16-32004 Office 2010 Czech 32bit.exe
2015-10-17 08:50 - 2015-10-18 23:12 - 00000000 ____D C:\Users\xxx\Desktop\mozolky
2015-10-16 12:52 - 2015-10-16 12:52 - 00060890 _____ C:\Users\xxx\Downloads\Zabijáci 2014.srt
2015-10-16 12:40 - 2015-10-16 13:12 - 914501632 _____ C:\Users\xxx\Downloads\slidil cz dabing 2014.avi
2015-10-16 12:13 - 2015-10-16 12:48 - 1272731622 _____ C:\Users\xxx\Downloads\Zabijáci 2014.mkv
2015-10-16 12:03 - 2015-10-16 12:16 - 837709824 _____ C:\Users\xxx\Downloads\Kapitán Phillips (CZ).avi
2015-10-16 12:00 - 2015-10-16 12:12 - 969155446 _____ C:\Users\xxx\Downloads\Kód Enigmy 2014 CZ Dabing.avi
2015-10-13 12:34 - 2015-10-13 12:34 - 00000000 ___DL C:\Users\xxx\AppData\LocalLow\PlayReady
2015-10-13 11:42 - 2015-10-13 11:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-10-13 11:42 - 2015-10-13 11:42 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-10-13 11:42 - 2015-10-13 11:42 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2015-10-13 11:41 - 2015-10-13 11:41 - 13155552 _____ (Microsoft Corporation) C:\Users\xxx\Downloads\Silverlight_x64.exe
2015-10-12 07:43 - 2015-10-17 13:08 - 00005574 _____ C:\Windows\PFRO.log
2015-10-12 04:45 - 2015-10-12 04:46 - 01905456 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435850.dll
2015-10-12 04:45 - 2015-10-12 04:46 - 01564976 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435850.dll
2015-10-12 04:45 - 2015-10-12 04:46 - 00414000 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2015-10-12 04:45 - 2015-10-12 04:46 - 00369272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2015-10-12 04:29 - 2015-10-12 04:29 - 00069416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2015-10-12 04:29 - 2015-10-12 04:29 - 00050472 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2015-10-11 00:32 - 2015-10-11 00:42 - 1413343934 _____ C:\Users\xxx\Downloads\Pixely cz dab..avi
2015-10-11 00:19 - 2015-10-11 00:19 - 00000195 _____ C:\Users\xxx\Downloads\Kobry-a-uzovky-2015-MP4-720p-HD-3073MB-DOWNLOAD (2).txt
2015-10-11 00:12 - 2015-10-11 00:12 - 00000000 ____D C:\Users\xxx\Downloads\Kobry a užovky 2015
2015-10-10 23:55 - 2015-10-11 00:11 - 1948447764 _____ C:\Users\xxx\Downloads\Kobry a užovky 2015.rar
2015-10-09 20:19 - 2015-10-09 20:29 - 1470201856 _____ C:\Users\xxx\Downloads\Skyfall (Skyfall) (2012) CZ.avi
2015-10-09 19:00 - 2015-10-09 19:05 - 539110538 _____ C:\Users\xxx\Downloads\Ulice---2891.-Díl.-12.10.2015.avi
2015-10-09 12:16 - 2015-10-09 12:16 - 00000000 ____D C:\ProgramData\Comodo Downloader
2015-10-08 06:27 - 2015-10-08 06:27 - 00000000 ____D C:\Users\xxx\AppData\Roaming\com.playsaurus.heroclicker
2015-10-07 10:44 - 2015-10-07 10:44 - 00000000 ____D C:\Users\xxx\Downloads\64b01b980825cd06990802ad3eaa2cc5-0-99
2015-10-07 10:36 - 2015-10-07 10:37 - 21225719 _____ C:\Users\xxx\Downloads\64b01b980825cd06990802ad3eaa2cc5-0-99.zip
2015-10-05 18:47 - 2015-10-05 18:53 - 647213718 _____ C:\Users\xxx\Downloads\Lovci.hlav.2011.BDRip.x264.AAC.CZ.dabing.mkv
2015-10-05 18:30 - 2015-10-05 18:38 - 964165632 _____ C:\Users\xxx\Downloads\Dítě číslo 44 (2015) Cz dab..avi
2015-10-03 22:47 - 2015-10-03 22:55 - 1095855288 _____ C:\Users\xxx\Downloads\Sileny Max Zbesila cesta cz dabing.(rek).avi
2015-10-03 15:25 - 2015-10-03 15:25 - 00000000 ____D C:\Users\xxx\AppData\Local\Macromedia
2015-10-03 00:55 - 2015-10-03 01:01 - 952272896 _____ C:\Users\xxx\Downloads\Lovci a obeti.avi
2015-10-01 12:41 - 2015-10-01 12:41 - 00000000 ____D C:\Users\xxx\Downloads\Rockfield
2015-10-01 12:39 - 2015-10-01 12:39 - 00000000 ____D C:\Users\xxx\Downloads\Kabát - Do Pekla Do Nebe 2015 by masterblaster4
2015-10-01 11:42 - 2015-10-01 11:42 - 00000000 ____D C:\Users\xxx\Downloads\sygic maps
2015-10-01 11:40 - 2015-10-01 11:40 - 00881268 _____ C:\Users\xxx\Downloads\Mapdownloader-2015.rar
2015-10-01 11:40 - 2015-10-01 11:40 - 00000000 ____D C:\Users\xxx\Downloads\Mapdownloader-2015
2015-10-01 11:31 - 2015-10-01 11:32 - 00000000 ____D C:\Users\xxx\Downloads\Sygic-PC-maps-DOWNLOADER---[26.8.2015]
2015-10-01 11:30 - 2015-10-01 11:31 - 00951784 _____ C:\Users\xxx\Downloads\Sygic-PC-maps-DOWNLOADER---[26.8.2015].rar
2015-09-30 16:16 - 2015-09-30 16:17 - 106170855 _____ C:\Users\xxx\Downloads\Kabát - Do Pekla Do Nebe 2015 by masterblaster4.rar
2015-09-30 15:00 - 2015-09-30 15:08 - 98696012 _____ C:\Users\xxx\Downloads\Rockfield.rar
2015-09-29 22:42 - 2015-09-29 22:48 - 762439378 _____ C:\Users\xxx\Downloads\Ordinace v růžové zahradě 2 - 598. díl - Hra na lásku.avi
2015-09-29 21:48 - 2015-09-29 21:53 - 526478558 _____ C:\Users\xxx\Downloads\Ordinace v růžové zahradě 2 597. díl - Sestra Katastrofa.avi
2015-09-29 12:55 - 2015-09-29 12:55 - 02913812 _____ C:\Users\xxx\Desktop\Bez názvu-2.psd
2015-09-29 11:59 - 2015-09-29 11:59 - 00424615 _____ C:\Users\xxx\Desktop\Bez názvu-1.psd
2015-09-29 11:31 - 2015-09-29 11:31 - 00552100 _____ C:\Users\xxx\Downloads\prukazka obst.jpeg
2015-09-29 11:26 - 2015-09-29 11:26 - 00332075 _____ C:\Users\xxx\Downloads\kohout.jpeg
2015-09-28 00:00 - 2015-09-28 00:07 - 807180288 _____ C:\Users\xxx\Downloads\Lov (The Hunt, Jagten) (2012) CZ.avi
2015-09-27 18:50 - 2015-09-27 19:07 - 1813837824 _____ C:\Users\xxx\Downloads\Mrtví a neklidní (Warm Bodies 2013) Cz.avi

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-10-26 15:00 - 2015-02-03 21:42 - 00000952 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-10-26 14:31 - 2015-09-17 10:12 - 00001163 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-10-26 14:31 - 2015-03-12 21:14 - 00000825 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS6 (64 Bit).lnk
2015-10-26 14:31 - 2015-03-12 21:13 - 00000799 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS6 (64bit).lnk
2015-10-26 14:31 - 2015-03-12 21:12 - 00001523 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ExtendScript Toolkit CS6.lnk
2015-10-26 14:31 - 2015-03-12 21:12 - 00000874 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CS6.lnk
2015-10-26 14:31 - 2015-02-08 03:18 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent
2015-10-26 14:31 - 2015-02-03 20:18 - 00001397 _____ C:\Users\xxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-10-26 14:31 - 2015-02-03 20:02 - 00001345 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2015-10-26 14:31 - 2015-02-03 20:01 - 00001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2015-10-26 14:31 - 2009-07-14 06:01 - 00001218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk
2015-10-26 14:31 - 2009-07-14 05:57 - 00001523 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-10-26 14:31 - 2009-07-14 05:57 - 00001304 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk
2015-10-26 14:31 - 2009-07-14 05:57 - 00001246 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk
2015-10-26 14:31 - 2009-07-14 05:54 - 00001210 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk
2015-10-26 14:31 - 2009-07-14 05:49 - 00001246 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk
2015-10-26 14:30 - 2015-09-20 16:57 - 00001938 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2015-10-26 14:30 - 2015-09-17 10:12 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-10-26 14:30 - 2015-08-19 13:37 - 00002731 _____ C:\Users\Public\Desktop\Skype.lnk
2015-10-26 14:30 - 2015-08-07 14:25 - 00000866 _____ C:\Users\Public\Desktop\CCleaner.lnk
2015-10-26 14:30 - 2015-04-03 11:29 - 00001106 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-10-26 14:30 - 2015-03-31 16:16 - 00000632 _____ C:\Users\xxx\Desktop\Total Commander.lnk
2015-10-26 14:30 - 2015-03-29 14:04 - 00000682 _____ C:\Users\Public\Desktop\Heroes of the Storm.lnk
2015-10-26 14:30 - 2015-02-10 22:44 - 00001070 _____ C:\Users\Public\Desktop\VLC media player.lnk
2015-10-26 14:30 - 2015-02-08 20:25 - 00001954 _____ C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2015-10-26 14:30 - 2015-02-08 03:46 - 00001085 _____ C:\Users\Public\Desktop\MPC-HC.lnk
2015-10-26 14:30 - 2015-02-04 21:00 - 00000967 _____ C:\Users\Public\Desktop\Steam.lnk
2015-10-26 14:30 - 2015-02-04 05:54 - 00001925 _____ C:\Users\Public\Desktop\COMODO Firewall.lnk
2015-10-26 14:30 - 2015-02-03 21:42 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-10-26 14:30 - 2015-02-03 20:45 - 00001381 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2015-10-26 14:14 - 2015-04-03 11:29 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-10-26 14:13 - 2015-04-03 11:29 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-10-26 14:13 - 2015-04-03 11:29 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-10-26 14:13 - 2015-04-03 11:29 - 00025816 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2015-10-26 14:13 - 2015-04-03 11:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-10-26 14:13 - 2015-04-03 11:29 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-10-26 14:03 - 2015-03-07 13:21 - 00000000 ____D C:\Windows\system32\appmgmt
2015-10-26 13:59 - 2015-02-04 05:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo
2015-10-26 13:45 - 2015-02-05 19:12 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Foxit Software
2015-10-26 13:28 - 2010-11-21 10:27 - 00812264 _____ C:\Windows\system32\perfh005.dat
2015-10-26 13:28 - 2010-11-21 10:27 - 00189604 _____ C:\Windows\system32\perfc005.dat
2015-10-26 13:28 - 2009-07-14 06:13 - 01777412 _____ C:\Windows\system32\PerfStringBackup.INI
2015-10-26 11:04 - 2015-02-03 20:00 - 00677911 _____ C:\Windows\WindowsUpdate.log
2015-10-26 11:00 - 2015-02-03 21:42 - 00000948 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-10-26 09:37 - 2015-08-07 17:03 - 00254087 _____ C:\Windows\runSW.log
2015-10-26 08:55 - 2015-03-12 21:04 - 00000000 ____D C:\Users\xxx\AppData\Local\Adobe
2015-10-26 08:54 - 2015-02-03 21:35 - 00001330 _____ C:\Windows\Tasks\TTOXLQ.job
2015-10-25 15:37 - 2015-02-04 21:00 - 00000000 ____D C:\Program Files (x86)\Steam
2015-10-23 18:43 - 2015-08-07 21:11 - 00012701 _____ C:\Windows\setupact.log
2015-10-22 14:39 - 2015-02-10 22:45 - 00000000 ____D C:\Users\xxx\AppData\Roaming\vlc
2015-10-19 09:40 - 2015-04-02 15:40 - 00000004 _____ C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-10-17 20:28 - 2015-02-03 20:18 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Adobe
2015-10-17 20:28 - 2015-02-03 20:05 - 00111520 _____ C:\Users\xxx\AppData\Local\GDIPFONTCACHEV1.DAT
2015-10-17 13:25 - 2009-07-14 05:45 - 00026352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-10-17 13:25 - 2009-07-14 05:45 - 00026352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-10-17 13:16 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-10-17 13:10 - 2015-02-08 21:17 - 00829264 _____ (Microsoft Corporation) C:\Windows\system32\msvcr100.dll
2015-10-17 13:10 - 2014-04-11 22:39 - 00018088 _____ (Microsoft Corporation) C:\Windows\system32\msvcr100_clr0400.dll
2015-10-17 13:10 - 2011-06-11 00:15 - 05601616 _____ (Microsoft Corporation) C:\Windows\system32\mfc100u.dll
2015-10-17 13:10 - 2011-06-11 00:15 - 05574984 _____ (Microsoft Corporation) C:\Windows\system32\mfc100.dll
2015-10-17 13:10 - 2011-06-11 00:15 - 00608080 _____ (Microsoft Corporation) C:\Windows\system32\msvcp100.dll
2015-10-17 13:08 - 2009-07-14 05:45 - 05059344 _____ C:\Windows\system32\FNTCACHE.DAT
2015-10-17 13:03 - 2010-11-21 10:38 - 00000000 ____D C:\Windows\ShellNew
2015-10-17 13:03 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2015-10-17 12:58 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\System
2015-10-17 12:58 - 2009-07-14 03:34 - 00000638 _____ C:\Windows\win.ini
2015-10-17 12:16 - 2015-09-17 10:11 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-10-17 11:04 - 2015-02-08 20:24 - 00000000 ____D C:\Users\xxx\AppData\Roaming\DAEMON Tools Lite
2015-10-15 02:04 - 2015-02-08 03:54 - 00000000 ____D C:\Windows\System32\Tasks\Games
2015-10-12 04:49 - 2015-02-03 20:44 - 00884512 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-10-12 04:49 - 2015-02-03 20:43 - 27775776 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 21096736 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 15910736 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 15143904 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 13403168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 12426216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 09233688 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 07682960 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 07641832 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 06324360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 02942240 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 02754336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 02597344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 02363680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 02002720 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 01059560 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 00925648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 00443168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 00421152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 00370976 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 00266448 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 00218592 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 00214448 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-10-12 04:49 - 2015-02-03 20:43 - 00181488 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-10-12 04:48 - 2015-02-03 20:43 - 11216160 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-10-12 04:48 - 2015-02-03 20:43 - 02935696 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-10-12 04:48 - 2015-02-03 20:43 - 00550176 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-10-12 04:48 - 2015-02-03 20:43 - 00518944 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-10-12 04:48 - 2015-02-03 20:43 - 00432416 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2015-10-12 04:48 - 2015-02-03 20:43 - 00030496 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys
2015-10-12 04:48 - 2015-02-03 20:42 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2015-10-12 04:45 - 2015-02-03 20:45 - 00000000 ____D C:\ProgramData\NVIDIA
2015-10-12 04:32 - 2015-02-03 20:44 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2015-10-12 04:29 - 2015-02-07 23:32 - 00072504 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2015-10-12 04:27 - 2015-02-08 00:30 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Skype
2015-10-08 03:23 - 2015-02-20 05:37 - 00000000 ____D C:\Users\xxx\AppData\Local\Steam
2015-10-04 09:23 - 2015-02-07 23:33 - 01423120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2015-10-04 09:23 - 2015-02-07 23:33 - 01317192 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2015-10-04 09:22 - 2015-02-07 23:33 - 01756608 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2015-10-04 09:22 - 2015-02-07 23:33 - 01710568 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2015-10-03 14:51 - 2015-02-08 00:29 - 00000000 ____D C:\ProgramData\Skype

==================== Files in the root of some directories =======

2015-07-23 10:50 - 2015-07-29 11:52 - 0000132 _____ () C:\Users\xxx\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2015-01-25 17:12 - 2015-01-25 17:12 - 0001248 _____ () C:\Users\xxx\AppData\Roaming\TTOXLQ
2015-07-23 10:52 - 2015-07-23 10:52 - 0001480 _____ () C:\Users\xxx\AppData\Local\Adobe Uložit pro web 13.0 Prefs
2015-02-03 20:18 - 2015-02-03 20:18 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Some files in TEMP:
====================
C:\Users\xxx\AppData\Local\Temp\avg-0c07c556-e31c-4f29-aba2-b013273d8b5d.exe
C:\Users\xxx\AppData\Local\Temp\FoxitUpdater.exe
C:\Users\xxx\AppData\Local\Temp\ose00000.exe
C:\Users\xxx\AppData\Local\Temp\SkypeSetup.exe
C:\Users\xxx\AppData\Local\Temp\totaluninstaller2.exe


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\TTOXLQ.job => C:\Users\xxx\AppData\Roaming\TTOXLQ.exe <==== ATTENTION

==================== Alternate Data Streams (whitelisted) ==================

AlternateDataStreams: C:\Windows\amcap.exe:$CmdTcID
AlternateDataStreams: C:\Windows\csnpstd3.dll:$CmdTcID
AlternateDataStreams: C:\Windows\tsnpstd3.exe:$CmdTcID
AlternateDataStreams: C:\Windows\vsnpstd3.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\csnpstd3.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mfc100.dll:$CmdZnID
AlternateDataStreams: C:\Windows\system32\mfc100u.dll:$CmdZnID
AlternateDataStreams: C:\Windows\system32\msvcp100.dll:$CmdZnID
AlternateDataStreams: C:\Windows\system32\msvcr100.dll:$CmdZnID
AlternateDataStreams: C:\Windows\system32\msvcr100_clr0400.dll:$CmdZnID
AlternateDataStreams: C:\Windows\system32\nvapi64.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\nvaudcap64v.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\nvcompiler.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\nvcuda.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\nvcuvenc.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\nvcuvid.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\nvd3dumx.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\nvdispco6435330.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\nvdispco6435850.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\nvdispgenco6435330.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\nvdispgenco6435850.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\nvEncodeAPI64.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\NvFBC64.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\NvIFR64.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\NvIFROpenGL.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\nvinitx.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\nvoglshim64.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\nvoglv64.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\nvopencl.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\nvumdshimx.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\nvvsvc.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\nvwgf2umx.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\rsnpstd3.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ux003ci.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ux003ci.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ux003lm.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\vsnpstd3.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\WpdMtp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\WpdMtpUS.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\FlashPlayerApp.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msjava.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\nvapi.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\nvaudcap32v.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\nvcompiler.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\nvcuda.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\nvcuvenc.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\nvcuvid.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\nvd3dum.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\nvEncodeAPI.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\NvFBC.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\NvIFR.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\NvIFROpenGL.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\nvinit.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\nvoglshim32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\nvoglv32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\nvopencl.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\nvumdshim.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\nvwgf2um.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\rsnpstd3.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\vsnpstd3.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\iusb3hub.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\mbam.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\mbamchameleon.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\mwac.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\nvlddmkm.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\nvpciflt.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\nvvad64v.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\snpstd3.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\USBAUDIO.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\winusb.sys:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\Drivers\snpstd3.sys:$CmdTcID
AlternateDataStreams: C:\Users\xxx\Desktop\012_001_jpg_490eea9173.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\10063_2585603934892_1713508272_n.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\20150919_183510 (1).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\20151003_170544.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\20151003_170601.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\20151003_171204.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\20151003_171224.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\20151003_171430.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\25.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\51727636 (1).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\51727636 (2).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\51727636 (3).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\51727636.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\bears-papabear.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\FRST64.exe:$CmdTcID
AlternateDataStreams: C:\Users\xxx\Desktop\FRST64.exe:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\FRSTLauncher.exe:$CmdTcID
AlternateDataStreams: C:\Users\xxx\Desktop\FRSTLauncher.exe:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\Logo2015.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\OZON-logotype1.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\post.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\pře.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\Rozvodový-diagram-čtyřdobého-benzinového-motoru-.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\unnamed.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\vykopoveprace-brno-680x97.png:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\ZVÍŘÁTKA.docx:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\_mg_2557.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Desktop\_vyr_40stop.png:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\02 Předpis ČD D2 povinné školení.pptx.ppt:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\10000001.ppt:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\10398659_4217165682916_429812224418551166_n.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11132193_1112699418756187_807370018_o.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11289634_1054249514602675_834639768_n.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11348060_1054250784602548_128221258_o.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11355475_1054248521269441_595977173_n.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11638817_1460291660967720_1954990669_o (1).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11638817_1460291660967720_1954990669_o.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11754370_997820426895751_8807748678008722708_o.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11754676_1003945042989055_754186552343716652_o.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11901693_1460291667634386_953552675_o (1).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11901693_1460291667634386_953552675_o.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11975352_1460291387634414_1816724970_o (1).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11975352_1460291387634414_1816724970_o.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11986182_1460291394301080_954108143_o (1).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11986182_1460291394301080_954108143_o.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11989482_1460291434301076_378955971_o (1).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11989482_1460291434301076_378955971_o.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11990053_1460291380967748_114247453_o (1).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11990053_1460291380967748_114247453_o.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11990182_1460291424301077_1131678177_o (1).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11990182_1460291424301077_1131678177_o.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11990352_1460291620967724_399916181_o (1).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11990352_1460291620967724_399916181_o.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11990782_1460291420967744_822372549_o (1).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11990782_1460291420967744_822372549_o (2).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11993001_1460291614301058_678886604_o (1).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11993001_1460291614301058_678886604_o (2).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11993001_1460291614301058_678886604_o.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11993094_1460291674301052_1457689807_o.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11993250_1460291397634413_1515990150_o (1).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11993250_1460291397634413_1515990150_o.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11994076_1460291384301081_422710528_o (1).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11994076_1460291384301081_422710528_o.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11994107_1460291430967743_2006049396_o (1).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11994107_1460291430967743_2006049396_o.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11994146_1460291640967722_1443975474_o (1).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11994146_1460291640967722_1443975474_o (2).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11994146_1460291640967722_1443975474_o.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11995310_1460291634301056_1985303515_o (1).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11995310_1460291634301056_1985303515_o (2).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11995310_1460291634301056_1985303515_o.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11996273_1460291404301079_1990769175_o (1).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11996273_1460291404301079_1990769175_o (2).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\11996273_1460291404301079_1990769175_o.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\12 let v řetězech.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\127-hodin-CZ-2010.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\1299362197.ppt:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\14_REG_CR.pdf:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\20150803_162144.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\20150919_183510 (1).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\20150919_183510.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\20150919_184818.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\20150920_113055.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\20150926_174709.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\20151003_170544.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\20151003_170601.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\20151003_171204.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\20151003_171224.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\20151003_171430.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\20151006_163429.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\20151006_163441.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\20151016_124336.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\4426.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\6267e9020c5a9cb853d9a4dc33f1e32d-0-99.zip:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\64b01b980825cd06990802ad3eaa2cc5-0-99.zip:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\712x300_2.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\799030ji_db.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\8.3.5.193799.rar:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\841_001_1_1.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Argo.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\avg_free_stb_all_2015_ltst_611.exe:$CmdTcID
AlternateDataStreams: C:\Users\xxx\Downloads\avg_free_stb_all_2015_ltst_611.exe:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Bez názvu-45.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Birdman(0000249665).srt:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\bm-77360.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\c1.rar:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\c2.rar:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\CA424B4Z.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\CAEGUUAT (1).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\CAEGUUAT.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\ccsetup508.exe:$CmdTcID
AlternateDataStreams: C:\Users\xxx\Downloads\ccsetup508.exe:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Cenová nabídka - Položkový rozpočet.pdf:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Chappie(0000255405).srt:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\com.rebeltwins.dragonhills-1.0.1-APK4Fun.com.apk:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\cs_office_professional_plus_2013_sp1_x64_volume_sep15.iso:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\cz_742_0_0010.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\cz_841_0_0001.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Denisa-Markova---Fanny-(Cundrcountryshow-1997-DVBS-Luco).rar:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Detection.msi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\dlls_x64.zip:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\documents-export-2015-09-11.zip:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\documents-export-2015-09-15.zip:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Doporuceni_pro_posunovaci_soutez_Zeleznicni_puzzle.pdf:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\DSC_0028.JPG:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\DSC_1303.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Dítě číslo 44 (2015) Cz dab..avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\E 1.doc:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\e7wu %25281%2529.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Firefox Setup Stub 40.0.3.exe:$CmdTcID
AlternateDataStreams: C:\Users\xxx\Downloads\Firefox Setup Stub 40.0.3.exe:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\fl (1) (1).xls:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\fl (1).xls:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Flash_Professional_8.exe:$CmdTcID
AlternateDataStreams: C:\Users\xxx\Downloads\Flash_Professional_8.exe:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\FoxitReader722.0929_enu_Setup.exe:$CmdTcID
AlternateDataStreams: C:\Users\xxx\Downloads\FoxitReader722.0929_enu_Setup.exe:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\FRST64 (1).exe:$CmdTcID
AlternateDataStreams: C:\Users\xxx\Downloads\FRST64 (1).exe:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\FRST64.exe:$CmdTcID
AlternateDataStreams: C:\Users\xxx\Downloads\FRST64.exe:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\FRSTLauncher.exe:$CmdTcID
AlternateDataStreams: C:\Users\xxx\Downloads\FRSTLauncher.exe:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\grunge_patterns_by_pickled_jester_inc-d52ibhr.zip:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Happy-birthday-card-in-retro-style.zip:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Harry-Potter-and-the-Deathly-Hallows-Part-1(0000173961).srt:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Harry-Potter-and-the-Deathly-Hallows-Part-2(0000226567).srt:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\HERE-2015.Q1-Czech-Republic.rar:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Hodejegerne(0000189709) (1).srt:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Hodejegerne(0000189709).srt:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\honza upravena.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Hořící keř - HDRip.1,2,3.díl.Drama.Životopisný o J.Palachovi.2013.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Hunger Games[Hunger Games](2012).cz.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\iGO.GPS.Navigation.PDA.2007.01.11.-Full.Magyarorszag.Austria.Romania.CzechRep.Slovakia.zip:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\image001.gif:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\images.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\img_hbr.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Jak_vest_zaznamy.doc:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Jurassic-World(0000256896) (1).srt:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Jurassic-World(0000256896).srt:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Kabát - Do Pekla Do Nebe 2015 by masterblaster4.rar:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Kamarád do deště.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Kapitán Phillips (CZ).avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\kms.rar:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Kobry a užovky 2015.rar:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\kobry a užovky 480p.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Kobry-a-uzovky-2015-MP4-720p-HD-3073MB-DOWNLOAD (2).txt:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\kohout.jpeg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\koreni-brno-cz_20150806T135120Z_SearchAnalytics.csv:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Kód Enigmy 2014 CZ Dabing.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\login.htm:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Lov (The Hunt, Jagten) (2012) CZ.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Lovci a obeti.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Lovci.hlav.2011.BDRip.x264.AAC.CZ.dabing.mkv:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Map-Eastern-Europe-(local-providers)-2014.12.rar:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Mapdownloader-2015.rar:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\MARKOVA-DENISA---Fanny-(CZ-1996).rar:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Microsoft-Office-2013-CZ-x64-+-aktivator.rar:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\model loko 2.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Mrtví a neklidní (Warm Bodies 2013) Cz.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\mudrjrakova.bmp:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\nabytek.docx:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\nadrazi.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\navesti II.ppt:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Nejvyšší nabídka - The Best Offer CZDAB.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\nicneroz.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Nightcrawler(0000249237).srt:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Něžné vlny (2013 Komedie).avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Obrázek (7).jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\oběd.zleva-p.Bališ, p.Prchal, p.Krutiš.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Ordinace v růžové zahradě 2 - 598. díl - Hra na lásku.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Ordinace v růžové zahradě 2 597. díl - Sestra Katastrofa.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\otazky vlečka.zip:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\p.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\p.rar:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\P1070357.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\perfectwine.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Pixely cz dab..avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\pohonná jednotka 4.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Ponurá-neděle---Szomorú-vasárnap---Gloomy-Sunday-2011,-CZ.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Posudekozdravotnizpusobilosti2011.doc:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Pribeh.Kmotra.2013.DVDRip.XviD.CZ.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Pro WEB1.doc:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Proklety-ostrov-2010-Shutter-Island-CZdub.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\prukazka obst.jpeg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\R-I-P-D-(0000226755).srt:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\railroad_track_pattern_brush_by_jerrydmills-d4tzwif.zip:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Relatos-salvajes(0000251096).srt:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\risingsun_brushes_by_javierzhx.zip:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\rivalové.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Rockfield.rar:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Run-All-Night(0000255576).srt:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\s4.rar:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\SamsungUniversalPrintDriver3XPS.exe:$CmdTcID
AlternateDataStreams: C:\Users\xxx\Downloads\SamsungUniversalPrintDriver3XPS.exe:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Scan2015-08-12T11-34-23-222_1.pdf:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Scan2015-08-12T12-12-14-719_1.pdf:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Scan2015-08-12T12-12-35-342_1.pdf:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Scan2015-08-12T15-09-07-689_1.pdf:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Scan2015-08-18T12-09-39-220_1.pdf:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\SEZNAM_SOUTEZICI_VYBEROVA_KOLA_CESKO_ZPIVA_2014.pdf:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Sileny Max Zbesila cesta cz dabing.(rek).avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Silverlight_x64.exe:$CmdTcID
AlternateDataStreams: C:\Users\xxx\Downloads\Silverlight_x64.exe:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\sitemap.xml:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Skyfall (Skyfall) (2012) CZ.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\slidil cz dabing 2014.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\SMUTNÁ LUCIE.p12:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\spol.foto.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\stilAl.1.rar:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Sygic-PC-maps-DOWNLOADER---[26.8.2015].rar:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Test ČD V15.doc:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Tomorrowland(0000256055).srt:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Trabantem-až-na-konec-světa---Trabant-vs.-South-America---dokument-2014,-CZ.mkv:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Train-Track-Photoshop-Brushes.zip:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Ulice---2891.-Díl.-12.10.2015.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\V8 I.doc:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\vino,-hrozno,-pohare-197376.jpg:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\VOD_Letak_info_201407-2.pdf:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\VV Mozolky 42,Brno (1).xlsx:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\VY_32_INOVACE_13_A_18_Základní_dopravní_dokumentace_v_ŽD.pptx:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\X16-32004 Office 2010 Czech 32bit.exe:$CmdTcID
AlternateDataStreams: C:\Users\xxx\Downloads\X16-32004 Office 2010 Czech 32bit.exe:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Zabijáci 2014.mkv:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Zabijáci 2014.srt:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Zmizelá-.Gone-Girl-(2014)-BRRip-CZ-Dab.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\Zmizení.avi:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\zoz.zip:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\ZVÍŘÁTKA.docx:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\[kat.cr]birdman.2014.1080p.brrip.x264.yify.torrent:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\[kat.cr]harry.potter.and.the.deathly.hallows.part.1.dvdrip.xvid.maxspeed.torrent:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\[kat.cr]harry.potter.and.the.deathly.hallows.part.2.2011.1080p.bluray.x264.aac.ozlem.torrent:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\[kat.cr]harry.potter.and.the.deathly.hallows.part.2.2011.1080p.brrip.nl.eng.gesproken.djt.torrent:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\[kat.cr]hodejegerne.2011.720p.bdrip.x264.ac3.sub.greyshadow (1).torrent:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\[kat.cr]hodejegerne.2011.720p.bdrip.x264.ac3.sub.greyshadow.torrent:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\[kat.cr]jurassic.world.2015.1080p.hdrip.korsub.x264.aac2.0.rarbg.torrent:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\[kat.cr]nightcrawler.2014.1080p.brrip.x264.yify.torrent:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\[kat.cr]r.i.p.d.2013.brrip.xvid.etrg.torrent:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\[kat.cr]tomorrowland.2015.hdts.x264.ac3.cpg.torrent:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\[kat.cr]triage.2009.720p.bluray.h264.aac.rarbg.torrent:$CmdZnID
AlternateDataStreams: C:\Users\xxx\Downloads\[kat.cr]wild.tales.2014.720p.bluray.x264.aac.deff.torrent:$CmdZnID

==================== Security Center ==================

AS: Comodo Defense+ (Enabled - Up to date) {493CE176-EB84-BC8D-9707-B3ACF7598648}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: COMODO Firewall (Disabled) {CA6681B7-87D1-B25B-86E8-21EB720D8B8E}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\xxx\Desktop" je 13844 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x0
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x0
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Re: Pomalé načítání stránek

Napsal: 26 říj 2015 17:12
od Rudy
Zdravím!
Jak je na tom váš oper. systém s legalitou?

Re: Pomalé načítání stránek

Napsal: 26 říj 2015 17:15
od nervosaur
myslím, že mám legální systém, pc jsem kupoval od kamaráda, který ho zakoupil v Thajsku :) Já ho neinstaloval.

Re: Pomalé načítání stránek

Napsal: 26 říj 2015 17:20
od Rudy
OK Uděláme ten to sken:

Stáhněte a spusťte OTL: http://oldtimer.geekstogo.com/OTL.exe . Spusťte, zaškrněte "Pro všechny uživatele", Kontrola na havěť LOP" a Kontrola na hvěť PURITY" a do dolního bílého okna zkopírujte:
CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
atapi.sys
autochk.exe
cdrom.sys
explorer.exe
hal.dll
scecli.dll
services.exe
svchost.exe
tcpip.sys
userinit.exe
winlogon.exe
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s

%PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5
%PROGRAMFILES%\Internet Explorer\iexplore.exe /md5
%PROGRAMFILES%\Opera\opera.exe /md5
%PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5

%SystemDrive%\PhysicalMBR.bin /md5

*crack* /s
*keygen* /s
*loader* /s
a klikněte na >Prohledat<. Dejte oba logy.

Re: Pomalé načítání stránek

Napsal: 26 říj 2015 17:49
od nervosaur
tady, předem díky.

Re: Pomalé načítání stránek

Napsal: 26 říj 2015 19:01
od Rudy
Znovu spustte OTL jako spravce
Do spodniho okna vlozte nasledujici text:
:OTL
SRV:64bit: - [2015.09.24 17:07:54 | 000,289,256 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\3.11.163\McCHSvc.exe -- (McComponentHostService)
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
FF - user.js - File not found
FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp: C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll File not found
FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf: C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll File not found
CHR - Extension: No name found = C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_1\
CHR - Extension: No name found = C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_1\
CHR - Extension: No name found = C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\14.1_0\
CHR - Extension: No name found = C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.8_0\
CHR - Extension: No name found = C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.40_0\
CHR - Extension: No name found = C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_1\
CHR - Extension: No name found = C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\0.5_0\
CHR - Extension: No name found = C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.42.1_0\
CHR - Extension: No name found = C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.2.0_0\
CHR - Extension: No name found = C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_1\
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-21-1680505892-3545855206-2625938771-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O18 - Protocol\Handler\ms-help - No CLSID value found
O32 - AutoRun File - [2009.06.10 22:42:20 | 000,000,024 | ---- | M] () - D:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2015.09.18 09:03:46 | 000,000,175 | R--- | M] () - F:\autorun.inf -- [ CDFS ]
O33 - MountPoints2\{d9d17d9d-ac2c-11e4-a400-2cd05ae4c20a}\Shell - "" = AutoRun
O33 - MountPoints2\{d9d17d9d-ac2c-11e4-a400-2cd05ae4c20a}\Shell\AutoRun\command - "" = F:\setup.exe -- [2015.09.18 09:03:46 | 000,214,616 | R--- | M] (Microsoft Corporation)
O33 - MountPoints2\{d9d17d9d-ac2c-11e4-a400-2cd05ae4c20a}\Shell\configure\command - "" = F:\setup.exe -- [2015.09.18 09:03:46 | 000,214,616 | R--- | M] (Microsoft Corporation)
O33 - MountPoints2\{d9d17d9d-ac2c-11e4-a400-2cd05ae4c20a}\Shell\install\command - "" = F:\setup.exe -- [2015.09.18 09:03:46 | 000,214,616 | R--- | M] (Microsoft Corporation)
O33 - MountPoints2\{db1c640c-0fff-11e5-8dac-2cd05ae4c20a}\Shell - "" = AutoRun
O33 - MountPoints2\{db1c640c-0fff-11e5-8dac-2cd05ae4c20a}\Shell\AutoRun\command - "" = G:\iLinker.exe
@Alternate Data Stream - 64 bytes -> C:\Windows\vsnpstd3.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\twain_32\SNPSTD3D\TwainUI.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\twain_32\SNPSTD3C\TwainUI.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\twain_32\SNPSTD3B\TwainUI.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\twain_32\SNPSTD3A\TwainUI.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\tsnpstd3.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWow64\vsnpstd3.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWow64\rsnpstd3.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWow64\nvwgf2um.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWow64\nvumdshim.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWow64\nvopencl.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWow64\nvoglv32.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWow64\nvoglshim32.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWow64\nvinit.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWow64\NvIFROpenGL.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWow64\NvIFR.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWow64\NvFBC.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWow64\nvEncodeAPI.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWow64\nvd3dum.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWow64\nvcuvid.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWow64\nvcuvenc.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWow64\nvcuda.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWow64\nvcompiler.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWow64\nvaudcap32v.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWow64\nvapi.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWow64\msjava.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_232_Plugin.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_18_0_0_232.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWow64\FlashPlayerApp.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWow64\drivers\snpstd3.sys:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\376[1].js:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\345[1].js:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\102[2].js:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\vsnpstd3.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\rsnpstd3.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\nvwgf2um.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\nvumdshim.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\nvopencl.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\nvoglv32.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\nvoglshim32.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\nvinit.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\NvIFROpenGL.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\NvIFR.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\NvFBC.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\nvEncodeAPI.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\nvd3dum.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\nvcuvid.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\nvcuvenc.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\nvcuda.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\nvcompiler.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\nvaudcap32v.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\nvapi.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\msjava.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\Macromed\Flash\FlashUtil32_18_0_0_232_Plugin.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_18_0_0_232.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\FlashPlayerApp.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\DriverStore\FileRepository\snpstd3.inf_amd64_neutral_9d54cd2a1593f8d8\x64\vsnpx64.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\DriverStore\FileRepository\snpstd3.inf_amd64_neutral_9d54cd2a1593f8d8\x64\snpstd3.sys:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\DriverStore\FileRepository\snpstd3.inf_amd64_neutral_9d54cd2a1593f8d8\x64\csnpstd3.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\DriverStore\FileRepository\snpstd3.inf_amd64_neutral_9d54cd2a1593f8d8\vsnpstd3.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\DriverStore\FileRepository\snpstd3.inf_amd64_neutral_9d54cd2a1593f8d8\vsnpstd3.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\DriverStore\FileRepository\snpstd3.inf_amd64_neutral_9d54cd2a1593f8d8\TwainUI.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\DriverStore\FileRepository\prnsendtoonenote15_win7.inf_amd64_neutral_4f143a45d8f86934\SendToOneNoteFilter.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\DriverStore\FileRepository\prnms006.inf_amd64_neutral_fa19f2c75f5825fe\SendToOneNoteFilter.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\DriverStore\FileRepository\nvvad.inf_amd64_neutral_8ae05dc2edc39589\nvvad64v.sys:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\DriverStore\FileRepository\nvvad.inf_amd64_neutral_8ae05dc2edc39589\nvaudcap64v.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\DriverStore\FileRepository\nvvad.inf_amd64_neutral_8ae05dc2edc39589\nvaudcap32v.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\DriverStore\FileRepository\nvvad.inf_amd64_neutral_3e0053fce727fd6e\nvvad64v.sys:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\DriverStore\FileRepository\nvvad.inf_amd64_neutral_3e0053fce727fd6e\nvaudcap64v.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\DriverStore\FileRepository\nvvad.inf_amd64_neutral_3e0053fce727fd6e\nvaudcap32v.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\DriverStore\FileRepository\nvswcfilter.inf_amd64_neutral_f020300087aff008\WdfCoInstaller0100964.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\DriverStore\FileRepository\nvswcfilter.inf_amd64_neutral_f020300087aff008\nvswcfilter64.sys:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\DriverStore\FileRepository\iusb3hub.inf_amd64_neutral_213579b2b2a8eefd\iusb3hub.sys:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\drivers\snpstd3.sys:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\376[1].js:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\345[1].js:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\102[2].js:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.Runtime.Internal\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.Runtime.Internal.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\csnpstd3.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Windows\amcap.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Users\xxx\Desktop\FRSTLauncher.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Users\xxx\Desktop\FRST64.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Program Files\CCleaner\CCleaner64.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Program Files (x86)\Steam\steam.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Program Files (x86)\Malwarebytes Anti-Malware\Chameleon\Windows\winlogon.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Program Files (x86)\Malwarebytes Anti-Malware\Chameleon\Windows\svchost.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> \Users\xxx\Downloads\wordpress-4.2.2-cs_CZ\wordpress\wp-includes\js\wp-emoji-loader.min.js:$CmdTcID
@Alternate Data Stream - 64 bytes -> \Users\xxx\Downloads\wordpress-4.2.2-cs_CZ\wordpress\wp-includes\js\wp-emoji-loader.js:$CmdTcID
@Alternate Data Stream - 64 bytes -> \Users\xxx\Downloads\wordpress-4.2.2-cs_CZ\wordpress\wp-includes\js\customize-loader.min.js:$CmdTcID
@Alternate Data Stream - 64 bytes -> \Users\xxx\Downloads\wordpress-4.2.2-cs_CZ\wordpress\wp-includes\js\customize-loader.js:$CmdTcID
@Alternate Data Stream - 64 bytes -> \Users\xxx\Downloads\viktor tata web\travelous (2)\travelous\functions\js\colabs-medialibrary-uploader.js:$CmdTcID
@Alternate Data Stream - 64 bytes -> \Users\xxx\Downloads\Sygic-PC-maps-DOWNLOADER---[26.8.2015]\Sygic PC maps DOWNLOADER - [26.8.2015].exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> \Users\xxx\Downloads\pressevent_v0.4\pressevent_v0.4\PressEvent\pressevent\js\uploader.js:$CmdTcID
@Alternate Data Stream - 64 bytes -> \Users\xxx\Downloads\Mapdownloader-2015\Mapdownloader 2015\sgcmapdownloader15.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> \Users\xxx\Downloads\appster_v1.0\appster_v1.0\Appster Responsive Business & Portfolio WP Theme\appster-package\appster\lib\theme-options\js\of-medialibrary-uploader.js:$CmdTcID
@Alternate Data Stream - 64 bytes -> \Users\xxx\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmaiofennmphjldldcpphcechfnnohja\2.2.0.17_0\js\scriptLoader.js:$CmdTcID
@Alternate Data Stream - 64 bytes -> \Users\xxx\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmaiofennmphjldldcpphcechfnnohja\2.2.0.17_0\js\configLoader.js:$CmdTcID
@Alternate Data Stream - 64 bytes -> \Program Files (x86)\Common Files\Adobe\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_XSDLoader2_4.4.3.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> \Program Files (x86)\Common Files\Adobe\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_XSDLoader_4.4.3.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> \Program Files (x86)\Common Files\Adobe\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_BinaryLoader_4.4.3.dll:$CmdTcID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\ZVÍŘÁTKA.docx:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\vykopoveprace-brno-680x97.png:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\unnamed.jpg:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\Rozvodový-diagram-čtyřdobého-benzinového-motoru-.jpg:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\pře.jpg:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\post.jpg:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\OZON-logotype1.jpg:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\Logo2015.jpg:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\FRSTLauncher.exe:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\FRST64.exe:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\bears-papabear.jpg:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\51727636.jpg:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\51727636 (3).jpg:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\51727636 (2).jpg:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\51727636 (1).jpg:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\25.jpg:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\20151003_171430.jpg:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\20151003_171224.jpg:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\20151003_171204.jpg:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\20151003_170601.jpg:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\20151003_170544.jpg:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\20150919_183510 (1).jpg:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\10063_2585603934892_1713508272_n.jpg:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\012_001_jpg_490eea9173.jpg:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\_vyr_40stop.png:$CmdZnID
@Alternate Data Stream - 26 bytes -> C:\Users\xxx\Desktop\_mg_2557.jpg:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\wordpress-4.2.2-cs_CZ\wordpress\wp-includes\template-loader.php:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\wordpress-4.2.2-cs_CZ\wordpress\wp-includes\script-loader.php:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\wordpress-4.2.2-cs_CZ\wordpress\wp-includes\js\wp-emoji-loader.min.js:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\wordpress-4.2.2-cs_CZ\wordpress\wp-includes\js\wp-emoji-loader.js:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\wordpress-4.2.2-cs_CZ\wordpress\wp-includes\js\tinymce\skins\lightgray\img\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\wordpress-4.2.2-cs_CZ\wordpress\wp-includes\js\customize-loader.min.js:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\wordpress-4.2.2-cs_CZ\wordpress\wp-includes\js\customize-loader.js:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\wordpress-4.2.2-cs_CZ\wordpress\wp-includes\images\uploader-icons-2x.png:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\wordpress-4.2.2-cs_CZ\wordpress\wp-includes\images\uploader-icons.png:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\willbridge-premium-wordpress-theme\willbridge\willbridge\theme\administrator\images\lightbox\loader_for_light.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\willbridge-premium-wordpress-theme\willbridge\willbridge\images\prettyPhoto\light_square\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\willbridge-premium-wordpress-theme\willbridge\willbridge\images\prettyPhoto\light_rounded\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\willbridge-premium-wordpress-theme\willbridge\willbridge\images\prettyPhoto\facebook\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\willbridge-premium-wordpress-theme\willbridge\willbridge\images\prettyPhoto\default\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\willbridge-premium-wordpress-theme\willbridge\willbridge\images\prettyPhoto\dark_square\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\willbridge-premium-wordpress-theme\willbridge\willbridge\images\prettyPhoto\dark_rounded\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\willbridge-premium-wordpress-theme\willbridge\willbridge\images\loader_white.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\willbridge-premium-wordpress-theme\willbridge\willbridge\images\loader_for_dark.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\willbridge-premium-wordpress-theme\willbridge\willbridge\images\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\viktor tata web\travelous (2)\travelous\images\pagination-loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\viktor tata web\travelous (2)\travelous\images\ajax-loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\viktor tata web\travelous (2)\travelous\functions\js\colabs-medialibrary-uploader.js:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\viktor tata web\travelous (2)\travelous\functions\admin-medialibrary-uploader.php:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\Sygic-PC-maps-DOWNLOADER---[26.8.2015]\Sygic PC maps DOWNLOADER - [26.8.2015].exe:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\Sygic-PC-maps-DOWNLOADER---[26.8.2015].rar:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\sterling_v2.0\sterling_v2.0\sterling_v2.0\Sterling-Wordpress-Theme-Package\Sterling\Sterling\images\prettyPhoto\default\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\sterling_v2.0\sterling_v2.0\sterling_v2.0\Sterling-Wordpress-Theme-Package\Sterling\Sterling\images\global\prettyPhoto\light_square\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\sterling_v2.0\sterling_v2.0\sterling_v2.0\Sterling-Wordpress-Theme-Package\Sterling\Sterling\framework\theme-specific\tinymce\tinymce.loader.php:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\steamify_v1.0\steamify_v1.0\Steamify-1.0\Theme\Steamify\images\prettyPhoto\light_square\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\steamify_v1.0\steamify_v1.0\Steamify-1.0\Theme\Steamify\images\prettyPhoto\light_rounded\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\steamify_v1.0\steamify_v1.0\Steamify-1.0\Theme\Steamify\images\prettyPhoto\facebook\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\steamify_v1.0\steamify_v1.0\Steamify-1.0\Theme\Steamify\images\prettyPhoto\default\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\steamify_v1.0\steamify_v1.0\Steamify-1.0\Theme\Steamify\images\prettyPhoto\dark_square\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\steamify_v1.0\steamify_v1.0\Steamify-1.0\Theme\Steamify\images\prettyPhoto\dark_rounded\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\pressevent_v0.4\pressevent_v0.4\PressEvent\pressevent\lib\core\CosmoUploader.php:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\pressevent_v0.4\pressevent_v0.4\PressEvent\pressevent\lib\assets\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\pressevent_v0.4\pressevent_v0.4\PressEvent\pressevent\js\uploader.js:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\pressevent_v0.4\pressevent_v0.4\PressEvent\pressevent\images\prettyPhoto\light_square\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\pressevent_v0.4\pressevent_v0.4\PressEvent\pressevent\images\prettyPhoto\light_rounded\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\pressevent_v0.4\pressevent_v0.4\PressEvent\pressevent\images\prettyPhoto\facebook\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\pressevent_v0.4\pressevent_v0.4\PressEvent\pressevent\images\prettyPhoto\default\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\pressevent_v0.4\pressevent_v0.4\PressEvent\pressevent\images\prettyPhoto\dark_square\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\pressevent_v0.4\pressevent_v0.4\PressEvent\pressevent\images\prettyPhoto\dark_rounded\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\pressevent_v0.4\pressevent_v0.4\PressEvent\pressevent\images\preloader.swf:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\Mapdownloader-2015\Mapdownloader 2015\sgcmapdownloader15.exe:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\Mapdownloader-2015\Mapdownloader 2015\sgcmapdownloader.cry:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\Mapdownloader-2015.rar:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\choices_v1.0\choices_v1.0\choices\choices\js\prettyPhoto\images\prettyPhoto\light_square\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\choices_v1.0\choices_v1.0\choices\choices\js\prettyPhoto\images\prettyPhoto\light_rounded\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\choices_v1.0\choices_v1.0\choices\choices\js\prettyPhoto\images\prettyPhoto\facebook\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\choices_v1.0\choices_v1.0\choices\choices\js\prettyPhoto\images\prettyPhoto\default\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\choices_v1.0\choices_v1.0\choices\choices\js\prettyPhoto\images\prettyPhoto\dark_square\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\choices_v1.0\choices_v1.0\choices\choices\js\prettyPhoto\images\prettyPhoto\dark_rounded\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\choices_v1.0\choices_v1.0\choices\choices\framework\php\avia_shortcodes\img\preloader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\choices_v1.0\choices_v1.0\choices\choices\framework\php\avia_shortcodes\img\globe-preloader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\flagship_v1.0.0\flagship_v1.0.0\themeforest-2388340-flagship-responsive-business-and-portfolio\documentation\assets\js\prettyPhoto\images\prettyPhoto\light_square\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\flagship_v1.0.0\flagship_v1.0.0\themeforest-2388340-flagship-responsive-business-and-portfolio\documentation\assets\js\prettyPhoto\images\prettyPhoto\light_rounded\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\flagship_v1.0.0\flagship_v1.0.0\themeforest-2388340-flagship-responsive-business-and-portfolio\documentation\assets\js\prettyPhoto\images\prettyPhoto\facebook\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\flagship_v1.0.0\flagship_v1.0.0\themeforest-2388340-flagship-responsive-business-and-portfolio\documentation\assets\js\prettyPhoto\images\prettyPhoto\dark_square\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\flagship_v1.0.0\flagship_v1.0.0\themeforest-2388340-flagship-responsive-business-and-portfolio\documentation\assets\js\prettyPhoto\images\prettyPhoto\dark_rounded\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\diverso_v1.1\diverso_v1.1\diverso_v1.1\DiVerso_WordPress_Theme\diverso\diverso\core\includes\images\prettyPhoto\light_square\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\diverso_v1.1\diverso_v1.1\diverso_v1.1\DiVerso_WordPress_Theme\diverso\diverso\core\includes\images\prettyPhoto\light_rounded\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\diverso_v1.1\diverso_v1.1\diverso_v1.1\DiVerso_WordPress_Theme\diverso\diverso\core\includes\images\prettyPhoto\facebook\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\diverso_v1.1\diverso_v1.1\diverso_v1.1\DiVerso_WordPress_Theme\diverso\diverso\core\includes\images\prettyPhoto\default\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\diverso_v1.1\diverso_v1.1\diverso_v1.1\DiVerso_WordPress_Theme\diverso\diverso\core\includes\images\prettyPhoto\dark_square\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\diverso_v1.1\diverso_v1.1\diverso_v1.1\DiVerso_WordPress_Theme\diverso\diverso\core\includes\images\prettyPhoto\dark_rounded\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\cleanwide_v1.2\cleanwide_v1.2\cleanwide\plugins\simple-tags\inc\images\ajax-loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\cleanwide_v1.2\cleanwide_v1.2\cleanwide\plugins\contact-form-7\images\ajax-loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\breath_v1.6\breath_v1.6\breath_v1.6\breath\js\prettyphoto\images\prettyPhoto\light_square\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\breath_v1.6\breath_v1.6\breath_v1.6\breath\js\prettyphoto\images\prettyPhoto\light_rounded\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\breath_v1.6\breath_v1.6\breath_v1.6\breath\js\prettyphoto\images\prettyPhoto\facebook\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\breath_v1.6\breath_v1.6\breath_v1.6\breath\js\prettyphoto\images\prettyPhoto\dark_square\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\breath_v1.6\breath_v1.6\breath_v1.6\breath\js\prettyphoto\images\prettyPhoto\dark_rounded\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\appster_v1.0\appster_v1.0\Appster Responsive Business & Portfolio WP Theme\appster-package\appster\lib\theme-options\options-medialibrary-uploader.php:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\appster_v1.0\appster_v1.0\Appster Responsive Business & Portfolio WP Theme\appster-package\appster\lib\theme-options\js\of-medialibrary-uploader.js:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\appster_v1.0\appster_v1.0\Appster Responsive Business & Portfolio WP Theme\appster-package\appster\images\light-slider-loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\appster_v1.0\appster_v1.0\Appster Responsive Business & Portfolio WP Theme\appster-package\appster\images\light-content-loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\appster_v1.0\appster_v1.0\Appster Responsive Business & Portfolio WP Theme\appster-package\appster\images\dark-slider-loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\appster_v1.0\appster_v1.0\Appster Responsive Business & Portfolio WP Theme\appster-package\appster\images\dark-conent-loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\appster_v1.0\appster_v1.0\Appster Responsive Business & Portfolio WP Theme\appster-package\appster\__MACOSX\lib\theme-options\._options-medialibrary-uploader.php:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\appster_v1.0\appster_v1.0\Appster Responsive Business & Portfolio WP Theme\appster-package\appster\__MACOSX\images\._light-slider-loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\appster_v1.0\appster_v1.0\Appster Responsive Business & Portfolio WP Theme\appster-package\appster\__MACOSX\images\._light-content-loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\appster_v1.0\appster_v1.0\Appster Responsive Business & Portfolio WP Theme\appster-package\appster\__MACOSX\images\._dark-slider-loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\appster_v1.0\appster_v1.0\Appster Responsive Business & Portfolio WP Theme\appster-package\appster\__MACOSX\images\._dark-conent-loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\alpha_v1.3\alpha_v1.3\alpha-responsive-business-wordpress-theme\Upload\Alpha\images\prettyPhoto\light_square\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\alpha_v1.3\alpha_v1.3\alpha-responsive-business-wordpress-theme\Upload\Alpha\images\prettyPhoto\light_rounded\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\alpha_v1.3\alpha_v1.3\alpha-responsive-business-wordpress-theme\Upload\Alpha\images\prettyPhoto\facebook\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\alpha_v1.3\alpha_v1.3\alpha-responsive-business-wordpress-theme\Upload\Alpha\images\prettyPhoto\default\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\alpha_v1.3\alpha_v1.3\alpha-responsive-business-wordpress-theme\Upload\Alpha\images\prettyPhoto\dark_square\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\alpha_v1.3\alpha_v1.3\alpha-responsive-business-wordpress-theme\Upload\Alpha\images\prettyPhoto\dark_rounded\loader.gif:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\alpha_v1.3\alpha_v1.3\alpha-responsive-business-wordpress-theme\Upload\Alpha\framework\admin\functions\functions.mediauploader.php:$CmdZnID
@Alternate Data Stream - 26 bytes -> \Users\xxx\Downloads\alpha_v1.3\alpha_v1.3\alpha-responsive-business-wordpress-theme\Upload\Alpha\framework\admin\assets\js\of-medialibrary-uploader.js:$CmdZnID

:files
C:\Program Files\McAfee Security Scan
C:\Windows\SysNative\drivers\rvuxpgv.sys
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\TTOXLQ.job
C:\Windows\SysWow64\029B560A371F4E00AB32838EBC01B9E7
C:\ProgramData\DP45977C.lfl
C:\Users\xxx\AppData\Roaming\TTOXLQ
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[RESETHOSTS]
[Purity]
[CreateRestorePoint]
Kliknete na Opravit a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu se objevi novy log, ten sem dejte.

Re: Pomalé načítání stránek

Napsal: 26 říj 2015 19:16
od nervosaur
uděláno. Každopádně už to jede jak dříve, nechápu, jste fakt dobrej... Děkuji.. Mohu se zeptat v čem byl problém ?

Re: Pomalé načítání stránek

Napsal: 26 říj 2015 19:53
od Rudy
Vše smazáno. Hlavně Alternate data streams, pár AdWarů a zbytečnosti. Rádo se stalo! :)

Re: Pomalé načítání stránek

Napsal: 26 říj 2015 21:09
od nervosaur
Tak ještě jednou díky, byl jsem z toho už neštastnej, projížděl jsem to AVG, mbam atd.. Přitom mám comodo, tak nevím jak se to sem dostalo.

Re: Pomalé načítání stránek

Napsal: 26 říj 2015 21:31
od Rudy
Stane se. Doporučuji na internetu nechodit do jeho "temných zákoutí" a rozmýšlet na co kliknout a na co ne. Nemáte zač! :)