Prosím o preventivní kontrolu logu
Napsal: 22 lis 2015 07:08
Zdravím všechny a chtěl bych poprosit o preventivku:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:20-11-2015
Ran by Pavel (administrator) on GULLYHONTB (22-11-2015 07:00:20)
Running from C:\Users\Pavel\Desktop
Loaded Profiles: Pavel (Available Profiles: Pavel)
Platform: Windows 10 Home (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Apple Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Dell Inc.) C:\Program Files (x86)\Dell Customer Connect\DCCService.exe
(Dell) C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe
(Dell Inc.) C:\Program Files (x86)\Dell Update\DellUpService.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Dell) C:\Program Files\Dell\Dell Foundation Services\DFS.Common.Agent.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(KARPOLAN) C:\Program Files (x86)\Keyboard LEDs\KeyboardLeds.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE
(Google) C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktop.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
(Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD App Manager\WDAppManager.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\msosync.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Dell Inc.) C:\Program Files (x86)\Dell Update\DellUpTray.exe
(Microsoft Corporation) C:\Windows\System32\wuapihost.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Corporation) C:\Windows\Temp\8A53FF11-E2D4-47BF-96D6-30EB1ECBC4B0\DismHost.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Corporation) C:\Windows\System32\DataExchangeHost.exe
(Microsoft Corporation) C:\Windows\System32\NetworkUXBroker.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_2015.21.25.0_x64__8wekyb3d8bbwe\WinStore.Mobile.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8512760 2015-08-03] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1411320 2015-08-03] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2825968 2014-05-22] (Synaptics Incorporated)
HKLM\...\Run: [WavesSvc] => "C:\Program Files\Realtek\Audio\HDA\WavesSvc64.exe"
HKLM\...\Run: [QuickSet] => c:\Program Files\Dell\QuickSet\QuickSet.exe [3859456 2014-09-05] (Dell Inc.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2461504 2014-09-17] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Smart Security\egui.exe [5595848 2015-07-08] (ESET)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508240 2015-08-05] (Adobe Systems Incorporated)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-06-23] (Intel Corporation)
HKLM-x32\...\Run: [Google Desktop Search] => C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktop.exe [30192 2015-09-05] (Google)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597552 2015-08-04] (Oracle Corporation)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [36713096 2015-11-05] (Dropbox, Inc.)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [WDAppManager] => C:\Program Files (x86)\Western Digital\WD App Manager\AppManagerLauncher.exe [14688 2015-05-29] (Western Digital Technologies, Inc.)
HKLM-x32\...\Run: [KiesTrayAgent] => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311616 2015-07-27] (Samsung Electronics Co., Ltd.)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-1381990023-2125800524-629809922-1001\...\Run: [KeyboardLeds.exe] => C:\Program Files (x86)\Keyboard LEDs\KeyboardLeds.exe [912896 2012-09-06] (KARPOLAN)
HKU\S-1-5-21-1381990023-2125800524-629809922-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-1381990023-2125800524-629809922-1001\...\Run: [VideoDownloaderUltimate] => C:\ProgramData\VideoDownloaderUltimateWinApp\VideoDownloaderUltimate.exe [2398024 2015-11-15] (Link64 GmbH)
HKU\S-1-5-21-1381990023-2125800524-629809922-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50143872 2015-11-17] (Skype Technologies S.A.)
HKU\S-1-5-21-1381990023-2125800524-629809922-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Bubbles.scr [805888 2015-07-10] (Microsoft Corporation)
AppInit_DLLs-x32: C:\PROGRA~2\Google\GOOGLE~1\GO36F4~1.DLL => C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktopNetwork3.dll [123392 2015-09-05] (Google)
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DBARFileBackuped] -> {831cebdd-6baf-4432-be76-9e0989c14aef} => C:\WINDOWS\system32\mscoree.dll [2015-07-10] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [DBARFileNotBackuped] -> {275e4fd7-21ef-45cf-a836-832e5d2cc1b3} => C:\WINDOWS\system32\mscoree.dll [2015-07-10] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-11-05] (Dropbox, Inc.)
Startup: C:\Users\Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Taskmgr.lnk [2015-10-03]
ShortcutTarget: Taskmgr.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{4d65f79f-ff66-4b50-bee9-663b13344b5e}: [DhcpNameServer] 172.4.1.171
Tcpip\..\Interfaces\{71dfa830-3aed-4e9c-851c-432d0ded3dc4}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
HKU\S-1-5-21-1381990023-2125800524-629809922-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://dell13.msn.com/?pc=DCJB
HKU\S-1-5-21-1381990023-2125800524-629809922-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dell13.msn.com/?pc=DCJB
SearchScopes: HKU\S-1-5-21-1381990023-2125800524-629809922-1001 -> DefaultScope {391C5D96-CC23-4812-A98B-E45A195FD55D} URL =
SearchScopes: HKU\S-1-5-21-1381990023-2125800524-629809922-1001 -> {391C5D96-CC23-4812-A98B-E45A195FD55D} URL =
SearchScopes: HKU\S-1-5-21-1381990023-2125800524-629809922-1001 -> {70D46D94-BF1E-45ED-B567-48701376298E} URL = hxxp://127.0.0.1:4664/search&s=PgD2DJ9KAuVz856dNaC1IRiFg9g?q={searchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-09-29] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_60\bin\ssv.dll [2015-09-05] (Oracle Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-10-30] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-09-05] (Oracle Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-09-05] (Microsoft Corporation)
FireFox:
========
FF ProfilePath: C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988
FF NewTab:
FF Homepage: http://www.google.cz
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_19_0_0_245.dll [2015-11-12] ()
FF Plugin: @java.com/DTPlugin,version=11.60.2 -> C:\Program Files\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll [2015-09-05] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.60.2 -> C:\Program Files\Java\jre1.8.0_60\bin\plugin2\npjp2.dll [2015-09-05] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-08-06] (Adobe Systems)
FF Plugin: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll [2013-12-02] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-12] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-09-05] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-19] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-19] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-09-30] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-08-06] (Adobe Systems)
FF Plugin-x32: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll [2013-12-02] (Adobe Systems)
FF Extension: SQL Inject Me - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\extensions\sqlime@security.compass.xpi [2015-09-05]
FF Extension: Test Pilot - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\extensions\testpilot@labs.mozilla.com.xpi [2015-09-05]
FF Extension: Web Developer - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\extensions\{c45c406e-ab73-11d8-be73-000a95be3b12}.xpi [2015-09-05]
FF Extension: Tab Mix Plus - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi [2015-09-05]
FF Extension: Memory Fox - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\extensions\{E173B749-DB5B-4fd2-BA0E-94ECEA0CA55B} [2015-09-05]
FF Extension: S3.Google Translator - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\extensions\s3google@translator.xpi [2015-11-21]
FF Extension: Add Bookmark Here ² - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\extensions\abhere2@moztw.org.xpi [2015-11-22]
FF Extension: No Name - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\Extensions\about-addons-memory@tn123.org.xpi [2015-09-05] [not signed]
FF Extension: No Name - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\Extensions\ffext_basicvideoext@startpage24.xpi [2015-09-05] [not signed]
FF Extension: Gmail Notifier (restartless) - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\Extensions\jid0-GjwrPchS3Ugt7xydvqVK4DQk8Ls@jetpack.xpi [2015-10-12]
FF Extension: WOT - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2015-11-11]
FF Extension: BBCode - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\Extensions\{AE37D527-6604-461c-8102-975CF8053A2F}.xpi [2015-09-05] [not signed]
FF Extension: Password Exporter - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\Extensions\{B17C1C5A-04B1-11DB-9804-B622A1EF5492}.xpi [2015-10-30]
Chrome:
=======
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://www.seznam.cz/"
CHR DefaultSearchURL: Default -> hxxp://search.seznam.cz/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> seznam.cz
CHR DefaultSuggestURL: Default -> hxxp://suggest.fulltext.seznam.cz/fulltext_ff?phrase={searchTerms}
CHR Profile: C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-09-09]
CHR Extension: (Dokumenty Google) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-09-09]
CHR Extension: (Disk Google) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-25]
CHR Extension: (YouTube) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-25]
CHR Extension: (Vyhledávání Google) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-25]
CHR Extension: (Tabulky Google) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-09-09]
CHR Extension: (Dokumenty Google offline) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-19]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-09-09]
CHR Extension: (Gmail) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-09-09]
CHR Extension: (Writer) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnengefjfhgcceajaepbjhanoojifmog [2015-11-19]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2015936 2015-09-29] (Adobe Systems, Incorporated)
R2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2251992 2015-03-27] (Broadcom Corporation.)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2780856 2015-10-07] (Microsoft Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [136048 2015-09-05] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [136048 2015-09-05] (Dropbox, Inc.)
R2 Dell Customer Connect; C:\Program Files (x86)\Dell Customer Connect\DCCService.exe [137968 2015-09-22] (Dell Inc.)
S2 Dell Data Services; C:\Program Files\Dell\Dell Data Services\DDSSvc.exe [45936 2014-11-13] (Dell)
R2 Dell Foundation Services; C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe [114888 2015-10-20] (Dell)
S3 DellProdRegManager; C:\Program Files (x86)\Dell Product Registration\regmgrsvc.exe [293440 2014-04-01] (Aviata, Inc.)
R2 DellUpdate; C:\Program Files (x86)\Dell Update\DellUpService.exe [237272 2015-08-27] (Dell Inc.)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [1353720 2015-07-08] (ESET)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1149760 2014-09-17] (NVIDIA Corporation)
S3 GoogleDesktopManager-051210-111108; C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktop.exe [30192 2015-09-05] (Google)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856 2015-06-23] (Intel Corporation)
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [351120 2015-07-17] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel(R) Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [File not signed]
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [File not signed]
R2 jhi_service; C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [223008 2015-06-24] (Intel Corporation)
R2 LMS; C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [411936 2015-06-24] (Intel Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1796928 2014-09-17] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19440960 2014-09-17] (NVIDIA Corporation)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [253776 2013-07-30] (CyberLink)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [312056 2015-08-03] (Realtek Semiconductor)
R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2015-05-21] (DEVGURU Co., LTD.)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6849808 2015-11-10] (TeamViewer GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [173312 2015-03-27] (Broadcom Corporation.)
R3 BCMWL63A; C:\Windows\system32\DRIVERS\bcmwl63a.sys [11259136 2015-08-13] (Broadcom Corp)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [237568 2015-07-10] (Microsoft Corporation)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91712 2013-03-05] (CyberLink)
R3 DellRbtn; C:\Windows\System32\drivers\DellRbtn.sys [10752 2013-01-25] (OSR Open Systems Resources, Inc.)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [255240 2015-07-14] (ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [251632 2015-07-14] (ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [178520 2015-07-14] (ESET)
R2 epfw; C:\Windows\system32\DRIVERS\epfw.sys [231520 2015-07-14] (ESET)
R1 EpfwLWF; C:\Windows\system32\DRIVERS\EpfwLWF.sys [53360 2015-07-14] (ESET)
R0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [72400 2015-07-14] (ESET)
S3 ggsomc; C:\Windows\System32\drivers\ggsomc.sys [30424 2015-09-27] (Sony Mobile Communications)
S3 iaLPSS_SPI; C:\Windows\System32\drivers\iaLPSS_SPI.sys [100856 2014-06-11] (Intel Corporation)
R3 iaLPSS_UART2; C:\Windows\System32\drivers\iaLPSS_UART2.sys [143864 2014-06-11] (Intel Corporation)
R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [183584 2015-06-12] (Intel Corporation)
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [80160 2015-02-13] (McAfee, Inc.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20288 2014-09-17] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38048 2014-09-05] (NVIDIA Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [896744 2015-08-13] (Realtek )
R3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [402960 2015-05-14] (Realsil Semiconductor Corporation)
S3 ssudserd; C:\Windows\system32\DRIVERS\ssudserd.sys [206080 2015-10-30] (DEVGURU Co., LTD.(http://www.devguru.co.kr))
R3 SynRMIHID; C:\Windows\system32\DRIVERS\SynRMIHID.sys [42736 2014-05-22] (Synaptics Incorporated)
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-11-22 07:00 - 2015-11-22 07:01 - 00028607 _____ C:\Users\Pavel\Desktop\FRST.txt
2015-11-22 07:00 - 2015-11-22 07:00 - 00000000 ____D C:\FRST
2015-11-22 06:59 - 2015-11-22 06:59 - 00112640 _____ (forum.viry.cz) C:\Users\Pavel\Desktop\FRSTLauncher.exe
2015-11-22 06:58 - 2015-11-22 07:00 - 02345984 _____ (Farbar) C:\Users\Pavel\Desktop\FRST64.exe
2015-11-22 06:54 - 2015-11-22 06:54 - 00001331 _____ C:\Users\Pavel\Desktop\Nastavení a WinUpdate.lnk
2015-11-22 06:50 - 2015-11-22 06:50 - 00000000 ___HD C:\OneDriveTemp
2015-11-22 06:49 - 2015-11-22 06:49 - 00016148 _____ C:\WINDOWS\system32\GULLYHONTB_Pavel_HistoryPrediction.bin
2015-11-22 00:07 - 2015-11-22 00:07 - 00894960 _____ C:\Users\Pavel\Desktop\Norton_Removal_Tool.exe
2015-11-21 17:53 - 2015-11-21 17:53 - 00002263 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro.lnk
2015-11-21 17:53 - 2015-11-21 17:53 - 00000000 ____D C:\Users\Pavel\AppData\LocalLow\Google
2015-11-21 12:16 - 2015-11-21 12:52 - 48295173 _____ C:\Users\Pavel\Downloads\Fuzzy Logic records an exclusive mix for Noisily Festival - NOISE ME. (Noisily Festival).mp4
2015-11-20 21:25 - 2015-11-21 17:52 - 00000000 ____D C:\Users\Pavel\Downloads\Beatport Tracks
2015-11-19 19:51 - 2015-11-19 21:06 - 00000898 _____ C:\Users\Pavel\Downloads\tracklist.txt
2015-11-19 19:12 - 2015-11-19 19:12 - 03316224 _____ C:\Users\Pavel\Downloads\HD-Youtube-Downloader_218.msi
2015-11-19 18:50 - 2015-11-19 19:00 - 455281275 _____ C:\Users\Pavel\Downloads\Cj Art & Egodrop Fabryka 11.10.14 4MyDay.pl - YouTube.mp4
2015-11-16 21:12 - 2015-11-16 23:03 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\uTorrent
2015-11-16 21:12 - 2015-11-16 21:12 - 02168712 _____ (emc) C:\Users\Pavel\Downloads\uTorrent221.exe
2015-11-16 21:12 - 2015-11-16 21:12 - 00001039 _____ C:\Users\Pavel\Desktop\µTorrent.lnk
2015-11-16 21:12 - 2015-11-16 21:12 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent
2015-11-16 18:58 - 2015-11-17 09:52 - 239220299 _____ C:\Users\Pavel\Downloads\CJ_Art_-_Live_@_Ufo_Bufo_Festival_2015_(Czech_Rep)_-_Chill_Stage_-__21082015,_MP3,_320_kbps.rar
2015-11-16 12:25 - 2015-11-16 12:25 - 00001138 _____ C:\Users\Pavel\Desktop\Format Factory.lnk
2015-11-16 12:25 - 2015-11-16 12:25 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
2015-11-16 12:25 - 2015-11-16 12:25 - 00000000 ____D C:\FFOutput
2015-11-16 12:23 - 2015-11-16 12:25 - 00000000 ____D C:\Program Files (x86)\FormatFactory
2015-11-16 12:21 - 2015-11-16 12:23 - 56021632 _____ (Free Time) C:\Users\Pavel\Downloads\FFSetup3.8.0.0.exe
2015-11-16 12:20 - 2015-11-16 12:20 - 02027848 _____ (Free Time) C:\Users\Pavel\Downloads\FFInstOnline.exe
2015-11-15 13:43 - 2015-11-15 13:43 - 02017096 _____ (Link64 GmbH) C:\Users\Pavel\Downloads\VDU_install.exe
2015-11-15 12:47 - 2015-11-15 12:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-11-11 18:52 - 2015-11-11 18:52 - 00000254 _____ C:\WINDOWS\system32\TeamViewer11_Hooks.log
2015-11-11 18:29 - 2015-11-05 06:15 - 08020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-11-11 18:29 - 2015-11-05 06:15 - 00541024 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2015-11-11 18:29 - 2015-11-05 06:14 - 00459104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2015-11-11 18:29 - 2015-11-05 06:13 - 00577888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2015-11-11 18:29 - 2015-11-05 06:11 - 01392480 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-11-11 18:29 - 2015-11-05 06:06 - 03621248 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-11-11 18:29 - 2015-11-05 06:06 - 00966416 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2015-11-11 18:29 - 2015-11-05 06:01 - 00607408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2015-11-11 18:29 - 2015-11-05 05:56 - 01083072 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2015-11-11 18:29 - 2015-11-05 05:56 - 00116064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys
2015-11-11 18:29 - 2015-11-05 05:56 - 00025280 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2015-11-11 18:29 - 2015-11-05 05:30 - 00961376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2015-11-11 18:29 - 2015-11-05 05:24 - 02878512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-11-11 18:29 - 2015-11-05 05:23 - 00762888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2015-11-11 18:29 - 2015-11-05 05:23 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2015-11-11 18:29 - 2015-11-05 05:20 - 21873664 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-11-11 18:29 - 2015-11-05 05:18 - 24597504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-11-11 18:29 - 2015-11-05 05:18 - 03248128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-11-11 18:29 - 2015-11-05 05:18 - 00539728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2015-11-11 18:29 - 2015-11-05 05:17 - 02418688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-11-11 18:29 - 2015-11-05 05:12 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\internetmail.dll
2015-11-11 18:29 - 2015-11-05 05:11 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2015-11-11 18:29 - 2015-11-05 05:10 - 12504064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-11-11 18:29 - 2015-11-05 05:10 - 02987520 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2015-11-11 18:29 - 2015-11-05 05:07 - 01068032 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-11-11 18:29 - 2015-11-05 05:06 - 00453120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2015-11-11 18:29 - 2015-11-05 05:05 - 01602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-11-11 18:29 - 2015-11-05 05:05 - 00826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-11-11 18:29 - 2015-11-05 05:03 - 02180608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-11-11 18:29 - 2015-11-05 05:03 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2015-11-11 18:29 - 2015-11-05 05:01 - 00949760 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2015-11-11 18:29 - 2015-11-05 05:01 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2015-11-11 18:29 - 2015-11-05 05:01 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-11-11 18:29 - 2015-11-05 04:59 - 03587072 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-11-11 18:29 - 2015-11-05 04:59 - 02675200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2015-11-11 18:29 - 2015-11-05 04:58 - 01383936 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-11-11 18:29 - 2015-11-05 04:58 - 00627712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2015-11-11 18:29 - 2015-11-05 04:56 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-11-11 18:29 - 2015-11-05 04:55 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2015-11-11 18:29 - 2015-11-05 04:54 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2015-11-11 18:29 - 2015-11-05 04:47 - 19326464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-11-11 18:29 - 2015-11-05 04:42 - 02647040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2015-11-11 18:29 - 2015-11-05 04:40 - 01918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-11-11 18:29 - 2015-11-05 04:35 - 18803712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2015-11-11 18:29 - 2015-11-05 04:35 - 02639872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2015-11-11 18:29 - 2015-11-05 04:34 - 00311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2015-11-11 18:29 - 2015-11-05 04:33 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-11-11 18:29 - 2015-11-05 04:33 - 00650240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-11-11 18:29 - 2015-11-05 04:30 - 00767488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2015-11-11 18:29 - 2015-11-05 04:28 - 11262976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-11-11 18:29 - 2015-11-05 04:27 - 02049536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2015-11-11 18:29 - 2015-11-05 04:27 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2015-11-11 18:29 - 2015-11-05 04:23 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll
2015-11-11 18:27 - 2015-11-11 18:35 - 25041373 _____ C:\Users\Pavel\Downloads\Swingers Club Creampied Gangbang HClips - Private Home Clips.mp4
2015-11-08 18:58 - 2015-11-08 18:58 - 06539752 _____ (Tim Kosse) C:\Users\Pavel\Downloads\FileZilla_3.14.1_win64-setup.exe
2015-11-08 18:56 - 2015-11-08 18:56 - 02910856 _____ C:\Users\Pavel\Downloads\mp3tagv272setup.exe
2015-11-08 18:56 - 2015-11-08 18:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mp3tag
2015-11-08 18:53 - 2015-11-11 18:52 - 00001042 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk
2015-11-08 18:53 - 2015-11-11 18:52 - 00001030 _____ C:\Users\Public\Desktop\TeamViewer 11.lnk
2015-11-08 18:52 - 2015-11-08 18:52 - 09520432 _____ (TeamViewer GmbH) C:\Users\Pavel\Downloads\TeamViewer_Setup_cs.exe
2015-11-08 18:49 - 2015-11-08 18:50 - 06853552 _____ (TeamViewer) C:\Users\Pavel\Downloads\TeamViewerQS_cs.exe
2015-11-08 10:11 - 2015-11-08 11:11 - 143239549 _____ C:\Users\Pavel\Downloads\Pipe Dreams 007 by Olga Misty - on Progressive.Beats 10.08.15.rar
2015-11-06 21:47 - 2015-11-13 03:44 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-11-04 16:18 - 2015-11-04 16:19 - 40870010 _____ C:\Users\Pavel\Downloads\World_of_DNB.mp4
2015-10-30 20:36 - 2015-10-30 20:36 - 00000000 ____D C:\Users\Pavel\Documents\SelfMV
2015-10-30 20:34 - 2015-10-30 20:34 - 00206080 _____ (DEVGURU Co., LTD.(http://www.devguru.co.kr)) C:\WINDOWS\system32\Drivers\ssudserd.sys
2015-10-30 20:32 - 2015-10-30 20:32 - 00001785 _____ C:\Users\Pavel\Desktop\Samsung Kies.lnk
2015-10-30 20:32 - 2015-10-30 20:32 - 00000000 ____D C:\Users\Public\Documents\NativeFus_Log
2015-10-30 20:32 - 2015-10-30 20:32 - 00000000 ____D C:\Users\Pavel\Documents\samsung
2015-10-30 20:32 - 2015-10-30 20:32 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\Samsung
2015-10-30 20:32 - 2015-10-30 20:32 - 00000000 ____D C:\Users\Pavel\AppData\Local\Samsung
2015-10-30 20:32 - 2015-05-21 07:02 - 00206080 _____ (DEVGURU Co., LTD.(http://www.devguru.co.kr)) C:\WINDOWS\system32\Drivers\ssudmdm.sys
2015-10-30 20:17 - 2015-10-30 20:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
2015-10-30 20:17 - 2015-05-21 07:02 - 00110720 _____ (DEVGURU Co., LTD.(http://www.devguru.co.kr)) C:\WINDOWS\system32\Drivers\ssudbus.sys
2015-10-30 20:17 - 2013-12-30 10:53 - 04659712 _____ (Dmitry Streblechenko) C:\WINDOWS\SysWOW64\Redemption.dll
2015-10-30 20:17 - 2013-12-30 10:53 - 00144664 _____ (MAPILab Ltd. & Add-in Express Ltd.) C:\WINDOWS\SysWOW64\secman.dll
2015-10-30 20:16 - 2015-10-30 20:29 - 00000000 ____D C:\Program Files (x86)\Samsung
2015-10-30 20:16 - 2015-10-30 20:18 - 00000000 ____D C:\ProgramData\Samsung
2015-10-30 20:15 - 2015-10-30 20:15 - 00000000 ____D C:\Users\Pavel\AppData\Local\Downloaded Installations
2015-10-30 20:14 - 2015-10-30 20:15 - 78749536 _____ (Samsung Electronics Co., Ltd.) C:\Users\Pavel\Downloads\KiesSetup.exe
2015-10-28 16:28 - 2015-10-28 16:28 - 00001113 _____ C:\Users\Public\Desktop\ID-Ware Lite.lnk
2015-10-28 16:28 - 2015-10-28 16:28 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ID-Karta
2015-10-28 16:28 - 2015-10-28 16:28 - 00000000 ____D C:\Program Files (x86)\IDWareLiteDemo
2015-10-28 13:18 - 2015-10-28 13:18 - 00000000 ____D C:\Users\Pavel\Downloads\Demo
2015-10-28 13:17 - 2015-10-28 13:17 - 15006609 _____ C:\Users\Pavel\Downloads\Demo.zip
2015-10-28 11:45 - 2015-10-28 12:18 - 00000000 ____D C:\Users\Pavel\Documents\zaloha_sd_xperiaZ3
2015-10-28 11:14 - 2015-10-28 11:14 - 14021336 _____ C:\Users\Pavel\Downloads\Time_Start_Kit_Setup.exe
2015-10-27 21:29 - 2015-10-27 21:30 - 00000000 ____D C:\Users\Pavel\AppData\Local\Microsoft Help
2015-10-26 16:05 - 2015-10-26 16:09 - 00117995 _____ C:\Users\Pavel\Downloads\config_defaults_inc.php
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-11-22 07:01 - 2015-09-07 20:23 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\Skype
2015-11-22 06:58 - 2015-09-09 19:46 - 00000982 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-11-22 06:57 - 2015-09-09 19:46 - 00000978 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-11-22 06:55 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-11-22 06:54 - 2015-10-18 10:38 - 00000000 ____D C:\Users\Pavel\AppData\Local\CrashDumps
2015-11-22 06:52 - 2015-09-06 08:36 - 00000000 ____D C:\Users\Pavel\AppData\Local\Adobe
2015-11-22 06:52 - 2015-09-05 22:25 - 00004200 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{B924847C-3397-4024-8214-B7C40ACA46BB}
2015-11-22 06:50 - 2015-09-05 11:11 - 00000000 ___RD C:\Users\Pavel\OneDrive
2015-11-22 06:50 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\sru
2015-11-22 06:49 - 2015-09-05 16:40 - 00000924 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job
2015-11-22 06:49 - 2015-09-05 08:58 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-11-22 06:49 - 2015-01-25 00:41 - 00028768 _____ C:\WINDOWS\SysWOW64\Gms.log
2015-11-22 00:45 - 2015-09-05 16:40 - 00000928 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job
2015-11-22 00:27 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-11-22 00:14 - 2015-07-10 13:22 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log
2015-11-22 00:13 - 2015-07-10 13:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-11-22 00:13 - 2015-07-10 13:20 - 04869936 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-11-22 00:12 - 2015-09-05 08:52 - 00020490 _____ C:\WINDOWS\PFRO.log
2015-11-22 00:12 - 2015-07-10 10:05 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-11-21 19:16 - 2015-09-05 09:01 - 00000000 ____D C:\Users\Pavel
2015-11-21 18:54 - 2015-09-07 20:23 - 00000000 ____D C:\ProgramData\Skype
2015-11-21 17:53 - 2015-09-05 12:43 - 00000000 ____D C:\Program Files (x86)\Google
2015-11-21 08:03 - 2015-09-27 10:01 - 00000000 ____D C:\Program Files (x86)\Sony Mobile
2015-11-20 21:15 - 2015-09-05 12:10 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2015-11-19 18:47 - 2015-09-27 09:58 - 00002101 _____ C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk
2015-11-19 18:47 - 2015-09-27 09:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-11-19 18:47 - 2015-01-25 00:33 - 00149586 _____ C:\WINDOWS\DPINST.LOG
2015-11-19 18:47 - 2015-01-25 00:28 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-11-18 16:07 - 2015-10-07 13:20 - 00003944 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1444220438
2015-11-18 16:07 - 2015-10-07 13:20 - 00001122 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2015-11-18 16:07 - 2015-10-07 13:20 - 00000000 ____D C:\Program Files (x86)\Opera
2015-11-17 08:22 - 2015-09-05 09:14 - 01765712 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-11-17 08:22 - 2015-07-10 17:02 - 00747686 _____ C:\WINDOWS\system32\perfh005.dat
2015-11-17 08:22 - 2015-07-10 17:02 - 00150086 _____ C:\WINDOWS\system32\perfc005.dat
2015-11-16 17:48 - 2015-10-04 11:44 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\Mp3tag
2015-11-15 13:43 - 2015-09-07 17:32 - 00000933 _____ C:\Users\Pavel\Desktop\Video Downloader Ultimate.lnk
2015-11-15 13:43 - 2015-09-07 17:32 - 00000000 ____D C:\ProgramData\VideoDownloaderUltimateWinApp
2015-11-15 12:48 - 2015-01-25 00:50 - 00000000 ____D C:\Program Files (x86)\Dropbox
2015-11-13 15:21 - 2015-09-05 13:19 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-11-13 15:12 - 2015-09-05 13:18 - 145617392 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-11-13 04:07 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\rescache
2015-11-13 03:59 - 2015-09-09 19:47 - 00002262 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-11-13 03:52 - 2015-01-25 00:43 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2015-11-13 03:51 - 2015-01-25 00:32 - 00000000 ____D C:\Program Files\Dell
2015-11-13 03:44 - 2015-09-04 22:08 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-11-13 03:42 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-11-13 03:35 - 2015-07-10 11:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-11-11 18:17 - 2015-09-04 21:58 - 00000000 ____D C:\Users\Pavel\AppData\Local\Packages
2015-11-08 18:58 - 2015-10-04 09:11 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\Notepad++
2015-11-08 18:58 - 2015-10-03 19:51 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\FileZilla
2015-11-08 18:58 - 2015-10-03 19:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2015-11-08 18:58 - 2015-10-03 19:51 - 00000000 ____D C:\Program Files\FileZilla FTP Client
2015-11-08 18:56 - 2015-10-04 11:44 - 00001050 _____ C:\Users\Public\Desktop\Mp3tag.lnk
2015-11-08 18:56 - 2015-10-04 11:44 - 00000000 ____D C:\Program Files (x86)\Mp3tag
2015-11-08 18:51 - 2015-09-05 22:27 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\TeamViewer
2015-11-08 14:51 - 2015-07-10 13:20 - 00034269 _____ C:\WINDOWS\setupact.log
2015-11-04 16:22 - 2015-09-04 22:36 - 00001284 _____ C:\Users\Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\GOM Player.lnk
2015-11-04 16:22 - 2015-09-04 22:36 - 00001260 _____ C:\Users\Public\Desktop\GOM Player.lnk
2015-11-03 19:20 - 2015-07-10 12:06 - 00810488 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-11-03 19:20 - 2015-07-10 12:06 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-11-03 17:34 - 2015-09-06 17:18 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2015-11-03 17:32 - 2015-09-06 17:18 - 00003972 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2015-10-30 19:02 - 2015-09-05 11:11 - 00002402 _____ C:\Users\Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-10-30 08:25 - 2015-09-05 12:08 - 00000000 ____D C:\Program Files\Microsoft Office 15
2015-10-28 11:15 - 2015-09-04 21:58 - 00000000 ____D C:\Users\Pavel\AppData\Local\VirtualStore
==================== Files in the root of some directories =======
2015-10-04 17:00 - 2015-10-04 17:00 - 0000132 _____ () C:\Users\Pavel\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2015-09-27 11:38 - 2015-09-27 11:38 - 225111747 _____ () C:\Users\Pavel\AppData\Local\ACCCx3_3_0_151.zip.aamdownload
2015-09-27 11:38 - 2015-09-27 11:38 - 0002615 _____ () C:\Users\Pavel\AppData\Local\ACCCx3_3_0_151.zip.aamdownload.aamd
2015-09-06 15:14 - 2015-10-08 00:47 - 0001480 _____ () C:\Users\Pavel\AppData\Local\Adobe Uložit pro web 13.0 Prefs
2015-09-05 08:58 - 2015-09-05 08:58 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2015-01-25 00:32 - 2015-01-25 00:32 - 0000121 _____ () C:\ProgramData\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log
2015-01-25 00:29 - 2015-01-25 00:30 - 0000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log
2015-01-25 00:30 - 2015-01-25 00:31 - 0000111 _____ () C:\ProgramData\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}.log
2015-01-25 00:31 - 2015-01-25 00:32 - 0000108 _____ () C:\ProgramData\{B46BEA36-0B71-4A4E-AE41-87241643FA0A}.log
2015-01-25 00:28 - 2015-01-25 00:29 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
Some files in TEMP:
====================
C:\Users\Pavel\AppData\Local\Temp\AdobeApplicationManager.exe
C:\Users\Pavel\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpmihzps.dll
C:\Users\Pavel\AppData\Local\Temp\ExPromo.exe
C:\Users\Pavel\AppData\Local\Temp\InstHelper.exe
C:\Users\Pavel\AppData\Local\Temp\McCSPInstall.dll
C:\Users\Pavel\AppData\Local\Temp\mccspuninstall.exe
C:\Users\Pavel\AppData\Local\Temp\npp.6.8.6.Installer.exe
C:\Users\Pavel\AppData\Local\Temp\SetupHomeStudentRetail.x86.cs-CZ_HomeStudentRetail_N3JYG-CT3H8-2WKT7-CM6P2-MPW9R_act_1_.exe
C:\Users\Pavel\AppData\Local\Temp\xmlUpdater.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-11-11 18:48
==================== End of FRST.txt ============================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:20-11-2015
Ran by Pavel (administrator) on GULLYHONTB (22-11-2015 07:00:20)
Running from C:\Users\Pavel\Desktop
Loaded Profiles: Pavel (Available Profiles: Pavel)
Platform: Windows 10 Home (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Apple Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Dell Inc.) C:\Program Files (x86)\Dell Customer Connect\DCCService.exe
(Dell) C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe
(Dell Inc.) C:\Program Files (x86)\Dell Update\DellUpService.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Dell) C:\Program Files\Dell\Dell Foundation Services\DFS.Common.Agent.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(KARPOLAN) C:\Program Files (x86)\Keyboard LEDs\KeyboardLeds.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE
(Google) C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktop.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
(Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD App Manager\WDAppManager.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\msosync.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Dell Inc.) C:\Program Files (x86)\Dell Update\DellUpTray.exe
(Microsoft Corporation) C:\Windows\System32\wuapihost.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Corporation) C:\Windows\Temp\8A53FF11-E2D4-47BF-96D6-30EB1ECBC4B0\DismHost.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Corporation) C:\Windows\System32\DataExchangeHost.exe
(Microsoft Corporation) C:\Windows\System32\NetworkUXBroker.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_2015.21.25.0_x64__8wekyb3d8bbwe\WinStore.Mobile.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8512760 2015-08-03] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1411320 2015-08-03] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2825968 2014-05-22] (Synaptics Incorporated)
HKLM\...\Run: [WavesSvc] => "C:\Program Files\Realtek\Audio\HDA\WavesSvc64.exe"
HKLM\...\Run: [QuickSet] => c:\Program Files\Dell\QuickSet\QuickSet.exe [3859456 2014-09-05] (Dell Inc.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2461504 2014-09-17] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Smart Security\egui.exe [5595848 2015-07-08] (ESET)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508240 2015-08-05] (Adobe Systems Incorporated)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-06-23] (Intel Corporation)
HKLM-x32\...\Run: [Google Desktop Search] => C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktop.exe [30192 2015-09-05] (Google)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597552 2015-08-04] (Oracle Corporation)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [36713096 2015-11-05] (Dropbox, Inc.)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [WDAppManager] => C:\Program Files (x86)\Western Digital\WD App Manager\AppManagerLauncher.exe [14688 2015-05-29] (Western Digital Technologies, Inc.)
HKLM-x32\...\Run: [KiesTrayAgent] => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311616 2015-07-27] (Samsung Electronics Co., Ltd.)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-1381990023-2125800524-629809922-1001\...\Run: [KeyboardLeds.exe] => C:\Program Files (x86)\Keyboard LEDs\KeyboardLeds.exe [912896 2012-09-06] (KARPOLAN)
HKU\S-1-5-21-1381990023-2125800524-629809922-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-1381990023-2125800524-629809922-1001\...\Run: [VideoDownloaderUltimate] => C:\ProgramData\VideoDownloaderUltimateWinApp\VideoDownloaderUltimate.exe [2398024 2015-11-15] (Link64 GmbH)
HKU\S-1-5-21-1381990023-2125800524-629809922-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50143872 2015-11-17] (Skype Technologies S.A.)
HKU\S-1-5-21-1381990023-2125800524-629809922-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Bubbles.scr [805888 2015-07-10] (Microsoft Corporation)
AppInit_DLLs-x32: C:\PROGRA~2\Google\GOOGLE~1\GO36F4~1.DLL => C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktopNetwork3.dll [123392 2015-09-05] (Google)
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DBARFileBackuped] -> {831cebdd-6baf-4432-be76-9e0989c14aef} => C:\WINDOWS\system32\mscoree.dll [2015-07-10] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [DBARFileNotBackuped] -> {275e4fd7-21ef-45cf-a836-832e5d2cc1b3} => C:\WINDOWS\system32\mscoree.dll [2015-07-10] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-11-05] (Dropbox, Inc.)
Startup: C:\Users\Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Taskmgr.lnk [2015-10-03]
ShortcutTarget: Taskmgr.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{4d65f79f-ff66-4b50-bee9-663b13344b5e}: [DhcpNameServer] 172.4.1.171
Tcpip\..\Interfaces\{71dfa830-3aed-4e9c-851c-432d0ded3dc4}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
HKU\S-1-5-21-1381990023-2125800524-629809922-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://dell13.msn.com/?pc=DCJB
HKU\S-1-5-21-1381990023-2125800524-629809922-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dell13.msn.com/?pc=DCJB
SearchScopes: HKU\S-1-5-21-1381990023-2125800524-629809922-1001 -> DefaultScope {391C5D96-CC23-4812-A98B-E45A195FD55D} URL =
SearchScopes: HKU\S-1-5-21-1381990023-2125800524-629809922-1001 -> {391C5D96-CC23-4812-A98B-E45A195FD55D} URL =
SearchScopes: HKU\S-1-5-21-1381990023-2125800524-629809922-1001 -> {70D46D94-BF1E-45ED-B567-48701376298E} URL = hxxp://127.0.0.1:4664/search&s=PgD2DJ9KAuVz856dNaC1IRiFg9g?q={searchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-09-29] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_60\bin\ssv.dll [2015-09-05] (Oracle Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-10-30] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-09-05] (Oracle Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-09-05] (Microsoft Corporation)
FireFox:
========
FF ProfilePath: C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988
FF NewTab:
FF Homepage: http://www.google.cz
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_19_0_0_245.dll [2015-11-12] ()
FF Plugin: @java.com/DTPlugin,version=11.60.2 -> C:\Program Files\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll [2015-09-05] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.60.2 -> C:\Program Files\Java\jre1.8.0_60\bin\plugin2\npjp2.dll [2015-09-05] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-08-06] (Adobe Systems)
FF Plugin: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll [2013-12-02] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-12] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-09-05] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-19] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-19] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-09-30] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-08-06] (Adobe Systems)
FF Plugin-x32: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll [2013-12-02] (Adobe Systems)
FF Extension: SQL Inject Me - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\extensions\sqlime@security.compass.xpi [2015-09-05]
FF Extension: Test Pilot - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\extensions\testpilot@labs.mozilla.com.xpi [2015-09-05]
FF Extension: Web Developer - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\extensions\{c45c406e-ab73-11d8-be73-000a95be3b12}.xpi [2015-09-05]
FF Extension: Tab Mix Plus - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi [2015-09-05]
FF Extension: Memory Fox - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\extensions\{E173B749-DB5B-4fd2-BA0E-94ECEA0CA55B} [2015-09-05]
FF Extension: S3.Google Translator - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\extensions\s3google@translator.xpi [2015-11-21]
FF Extension: Add Bookmark Here ² - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\extensions\abhere2@moztw.org.xpi [2015-11-22]
FF Extension: No Name - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\Extensions\about-addons-memory@tn123.org.xpi [2015-09-05] [not signed]
FF Extension: No Name - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\Extensions\ffext_basicvideoext@startpage24.xpi [2015-09-05] [not signed]
FF Extension: Gmail Notifier (restartless) - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\Extensions\jid0-GjwrPchS3Ugt7xydvqVK4DQk8Ls@jetpack.xpi [2015-10-12]
FF Extension: WOT - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2015-11-11]
FF Extension: BBCode - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\Extensions\{AE37D527-6604-461c-8102-975CF8053A2F}.xpi [2015-09-05] [not signed]
FF Extension: Password Exporter - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\x6k63296.default-1441449556988\Extensions\{B17C1C5A-04B1-11DB-9804-B622A1EF5492}.xpi [2015-10-30]
Chrome:
=======
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://www.seznam.cz/"
CHR DefaultSearchURL: Default -> hxxp://search.seznam.cz/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> seznam.cz
CHR DefaultSuggestURL: Default -> hxxp://suggest.fulltext.seznam.cz/fulltext_ff?phrase={searchTerms}
CHR Profile: C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-09-09]
CHR Extension: (Dokumenty Google) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-09-09]
CHR Extension: (Disk Google) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-25]
CHR Extension: (YouTube) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-25]
CHR Extension: (Vyhledávání Google) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-25]
CHR Extension: (Tabulky Google) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-09-09]
CHR Extension: (Dokumenty Google offline) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-19]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-09-09]
CHR Extension: (Gmail) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-09-09]
CHR Extension: (Writer) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnengefjfhgcceajaepbjhanoojifmog [2015-11-19]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2015936 2015-09-29] (Adobe Systems, Incorporated)
R2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2251992 2015-03-27] (Broadcom Corporation.)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2780856 2015-10-07] (Microsoft Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [136048 2015-09-05] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [136048 2015-09-05] (Dropbox, Inc.)
R2 Dell Customer Connect; C:\Program Files (x86)\Dell Customer Connect\DCCService.exe [137968 2015-09-22] (Dell Inc.)
S2 Dell Data Services; C:\Program Files\Dell\Dell Data Services\DDSSvc.exe [45936 2014-11-13] (Dell)
R2 Dell Foundation Services; C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe [114888 2015-10-20] (Dell)
S3 DellProdRegManager; C:\Program Files (x86)\Dell Product Registration\regmgrsvc.exe [293440 2014-04-01] (Aviata, Inc.)
R2 DellUpdate; C:\Program Files (x86)\Dell Update\DellUpService.exe [237272 2015-08-27] (Dell Inc.)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [1353720 2015-07-08] (ESET)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1149760 2014-09-17] (NVIDIA Corporation)
S3 GoogleDesktopManager-051210-111108; C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktop.exe [30192 2015-09-05] (Google)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856 2015-06-23] (Intel Corporation)
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [351120 2015-07-17] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel(R) Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [File not signed]
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [File not signed]
R2 jhi_service; C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [223008 2015-06-24] (Intel Corporation)
R2 LMS; C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [411936 2015-06-24] (Intel Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1796928 2014-09-17] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19440960 2014-09-17] (NVIDIA Corporation)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [253776 2013-07-30] (CyberLink)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [312056 2015-08-03] (Realtek Semiconductor)
R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2015-05-21] (DEVGURU Co., LTD.)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6849808 2015-11-10] (TeamViewer GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [173312 2015-03-27] (Broadcom Corporation.)
R3 BCMWL63A; C:\Windows\system32\DRIVERS\bcmwl63a.sys [11259136 2015-08-13] (Broadcom Corp)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [237568 2015-07-10] (Microsoft Corporation)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91712 2013-03-05] (CyberLink)
R3 DellRbtn; C:\Windows\System32\drivers\DellRbtn.sys [10752 2013-01-25] (OSR Open Systems Resources, Inc.)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [255240 2015-07-14] (ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [251632 2015-07-14] (ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [178520 2015-07-14] (ESET)
R2 epfw; C:\Windows\system32\DRIVERS\epfw.sys [231520 2015-07-14] (ESET)
R1 EpfwLWF; C:\Windows\system32\DRIVERS\EpfwLWF.sys [53360 2015-07-14] (ESET)
R0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [72400 2015-07-14] (ESET)
S3 ggsomc; C:\Windows\System32\drivers\ggsomc.sys [30424 2015-09-27] (Sony Mobile Communications)
S3 iaLPSS_SPI; C:\Windows\System32\drivers\iaLPSS_SPI.sys [100856 2014-06-11] (Intel Corporation)
R3 iaLPSS_UART2; C:\Windows\System32\drivers\iaLPSS_UART2.sys [143864 2014-06-11] (Intel Corporation)
R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [183584 2015-06-12] (Intel Corporation)
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [80160 2015-02-13] (McAfee, Inc.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20288 2014-09-17] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38048 2014-09-05] (NVIDIA Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [896744 2015-08-13] (Realtek )
R3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [402960 2015-05-14] (Realsil Semiconductor Corporation)
S3 ssudserd; C:\Windows\system32\DRIVERS\ssudserd.sys [206080 2015-10-30] (DEVGURU Co., LTD.(http://www.devguru.co.kr))
R3 SynRMIHID; C:\Windows\system32\DRIVERS\SynRMIHID.sys [42736 2014-05-22] (Synaptics Incorporated)
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-11-22 07:00 - 2015-11-22 07:01 - 00028607 _____ C:\Users\Pavel\Desktop\FRST.txt
2015-11-22 07:00 - 2015-11-22 07:00 - 00000000 ____D C:\FRST
2015-11-22 06:59 - 2015-11-22 06:59 - 00112640 _____ (forum.viry.cz) C:\Users\Pavel\Desktop\FRSTLauncher.exe
2015-11-22 06:58 - 2015-11-22 07:00 - 02345984 _____ (Farbar) C:\Users\Pavel\Desktop\FRST64.exe
2015-11-22 06:54 - 2015-11-22 06:54 - 00001331 _____ C:\Users\Pavel\Desktop\Nastavení a WinUpdate.lnk
2015-11-22 06:50 - 2015-11-22 06:50 - 00000000 ___HD C:\OneDriveTemp
2015-11-22 06:49 - 2015-11-22 06:49 - 00016148 _____ C:\WINDOWS\system32\GULLYHONTB_Pavel_HistoryPrediction.bin
2015-11-22 00:07 - 2015-11-22 00:07 - 00894960 _____ C:\Users\Pavel\Desktop\Norton_Removal_Tool.exe
2015-11-21 17:53 - 2015-11-21 17:53 - 00002263 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro.lnk
2015-11-21 17:53 - 2015-11-21 17:53 - 00000000 ____D C:\Users\Pavel\AppData\LocalLow\Google
2015-11-21 12:16 - 2015-11-21 12:52 - 48295173 _____ C:\Users\Pavel\Downloads\Fuzzy Logic records an exclusive mix for Noisily Festival - NOISE ME. (Noisily Festival).mp4
2015-11-20 21:25 - 2015-11-21 17:52 - 00000000 ____D C:\Users\Pavel\Downloads\Beatport Tracks
2015-11-19 19:51 - 2015-11-19 21:06 - 00000898 _____ C:\Users\Pavel\Downloads\tracklist.txt
2015-11-19 19:12 - 2015-11-19 19:12 - 03316224 _____ C:\Users\Pavel\Downloads\HD-Youtube-Downloader_218.msi
2015-11-19 18:50 - 2015-11-19 19:00 - 455281275 _____ C:\Users\Pavel\Downloads\Cj Art & Egodrop Fabryka 11.10.14 4MyDay.pl - YouTube.mp4
2015-11-16 21:12 - 2015-11-16 23:03 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\uTorrent
2015-11-16 21:12 - 2015-11-16 21:12 - 02168712 _____ (emc) C:\Users\Pavel\Downloads\uTorrent221.exe
2015-11-16 21:12 - 2015-11-16 21:12 - 00001039 _____ C:\Users\Pavel\Desktop\µTorrent.lnk
2015-11-16 21:12 - 2015-11-16 21:12 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent
2015-11-16 18:58 - 2015-11-17 09:52 - 239220299 _____ C:\Users\Pavel\Downloads\CJ_Art_-_Live_@_Ufo_Bufo_Festival_2015_(Czech_Rep)_-_Chill_Stage_-__21082015,_MP3,_320_kbps.rar
2015-11-16 12:25 - 2015-11-16 12:25 - 00001138 _____ C:\Users\Pavel\Desktop\Format Factory.lnk
2015-11-16 12:25 - 2015-11-16 12:25 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
2015-11-16 12:25 - 2015-11-16 12:25 - 00000000 ____D C:\FFOutput
2015-11-16 12:23 - 2015-11-16 12:25 - 00000000 ____D C:\Program Files (x86)\FormatFactory
2015-11-16 12:21 - 2015-11-16 12:23 - 56021632 _____ (Free Time) C:\Users\Pavel\Downloads\FFSetup3.8.0.0.exe
2015-11-16 12:20 - 2015-11-16 12:20 - 02027848 _____ (Free Time) C:\Users\Pavel\Downloads\FFInstOnline.exe
2015-11-15 13:43 - 2015-11-15 13:43 - 02017096 _____ (Link64 GmbH) C:\Users\Pavel\Downloads\VDU_install.exe
2015-11-15 12:47 - 2015-11-15 12:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-11-11 18:52 - 2015-11-11 18:52 - 00000254 _____ C:\WINDOWS\system32\TeamViewer11_Hooks.log
2015-11-11 18:29 - 2015-11-05 06:15 - 08020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-11-11 18:29 - 2015-11-05 06:15 - 00541024 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2015-11-11 18:29 - 2015-11-05 06:14 - 00459104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2015-11-11 18:29 - 2015-11-05 06:13 - 00577888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2015-11-11 18:29 - 2015-11-05 06:11 - 01392480 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-11-11 18:29 - 2015-11-05 06:06 - 03621248 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-11-11 18:29 - 2015-11-05 06:06 - 00966416 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2015-11-11 18:29 - 2015-11-05 06:01 - 00607408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2015-11-11 18:29 - 2015-11-05 05:56 - 01083072 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2015-11-11 18:29 - 2015-11-05 05:56 - 00116064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys
2015-11-11 18:29 - 2015-11-05 05:56 - 00025280 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2015-11-11 18:29 - 2015-11-05 05:30 - 00961376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2015-11-11 18:29 - 2015-11-05 05:24 - 02878512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-11-11 18:29 - 2015-11-05 05:23 - 00762888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2015-11-11 18:29 - 2015-11-05 05:23 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2015-11-11 18:29 - 2015-11-05 05:20 - 21873664 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-11-11 18:29 - 2015-11-05 05:18 - 24597504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-11-11 18:29 - 2015-11-05 05:18 - 03248128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-11-11 18:29 - 2015-11-05 05:18 - 00539728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2015-11-11 18:29 - 2015-11-05 05:17 - 02418688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-11-11 18:29 - 2015-11-05 05:12 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\internetmail.dll
2015-11-11 18:29 - 2015-11-05 05:11 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2015-11-11 18:29 - 2015-11-05 05:10 - 12504064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-11-11 18:29 - 2015-11-05 05:10 - 02987520 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2015-11-11 18:29 - 2015-11-05 05:07 - 01068032 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-11-11 18:29 - 2015-11-05 05:06 - 00453120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2015-11-11 18:29 - 2015-11-05 05:05 - 01602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-11-11 18:29 - 2015-11-05 05:05 - 00826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-11-11 18:29 - 2015-11-05 05:03 - 02180608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-11-11 18:29 - 2015-11-05 05:03 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2015-11-11 18:29 - 2015-11-05 05:01 - 00949760 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2015-11-11 18:29 - 2015-11-05 05:01 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2015-11-11 18:29 - 2015-11-05 05:01 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-11-11 18:29 - 2015-11-05 04:59 - 03587072 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-11-11 18:29 - 2015-11-05 04:59 - 02675200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2015-11-11 18:29 - 2015-11-05 04:58 - 01383936 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-11-11 18:29 - 2015-11-05 04:58 - 00627712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2015-11-11 18:29 - 2015-11-05 04:56 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-11-11 18:29 - 2015-11-05 04:55 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2015-11-11 18:29 - 2015-11-05 04:54 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2015-11-11 18:29 - 2015-11-05 04:47 - 19326464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-11-11 18:29 - 2015-11-05 04:42 - 02647040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2015-11-11 18:29 - 2015-11-05 04:40 - 01918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-11-11 18:29 - 2015-11-05 04:35 - 18803712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2015-11-11 18:29 - 2015-11-05 04:35 - 02639872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2015-11-11 18:29 - 2015-11-05 04:34 - 00311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2015-11-11 18:29 - 2015-11-05 04:33 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-11-11 18:29 - 2015-11-05 04:33 - 00650240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-11-11 18:29 - 2015-11-05 04:30 - 00767488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2015-11-11 18:29 - 2015-11-05 04:28 - 11262976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-11-11 18:29 - 2015-11-05 04:27 - 02049536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2015-11-11 18:29 - 2015-11-05 04:27 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2015-11-11 18:29 - 2015-11-05 04:23 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll
2015-11-11 18:27 - 2015-11-11 18:35 - 25041373 _____ C:\Users\Pavel\Downloads\Swingers Club Creampied Gangbang HClips - Private Home Clips.mp4
2015-11-08 18:58 - 2015-11-08 18:58 - 06539752 _____ (Tim Kosse) C:\Users\Pavel\Downloads\FileZilla_3.14.1_win64-setup.exe
2015-11-08 18:56 - 2015-11-08 18:56 - 02910856 _____ C:\Users\Pavel\Downloads\mp3tagv272setup.exe
2015-11-08 18:56 - 2015-11-08 18:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mp3tag
2015-11-08 18:53 - 2015-11-11 18:52 - 00001042 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk
2015-11-08 18:53 - 2015-11-11 18:52 - 00001030 _____ C:\Users\Public\Desktop\TeamViewer 11.lnk
2015-11-08 18:52 - 2015-11-08 18:52 - 09520432 _____ (TeamViewer GmbH) C:\Users\Pavel\Downloads\TeamViewer_Setup_cs.exe
2015-11-08 18:49 - 2015-11-08 18:50 - 06853552 _____ (TeamViewer) C:\Users\Pavel\Downloads\TeamViewerQS_cs.exe
2015-11-08 10:11 - 2015-11-08 11:11 - 143239549 _____ C:\Users\Pavel\Downloads\Pipe Dreams 007 by Olga Misty - on Progressive.Beats 10.08.15.rar
2015-11-06 21:47 - 2015-11-13 03:44 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-11-04 16:18 - 2015-11-04 16:19 - 40870010 _____ C:\Users\Pavel\Downloads\World_of_DNB.mp4
2015-10-30 20:36 - 2015-10-30 20:36 - 00000000 ____D C:\Users\Pavel\Documents\SelfMV
2015-10-30 20:34 - 2015-10-30 20:34 - 00206080 _____ (DEVGURU Co., LTD.(http://www.devguru.co.kr)) C:\WINDOWS\system32\Drivers\ssudserd.sys
2015-10-30 20:32 - 2015-10-30 20:32 - 00001785 _____ C:\Users\Pavel\Desktop\Samsung Kies.lnk
2015-10-30 20:32 - 2015-10-30 20:32 - 00000000 ____D C:\Users\Public\Documents\NativeFus_Log
2015-10-30 20:32 - 2015-10-30 20:32 - 00000000 ____D C:\Users\Pavel\Documents\samsung
2015-10-30 20:32 - 2015-10-30 20:32 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\Samsung
2015-10-30 20:32 - 2015-10-30 20:32 - 00000000 ____D C:\Users\Pavel\AppData\Local\Samsung
2015-10-30 20:32 - 2015-05-21 07:02 - 00206080 _____ (DEVGURU Co., LTD.(http://www.devguru.co.kr)) C:\WINDOWS\system32\Drivers\ssudmdm.sys
2015-10-30 20:17 - 2015-10-30 20:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
2015-10-30 20:17 - 2015-05-21 07:02 - 00110720 _____ (DEVGURU Co., LTD.(http://www.devguru.co.kr)) C:\WINDOWS\system32\Drivers\ssudbus.sys
2015-10-30 20:17 - 2013-12-30 10:53 - 04659712 _____ (Dmitry Streblechenko) C:\WINDOWS\SysWOW64\Redemption.dll
2015-10-30 20:17 - 2013-12-30 10:53 - 00144664 _____ (MAPILab Ltd. & Add-in Express Ltd.) C:\WINDOWS\SysWOW64\secman.dll
2015-10-30 20:16 - 2015-10-30 20:29 - 00000000 ____D C:\Program Files (x86)\Samsung
2015-10-30 20:16 - 2015-10-30 20:18 - 00000000 ____D C:\ProgramData\Samsung
2015-10-30 20:15 - 2015-10-30 20:15 - 00000000 ____D C:\Users\Pavel\AppData\Local\Downloaded Installations
2015-10-30 20:14 - 2015-10-30 20:15 - 78749536 _____ (Samsung Electronics Co., Ltd.) C:\Users\Pavel\Downloads\KiesSetup.exe
2015-10-28 16:28 - 2015-10-28 16:28 - 00001113 _____ C:\Users\Public\Desktop\ID-Ware Lite.lnk
2015-10-28 16:28 - 2015-10-28 16:28 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ID-Karta
2015-10-28 16:28 - 2015-10-28 16:28 - 00000000 ____D C:\Program Files (x86)\IDWareLiteDemo
2015-10-28 13:18 - 2015-10-28 13:18 - 00000000 ____D C:\Users\Pavel\Downloads\Demo
2015-10-28 13:17 - 2015-10-28 13:17 - 15006609 _____ C:\Users\Pavel\Downloads\Demo.zip
2015-10-28 11:45 - 2015-10-28 12:18 - 00000000 ____D C:\Users\Pavel\Documents\zaloha_sd_xperiaZ3
2015-10-28 11:14 - 2015-10-28 11:14 - 14021336 _____ C:\Users\Pavel\Downloads\Time_Start_Kit_Setup.exe
2015-10-27 21:29 - 2015-10-27 21:30 - 00000000 ____D C:\Users\Pavel\AppData\Local\Microsoft Help
2015-10-26 16:05 - 2015-10-26 16:09 - 00117995 _____ C:\Users\Pavel\Downloads\config_defaults_inc.php
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-11-22 07:01 - 2015-09-07 20:23 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\Skype
2015-11-22 06:58 - 2015-09-09 19:46 - 00000982 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-11-22 06:57 - 2015-09-09 19:46 - 00000978 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-11-22 06:55 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-11-22 06:54 - 2015-10-18 10:38 - 00000000 ____D C:\Users\Pavel\AppData\Local\CrashDumps
2015-11-22 06:52 - 2015-09-06 08:36 - 00000000 ____D C:\Users\Pavel\AppData\Local\Adobe
2015-11-22 06:52 - 2015-09-05 22:25 - 00004200 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{B924847C-3397-4024-8214-B7C40ACA46BB}
2015-11-22 06:50 - 2015-09-05 11:11 - 00000000 ___RD C:\Users\Pavel\OneDrive
2015-11-22 06:50 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\sru
2015-11-22 06:49 - 2015-09-05 16:40 - 00000924 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job
2015-11-22 06:49 - 2015-09-05 08:58 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-11-22 06:49 - 2015-01-25 00:41 - 00028768 _____ C:\WINDOWS\SysWOW64\Gms.log
2015-11-22 00:45 - 2015-09-05 16:40 - 00000928 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job
2015-11-22 00:27 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-11-22 00:14 - 2015-07-10 13:22 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log
2015-11-22 00:13 - 2015-07-10 13:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-11-22 00:13 - 2015-07-10 13:20 - 04869936 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-11-22 00:12 - 2015-09-05 08:52 - 00020490 _____ C:\WINDOWS\PFRO.log
2015-11-22 00:12 - 2015-07-10 10:05 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-11-21 19:16 - 2015-09-05 09:01 - 00000000 ____D C:\Users\Pavel
2015-11-21 18:54 - 2015-09-07 20:23 - 00000000 ____D C:\ProgramData\Skype
2015-11-21 17:53 - 2015-09-05 12:43 - 00000000 ____D C:\Program Files (x86)\Google
2015-11-21 08:03 - 2015-09-27 10:01 - 00000000 ____D C:\Program Files (x86)\Sony Mobile
2015-11-20 21:15 - 2015-09-05 12:10 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2015-11-19 18:47 - 2015-09-27 09:58 - 00002101 _____ C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk
2015-11-19 18:47 - 2015-09-27 09:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-11-19 18:47 - 2015-01-25 00:33 - 00149586 _____ C:\WINDOWS\DPINST.LOG
2015-11-19 18:47 - 2015-01-25 00:28 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-11-18 16:07 - 2015-10-07 13:20 - 00003944 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1444220438
2015-11-18 16:07 - 2015-10-07 13:20 - 00001122 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2015-11-18 16:07 - 2015-10-07 13:20 - 00000000 ____D C:\Program Files (x86)\Opera
2015-11-17 08:22 - 2015-09-05 09:14 - 01765712 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-11-17 08:22 - 2015-07-10 17:02 - 00747686 _____ C:\WINDOWS\system32\perfh005.dat
2015-11-17 08:22 - 2015-07-10 17:02 - 00150086 _____ C:\WINDOWS\system32\perfc005.dat
2015-11-16 17:48 - 2015-10-04 11:44 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\Mp3tag
2015-11-15 13:43 - 2015-09-07 17:32 - 00000933 _____ C:\Users\Pavel\Desktop\Video Downloader Ultimate.lnk
2015-11-15 13:43 - 2015-09-07 17:32 - 00000000 ____D C:\ProgramData\VideoDownloaderUltimateWinApp
2015-11-15 12:48 - 2015-01-25 00:50 - 00000000 ____D C:\Program Files (x86)\Dropbox
2015-11-13 15:21 - 2015-09-05 13:19 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-11-13 15:12 - 2015-09-05 13:18 - 145617392 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-11-13 04:07 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\rescache
2015-11-13 03:59 - 2015-09-09 19:47 - 00002262 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-11-13 03:52 - 2015-01-25 00:43 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2015-11-13 03:51 - 2015-01-25 00:32 - 00000000 ____D C:\Program Files\Dell
2015-11-13 03:44 - 2015-09-04 22:08 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-11-13 03:42 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-11-13 03:35 - 2015-07-10 11:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-11-11 18:17 - 2015-09-04 21:58 - 00000000 ____D C:\Users\Pavel\AppData\Local\Packages
2015-11-08 18:58 - 2015-10-04 09:11 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\Notepad++
2015-11-08 18:58 - 2015-10-03 19:51 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\FileZilla
2015-11-08 18:58 - 2015-10-03 19:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2015-11-08 18:58 - 2015-10-03 19:51 - 00000000 ____D C:\Program Files\FileZilla FTP Client
2015-11-08 18:56 - 2015-10-04 11:44 - 00001050 _____ C:\Users\Public\Desktop\Mp3tag.lnk
2015-11-08 18:56 - 2015-10-04 11:44 - 00000000 ____D C:\Program Files (x86)\Mp3tag
2015-11-08 18:51 - 2015-09-05 22:27 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\TeamViewer
2015-11-08 14:51 - 2015-07-10 13:20 - 00034269 _____ C:\WINDOWS\setupact.log
2015-11-04 16:22 - 2015-09-04 22:36 - 00001284 _____ C:\Users\Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\GOM Player.lnk
2015-11-04 16:22 - 2015-09-04 22:36 - 00001260 _____ C:\Users\Public\Desktop\GOM Player.lnk
2015-11-03 19:20 - 2015-07-10 12:06 - 00810488 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-11-03 19:20 - 2015-07-10 12:06 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-11-03 17:34 - 2015-09-06 17:18 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2015-11-03 17:32 - 2015-09-06 17:18 - 00003972 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2015-10-30 19:02 - 2015-09-05 11:11 - 00002402 _____ C:\Users\Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-10-30 08:25 - 2015-09-05 12:08 - 00000000 ____D C:\Program Files\Microsoft Office 15
2015-10-28 11:15 - 2015-09-04 21:58 - 00000000 ____D C:\Users\Pavel\AppData\Local\VirtualStore
==================== Files in the root of some directories =======
2015-10-04 17:00 - 2015-10-04 17:00 - 0000132 _____ () C:\Users\Pavel\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2015-09-27 11:38 - 2015-09-27 11:38 - 225111747 _____ () C:\Users\Pavel\AppData\Local\ACCCx3_3_0_151.zip.aamdownload
2015-09-27 11:38 - 2015-09-27 11:38 - 0002615 _____ () C:\Users\Pavel\AppData\Local\ACCCx3_3_0_151.zip.aamdownload.aamd
2015-09-06 15:14 - 2015-10-08 00:47 - 0001480 _____ () C:\Users\Pavel\AppData\Local\Adobe Uložit pro web 13.0 Prefs
2015-09-05 08:58 - 2015-09-05 08:58 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2015-01-25 00:32 - 2015-01-25 00:32 - 0000121 _____ () C:\ProgramData\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log
2015-01-25 00:29 - 2015-01-25 00:30 - 0000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log
2015-01-25 00:30 - 2015-01-25 00:31 - 0000111 _____ () C:\ProgramData\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}.log
2015-01-25 00:31 - 2015-01-25 00:32 - 0000108 _____ () C:\ProgramData\{B46BEA36-0B71-4A4E-AE41-87241643FA0A}.log
2015-01-25 00:28 - 2015-01-25 00:29 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
Some files in TEMP:
====================
C:\Users\Pavel\AppData\Local\Temp\AdobeApplicationManager.exe
C:\Users\Pavel\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpmihzps.dll
C:\Users\Pavel\AppData\Local\Temp\ExPromo.exe
C:\Users\Pavel\AppData\Local\Temp\InstHelper.exe
C:\Users\Pavel\AppData\Local\Temp\McCSPInstall.dll
C:\Users\Pavel\AppData\Local\Temp\mccspuninstall.exe
C:\Users\Pavel\AppData\Local\Temp\npp.6.8.6.Installer.exe
C:\Users\Pavel\AppData\Local\Temp\SetupHomeStudentRetail.x86.cs-CZ_HomeStudentRetail_N3JYG-CT3H8-2WKT7-CM6P2-MPW9R_act_1_.exe
C:\Users\Pavel\AppData\Local\Temp\xmlUpdater.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-11-11 18:48
==================== End of FRST.txt ============================