Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Instalace Office

Moderátor: Moderátoři

Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní: http://forum.viry.cz/viewtopic.php?f=12&t=123975 . Děkujeme za pochopení.
Zpráva
Autor
Hana1Zdenek
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 09 lis 2016 09:32

Instalace Office

#1 Příspěvek od Hana1Zdenek »

Prosím o pomoc s instalací Office Professional Plus 2010, řádně zakoupeného, klíč mám. Fungoval několik let a po nainstalování Win 10 a po nějaké nezdařené aktualizaci vypověděl službu. Odinstaloval jsem ho, pomocí dosažitelných "čističů" jsem se snažil odstranit zbytky. Ale stále je instalace neúspěšná. Asi v polovině napíše zprávu "Zjištěna chyba během instalace". Viz přílohy.

Děkuji ZB
Přílohy
chyba.jpg
chyba.jpg (30.51 KiB) Zobrazeno 6597 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118200
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Instalace Office

#2 Příspěvek od Rudy »

Zdravím!
Především je nutné zjistit, jestli má problém systém, nebo instalační médium. Inastalační médium vyzkoušejte na jiném PC. Pokud bude OK, bude třeba řešit systém.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Hana1Zdenek
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 09 lis 2016 09:32

Re: Instalace Office

#3 Příspěvek od Hana1Zdenek »

To jsem zkoušel, bez problému se nainstaluje.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118200
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Instalace Office

#4 Příspěvek od Rudy »

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Hana1Zdenek
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 09 lis 2016 09:32

Re: Instalace Office

#5 Příspěvek od Hana1Zdenek »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 04-11-2016
Ran by MT (administrator) on TOM-MSI (10-11-2016 08:13:57)
Running from C:\Users\bortl\Desktop
Loaded Profiles: NeroMediaHomeUser.4 & MT & DefaultAppPool (Available Profiles: Tom & NeroMediaHomeUser.4 & Děti & MT & DefaultAppPool)
Platform: Windows 10 Home (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Broadcom Corporation.) C:\WINDOWS\System32\BtwRSupportService.exe
(Motorola, Inc.) C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Atheros) C:\Program Files (x86)\Atheros\Ath_CoexAgent.exe
(ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(pdfforge GmbH) C:\Program Files\PDF Architect 4\creator-ws.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect 3\creator-ws.exe
(Microsoft Corporation) C:\WINDOWS\System32\mqsvc.exe
(StarWind Software) C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
(PS Media s.r.o.) C:\WINDOWS\SysWOW64\ssins.exe
(Microsoft Corporation) C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Motorola, Inc.) C:\Program Files\Motorola\Bluetooth\obexsrv.exe
(Nero AG) C:\Program Files (x86)\Nero\Nero MediaHome 4\NMMediaServerService.exe
(Macrovision Europe Ltd.) C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
(Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe
(Motorola, Inc.) C:\Program Files\Motorola\Bluetooth\audiosrv.exe
(Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\SeaPort.EXE
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(Microsoft Corporation) C:\WINDOWS\System32\SettingSyncHost.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(MICRO-STAR INT'L,.LTD.) C:\Program Files\MSI\WMIHookBtnFn\HookKey.exe
(Atheros Commnucations) C:\Program Files (x86)\Atheros\Bluetooth Suite\AthBtTray.exe
(Microsoft Corporation) C:\WINDOWS\System32\rundll32.exe
(Motorola, Inc.) C:\Program Files\Motorola\Bluetooth\btplayerctrl.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
() C:\Users\bortl\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\bortl\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\InputPersonalization.exe
(Microsoft Corporation) C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Microsoft Corporation) C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\ActionUriServer.exe
(Microsoft Corporation) C:\WINDOWS\System32\dllhost.exe
(Microsoft Corporation) C:\WINDOWS\System32\inetsrv\w3wp.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13885696 2015-06-24] (Realtek Semiconductor)
HKLM\...\Run: [HookKey] => C:\Program Files\MSI\WMIHookBtnFn\HookKey.exe [29608 2011-01-21] (MICRO-STAR INT'L,.LTD.)
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Atheros\Bluetooth Suite\AthBtTray.exe [379040 2010-11-26] (Atheros Commnucations)
HKLM\...\Run: [BTMTrayAgent] => C:\Program Files\Motorola\Bluetooth\btmshell.dll [21705296 2010-10-26] ()
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2010-11-06] (Intel Corporation)
HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [WDAppManager] => C:\Program Files (x86)\Western Digital\WD App Manager\AppManagerLauncher.exe [21384 2016-04-15] (Western Digital Technologies, Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [9099440 2016-11-04] (AVAST Software)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3596670076-1201241859-680613780-1003\...\Run: [Sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\S-1-5-21-3596670076-1201241859-680613780-1003\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [517632 2015-07-10] (Microsoft Corporation)
HKU\S-1-5-21-3596670076-1201241859-680613780-1016\...\Run: [cz.seznam.software.szndesktop] => C:\Users\bortl\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [103080 2015-05-26] ()
HKU\S-1-5-21-3596670076-1201241859-680613780-1016\...\Run: [cz.seznam.software.autoupdate] => C:\Users\bortl\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-3596670076-1201241859-680613780-1016\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27011712 2016-10-17] (Skype Technologies S.A.)
HKU\S-1-5-21-3596670076-1201241859-680613780-1016\...\Policies\Explorer: [NoInternetOpenWith] 1
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-11-04] (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 213.155.229.197 213.155.255.12
Tcpip\..\Interfaces\{275165be-7226-4736-8ff6-27c6aae3374c}: [DhcpNameServer] 213.155.229.197 213.155.255.12
Tcpip\..\Interfaces\{5d0db5f8-f6aa-4ad0-9f29-3e262c6066db}: [DhcpNameServer] 213.46.172.37 213.46.172.36

Internet Explorer:
==================
HKU\S-1-5-21-3596670076-1201241859-680613780-1016\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/?clid=27368
URLSearchHook: HKLM-x32 - (No Name) - {96f454ea-9d38-474f-b504-56193e00c1a5} - No File
SearchScopes: HKLM -> DefaultScope {7D943479-A68C-43BF-B598-C19720C833EB} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM -> {7D943479-A68C-43BF-B598-C19720C833EB} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}
SearchScopes: HKLM-x32 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}
SearchScopes: HKLM-x32 -> {AA1FD895-5651-4E87-A2D0-FA6CCB2DF02F} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKU\S-1-5-21-3596670076-1201241859-680613780-1016 -> DefaultScope {7D943479-A68C-43BF-B598-C19720C833EB} URL =
SearchScopes: HKU\S-1-5-21-3596670076-1201241859-680613780-1016 -> {29A51654-EE15-4E5B-89AD-27CB9A77EEA8} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_27368
SearchScopes: HKU\S-1-5-21-3596670076-1201241859-680613780-1016 -> {2C017857-8068-4716-B4BB-CC03FD4BD833} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_27368
SearchScopes: HKU\S-1-5-21-3596670076-1201241859-680613780-1016 -> {658CF123-5CA0-446C-A604-9B8CFE34E4AC} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_27368
SearchScopes: HKU\S-1-5-21-3596670076-1201241859-680613780-1016 -> {7D943479-A68C-43BF-B598-C19720C833EB} URL =
SearchScopes: HKU\S-1-5-21-3596670076-1201241859-680613780-1016 -> {83671D2D-0311-4E25-9B89-031F10335021} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_27368
SearchScopes: HKU\S-1-5-21-3596670076-1201241859-680613780-1016 -> {89AB6316-C9BA-4A82-9316-11ABB69332D4} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_27368
SearchScopes: HKU\S-1-5-21-3596670076-1201241859-680613780-1016 -> {A7AB2ACE-1C9E-4B40-9B63-3455A91F0D24} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_27368
SearchScopes: HKU\S-1-5-21-3596670076-1201241859-680613780-1016 -> {B69B7675-B919-4D34-90AF-893C26B0A045} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_27368
SearchScopes: HKU\S-1-5-21-3596670076-1201241859-680613780-1016 -> {CE2D4DC9-B093-46BC-965F-A209622EA9CE} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_27368
SearchScopes: HKU\S-1-5-21-3596670076-1201241859-680613780-1016 -> {F1B3BB6A-BF73-4676-BCC2-E74FAC39347F} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_27368
BHO: No Name -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> No File
BHO-x32: PDF Architect 3 Helper -> {06E08260-0695-4EC1-A74B-1310D8899D93} -> C:\Program Files (x86)\PDF Architect 3\creator-ie-helper.dll [2015-04-24] (pdfforge GmbH)
BHO-x32: PDF Architect 4 Helper -> {38279E1A-7019-40C1-B579-E99DFB3312E8} -> C:\Program Files (x86)\PDF Architect 4\creator-ie-helper.dll [2015-10-19] (pdfforge GmbH)
Toolbar: HKLM-x32 - PDF Architect 4 Toolbar - {23FD9C33-A9E1-48A1-8404-E5925CF1C8E1} - C:\Program Files (x86)\PDF Architect 4\creator-ie-plugin.dll [2015-10-19] (pdfforge GmbH)

FireFox:
========
FF HKLM\...\Firefox\Extensions: [pdf_architect_4_conv@pdfarchitect.org] - C:\Program Files\PDF Architect 4\resources\pdfarchitect4firefoxextension
FF Extension: (PDF Architect 4 Creator) - C:\Program Files\PDF Architect 4\resources\pdfarchitect4firefoxextension [2015-12-07] [not signed]
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-11-06]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-11-06]
FF HKLM-x32\...\Firefox\Extensions: [pdf_architect_3_conv@pdfarchitect.org] - C:\Program Files (x86)\PDF Architect 3\resources\pdfarchitect3firefoxextension
FF Extension: (PDF Architect 3 Creator) - C:\Program Files (x86)\PDF Architect 3\resources\pdfarchitect3firefoxextension [2015-08-28] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [No File]
FF Plugin: @microsoft.com/VirtualEarth3D,version=4.0 -> C:\Program Files (x86)\Virtual Earth 3D\ [] ()
FF Plugin: @videolan.org/vlc,version=2.2.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2016-10-06] (Google)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/VirtualEarth3D,version=4.0 -> C:\Program Files (x86)\Virtual Earth 3D\ [] ()
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-10-01] (Adobe Systems Inc.)
FF Plugin-x32: PDF Architect 3 -> C:\Program Files (x86)\PDF Architect 3\np-previewer.dll [2015-04-24] (pdfforge GmbH)
FF Plugin-x32: PDF Architect 4 -> C:\Program Files (x86)\PDF Architect 4\np-previewer.dll [2015-10-19] (pdfforge GmbH)

Chrome:
=======
CHR HomePage: Default -> hxxps://www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://www.seznam.cz/"
CHR DefaultSearchURL: Default -> hxxps://search.seznam.cz/?q={searchTerms}&sourceid=Searchmodule_1
CHR DefaultSearchKeyword: Default -> search.seznam.cz
CHR DefaultSuggestURL: Default -> hxxps://suggest.seznam.cz/fulltext_ff?phrase={searchTerms}
CHR Profile: C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default [2016-11-10]
CHR Extension: (Prezentace Google) - C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-09-23]
CHR Extension: (Dokumenty Google) - C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-09-23]
CHR Extension: (Disk Google) - C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-09-23]
CHR Extension: (Seznam Lištička - Email) - C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2016-11-10]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2016-11-10]
CHR Extension: (YouTube) - C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-09-23]
CHR Extension: (Tabulky Google) - C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-09-23]
CHR Extension: (Dokumenty Google offline) - C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-09-23]
CHR Extension: (Avast Online Security) - C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-11-05]
CHR Extension: (FromDocToPDF) - C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Extensions\hchmmhlbahnilgeflhdciiobdnmjgiag [2016-09-23]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-09-23]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2016-11-10]
CHR Extension: (Gmail) - C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-09-23]
CHR Extension: (Chrome Media Router) - C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-21]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Atheros\Ath_CoexAgent.exe [151552 2010-05-25] (Atheros) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2016-11-04] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [223600 2016-11-06] (AVAST Software)
S2 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [75624 2012-01-05] (Alcohol Soft Development Team)
R2 BcmBtRSupport; C:\WINDOWS\system32\BtwRSupportService.exe [2255064 2015-08-28] (Broadcom Corporation.)
S3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [647680 2011-03-05] (Macrovision Europe Ltd.) [File not signed]
R3 FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [1028096 2011-03-05] (Macrovision Europe Ltd.) [File not signed]
S2 MSI Foundation Service; C:\Program Files (x86)\MSI\MSI HOUSE\MSIFoundationService.exe [12800 2010-07-17] (MSI) [File not signed]
R2 NeroMediaHomeService.4; C:\Program Files (x86)\Nero\Nero MediaHome 4\NMMediaServerService.exe [259368 2009-06-23] (Nero AG)
S2 NewServiceInstall1; C:\Program Files (x86)\MSI\WindMatch\WindMatch.exe [135592 2010-07-22] (MICRO-STAR INT'L CO.,LTD.)
S2 OberonGameConsoleService; C:\Program Files (x86)\MSI\MSI Game Corner\Game Console\OberonGameConsoleService.exe [44432 2010-07-22] ()
S3 PDF Architect 3; C:\Program Files (x86)\PDF Architect 3\ws.exe [2244312 2015-04-24] (pdfforge GmbH)
S3 PDF Architect 3 CrashHandler; C:\Program Files (x86)\PDF Architect 3\crash-handler-ws.exe [901336 2015-04-24] (pdfforge GmbH)
R2 PDF Architect 3 Creator; C:\Program Files (x86)\PDF Architect 3\creator-ws.exe [740568 2015-04-24] (pdfforge GmbH)
S3 PDF Architect 4; C:\Program Files\PDF Architect 4\ws.exe [2417376 2015-10-19] (pdfforge GmbH)
S3 PDF Architect 4 CrashHandler; C:\Program Files\PDF Architect 4\crash-handler-ws.exe [1038048 2015-10-19] (pdfforge GmbH)
R2 PDF Architect 4 Creator; C:\Program Files\PDF Architect 4\creator-ws.exe [851168 2015-10-19] (pdfforge GmbH)
R2 ssinstall; C:\windows\SysWOW64\ssins.exe [2324216 2015-08-04] (PS Media s.r.o.)
R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7500048 2016-09-20] (TeamViewer GmbH)
S3 vmicguestinterface; C:\WINDOWS\System32\ICSvc.dll [506880 2016-09-30] (Microsoft Corporation)
S3 vmicheartbeat; C:\WINDOWS\System32\ICSvc.dll [506880 2016-09-30] (Microsoft Corporation)
S3 vmickvpexchange; C:\WINDOWS\System32\ICSvc.dll [506880 2016-09-30] (Microsoft Corporation)
S3 vmicshutdown; C:\WINDOWS\System32\ICSvc.dll [506880 2016-09-30] (Microsoft Corporation)
S3 vmictimesync; C:\WINDOWS\System32\ICSvc.dll [506880 2016-09-30] (Microsoft Corporation)
S3 vmicvmsession; C:\WINDOWS\System32\ICSvc.dll [506880 2016-09-30] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362920 2016-09-07] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2016-09-30] (Microsoft Corporation)
S2 WMI_Hook_Service; C:\Program Files\MSI\WMIHookBtnFn\WMI_Hook_Service.exe [120232 2011-01-21] (MICRO-STAR INT'L,.LTD.)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [37656 2016-11-04] (AVAST Software)
R1 aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [37144 2016-11-04] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [108816 2016-11-04] (AVAST Software)
R1 aswNetSec; C:\WINDOWS\system32\drivers\aswNetSec.sys [453192 2016-11-06] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [103064 2016-11-04] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-11-04] (AVAST Software)
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [969184 2016-11-04] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [513632 2016-11-04] (AVAST Software)
R2 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [163416 2016-11-04] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [293352 2016-11-04] (AVAST Software)
S3 AVerPola; C:\WINDOWS\system32\DRIVERS\AVerPola.sys [871056 2015-05-21] (AVerMedia TECHNOLOGIES, Inc.)
S3 AVPolDIR; C:\WINDOWS\System32\drivers\AVPolDIR.sys [15896 2015-05-21] (AVerMedia TECHNOLOGIES, Inc.)
R3 bcbtums; C:\WINDOWS\system32\drivers\bcbtums.sys [170712 2015-08-28] (Broadcom Corporation.)
S3 btmaudio; C:\WINDOWS\system32\drivers\btmaud.sys [43008 2010-10-14] (Motorola, Inc.) [File not signed]
R3 BTMNET; C:\WINDOWS\System32\drivers\btmnet.sys [30208 2010-07-16] (Motorola, Inc.)
R3 netr28x; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2554528 2015-06-12] (MediaTek Inc.)
S3 nmwcd; C:\WINDOWS\system32\drivers\ccdcmbx64.sys [19968 2013-01-23] (Nokia) [File not signed]
S3 nmwcdc; C:\WINDOWS\system32\drivers\ccdcmbox64.sys [27136 2013-01-23] (Nokia) [File not signed]
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [587264 2015-07-10] (Realtek )
S3 SWDUMon; C:\WINDOWS\system32\DRIVERS\SWDUMon.sys [25608 2016-08-31] (SlimWare Utilities, Inc.)
S3 UdeCx; C:\WINDOWS\System32\drivers\udecx.sys [44032 2015-07-10] ()
S3 upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltx64.sys [9216 2013-01-23] (Nokia) [File not signed]
S3 UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltjx64.sys [9216 2013-01-23] (Nokia) [File not signed]
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
U3 idsvc; no ImagePath
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
U3 wpcsvc; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-11-10 08:13 - 2016-11-10 08:14 - 00024631 _____ C:\Users\bortl\Desktop\FRST.txt
2016-11-10 08:13 - 2016-11-10 08:13 - 00000000 ____D C:\FRST
2016-11-10 08:08 - 2016-11-10 08:08 - 00112640 _____ (forum.viry.cz) C:\Users\bortl\Desktop\Nepotvrzeno 54718.crdownload
2016-11-10 07:54 - 2016-11-10 08:13 - 02410496 _____ (Farbar) C:\Users\bortl\Desktop\FRST64.exe
2016-11-10 07:33 - 2016-11-10 07:33 - 00016148 _____ C:\WINDOWS\system32\TOM-MSI_MT_HistoryPrediction.bin
2016-11-10 07:33 - 2016-11-10 07:33 - 00000000 ___HD C:\OneDriveTemp
2016-11-08 17:57 - 2016-11-08 17:57 - 00186880 ___SH C:\Users\bortl\Downloads\Thumbs.db
2016-11-08 16:32 - 2016-11-08 16:32 - 00000000 ____D C:\Users\bortl\AppData\Roaming\OpenOffice
2016-11-08 16:31 - 2016-11-08 16:31 - 00001116 _____ C:\Users\Public\Desktop\OpenOffice 4.1.2.lnk
2016-11-08 16:31 - 2016-11-08 16:31 - 00000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.2
2016-11-08 16:30 - 2016-11-08 16:31 - 00000000 ____D C:\Program Files (x86)\OpenOffice 4
2016-11-08 08:55 - 2016-11-08 10:01 - 00000000 ____D C:\$Windows.~BT
2016-11-08 08:53 - 2016-11-08 09:25 - 00000000 ___HD C:\$SysReset
2016-11-07 08:36 - 2016-11-07 08:36 - 00000000 ____D C:\Users\bortl\AppData\Roaming\opera_helper
2016-11-06 19:11 - 2016-11-06 19:11 - 00001989 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Internet Security.lnk
2016-11-06 19:11 - 2016-11-06 19:11 - 00001977 _____ C:\Users\Public\Desktop\Avast Internet Security.lnk
2016-11-06 19:10 - 2016-11-06 19:09 - 00453192 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetSec.sys
2016-11-06 19:09 - 2016-11-04 17:38 - 00391496 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2016-11-04 17:49 - 2016-11-04 17:49 - 00000000 ____D C:\Users\bortl\AppData\Local\MFAData
2016-11-04 17:44 - 2016-11-04 18:35 - 00000000 ____D C:\Users\bortl\AppData\Local\AvgSetupLog
2016-11-04 17:41 - 2016-11-06 19:29 - 00004004 _____ C:\WINDOWS\System32\Tasks\SafeZone scheduled Autoupdate 1478277683
2016-11-04 17:41 - 2016-11-06 19:29 - 00001098 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2016-11-04 17:41 - 2016-11-04 17:41 - 00037144 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2016-11-04 17:41 - 2016-11-04 17:41 - 00001098 _____ C:\Users\Public\Desktop\Avast SafeZone Browser.lnk
2016-11-04 17:39 - 2016-11-04 17:39 - 00000000 ____D C:\Users\bortl\AppData\Roaming\AVAST Software
2016-11-04 17:38 - 2016-11-06 19:10 - 00004004 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update
2016-11-04 17:38 - 2016-11-04 17:39 - 00969184 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2016-11-04 17:38 - 2016-11-04 17:39 - 00513632 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2016-11-04 17:38 - 2016-11-04 17:39 - 00293352 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2016-11-04 17:38 - 2016-11-04 17:38 - 00163416 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2016-11-04 17:38 - 2016-11-04 17:38 - 00108816 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2016-11-04 17:38 - 2016-11-04 17:38 - 00103064 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2016-11-04 17:38 - 2016-11-04 17:38 - 00074544 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2016-11-04 17:38 - 2016-11-04 17:38 - 00053208 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2016-11-04 17:38 - 2016-11-04 17:38 - 00037656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2016-11-04 17:36 - 2016-11-04 17:41 - 00000000 ____D C:\Program Files\AVAST Software
2016-11-04 09:25 - 2016-11-04 10:18 - 00000000 ____D C:\ESD
2016-11-04 09:15 - 2016-11-04 09:15 - 00000000 ___HD C:\$Windows.~WS
2016-11-03 11:16 - 2016-11-04 18:26 - 00008192 _____ C:\Users\MT\ntuser.man
2016-11-02 10:15 - 2016-11-02 10:32 - 00000000 ____D C:\Users\bortl\AppData\Roaming\Kastner software
2016-11-02 10:15 - 2016-11-02 10:32 - 00000000 ____D C:\ProgramData\KASTNER software
2016-11-01 17:52 - 2016-11-01 17:52 - 00000000 ____D C:\Users\bortl\AppData\Local\ABBYY
2016-10-28 07:26 - 2016-10-28 07:26 - 00000000 ____D C:\WINDOWS\UpdateAssistant
2016-10-26 14:07 - 2016-11-09 09:58 - 00809472 ___SH C:\Users\bortl\Desktop\Thumbs.db
2016-10-25 17:30 - 2016-10-25 17:30 - 00001757 _____ C:\Users\bortl\Desktop\RevoUnin – zástupce.lnk
2016-10-25 17:25 - 2016-10-25 17:25 - 00001089 _____ C:\Users\Public\Desktop\Revo Uninstaller.lnk
2016-10-25 17:25 - 2016-10-25 17:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
2016-10-25 17:25 - 2016-10-25 17:25 - 00000000 ____D C:\Program Files\VS Revo Group
2016-10-23 14:57 - 2016-10-23 14:57 - 00000000 ____D C:\Users\bortl\AppData\Roaming\WinRAR
2016-10-23 14:55 - 2016-10-23 14:55 - 00000000 ____D C:\Users\bortl\AppData\Roaming\PC Suite
2016-10-23 14:55 - 2016-10-23 14:55 - 00000000 ____D C:\Users\bortl\AppData\Local\NokiaAccount
2016-10-23 14:55 - 2016-10-23 14:55 - 00000000 ____D C:\Users\bortl\AppData\Local\Nokia
2016-10-23 11:28 - 2016-10-23 11:28 - 00000000 ___HD C:\ProgramData\{B96EB44A-7860-4F13-BC9A-0A73CA5F11C2}
2016-10-23 11:28 - 2016-10-23 11:28 - 00000000 ____D C:\ProgramData\Solvusoft
2016-10-23 11:27 - 2016-10-23 12:20 - 00000000 ____D C:\Users\bortl\AppData\Local\IIIQF
2016-10-22 18:48 - 2016-10-22 18:48 - 717729752 _____ (Microsoft Corporation) C:\Users\bortl\Downloads\microsoft-office-2010-professional.exe
2016-10-22 15:30 - 2016-11-09 11:56 - 00000024 _____ C:\ScrubRetValFile.txt
2016-10-22 15:28 - 2016-10-22 15:28 - 00401870 _____ C:\Users\bortl\Desktop\MicrosoftFixit20055.mini.diagcab
2016-10-20 18:13 - 2016-10-20 18:13 - 00000000 ____D C:\Users\bortl\AppData\Roaming\dvdcss
2016-10-14 14:33 - 2016-11-08 07:35 - 00000000 ____D C:\Users\bortl\AppData\Roaming\vlc
2016-10-12 15:20 - 2016-09-30 06:50 - 06525424 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2016-10-12 15:20 - 2016-09-30 05:19 - 21859840 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-10-12 15:20 - 2016-09-30 05:17 - 24596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-10-12 15:19 - 2016-09-30 07:00 - 08015712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-10-12 15:19 - 2016-09-30 07:00 - 01538168 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-10-12 15:19 - 2016-09-30 07:00 - 00652864 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-10-12 15:19 - 2016-09-30 06:58 - 02156400 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll
2016-10-12 15:19 - 2016-09-30 06:58 - 00588832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmdev.dll
2016-10-12 15:19 - 2016-09-30 06:51 - 03643480 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-10-12 15:19 - 2016-09-30 06:50 - 01134792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2016-10-12 15:19 - 2016-09-30 06:41 - 01295712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll
2016-10-12 15:19 - 2016-09-30 05:24 - 02152744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-10-12 15:19 - 2016-09-30 05:23 - 16708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-10-12 15:19 - 2016-09-30 05:16 - 02418688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-10-12 15:19 - 2016-09-30 05:13 - 02898112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-10-12 15:19 - 2016-09-30 05:07 - 14243840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-10-12 15:19 - 2016-09-30 05:07 - 12514304 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-10-12 15:19 - 2016-09-30 05:05 - 07055872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-10-12 15:19 - 2016-09-30 05:04 - 02839040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2016-10-12 15:19 - 2016-09-30 04:58 - 02405888 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2016-10-12 15:19 - 2016-09-30 04:57 - 07527936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-10-12 15:19 - 2016-09-30 04:57 - 01670656 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2016-10-12 15:19 - 2016-09-30 04:56 - 04791808 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-10-12 15:19 - 2016-09-30 04:54 - 03549696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll
2016-10-12 15:19 - 2016-09-30 04:43 - 13027328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-10-12 15:19 - 2016-09-30 04:36 - 19334656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-10-12 15:19 - 2016-09-30 04:29 - 04398592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2016-10-12 15:19 - 2016-09-30 04:23 - 02198016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2016-10-12 15:19 - 2016-09-30 04:22 - 18799104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-10-12 15:19 - 2016-09-30 04:22 - 12591104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-10-12 15:19 - 2016-09-30 04:16 - 05455872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-10-12 15:19 - 2016-09-30 04:15 - 11270656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-10-12 15:18 - 2016-09-30 07:01 - 02463704 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-10-12 15:18 - 2016-09-30 07:00 - 02816016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2016-10-12 15:18 - 2016-09-30 07:00 - 01298008 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-10-12 15:18 - 2016-09-30 06:45 - 00613120 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-10-12 15:18 - 2016-09-30 06:41 - 00984448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2016-10-12 15:18 - 2016-09-30 05:11 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-10-12 15:18 - 2016-09-30 05:08 - 01418752 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-10-12 15:18 - 2016-09-30 05:08 - 00893440 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2016-10-12 15:18 - 2016-09-30 05:08 - 00814592 _____ (Microsoft Corporation) C:\WINDOWS\system32\provcore.dll
2016-10-12 15:18 - 2016-09-30 05:07 - 00545400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-10-12 15:18 - 2016-09-30 05:03 - 03170816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-10-12 15:18 - 2016-09-30 05:03 - 01601024 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-10-12 15:18 - 2016-09-30 05:02 - 00901264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2016-10-12 15:18 - 2016-09-30 04:57 - 03584000 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-10-12 15:18 - 2016-09-30 04:57 - 01718272 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-10-12 15:18 - 2016-09-30 04:54 - 03420160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSAT.exe
2016-10-12 15:18 - 2016-09-30 04:22 - 02638336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-10-12 15:18 - 2016-09-30 04:22 - 01382400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-10-12 15:18 - 2016-09-30 04:18 - 03579904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-10-12 15:18 - 2016-09-30 04:17 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2016-10-12 15:17 - 2016-09-30 07:00 - 02147072 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2016-10-12 15:17 - 2016-09-30 07:00 - 01127024 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-10-12 15:17 - 2016-09-30 07:00 - 00601344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-10-12 15:17 - 2016-09-30 07:00 - 00123744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2016-10-12 15:17 - 2016-09-30 06:58 - 02640872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2016-10-12 15:17 - 2016-09-30 06:58 - 02601152 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-10-12 15:17 - 2016-09-30 06:58 - 00388888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2016-10-12 15:17 - 2016-09-30 06:58 - 00305816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll
2016-10-12 15:17 - 2016-09-30 06:51 - 00252768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-10-12 15:17 - 2016-09-30 06:50 - 00724168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2016-10-12 15:17 - 2016-09-30 06:46 - 00224712 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-10-12 15:17 - 2016-09-30 06:43 - 00244064 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmipnpinstall.dll
2016-10-12 15:17 - 2016-09-30 06:41 - 00850272 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvstore.dll
2016-10-12 15:17 - 2016-09-30 05:23 - 01895576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hevcdecoder.dll
2016-10-12 15:17 - 2016-09-30 05:22 - 02369696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2016-10-12 15:17 - 2016-09-30 05:22 - 01811360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-10-12 15:17 - 2016-09-30 05:22 - 00524800 _____ C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-10-12 15:17 - 2016-09-30 05:22 - 00374784 _____ C:\WINDOWS\system32\EditionUpgradeHelper.dll
2016-10-12 15:17 - 2016-09-30 05:22 - 00253600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpeffects.dll
2016-10-12 15:17 - 2016-09-30 05:12 - 00565656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2016-10-12 15:17 - 2016-09-30 05:06 - 00345088 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2016-10-12 15:17 - 2016-09-30 05:05 - 00455680 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll
2016-10-12 15:17 - 2016-09-30 05:05 - 00192344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmipnpinstall.dll
2016-10-12 15:17 - 2016-09-30 05:04 - 00700256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvstore.dll
2016-10-12 15:17 - 2016-09-30 05:03 - 01040384 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2016-10-12 15:17 - 2016-09-30 05:03 - 00573952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-10-12 15:17 - 2016-09-30 05:02 - 00775680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-10-12 15:17 - 2016-09-30 05:00 - 00841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-10-12 15:17 - 2016-09-30 04:59 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafPrintProvider.dll
2016-10-12 15:17 - 2016-09-30 04:54 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2016-10-12 15:17 - 2016-09-30 04:53 - 00939008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-10-12 15:17 - 2016-09-30 04:31 - 01823232 _____ C:\WINDOWS\SysWOW64\InputService.dll
2016-10-12 15:17 - 2016-09-30 04:29 - 00846848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NaturalLanguage6.dll
2016-10-12 15:17 - 2016-09-30 04:26 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2016-10-12 15:17 - 2016-09-30 04:22 - 00885248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2016-10-12 15:17 - 2016-09-30 04:21 - 00679936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-10-12 15:17 - 2016-09-30 04:21 - 00501760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-10-12 15:17 - 2016-09-30 04:21 - 00486912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2016-10-12 15:17 - 2016-09-30 04:16 - 01467904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-10-12 15:17 - 2016-09-30 04:12 - 02362880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll
2016-10-12 15:16 - 2016-09-30 07:01 - 03467776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2016-10-12 15:16 - 2016-09-30 07:01 - 01561872 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2016-10-12 15:16 - 2016-09-30 07:01 - 00552288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-10-12 15:16 - 2016-09-30 07:00 - 02495776 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-10-12 15:16 - 2016-09-30 07:00 - 01563480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2016-10-12 15:16 - 2016-09-30 07:00 - 01270104 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-10-12 15:16 - 2016-09-30 07:00 - 01043872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-10-12 15:16 - 2016-09-30 07:00 - 00143600 _____ (Microsoft Corporation) C:\WINDOWS\system32\cabinet.dll
2016-10-12 15:16 - 2016-09-30 06:59 - 02115936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-10-12 15:16 - 2016-09-30 06:58 - 01150304 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-10-12 15:16 - 2016-09-30 06:58 - 00862064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2016-10-12 15:16 - 2016-09-30 06:58 - 00807832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-10-12 15:16 - 2016-09-30 06:51 - 00801632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-10-12 15:16 - 2016-09-30 06:50 - 00658568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2016-10-12 15:16 - 2016-09-30 06:46 - 00672096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2016-10-12 15:16 - 2016-09-30 05:31 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-10-12 15:16 - 2016-09-30 05:25 - 00365128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2016-10-12 15:16 - 2016-09-30 05:24 - 01766496 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-10-12 15:16 - 2016-09-30 05:24 - 01356368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2016-10-12 15:16 - 2016-09-30 05:24 - 01106872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2016-10-12 15:16 - 2016-09-30 05:24 - 00877568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-10-12 15:16 - 2016-09-30 05:24 - 00439648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2016-10-12 15:16 - 2016-09-30 05:24 - 00125032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cabinet.dll
2016-10-12 15:16 - 2016-09-30 05:21 - 00714808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2016-10-12 15:16 - 2016-09-30 05:13 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2016-10-12 15:16 - 2016-09-30 05:10 - 01123840 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalLanguage6.dll
2016-10-12 15:16 - 2016-09-30 05:08 - 00185952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2016-10-12 15:16 - 2016-09-30 05:04 - 02253824 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
2016-10-12 15:16 - 2016-09-30 05:00 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll
2016-10-12 15:16 - 2016-09-30 04:59 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsmsext.dll
2016-10-12 15:16 - 2016-09-30 04:55 - 00416256 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2016-10-12 15:16 - 2016-09-30 04:54 - 00406016 _____ (Microsoft Corporation) C:\WINDOWS\system32\das.dll
2016-10-12 15:16 - 2016-09-30 04:53 - 00236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpdxm.dll
2016-10-12 15:16 - 2016-09-30 04:31 - 01918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-10-12 15:16 - 2016-09-30 04:19 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CryptoWinRT.dll
2016-10-12 15:16 - 2016-09-30 04:18 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafPrintProvider.dll
2016-10-12 15:16 - 2016-09-30 04:18 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adsmsext.dll
2016-10-12 15:16 - 2016-09-30 04:13 - 00309248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2016-10-12 15:16 - 2016-09-30 04:11 - 00716288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
2016-10-12 15:15 - 2016-09-30 05:21 - 00290304 _____ (Microsoft Corporation) C:\WINDOWS\system32\oemlicense.dll
2016-10-12 15:15 - 2016-09-30 05:18 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-10-12 15:15 - 2016-09-30 05:16 - 07569408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-10-12 15:15 - 2016-09-30 05:15 - 02902528 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-10-12 15:15 - 2016-09-30 05:14 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NAPCRYPT.DLL
2016-10-12 15:15 - 2016-09-30 05:13 - 02446336 _____ C:\WINDOWS\system32\InputService.dll
2016-10-12 15:15 - 2016-09-30 05:12 - 00456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2016-10-12 15:15 - 2016-09-30 05:12 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2016-10-12 15:15 - 2016-09-30 05:11 - 03793408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-10-12 15:15 - 2016-09-30 05:11 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-10-12 15:15 - 2016-09-30 05:10 - 02238464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-10-12 15:15 - 2016-09-30 05:10 - 00183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSSync.dll
2016-10-12 15:15 - 2016-09-30 05:09 - 04847616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2016-10-12 15:15 - 2016-09-30 05:06 - 00846848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipsecsnp.dll
2016-10-12 15:15 - 2016-09-30 05:06 - 00482304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll
2016-10-12 15:15 - 2016-09-30 05:06 - 00326656 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2016-10-12 15:15 - 2016-09-30 05:06 - 00322560 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp
2016-10-12 15:15 - 2016-09-30 05:06 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2016-10-12 15:15 - 2016-09-30 05:06 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmgp.dll
2016-10-12 15:15 - 2016-09-30 05:06 - 00107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2016-10-12 15:15 - 2016-09-30 05:04 - 00267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationHost.exe
2016-10-12 15:15 - 2016-09-30 05:03 - 01686528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-10-12 15:15 - 2016-09-30 05:03 - 00799232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll
2016-10-12 15:15 - 2016-09-30 05:02 - 00607232 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMActivate_isv.exe
2016-10-12 15:15 - 2016-09-30 05:02 - 00528384 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2016-10-12 15:15 - 2016-09-30 05:01 - 05448704 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll
2016-10-12 15:15 - 2016-09-30 05:01 - 02093056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-10-12 15:15 - 2016-09-30 05:01 - 01797632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmsipc.dll
2016-10-12 15:15 - 2016-09-30 05:01 - 00500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMActivate_ssp.exe
2016-10-12 15:15 - 2016-09-30 05:00 - 00819712 _____ (Microsoft Corporation) C:\WINDOWS\system32\licensingdiag.exe
2016-10-12 15:15 - 2016-09-30 05:00 - 00577024 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMActivate.exe
2016-10-12 15:15 - 2016-09-30 05:00 - 00501248 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMActivate_ssp_isv.exe
2016-10-12 15:15 - 2016-09-30 04:59 - 01729024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2016-10-12 15:15 - 2016-09-30 04:59 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\WPTaskScheduler.dll
2016-10-12 15:15 - 2016-09-30 04:58 - 04168704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2016-10-12 15:15 - 2016-09-30 04:58 - 02238464 _____ (Microsoft Corporation) C:\WINDOWS\system32\certmgr.dll
2016-10-12 15:15 - 2016-09-30 04:58 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\system32\filemgmt.dll
2016-10-12 15:15 - 2016-09-30 04:57 - 07502848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-10-12 15:15 - 2016-09-30 04:57 - 00832512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-10-12 15:15 - 2016-09-30 04:55 - 01844736 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2016-10-12 15:15 - 2016-09-30 04:55 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2016-10-12 15:15 - 2016-09-30 04:55 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll
2016-10-12 15:15 - 2016-09-30 04:54 - 02050048 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2016-10-12 15:15 - 2016-09-30 04:54 - 01061888 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-10-12 15:15 - 2016-09-30 04:54 - 00519680 _____ (Microsoft Corporation) C:\WINDOWS\system32\devmgr.dll
2016-10-12 15:15 - 2016-09-30 04:54 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnpclean.dll
2016-10-12 15:15 - 2016-09-30 04:53 - 01346048 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMNetMgr.dll
2016-10-12 15:15 - 2016-09-30 04:53 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvc.dll
2016-10-12 15:15 - 2016-09-30 04:53 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpshell.dll
2016-10-12 15:15 - 2016-09-30 04:51 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll
2016-10-12 15:15 - 2016-09-30 04:38 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oemlicense.dll
2016-10-12 15:15 - 2016-09-30 04:34 - 00328704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-10-12 15:15 - 2016-09-30 04:31 - 02599424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2016-10-12 15:15 - 2016-09-30 04:31 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll
2016-10-12 15:15 - 2016-09-30 04:30 - 00338944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2016-10-12 15:15 - 2016-09-30 04:29 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-10-12 15:15 - 2016-09-30 04:29 - 00153088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSSync.dll
2016-10-12 15:15 - 2016-09-30 04:27 - 06101504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-10-12 15:15 - 2016-09-30 04:27 - 03873280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2016-10-12 15:15 - 2016-09-30 04:27 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\provcore.dll
2016-10-12 15:15 - 2016-09-30 04:27 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iassvcs.dll
2016-10-12 15:15 - 2016-09-30 04:25 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp
2016-10-12 15:15 - 2016-09-30 04:25 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll
2016-10-12 15:15 - 2016-09-30 04:25 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll
2016-10-12 15:15 - 2016-09-30 04:25 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll
2016-10-12 15:15 - 2016-09-30 04:25 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlmgp.dll
2016-10-12 15:15 - 2016-09-30 04:25 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll
2016-10-12 15:15 - 2016-09-30 04:24 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll
2016-10-12 15:15 - 2016-09-30 04:22 - 05079552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-10-12 15:15 - 2016-09-30 04:22 - 00244224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationHost.exe
2016-10-12 15:15 - 2016-09-30 04:21 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-10-12 15:15 - 2016-09-30 04:20 - 01350144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmsipc.dll
2016-10-12 15:15 - 2016-09-30 04:19 - 00617472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\licensingdiag.exe
2016-10-12 15:15 - 2016-09-30 04:19 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RMActivate_isv.exe
2016-10-12 15:15 - 2016-09-30 04:19 - 00544768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RMActivate.exe
2016-10-12 15:15 - 2016-09-30 04:19 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RMActivate_ssp_isv.exe
2016-10-12 15:15 - 2016-09-30 04:19 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RMActivate_ssp.exe
2016-10-12 15:15 - 2016-09-30 04:17 - 03443200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll
2016-10-12 15:15 - 2016-09-30 04:17 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certmgr.dll
2016-10-12 15:15 - 2016-09-30 04:15 - 06713856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-10-12 15:15 - 2016-09-30 04:15 - 00565760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2016-10-12 15:15 - 2016-09-30 04:13 - 00468480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devmgr.dll
2016-10-12 15:15 - 2016-09-30 04:12 - 01189888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMNetMgr.dll
2016-10-12 15:15 - 2016-09-30 04:12 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpdxm.dll
2016-10-12 15:15 - 2016-09-30 04:12 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpshell.dll
2016-10-12 15:15 - 2016-09-30 02:13 - 00446124 _____ C:\WINDOWS\system32\ApnDatabase.xml
2016-10-12 15:14 - 2016-09-30 05:28 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe
2016-10-12 15:14 - 2016-09-30 05:23 - 00483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-10-12 15:14 - 2016-09-30 05:23 - 00422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcfile.dll
2016-10-12 15:14 - 2016-09-30 05:12 - 00596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2016-10-12 15:14 - 2016-09-30 05:12 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2016-10-12 15:14 - 2016-09-30 05:10 - 00963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2016-10-12 15:14 - 2016-09-30 05:10 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-10-12 15:14 - 2016-09-30 05:10 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2016-10-12 15:14 - 2016-09-30 05:10 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2016-10-12 15:14 - 2016-09-30 05:09 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll
2016-10-12 15:14 - 2016-09-30 05:09 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassvcs.dll
2016-10-12 15:14 - 2016-09-30 05:07 - 00181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\verifiergui.exe
2016-10-12 15:14 - 2016-09-30 05:06 - 00569344 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2016-10-12 15:14 - 2016-09-30 05:06 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmdl32.exe
2016-10-12 15:14 - 2016-09-30 05:05 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\blackbox.dll
2016-10-12 15:14 - 2016-09-30 05:05 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscp.dll
2016-10-12 15:14 - 2016-09-30 05:05 - 00281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3gpui.dll
2016-10-12 15:14 - 2016-09-30 05:05 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\msnetobj.dll
2016-10-12 15:14 - 2016-09-30 05:05 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys
2016-10-12 15:14 - 2016-09-30 05:05 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\genericusbfn.sys
2016-10-12 15:14 - 2016-09-30 05:04 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2016-10-12 15:14 - 2016-09-30 05:04 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthAvrcpTg.sys
2016-10-12 15:14 - 2016-09-30 05:03 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-10-12 15:14 - 2016-09-30 05:03 - 00378880 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtckrm.dll
2016-10-12 15:14 - 2016-09-30 05:03 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationHostProxy.dll
2016-10-12 15:14 - 2016-09-30 05:01 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2016-10-12 15:14 - 2016-09-30 05:00 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2016-10-12 15:14 - 2016-09-30 05:00 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2016-10-12 15:14 - 2016-09-30 05:00 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
2016-10-12 15:14 - 2016-09-30 04:59 - 04453888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2016-10-12 15:14 - 2016-09-30 04:59 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2016-10-12 15:14 - 2016-09-30 04:59 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\pwrshplugin.dll
2016-10-12 15:14 - 2016-09-30 04:59 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\scfilter.sys
2016-10-12 15:14 - 2016-09-30 04:58 - 00270848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mycomput.dll
2016-10-12 15:14 - 2016-09-30 04:58 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\els.dll
2016-10-12 15:14 - 2016-09-30 04:57 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2016-10-12 15:14 - 2016-09-30 04:56 - 00408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2016-10-12 15:14 - 2016-09-30 04:56 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2016-10-12 15:14 - 2016-09-30 04:56 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Magnification.dll
2016-10-12 15:14 - 2016-09-30 04:55 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmdskmgr.dll
2016-10-12 15:14 - 2016-09-30 04:55 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll
2016-10-12 15:14 - 2016-09-30 04:53 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\makecab.exe
2016-10-12 15:14 - 2016-09-30 04:53 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\expand.exe
2016-10-12 15:14 - 2016-09-30 04:53 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\extrac32.exe
2016-10-12 15:14 - 2016-09-30 04:52 - 00624640 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2016-10-12 15:14 - 2016-09-30 04:51 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgcore.dll
2016-10-12 15:14 - 2016-09-30 04:39 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2016-10-12 15:14 - 2016-09-30 04:39 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winipcfile.dll
2016-10-12 15:14 - 2016-09-30 04:30 - 00806912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2016-10-12 15:14 - 2016-09-30 04:30 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp_win.dll
2016-10-12 15:14 - 2016-09-30 04:30 - 00420352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe
2016-10-12 15:14 - 2016-09-30 04:29 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
2016-10-12 15:14 - 2016-09-30 04:28 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqrt.dll
2016-10-12 15:14 - 2016-09-30 04:28 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2016-10-12 15:14 - 2016-09-30 04:26 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\verifiergui.exe
2016-10-12 15:14 - 2016-09-30 04:25 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlangpui.dll
2016-10-12 15:14 - 2016-09-30 04:25 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmdl32.exe
2016-10-12 15:14 - 2016-09-30 04:24 - 00770048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ipsecsnp.dll
2016-10-12 15:14 - 2016-09-30 04:24 - 00640512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\blackbox.dll
2016-10-12 15:14 - 2016-09-30 04:24 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2016-10-12 15:14 - 2016-09-30 04:24 - 00352256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscp.dll
2016-10-12 15:14 - 2016-09-30 04:24 - 00243200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3gpui.dll
2016-10-12 15:14 - 2016-09-30 04:24 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msnetobj.dll
2016-10-12 15:14 - 2016-09-30 04:22 - 01492992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2016-10-12 15:14 - 2016-09-30 04:22 - 00650240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2016-10-12 15:14 - 2016-09-30 04:22 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationHostProxy.dll
2016-10-12 15:14 - 2016-09-30 04:19 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll
2016-10-12 15:14 - 2016-09-30 04:19 - 00158720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll
2016-10-12 15:14 - 2016-09-30 04:19 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IdCtrls.dll
2016-10-12 15:14 - 2016-09-30 04:17 - 03692032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2016-10-12 15:14 - 2016-09-30 04:17 - 00472064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\filemgmt.dll
2016-10-12 15:14 - 2016-09-30 04:17 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mycomput.dll
2016-10-12 15:14 - 2016-09-30 04:17 - 00183808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\els.dll
2016-10-12 15:14 - 2016-09-30 04:17 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pwrshplugin.dll
2016-10-12 15:14 - 2016-09-30 04:15 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll
2016-10-12 15:14 - 2016-09-30 04:15 - 00320512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll
2016-10-12 15:14 - 2016-09-30 04:15 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Magnification.dll
2016-10-12 15:14 - 2016-09-30 04:14 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmdskmgr.dll
2016-10-12 15:14 - 2016-09-30 04:12 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\makecab.exe
2016-10-12 15:14 - 2016-09-30 04:12 - 00054272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\expand.exe
2016-10-12 15:14 - 2016-09-30 04:12 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\extrac32.exe
2016-10-12 15:14 - 2016-09-30 04:10 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgcore.dll
2016-10-12 15:14 - 2016-09-30 04:00 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-11-10 08:08 - 2016-09-23 10:21 - 00000000 ____D C:\Users\bortl\AppData\Roaming\Skype
2016-11-10 07:38 - 2016-09-21 10:11 - 00000000 ____D C:\Users\bortl\AppData\Roaming\Seznam.cz
2016-11-10 07:38 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-11-10 07:33 - 2016-09-21 10:17 - 00000000 ___RD C:\Users\bortl\OneDrive
2016-11-10 07:33 - 2015-08-04 09:34 - 00000972 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-11-10 07:31 - 2016-04-01 16:56 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2016-11-09 19:26 - 2015-08-04 09:34 - 00000976 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-11-09 15:21 - 2015-07-10 13:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-11-09 15:19 - 2016-10-02 09:32 - 00004188 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{83D32515-8765-4945-A686-25C6FDE0F627}
2016-11-09 12:24 - 2015-07-10 11:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-11-09 11:55 - 2016-10-02 13:36 - 00000000 ____D C:\Users\bortl\AppData\Local\ElevatedDiagnostics
2016-11-09 09:57 - 2015-07-10 17:05 - 00000000 ____D C:\WINDOWS\ShellNew
2016-11-09 09:57 - 2009-07-14 03:34 - 00000387 _____ C:\WINDOWS\win.ini
2016-11-08 17:05 - 2016-09-21 11:11 - 00001427 _____ C:\Users\bortl\Desktop\PLATBY KARTOU.lnk
2016-11-08 16:51 - 2016-09-21 11:11 - 00000000 ____D C:\Users\bortl\Documents\My dva a čas
2016-11-08 13:42 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-11-08 10:02 - 2015-08-14 08:56 - 00001908 _____ C:\WINDOWS\diagwrn.xml
2016-11-08 10:02 - 2015-08-14 08:56 - 00001908 _____ C:\WINDOWS\diagerr.xml
2016-11-08 09:52 - 2016-08-18 10:07 - 00000000 ____D C:\WINDOWS\Panther
2016-11-08 08:43 - 2015-07-10 10:05 - 01572864 ___SH C:\WINDOWS\system32\config\BBI
2016-11-07 22:22 - 2015-09-07 14:57 - 00004562 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2016-11-07 10:27 - 2015-08-28 13:44 - 02030532 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-11-07 10:27 - 2015-07-10 17:02 - 00838996 _____ C:\WINDOWS\system32\perfh005.dat
2016-11-07 10:27 - 2015-07-10 17:02 - 00191324 _____ C:\WINDOWS\system32\perfc005.dat
2016-11-07 10:27 - 2015-07-10 12:02 - 00000000 ____D C:\WINDOWS\INF
2016-11-07 08:57 - 2015-07-10 13:20 - 00335672 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-11-06 18:42 - 2015-07-10 12:04 - 00000000 ___HD C:\Program Files\WindowsApps
2016-11-06 17:22 - 2016-06-30 12:54 - 00000741 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pomocník při upgradu na Windows 10.lnk
2016-11-06 17:22 - 2016-06-30 12:54 - 00000000 ____D C:\Windows10Upgrade
2016-11-05 08:52 - 2014-02-14 20:22 - 00000000 ____D C:\Program Files (x86)\Mobogenie
2016-11-04 18:51 - 2016-04-01 16:31 - 00000926 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-11-04 18:50 - 2016-10-02 10:42 - 00000000 ____D C:\Users\bortl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-11-04 18:50 - 2016-09-29 16:11 - 00000000 ____D C:\Users\bortl\AppData\Local\Adobe
2016-11-04 18:50 - 2016-09-21 10:10 - 00000000 ____D C:\Users\bortl\AppData\Roaming\Adobe
2016-11-04 18:50 - 2016-05-15 18:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2016-11-04 18:50 - 2016-05-15 18:43 - 00000000 ____D C:\Program Files\7-Zip
2016-11-04 18:50 - 2011-03-05 04:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-11-04 18:50 - 2011-03-05 04:02 - 00000000 ____D C:\Program Files (x86)\WinRAR
2016-11-04 18:42 - 2015-10-24 16:38 - 00000000 ____D C:\ProgramData\Avg
2016-11-04 18:42 - 2015-08-28 14:27 - 00000000 ____D C:\Program Files (x86)\AVG
2016-11-04 18:28 - 2016-09-21 10:10 - 00000000 ____D C:\Users\bortl\AppData\Local\AVG
2016-11-04 18:28 - 2015-08-28 14:23 - 00000000 ____D C:\ProgramData\MFAData
2016-11-04 17:52 - 2015-07-10 12:04 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2016-11-04 17:41 - 2014-02-14 17:12 - 00000000 ____D C:\ProgramData\AVAST Software
2016-11-04 16:49 - 2015-07-10 12:04 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-11-03 22:21 - 2016-09-21 10:10 - 00000000 ____D C:\Users\bortl
2016-11-03 17:28 - 2016-09-23 16:26 - 00000000 ____D C:\Users\bortl\AppData\Roaming\Ancestry
2016-11-03 11:16 - 2015-08-28 13:45 - 00000000 ____D C:\Users\MT
2016-11-03 11:13 - 2015-11-08 17:45 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-11-01 17:00 - 2015-07-10 10:05 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-10-29 18:52 - 2016-09-21 10:10 - 00000000 ____D C:\Users\bortl\AppData\Local\Packages
2016-10-28 17:12 - 2016-09-21 10:10 - 00000000 ____D C:\Users\bortl\AppData\Local\Google
2016-10-28 02:22 - 2014-02-13 21:53 - 00485032 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-10-25 18:04 - 2014-02-14 20:21 - 00000000 ____D C:\Users\Tom\AppData\Roaming\uTorrent
2016-10-25 18:03 - 2016-09-21 12:31 - 00000000 ____D C:\Users\bortl\Documents\Soubory aplikace Outlook
2016-10-25 18:03 - 2015-12-31 08:27 - 00000000 ____D C:\WINDOWS\Minidump
2016-10-25 18:03 - 2015-08-04 10:32 - 00000000 ____D C:\Users\MT\Documents\Soubory aplikace Outlook
2016-10-25 18:02 - 2016-09-21 12:32 - 00000000 ____D C:\Users\bortl\Documents\Youcam
2016-10-25 18:02 - 2016-03-15 12:47 - 00000000 ____D C:\Users\MT\Documents\Youcam
2016-10-25 18:02 - 2015-08-04 09:21 - 00000000 ____D C:\Users\MT\AppData\Local\CrashDumps
2016-10-25 18:02 - 2014-02-16 12:41 - 00000000 ____D C:\Users\NeroMediaHomeUser.4\AppData\Local\CrashDumps
2016-10-25 18:02 - 2014-02-14 20:54 - 00000000 ____D C:\Users\Tom\AppData\Local\CrashDumps
2016-10-25 18:02 - 2014-02-14 19:48 - 00000000 ____D C:\Users\Tom\Documents\Youcam
2016-10-24 22:55 - 2015-10-11 16:09 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-10-24 22:55 - 2015-10-11 16:09 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-10-24 18:07 - 2016-01-01 08:32 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-10-24 18:07 - 2011-03-05 04:10 - 00000000 ____D C:\ProgramData\Skype
2016-10-23 14:55 - 2015-08-07 09:57 - 00000000 ____D C:\Program Files (x86)\Nokia
2016-10-23 14:55 - 2015-08-04 15:10 - 00000000 ____D C:\ProgramData\Nokia
2016-10-22 15:39 - 2011-03-05 04:21 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2016-10-22 15:38 - 2015-08-28 14:27 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-10-21 22:39 - 2015-08-04 09:35 - 00002282 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-10-21 22:39 - 2015-08-04 09:35 - 00002270 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-10-17 10:59 - 2016-09-21 10:11 - 00000000 ____D C:\Users\bortl\AppData\Roaming\Epson
2016-10-14 08:04 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\rescache
2016-10-13 06:49 - 2015-08-15 20:59 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2016-10-13 06:49 - 2015-08-15 20:59 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2016-10-12 22:14 - 2015-07-10 12:04 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2016-10-12 22:14 - 2015-07-10 12:04 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-10-12 22:14 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-10-12 22:14 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\Provisioning
2016-10-12 22:14 - 2015-07-10 12:04 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-10-12 22:14 - 2015-07-10 12:04 - 00000000 ____D C:\Program Files\Windows Defender
2016-10-12 22:14 - 2015-07-10 12:04 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-10-12 22:14 - 2015-07-10 12:04 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-10-12 16:20 - 2014-07-01 18:57 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-10-12 16:05 - 2014-07-01 18:57 - 143495576 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-10-12 16:04 - 2015-08-15 21:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight

==================== Files in the root of some directories =======

2016-10-07 09:08 - 2016-10-07 09:08 - 0000000 _____ () C:\Users\bortl\AppData\Local\{5AA10818-36C4-4278-8BC5-5CBCF7EFDA28}
2011-03-05 04:08 - 2010-06-26 04:12 - 0131984 _____ () C:\ProgramData\FullRemove.exe

Some files in TEMP:
====================
C:\Users\bortl\AppData\Local\Temp\ICReinstall_Microsoft_Office_Professional_Plus_2010_Downloader.exe
C:\Users\bortl\AppData\Local\Temp\ose00000.exe
C:\Users\bortl\AppData\Local\Temp\ose00001.exe
C:\Users\bortl\AppData\Local\Temp\ose00002.exe
C:\Users\MT\AppData\Local\Temp\avg-fbb67f2d-2da6-4442-97ed-c45d5940b63d.exe
C:\Users\MT\AppData\Local\Temp\avguirn_081076002769.exe
C:\Users\MT\AppData\Local\Temp\avguirn_081543388255.exe
C:\Users\MT\AppData\Local\Temp\avguirn_0844808865.exe
C:\Users\MT\AppData\Local\Temp\avguirn_08898058478.exe
C:\Users\MT\AppData\Local\Temp\NOSEventMessages.dll
C:\Users\Tom\AppData\Local\Temp\acbqwpbs.dll


==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-11-04 11:14

==================== End of FRST.txt ============================
Přílohy
Addition.zip
(14.14 KiB) Staženo 151 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118200
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Instalace Office

#6 Příspěvek od Rudy »

Teď spusťte tuto utilitu:
Stáhněte AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Hana1Zdenek
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 09 lis 2016 09:32

Re: Instalace Office

#7 Příspěvek od Hana1Zdenek »

# AdwCleaner v6.030 - Log soubor vytvořen 10/11/2016 na 19:34:31
# Aktualizováno dne 19/10/2016 z Malwarebytes
# Databáze : 2016-11-10.1 [Server]
# Operační systém : Windows 10 Home (X64)
# Uživatelské jméno : MT - TOM-MSI
# Beží od : C:\Users\bortl\Desktop\AdwCleaner.exe
# Mod: Čištění
# Podpora : hxxps://www.malwarebytes.com/support



***** [ Služby ] *****

[-] Služby smazány:swdumon


***** [ Adresáře ] *****

[-] Adresář smazán:C:\ProgramData\AVG Security Toolbar
[-] Adresář smazán:C:\ProgramData\Conduit
[-] Adresář smazán:C:\ProgramData\Solvusoft
[#] Adresář nelze smazat:C:\ProgramData\Application Data\AVG Security Toolbar
[#] Adresář nelze smazat:C:\ProgramData\Application Data\Conduit
[#] Adresář nelze smazat:C:\ProgramData\Application Data\Solvusoft
[-] Adresář smazán:C:\Users\Public\Documents\Downloaded Installers
[-] Adresář smazán:C:\Program Files (x86)\Conduit
[-] Adresář smazán:C:\Program Files (x86)\Mobogenie


***** [ Soubory ] *****

[-] Soubor smazán:C:\WINDOWS\SysNative\drivers\swdumon.sys
[-] Soubor smazán:C:\END
[-] Soubor smazán:C:\WINDOWS\Reimage.ini
[-] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage
[-] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage-journal
[-] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage
[-] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage-journal
[-] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage
[-] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage-journal
[-] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage
[-] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_getformsonline.dl.tb.ask.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.izito.com_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage-journal
[#] Soubor smazán:C:\Users\bortl\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.slunecnice.cz_0.localstorage-journal


***** [ DLL ] *****



***** [ WMI ] *****



***** [ Zástupce ] *****



***** [ Plánovač úloh ] *****



***** [ Registry ] *****

[-] Klíč smazán:HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine
[-] Klíč smazán:HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine.1
[#] Klíč smazán po restartování:[x64] HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine
[#] Klíč smazán po restartování:[x64] HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine.1
[-] Klíč smazán:HKLM\SOFTWARE\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A}
[-] Klíč smazán:HKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}
[-] Klíč smazán:HKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
[-] Klíč smazán:HKLM\SOFTWARE\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
[-] Klíč smazán:HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{10ECCE17-29B5-4880-A8F5-EAD298611484}
[-] Klíč smazán:HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}
[-] Klíč smazán:HKU\S-1-5-21-3596670076-1201241859-680613780-1016\Software\PRODUCTSETUP
[-] Klíč smazán:HKU\S-1-5-21-3596670076-1201241859-680613780-1016\Software\Reimage
[-] Klíč smazán:HKU\S-1-5-21-3596670076-1201241859-680613780-1016\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief.
[-] Klíč smazán:HKU\S-1-5-21-3596670076-1201241859-680613780-1016\Software\csastats
[#] Klíč smazán po restartování:HKCU\Software\PRODUCTSETUP
[#] Klíč smazán po restartování:HKCU\Software\Reimage
[#] Klíč smazán po restartování:HKCU\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief.
[#] Klíč smazán po restartování:HKCU\Software\csastats
[-] Klíč smazán:HKLM\SOFTWARE\Conduit
[-] Klíč smazán:HKLM\SOFTWARE\SlimWare Utilities Inc
[#] Klíč smazán po restartování:[x64] HKCU\Software\PRODUCTSETUP
[#] Klíč smazán po restartování:[x64] HKCU\Software\Reimage
[#] Klíč smazán po restartování:[x64] HKCU\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief.
[#] Klíč smazán po restartování:[x64] HKCU\Software\csastats
[-] Klíč smazán:[x64] HKLM\SOFTWARE\Reimage
[-] Hodnota smazána:[x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 [mobilegeni daemon]
[-] Hodnota smazána:[x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 [vProt]
[-] Klíč smazán:HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL
[-] Klíč smazán:HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd


***** [ Prohlížeče ] *****



*************************

:: "Tracing" klíč smazán
:: Winsock nastavení vyčištěno

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [17521 Bajtů] - [10/11/2016 19:34:31]
C:\AdwCleaner\AdwCleaner[S0].txt - [17399 Bajtů] - [10/11/2016 19:33:53]

########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [17671 Bajtů] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118200
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Instalace Office

#8 Příspěvek od Rudy »

Dejte nový log FRST.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Hana1Zdenek
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 09 lis 2016 09:32

Re: Instalace Office

#9 Příspěvek od Hana1Zdenek »

Je to moc dlouhé, posílám to v příloze
Přílohy
FRST.zip
(18.87 KiB) Staženo 154 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118200
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Instalace Office

#10 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
C:\Program Files (x86)\Microsoft\BingBar
URLSearchHook: HKLM-x32 - (No Name) - {96f454ea-9d38-474f-b504-56193e00c1a5} - No File
SearchScopes: HKLM -> DefaultScope {7D943479-A68C-43BF-B598-C19720C833EB} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM -> {7D943479-A68C-43BF-B598-C19720C833EB} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM-x32 -> {AA1FD895-5651-4E87-A2D0-FA6CCB2DF02F} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKU\S-1-5-21-3596670076-1201241859-680613780-1016 -> DefaultScope {7D943479-A68C-43BF-B598-C19720C833EB} URL =
BHO: No Name -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> No File
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath
C:\WINDOWS\system32\ApnDatabase.xml
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\Users\bortl\AppData\Local\Temp
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Hana1Zdenek
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 09 lis 2016 09:32

Re: Instalace Office

#11 Příspěvek od Hana1Zdenek »

Fix result of Farbar Recovery Scan Tool (x64) Version: 04-11-2016
Ran by MT (10-11-2016 21:45:51) Run:1
Running from C:\Users\bortl\Desktop
Loaded Profiles: NeroMediaHomeUser.4 & MT & DefaultAppPool (Available Profiles: Tom & NeroMediaHomeUser.4 & Děti & MT & DefaultAppPool)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
C:\Program Files (x86)\Microsoft\BingBar
URLSearchHook: HKLM-x32 - (No Name) - {96f454ea-9d38-474f-b504-56193e00c1a5} - No File
SearchScopes: HKLM -> DefaultScope {7D943479-A68C-43BF-B598-C19720C833EB} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM -> {7D943479-A68C-43BF-B598-C19720C833EB} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM-x32 -> {AA1FD895-5651-4E87-A2D0-FA6CCB2DF02F} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKU\S-1-5-21-3596670076-1201241859-680613780-1016 -> DefaultScope {7D943479-A68C-43BF-B598-C19720C833EB} URL =
BHO: No Name -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> No File
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath
C:\WINDOWS\system32\ApnDatabase.xml
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\Users\bortl\AppData\Local\Temp
End
*****************

C:\Program Files (x86)\Microsoft\BingBar => moved successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\{96f454ea-9d38-474f-b504-56193e00c1a5} => value removed successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{7D943479-A68C-43BF-B598-C19720C833EB}" => key removed successfully
HKCR\CLSID\{7D943479-A68C-43BF-B598-C19720C833EB} => key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{AA1FD895-5651-4E87-A2D0-FA6CCB2DF02F}" => key removed successfully
HKCR\Wow6432Node\CLSID\{AA1FD895-5651-4E87-A2D0-FA6CCB2DF02F} => key not found.
HKU\S-1-5-21-3596670076-1201241859-680613780-1016\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}" => key removed successfully
HKCR\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} => key not found.
idsvc => service removed successfully
wpcsvc => service removed successfully
C:\WINDOWS\system32\ApnDatabase.xml => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully

"C:\Users\bortl\AppData\Local\Temp" folder move:

Could not move "C:\Users\bortl\AppData\Local\Temp" => Scheduled to move on reboot.


Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 10-11-2016 21:49:50)

C:\Users\bortl\AppData\Local\Temp => moved successfully

==== End of Fixlog 21:49:57 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118200
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Instalace Office

#12 Příspěvek od Rudy »

Smazáno. Teď vyzkoušejte instalaci.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Hana1Zdenek
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 09 lis 2016 09:32

Re: Instalace Office

#13 Příspěvek od Hana1Zdenek »

Ne, instalace se nezdařila. Stejná chyba.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118200
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Instalace Office

#14 Příspěvek od Rudy »

Zkuste ještě použít FixIT: http://www.stahuj.centrum.cz/utility_a_ ... it-center/ . Je to možná nějaká systémová chyba.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Hana1Zdenek
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 09 lis 2016 09:32

Re: Instalace Office

#15 Příspěvek od Hana1Zdenek »

Již to běží 2,5 hodiny. Mám stále čekat????? viz příloha. Je právě 15:37 a stále to běží????

Zde je log z adresy C:/user/bortl............


Microsoft Customer Support Services - Office 2010 Removal Utility

Version: 1.36_fixit
64 bit OS: Pravda
Start removal: 12.11.2016 9:03:12


Stage # 0 "Basics" (9:03:12)
============================

Final removal mode: All Office 2010 products
Remove OSE service: Nepravda

Found legacy Office products that will not be removed.

Stage # 1 "Component Detection" (9:03:14)
=========================================

Prepare for CleanUp stages.
Identifying removable elements. This can take several minutes.
Scanning 11567 components
...................................
...................................
.............................. Done

Doing Action: CloseOfficeApps
End Action: CloseOfficeApps

Stage # 2 "Setup.exe" (9:04:59)
===============================

Nothing to remove for Setup.exe

Stage # 3 "Msiexec.exe" (9:04:59)
=================================

Nothing to remove for msiexec

Stage # 4 "CleanUp" (9:05:00)
=============================

Softgrid CleanUp

LIS CleanUp
Doing Action: CloseOfficeApps
End Action: CloseOfficeApps

File CleanUp
Searching for shortcuts. This can take some time ...
- Disallowing the delete of still required keypath element: C:\Program Files\Common Files\Microsoft Shared\Office14\
- Delete folder: C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform
- Delete folder: C:\ProgramData\Microsoft\OfficeSoftwareProtectionPlatform

Registry CleanUp
- Delete registry key: HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\14.0
Remove temporary registry entries

Windows Installer cache CleanUp

ScrubCache CleanUp

End removal: 12.11.2016 9:50:58


For detailed logging please refer to the log in folder "C:\Users\bortl\AppData\Local\Temp\OffScrub10"
Přílohy
Bez názvu.jpg
Bez názvu.jpg (53.73 KiB) Zobrazeno 6499 x

Odpovědět