pomalý počítač
Napsal: 06 čer 2016 19:57
zdravím,
prosím o kontrolu logu, počítač je pomalý, procesor je trvale zaneprázdněn minimálně z 30 procent nečinnými soubory.
díky za pomoc.
log:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:05-06-2016 02
Ran by Tomáš (administrator) on TOMÁŠ-PC (06-06-2016 20:38:27)
Running from C:\Users\Tomáš\Desktop
Loaded Profiles: Tomáš (Available Profiles: Tomáš)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Software602 a.s.) C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\$GetCurrent\media\setup.exe
(Microsoft Corporation) C:\$GetCurrent\media\sources\setupprep.exe
(Microsoft Corporation) C:\$WINDOWS.~BT\Sources\SetupHost.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [976032 2011-09-16] (Atheros Communications)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [6108752 2016-01-12] (AVAST Software)
HKLM\...\RunOnce: [!GetCurrentRollback] => C:\Windows10Upgrade\GetCurrentRollback.exe [73416 2016-05-20] (Microsoft Corporation)
HKU\S-1-5-21-2046303120-218891254-975205269-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8686296 2016-03-11] (Piriform Ltd)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-07-24] (AVAST Software)
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => No File
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ADnews.lnk [2016-06-06]
ShortcutTarget: ADnews.lnk -> C:\Auto-diagnostika\ADnews.exe (AutoComSoft s.r.o.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.10.5.254
Tcpip\..\Interfaces\{EDBB9F84-D2F2-402A-8BB1-BA5B71EE2CB4}: [DhcpNameServer] 10.10.5.254
Tcpip\..\Interfaces\{F34F990D-540A-422F-A1CE-F27BA99A1E28}: [DhcpNameServer] 192.168.42.129
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-2046303120-218891254-975205269-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-2046303120-218891254-975205269-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-2046303120-218891254-975205269-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/
SearchScopes: HKLM-x32 -> DefaultScope value is missing
SearchScopes: HKU\S-1-5-21-2046303120-218891254-975205269-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?pc=COSP&ptag=D03141 ... earchTerms}
SearchScopes: HKU\S-1-5-21-2046303120-218891254-975205269-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?pc=COSP&ptag=D03141 ... earchTerms}
SearchScopes: HKU\S-1-5-21-2046303120-218891254-975205269-1000 -> {B4D01201-3566-4789-8B0B-2DAA10D1899C} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_16194
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2012-12-31] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-07-24] (AVAST Software)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-12-31] (Oracle Corporation)
BHO-x32: No Name -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> No File
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2012-09-15] (Oracle Corporation)
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-09-16] (Atheros Commnucations)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-07-24] (AVAST Software)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2012-09-15] (Oracle Corporation)
FireFox:
========
FF ProfilePath: C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\ywfqmu3w.default
FF Homepage: WWW.SEZNAM.CZ
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_21_0_0_197.dll [2016-03-23] ()
FF Plugin: @java.com/DTPlugin,version=10.10.2 -> C:\Windows\system32\npDeployJava1.dll [2012-12-31] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.10.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2012-12-31] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_197.dll [2016-03-23] ()
FF Plugin-x32: @java.com/DTPlugin,version=10.7.2 -> C:\Windows\SysWOW64\npDeployJava1.dll [2012-09-15] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.7.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2012-09-15] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @real.com/nppl3260;version=15.0.6.14 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll [2012-09-26] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprjplug;version=15.0.6.14 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprjplug.dll [2012-09-26] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpchromebrowserrecordext;version=15.0.6.14 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll [No File]
FF Plugin-x32: @real.com/nprphtml5videoshim;version=15.0.6.14 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll [No File]
FF Plugin-x32: @real.com/nprpplugin;version=15.0.6.14 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll [2012-09-26] (RealPlayer)
FF Plugin-x32: @software602.cz/602XML Filler -> C:\Program Files (x86)\Software602\602XML\Filler\npfiller.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-03] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-03] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2015-09-24] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2046303120-218891254-975205269-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Tomáš\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2016-03-11] (Unity Technologies ApS)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-05-22] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [{0153E448-190B-4987-BDE1-F256CADA672F}] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext => not found
Chrome:
=======
CHR HKU\S-1-5-21-2046303120-218891254-975205269-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\TOM~1\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-07-24]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 602XML Updater; C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [85344 2011-10-10] (Software602 a.s.)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [105120 2011-09-16] (Atheros Commnucations) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600 2015-07-24] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4047768 2015-07-24] (Avast Software)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 androidusb; no ImagePath
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-07-24] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [90968 2015-07-24] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-07-24] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-07-24] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1059656 2016-01-12] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [449992 2016-01-12] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [150160 2015-07-24] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [274808 2015-07-24] (AVAST Software)
S2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [310984 2014-09-06] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-05-03] (DT Soft Ltd)
S3 E100B; C:\Windows\System32\DRIVERS\efe5b32e.sys [192256 2009-06-10] (Intel Corporation)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 IT9135BDA; C:\Windows\System32\Drivers\IT9135BDA.sys [113280 2010-02-03] (ITE )
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [42696 2012-05-10] ()
R0 ngvss; C:\Windows\System32\Drivers\ngvss.sys [115152 2015-07-24] (AVAST Software)
S3 smhwdev; no ImagePath
S3 smhwser; no ImagePath
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [273824 2015-07-24] (Avast Software)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 massfilter_hs; \??\C:\Windows\system32\drivers\massfilter_hs.sys [X]
S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [X]
S3 vpnva; system32\DRIVERS\vpnva64.sys [X]
S3 zghsmdm; system32\DRIVERS\zghsmdm.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-06-06 20:38 - 2016-06-06 20:39 - 00012935 _____ C:\Users\Tomáš\Desktop\FRST.txt
2016-06-06 20:28 - 2016-06-06 20:29 - 02384896 _____ (Farbar) C:\Users\Tomáš\Desktop\FRST64.exe
2016-06-06 20:13 - 2016-06-06 20:13 - 00000000 _____ C:\Users\Tomáš\Downloads\Hobit.Bitva.pěti.armád.2014.Extended.Edition.BDRip.DD5.1.x264.CZ.mkv
2016-06-06 20:00 - 2016-06-06 20:00 - 00000000 ____D C:\Users\Tomáš\Downloads\Vag-com-304.409-(CZE-US)+-VIS-3.0-popis-zavad
2016-06-06 18:48 - 2016-06-06 18:48 - 00000000 ____D C:\Program Files\Vag-Com Crack Copy
2016-06-06 18:28 - 2016-06-06 18:28 - 00000000 ____D C:\ProgramData\xStarter
2016-06-06 18:27 - 2016-06-06 19:20 - 00000000 ____D C:\Program Files (x86)\xStarter
2016-06-06 18:03 - 2016-06-06 18:03 - 00000000 ____D C:\Users\Tomáš\AppData\Roaming\TeamViewer
2016-06-06 17:47 - 2016-06-06 17:47 - 00000000 ____D C:\Program Files\DIFX
2016-06-06 17:46 - 2016-06-06 20:11 - 1361696397 _____ C:\Users\Tomáš\Downloads\Hobit.Bitva.pěti.armád.2014.Extended.Edition.BDRip.DD5.1.x264.CZ.mkv.part
2016-06-06 17:43 - 2016-06-06 17:43 - 00000702 _____ C:\Users\Tomáš\Desktop\Auto-diagnostika .lnk
2016-06-06 17:43 - 2016-06-06 17:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auto-diagnostika
2016-06-06 17:39 - 2016-06-06 18:07 - 00000000 ____D C:\Auto-diagnostika
2016-06-06 16:50 - 2016-06-06 17:35 - 57783536 _____ (AutoComSoft s.r.o.) C:\Users\Tomáš\Downloads\VAG-COM-PROFI-2015-SKODAHOME_cz.exe
2016-06-06 16:45 - 2016-06-06 16:45 - 00003312 _____ C:\Windows\System32\Tasks\{7EDAC074-73CB-4238-AA2F-C02CCE9714B5}
2016-06-06 16:37 - 2016-06-06 16:37 - 00000000 ____D C:\Users\Tomáš\Downloads\Scanmaster-ELM-2.1-CZ-Aktualizace
2016-06-06 16:33 - 2016-06-06 16:36 - 00000000 ____D C:\Users\Tomáš\AppData\Roaming\ScanMaster-ELM
2016-06-06 16:33 - 2016-06-06 16:33 - 00001896 _____ C:\Users\Tomáš\Desktop\ScanMaster-ELM.lnk
2016-06-06 16:33 - 2016-06-06 16:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScanMaster-ELM
2016-06-06 16:31 - 2016-06-06 16:49 - 00000000 ____D C:\Users\Tomáš\Downloads\ScanMaster--ELM-v2.1-pc
2016-06-06 05:19 - 2016-06-06 16:36 - 00000000 ____D C:\Program Files\WGSoft
2016-06-05 23:12 - 2016-06-06 04:20 - 00000000 ___HD C:\$WINDOWS.~BT
2016-06-05 23:12 - 2016-06-05 23:12 - 00001890 _____ C:\Windows\diagwrn.xml
2016-06-05 23:12 - 2016-06-05 23:12 - 00001890 _____ C:\Windows\diagerr.xml
2016-06-05 22:58 - 2016-06-06 18:25 - 00000034 _____ C:\Windows\progress.ini
2016-06-05 22:31 - 2016-06-05 22:31 - 00000000 ____D C:\Users\Tomáš\AppData\LocalLow\Adobe
2016-06-05 22:11 - 2016-06-06 18:26 - 00000000 ___HD C:\$GetCurrent
2016-06-05 22:10 - 2016-06-06 18:26 - 00000000 ____D C:\Windows10Upgrade
2016-06-05 22:10 - 2016-06-06 16:19 - 00000694 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pomocník při upgradu na Windows 10.lnk
2016-06-05 22:10 - 2016-06-06 16:19 - 00000682 _____ C:\Users\Tomáš\Desktop\Pomocník při upgradu na Windows 10.lnk
2016-06-05 22:10 - 2016-06-05 22:10 - 05704712 _____ (Microsoft Corporation) C:\Users\Tomáš\Downloads\Windows10Upgrade9194.exe
2016-05-22 18:58 - 2015-07-24 08:45 - 00378880 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2016-05-15 18:52 - 2016-05-15 18:52 - 00001304 _____ C:\Users\Tomáš\Desktop\Notepad.lnk
2016-05-15 09:26 - 2016-05-15 09:26 - 00000000 _____ C:\AILog.txt
2016-05-11 07:53 - 2016-05-11 07:53 - 00000000 ___SD C:\ComboFix
2016-05-11 07:17 - 2016-05-11 07:17 - 00000000 ____D C:\ProgramData\iWin
2016-05-11 07:16 - 2016-05-11 07:53 - 00000000 ____D C:\Qoobox
2016-05-10 14:44 - 2016-05-10 14:44 - 00000000 ____D C:\ProgramData\aliasworlds
2016-05-10 14:19 - 2016-05-10 14:56 - 636007450 _____ C:\Users\Tomáš\Downloads\LETs-DANCE-4---REVOLUTION--drama,hudební,taneční,romantický--USA-----------------(2012)--cz.avi
2016-05-07 18:05 - 2016-05-08 14:23 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-06-06 20:38 - 2014-03-04 12:53 - 00000000 ____D C:\FRST
2016-06-06 20:28 - 2009-07-14 17:18 - 00669132 _____ C:\Windows\system32\perfh005.dat
2016-06-06 20:28 - 2009-07-14 17:18 - 00141760 _____ C:\Windows\system32\perfc005.dat
2016-06-06 20:28 - 2009-07-14 07:13 - 01584626 _____ C:\Windows\system32\PerfStringBackup.INI
2016-06-06 20:28 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf
2016-06-06 19:42 - 2012-05-22 09:58 - 00000000 ____D C:\Users\Tomáš\AppData\Local\CrashDumps
2016-06-06 19:29 - 2016-03-27 23:21 - 00000000 ____D C:\Users\Tomáš\AppData\Local\VirtualStore
2016-06-06 18:27 - 2009-07-14 06:45 - 00022464 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-06-06 18:27 - 2009-07-14 06:45 - 00022464 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-06-05 23:12 - 2012-05-02 20:14 - 00000000 ____D C:\Windows\Panther
2016-06-05 22:31 - 2016-03-26 20:56 - 00000000 ____D C:\Users\Tomáš\AppData\Roaming\Adobe
2016-06-05 21:57 - 2012-07-29 20:25 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2016-06-05 21:55 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-05-22 18:59 - 2015-03-02 15:40 - 00001922 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2016-05-22 18:59 - 2015-03-02 15:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2016-05-15 18:51 - 2012-11-10 22:50 - 00000000 ____D C:\Users\Tomáš\AppData\Roaming\.minecraft
2016-05-11 07:15 - 2015-03-23 13:46 - 00000000 ____D C:\Windows\erdnt
2016-05-10 13:17 - 2013-03-02 17:36 - 00000000 ____D C:\Fotky
2016-05-10 13:13 - 2012-06-19 09:50 - 00000000 ____D C:\FILMY
2016-05-08 14:23 - 2012-05-02 20:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
==================== Files in the root of some directories =======
2014-05-05 17:41 - 2014-05-05 17:41 - 0004096 ____H () C:\Users\Tomáš\AppData\Local\keyfile3.drm
2014-06-29 22:50 - 2014-06-29 22:50 - 0007607 _____ () C:\Users\Tomáš\AppData\Local\Resmon.ResmonCfg
Some files in TEMP:
====================
C:\Users\Tomáš\AppData\Local\Temp\dskinengine.dll
C:\Users\Tomáš\AppData\Local\Temp\i4jdel0.exe
C:\Users\Tomáš\AppData\Local\Temp\i4jdel1.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-05-31 01:43
==================== End of FRST.txt ============================
prosím o kontrolu logu, počítač je pomalý, procesor je trvale zaneprázdněn minimálně z 30 procent nečinnými soubory.
díky za pomoc.
log:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:05-06-2016 02
Ran by Tomáš (administrator) on TOMÁŠ-PC (06-06-2016 20:38:27)
Running from C:\Users\Tomáš\Desktop
Loaded Profiles: Tomáš (Available Profiles: Tomáš)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Software602 a.s.) C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\$GetCurrent\media\setup.exe
(Microsoft Corporation) C:\$GetCurrent\media\sources\setupprep.exe
(Microsoft Corporation) C:\$WINDOWS.~BT\Sources\SetupHost.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [976032 2011-09-16] (Atheros Communications)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [6108752 2016-01-12] (AVAST Software)
HKLM\...\RunOnce: [!GetCurrentRollback] => C:\Windows10Upgrade\GetCurrentRollback.exe [73416 2016-05-20] (Microsoft Corporation)
HKU\S-1-5-21-2046303120-218891254-975205269-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8686296 2016-03-11] (Piriform Ltd)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-07-24] (AVAST Software)
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => No File
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ADnews.lnk [2016-06-06]
ShortcutTarget: ADnews.lnk -> C:\Auto-diagnostika\ADnews.exe (AutoComSoft s.r.o.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.10.5.254
Tcpip\..\Interfaces\{EDBB9F84-D2F2-402A-8BB1-BA5B71EE2CB4}: [DhcpNameServer] 10.10.5.254
Tcpip\..\Interfaces\{F34F990D-540A-422F-A1CE-F27BA99A1E28}: [DhcpNameServer] 192.168.42.129
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-2046303120-218891254-975205269-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-2046303120-218891254-975205269-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-2046303120-218891254-975205269-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/
SearchScopes: HKLM-x32 -> DefaultScope value is missing
SearchScopes: HKU\S-1-5-21-2046303120-218891254-975205269-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?pc=COSP&ptag=D03141 ... earchTerms}
SearchScopes: HKU\S-1-5-21-2046303120-218891254-975205269-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?pc=COSP&ptag=D03141 ... earchTerms}
SearchScopes: HKU\S-1-5-21-2046303120-218891254-975205269-1000 -> {B4D01201-3566-4789-8B0B-2DAA10D1899C} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_16194
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2012-12-31] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-07-24] (AVAST Software)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-12-31] (Oracle Corporation)
BHO-x32: No Name -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> No File
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2012-09-15] (Oracle Corporation)
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-09-16] (Atheros Commnucations)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-07-24] (AVAST Software)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2012-09-15] (Oracle Corporation)
FireFox:
========
FF ProfilePath: C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\ywfqmu3w.default
FF Homepage: WWW.SEZNAM.CZ
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_21_0_0_197.dll [2016-03-23] ()
FF Plugin: @java.com/DTPlugin,version=10.10.2 -> C:\Windows\system32\npDeployJava1.dll [2012-12-31] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.10.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2012-12-31] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_197.dll [2016-03-23] ()
FF Plugin-x32: @java.com/DTPlugin,version=10.7.2 -> C:\Windows\SysWOW64\npDeployJava1.dll [2012-09-15] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.7.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2012-09-15] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @real.com/nppl3260;version=15.0.6.14 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll [2012-09-26] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprjplug;version=15.0.6.14 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprjplug.dll [2012-09-26] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpchromebrowserrecordext;version=15.0.6.14 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll [No File]
FF Plugin-x32: @real.com/nprphtml5videoshim;version=15.0.6.14 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll [No File]
FF Plugin-x32: @real.com/nprpplugin;version=15.0.6.14 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll [2012-09-26] (RealPlayer)
FF Plugin-x32: @software602.cz/602XML Filler -> C:\Program Files (x86)\Software602\602XML\Filler\npfiller.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-03] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-03] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2015-09-24] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2046303120-218891254-975205269-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Tomáš\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2016-03-11] (Unity Technologies ApS)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-05-22] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [{0153E448-190B-4987-BDE1-F256CADA672F}] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext => not found
Chrome:
=======
CHR HKU\S-1-5-21-2046303120-218891254-975205269-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\TOM~1\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-07-24]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 602XML Updater; C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [85344 2011-10-10] (Software602 a.s.)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [105120 2011-09-16] (Atheros Commnucations) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600 2015-07-24] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4047768 2015-07-24] (Avast Software)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 androidusb; no ImagePath
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-07-24] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [90968 2015-07-24] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-07-24] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-07-24] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1059656 2016-01-12] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [449992 2016-01-12] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [150160 2015-07-24] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [274808 2015-07-24] (AVAST Software)
S2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [310984 2014-09-06] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-05-03] (DT Soft Ltd)
S3 E100B; C:\Windows\System32\DRIVERS\efe5b32e.sys [192256 2009-06-10] (Intel Corporation)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 IT9135BDA; C:\Windows\System32\Drivers\IT9135BDA.sys [113280 2010-02-03] (ITE )
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [42696 2012-05-10] ()
R0 ngvss; C:\Windows\System32\Drivers\ngvss.sys [115152 2015-07-24] (AVAST Software)
S3 smhwdev; no ImagePath
S3 smhwser; no ImagePath
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [273824 2015-07-24] (Avast Software)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 massfilter_hs; \??\C:\Windows\system32\drivers\massfilter_hs.sys [X]
S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [X]
S3 vpnva; system32\DRIVERS\vpnva64.sys [X]
S3 zghsmdm; system32\DRIVERS\zghsmdm.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-06-06 20:38 - 2016-06-06 20:39 - 00012935 _____ C:\Users\Tomáš\Desktop\FRST.txt
2016-06-06 20:28 - 2016-06-06 20:29 - 02384896 _____ (Farbar) C:\Users\Tomáš\Desktop\FRST64.exe
2016-06-06 20:13 - 2016-06-06 20:13 - 00000000 _____ C:\Users\Tomáš\Downloads\Hobit.Bitva.pěti.armád.2014.Extended.Edition.BDRip.DD5.1.x264.CZ.mkv
2016-06-06 20:00 - 2016-06-06 20:00 - 00000000 ____D C:\Users\Tomáš\Downloads\Vag-com-304.409-(CZE-US)+-VIS-3.0-popis-zavad
2016-06-06 18:48 - 2016-06-06 18:48 - 00000000 ____D C:\Program Files\Vag-Com Crack Copy
2016-06-06 18:28 - 2016-06-06 18:28 - 00000000 ____D C:\ProgramData\xStarter
2016-06-06 18:27 - 2016-06-06 19:20 - 00000000 ____D C:\Program Files (x86)\xStarter
2016-06-06 18:03 - 2016-06-06 18:03 - 00000000 ____D C:\Users\Tomáš\AppData\Roaming\TeamViewer
2016-06-06 17:47 - 2016-06-06 17:47 - 00000000 ____D C:\Program Files\DIFX
2016-06-06 17:46 - 2016-06-06 20:11 - 1361696397 _____ C:\Users\Tomáš\Downloads\Hobit.Bitva.pěti.armád.2014.Extended.Edition.BDRip.DD5.1.x264.CZ.mkv.part
2016-06-06 17:43 - 2016-06-06 17:43 - 00000702 _____ C:\Users\Tomáš\Desktop\Auto-diagnostika .lnk
2016-06-06 17:43 - 2016-06-06 17:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auto-diagnostika
2016-06-06 17:39 - 2016-06-06 18:07 - 00000000 ____D C:\Auto-diagnostika
2016-06-06 16:50 - 2016-06-06 17:35 - 57783536 _____ (AutoComSoft s.r.o.) C:\Users\Tomáš\Downloads\VAG-COM-PROFI-2015-SKODAHOME_cz.exe
2016-06-06 16:45 - 2016-06-06 16:45 - 00003312 _____ C:\Windows\System32\Tasks\{7EDAC074-73CB-4238-AA2F-C02CCE9714B5}
2016-06-06 16:37 - 2016-06-06 16:37 - 00000000 ____D C:\Users\Tomáš\Downloads\Scanmaster-ELM-2.1-CZ-Aktualizace
2016-06-06 16:33 - 2016-06-06 16:36 - 00000000 ____D C:\Users\Tomáš\AppData\Roaming\ScanMaster-ELM
2016-06-06 16:33 - 2016-06-06 16:33 - 00001896 _____ C:\Users\Tomáš\Desktop\ScanMaster-ELM.lnk
2016-06-06 16:33 - 2016-06-06 16:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScanMaster-ELM
2016-06-06 16:31 - 2016-06-06 16:49 - 00000000 ____D C:\Users\Tomáš\Downloads\ScanMaster--ELM-v2.1-pc
2016-06-06 05:19 - 2016-06-06 16:36 - 00000000 ____D C:\Program Files\WGSoft
2016-06-05 23:12 - 2016-06-06 04:20 - 00000000 ___HD C:\$WINDOWS.~BT
2016-06-05 23:12 - 2016-06-05 23:12 - 00001890 _____ C:\Windows\diagwrn.xml
2016-06-05 23:12 - 2016-06-05 23:12 - 00001890 _____ C:\Windows\diagerr.xml
2016-06-05 22:58 - 2016-06-06 18:25 - 00000034 _____ C:\Windows\progress.ini
2016-06-05 22:31 - 2016-06-05 22:31 - 00000000 ____D C:\Users\Tomáš\AppData\LocalLow\Adobe
2016-06-05 22:11 - 2016-06-06 18:26 - 00000000 ___HD C:\$GetCurrent
2016-06-05 22:10 - 2016-06-06 18:26 - 00000000 ____D C:\Windows10Upgrade
2016-06-05 22:10 - 2016-06-06 16:19 - 00000694 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pomocník při upgradu na Windows 10.lnk
2016-06-05 22:10 - 2016-06-06 16:19 - 00000682 _____ C:\Users\Tomáš\Desktop\Pomocník při upgradu na Windows 10.lnk
2016-06-05 22:10 - 2016-06-05 22:10 - 05704712 _____ (Microsoft Corporation) C:\Users\Tomáš\Downloads\Windows10Upgrade9194.exe
2016-05-22 18:58 - 2015-07-24 08:45 - 00378880 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2016-05-15 18:52 - 2016-05-15 18:52 - 00001304 _____ C:\Users\Tomáš\Desktop\Notepad.lnk
2016-05-15 09:26 - 2016-05-15 09:26 - 00000000 _____ C:\AILog.txt
2016-05-11 07:53 - 2016-05-11 07:53 - 00000000 ___SD C:\ComboFix
2016-05-11 07:17 - 2016-05-11 07:17 - 00000000 ____D C:\ProgramData\iWin
2016-05-11 07:16 - 2016-05-11 07:53 - 00000000 ____D C:\Qoobox
2016-05-10 14:44 - 2016-05-10 14:44 - 00000000 ____D C:\ProgramData\aliasworlds
2016-05-10 14:19 - 2016-05-10 14:56 - 636007450 _____ C:\Users\Tomáš\Downloads\LETs-DANCE-4---REVOLUTION--drama,hudební,taneční,romantický--USA-----------------(2012)--cz.avi
2016-05-07 18:05 - 2016-05-08 14:23 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-06-06 20:38 - 2014-03-04 12:53 - 00000000 ____D C:\FRST
2016-06-06 20:28 - 2009-07-14 17:18 - 00669132 _____ C:\Windows\system32\perfh005.dat
2016-06-06 20:28 - 2009-07-14 17:18 - 00141760 _____ C:\Windows\system32\perfc005.dat
2016-06-06 20:28 - 2009-07-14 07:13 - 01584626 _____ C:\Windows\system32\PerfStringBackup.INI
2016-06-06 20:28 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf
2016-06-06 19:42 - 2012-05-22 09:58 - 00000000 ____D C:\Users\Tomáš\AppData\Local\CrashDumps
2016-06-06 19:29 - 2016-03-27 23:21 - 00000000 ____D C:\Users\Tomáš\AppData\Local\VirtualStore
2016-06-06 18:27 - 2009-07-14 06:45 - 00022464 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-06-06 18:27 - 2009-07-14 06:45 - 00022464 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-06-05 23:12 - 2012-05-02 20:14 - 00000000 ____D C:\Windows\Panther
2016-06-05 22:31 - 2016-03-26 20:56 - 00000000 ____D C:\Users\Tomáš\AppData\Roaming\Adobe
2016-06-05 21:57 - 2012-07-29 20:25 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2016-06-05 21:55 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-05-22 18:59 - 2015-03-02 15:40 - 00001922 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2016-05-22 18:59 - 2015-03-02 15:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2016-05-15 18:51 - 2012-11-10 22:50 - 00000000 ____D C:\Users\Tomáš\AppData\Roaming\.minecraft
2016-05-11 07:15 - 2015-03-23 13:46 - 00000000 ____D C:\Windows\erdnt
2016-05-10 13:17 - 2013-03-02 17:36 - 00000000 ____D C:\Fotky
2016-05-10 13:13 - 2012-06-19 09:50 - 00000000 ____D C:\FILMY
2016-05-08 14:23 - 2012-05-02 20:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
==================== Files in the root of some directories =======
2014-05-05 17:41 - 2014-05-05 17:41 - 0004096 ____H () C:\Users\Tomáš\AppData\Local\keyfile3.drm
2014-06-29 22:50 - 2014-06-29 22:50 - 0007607 _____ () C:\Users\Tomáš\AppData\Local\Resmon.ResmonCfg
Some files in TEMP:
====================
C:\Users\Tomáš\AppData\Local\Temp\dskinengine.dll
C:\Users\Tomáš\AppData\Local\Temp\i4jdel0.exe
C:\Users\Tomáš\AppData\Local\Temp\i4jdel1.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-05-31 01:43
==================== End of FRST.txt ============================