Stránka 1 z 3

zataz RAM a rvzr-a.akamaihd.net a ine

Napsal: 18 lis 2015 21:36
od angel0140
Ahojte .. nejak som stiahol do pc pup-gen ale som ho odstranil pomocou Malwarebytes anti-malware ... ale nejak problem stale trva .. antivirak nic nenasiel ako ani Malware.. a dakedy ked som na fb ci niekde inde v prehladaci vidim ako nieco nacitava a koncove je rvzr-a.akamaihd.net a tak isto aj hit.gemius.pl ... a ine

a neviem ale poslednu dobu mi nieco zabera dost ramky ... pri nic nerobeni mi RAM zabera az 1,7gb ramky
antivirak mam AVAST free
takze posielam log :

Kód: Vybrat vše

Shortcut Cleaner 1.3.8 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2015 BleepingComputer.com
More Information about Shortcut Cleaner can be found at this link:
 http://www.bleepingcomputer.com/download/shortcut-cleaner/

Windows Version: Windows 7 Ultimate Service Pack 1
Program started at: 11/18/2015 09:29:58 PM.

Scanning for registry hijacks:

 * No issues found in the Registry.

Searching for Hijacked Shortcuts:

Searching C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\

Searching C:\ProgramData\Microsoft\Windows\Start Menu\

Searching C:\Users\Michal\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\

Searching C:\Users\Public\Desktop\

Searching C:\Users\Michal\Desktop\

Searching C:\Users\Public\Desktop\


0 bad shortcuts found.

Program finished at: 11/18/2015 09:30:02 PM
Execution time: 0 hours(s), 0 minute(s), and 4 seconds(s)

Kód: Vybrat vše

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.0 (11.12.2015)
Operating System: Windows 7 Ultimate x64 
Ran by Michal (Administrator) on st 18. 11. 2015 at 21:30:46,52
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 0 




Registry: 0 





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on st 18. 11. 2015 at 21:34:15,99
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Kód: Vybrat vše

# AdwCleaner v5.021 - Logfile created 18/11/2015 at 21:06:47
# Updated 14/11/2015 by Xplode
# Database : 2015-11-17.2 [Server]
# Operating system : Windows 7 Ultimate Service Pack 1 (x64)
# Username : Michal - MICHAL-PC
# Running from : C:\Users\Michal\Downloads\AdwCleaner.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****

[-] Folder Deleted : C:\Users\Michal\AppData\LocalLow\HPAppData

***** [ Files ] *****


***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****

[-] Key Deleted : HKCU\Software\5cd8f17f4086744065eb0992a09e05a2
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0142D788-C4FC-4ED8-2222-D654E27AF7F8}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A1843388-EFC2-49C9-2222-FC0C403B0EBB}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A1D87888-DEAA-4971-2222-5D5046F2B3BB}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A1011E88-B997-11CF-2222-0080C7B2D6BB}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{0142D788-C4FC-4ED8-2222-D654E27AF7F8}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{A1843388-EFC2-49C9-2222-FC0C403B0EBB}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{A1D87888-DEAA-4971-2222-5D5046F2B3BB}
[-] Key Deleted : HKCU\Software\pc optimizer pro
[-] Key Deleted : HKCU\Software\systweak
[-] Key Deleted : HKCU\Software\DownLite
[-] Key Deleted : HKLM\SOFTWARE\systweak

***** [ Web browsers ] *****

[-] [C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : bopakagnckmlgajfccecajhnimjiiedh

*************************

:: "Tracing" keys removed
:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [1845 bytes] ##########

Re: zataz RAM a rvzr-a.akamaihd.net a ine

Napsal: 18 lis 2015 22:05
od angel0140
pridavam aj logy

Kód: Vybrat vše

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:18-11-2015
Ran by Michal (administrator) on MICHAL-PC (18-11-2015 22:00:23)
Running from C:\Users\Michal\Downloads
Loaded Profiles: Michal (Available Profiles: Michal & Dayz & Dayz2 & DayZ_3 & DayZ 5 & Dayz medic & Dayz Elite UN & DayZ4 & Dayzx1)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(MSI) C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe
(Nero AG) C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe
(Nero AG) C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(Prolific Technology Inc.) C:\Windows\SysWOW64\IoctlSvc.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler64.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\setup\instup.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7191768 2013-06-27] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2655520 2015-10-12] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [630912 2012-05-04] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [RUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\rusb3mon.exe [115048 2011-09-20] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [Super-Charger] => C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe [506864 2013-03-08] (MSI)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [34672 2008-06-12] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [NBKeyScan] => C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2221352 2008-06-08] (Nero AG)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [6133520 2015-11-06] (AVAST Software)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54576 2009-11-18] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-4126817388-1271623381-3695661034-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
HKU\S-1-5-21-4126817388-1271623381-3695661034-1000\...\Run: [RGSC] => E:\gta4\Rockstar Games Social Club\RGSCLauncher.exe /silent
HKU\S-1-5-21-4126817388-1271623381-3695661034-1000\...\Run: [SpeedItupFree] => "C:\Program Files (x86)\SpeedItup Free\speeditupfree.exe"
HKU\S-1-5-21-4126817388-1271623381-3695661034-1000\...\MountPoints2: {a3f3bef6-6993-11e3-8e91-d43d7ef50b37} - G:\Setup.exe
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2014-11-08] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-10-06] (AVAST Software)
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Michal\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Michal\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Michal\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Michal\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Michal\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Michal\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Michal\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll [2013-09-11] (Dropbox, Inc.)
Startup: C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Avast Free Antivirus 2015.exe [2015-05-14] ()

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: 127.0.0.1 validation.sls.microsoft.com
Tcpip\Parameters: [DhcpNameServer] 92.245.2.245 92.245.2.162
Tcpip\..\Interfaces\{254B106A-048E-4BCA-BBF8-52122541287E}: [DhcpNameServer] 92.245.2.245 92.245.2.162

Internet Explorer:
==================
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-09-15] (AVAST Software)
BHO-x32: HP Print Enhancer -> {0347C33E-8762-4905-BF09-768834316C61} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-10-22] (Hewlett-Packard Co.)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11] (Adobe Systems Incorporated)
BHO-x32: ArcPluginIEBHO Class -> {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} -> No File
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-09-15] (AVAST Software)
BHO-x32: HP Smart BHO Class -> {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-10-22] (Hewlett-Packard Co.)
Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -  No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} -  No File
Toolbar: HKU\S-1-5-21-4126817388-1271623381-3695661034-1000 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} -  No File
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxps://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)

FireFox:
========
FF ProfilePath: C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\98l3lxvy.default
FF Homepage: hxxps://www.google.sk/
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_245.dll [2015-11-10] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-10] ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-09-13] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-09-13] (NVIDIA Corporation)
FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin -> E:\Neverwinter\Arc\Plugins\npArcPluginFF.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-15] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-15] (Google Inc.)
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-10-06] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-10-06] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2014-08-18] [not signed]
FF HKU\S-1-5-21-4126817388-1271623381-3695661034-1000\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2014-08-18] [not signed]

Chrome: 
=======
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-23]
CHR Extension: (Avast Online Security) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-11-12]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-10-12]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-03-16]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2012-05-04] (Advanced Micro Devices, Inc.) [File not signed]
S2 appdrvrem01; C:\Windows\System32\appdrvrem01.exe [551896 2015-10-09] (Protection Technology)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600 2015-10-06] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4048280 2015-10-06] (Avast Software)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1156384 2015-10-12] (NVIDIA Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-03-17] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-03-17] (Malwarebytes Corporation)
R2 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [161264 2013-02-20] (MSI)
R2 Nero BackItUp Scheduler 3; C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe [877864 2008-06-08] (Nero AG)
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2009-05-14] (Hewlett-Packard) [File not signed]
S3 NMIndexingService; C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe [537896 2008-06-24] (Nero AG)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1873696 2015-10-12] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5568288 2015-10-12] (NVIDIA Corporation)
R2 PLFlash DeviceIoControl Service; C:\Windows\SysWOW64\IoctlSvc.exe [81920 2006-12-19] (Prolific Technology Inc.) [File not signed]
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2009-05-14] (Hewlett-Packard) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
S3 ArcService; E:\Neverwinter\Arc\ArcService.exe [X]

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AODDriver4.1; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [55936 2011-11-13] (Advanced Micro Devices)
R1 appdrv01; C:\Windows\System32\Drivers\appdrv01.sys [2715824 2015-10-09] (Protection Technology)
R0 asahci64; C:\Windows\System32\DRIVERS\asahci64.sys [49048 2012-07-18] (Asmedia Technology)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-10-06] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [90968 2015-10-06] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-10-06] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-10-06] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1059656 2015-11-06] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [449992 2015-11-06] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [153744 2015-10-06] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [274808 2015-10-06] (AVAST Software)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-12-20] (DT Soft Ltd)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [136408 2015-11-18] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation)
R0 ngvss; C:\Windows\System32\Drivers\ngvss.sys [132656 2015-10-06] (AVAST Software)
R3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [13368 2012-10-25] (MSI)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20768 2015-10-12] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation)
R3 rusb3hub; C:\Windows\System32\DRIVERS\rusb3hub.sys [114568 2012-08-27] (Renesas Electronics Corporation)
R3 rusb3xhc; C:\Windows\System32\DRIVERS\rusb3xhc.sys [230280 2012-08-27] (Renesas Electronics Corporation)
S1 SSHDRV76; C:\Windows\SysWOW64\drivers\SSHDRV76.sys [53760 2015-05-24] () [File not signed]
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [274336 2015-10-06] (Avast Software)
S3 NTIOLib_1_0_C; \??\F:\NTIOLib_X64.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-18 22:00 - 2015-11-18 22:00 - 00017279 _____ C:\Users\Michal\Downloads\FRST.txt
2015-11-18 22:00 - 2015-11-18 22:00 - 00000000 ____D C:\FRST
2015-11-18 21:57 - 2015-11-18 21:57 - 02008576 _____ (Farbar) C:\Users\Michal\Downloads\FRST64.exe
2015-11-18 21:04 - 2015-11-18 21:06 - 00000000 ____D C:\AdwCleaner
2015-11-18 21:01 - 2015-11-18 21:34 - 00000561 _____ C:\Users\Michal\Desktop\JRT.txt
2015-11-18 20:58 - 2015-11-18 21:30 - 00001872 _____ C:\Users\Michal\Desktop\sc-cleaner.txt
2015-11-18 20:57 - 2015-11-18 20:57 - 01732096 _____ C:\Users\Michal\Downloads\AdwCleaner.exe
2015-11-18 20:57 - 2015-11-18 20:57 - 01599080 _____ (Malwarebytes) C:\Users\Michal\Downloads\JRT.exe
2015-11-18 20:56 - 2015-11-18 20:56 - 00463688 _____ (Bleeping Computer, LLC) C:\Users\Michal\Downloads\sc-cleaner.exe
2015-11-18 20:29 - 2015-11-18 20:29 - 00000000 _____ C:\Users\Michal\Desktop\Nový textový dokument (3).txt
2015-11-18 09:06 - 2015-11-18 09:06 - 00000000 ____D C:\Users\Dayz Elite UN\Documents\Assassin's Creed IV Black Flag
2015-11-18 01:16 - 2015-11-18 01:28 - 00280432 _____ C:\Users\Michal\Downloads\Imagine-Dragons---Radioactive(1).mp3.sfk
2015-11-18 00:57 - 2015-11-18 01:04 - 00194208 _____ C:\Users\Michal\Downloads\Assassins Creed IV_ Black Flag - Premiere Trailer - HD.mp4.sfk
2015-11-18 00:49 - 2015-11-18 00:52 - 32324963 _____ C:\Users\Michal\Downloads\Assassins Creed IV_ Black Flag - Premiere Trailer - HD.mp4
2015-11-18 00:32 - 2015-11-18 00:37 - 32644706 _____ C:\Users\Michal\Downloads\Assassins Creed IV_ Black Flag - Premiere Trailer - HD.avi
2015-11-18 00:09 - 2015-11-18 21:39 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-11-18 00:07 - 2015-11-18 00:08 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-11-18 00:07 - 2015-11-18 00:07 - 00001106 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-11-18 00:07 - 2015-11-18 00:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-11-18 00:07 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-11-18 00:07 - 2015-10-05 09:50 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-11-18 00:07 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2015-11-18 00:06 - 2015-11-18 00:08 - 00000000 ____D C:\Users\Michal\Desktop\jhgh
2015-11-17 23:59 - 2015-11-18 00:02 - 21540440 _____ (Malwarebytes Corporation ) C:\Users\Michal\Downloads\mbam-setup-2.1.4.1018.exe
2015-11-17 23:45 - 2015-11-17 23:47 - 22908888 _____ (Malwarebytes ) C:\Users\Michal\Downloads\mbam-setup-2.2.0.1024.exe
2015-11-17 19:45 - 2015-11-17 23:15 - 00000179 _____ C:\Users\Michal\Desktop\fury.txt
2015-11-17 19:14 - 2015-11-17 19:24 - 51573418 _____ C:\Users\Michal\Downloads\Magical Template.rar
2015-11-16 09:04 - 2015-11-16 09:04 - 00078720 _____ C:\Users\DayZ4\AppData\Local\GDIPFONTCACHEV1.DAT
2015-11-14 23:26 - 2015-11-14 23:26 - 00000756 _____ C:\Users\Michal\AppData\Local\recently-used.xbel
2015-11-14 13:43 - 2015-11-14 14:40 - 00000000 ____D C:\Users\DayZ4\AppData\Roaming\vlc
2015-11-14 02:35 - 2015-11-14 02:35 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Sony Creative Software Inc
2015-11-14 00:21 - 2015-11-14 00:21 - 00200186 _____ C:\Users\Michal\Documents\Track 9 - 2.wav
2015-11-14 00:21 - 2015-11-14 00:21 - 00038824 _____ C:\Users\Michal\Documents\Track 9 - 1.sfk
2015-11-14 00:21 - 2015-11-14 00:21 - 00000840 _____ C:\Users\Michal\Documents\Track 9 - 2.sfk
2015-11-14 00:20 - 2015-11-14 00:21 - 09924670 _____ C:\Users\Michal\Documents\Track 9 - 1.wav
2015-11-13 19:37 - 2015-11-13 19:37 - 00000000 ____D C:\Users\Michal\AppData\LocalLow\Google
2015-11-13 19:36 - 2015-11-13 19:36 - 00002156 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth.lnk
2015-11-13 19:33 - 2015-11-13 19:33 - 08232048 _____ C:\Users\Michal\Downloads\GoogleEarthSetup.exe
2015-11-13 18:21 - 2015-11-13 18:25 - 00131144 _____ C:\Users\Michal\Downloads\Joachim Heinrich • Lost in you (Cinematic Music _ Piano) [HD].mp3.sfk
2015-11-13 16:03 - 2015-11-13 16:05 - 18371160 _____ C:\Users\Michal\Downloads\Fallen Hero - DayZ Cinematic Intro #1 (Free to use).avi
2015-11-13 15:31 - 2015-11-13 15:31 - 00048886 _____ C:\Users\Michal\Downloads\roger-white_trajanus-roman.zip
2015-11-13 15:25 - 2015-11-13 15:25 - 00405403 _____ C:\Users\Michal\Downloads\TrajanPro-Regular.ttf
2015-11-13 14:02 - 2015-11-13 14:02 - 00001381 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2015-11-13 13:57 - 2015-11-13 14:00 - 37668288 _____ (NVIDIA Corporation) C:\Users\Michal\Downloads\GeForce_Experience_v2.5.15.54.exe
2015-11-13 13:26 - 2015-11-13 13:32 - 28757783 _____ C:\Users\Michal\Documents\Intro dayz unlimited.wmv
2015-11-13 13:19 - 2015-11-13 13:19 - 00000664 _____ C:\Users\Michal\Documents\intro dayz.mpg.sfl
2015-11-13 13:13 - 2015-11-13 13:19 - 22990848 _____ C:\Users\Michal\Documents\intro dayz.mpg
2015-11-13 11:59 - 2015-11-13 11:59 - 00035326 _____ C:\Users\Michal\Desktop\redirect.htm
2015-11-13 11:29 - 2015-11-13 11:29 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Publish Providers
2015-11-13 11:19 - 2015-11-13 11:24 - 00000000 ____D C:\Users\Michal\AppData\Local\Sony
2015-11-13 11:19 - 2015-11-13 11:19 - 00000556 _____ C:\Users\Public\Desktop\Vegas Pro 13.0 (64-bit).lnk
2015-11-13 11:19 - 2015-11-13 11:19 - 00000000 ____D C:\ProgramData\Sony
2015-11-13 11:19 - 2015-11-13 11:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-11-13 11:19 - 2015-11-13 11:19 - 00000000 ____D C:\Program Files (x86)\Sony
2015-11-13 11:17 - 2015-11-15 00:20 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Sony
2015-11-13 02:04 - 2015-11-13 10:27 - 486246603 _____ C:\Users\Michal\Downloads\Sony-Vegas-Pro-13.0-Build-453-(64-bit)-+-Crack-[Kedar_CZ].rar
2015-11-13 00:40 - 2015-11-13 00:40 - 00001126 _____ C:\Users\Michal\Desktop\EVEREST Ultimate Edition.lnk
2015-11-13 00:40 - 2015-11-13 00:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavalys
2015-11-13 00:40 - 2015-11-13 00:40 - 00000000 ____D C:\Program Files (x86)\Lavalys
2015-11-13 00:39 - 2015-11-13 00:39 - 10255080 _____ (Lavalys, Inc. ) C:\Users\Michal\Downloads\everestultimate550.exe
2015-11-13 00:33 - 2015-11-13 00:33 - 00000168 _____ C:\Users\Michal\Desktop\hwmonitorw.ini
2015-11-12 20:45 - 2015-11-12 20:45 - 00000000 _____ C:\Users\Michal\Desktop\Nový textový dokument (2).txt
2015-11-09 19:54 - 2015-11-09 19:54 - 00000000 ____D C:\Users\DayZ4\AppData\Roaming\Macromedia
2015-11-09 19:54 - 2015-11-09 19:54 - 00000000 ____D C:\Users\DayZ4\AppData\Local\Macromedia
2015-11-09 14:29 - 2015-11-09 19:58 - 00000000 ____D C:\Users\DayZ4\AppData\Local\Mozilla
2015-11-09 14:29 - 2015-11-09 14:29 - 00000000 ____D C:\Users\DayZ4\AppData\Roaming\Mozilla
2015-11-08 21:21 - 2015-11-08 21:34 - 00000000 ____D C:\Users\Michal\Desktop\foto
2015-11-07 16:55 - 2015-11-07 16:56 - 00000000 ____D C:\Users\Michal\Desktop\gabika
2015-11-06 17:13 - 2015-11-07 01:22 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-11-04 01:04 - 2015-11-04 01:04 - 00000000 ____D C:\Users\Dayz2\AppData\Roaming\WinRAR
2015-11-03 09:08 - 2015-11-18 21:07 - 00003033 _____ C:\Windows\setupact.log
2015-11-03 09:08 - 2015-11-18 08:34 - 00003440 _____ C:\Windows\PFRO.log
2015-11-03 09:08 - 2015-11-03 09:08 - 00000000 _____ C:\Windows\setuperr.log
2015-11-02 17:46 - 2015-11-03 20:46 - 00000000 ____D C:\ProgramData\IObit
2015-11-02 17:46 - 2015-11-02 17:46 - 00000000 ____D C:\Users\Michal\AppData\Roaming\IObit
2015-11-02 17:46 - 2015-11-02 17:46 - 00000000 ____D C:\Users\Michal\AppData\LocalLow\IObit
2015-11-02 17:46 - 2015-11-02 17:46 - 00000000 ____D C:\Program Files (x86)\IObit
2015-11-02 17:46 - 2015-01-10 15:32 - 00128288 _____ (IObit) C:\Windows\system32\IObitSmartDefragExtension.dll
2015-11-02 17:46 - 2014-06-04 15:17 - 00034080 _____ (IObit) C:\Windows\system32\SmartDefragBootTime.exe
2015-11-02 17:45 - 2015-11-02 17:45 - 06994944 _____ (IObit ) C:\Users\Michal\Downloads\smart-defrag4-setup.exe
2015-11-02 17:45 - 2015-11-02 17:45 - 00000000 ____D C:\ProgramData\Ashampoo
2015-11-02 17:44 - 2015-11-02 17:45 - 09713280 _____ (Ashampoo GmbH & Co. KG ) C:\Users\Michal\Downloads\ashampoo_registry_cleaner_sm.exe
2015-11-02 17:42 - 2015-11-02 17:42 - 00000000 ____D C:\Users\Michal\AppData\Local\Downloaded Installations
2015-11-02 17:40 - 2015-11-02 17:41 - 18006560 _____ (O&O Software GmbH ) C:\Users\Michal\Downloads\OODefragFree32Enu.exe
2015-11-01 20:20 - 2015-11-01 20:20 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-10-28 12:09 - 2015-10-28 12:09 - 00000000 ____D C:\Users\Michal\Documents\Assassin's Creed IV Black Flag
2015-10-28 12:09 - 2015-10-28 12:09 - 00000000 ____D C:\ProgramData\Steam
2015-10-28 12:09 - 2015-10-28 12:09 - 00000000 ____D C:\ProgramData\Orbit
2015-10-28 12:08 - 2015-10-28 12:08 - 00000000 ____D C:\ProgramData\Package Cache
2015-10-28 12:07 - 2015-10-28 12:08 - 00000000 ____D C:\Windows\SysWOW64\directx
2015-10-28 12:07 - 2015-10-28 12:07 - 00000767 _____ C:\Users\Michal\Desktop\Assassins Creed IV Black Flag.lnk
2015-10-28 12:07 - 2015-10-28 12:07 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Black_Box
2015-10-21 20:17 - 2015-10-21 20:17 - 00000000 ____D C:\Users\Michal\AppData\Roaming\BitSpirit

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-18 21:17 - 2009-07-14 16:18 - 00660758 _____ C:\Windows\system32\perfh005.dat
2015-11-18 21:17 - 2009-07-14 16:18 - 00141408 _____ C:\Windows\system32\perfc005.dat
2015-11-18 21:17 - 2009-07-14 06:13 - 01584554 _____ C:\Windows\system32\PerfStringBackup.INI
2015-11-18 21:16 - 2014-02-21 12:38 - 00000936 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-11-18 21:15 - 2009-07-14 05:45 - 00020480 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-11-18 21:15 - 2009-07-14 05:45 - 00020480 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-11-18 21:13 - 2014-02-21 12:38 - 00000932 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-11-18 21:13 - 2013-12-21 11:12 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-11-18 21:11 - 2013-12-20 12:40 - 01664041 _____ C:\Windows\WindowsUpdate.log
2015-11-18 21:07 - 2013-12-20 15:44 - 00000000 ____D C:\ProgramData\NVIDIA
2015-11-18 21:07 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-11-18 20:39 - 2014-02-03 20:24 - 00000000 ____D C:\Users\Michal\AppData\Roaming\TS3Client
2015-11-18 20:24 - 2013-12-20 16:59 - 00007627 _____ C:\Users\Michal\AppData\Local\Resmon.ResmonCfg
2015-11-18 20:05 - 2015-09-27 08:44 - 00000000 ____D C:\Users\Dayz Elite UN\AppData\Roaming\TS3Client
2015-11-18 20:05 - 2013-10-21 22:00 - 00000000 ____D C:\NVIDIA
2015-11-18 15:30 - 2014-01-12 10:01 - 00000000 ____D C:\Users\Michal\AppData\Local\CrashDumps
2015-11-18 08:34 - 2009-07-14 05:45 - 00336992 _____ C:\Windows\system32\FNTCACHE.DAT
2015-11-17 23:48 - 2014-08-05 09:08 - 00000000 ____D C:\Users\Michal\AppData\Roaming\inkscape
2015-11-17 23:47 - 2015-10-04 11:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SomePDF
2015-11-17 23:47 - 2015-10-04 11:34 - 00000000 ____D C:\Program Files (x86)\SomePDF
2015-11-17 21:42 - 2013-12-20 16:22 - 00079112 _____ C:\Users\Michal\AppData\Local\GDIPFONTCACHEV1.DAT
2015-11-17 17:54 - 2015-09-27 14:40 - 00000000 ____D C:\Users\DayZ4\AppData\Roaming\TS3Client
2015-11-17 13:05 - 2015-08-02 17:28 - 00000000 ____D C:\Users\Dayz2\AppData\Roaming\TS3Client
2015-11-16 10:21 - 2015-09-28 07:41 - 00000000 ____D C:\Users\DayZ4\AppData\Local\CrashDumps
2015-11-15 14:46 - 2015-09-03 13:34 - 00000000 ____D C:\Users\Dayz2\AppData\Local\NVIDIA Corporation
2015-11-15 14:46 - 2015-09-03 13:34 - 00000000 ____D C:\Users\Dayz2\AppData\Local\NVIDIA
2015-11-14 16:45 - 2015-10-07 14:07 - 00000000 ____D C:\Users\Michal\Documents\fine real
2015-11-14 13:07 - 2015-09-27 14:38 - 00000000 ____D C:\Users\DayZ4\AppData\Local\NVIDIA Corporation
2015-11-14 13:02 - 2015-09-27 14:39 - 00000679 _____ C:\Users\DayZ4\Desktop\DayZ_Launcher_x64 – zástupce.lnk
2015-11-14 12:59 - 2015-09-27 14:38 - 00000000 ____D C:\Users\DayZ4\AppData\Local\NVIDIA
2015-11-13 19:36 - 2014-02-21 12:38 - 00000000 ____D C:\Program Files (x86)\Google
2015-11-13 14:13 - 2015-09-03 12:36 - 00000000 ____D C:\Users\Michal\AppData\Local\NVIDIA Corporation
2015-11-13 13:34 - 2014-08-18 17:39 - 01037312 ___SH C:\Users\Michal\Documents\Thumbs.db
2015-11-13 10:40 - 2015-04-01 23:04 - 00000000 ____D C:\Users\Michal\Documents\mp3 nove auto
2015-11-10 22:13 - 2013-12-21 11:12 - 00780488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-11-10 22:13 - 2013-12-21 11:12 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-11-10 22:13 - 2013-12-21 11:12 - 00003852 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-11-09 14:29 - 2014-02-21 12:41 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2015-11-08 21:30 - 2015-07-16 05:17 - 00000000 ____D C:\Users\Michal\Desktop\tlač
2015-11-07 01:22 - 2013-12-20 16:13 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-11-06 16:21 - 2014-02-21 12:38 - 01059656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2015-11-06 16:21 - 2014-02-21 12:38 - 00449992 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2015-11-05 21:55 - 2015-10-07 07:21 - 00000000 ____D C:\Users\Dayz2\AppData\Local\CrashDumps
2015-11-03 20:41 - 2014-07-27 13:41 - 00000000 ____D C:\Program Files (x86)\CPU Thermometer
2015-11-03 20:39 - 2015-05-30 21:30 - 00000000 ____D C:\Users\Michal\AppData\Local\Black_Tree_Gaming
2015-11-03 20:28 - 2009-07-14 06:08 - 00032528 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-11-02 18:22 - 2013-12-20 12:36 - 00000000 ____D C:\Windows\Panther
2015-11-01 23:39 - 2015-06-04 13:38 - 00000000 ____D C:\Users\Michal\Documents\Command and Conquer Generals Zero Hour Data
2015-11-01 23:20 - 2013-12-20 13:00 - 00000000 ____D C:\Users\Michal
2015-10-22 15:00 - 2014-10-21 17:41 - 00000000 ____D C:\Users\Michal\Documents\hudba do auta
2015-10-19 19:20 - 2015-10-18 19:41 - 00000100 _____ C:\Users\Michal\Desktop\Nový textový dokument.txt

==================== Files in the root of some directories =======

2014-02-04 22:01 - 2014-02-04 22:01 - 0000708 _____ () C:\Users\Michal\AppData\Roaming\Ping Monitor_Settings.ini
2014-11-20 19:46 - 2014-11-20 19:46 - 0000175 _____ () C:\Users\Michal\AppData\Roaming\World Population Monitor_Settings.ini
2015-07-07 10:11 - 2015-07-07 10:11 - 0000000 ___SH () C:\Users\Michal\AppData\Local\LumaEmu
2014-07-27 13:53 - 2014-07-27 13:53 - 0018167 _____ () C:\Users\Michal\AppData\Local\ramcpuversion.txt
2015-11-14 23:26 - 2015-11-14 23:26 - 0000756 _____ () C:\Users\Michal\AppData\Local\recently-used.xbel
2013-12-20 16:59 - 2015-11-18 20:24 - 0007627 _____ () C:\Users\Michal\AppData\Local\Resmon.ResmonCfg
2013-12-22 22:18 - 2013-12-22 22:20 - 0001360 _____ () C:\Users\Michal\AppData\Local\SRDownloader.nast
2014-08-17 19:24 - 2014-08-18 05:48 - 0001187 _____ () C:\ProgramData\hpzinstall.log
2014-01-06 16:47 - 2014-01-06 16:47 - 0000000 _____ () C:\ProgramData\spds90.txt

Some files in TEMP:
====================
C:\Users\Michal\AppData\Local\Temp\InstallManager_GEN_GEN.exe
C:\Users\Michal\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-11-11 20:55

==================== End of FRST.txt ============================

Re: zataz RAM a rvzr-a.akamaihd.net a ine

Napsal: 18 lis 2015 22:14
od Rudy
Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54576 2009-11-18] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-4126817388-1271623381-3695661034-1000\...\MountPoints2: {a3f3bef6-6993-11e3-8e91-d43d7ef50b37} - G:\Setup.exe
Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKU\S-1-5-21-4126817388-1271623381-3695661034-1000 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Users\Michal\AppData\Local\Temp
End
Uložte do C:\Users\Michal\Downloads jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: zataz RAM a rvzr-a.akamaihd.net a ine

Napsal: 18 lis 2015 22:21
od angel0140

Kód: Vybrat vše

Fix result of Farbar Recovery Scan Tool (x64) Version:18-11-2015
Ran by Michal (2015-11-18 22:18:51) Run:1
Running from C:\Users\Michal\Downloads
Loaded Profiles: Michal (Available Profiles: Michal & Dayz & Dayz2 & DayZ_3 & DayZ 5 & Dayz medic & Dayz Elite UN & DayZ4 & Dayzx1)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54576 2009-11-18] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-4126817388-1271623381-3695661034-1000\...\MountPoints2: {a3f3bef6-6993-11e3-8e91-d43d7ef50b37} - G:\Setup.exe
Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKU\S-1-5-21-4126817388-1271623381-3695661034-1000 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Users\Michal\AppData\Local\Temp
End


*****************

HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\HP Software Update => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully
"HKU\S-1-5-21-4126817388-1271623381-3695661034-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a3f3bef6-6993-11e3-8e91-d43d7ef50b37}" => key removed successfully
HKCR\CLSID\{a3f3bef6-6993-11e3-8e91-d43d7ef50b37} => key not found. 
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} => value removed successfully
HKCR\CLSID\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} => key not found. 
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => value removed successfully
HKCR\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => key not found. 
HKU\S-1-5-21-4126817388-1271623381-3695661034-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => value removed successfully
HKCR\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => key not found. 
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully

"C:\Users\Michal\AppData\Local\Temp" folder move:

Could not move "C:\Users\Michal\AppData\Local\Temp" => Scheduled to move on reboot.


Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 2015-11-18 22:20:43)

C:\Users\Michal\AppData\Local\Temp => moved successfully

==== End of Fixlog 22:20:43 ====

Re: zataz RAM a rvzr-a.akamaihd.net a ine

Napsal: 18 lis 2015 22:34
od Rudy
Smazáno. Nastala nějaká změna?

Re: zataz RAM a rvzr-a.akamaihd.net a ine

Napsal: 18 lis 2015 22:36
od angel0140
absolutne ziadna .. RAM 1,7gb .. a ked zapnem facebook tak mi tam stale nacitava ten a.akamaihd.net

Re: zataz RAM a rvzr-a.akamaihd.net a ine

Napsal: 19 lis 2015 14:35
od angel0140
takze co mam robit ? :???:

Re: zataz RAM a rvzr-a.akamaihd.net a ine

Napsal: 19 lis 2015 18:05
od Rudy
angel0140 píše:takze co mam robit ? :???:
Nebuďte netrpělivý, chodím přes den do zaměstnání a můj zaměstnavatel by jistě nebyl rád, kdybych se zabýval fórem. :)

Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.

Re: zataz RAM a rvzr-a.akamaihd.net a ine

Napsal: 19 lis 2015 20:29
od angel0140
prepacte :oops: .. zde vysledok:
Malwarebytes Anti-Malware
www.malwarebytes.org

Dátum kontroly: 19. 11. 2015
Čas kontroly: 20:11:14
Protokol: mbm vysledok.txt
Správca: Áno

Verzia: 2.02.0.1024
Dazabáza malware: v2015.11.19.05
Databáza rootkitov: v2015.11.14.01
Licencia: Premium
Ochrana pred škodlivým softvérom: Zapnuté
Ochrana pred škodlivými webstránkami: Zapnuté
Vlastná ochrana: Vypnuté

OS: Windows 7 Service Pack 1
CPU: x64
Súborový systém: NTFS
Používateľ: Michal

Typ kontroly: Kontrola hrozieb
Výsledok: Dokončená
Skontrolovaných objektov: 714179
Uplynulý čas: 15 min, 28 s

Pamäť: Zapnuté
Pri spustení: Zapnuté
Súborový systém: Zapnuté
Archívy: Zapnuté
Rootkity: Zapnuté
Heuristika: Zapnuté
PUP: Zapnuté
PUM: Zapnuté

Procesy: 0
(Žiadne škodlivé položky neboli zistené)

Moduly: 0
(Žiadne škodlivé položky neboli zistené)

Kľúče databázy Registry: 0
(Žiadne škodlivé položky neboli zistené)

Hodnoty databázy Registry: 0
(Žiadne škodlivé položky neboli zistené)

Údaj databázy Registry: 0
(Žiadne škodlivé položky neboli zistené)

Priečinky: 0
(Žiadne škodlivé položky neboli zistené)

Súbory: 0
(Žiadne škodlivé položky neboli zistené)

Fyzické sektory: 0
(Žiadne škodlivé položky neboli zistené)


(end)

Re: zataz RAM a rvzr-a.akamaihd.net a ine

Napsal: 19 lis 2015 21:14
od Rudy
MBAM je OK, virový problém to není. Na zkoušku vypněte aut. aktualizace, příp. přeinstalujte antivir.

Re: zataz RAM a rvzr-a.akamaihd.net a ine

Napsal: 19 lis 2015 21:49
od angel0140
preinstalovany avast ... vypnute aktualizacie ... ak nic nerobim tak mi stale neco zere RAM 1,5 gb ... a ked zapnem fb tak mi tam nacitava ten a.akamaihd.net

Re: zataz RAM a rvzr-a.akamaihd.net a ine

Napsal: 19 lis 2015 21:54
od angel0140
Obrázek

Re: zataz RAM a rvzr-a.akamaihd.net a ine

Napsal: 19 lis 2015 22:34
od Rudy
Zkuste ještě tyto skeny:

1. Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu

Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
Do okna vlozte skript nize




autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin;




Nasledne kliknete na Run Script
PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem.

a

2. Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
•Ulozte nejlepe na plochu
•Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
•Probehne vytvoreni zalohy a nasledne prohledavani
•Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte.

Re: zataz RAM a rvzr-a.akamaihd.net a ine

Napsal: 20 lis 2015 17:57
od angel0140
Zoek.exe v5.0.0.1 Updated 19-November-2015
Tool run by Michal on pi 20. 11. 2015 at 16:38:23,56.
Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Michal\Desktop\zoek.exe [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2015-11-20-153714.log 1311 bytes

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handled within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Empty Folders Check ======================

C:\PROGRA~2\MSXML 4.0 deleted successfully
C:\PROGRA~2\COMMON~1\Symantec Shared deleted successfully
C:\PROGRA~3\Oracle deleted successfully
C:\PROGRA~3\Solidshield deleted successfully
C:\Users\Michal\AppData\Roaming\Publish Providers deleted successfully
C:\Users\Dayz\AppData\Local\DayZ deleted successfully
C:\Users\Dayz\AppData\Local\VirtualStore deleted successfully
C:\Users\DayZ 5\AppData\Local\DayZ deleted successfully
C:\Users\DayZ 5\AppData\Local\VirtualStore deleted successfully
C:\Users\Dayz Elite UN\AppData\Local\DayZ deleted successfully
C:\Users\Dayz Elite UN\AppData\Local\VirtualStore deleted successfully
C:\Users\Dayz medic\AppData\Local\DayZ deleted successfully
C:\Users\Dayz medic\AppData\Local\VirtualStore deleted successfully
C:\Users\Dayz2\AppData\Local\DayZ deleted successfully
C:\Users\Dayz2\AppData\Local\VirtualStore deleted successfully
C:\Users\DayZ4\AppData\Local\DayZ deleted successfully
C:\Users\DayZ4\AppData\Local\VirtualStore deleted successfully
C:\Users\Dayzx1\AppData\Local\DayZ deleted successfully
C:\Users\Dayzx1\AppData\Local\VirtualStore deleted successfully
C:\Users\DayZ_3\AppData\Local\DayZ deleted successfully
C:\Users\DayZ_3\AppData\Local\VirtualStore deleted successfully
C:\Users\Michal\AppData\Local\Black_Tree_Gaming deleted successfully
C:\Users\Michal\AppData\Local\DayZ deleted successfully
C:\Users\Michal\AppData\Local\WMTools Downloaded Files deleted successfully

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ArcService deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\ArcService deleted successfully

==== FireFox Fix ======================

Deleted from C:\Users\Dayz\AppData\Roaming\Mozilla\Firefox\Profiles\iqdlhfau.default\prefs.js:

Added to C:\Users\Dayz\AppData\Roaming\Mozilla\Firefox\Profiles\iqdlhfau.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Users\DAYZ5~1\AppData\Roaming\Mozilla\Firefox\Profiles\8fof5k28.default\prefs.js:

Added to C:\Users\DAYZ5~1\AppData\Roaming\Mozilla\Firefox\Profiles\8fof5k28.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Users\DAYZEL~1\AppData\Roaming\Mozilla\Firefox\Profiles\yyvfpzy5.default\prefs.js:

Added to C:\Users\DAYZEL~1\AppData\Roaming\Mozilla\Firefox\Profiles\yyvfpzy5.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Users\Dayz2\AppData\Roaming\Mozilla\Firefox\Profiles\xlc27pfw.default\prefs.js:

Added to C:\Users\Dayz2\AppData\Roaming\Mozilla\Firefox\Profiles\xlc27pfw.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Users\DayZ4\AppData\Roaming\Mozilla\Firefox\Profiles\ymvqel95.default\prefs.js:

Added to C:\Users\DayZ4\AppData\Roaming\Mozilla\Firefox\Profiles\ymvqel95.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Users\Dayzx1\AppData\Roaming\Mozilla\Firefox\Profiles\x7disbxr.default\prefs.js:

Added to C:\Users\Dayzx1\AppData\Roaming\Mozilla\Firefox\Profiles\x7disbxr.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Users\DayZ_3\AppData\Roaming\Mozilla\Firefox\Profiles\e7weq4kq.default\prefs.js:

Added to C:\Users\DayZ_3\AppData\Roaming\Mozilla\Firefox\Profiles\e7weq4kq.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\98l3lxvy.default\prefs.js:
user_pref("browser.startup.homepage", "https://www.google.sk/");

Added to C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\98l3lxvy.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

==== Deleting Files \ Folders ======================

C:\User Data deleted
C:\Users\Michal\AppData\Roaming\Ping Monitor_Settings.ini deleted
C:\Users\Michal\AppData\Roaming\World Population Monitor_Settings.ini deleted
C:\PROGRA~3\spds90.txt deleted
C:\PROGRA~3\Funcom deleted
C:\PROGRA~3\Package Cache deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\98l3lxvy.default\extensions\firefox@mega.co.nz.xpi deleted
C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\98l3lxvy.default\jetpack deleted
"C:\Users\Michal\AppData\Local\LumaEmu" deleted

==== Firefox Start and Search pages ======================

ProfilePath: C:\Users\Dayz\AppData\Roaming\Mozilla\Firefox\Profiles\iqdlhfau.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\DAYZ5~1\AppData\Roaming\Mozilla\Firefox\Profiles\8fof5k28.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\DAYZEL~1\AppData\Roaming\Mozilla\Firefox\Profiles\yyvfpzy5.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\Dayz2\AppData\Roaming\Mozilla\Firefox\Profiles\xlc27pfw.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\DayZ4\AppData\Roaming\Mozilla\Firefox\Profiles\ymvqel95.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\Dayzx1\AppData\Roaming\Mozilla\Firefox\Profiles\x7disbxr.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\DayZ_3\AppData\Roaming\Mozilla\Firefox\Profiles\e7weq4kq.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\98l3lxvy.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"smartwebprinting@hp.com"="C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3" [18. 08. 2014 05:32]
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"smartwebprinting@hp.com"="C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3" [18. 08. 2014 05:32]

==== Firefox Extensions ======================

ProfilePath: C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\98l3lxvy.default
- Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF

AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\98l3lxvy.default
F114FBA6246530B89DD1E04351E0EAC5 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll - Shockwave Flash


==== Fake Chromium Profiles Check ======================

Fake profile C:\Users\Dayz medic\AppData\Local\Google\Chrome deleted
Fake profile C:\Users\Dayz2\AppData\Local\Google\Chrome deleted
Fake profile C:\Users\Dayzx1\AppData\Local\Google\Chrome deleted

==== Chromium Look ======================

Google Chrome Version: 46.0.2490.86

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[16. 03. 2015 06:57]

Avast Online Security - Dayz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
Docs - DayZ 5\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Avast Online Security - Dayz Elite UN\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
Avast Online Security - DayZ4\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
Avast Online Security - DayZ_3\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
Avast Online Security - Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

==== All HKLM and HKCU SearchScopes ======================

HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTer ... ORM=IESR02

==== Reset Google Chrome ======================

C:\Users\Dayz\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Dayz\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\DayZ 5\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\DayZ 5\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\Dayz Elite UN\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Dayz Elite UN\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\DayZ4\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\DayZ4\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\DayZ_3\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\DayZ_3\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\Dayz\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Dayz\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\DayZ 5\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\DayZ 5\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\Dayz Elite UN\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Dayz Elite UN\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\DayZ4\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\DayZ4\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\DayZ_3\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\DayZ_3\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Dayz\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\DayZ 5\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Dayz Elite UN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Dayz medic\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Dayz2\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Dayz2\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\DayZ4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Dayzx1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\DayZ_3\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\DayZ_3\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Michal\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Michal\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

C:\Users\Dayz\AppData\Local\Mozilla\Firefox\Profiles\iqdlhfau.default\cache2 emptied successfully
C:\Users\DayZ 5\AppData\Local\Mozilla\Firefox\Profiles\8fof5k28.default\cache2 emptied successfully
C:\Users\Dayz Elite UN\AppData\Local\Mozilla\Firefox\Profiles\yyvfpzy5.default\cache2 emptied successfully
C:\Users\Dayz2\AppData\Local\Mozilla\Firefox\Profiles\xlc27pfw.default\cache2 emptied successfully
C:\Users\DayZ4\AppData\Local\Mozilla\Firefox\Profiles\ymvqel95.default\cache2 emptied successfully
C:\Users\Dayzx1\AppData\Local\Mozilla\Firefox\Profiles\x7disbxr.default\cache2 emptied successfully
C:\Users\DayZ_3\AppData\Local\Mozilla\Firefox\Profiles\e7weq4kq.default\cache2 emptied successfully
C:\Users\Michal\AppData\Local\Mozilla\Firefox\Profiles\98l3lxvy.default\cache2 emptied successfully

==== Empty Chrome Cache ======================

C:\Users\Dayz\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\DayZ 5\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\Dayz Elite UN\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\DayZ4\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\DayZ_3\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache is not empty, a reboot is needed

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=14 folders=18 11486936 bytes)

==== Empty Temp Folders ======================

C:\Users\Dayz\AppData\Local\Temp will be emptied at reboot
C:\Users\DayZ 5\AppData\Local\Temp will be emptied at reboot
C:\Users\Dayz Elite UN\AppData\Local\Temp will be emptied at reboot
C:\Users\Dayz medic\AppData\Local\Temp emptied successfully
C:\Users\Dayz2\AppData\Local\Temp will be emptied at reboot
C:\Users\DayZ4\AppData\Local\Temp will be emptied at reboot
C:\Users\Dayzx1\AppData\Local\Temp will be emptied at reboot
C:\Users\DayZ_3\AppData\Local\Temp will be emptied at reboot
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Michal\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\Michal\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Users\DayZ 5\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\NWCKMYJ7\cdn2.dashbida.com" not found
"C:\Users\Dayz Elite UN\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\2AM794TZ\bbcdn-bbnaut.ibillboard.com" not found
"C:\Users\DayZ4\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\K7CCKU4F\bbcdn-bbnaut.ibillboard.com" deleted
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\assets.livebox.cz" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\c.imrk.net" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\cdn.behavioralengine.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\cdn.intergi.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\cdn.playwire.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\cdn1.static.keezmovies.phncdn.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\cdn1.static.youporn.phncdn.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\cdnbakmi.kaltura.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\cfiles.5min.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\d1imkhfot67hew.cloudfront.net" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\d2s638cvq8o6bw.cloudfront.net" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\drtuber.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\e1.cdnl3.neulion.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\f.vimeocdn.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\fbstatic-a.akamaihd.net" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\foxnewsplayer-a.akamaihd.net" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\img.csfd.cz" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\img5.uloz.to" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\inres.uspech.sk" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\inres2.uspech.sk" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\media.novinky.cz" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\mp.pianomedia.eu" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\mp3.li" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\ncontent.metrogames.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\neulionms-a.akamaihd.net" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\pagead2.googlesyndication.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\pdk.theplatform.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\pets-ssl.wuzy.net" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\player.ooyala.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\pornoserver.eu" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\raiderbear-6a1.kxcdn.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\s20.fb.theheavensgame.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\secure.onsugar.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\ss.phncdn.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\tn.nova.cz" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\video.begun.ru" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\video.mdadvice.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\videochart.net" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\www.avon.sk" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\www.empflix.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\www.koaa.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\www.nicereply.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\www.performax.cz" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\www.redtube.com" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\www.rtvs.sk" not found
"C:\Users\Michal\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\V3LV5FJG\z.cdn.turner.com" not found
"C:\Users\Dayz\AppData\Local\Temp\avastBCLTMP" deleted
"C:\Users\DayZ 5\AppData\Local\Temp\avastBCLTMP" deleted
"C:\Users\Dayz Elite UN\AppData\Local\Temp\avastBCLTMP" deleted
"C:\Users\Dayz2\AppData\Local\Temp\avastBCLTMP" deleted
"C:\Users\DayZ4\AppData\Local\Temp\avastBCLTMP" deleted
"C:\Users\Dayzx1\AppData\Local\Temp\avastBCLTMP" deleted
"C:\Users\DayZ_3\AppData\Local\Temp\avastBCLTMP" deleted

==== EOF on pi 20. 11. 2015 at 17:48:18,76 ======================
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.0 (11.12.2015)
Operating System: Windows 7 Ultimate x64
Ran by Michal (Administrator) on pi 20. 11. 2015 at 17:51:45,00
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 0




Registry: 0





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on pi 20. 11. 2015 at 17:55:33,65
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Re: zataz RAM a rvzr-a.akamaihd.net a ine

Napsal: 20 lis 2015 18:16
od Rudy
Nastala nějaká změna?