Stránka 1 z 1

Pomalý Internet

Napsal: 23 říj 2017 14:02
od predatorx21
Dobrý den,mám takový problem,posledních pár dnů se stránky v prohlížeči načítají neúměrně dlouho a dokonce se i stává že stránka hlásí že nefunguje ale po opětovném načtení již jede. Děkuji za Pomoc a přeji příjemný den.


Log

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 21-10-2017
Ran by Dominik (administrator) on DOMINIK-PC (23-10-2017 14:59:40)
Running from C:\Users\Dominik\Downloads
Loaded Profiles: Dominik (Available Profiles: Dominik)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe
(Power Software Ltd) C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\updatesrv.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\vsserv.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\vsservppl.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\bdagent.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Farbar) C:\Users\Dominik\Downloads\FRST64 (1).exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6548112 2012-06-12] (Realtek Semiconductor)
HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [406664 2016-05-25] (Power Software Ltd)
HKU\S-1-5-21-707951698-1732677806-592134114-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8455960 2015-08-20] (Piriform Ltd)
HKU\S-1-5-21-707951698-1732677806-592134114-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3101984 2017-10-17] (Valve Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{0AA83DC0-B66F-43FD-9DAD-56EA86565672}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-707951698-1732677806-592134114-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKU\S-1-5-21-707951698-1732677806-592134114-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll [2016-03-12] (Oracle Corporation)
BHO-x32: Pomocná služba pro přihlášení k účtu Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-03-12] (Oracle Corporation)

FireFox:
========
FF DefaultProfile: k63582xc.default
FF ProfilePath: C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\k63582xc.default [2017-10-23]
FF NewTab: Mozilla\Firefox\Profiles\k63582xc.default -> about:newtab
FF Homepage: Mozilla\Firefox\Profiles\k63582xc.default -> about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_25_0_0_171.dll [2017-05-23] ()
FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll [2017-05-23] ()
FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.73.2 -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\dtplugin\npDeployJava1.dll [2016-03-12] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.73.2 -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\plugin2\npjp2.dll [2016-03-12] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-06-08] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-06-08] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-10-21] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-10-21] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-08-01] (Adobe Systems Inc.)

Chrome:
=======
CHR Profile: C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default [2017-10-23]
CHR Extension: (Prezentace) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-21]
CHR Extension: (Dokumenty) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-21]
CHR Extension: (Disk Google) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-10-21]
CHR Extension: (YouTube) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-10-21]
CHR Extension: (Adobe Acrobat) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-10-21]
CHR Extension: (Tabulky) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-21]
CHR Extension: (Dokumenty Google offline) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-10-22]
CHR Extension: (AdBlock) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-10-22]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-10-21]
CHR Extension: (Gmail) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-10-21]
CHR Extension: (Chrome Media Router) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-10-21]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6058960 2017-08-07] (Malwarebytes)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [495224 2017-06-21] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [495224 2017-06-21] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462968 2017-06-08] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [450168 2017-06-21] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2120032 2017-09-25] (Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3000168 2017-09-25] (Electronic Arts)
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2016-04-02] ()
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2017-10-03] ()
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [1254736 2017-04-11] (Bitdefender)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5702416 2015-09-11] (TeamViewer GmbH)
R2 updatesrv; C:\Program Files\Bitdefender Antivirus Free\updatesrv.exe [100392 2017-08-29] (Bitdefender)
R2 vsserv; C:\Program Files\Bitdefender Antivirus Free\vsserv.exe [100392 2017-08-29] (Bitdefender)
R2 vsservppl; C:\Program Files\Bitdefender Antivirus Free\vsservppl.exe [100392 2017-08-29] (Bitdefender)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) <==== ATTENTION (no ServiceDLL)
R0 atc; C:\Windows\System32\DRIVERS\atc.sys [1019880 2017-10-13] (BitDefender S.R.L. Bucharest, ROMANIA)
R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [1763744 2017-08-29] (BitDefender)
S3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [878072 2016-09-20] (BitDefender)
R0 BdDci; C:\Windows\System32\DRIVERS\bddci.sys [155624 2017-10-19] (Bitdefender)
R3 edrsensor; C:\Windows\System32\DRIVERS\edrsensor.sys [250504 2017-10-03] (BitDefender S.R.L. Bucharest, ROMANIA)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [77440 2017-10-10] ()
R0 gzflt; C:\Windows\System32\drivers\gzflt.sys [187688 2017-07-24] (BitDefender LLC)
S3 MarvinBus; C:\Windows\System32\DRIVERS\MarvinBus64.sys [261120 2005-09-23] (Pinnacle Systems GmbH) [File not signed]
S3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [110016 2017-10-07] (Malwarebytes)
S3 MBAMProtection; C:\Windows\System32\DRIVERS\mbam.sys [45504 2017-10-07] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [252232 2017-10-23] (Malwarebytes)
S3 MBAMWebProtection; C:\Windows\System32\DRIVERS\mwac.sys [84256 2017-10-07] (Malwarebytes)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30328 2017-06-21] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [48248 2017-06-21] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [57976 2017-06-21] (NVIDIA Corporation)
S4 secdrv; C:\Windows\SysWow64\Drivers\secdrv.sys [18768 2017-07-25] () [File not signed]
R2 trufos; C:\Windows\System32\drivers\trufos.sys [520032 2016-06-22] (BitDefender S.R.L.)
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-10-21 13:26 - 2017-10-21 13:26 - 000002267 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-10-21 13:26 - 2017-10-21 13:26 - 000002255 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-10-21 13:25 - 2017-10-21 13:25 - 001130328 _____ (Google Inc.) C:\Users\Dominik\Downloads\ChromeSetup(2).exe
2017-10-21 13:25 - 2017-10-21 13:25 - 000003384 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2017-10-21 13:25 - 2017-10-21 13:25 - 000003256 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2017-10-20 23:38 - 2017-10-20 23:38 - 000000000 ____D C:\Users\Dominik\AppData\LocalLow\Kite Games
2017-10-20 23:37 - 2017-10-20 23:37 - 000001710 _____ C:\Users\Public\Desktop\Sudden Strike 4.lnk
2017-10-20 22:08 - 2017-10-20 22:16 - 000000000 ____D C:\Users\Dominik\Downloads\Sudden Strike 4 v1.01.19357 (14463) [GOG]
2017-10-20 22:07 - 2017-10-20 22:07 - 000014523 _____ C:\Users\Dominik\Downloads\[CzT]Sudden_Strike_4_Battle_of_Kursk_DLC_v_1_01_19357_2017_.torrent
2017-10-19 20:55 - 2017-10-19 20:55 - 008250832 _____ (Malwarebytes) C:\Users\Dominik\Downloads\adwcleaner_7.0.3.1 (1).exe
2017-10-19 10:38 - 2017-10-19 10:38 - 000155624 _____ (Bitdefender) C:\Windows\system32\Drivers\bddci.sys
2017-10-18 20:14 - 2017-10-18 20:34 - 000000000 ____D C:\Users\Dominik\Downloads\REC
2017-10-18 20:14 - 2017-10-18 20:14 - 000014796 _____ C:\Users\Dominik\Downloads\[CzT]REC_Rec_1_2_2007_2009_CZ_.torrent
2017-10-18 10:42 - 2017-10-23 09:59 - 000252232 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2017-10-17 21:31 - 2017-10-17 21:32 - 1002364168 _____ C:\Users\Dominik\Downloads\Fatherland - Beta 8 - Empires.zip
2017-10-10 17:49 - 2017-10-10 18:26 - 936135380 _____ C:\Users\Dominik\Downloads\Leights-OPFOR-Pack-version-1.9.7z
2017-10-10 14:35 - 2017-10-10 16:32 - 2144548822 _____ C:\Users\Dominik\Downloads\Trpká úroda (2017) CZ titulky v obraze.avi
2017-10-10 12:12 - 2017-10-10 12:12 - 000003644 _____ C:\Windows\System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864
2017-10-10 12:07 - 2017-10-10 12:07 - 008250832 _____ (Malwarebytes) C:\Users\Dominik\Downloads\adwcleaner_7.0.3.1.exe
2017-10-09 17:18 - 2017-10-09 17:18 - 000146432 _____ C:\Users\Dominik\Downloads\CUP-ACE3-Compatibility-Addon-Vehicles-version-1.9.0.7z
2017-10-09 13:23 - 2017-10-09 13:23 - 000020462 _____ C:\Users\Dominik\Downloads\CUP_Vehicles-1.9.1.zip.torrent
2017-10-09 11:53 - 2017-10-23 09:59 - 000003030 _____ C:\Windows\System32\Tasks\MSIAfterburner
2017-10-08 16:20 - 2017-10-08 16:20 - 000056572 _____ C:\Users\Dominik\Downloads\CUP_Terrains_Complete-1.3.0.zip.torrent
2017-10-07 12:17 - 2017-10-07 12:18 - 000000000 ____D C:\Program Files (x86)\Guild Wars 2
2017-10-07 12:17 - 2017-10-07 12:17 - 000000951 _____ C:\Users\Public\Desktop\Guild Wars 2.lnk
2017-10-07 12:17 - 2017-10-07 12:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Guild Wars 2
2017-10-07 12:16 - 2017-10-07 12:16 - 032826536 _____ (ArenaNet) C:\Users\Dominik\Downloads\Gw2Setup-64 (1).tmp
2017-10-07 12:16 - 2017-10-07 12:16 - 000000000 ____D C:\Users\Dominik\Downloads\bin64
2017-10-07 12:16 - 2017-10-07 12:16 - 000000000 _____ C:\Users\Dominik\Downloads\Gw2.tmp
2017-10-07 12:16 - 2017-10-07 12:16 - 000000000 _____ C:\Users\Dominik\Downloads\Gw2.dat
2017-10-07 12:15 - 2017-10-07 12:16 - 032826536 _____ (ArenaNet) C:\Users\Dominik\Downloads\Gw2Setup-64 (1).exe
2017-10-06 14:34 - 2017-10-06 14:34 - 000451001 _____ C:\Users\Dominik\Downloads\CBA_A3_v3.4.1.zip
2017-10-06 11:13 - 2017-10-06 11:13 - 000001082 _____ C:\Users\Dominik\Desktop\Arma 3 Laws of War.lnk
2017-10-06 11:13 - 2017-10-06 11:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Arma 3 Laws of War
2017-10-06 11:02 - 2017-10-10 18:30 - 000000000 ____D C:\Program Files (x86)\Arma 3 Laws of War
2017-10-06 10:47 - 2017-09-07 21:39 - 2111537152 _____ C:\codex-arma.3.laws.of.war.iso
2017-10-05 18:04 - 2017-10-05 18:04 - 002012413 _____ C:\Users\Dominik\Downloads\[CzT]Arma_3_Laws_of_War_2017_.torrent
2017-10-04 23:06 - 2017-10-07 12:03 - 000084256 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2017-10-04 23:06 - 2017-10-07 12:03 - 000045504 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2017-10-04 14:26 - 2017-10-04 14:26 - 000148636 _____ C:\Users\Dominik\Downloads\[CzT]Metal_Gear_Solid_V_The_Phantom_Pain_2015_CZ_.torrent
2017-10-03 18:56 - 2017-10-03 18:56 - 029340840 _____ (ArenaNet) C:\Users\Dominik\Downloads\Gw2Setup-64.exe
2017-10-02 19:01 - 2017-10-02 19:01 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Io Interactive
2017-10-01 17:48 - 2017-10-23 09:59 - 000000000 ____D C:\Program Files (x86)\Steam
2017-10-01 17:48 - 2017-10-01 17:48 - 001446792 _____ C:\Users\Dominik\Downloads\SteamSetup (2).exe
2017-10-01 17:48 - 2017-10-01 17:48 - 000000963 _____ C:\Users\Public\Desktop\Steam.lnk
2017-10-01 17:48 - 2017-10-01 17:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2017-09-26 14:16 - 2017-09-26 14:16 - 000233382 _____ C:\Users\Dominik\Downloads\[CzT]Dragon_Age_Inquisition_Deluxe_Edition_v1_11_2014_.torrent
2017-09-25 19:26 - 2017-09-25 19:26 - 000000000 ____D C:\Users\Dominik\AppData\Local\HellbladeGame
2017-09-25 19:26 - 2017-09-25 19:26 - 000000000 ____D C:\Users\Dominik\AppData\Local\GOG.com
2017-09-25 19:13 - 2017-09-25 19:13 - 000002269 _____ C:\Users\Public\Desktop\Hellblade - Senua's Sacrifice.lnk
2017-09-25 19:13 - 2017-09-25 19:13 - 000000000 ____D C:\Windows\SysWOW64\GOG.com
2017-09-25 19:13 - 2017-09-25 19:13 - 000000000 ____D C:\423a84e76e3c6b37d51afb
2017-09-25 16:01 - 2017-09-25 16:01 - 000035617 _____ C:\Users\Dominik\Downloads\[CzT]Hellblade_Senua_s_Sacrifice_v_1_02_2017_.torrent
2017-09-25 16:00 - 2017-09-25 16:00 - 000035535 _____ C:\Users\Dominik\Downloads\[CzT]Hellblade_Senua_s_Sacrifice_v_1_01_1_2017_.torrent
2017-09-25 15:56 - 2017-09-25 15:56 - 000839833 _____ C:\Users\Dominik\Downloads\hellblade_cz_v10.zip
2017-09-24 21:43 - 2017-09-24 21:43 - 000060079 _____ C:\Users\Dominik\Downloads\zivotopis (1).pdf
2017-09-24 17:21 - 2017-09-24 17:21 - 000021849 _____ C:\Users\Dominik\Downloads\[CzT]Tajny_zivot_mazlicku_The_Secret_Life_of_Pets_2016_CZ_SK_EN_720pHD_.torrent
2017-09-24 15:50 - 2017-09-24 15:50 - 000025034 _____ C:\Users\Dominik\Downloads\[CzT]Pirati_z_Karibiku_Salazarova_pomsta_Pirates_of_the_Caribbean_Dead_Men_Tell_No_Tales_2017_CZ_EN_WebRip_1080p_.torrent
2017-09-23 15:40 - 2017-10-07 12:03 - 000110016 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2017-09-23 15:40 - 2017-09-23 15:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-10-23 15:00 - 2017-02-02 15:00 - 000016208 _____ C:\Users\Dominik\Downloads\FRST.txt
2017-10-23 14:59 - 2017-06-07 17:10 - 000000000 ____D C:\Program Files\Bitdefender Antivirus Free
2017-10-23 14:59 - 2017-02-02 14:59 - 000000000 ____D C:\FRST
2017-10-23 14:58 - 2017-06-07 17:07 - 000000000 ____D C:\Program Files\Bitdefender Agent
2017-10-23 14:58 - 2016-11-19 14:32 - 000000000 ____D C:\Users\Dominik\AppData\LocalLow\Mozilla
2017-10-23 14:57 - 2017-05-20 13:37 - 000000000 ____D C:\Users\Dominik\Downloads\FRST-OlderVersion
2017-10-23 14:57 - 2017-04-23 12:25 - 002402816 _____ (Farbar) C:\Users\Dominik\Downloads\FRST64 (1).exe
2017-10-23 12:25 - 2015-10-29 19:45 - 000000000 ____D C:\ProgramData\NVIDIA
2017-10-23 12:22 - 2016-11-18 12:15 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-10-23 12:22 - 2015-09-27 22:16 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-10-23 10:14 - 2009-07-14 06:45 - 000021872 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-10-23 10:14 - 2009-07-14 06:45 - 000021872 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-10-23 09:58 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2017-10-23 01:26 - 2017-04-03 00:34 - 000001532 _____ C:\Users\Dominik\Desktop\Los Angeles.txt
2017-10-21 13:26 - 2015-09-15 17:05 - 000000000 ____D C:\Users\Dominik\AppData\Local\Google
2017-10-21 13:26 - 2015-09-15 17:05 - 000000000 ____D C:\Program Files (x86)\Google
2017-10-20 23:38 - 2016-10-16 16:02 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\uTorrent
2017-10-20 23:37 - 2015-10-04 22:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2017-10-20 23:32 - 2015-12-13 21:39 - 000000000 ____D C:\GOG Games
2017-10-19 20:55 - 2017-02-09 01:22 - 000000000 ____D C:\AdwCleaner
2017-10-19 19:44 - 2015-10-22 15:15 - 000000000 ____D C:\Users\Dominik\AppData\Local\Deployment
2017-10-19 19:44 - 2015-10-22 15:15 - 000000000 ____D C:\Users\Dominik\AppData\Local\Apps\2.0
2017-10-19 19:41 - 2015-09-15 16:23 - 000001393 _____ C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2017-10-19 01:15 - 2015-09-19 20:01 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\vlc
2017-10-17 19:57 - 2015-11-19 22:51 - 000000000 ____D C:\Darkest Hour 1.03
2017-10-14 20:40 - 2015-12-13 22:19 - 000000000 ____D C:\Users\Dominik\Documents\The Witcher 3
2017-10-13 10:32 - 2017-06-24 13:08 - 001019880 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\Windows\system32\Drivers\atc.sys
2017-10-10 19:03 - 2016-03-12 17:03 - 000000000 ____D C:\Users\Dominik\AppData\Local\Arma 3
2017-10-10 00:02 - 2017-05-21 15:39 - 000077440 _____ C:\Windows\system32\Drivers\mbae64.sys
2017-10-08 16:10 - 2016-08-04 20:40 - 000000000 ____D C:\Users\Dominik\AppData\Local\CrashDumps
2017-10-08 15:06 - 2015-09-25 15:37 - 000000000 ____D C:\ProgramData\Origin
2017-10-08 14:59 - 2016-08-31 14:08 - 000000000 ____D C:\Users\Dominik\AppData\Local\ElevatedDiagnostics
2017-10-08 12:49 - 2016-10-14 17:34 - 000348360 _____ C:\Windows\SysWOW64\PnkBstrB.exe
2017-10-08 12:49 - 2015-10-12 19:19 - 000348360 _____ C:\Windows\SysWOW64\PnkBstrB.xtr
2017-10-08 12:49 - 2015-09-25 17:42 - 000280904 _____ C:\Windows\SysWOW64\PnkBstrB.ex0
2017-10-08 12:48 - 2015-09-25 15:39 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Origin
2017-10-08 01:30 - 2017-05-14 23:21 - 000000270 _____ C:\Users\Dominik\Desktop\Kroměříž.txt
2017-10-07 23:43 - 2017-01-20 02:09 - 000001407 _____ C:\Users\Dominik\Desktop\Nový textový dokument.txt
2017-10-07 21:11 - 2015-09-25 16:46 - 000000000 ____D C:\Program Files (x86)\Origin Games
2017-10-07 20:33 - 2016-08-30 12:44 - 000000000 ____D C:\ProgramData\Package Cache
2017-10-07 20:04 - 2015-09-25 17:43 - 000001231 _____ C:\Users\Public\Desktop\Battlefield 4.lnk
2017-10-07 17:43 - 2017-04-23 20:23 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2017-10-07 14:51 - 2015-09-25 15:37 - 000000000 ____D C:\Program Files (x86)\Origin
2017-10-07 12:18 - 2015-10-30 20:21 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Guild Wars 2
2017-10-03 19:19 - 2016-10-14 17:34 - 000076152 _____ C:\Windows\SysWOW64\PnkBstrA.exe
2017-10-03 10:53 - 2017-06-07 17:11 - 000250504 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\Windows\system32\Drivers\edrsensor.sys
2017-09-29 00:14 - 2015-09-27 20:38 - 000000000 ____D C:\Program Files (x86)\SpeedFan
2017-09-27 16:32 - 2015-10-21 20:28 - 000007602 _____ C:\Users\Dominik\AppData\Local\Resmon.ResmonCfg
2017-09-25 19:26 - 2016-11-13 18:09 - 000000000 ____D C:\Users\Dominik\AppData\Local\UnrealEngine
2017-09-23 15:40 - 2017-05-21 15:39 - 000001867 _____ C:\Users\Public\Desktop\Malwarebytes.lnk

==================== Files in the root of some directories =======

2016-09-04 22:01 - 2016-09-04 22:07 - 000000000 _____ () C:\Program Files (x86)\ToDownloadBase.db
2016-02-23 18:32 - 2016-02-23 18:32 - 000000913 _____ () C:\Users\Dominik\AppData\Local\recently-used.xbel
2015-10-21 20:28 - 2017-09-27 16:32 - 000007602 _____ () C:\Users\Dominik\AppData\Local\Resmon.ResmonCfg
2016-10-14 17:37 - 2016-10-14 17:37 - 000000000 ___SH () C:\ProgramData\.rdata
2017-05-29 21:19 - 2017-05-29 21:19 - 000037824 _____ () C:\ProgramData\1496085544.bdinstall.bin
2017-05-29 21:21 - 2017-05-29 21:21 - 000097381 _____ () C:\ProgramData\1496085552.bdinstall.bin
2017-06-07 17:07 - 2017-06-07 17:07 - 000046889 _____ () C:\ProgramData\agent.1496848048.bdinstall.bin
2017-06-15 07:39 - 2017-06-15 07:39 - 000030967 _____ () C:\ProgramData\agent.update.1497505170.bdinstall.bin

Some files in TEMP:
====================
2017-06-26 20:42 - 2017-06-26 21:31 - 000000093 _____ () C:\Users\Dominik\AppData\Local\Temp\2736d40cf28af75310950a0112cdcd01.dll
2017-06-26 20:42 - 2017-06-26 20:42 - 000000180 _____ () C:\Users\Dominik\AppData\Local\Temp\6699d3ee8dd9cf775caae782c8f44f03.dll
2017-10-07 12:16 - 2017-10-07 12:16 - 032826536 _____ (ArenaNet) C:\Users\Dominik\AppData\Local\Temp\Gw2.exe
2017-02-21 16:32 - 2017-02-10 00:39 - 000868152 _____ (NVIDIA Corporation) C:\Users\Dominik\AppData\Local\Temp\nvSCPAPI64.dll
2017-06-24 18:43 - 2017-02-10 00:39 - 000352704 _____ (NVIDIA Corporation) C:\Users\Dominik\AppData\Local\Temp\nvStInst.exe
2017-07-06 21:28 - 2017-07-06 21:28 - 007469104 _____ (Gold Click Ltd ) C:\Users\Dominik\AppData\Local\Temp\offerpg3.exe
2017-05-20 17:16 - 2017-09-29 00:14 - 000192512 _____ () C:\Users\Dominik\AppData\Local\Temp\sfamcc00001.dll
2017-06-14 23:06 - 2017-06-26 23:22 - 000192512 _____ () C:\Users\Dominik\AppData\Local\Temp\sfamcc00002.dll
2007-02-27 16:08 - 2007-02-27 16:08 - 000456416 ____R (Macrovision Corporation) C:\Users\Dominik\AppData\Local\Temp\_isC242.exe

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2017-10-20 11:56

==================== End of FRST.txt ============================

Re: Pomalý Internet

Napsal: 23 říj 2017 16:01
od Rudy
Spusťte tuto utilitu:
Stáhněte AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan<(hledání) a pak na >Clean< (mazání).
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: Pomalý Internet

Napsal: 24 říj 2017 10:36
od predatorx21
# AdwCleaner 7.0.3.1 - Logfile created on Tue Oct 24 09:34:52 2017
# Updated on 2017/29/09 by Malwarebytes
# Database: 10-17-2017.1
# Running on Windows 7 Home Premium (X64)
# Mode: scan
# Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

PUP.Adware.Heuristic, Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864


***** [ Registry ] *****

PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864


***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries.

*************************

C:/AdwCleaner/AdwCleaner[C0].txt - [1562 B] - [2017/2/27 21:3:36]
C:/AdwCleaner/AdwCleaner[C2].txt - [2106 B] - [2017/5/12 9:43:24]
C:/AdwCleaner/AdwCleaner[C3].txt - [2991 B] - [2017/5/12 17:52:49]
C:/AdwCleaner/AdwCleaner[S0].txt - [1396 B] - [2017/2/8 23:28:8]
C:/AdwCleaner/AdwCleaner[S10].txt - [1980 B] - [2017/4/23 14:21:1]
C:/AdwCleaner/AdwCleaner[S11].txt - [2050 B] - [2017/5/7 14:26:46]
C:/AdwCleaner/AdwCleaner[S12].txt - [2128 B] - [2017/5/11 17:42:39]
C:/AdwCleaner/AdwCleaner[S13].txt - [2201 B] - [2017/5/11 18:30:46]
C:/AdwCleaner/AdwCleaner[S14].txt - [2275 B] - [2017/5/12 9:43:20]
C:/AdwCleaner/AdwCleaner[S15].txt - [2423 B] - [2017/5/12 17:52:37]
C:/AdwCleaner/AdwCleaner[S16].txt - [2566 B] - [2017/5/20 11:35:38]
C:/AdwCleaner/AdwCleaner[S17].txt - [2640 B] - [2017/6/7 15:1:20]
C:/AdwCleaner/AdwCleaner[S18].txt - [2714 B] - [2017/6/24 14:8:21]
C:/AdwCleaner/AdwCleaner[S19].txt - [2788 B] - [2017/7/13 16:55:42]
C:/AdwCleaner/AdwCleaner[S1].txt - [1469 B] - [2017/2/9 18:39:16]
C:/AdwCleaner/AdwCleaner[S20].txt - [2512 B] - [2017/7/20 19:25:5]
C:/AdwCleaner/AdwCleaner[S21].txt - [2747 B] - [2017/9/2 11:44:36]
C:/AdwCleaner/AdwCleaner[S22].txt - [2835 B] - [2017/10/10 10:9:1]
C:/AdwCleaner/AdwCleaner[S2].txt - [1544 B] - [2017/2/10 10:42:55]
C:/AdwCleaner/AdwCleaner[S3].txt - [1617 B] - [2017/2/12 10:15:36]
C:/AdwCleaner/AdwCleaner[S4].txt - [1688 B] - [2017/2/20 14:30:35]
C:/AdwCleaner/AdwCleaner[S5].txt - [1761 B] - [2017/2/26 16:18:48]
C:/AdwCleaner/AdwCleaner[S6].txt - [1834 B] - [2017/2/27 15:56:37]
C:/AdwCleaner/AdwCleaner[S7].txt - [1909 B] - [2017/2/27 21:3:10]
C:/AdwCleaner/AdwCleaner[S8].txt - [2049 B] - [2017/3/22 13:8:53]
C:/AdwCleaner/AdwCleaner[S9].txt - [2122 B] - [2017/4/3 13:54:4]


########## EOF - C:\AdwCleaner\AdwCleaner[S23].txt ##########

Re: Pomalý Internet

Napsal: 24 říj 2017 17:06
od Rudy
Klikněte ještě v ADW na mazání, restartujte a dejte nový log FRST.

Re: Pomalý Internet

Napsal: 24 říj 2017 20:54
od predatorx21
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 23-10-2017 01
Ran by Dominik (administrator) on DOMINIK-PC (24-10-2017 21:47:34)
Running from C:\Users\Dominik\Downloads\FRST-OlderVersion
Loaded Profiles: Dominik (Available Profiles: Dominik)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\updatesrv.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\vsserv.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\vsservppl.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Power Software Ltd) C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\bdagent.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6548112 2012-06-12] (Realtek Semiconductor)
HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [406664 2016-05-25] (Power Software Ltd)
HKU\S-1-5-21-707951698-1732677806-592134114-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8455960 2015-08-20] (Piriform Ltd)
HKU\S-1-5-21-707951698-1732677806-592134114-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3101984 2017-10-17] (Valve Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{0AA83DC0-B66F-43FD-9DAD-56EA86565672}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-707951698-1732677806-592134114-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKU\S-1-5-21-707951698-1732677806-592134114-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll [2016-03-12] (Oracle Corporation)
BHO-x32: Pomocná služba pro přihlášení k účtu Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-03-12] (Oracle Corporation)

FireFox:
========
FF DefaultProfile: k63582xc.default
FF ProfilePath: C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\k63582xc.default [2017-10-24]
FF NewTab: Mozilla\Firefox\Profiles\k63582xc.default -> about:newtab
FF Homepage: Mozilla\Firefox\Profiles\k63582xc.default -> about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_25_0_0_171.dll [2017-05-23] ()
FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll [2017-05-23] ()
FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.73.2 -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\dtplugin\npDeployJava1.dll [2016-03-12] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.73.2 -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\plugin2\npjp2.dll [2016-03-12] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-06-08] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-06-08] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-10-21] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-10-21] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-08-01] (Adobe Systems Inc.)

Chrome:
=======
CHR Profile: C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default [2017-10-24]
CHR Extension: (Prezentace) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-21]
CHR Extension: (Dokumenty) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-21]
CHR Extension: (Disk Google) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-10-21]
CHR Extension: (YouTube) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-10-21]
CHR Extension: (Adobe Acrobat) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-10-21]
CHR Extension: (Tabulky) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-21]
CHR Extension: (Dokumenty Google offline) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-10-22]
CHR Extension: (AdBlock) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-10-22]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-10-21]
CHR Extension: (Gmail) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-10-21]
CHR Extension: (Chrome Media Router) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-10-21]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6058960 2017-08-07] (Malwarebytes)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [495224 2017-06-21] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [495224 2017-06-21] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462968 2017-06-08] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [450168 2017-06-21] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2120032 2017-09-25] (Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3000168 2017-09-25] (Electronic Arts)
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2016-04-02] ()
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2017-10-03] ()
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [1254736 2017-04-11] (Bitdefender)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5702416 2015-09-11] (TeamViewer GmbH)
R2 updatesrv; C:\Program Files\Bitdefender Antivirus Free\updatesrv.exe [100392 2017-08-29] (Bitdefender)
R2 vsserv; C:\Program Files\Bitdefender Antivirus Free\vsserv.exe [100392 2017-08-29] (Bitdefender)
R2 vsservppl; C:\Program Files\Bitdefender Antivirus Free\vsservppl.exe [100392 2017-08-29] (Bitdefender)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) <==== ATTENTION (no ServiceDLL)
R0 atc; C:\Windows\System32\DRIVERS\atc.sys [1019880 2017-10-13] (BitDefender S.R.L. Bucharest, ROMANIA)
R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [1763744 2017-08-29] (BitDefender)
S3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [878072 2016-09-20] (BitDefender)
R0 BdDci; C:\Windows\System32\DRIVERS\bddci.sys [155624 2017-10-19] (Bitdefender)
R3 edrsensor; C:\Windows\System32\DRIVERS\edrsensor.sys [250504 2017-10-03] (BitDefender S.R.L. Bucharest, ROMANIA)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [77440 2017-10-10] ()
R0 gzflt; C:\Windows\System32\drivers\gzflt.sys [187688 2017-07-24] (BitDefender LLC)
S3 MarvinBus; C:\Windows\System32\DRIVERS\MarvinBus64.sys [261120 2005-09-23] (Pinnacle Systems GmbH) [File not signed]
S3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [110016 2017-10-07] (Malwarebytes)
S3 MBAMProtection; C:\Windows\System32\DRIVERS\mbam.sys [45504 2017-10-07] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [252232 2017-10-24] (Malwarebytes)
S3 MBAMWebProtection; C:\Windows\System32\DRIVERS\mwac.sys [84256 2017-10-07] (Malwarebytes)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30328 2017-06-21] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [48248 2017-06-21] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [57976 2017-06-21] (NVIDIA Corporation)
S4 secdrv; C:\Windows\SysWow64\Drivers\secdrv.sys [18768 2017-07-25] () [File not signed]
R2 trufos; C:\Windows\System32\drivers\trufos.sys [520032 2016-06-22] (BitDefender S.R.L.)
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-10-24 21:47 - 2017-10-24 21:47 - 000003644 _____ C:\Windows\System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864
2017-10-24 08:02 - 2017-10-24 21:46 - 000003030 _____ C:\Windows\System32\Tasks\MSIAfterburner
2017-10-23 19:07 - 2017-10-23 19:07 - 000006275 _____ C:\Users\Dominik\Desktop\Životopis.odt
2017-10-23 17:27 - 2017-10-23 17:27 - 008250832 _____ (Malwarebytes) C:\Users\Dominik\Downloads\adwcleaner_7.0.3.1 (2).exe
2017-10-21 13:26 - 2017-10-21 13:26 - 000002267 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-10-21 13:26 - 2017-10-21 13:26 - 000002255 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-10-21 13:25 - 2017-10-21 13:25 - 001130328 _____ (Google Inc.) C:\Users\Dominik\Downloads\ChromeSetup(2).exe
2017-10-21 13:25 - 2017-10-21 13:25 - 000003384 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2017-10-21 13:25 - 2017-10-21 13:25 - 000003256 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2017-10-20 23:38 - 2017-10-20 23:38 - 000000000 ____D C:\Users\Dominik\AppData\LocalLow\Kite Games
2017-10-20 23:37 - 2017-10-20 23:37 - 000001710 _____ C:\Users\Public\Desktop\Sudden Strike 4.lnk
2017-10-20 22:08 - 2017-10-20 22:16 - 000000000 ____D C:\Users\Dominik\Downloads\Sudden Strike 4 v1.01.19357 (14463) [GOG]
2017-10-20 22:07 - 2017-10-20 22:07 - 000014523 _____ C:\Users\Dominik\Downloads\[CzT]Sudden_Strike_4_Battle_of_Kursk_DLC_v_1_01_19357_2017_.torrent
2017-10-19 20:55 - 2017-10-19 20:55 - 008250832 _____ (Malwarebytes) C:\Users\Dominik\Downloads\adwcleaner_7.0.3.1 (1).exe
2017-10-19 10:38 - 2017-10-19 10:38 - 000155624 _____ (Bitdefender) C:\Windows\system32\Drivers\bddci.sys
2017-10-18 20:14 - 2017-10-18 20:34 - 000000000 ____D C:\Users\Dominik\Downloads\REC
2017-10-18 20:14 - 2017-10-18 20:14 - 000014796 _____ C:\Users\Dominik\Downloads\[CzT]REC_Rec_1_2_2007_2009_CZ_.torrent
2017-10-18 10:42 - 2017-10-24 21:43 - 000252232 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2017-10-17 21:31 - 2017-10-17 21:32 - 1002364168 _____ C:\Users\Dominik\Downloads\Fatherland - Beta 8 - Empires.zip
2017-10-10 17:49 - 2017-10-10 18:26 - 936135380 _____ C:\Users\Dominik\Downloads\Leights-OPFOR-Pack-version-1.9.7z
2017-10-10 14:35 - 2017-10-10 16:32 - 2144548822 _____ C:\Users\Dominik\Downloads\Trpká úroda (2017) CZ titulky v obraze.avi
2017-10-10 12:07 - 2017-10-10 12:07 - 008250832 _____ (Malwarebytes) C:\Users\Dominik\Downloads\adwcleaner_7.0.3.1.exe
2017-10-09 17:18 - 2017-10-09 17:18 - 000146432 _____ C:\Users\Dominik\Downloads\CUP-ACE3-Compatibility-Addon-Vehicles-version-1.9.0.7z
2017-10-09 13:23 - 2017-10-09 13:23 - 000020462 _____ C:\Users\Dominik\Downloads\CUP_Vehicles-1.9.1.zip.torrent
2017-10-08 16:20 - 2017-10-08 16:20 - 000056572 _____ C:\Users\Dominik\Downloads\CUP_Terrains_Complete-1.3.0.zip.torrent
2017-10-07 12:17 - 2017-10-07 12:18 - 000000000 ____D C:\Program Files (x86)\Guild Wars 2
2017-10-07 12:17 - 2017-10-07 12:17 - 000000951 _____ C:\Users\Public\Desktop\Guild Wars 2.lnk
2017-10-07 12:17 - 2017-10-07 12:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Guild Wars 2
2017-10-07 12:16 - 2017-10-07 12:16 - 032826536 _____ (ArenaNet) C:\Users\Dominik\Downloads\Gw2Setup-64 (1).tmp
2017-10-07 12:16 - 2017-10-07 12:16 - 000000000 ____D C:\Users\Dominik\Downloads\bin64
2017-10-07 12:16 - 2017-10-07 12:16 - 000000000 _____ C:\Users\Dominik\Downloads\Gw2.tmp
2017-10-07 12:16 - 2017-10-07 12:16 - 000000000 _____ C:\Users\Dominik\Downloads\Gw2.dat
2017-10-07 12:15 - 2017-10-07 12:16 - 032826536 _____ (ArenaNet) C:\Users\Dominik\Downloads\Gw2Setup-64 (1).exe
2017-10-06 14:34 - 2017-10-06 14:34 - 000451001 _____ C:\Users\Dominik\Downloads\CBA_A3_v3.4.1.zip
2017-10-06 11:13 - 2017-10-06 11:13 - 000001082 _____ C:\Users\Dominik\Desktop\Arma 3 Laws of War.lnk
2017-10-06 11:13 - 2017-10-06 11:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Arma 3 Laws of War
2017-10-06 11:02 - 2017-10-10 18:30 - 000000000 ____D C:\Program Files (x86)\Arma 3 Laws of War
2017-10-06 10:47 - 2017-09-07 21:39 - 2111537152 _____ C:\codex-arma.3.laws.of.war.iso
2017-10-05 18:04 - 2017-10-05 18:04 - 002012413 _____ C:\Users\Dominik\Downloads\[CzT]Arma_3_Laws_of_War_2017_.torrent
2017-10-04 23:06 - 2017-10-07 12:03 - 000084256 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2017-10-04 23:06 - 2017-10-07 12:03 - 000045504 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2017-10-04 14:26 - 2017-10-04 14:26 - 000148636 _____ C:\Users\Dominik\Downloads\[CzT]Metal_Gear_Solid_V_The_Phantom_Pain_2015_CZ_.torrent
2017-10-03 18:56 - 2017-10-03 18:56 - 029340840 _____ (ArenaNet) C:\Users\Dominik\Downloads\Gw2Setup-64.exe
2017-10-02 19:01 - 2017-10-02 19:01 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Io Interactive
2017-10-01 17:48 - 2017-10-24 21:46 - 000000000 ____D C:\Program Files (x86)\Steam
2017-10-01 17:48 - 2017-10-01 17:48 - 001446792 _____ C:\Users\Dominik\Downloads\SteamSetup (2).exe
2017-10-01 17:48 - 2017-10-01 17:48 - 000000963 _____ C:\Users\Public\Desktop\Steam.lnk
2017-10-01 17:48 - 2017-10-01 17:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2017-09-26 14:16 - 2017-09-26 14:16 - 000233382 _____ C:\Users\Dominik\Downloads\[CzT]Dragon_Age_Inquisition_Deluxe_Edition_v1_11_2014_.torrent
2017-09-25 19:26 - 2017-09-25 19:26 - 000000000 ____D C:\Users\Dominik\AppData\Local\HellbladeGame
2017-09-25 19:26 - 2017-09-25 19:26 - 000000000 ____D C:\Users\Dominik\AppData\Local\GOG.com
2017-09-25 19:13 - 2017-09-25 19:13 - 000002269 _____ C:\Users\Public\Desktop\Hellblade - Senua's Sacrifice.lnk
2017-09-25 19:13 - 2017-09-25 19:13 - 000000000 ____D C:\Windows\SysWOW64\GOG.com
2017-09-25 19:13 - 2017-09-25 19:13 - 000000000 ____D C:\423a84e76e3c6b37d51afb
2017-09-25 16:01 - 2017-09-25 16:01 - 000035617 _____ C:\Users\Dominik\Downloads\[CzT]Hellblade_Senua_s_Sacrifice_v_1_02_2017_.torrent
2017-09-25 16:00 - 2017-09-25 16:00 - 000035535 _____ C:\Users\Dominik\Downloads\[CzT]Hellblade_Senua_s_Sacrifice_v_1_01_1_2017_.torrent
2017-09-25 15:56 - 2017-09-25 15:56 - 000839833 _____ C:\Users\Dominik\Downloads\hellblade_cz_v10.zip
2017-09-24 21:43 - 2017-09-24 21:43 - 000060079 _____ C:\Users\Dominik\Downloads\zivotopis (1).pdf
2017-09-24 17:21 - 2017-09-24 17:21 - 000021849 _____ C:\Users\Dominik\Downloads\[CzT]Tajny_zivot_mazlicku_The_Secret_Life_of_Pets_2016_CZ_SK_EN_720pHD_.torrent
2017-09-24 15:50 - 2017-09-24 15:50 - 000025034 _____ C:\Users\Dominik\Downloads\[CzT]Pirati_z_Karibiku_Salazarova_pomsta_Pirates_of_the_Caribbean_Dead_Men_Tell_No_Tales_2017_CZ_EN_WebRip_1080p_.torrent

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-10-24 21:47 - 2017-05-20 13:37 - 000000000 ____D C:\Users\Dominik\Downloads\FRST-OlderVersion
2017-10-24 21:47 - 2017-02-02 14:59 - 000000000 ____D C:\FRST
2017-10-24 21:46 - 2015-10-29 19:45 - 000000000 ____D C:\ProgramData\NVIDIA
2017-10-24 21:45 - 2017-06-07 17:07 - 000000000 ____D C:\Program Files\Bitdefender Agent
2017-10-24 21:43 - 2017-06-07 17:10 - 000000000 ____D C:\Program Files\Bitdefender Antivirus Free
2017-10-24 21:42 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2017-10-24 21:41 - 2016-11-19 14:32 - 000000000 ____D C:\Users\Dominik\AppData\LocalLow\Mozilla
2017-10-24 21:40 - 2017-02-09 01:22 - 000000000 ____D C:\AdwCleaner
2017-10-24 09:23 - 2009-07-14 06:45 - 000021872 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-10-24 09:23 - 2009-07-14 06:45 - 000021872 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-10-24 08:00 - 2016-11-18 12:15 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-10-24 08:00 - 2015-09-27 22:16 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-10-23 15:02 - 2017-02-02 15:00 - 000050760 _____ C:\Users\Dominik\Downloads\Addition.txt
2017-10-23 15:02 - 2017-02-02 15:00 - 000031429 _____ C:\Users\Dominik\Downloads\FRST.txt
2017-10-23 14:57 - 2017-04-23 12:25 - 002402816 _____ (Farbar) C:\Users\Dominik\Downloads\FRST64 (1).exe
2017-10-23 01:26 - 2017-04-03 00:34 - 000001532 _____ C:\Users\Dominik\Desktop\Los Angeles.txt
2017-10-21 13:26 - 2015-09-15 17:05 - 000000000 ____D C:\Users\Dominik\AppData\Local\Google
2017-10-21 13:26 - 2015-09-15 17:05 - 000000000 ____D C:\Program Files (x86)\Google
2017-10-20 23:38 - 2016-10-16 16:02 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\uTorrent
2017-10-20 23:37 - 2015-10-04 22:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2017-10-20 23:32 - 2015-12-13 21:39 - 000000000 ____D C:\GOG Games
2017-10-19 19:44 - 2015-10-22 15:15 - 000000000 ____D C:\Users\Dominik\AppData\Local\Deployment
2017-10-19 19:44 - 2015-10-22 15:15 - 000000000 ____D C:\Users\Dominik\AppData\Local\Apps\2.0
2017-10-19 19:41 - 2015-09-15 16:23 - 000001393 _____ C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2017-10-19 01:15 - 2015-09-19 20:01 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\vlc
2017-10-17 19:57 - 2015-11-19 22:51 - 000000000 ____D C:\Darkest Hour 1.03
2017-10-14 20:40 - 2015-12-13 22:19 - 000000000 ____D C:\Users\Dominik\Documents\The Witcher 3
2017-10-13 10:32 - 2017-06-24 13:08 - 001019880 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\Windows\system32\Drivers\atc.sys
2017-10-10 19:03 - 2016-03-12 17:03 - 000000000 ____D C:\Users\Dominik\AppData\Local\Arma 3
2017-10-10 00:02 - 2017-05-21 15:39 - 000077440 _____ C:\Windows\system32\Drivers\mbae64.sys
2017-10-08 16:10 - 2016-08-04 20:40 - 000000000 ____D C:\Users\Dominik\AppData\Local\CrashDumps
2017-10-08 15:06 - 2015-09-25 15:37 - 000000000 ____D C:\ProgramData\Origin
2017-10-08 14:59 - 2016-08-31 14:08 - 000000000 ____D C:\Users\Dominik\AppData\Local\ElevatedDiagnostics
2017-10-08 12:49 - 2016-10-14 17:34 - 000348360 _____ C:\Windows\SysWOW64\PnkBstrB.exe
2017-10-08 12:49 - 2015-10-12 19:19 - 000348360 _____ C:\Windows\SysWOW64\PnkBstrB.xtr
2017-10-08 12:49 - 2015-09-25 17:42 - 000280904 _____ C:\Windows\SysWOW64\PnkBstrB.ex0
2017-10-08 12:48 - 2015-09-25 15:39 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Origin
2017-10-08 01:30 - 2017-05-14 23:21 - 000000270 _____ C:\Users\Dominik\Desktop\Kroměříž.txt
2017-10-07 23:43 - 2017-01-20 02:09 - 000001407 _____ C:\Users\Dominik\Desktop\Nový textový dokument.txt
2017-10-07 21:11 - 2015-09-25 16:46 - 000000000 ____D C:\Program Files (x86)\Origin Games
2017-10-07 20:33 - 2016-08-30 12:44 - 000000000 ____D C:\ProgramData\Package Cache
2017-10-07 20:04 - 2015-09-25 17:43 - 000001231 _____ C:\Users\Public\Desktop\Battlefield 4.lnk
2017-10-07 17:43 - 2017-04-23 20:23 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2017-10-07 14:51 - 2015-09-25 15:37 - 000000000 ____D C:\Program Files (x86)\Origin
2017-10-07 12:18 - 2015-10-30 20:21 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Guild Wars 2
2017-10-07 12:03 - 2017-09-23 15:40 - 000110016 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2017-10-03 19:19 - 2016-10-14 17:34 - 000076152 _____ C:\Windows\SysWOW64\PnkBstrA.exe
2017-10-03 10:53 - 2017-06-07 17:11 - 000250504 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\Windows\system32\Drivers\edrsensor.sys
2017-09-29 00:14 - 2015-09-27 20:38 - 000000000 ____D C:\Program Files (x86)\SpeedFan
2017-09-27 16:32 - 2015-10-21 20:28 - 000007602 _____ C:\Users\Dominik\AppData\Local\Resmon.ResmonCfg
2017-09-25 19:26 - 2016-11-13 18:09 - 000000000 ____D C:\Users\Dominik\AppData\Local\UnrealEngine

==================== Files in the root of some directories =======

2016-09-04 22:01 - 2016-09-04 22:07 - 000000000 _____ () C:\Program Files (x86)\ToDownloadBase.db
2016-02-23 18:32 - 2016-02-23 18:32 - 000000913 _____ () C:\Users\Dominik\AppData\Local\recently-used.xbel
2015-10-21 20:28 - 2017-09-27 16:32 - 000007602 _____ () C:\Users\Dominik\AppData\Local\Resmon.ResmonCfg
2016-10-14 17:37 - 2016-10-14 17:37 - 000000000 ___SH () C:\ProgramData\.rdata
2017-05-29 21:19 - 2017-05-29 21:19 - 000037824 _____ () C:\ProgramData\1496085544.bdinstall.bin
2017-05-29 21:21 - 2017-05-29 21:21 - 000097381 _____ () C:\ProgramData\1496085552.bdinstall.bin
2017-06-07 17:07 - 2017-06-07 17:07 - 000046889 _____ () C:\ProgramData\agent.1496848048.bdinstall.bin
2017-06-15 07:39 - 2017-06-15 07:39 - 000030967 _____ () C:\ProgramData\agent.update.1497505170.bdinstall.bin

Some files in TEMP:
====================
2017-06-26 20:42 - 2017-06-26 21:31 - 000000093 _____ () C:\Users\Dominik\AppData\Local\Temp\2736d40cf28af75310950a0112cdcd01.dll
2017-06-26 20:42 - 2017-06-26 20:42 - 000000180 _____ () C:\Users\Dominik\AppData\Local\Temp\6699d3ee8dd9cf775caae782c8f44f03.dll
2017-10-07 12:16 - 2017-10-07 12:16 - 032826536 _____ (ArenaNet) C:\Users\Dominik\AppData\Local\Temp\Gw2.exe
2017-02-21 16:32 - 2017-02-10 00:39 - 000868152 _____ (NVIDIA Corporation) C:\Users\Dominik\AppData\Local\Temp\nvSCPAPI64.dll
2017-06-24 18:43 - 2017-02-10 00:39 - 000352704 _____ (NVIDIA Corporation) C:\Users\Dominik\AppData\Local\Temp\nvStInst.exe
2017-07-06 21:28 - 2017-07-06 21:28 - 007469104 _____ (Gold Click Ltd ) C:\Users\Dominik\AppData\Local\Temp\offerpg3.exe
2017-05-20 17:16 - 2017-09-29 00:14 - 000192512 _____ () C:\Users\Dominik\AppData\Local\Temp\sfamcc00001.dll
2017-06-14 23:06 - 2017-06-26 23:22 - 000192512 _____ () C:\Users\Dominik\AppData\Local\Temp\sfamcc00002.dll
2007-02-27 16:08 - 2007-02-27 16:08 - 000456416 ____R (Macrovision Corporation) C:\Users\Dominik\AppData\Local\Temp\_isC242.exe

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2017-10-20 11:56

==================== End of FRST.txt ============================


# AdwCleaner 7.0.3.1 - Logfile created on Tue Oct 24 19:41:55 2017
# Updated on 2017/29/09 by Malwarebytes
# Running on Windows 7 Home Premium (X64)
# Mode: clean
# Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services deleted.

***** [ Folders ] *****

No malicious folders deleted.

***** [ Files ] *****

No malicious files deleted.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

Deleted: Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864

Re: Pomalý Internet

Napsal: 24 říj 2017 21:05
od Rudy
Otevřte poznámkový blok a zkopírujte do něj:
Start
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Users\Dominik\AppData\Local\Temp

EmptyTemp:
End
Uložte do C:\Users\Dominik\Downloads\FRST-OlderVersion jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Pomalý Internet

Napsal: 25 říj 2017 11:25
od predatorx21
Fix result of Farbar Recovery Scan Tool (x64) Version: 23-10-2017 01
Ran by Dominik (25-10-2017 12:11:39) Run:3
Running from C:\Users\Dominik\Downloads\FRST-OlderVersion
Loaded Profiles: Dominik (Available Profiles: Dominik)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Users\Dominik\AppData\Local\Temp

EmptyTemp:
End
*****************

HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
HKLM\System\CurrentControlSet\Services\xhunter1 => key removed successfully
xhunter1 => service removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully

"C:\Users\Dominik\AppData\Local\Temp" folder move:

Could not move "C:\Users\Dominik\AppData\Local\Temp" => Scheduled to move on reboot.


=========== EmptyTemp: ==========

BITS transfer queue => 4194304 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 47370031 B
Java, Flash, Steam htmlcache => 128839238 B
Windows/system/drivers => 21307548 B
Edge => 0 B
Chrome => 703340200 B
Firefox => 382907958 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 0 B
Public => 0 B
ProgramData => 0 B
systemprofile => 128 B
systemprofile32 => 128 B
LocalService => 0 B
NetworkService => 20970 B
Dominik => 1475652460 B
UpdatusUser => 0 B

RecycleBin => 27881341472 B
EmptyTemp: => 28.5 GB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 25-10-2017 12:16:57)

C:\Users\Dominik\AppData\Local\Temp => moved successfully

==== End of Fixlog 12:16:58 ====

Re: Pomalý Internet

Napsal: 25 říj 2017 16:54
od Rudy
Smazáno. Nastala nějaká změna?

Re: Pomalý Internet

Napsal: 25 říj 2017 18:23
od predatorx21
Bohužel,žádná viditelná změna...

Re: Pomalý Internet

Napsal: 25 říj 2017 19:08
od Rudy
Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.

Re: Pomalý Internet

Napsal: 29 říj 2017 18:28
od predatorx21
Malwarebytes
www.malwarebytes.com

-Podrobnosti logovacího souboru-
Datum skenování: 29.10.17
Čas skenování: 12:41
Logovací soubor: 1584cbec-bc9e-11e7-8361-d43d7e343acc.json
Správce: Ano

-Informace o softwaru-
Verze: 3.2.2.2029
Verze komponentů: 1.0.212
Aktualizovat verzi balíku komponent: 1.0.3122
Licence: Vypršelo

-Systémová informace-
OS: Windows 7 Service Pack 1
CPU: x64
Systém souborů: NTFS
Uživatel: Dominik-PC\Dominik

-Shrnutí skenování-
Typ skenování: Vlastní skenování
Výsledek: Dokončeno
Skenované objekty: 1590283
Zjištěné hrozby: 0
(Nebyly zjištěny žádné škodlivé položky)
Hrozby umístěné do karantény: 0
(Nebyly zjištěny žádné škodlivé položky)
Uplynulý čas: 4 hod, 24 min, 22 sek

-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Povoleno
Heuristika: Povoleno
Potenciálně nežádoucí program: Detekovat
Potenciálně nežádoucí modifikace: Detekovat

-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)

Modul: 0
(Nebyly zjištěny žádné škodlivé položky)

Klíč registru: 0
(Nebyly zjištěny žádné škodlivé položky)

Hodnota v registru: 0
(Nebyly zjištěny žádné škodlivé položky)

Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)

Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)

Adresář: 0
(Nebyly zjištěny žádné škodlivé položky)

Soubor: 0
(Nebyly zjištěny žádné škodlivé položky)

Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)


(end)

Re: Pomalý Internet

Napsal: 29 říj 2017 19:09
od Rudy
Malware za problém nemůže. Zkontrolujeme disk. Stáhněte, neinstalujte a spusťte CrystalDiskInfo: http://www.stahuj.centrum.cz/utility_a_ ... ldiskinfo/ a přes Úpravy>kopírovat sem dejte log.