Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

vyskakovacie okná - nitram81

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
nitram81
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 11 črc 2015 13:30

vyskakovacie okná - nitram81

#1 Příspěvek od nitram81 »

Taky mi vyskuje spousta oken. Prosím o pomoc:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:11-07-2015
Ran by Pohotovost (administrator) on POHOTOVOST-HP on 11-07-2015 14:23:16
Running from C:\
Loaded Profiles: Pohotovost (Available Profiles: Pohotovost)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
(Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11\WLTRYSVC.EXE
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11\BCMWLTRY.EXE
(Autodesk, Inc.) C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Cisco Systems, Inc.) C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
(Infineon Technologies AG) C:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\IFXSPMGT.exe
(Infineon Technologies AG) C:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\IFXTCS.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
() C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(Infineon Technologies AG) C:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\IfxPsdSv.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Sense+) C:\Program Files (x86)\SensePlus\05914eb0-bc9c-40dc-a3af-15020999188a-6.exe
(Lid) C:\Program Files (x86)\App Lid\edffcfdd-e4d9-4a2c-86f4-869d76481285-6.exe
(Lid) C:\Program Files (x86)\App Lid\edffcfdd-e4d9-4a2c-86f4-869d76481285-1-6.exe
(Sense+) C:\Program Files (x86)\SensePlus\05914eb0-bc9c-40dc-a3af-15020999188a-1-6.exe
(Lid) C:\Program Files (x86)\App Lid\edffcfdd-e4d9-4a2c-86f4-869d76481285-10.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleCrashHandler64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(DigitalPersona, Inc.) C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11\WLTRAY.EXE
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpAgent.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
() C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Ghisler Software GmbH) C:\Program Files\totalcmd\TOTALCMD64.EXE
(Trend Micro Inc.) C:\hijackthis.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe
(Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(Portrait Displays, Inc) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe
(Portrait Displays, Inc.) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdiSDKHelperx64.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_17_0_0_190.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_17_0_0_190.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2887440 2012-03-09] (Synaptics Incorporated)
HKLM\...\Run: [HPPowerAssistant] => C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [3488640 2012-03-14] (Hewlett-Packard Company)
HKLM\...\Run: [Broadcom Wireless Manager UI] => C:\Program Files\Broadcom\Broadcom 802.11\WLTRAY.exe [7173632 2013-08-03] (Broadcom Corporation)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1425408 2012-03-05] (IDT, Inc.)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1337000 2015-04-30] (Microsoft Corporation)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-03-27] (Intel Corporation)
HKLM-x32\...\Run: [Cisco AnyConnect Secure Mobility Agent for Windows] => C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe [708496 2015-04-20] (Cisco Systems, Inc.)
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe,
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
Winlogon\Notify\DeviceNP-x32: DeviceNP.dll [X]
HKU\S-1-5-21-1419437457-1003452090-4212318537-1001\...\Policies\Explorer: []
HKU\S-1-5-21-1419437457-1003452090-4212318537-1001\...\MountPoints2: {847632ad-4aea-11e3-9812-b8763faf7792} - D:\AutoRun.exe
Lsa: [Notification Packages] DPPassFilter scecli C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2013-08-03]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\vpngui.exe.lnk [2013-11-11]
ShortcutTarget: vpngui.exe.lnk -> C:\Windows\Installer\{467D5E81-8349-4892-9E81-C3674ED8E451}\Icon09DB8A851.exe ()
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\windows\system32\AcSignIcon.dll [2012-02-06] (Autodesk, Inc.)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-1419437457-1003452090-4212318537-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
HKU\S-1-5-21-1419437457-1003452090-4212318537-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: No Name -> {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} -> No File
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: File Sanitizer for HP ProtectTools -> {3134413B-49B4-425C-98A5-893C1F195601} -> C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll [2012-03-22] (Hewlett-Packard)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{FAAAA6FE-E8E5-48D2-8DD0-AEF8344E440E}: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\Pohotovost\AppData\Roaming\Mozilla\Firefox\Profiles\99j55thz.default-1420241738999
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_17_0_0_190.dll [2015-06-25] ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_190.dll [2015-06-25] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-01-06] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-01-06] (Intel Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll [2015-06-25] (globalUpdate)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll [2015-06-25] (globalUpdate)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-06-25] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-06-25] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF user.js: detected! => C:\Users\Pohotovost\AppData\Roaming\Mozilla\Firefox\Profiles\99j55thz.default-1420241738999\user.js [2015-07-07]
FF Extension: Apps Hat 1.5 - C:\Users\Pohotovost\AppData\Roaming\Mozilla\Firefox\Profiles\99j55thz.default-1420241738999\Extensions\d9676068985d4d81bb390a@7be93ab3c8e144f694a0509d5.com [2015-07-11]
FF Extension: SensePlus.V2 - C:\Users\Pohotovost\AppData\Roaming\Mozilla\Firefox\Profiles\99j55thz.default-1420241738999\Extensions\e9d197d59f2f45f382b1aa5c14d82@8706aaed9b904554b5cb7984e9.com [2015-07-11]
FF Extension: Swift Record 1.0.1 - C:\Users\Pohotovost\AppData\Roaming\Mozilla\Firefox\Profiles\99j55thz.default-1420241738999\Extensions\{64b5be32-7185-4edd-8c8b-6f2cd5600942}.xpi [2015-07-03]
FF Extension: Adblock Plus - C:\Users\Pohotovost\AppData\Roaming\Mozilla\Firefox\Profiles\99j55thz.default-1420241738999\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-02-20]
FF HKLM-x32\...\Firefox\Extensions: [otis@digitalpersona.com] - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt
FF Extension: DigitalPersona Extension - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt [2013-08-03]

Chrome:
=======
CHR Profile: C:\Users\Pohotovost\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Wallet) - C:\Users\Pohotovost\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-03]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [19232 2012-01-31] (Autodesk, Inc.)
R2 DpHost; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [493904 2012-03-15] (DigitalPersona, Inc.)
S3 FLCDLOCK; c:\windows\SysWOW64\flcdlock.exe [477056 2012-11-19] (Hewlett-Packard Company)
S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [68608 2015-06-25] (globalUpdate) [File not signed] <==== ATTENTION
S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [68608 2015-06-25] (globalUpdate) [File not signed] <==== ATTENTION
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [523680 2012-09-13] (Hewlett-Packard Company)
R2 IFXSpMgtSrv; c:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\ifxspmgt.exe [1127800 2012-01-27] (Infineon Technologies AG)
R2 IFXTCS; c:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\ifxtcs.exe [984440 2012-01-27] (Infineon Technologies AG)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280 2012-03-28] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165144 2012-03-28] (Intel Corporation)
R2 McAfee Endpoint Encryption Agent; C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe [1327104 2012-03-22] () [File not signed]
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23816 2015-04-30] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [366544 2015-04-30] (Microsoft Corporation)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1134584 2012-03-07] (PDF Complete Inc)
R2 PersonalSecureDriveService; c:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\IfxPsdSv.exe [212344 2012-01-27] (Infineon Technologies AG)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 wltrysvc; C:\Program Files\Broadcom\Broadcom 802.11\bcmwltry.exe [5858304 2013-08-03] (Broadcom Corporation) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [134696 2012-02-02] (Broadcom Corporation.)
R3 BTWDPAN; C:\Windows\System32\DRIVERS\btwdpan.sys [89640 2012-02-02] (Broadcom Corporation.)
R1 CLVirtualDrive; C:\Windows\System32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink)
R3 CVPNDRVA; C:\windows\system32\Drivers\CVPNDRVA.sys [304784 2010-03-23] ()
S3 DAMDrv; C:\Windows\System32\DRIVERS\DAMDrv64.sys [64832 2012-11-09] (Hewlett-Packard Company)
U5 ewusbnet; C:\Windows\System32\Drivers\ewusbnet.sys [243200 2009-12-15] (Huawei Technologies Co., Ltd.)
S3 Huawei; C:\Windows\System32\DRIVERS\ewdcsc.sys [29696 2009-12-15] (Huawei Tech. Co., Ltd.)
S3 hwusbdev; C:\Windows\System32\DRIVERS\ewusbdev.sys [114304 2009-12-15] (Huawei Technologies Co., Ltd.)
S3 johci; C:\Windows\System32\DRIVERS\johci.sys [26208 2012-07-16] (JMicron Technology Corp.)
R0 MfeEpeOpal; C:\Windows\System32\Drivers\MfeEpeOpal.sys [93640 2012-03-22] (McAfee, Inc.)
R0 MfeEpePc; C:\Windows\System32\Drivers\MfeEpePc.sys [158792 2012-03-22] (McAfee, Inc.)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [280376 2015-03-04] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124568 2015-03-04] (Microsoft Corporation)
R1 PersonalSecureDrive; C:\Windows\System32\drivers\psd.sys [44576 2010-01-26] (Infineon Technologies AG)
R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [1064184 2012-09-23] (Sunplus)
S3 vpnva; C:\Windows\System32\DRIVERS\vpnva64-6.sys [52592 2014-11-19] (Cisco Systems, Inc.)
R1 {64b5be32-7185-4edd-8c8b-6f2cd5600942}Gw64; C:\Windows\System32\drivers\{64b5be32-7185-4edd-8c8b-6f2cd5600942}Gw64.sys [48784 2015-07-02] (StdLib)
R1 {6e47b1d7-7555-40c5-a536-941ee42a81a1}Gw64; C:\Windows\System32\drivers\{6e47b1d7-7555-40c5-a536-941ee42a81a1}Gw64.sys [48784 2015-06-25] (StdLib)
R1 {842cb8d9-206d-4bdf-809e-de5abc49f58c}Gw64; C:\Windows\System32\drivers\{842cb8d9-206d-4bdf-809e-de5abc49f58c}Gw64.sys [48784 2015-07-07] (StdLib)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-07-11 14:23 - 2015-07-11 14:23 - 00019124 _____ C:\FRST.txt
2015-07-11 14:23 - 2015-07-11 14:23 - 00000000 ____D C:\FRST
2015-07-11 14:22 - 2015-07-11 14:22 - 02130944 _____ (Farbar) C:\FRST64.exe
2015-07-11 14:04 - 2015-07-11 14:17 - 00011759 _____ C:\hijackthis.log
2015-07-11 13:59 - 2015-07-11 14:02 - 00388608 _____ (Trend Micro Inc.) C:\hijackthis.exe
2015-07-11 13:52 - 2015-07-09 19:59 - 00017856 _____ (Microsoft Corporation) C:\windows\system32\CompatTelRunner.exe
2015-07-11 13:52 - 2015-07-09 19:58 - 01085440 _____ (Microsoft Corporation) C:\windows\system32\appraiser.dll
2015-07-11 13:52 - 2015-07-09 19:58 - 00765440 _____ (Microsoft Corporation) C:\windows\system32\invagent.dll
2015-07-11 13:52 - 2015-07-09 19:58 - 00726528 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2015-07-11 13:52 - 2015-07-09 19:58 - 00433664 _____ (Microsoft Corporation) C:\windows\system32\devinv.dll
2015-07-11 13:52 - 2015-07-09 19:58 - 00227328 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2015-07-11 13:52 - 2015-07-09 19:58 - 00067584 _____ (Microsoft Corporation) C:\windows\system32\acmigration.dll
2015-07-11 13:52 - 2015-07-09 19:50 - 01145856 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2015-07-11 13:52 - 2015-06-27 00:07 - 03154944 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll
2015-07-11 13:52 - 2015-06-27 00:07 - 02603008 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2015-07-11 13:52 - 2015-06-27 00:07 - 00696320 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2015-07-11 13:52 - 2015-06-27 00:07 - 00192000 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll
2015-07-11 13:52 - 2015-06-27 00:07 - 00098304 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll
2015-07-11 13:52 - 2015-06-27 00:07 - 00091136 _____ (Microsoft Corporation) C:\windows\system32\WinSetupUI.dll
2015-07-11 13:52 - 2015-06-27 00:07 - 00037888 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll
2015-07-11 13:52 - 2015-06-27 00:07 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2015-07-11 13:52 - 2015-06-27 00:06 - 00139776 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2015-07-11 13:52 - 2015-06-27 00:06 - 00037376 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe
2015-07-11 13:52 - 2015-06-27 00:06 - 00012288 _____ (Microsoft Corporation) C:\windows\system32\wu.upgrade.ps.dll
2015-07-11 13:52 - 2015-06-26 19:56 - 00566784 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapi.dll
2015-07-11 13:52 - 2015-06-26 19:56 - 00173056 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuwebv.dll
2015-07-11 13:52 - 2015-06-26 19:56 - 00093184 _____ (Microsoft Corporation) C:\windows\SysWOW64\wudriver.dll
2015-07-11 13:52 - 2015-06-26 19:56 - 00030208 _____ (Microsoft Corporation) C:\windows\SysWOW64\wups.dll
2015-07-11 13:52 - 2015-06-26 19:55 - 00034816 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapp.exe
2015-07-07 19:15 - 2015-05-01 15:17 - 00124112 _____ (Microsoft Corporation) C:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-07-07 19:15 - 2015-05-01 15:16 - 00102608 _____ (Microsoft Corporation) C:\windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-07-07 19:11 - 2015-06-01 21:16 - 00389840 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2015-07-07 19:11 - 2015-06-01 20:07 - 00342736 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2015-07-07 19:11 - 2015-05-27 16:08 - 19607040 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2015-07-07 19:11 - 2015-05-23 05:28 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2015-07-07 19:11 - 2015-05-23 05:15 - 00503808 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2015-07-07 19:11 - 2015-05-23 05:15 - 00062464 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2015-07-07 19:11 - 2015-05-23 05:15 - 00047616 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2015-07-07 19:11 - 2015-05-23 05:14 - 00341504 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec
2015-07-07 19:11 - 2015-05-23 05:13 - 00064000 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2015-07-07 19:11 - 2015-05-23 05:10 - 02278912 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2015-07-07 19:11 - 2015-05-23 05:09 - 00047104 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2015-07-07 19:11 - 2015-05-23 05:08 - 00030720 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2015-07-07 19:11 - 2015-05-23 05:06 - 00478208 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2015-07-07 19:11 - 2015-05-23 05:05 - 00664064 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2015-07-07 19:11 - 2015-05-23 05:05 - 00115712 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2015-07-07 19:11 - 2015-05-23 05:04 - 00620032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2015-07-07 19:11 - 2015-05-23 04:57 - 00418304 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2015-07-07 19:11 - 2015-05-23 04:52 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-07-07 19:11 - 2015-05-23 04:49 - 00168960 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2015-07-07 19:11 - 2015-05-23 04:48 - 00076288 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2015-07-07 19:11 - 2015-05-23 04:47 - 04305920 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2015-07-07 19:11 - 2015-05-23 04:47 - 00285696 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2015-07-07 19:11 - 2015-05-23 04:38 - 00689152 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2015-07-07 19:11 - 2015-05-23 04:37 - 02052608 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2015-07-07 19:11 - 2015-05-23 04:37 - 01155072 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2015-07-07 19:11 - 2015-05-23 04:28 - 12829696 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2015-07-07 19:11 - 2015-05-23 04:20 - 01950720 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2015-07-07 19:11 - 2015-05-23 04:16 - 01309696 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2015-07-07 19:11 - 2015-05-23 04:14 - 00710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2015-07-07 19:11 - 2015-05-22 21:16 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2015-07-07 19:11 - 2015-05-22 21:16 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2015-07-07 19:11 - 2015-05-22 21:01 - 00066560 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2015-07-07 19:11 - 2015-05-22 21:00 - 02885632 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2015-07-07 19:11 - 2015-05-22 21:00 - 00584192 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2015-07-07 19:11 - 2015-05-22 21:00 - 00417792 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2015-07-07 19:11 - 2015-05-22 21:00 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2015-07-07 19:11 - 2015-05-22 20:59 - 00088064 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2015-07-07 19:11 - 2015-05-22 20:53 - 00054784 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2015-07-07 19:11 - 2015-05-22 20:52 - 06026240 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2015-07-07 19:11 - 2015-05-22 20:52 - 00034304 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2015-07-07 19:11 - 2015-05-22 20:48 - 00633856 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2015-07-07 19:11 - 2015-05-22 20:47 - 00816640 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2015-07-07 19:11 - 2015-05-22 20:47 - 00814080 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2015-07-07 19:11 - 2015-05-22 20:47 - 00144384 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2015-07-07 19:11 - 2015-05-22 20:47 - 00114688 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2015-07-07 19:11 - 2015-05-22 20:40 - 00968704 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2015-07-07 19:11 - 2015-05-22 20:36 - 00490496 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2015-07-07 19:11 - 2015-05-22 20:29 - 00077824 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2015-07-07 19:11 - 2015-05-22 20:25 - 00199680 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2015-07-07 19:11 - 2015-05-22 20:24 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2015-07-07 19:11 - 2015-05-22 20:21 - 00316928 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2015-07-07 19:11 - 2015-05-22 20:07 - 00720384 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2015-07-07 19:11 - 2015-05-22 20:06 - 00801280 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2015-07-07 19:11 - 2015-05-22 20:05 - 02125824 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2015-07-07 19:11 - 2015-05-22 20:05 - 01359360 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2015-07-07 19:11 - 2015-05-22 19:57 - 14404096 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2015-07-07 19:11 - 2015-05-22 19:50 - 02426880 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2015-07-07 19:11 - 2015-05-22 19:38 - 01545728 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2015-07-07 19:11 - 2015-05-22 19:26 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2015-07-07 19:11 - 2015-05-21 15:19 - 00193536 _____ (Microsoft Corporation) C:\windows\system32\aepic.dll
2015-07-07 19:11 - 2015-04-20 05:17 - 01647104 _____ (Microsoft Corporation) C:\windows\system32\DWrite.dll
2015-07-07 19:11 - 2015-04-20 05:17 - 01179136 _____ (Microsoft Corporation) C:\windows\system32\FntCache.dll
2015-07-07 19:11 - 2015-04-20 04:56 - 01250816 _____ (Microsoft Corporation) C:\windows\SysWOW64\DWrite.dll
2015-07-07 19:10 - 2015-05-27 16:35 - 24917504 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2015-07-07 19:10 - 2015-05-25 20:24 - 05569984 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2015-07-07 19:10 - 2015-05-25 20:23 - 00155584 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2015-07-07 19:10 - 2015-05-25 20:23 - 00095680 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2015-07-07 19:10 - 2015-05-25 20:21 - 01728960 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 01461760 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 01255424 _____ (Microsoft Corporation) C:\windows\system32\diagtrack.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 01162752 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00879104 _____ (Microsoft Corporation) C:\windows\system32\tdh.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00728576 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00503808 _____ (Microsoft Corporation) C:\windows\system32\srcore.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00424960 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00362496 _____ (Microsoft Corporation) C:\windows\system32\wow64win.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00342016 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00314880 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00309760 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00215040 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00210944 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00113664 _____ (Microsoft Corporation) C:\windows\system32\sechost.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00086528 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00050176 _____ (Microsoft Corporation) C:\windows\system32\srclient.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00029184 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00028160 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00016384 _____ (Microsoft Corporation) C:\windows\system32\ntvdm64.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\wow64cpu.dll
2015-07-07 19:10 - 2015-05-25 20:18 - 00879104 _____ (Microsoft Corporation) C:\windows\system32\advapi32.dll
2015-07-07 19:10 - 2015-05-25 20:18 - 00404992 _____ (Microsoft Corporation) C:\windows\system32\tracerpt.exe
2015-07-07 19:10 - 2015-05-25 20:18 - 00338432 _____ (Microsoft Corporation) C:\windows\system32\conhost.exe
2015-07-07 19:10 - 2015-05-25 20:18 - 00296960 _____ (Microsoft Corporation) C:\windows\system32\rstrui.exe
2015-07-07 19:10 - 2015-05-25 20:18 - 00112640 _____ (Microsoft Corporation) C:\windows\system32\smss.exe
2015-07-07 19:10 - 2015-05-25 20:18 - 00104448 _____ (Microsoft Corporation) C:\windows\system32\logman.exe
2015-07-07 19:10 - 2015-05-25 20:18 - 00064000 _____ (Microsoft Corporation) C:\windows\system32\auditpol.exe
2015-07-07 19:10 - 2015-05-25 20:18 - 00047104 _____ (Microsoft Corporation) C:\windows\system32\typeperf.exe
2015-07-07 19:10 - 2015-05-25 20:18 - 00043520 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll
2015-07-07 19:10 - 2015-05-25 20:18 - 00043008 _____ (Microsoft Corporation) C:\windows\system32\relog.exe
2015-07-07 19:10 - 2015-05-25 20:18 - 00031232 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2015-07-07 19:10 - 2015-05-25 20:18 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2015-07-07 19:10 - 2015-05-25 20:18 - 00019456 _____ (Microsoft Corporation) C:\windows\system32\diskperf.exe
2015-07-07 19:10 - 2015-05-25 20:14 - 00146432 _____ (Microsoft Corporation) C:\windows\system32\msaudite.dll
2015-07-07 19:10 - 2015-05-25 20:14 - 00060416 _____ (Microsoft Corporation) C:\windows\system32\msobjs.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00686080 _____ (Microsoft Corporation) C:\windows\system32\adtschema.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\apisetschema.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00006144 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00005120 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:07 - 03989440 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe
2015-07-07 19:10 - 2015-05-25 20:07 - 03934144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe
2015-07-07 19:10 - 2015-05-25 20:04 - 01310744 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00641536 _____ (Microsoft Corporation) C:\windows\SysWOW64\advapi32.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00635392 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdh.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00551424 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00259584 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00248832 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00221184 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncrypt.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00172032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wdigest.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00092160 _____ (Microsoft Corporation) C:\windows\SysWOW64\sechost.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\srclient.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\credssp.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntvdm64.dll
2015-07-07 19:10 - 2015-05-25 20:00 - 00364544 _____ (Microsoft Corporation) C:\windows\SysWOW64\tracerpt.exe
2015-07-07 19:10 - 2015-05-25 20:00 - 00082944 _____ (Microsoft Corporation) C:\windows\SysWOW64\logman.exe
2015-07-07 19:10 - 2015-05-25 20:00 - 00050176 _____ (Microsoft Corporation) C:\windows\SysWOW64\auditpol.exe
2015-07-07 19:10 - 2015-05-25 20:00 - 00040448 _____ (Microsoft Corporation) C:\windows\SysWOW64\typeperf.exe
2015-07-07 19:10 - 2015-05-25 20:00 - 00037888 _____ (Microsoft Corporation) C:\windows\SysWOW64\relog.exe
2015-07-07 19:10 - 2015-05-25 20:00 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\setup16.exe
2015-07-07 19:10 - 2015-05-25 20:00 - 00017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\diskperf.exe
2015-07-07 19:10 - 2015-05-25 19:59 - 01114112 _____ (Microsoft Corporation) C:\windows\SysWOW64\kernel32.dll
2015-07-07 19:10 - 2015-05-25 19:59 - 00274944 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll
2015-07-07 19:10 - 2015-05-25 19:59 - 00096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2015-07-07 19:10 - 2015-05-25 19:59 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wow32.dll
2015-07-07 19:10 - 2015-05-25 19:57 - 00146432 _____ (Microsoft Corporation) C:\windows\SysWOW64\msaudite.dll
2015-07-07 19:10 - 2015-05-25 19:57 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\msobjs.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00686080 _____ (Microsoft Corporation) C:\windows\SysWOW64\adtschema.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\apisetschema.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00005120 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:00 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\UtcResources.dll
2015-07-07 19:10 - 2015-05-25 18:50 - 00007680 _____ (Microsoft Corporation) C:\windows\SysWOW64\instnm.exe
2015-07-07 19:10 - 2015-05-25 18:50 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\user.exe
2015-07-07 19:10 - 2015-05-25 18:48 - 00006144 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 18:48 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 18:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 18:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-07-07 19:10 - 2015-04-27 21:23 - 01480192 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll
2015-07-07 19:10 - 2015-04-27 21:23 - 00229376 _____ (Microsoft Corporation) C:\windows\system32\wintrust.dll
2015-07-07 19:10 - 2015-04-27 21:23 - 00188416 _____ (Microsoft Corporation) C:\windows\system32\cryptsvc.dll
2015-07-07 19:10 - 2015-04-27 21:23 - 00140288 _____ (Microsoft Corporation) C:\windows\system32\cryptnet.dll
2015-07-07 19:10 - 2015-04-27 21:05 - 00179200 _____ (Microsoft Corporation) C:\windows\SysWOW64\wintrust.dll
2015-07-07 19:10 - 2015-04-27 21:04 - 01174528 _____ (Microsoft Corporation) C:\windows\SysWOW64\crypt32.dll
2015-07-07 19:10 - 2015-04-27 21:04 - 00143872 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptsvc.dll
2015-07-07 19:10 - 2015-04-27 21:04 - 00103936 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptnet.dll
2015-07-07 19:10 - 2015-04-24 20:17 - 00633856 _____ (Microsoft Corporation) C:\windows\system32\comctl32.dll
2015-07-07 19:10 - 2015-04-24 19:56 - 00530432 _____ (Microsoft Corporation) C:\windows\SysWOW64\comctl32.dll
2015-07-07 19:10 - 2015-04-18 05:10 - 00460800 _____ (Microsoft Corporation) C:\windows\system32\certcli.dll
2015-07-07 19:10 - 2015-04-18 04:56 - 00342016 _____ (Microsoft Corporation) C:\windows\SysWOW64\certcli.dll
2015-07-07 19:09 - 2015-05-25 19:08 - 03206144 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2015-07-07 19:09 - 2015-04-29 20:22 - 14635008 _____ (Microsoft Corporation) C:\windows\system32\wmp.dll
2015-07-07 19:09 - 2015-04-29 20:21 - 00009728 _____ (Microsoft Corporation) C:\windows\system32\spwmp.dll
2015-07-07 19:09 - 2015-04-29 20:21 - 00005120 _____ (Microsoft Corporation) C:\windows\system32\msdxm.ocx
2015-07-07 19:09 - 2015-04-29 20:21 - 00005120 _____ (Microsoft Corporation) C:\windows\system32\dxmasf.dll
2015-07-07 19:09 - 2015-04-29 20:19 - 12625920 _____ (Microsoft Corporation) C:\windows\system32\wmploc.DLL
2015-07-07 19:09 - 2015-04-29 20:07 - 11411456 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmp.dll
2015-07-07 19:09 - 2015-04-29 20:07 - 00008192 _____ (Microsoft Corporation) C:\windows\SysWOW64\spwmp.dll
2015-07-07 19:09 - 2015-04-29 20:07 - 00004096 _____ (Microsoft Corporation) C:\windows\SysWOW64\msdxm.ocx
2015-07-07 19:09 - 2015-04-29 20:07 - 00004096 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxmasf.dll
2015-07-07 19:09 - 2015-04-29 20:05 - 12625408 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmploc.DLL
2015-07-07 19:09 - 2015-04-13 05:28 - 00328704 _____ (Microsoft Corporation) C:\windows\system32\services.exe
2015-07-07 19:09 - 2015-04-11 05:19 - 00069888 _____ (Microsoft Corporation) C:\windows\system32\Drivers\stream.sys
2015-07-07 19:09 - 2015-04-08 05:29 - 00275456 _____ (Microsoft Corporation) C:\windows\system32\InkEd.dll
2015-07-07 19:09 - 2015-04-08 05:29 - 00024576 _____ (Microsoft Corporation) C:\windows\system32\jnwmon.dll
2015-07-07 19:09 - 2015-04-08 05:14 - 00216064 _____ (Microsoft Corporation) C:\windows\SysWOW64\InkEd.dll
2015-07-07 19:02 - 2015-05-09 20:26 - 00493504 _____ (Microsoft Corporation) C:\windows\system32\mcupdate_GenuineIntel.dll
2015-07-07 17:25 - 2015-07-07 17:25 - 00000000 ____D C:\windows\system32\appmgmt
2015-07-07 17:16 - 2015-07-07 17:16 - 01125056 _____ (Adobe Systems Incorporated) C:\flashplayer18au_ha_install.exe
2015-07-07 17:16 - 2015-07-07 05:56 - 00048784 _____ (StdLib) C:\windows\system32\Drivers\{842cb8d9-206d-4bdf-809e-de5abc49f58c}Gw64.sys
2015-07-07 17:15 - 2015-07-07 17:15 - 00000000 ____D C:\Users\Pohotovost\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zařízení Bluetooth
2015-07-03 17:14 - 2015-07-03 17:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco
2015-07-03 16:51 - 2015-07-03 17:08 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-07-03 15:51 - 2015-07-02 21:43 - 00048784 _____ (StdLib) C:\windows\system32\Drivers\{64b5be32-7185-4edd-8c8b-6f2cd5600942}Gw64.sys
2015-07-03 15:49 - 2015-07-03 15:49 - 00000476 __RSH C:\ProgramData\ntuser.pol
2015-06-25 20:54 - 2015-06-25 20:54 - 00047221 _____ C:\vsechny.vcf
2015-06-25 20:51 - 2015-06-25 20:54 - 00000000 ____D C:\!
2015-06-25 20:49 - 2015-07-11 14:15 - 00002776 _____ C:\windows\Tasks\05914eb0-bc9c-40dc-a3af-15020999188a-5_user.job
2015-06-25 20:49 - 2015-07-11 14:14 - 00002776 _____ C:\windows\Tasks\05914eb0-bc9c-40dc-a3af-15020999188a-5.job
2015-06-25 20:49 - 2015-07-11 14:14 - 00002428 _____ C:\windows\Tasks\edffcfdd-e4d9-4a2c-86f4-869d76481285-5_user.job
2015-06-25 20:49 - 2015-07-11 14:14 - 00002428 _____ C:\windows\Tasks\edffcfdd-e4d9-4a2c-86f4-869d76481285-5.job
2015-06-25 20:49 - 2015-06-25 20:49 - 00005806 _____ C:\windows\System32\Tasks\05914eb0-bc9c-40dc-a3af-15020999188a-5
2015-06-25 20:49 - 2015-06-25 20:49 - 00005458 _____ C:\windows\System32\Tasks\edffcfdd-e4d9-4a2c-86f4-869d76481285-5
2015-06-25 20:49 - 2015-06-25 20:49 - 00002097 _____ C:\Users\Pohotovost\Desktop\AppsHat.lnk
2015-06-25 20:49 - 2015-06-25 20:49 - 00000000 ____D C:\Users\Pohotovost\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AppsHat
2015-06-25 20:49 - 2015-06-25 20:49 - 00000000 ____D C:\Users\Pohotovost\AppData\Local\WebPlayer
2015-06-25 20:49 - 2015-06-25 07:45 - 00048784 _____ (StdLib) C:\windows\system32\Drivers\{6e47b1d7-7555-40c5-a536-941ee42a81a1}Gw64.sys
2015-06-25 20:48 - 2015-07-11 14:14 - 00005500 _____ C:\windows\Tasks\edffcfdd-e4d9-4a2c-86f4-869d76481285-7.job
2015-06-25 20:48 - 2015-07-11 14:14 - 00005500 _____ C:\windows\Tasks\edffcfdd-e4d9-4a2c-86f4-869d76481285-6.job
2015-06-25 20:48 - 2015-07-11 14:14 - 00004824 _____ C:\windows\Tasks\05914eb0-bc9c-40dc-a3af-15020999188a-4.job
2015-06-25 20:48 - 2015-07-11 14:14 - 00004820 _____ C:\windows\Tasks\edffcfdd-e4d9-4a2c-86f4-869d76481285-4.job
2015-06-25 20:48 - 2015-07-11 14:14 - 00003804 _____ C:\windows\Tasks\05914eb0-bc9c-40dc-a3af-15020999188a-1-7.job
2015-06-25 20:48 - 2015-07-11 14:14 - 00003460 _____ C:\windows\Tasks\05914eb0-bc9c-40dc-a3af-15020999188a-1-6.job
2015-06-25 20:48 - 2015-07-11 14:14 - 00003456 _____ C:\windows\Tasks\edffcfdd-e4d9-4a2c-86f4-869d76481285-1-7.job
2015-06-25 20:48 - 2015-07-11 14:14 - 00003120 _____ C:\windows\Tasks\edffcfdd-e4d9-4a2c-86f4-869d76481285-1-6.job
2015-06-25 20:48 - 2015-07-11 14:14 - 00002094 _____ C:\windows\Tasks\edffcfdd-e4d9-4a2c-86f4-869d76481285-10_user.job
2015-06-25 20:48 - 2015-07-11 14:14 - 00000004 _____ C:\windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-06-25 20:48 - 2015-06-25 20:49 - 00000000 ____D C:\Program Files (x86)\App Lid
2015-06-25 20:48 - 2015-06-25 20:48 - 00008530 _____ C:\windows\System32\Tasks\edffcfdd-e4d9-4a2c-86f4-869d76481285-7
2015-06-25 20:48 - 2015-06-25 20:48 - 00008528 _____ C:\windows\System32\Tasks\edffcfdd-e4d9-4a2c-86f4-869d76481285-6
2015-06-25 20:48 - 2015-06-25 20:48 - 00007854 _____ C:\windows\System32\Tasks\05914eb0-bc9c-40dc-a3af-15020999188a-4
2015-06-25 20:48 - 2015-06-25 20:48 - 00007850 _____ C:\windows\System32\Tasks\edffcfdd-e4d9-4a2c-86f4-869d76481285-4
2015-06-25 20:48 - 2015-06-25 20:48 - 00006834 _____ C:\windows\System32\Tasks\05914eb0-bc9c-40dc-a3af-15020999188a-1-7
2015-06-25 20:48 - 2015-06-25 20:48 - 00006488 _____ C:\windows\System32\Tasks\05914eb0-bc9c-40dc-a3af-15020999188a-1-6
2015-06-25 20:48 - 2015-06-25 20:48 - 00006486 _____ C:\windows\System32\Tasks\edffcfdd-e4d9-4a2c-86f4-869d76481285-1-7
2015-06-25 20:48 - 2015-06-25 20:48 - 00006148 _____ C:\windows\System32\Tasks\edffcfdd-e4d9-4a2c-86f4-869d76481285-1-6
2015-06-25 20:48 - 2015-06-25 20:48 - 00000000 ____D C:\Program Files (x86)\bfdf7dab-316f-4a4f-8847-cbc41f8835c9
2015-06-25 20:47 - 2015-07-11 14:14 - 00005848 _____ C:\windows\Tasks\05914eb0-bc9c-40dc-a3af-15020999188a-7.job
2015-06-25 20:47 - 2015-07-11 14:14 - 00005848 _____ C:\windows\Tasks\05914eb0-bc9c-40dc-a3af-15020999188a-6.job
2015-06-25 20:47 - 2015-07-11 14:14 - 00000896 _____ C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-06-25 20:47 - 2015-07-11 13:36 - 00000900 _____ C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-06-25 20:47 - 2015-07-07 17:33 - 00000000 ____D C:\Program Files (x86)\a8dd3325-94cd-485b-9e5a-074631df91fb
2015-06-25 20:47 - 2015-06-25 20:49 - 00000000 ____D C:\Program Files (x86)\SensePlus
2015-06-25 20:47 - 2015-06-25 20:48 - 00008876 _____ C:\windows\System32\Tasks\05914eb0-bc9c-40dc-a3af-15020999188a-6
2015-06-25 20:47 - 2015-06-25 20:48 - 00003898 _____ C:\windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-06-25 20:47 - 2015-06-25 20:48 - 00003644 _____ C:\windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-06-25 20:47 - 2015-06-25 20:47 - 00008878 _____ C:\windows\System32\Tasks\05914eb0-bc9c-40dc-a3af-15020999188a-7
2015-06-25 20:47 - 2015-06-25 20:47 - 00000000 ____D C:\Users\Public\Documents\ShopperPro
2015-06-25 20:47 - 2015-06-25 20:47 - 00000000 ____D C:\Users\Pohotovost\AppData\Local\globalUpdate
2015-06-25 20:47 - 2015-06-25 20:47 - 00000000 ____D C:\Program Files (x86)\globalUpdate
2015-06-25 20:47 - 2015-06-25 20:47 - 00000000 ____D C:\Program Files (x86)\5e84680f-dfaf-4e48-9e8f-4d0f0d9d374e
2015-06-25 20:47 - 2015-06-25 20:47 - 00000000 ____D C:\Nová složka
2015-06-25 20:46 - 2015-07-07 17:19 - 00000000 ____D C:\Users\Public\Documents\GOOBZO
2015-06-25 20:46 - 2015-06-25 20:46 - 00152822 ____R C:\2015-06-25 Nokia 6303 classic.nbu
2015-06-25 20:45 - 2015-07-07 17:27 - 00000000 ____D C:\Users\Pohotovost\AppData\Roaming\Seznam.cz
2015-06-25 20:45 - 2015-07-07 17:27 - 00000000 ____D C:\Program Files (x86)\Seznam.cz
2015-06-25 20:45 - 2015-06-25 20:45 - 00002259 _____ C:\Users\Default\Desktop\Google Chrome.lnk
2015-06-25 20:45 - 2015-06-25 20:45 - 00002259 _____ C:\Users\Default User\Desktop\Google Chrome.lnk
2015-06-25 20:45 - 2015-06-25 20:45 - 00001047 _____ C:\Users\Public\Desktop\NbuExplorer.lnk
2015-06-25 20:45 - 2015-06-25 20:45 - 00000000 ____D C:\Users\Pohotovost\AppData\Local\CrashRpt
2015-06-25 20:45 - 2015-06-25 20:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NbuExplorer
2015-06-25 20:45 - 2015-06-25 20:45 - 00000000 ____D C:\Program Files (x86)\NbuExplorer
2015-06-25 20:44 - 2015-06-25 20:44 - 01659981 _____ ( ) C:\NbuExplorer_v3.3_SomotoBinno.exe
2015-06-25 20:34 - 2015-07-11 13:37 - 17597104 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerInstaller.exe
2015-06-25 20:26 - 2015-06-25 20:35 - 00101382 ____R C:\6303.nbu
2015-06-25 20:24 - 2015-06-25 20:24 - 00000000 ____H C:\windows\system32\Drivers\Msft_User_PCCSWpdDriver_01_09_00.Wdf
2015-06-25 20:22 - 2015-06-25 20:26 - 00000000 ____D C:\Users\Pohotovost\AppData\Roaming\Nokia
2015-06-25 20:22 - 2015-06-25 20:24 - 00000000 ____D C:\Users\Pohotovost\AppData\Roaming\PC Suite
2015-06-25 20:22 - 2015-06-25 20:24 - 00000000 ____D C:\ProgramData\PC Suite
2015-06-25 20:21 - 2015-06-25 20:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nokia PC Suite
2015-06-25 20:20 - 2015-06-25 20:21 - 00002038 _____ C:\Users\Public\Desktop\Nokia PC Suite.lnk
2015-06-25 20:18 - 2015-06-25 20:22 - 00000000 ____D C:\Program Files\DIFX
2015-06-25 20:18 - 2012-06-11 11:33 - 00026112 _____ (Nokia) C:\windows\system32\Drivers\pccsmcfdx64.sys
2015-06-25 20:17 - 2015-06-25 20:20 - 00000000 ____D C:\Program Files (x86)\Nokia
2015-06-25 20:17 - 2015-06-25 20:17 - 00000000 ____D C:\Program Files (x86)\PC Connectivity Solution
2015-06-25 20:17 - 2012-01-09 17:28 - 00057856 _____ (Nokia) C:\windows\system32\nmwcdclsX64.dll
2015-06-25 20:15 - 2015-06-25 20:15 - 00000000 ____D C:\ProgramData\Installations
2015-06-25 20:14 - 2015-06-25 20:15 - 67963216 _____ () C:\Nokia_PC_Suite_ALL.exe

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-07-11 14:22 - 2009-07-14 06:45 - 00031536 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-07-11 14:22 - 2009-07-14 06:45 - 00031536 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-07-11 14:21 - 2013-08-03 20:01 - 01901153 _____ C:\windows\WindowsUpdate.log
2015-07-11 14:20 - 2013-04-11 20:36 - 00669116 _____ C:\windows\system32\perfh005.dat
2015-07-11 14:20 - 2013-04-11 20:36 - 00141744 _____ C:\windows\system32\perfc005.dat
2015-07-11 14:20 - 2009-07-14 07:13 - 01584554 _____ C:\windows\system32\PerfStringBackup.INI
2015-07-11 14:14 - 2015-01-03 01:27 - 00000948 _____ C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-07-11 14:14 - 2014-12-05 14:56 - 00002896 _____ C:\windows\System32\Tasks\AutoKMS
2015-07-11 14:14 - 2014-12-05 14:56 - 00000266 _____ C:\windows\Tasks\AutoKMS.job
2015-07-11 14:14 - 2013-04-11 22:09 - 00000000 ____D C:\ProgramData\PDFC
2015-07-11 14:13 - 2009-07-14 07:08 - 00000006 ____H C:\windows\Tasks\SA.DAT
2015-07-11 14:13 - 2009-07-14 06:51 - 00064507 _____ C:\windows\setupact.log
2015-07-11 14:11 - 2015-04-19 19:18 - 00000000 ___SD C:\windows\SysWOW64\GWX
2015-07-11 14:11 - 2015-04-19 19:18 - 00000000 ___SD C:\windows\system32\GWX
2015-07-11 13:53 - 2015-01-03 02:55 - 00000000 ___SD C:\windows\system32\CompatTel
2015-07-11 13:53 - 2015-01-03 02:55 - 00000000 ____D C:\windows\system32\appraiser
2015-07-11 13:43 - 2009-07-14 06:57 - 00001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-07-11 13:41 - 2013-04-11 22:11 - 00000830 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2015-07-11 13:41 - 2009-07-14 06:45 - 00422504 _____ C:\windows\system32\FNTCACHE.DAT
2015-07-11 13:40 - 2015-01-03 02:23 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-07-11 13:40 - 2015-01-03 02:23 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2015-07-11 13:40 - 2010-11-21 05:47 - 00147098 _____ C:\windows\PFRO.log
2015-07-11 13:38 - 2015-01-03 01:27 - 00000952 _____ C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-07-11 13:38 - 2013-04-11 20:32 - 00000000 ____D C:\Program Files\Windows Journal
2015-07-11 13:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\PolicyDefinitions
2015-07-11 13:37 - 2013-04-11 22:11 - 00778416 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2015-07-11 13:37 - 2013-04-11 22:11 - 00142512 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-07-11 13:37 - 2013-04-11 22:11 - 00003768 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater
2015-07-07 19:32 - 2013-11-21 13:37 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-07-07 19:28 - 2013-08-03 21:14 - 00002117 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
2015-07-07 19:28 - 2013-08-03 21:14 - 00001912 _____ C:\windows\epplauncher.mif
2015-07-07 19:27 - 2013-08-03 21:14 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2015-07-07 19:27 - 2013-08-03 21:13 - 00000000 ____D C:\Program Files\Microsoft Security Client
2015-07-07 19:22 - 2013-11-14 01:24 - 00000000 ____D C:\windows\system32\MRT
2015-07-07 19:14 - 2015-01-03 02:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-07-07 18:18 - 2013-11-12 19:25 - 00000166 _____ C:\windows\SysWOW64\DOErrors.log
2015-07-07 17:33 - 2013-08-03 20:25 - 00000000 ____D C:\Program Files (x86)\AlcorMicro
2015-07-07 17:33 - 2009-07-14 05:20 - 00000000 ___HD C:\windows\system32\GroupPolicy
2015-07-07 17:33 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\GroupPolicy
2015-07-07 17:31 - 2009-07-14 04:34 - 00000505 _____ C:\windows\win.ini
2015-07-07 17:25 - 2013-08-03 21:01 - 00000000 ____D C:\ProgramData\Skype
2015-07-07 17:19 - 2013-08-03 20:40 - 00000000 ____D C:\ProgramData\Temp
2015-07-07 17:12 - 2013-11-11 18:37 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-07-05 12:08 - 2010-11-21 05:27 - 00300704 ____N (Microsoft Corporation) C:\windows\system32\MpSigStub.exe
2015-07-03 17:26 - 2013-11-11 18:48 - 00002282 ____H C:\Users\Pohotovost\Documents\Default.rdp
2015-07-03 17:14 - 2013-11-11 18:46 - 00000000 ____D C:\ProgramData\Cisco
2015-07-03 17:14 - 2013-08-03 20:27 - 00000000 ____D C:\Program Files (x86)\Cisco
2015-06-25 20:47 - 2014-03-06 12:59 - 00000000 ____D C:\Program Files (x86)\Adobe
2015-06-25 20:23 - 2015-01-03 01:27 - 00003948 _____ C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-06-25 20:23 - 2015-01-03 01:27 - 00003696 _____ C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-06-25 20:22 - 2013-04-11 22:14 - 00027196 _____ C:\windows\DPINST.LOG

==================== Files in the root of some directories =======

2013-11-21 10:00 - 2013-11-21 10:00 - 0000153 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc

Some files in TEMP:
====================
C:\Users\Pohotovost\AppData\Local\Temp\AcDeltree.exe
C:\Users\Pohotovost\AppData\Local\Temp\appshat_generic.exe
C:\Users\Pohotovost\AppData\Local\Temp\cabex.dll
C:\Users\Pohotovost\AppData\Local\Temp\DataCard_Setup64.exe
C:\Users\Pohotovost\AppData\Local\Temp\listicka-partner-13415-1.1.2-offline.exe
C:\Users\Pohotovost\AppData\Local\Temp\ResetDevice.exe
C:\Users\Pohotovost\AppData\Local\Temp\tu17p84.exe
C:\Users\Pohotovost\AppData\Local\Temp\unelevate.exe
C:\Users\Pohotovost\AppData\Local\Temp\ytaiesmt_smtyc_setup.exe
C:\Users\Pohotovost\AppData\Local\Temp\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-05-05 20:59

==================== End of log ============================

nitram81
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 11 črc 2015 13:30

Re: vyskakovacie okná

#2 Příspěvek od nitram81 »

..a ještě log :

# AdwCleaner v4.208 - Log vytvořen 11/07/2015 v 15:11:24
# Aktualizováno 09/07/2015 by Xplode
# Databáze : 2015-07-10.1 [Server]
# Operační system : Windows 7 Professional Service Pack 1 (x64)
# Uživatelské jméno : Pohotovost - POHOTOVOST-HP
# Spuštěno z : C:\Users\Pohotovost\Desktop\adwcleaner_4.208.exe
# Nastavení : Čištění

***** [ Služby ] *****

[#] Služba Smazáno : globalUpdate
[#] Služba Smazáno : globalUpdatem
Služba Smazáno : {64b5be32-7185-4edd-8c8b-6f2cd5600942}Gw64
Služba Smazáno : {6e47b1d7-7555-40c5-a536-941ee42a81a1}Gw64
Služba Smazáno : {842cb8d9-206d-4bdf-809e-de5abc49f58c}Gw64

***** [ Soubory / Složky ] *****

Složka Smazáno : C:\Users\Public\Documents\Goobzo
Složka Smazáno : C:\Users\Public\Documents\ShopperPro
Složka Smazáno : C:\Program Files (x86)\globalUpdate
Složka Smazáno : C:\Program Files (x86)\App Lid
Složka Smazáno : C:\Program Files (x86)\SensePlus
Složka Smazáno : C:\Users\POHOTO~1\AppData\Local\Temp\Swift Record
Složka Smazáno : C:\Users\Pohotovost\AppData\Local\AppsHat Mobile Apps
Složka Smazáno : C:\Users\Pohotovost\AppData\Local\globalUpdate
Složka Smazáno : C:\Users\Pohotovost\AppData\Local\webplayer
Složka Smazáno : C:\Users\Pohotovost\AppData\Roaming\pdfforge
Složka Smazáno : C:\Users\Pohotovost\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AppsHat
Složka Smazáno : C:\Users\Pohotovost\AppData\Roaming\Mozilla\Firefox\Profiles\99j55thz.default-1420241738999\Extensions\e9d197d59f2f45f382b1aa5c14d82@8706aaed9b904554b5cb7984e9.com
Soubor Smazáno : C:\Users\Pohotovost\AppData\Roaming\Mozilla\Firefox\Profiles\99j55thz.default-1420241738999\Extensions\{64b5be32-7185-4edd-8c8b-6f2cd5600942}.xpi
Soubor Smazáno : C:\windows\System32\drivers\{64b5be32-7185-4edd-8c8b-6f2cd5600942}Gw64.sys
Soubor Smazáno : C:\windows\System32\drivers\{6e47b1d7-7555-40c5-a536-941ee42a81a1}Gw64.sys
Soubor Smazáno : C:\windows\System32\drivers\{842cb8d9-206d-4bdf-809e-de5abc49f58c}Gw64.sys
Soubor Smazáno : C:\Users\Pohotovost\Desktop\AppsHat.lnk
Soubor Smazáno : C:\Users\Pohotovost\AppData\Roaming\Mozilla\Firefox\Profiles\99j55thz.default-1420241738999\user.js

***** [ Naplánované úlohy ] *****

Úloha Smazáno : globalUpdateUpdateTaskMachineCore
Úloha Smazáno : globalUpdateUpdateTaskMachineUA
Úloha Smazáno : 05914eb0-bc9c-40dc-a3af-15020999188a-1-6
Úloha Smazáno : 05914eb0-bc9c-40dc-a3af-15020999188a-1-7
Úloha Smazáno : 05914eb0-bc9c-40dc-a3af-15020999188a-4
Úloha Smazáno : 05914eb0-bc9c-40dc-a3af-15020999188a-5
Úloha Smazáno : 05914eb0-bc9c-40dc-a3af-15020999188a-5_user
Úloha Smazáno : 05914eb0-bc9c-40dc-a3af-15020999188a-6
Úloha Smazáno : 05914eb0-bc9c-40dc-a3af-15020999188a-7
Úloha Smazáno : edffcfdd-e4d9-4a2c-86f4-869d76481285-1-6
Úloha Smazáno : edffcfdd-e4d9-4a2c-86f4-869d76481285-1-7
Úloha Smazáno : edffcfdd-e4d9-4a2c-86f4-869d76481285-10_user
Úloha Smazáno : edffcfdd-e4d9-4a2c-86f4-869d76481285-4
Úloha Smazáno : edffcfdd-e4d9-4a2c-86f4-869d76481285-5
Úloha Smazáno : edffcfdd-e4d9-4a2c-86f4-869d76481285-5_user
Úloha Smazáno : edffcfdd-e4d9-4a2c-86f4-869d76481285-6
Úloha Smazáno : edffcfdd-e4d9-4a2c-86f4-869d76481285-7

***** [ Zástupci ] *****


***** [ Registry ] *****

Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Klíč Smazáno : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Klíč Smazáno : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\globalupdate.exe
Klíč Smazáno : HKLM\SYSTEM\CurrentControlSet\Control\Class\{0014298C-A9BA-440D-AAA8-AD12C7010EE5}
Klíč Smazáno : HKLM\SYSTEM\CurrentControlSet\Control\Class\{181A06EA-B82C-47DE-B851-E20FD0E1CC7D}
Klíč Smazáno : HKLM\SOFTWARE\918d2af8-e48a-4880-925a-197eb65fc455
Klíč Smazáno : HKLM\SOFTWARE\bd2f2aaf-204f-40f3-a875-b1e5c2c9576b
Klíč Smazáno : HKLM\SOFTWARE\d8ddd3c9-98dd-4a50-9cb5-21a52ebaa1ac
Klíč Smazáno : HKLM\SOFTWARE\f4f180ac-bf5a-4b9a-aa1a-f103edbba6c1
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{6EDBF8C0-C94C-4A13-956F-E393BCA5BA4B}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Klíč Smazáno : HKCU\Software\GlobalUpdate
Klíč Smazáno : HKCU\Software\Goobzo
Klíč Smazáno : HKCU\Software\InstalledBrowserExtensions
Klíč Smazáno : HKCU\Software\Webplayer
Klíč Smazáno : HKCU\Software\App Lid
Klíč Smazáno : HKCU\Software\App Lid-nv
Klíč Smazáno : HKCU\Software\App Lid-nv-ie
Klíč Smazáno : HKCU\Software\AppDataLow\Software\Crossrider
Klíč Smazáno : HKLM\SOFTWARE\GlobalUpdate
Klíč Smazáno : HKLM\SOFTWARE\Goobzo
Klíč Smazáno : HKLM\SOFTWARE\InstalledBrowserExtensions
Klíč Smazáno : HKLM\SOFTWARE\App Lid
Klíč Smazáno : HKLM\SOFTWARE\SensePlus
Klíč Smazáno : HKLM\SOFTWARE\App Lid-nv
Klíč Smazáno : HKLM\SOFTWARE\App Lid-nv-ie
Klíč Smazáno : HKU\.DEFAULT\Software\Goobzo
Klíč Smazáno : HKU\.DEFAULT\Software\App Lid-nv
Klíč Smazáno : HKU\.DEFAULT\Software\App Lid-nv-ie
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\AppsHat Mobile Apps
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\App Lid
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SensePlus
Klíč Smazáno : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Klíč Smazáno : [x64] HKLM\SOFTWARE\ShopperPro
Klíč Smazáno : [x64] HKLM\SOFTWARE\App Lid-nv
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\globalupdate.exe

***** [ Prohlížeče ] *****

-\\ Internet Explorer v11.0.9600.17840


-\\ Mozilla Firefox v39.0 (x86 cs)

[99j55thz.default-1420241738999\prefs.js] - Řádek Smazáno : user_pref("extensions.ad9676068985d4d81bb390a7be93ab3c8e144f694a0509d5com65743.65743.internaldb.Resources_meta.value", "%7B%2219x19.png%22%3A%7B%22id%22%3A853130%2C%22ver%22%3A1%2C%22status%22%3A1%2C%[...]
[99j55thz.default-1420241738999\prefs.js] - Řádek Smazáno : user_pref("extensions.ad9676068985d4d81bb390a7be93ab3c8e144f694a0509d5com65743.65743.internaldb.__ICM_LITE__blacklist_domain.value", "%7B%22SLIDERS%22%3A%5B%226pm.com%22%2C%22amazon.co.uk%22%2C%22amaz[...]
[99j55thz.default-1420241738999\prefs.js] - Řádek Smazáno : user_pref("extensions.ad9676068985d4d81bb390a7be93ab3c8e144f694a0509d5com65743.65743.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D[...]
[99j55thz.default-1420241738999\prefs.js] - Řádek Smazáno : user_pref("extensions.ae9d197d59f2f45f382b1aa5c14d828706aaed9b904554b5cb7984e9com70299.70299.internaldb.__ICM_LITE__blacklist_domain.value", "%7B%22SLIDERS%22%3A%5B%226pm.com%22%2C%22amazon.co.uk%22%2[...]
[99j55thz.default-1420241738999\prefs.js] - Řádek Smazáno : user_pref("extensions.ae9d197d59f2f45f382b1aa5c14d828706aaed9b904554b5cb7984e9com70299.70299.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%[...]
[99j55thz.default-1420241738999\prefs.js] - Řádek Smazáno : user_pref("extensions.crossrider.bic", "14e2c0cb78a681c1fa4a118bc3b032df");

-\\ Google Chrome v43.0.2357.130


*************************

AdwCleaner[R0].txt - [13870 bytů] - [11/07/2015 15:10:11]
AdwCleaner[S0].txt - [11911 bytů] - [11/07/2015 15:11:24]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [11970 bytů] ##########

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: vyskakovacie okná - nitram81

#3 Příspěvek od vyosek »

Zdravim :)

:arrow: Prispevky jsem Vam oddelill do samostatneho tematu - do cizich se neleze

:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    resethosts;
    emptyclsid;
    IEdefaults;
    FFdefaults;
    CHRdefaults;
    emptyIEcache;
    emptyFFcache;
    emptyCHRcache;
    emptyalltemp;
    emptyflash;
    emptyjava;
    emptyrecycle.bin;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

nitram81
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 11 črc 2015 13:30

Re: vyskakovacie okná - nitram81

#4 Příspěvek od nitram81 »

Omlouvám se, že jsem vlezl do cizího vlákna, už se to nestane.

Přikládám log:


Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by Pohotovost on so 11.07.2015 at 20:05:32,23.
Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Pohotovost\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

11.7.2015 20:07:02 Zoek.exe System Restore Point Created Successfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handled within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Empty Folders Check ======================

C:\PROGRA~2\Seznam.cz deleted successfully
C:\PROGRA~3\HPQLOG deleted successfully
C:\PROGRA~3\Validity deleted successfully
C:\Users\Pohotovost\AppData\Local\GHISLER deleted successfully
C:\Users\Pohotovost\AppData\Local\Packages deleted successfully
C:\Users\Pohotovost\AppData\Local\VirtualStore deleted successfully

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\POHOTO~1\AppData\Roaming\Mozilla\Firefox\Profiles\99j55thz.default-1420241738999\prefs.js:
user_pref("browser.search.suggest.enabled", false);

Added to C:\Users\POHOTO~1\AppData\Roaming\Mozilla\Firefox\Profiles\99j55thz.default-1420241738999\prefs.js:

ProfilePath: C:\Users\POHOTO~1\AppData\Roaming\Mozilla\Firefox\Profiles\99j55thz.default-1420241738999

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_11.07.2015_2016_.backup

==== Deleting Files \ Folders ======================

C:\PROGRA~2\Seznam.cz not found
C:\PROGRA~2\5e84680f-dfaf-4e48-9e8f-4d0f0d9d374e deleted
C:\PROGRA~2\a8dd3325-94cd-485b-9e5a-074631df91fb deleted
C:\PROGRA~2\bfdf7dab-316f-4a4f-8847-cbc41f8835c9 deleted
C:\flashplayer18au_ha_install.exe deleted
C:\FRST64.exe deleted
C:\hijackthis.exe deleted
C:\NbuExplorer_v3.3_SomotoBinno.exe deleted
C:\Nokia_PC_Suite_ALL.exe deleted
C:\uTorrent221.exe deleted
C:\zoek.exe deleted
C:\Users\Pohotovost\AppData\Local\cache deleted
C:\Users\Pohotovost\AppData\Local\Installer deleted
C:\Users\Pohotovost\AppData\Local\CrashRpt deleted
C:\windows\SysNative\config\systemprofile\Searches deleted
C:\windows\SysNative\GroupPolicy\machine deleted
C:\windows\SysNative\GroupPolicy\User deleted
C:\windows\SysNative\GroupPolicy\gpt.ini deleted
C:\windows\Syswow64\GroupPolicy\gpt.ini deleted
C:\Users\POHOTO~1\AppData\Roaming\Mozilla\Firefox\Profiles\99j55thz.default-1420241738999\extensions\d9676068985d4d81bb390a@7be93ab3c8e144f694a0509d5.com deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"otis@digitalpersona.com"="c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt" [03.08.2013 20:07]

==== Firefox Extensions ======================

ProfilePath: C:\Users\POHOTO~1\AppData\Roaming\Mozilla\Firefox\Profiles\99j55thz.default-1420241738999
- Undetermined - C:\Users\Pohotovost\AppData\Roaming\Mozilla\Firefox\Profiles\99j55thz.default-1420241738999\extensions\d9676068985d4d81bb390a@7be93ab3c8e144f694a0509d5.com
- Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi

AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\Pohotovost\AppData\Roaming\Mozilla\Firefox\Profiles\99j55thz.default-1420241738999
10ECFD4DAC5151CB787FFA77B0CDB2B2 - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_191.dll - Shockwave Flash


==== Chromium Look ======================


==== Chromium Startpages ======================

C:\Users\Pohotovost\AppData\Local\Google\Chrome\User Data\Default\Preferences
"scripts":["craw_background.js"]}},"current_locale":"cs","default_locale":"en","description":"Peněženka Google pro digitální zboží","display_in_launcher":false,"display_in_new_tab_page":false,"icons":{"128":"images/icon_128.png","16":"images/icon_16.png"},"key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCrKfMnLqViEyokd1wk57FxJtW2XXpGXzIHBzv9vQI/01UsuP0IV5/lj0wx7zJ/xcibUgDeIxobvv9XD+zO1MdjMWuqJFcKuSS4Suqkje6u+pMrTSGOSHq1bmBVh0kpToN8YoJs/P/yrRd7FEtAXTaFTGxQL4C385MeXSjaQfiRiQIDAQAB","manifest_version":2,"minimum_chrome_version":"29","name":"Peněženka Google","oauth2":{"auto_approve":true,"client_id":"203784468217.apps.googleusercontent.com","scopes":["https://www.googleapis.com/auth/sierra" ... e.readonly"]},"permissions":["identity","webview","https://wallet.google.com/","https://wa ... eapis.com/*"],"update_url":"https://clients2.google.com/service/upd ... ons":{"api":["alarms","gcm","identity","metricsPrivate","notifications","storage","tabs","webstorePrivate"],"explicit_host":["*://*.google.com/*","*://*.gstatic.com/*","https://*.googleapis.com/*","https://*.googleusercontent.com/*"],"manifest_permissions":[]},"commands":{},"content_settings":[],"creation_flags":1,"events":[],"from_bookmark":false,"from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"initial_keybindings_set":true,"install_time":"13080761969849992","location":5,"manifest":{"background":{"persistent":false,"scripts":["utility.js","cards.js","background.js"]},"description":"Integrates Google Now into Chrome.","icons":{"128":"images/icon128.png","16":"images/icon16.png","48":"images/icon48.png"},"key":"MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAkhqJr32OFD/bMXW4Md7jMfd7LbwHXVc6x5bBQG5U+dloofoxrICDR20yur/40mQ8O//0sS1b8srvbab1CRlSrxoNCr9T80NAkfzx0gHyVS+p1Zow+1FzLMu9PiGwwFyN80HIB7GI/dIa0wC9K/2OrrzcHEhVH96DacTtWQqjfDVtZPjT7Xwv23dgoWcpbkRC86jMJot3dmX9xnn0KzoVc9gDOHSIkBLbkkr6Sp3LGXCCM4L0DJgxdFwaLr5WBzgC3y5x0/wwPIwN4PtIaK3BhH6njlksfnKwwIJ9iRT41V4BqbWu4mszO/7VJ3HJyw2DBpIc2grU9ZRRxrV3fRQG4wIDAQAB","manifest_version":2,"name":"Google Now","oauth2":{"auto_approve":true,"scopes":["https://www.googleapis.com/auth/gcm","h ... /googlenow"]},"optional_permissions":["background"],"permissions":["alarms","gcm","identity","metricsPrivate","notifications","storage","tabs","webstorePrivate","*://*.google.com/*","*://*.gstatic.com/*","https://*.googleapis.com/chromenow/v1/*","https://*.googleapis.com/gcm/*","https://*.googleusercontent.com/*"],"version":"1.2.0.1"},"path":"C:\\Program Files (x86)\\Google\\Chrome\\Application\\43.0.2357.130\\resources\\google_now","preferences":{},"regular_only_preferences":{},"state":1,"was_installed_by_default":false,"was_installed_by_oem":false},"pjkljhegncpnkpknbcohdijeoejaedia":{"ack_external":true}}},"pinned_tabs":[],"protection":{"macs":{"browser":{"show_home_button":"5E39DE9284791E09ED36F4D8EA9E21EDFA56B53A87B6D70675B7119D4759ECB1"},"default_search_provider":{"keyword":"3409CA8146D61C232A6055A37B02B79CA5A88BEA65DB3C6AD1A916817B9EB9C1","name":"06A2739D15F341AA81BFE7EBE722567D06BBD89B3DA72444B0A78B63EE6495F9","search_url":"0E6FE382E818C42362B70DCF179989185858DED8FD6B23D55D1EBFAA64AF3E26"},"default_search_provider_data":{"template_url_data":"2B6A8DCE085A060DDAF5219C17EC40BB98DD68F755C23C04F7FC0887DF322539"},"extensions":{"settings":{"ahfgeienlihckogmohjhadlkjgocpleb":"A5BCB235A16C144275212A02989D190BFCB5FEC2F1029B79194814A8DA532E9F","aohghmighlieiainnegkcijnfilokake":"CE77F2762EBFCB532527825C2DA2AD0DB79593F3A551B914744A7A762D26B679","apdfllckaahabafndbhieahigkjlhalf":"AB699A83258D3DFFB7C72553CF189522361059D52170097D4415A95F4F7D98E5","bepbmhgboaologfdajaanbcjmnhjmhfn":"0B972019FE69BF59C44439AB15D629100A8D5A5F135CFF1E769E7C396CF1D2DB","blpcfgokakmgnkcojhhkbfbldkacnbeo":"0EB220D49FF6CC774D92AEE76B9F9E225A6072F55F323A659DAD33BBA20994D9","coobgpohoikkiipiblmjeljniedjpjpf":"C29021C851D5EE932E0B7EF53799271AA41C2784AF6417BC3EDF0DE8DCA0C138","eemcgdkfndhakfknompkggombfjjjeno":"0FB2B0A78D6F5045F6C21F471425400D31551FA565FFC272ECFEFA7ACB39F56D","ennkphjdgehloodpbhlhldgbnhmacadg":"743292A55AB853E8CFAEE5EA6565B8D23A05ED65F673BA0988B0BEBF7F2BDE34","gfdkimpbcpahaombhbimeihdjnejgicl":"4F4D8C505F724C2D2B1341ACFAA471969AF75F0C2A10B60A193E1FE2B9774C40","kmendfapggjehodndflmmgagdbamhnfd":"6C6C245419393EF11A71D686732AA9E263A82E18116E2C71A611033CF2634B5A","mfehgcgbbipciphmccgaenjidiccnmng":"19D7CCAE62DD5954F77C614A8C92674E0499D48093C74F25E56003E5CD7AB044","mgndgikekgjfcpckkfioiadnlibdjbkf":"2B309C3E7B88BF21BB4B36E8026729AB4241FEF0B40ACCD13273312B17C50F87","mhjfbmdgcfjbbpaeojofohoefgiehjai":"229D3E5CEF5FA4C26659EE5BC37C4A9E54AC3171BB71663D6D9D338C42A577CD","neajdppkdcdipfabeoofebfddakdcjhd":"748EC28186E4CEF6C8E32B18A364946D1E2470805F3C9B85590058F20DA709A7","nkeimhogjdpnpccoofpliimaahmaaome":"BD498A993DDE4D4C3C68CC8D93B915BDBE306DAE9F94B76F251CCD7AD9B199BB","nmmhkkegccagdldgiimedpiccmgmieda":"70C822E0C9BDE30684FC1BED9C0E195438892D0AA2AFAED44F2853A641B265C4","pafkbggdmjlpgkdkcbjmhmfcdpncadgh":"94885B222A93D2318DDBC5D0838A7691824C8C83BCFBE958281A5393152DF8D4","pjkljhegncpnkpknbcohdijeoejaedia":"9563F64FED34E9AB882DBF6CD61BC063ADC55B5C632728ECD7F8C4041739097B"}},"google":{"services":{"last_username":"55E6B13C2278E816A1B3FF3CE1DB86E1E0C2D448CF6C6DD33C8568713126B6EF","username":"C200E2D738CBFD0AF9655BDC486DADC72DF7761AF5FAA4D8FBA9ECFFC0580A40"}},"homepage":"4DE5F7E0F03241239EFE520E0CF5D45A966F448CF2607A188A34C176E4606A14","homepage_is_newtabpage":"9B3177AB5DF07D7278546D14F1846BDEDF31C7CA20B8B9A9CC53A8ABED5A8A64","pinned_tabs":"A97E9CDF22330915C6C122BDED98F573400AF1C23CF8BF1E9E68ECC9DECF9BA9","prefs":{"preference_reset_time":"7F759D7C39D0BB2F8D8FA49EEAF4E2A28BD3883BB38D31823CE72212EDA47518"},"profile":{"reset_prompt_memento":"5412F71164431B69D397B480658840CAB21CCEA982D8BB086B8ABC6417370770"},"safebrowsing":{"incidents_sent":"C8534C9E30C403BAE4A185A876A7C803265D972B9BCFB7E6FC915BF8BB52D89E"},"search_provider_overrides":"F788035EF6352B261A15296ECF771B9863499F45D381B437E7E72E1857C92D4D","session":{"restore_on_startup":"10C9BC9F11C9A2FDC7276A2E8B34DC2D0FC15F87F485F32D0F025719393D3CF7","startup_urls":"6AFC1B845D94B19F49B0F335C39921FA7549FDFF3FB237B0299B28D5E384540A"},"software_reporter":{"prompt_reason":"52C4C55B38702C85EAC460FBB3B1E1C53BCF454FFB6F3EC88343167CFB83FDB6","prompt_seed":"F51BB5C073B1289E249742CEE7A99B68CF98AED68ADF598B03190A31A4D92851","prompt_version":"E4587169E948791CC89D5B5C3D06C36C77C652E5474D33C66CA860AC7AC6DB6B"},"sync":{"remaining_rollback_tries":"D5FC75586AFFD00D2BA4F0292FBFF49342CFB031205DDABDFF6532A64DD0B62B"}},"super_mac":"C7C2589DA425DC034F2802A6882EE9676B901C7B823B9E8BF6873FC6ADE715B4"}}


==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.bing.com?pc=CMNTDFJS"
"Default_Page_URL"="http://www.bing.com?pc=CMNTDFJS"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.bing.com?pc=CMNTDFJS"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"

==== Reset Google Chrome ======================

C:\Users\Pohotovost\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Pohotovost\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\Pohotovost\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Pohotovost\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AppsHat deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MfeEpePcMonitor deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SPDriver deleted successfully

==== Empty IE Cache ======================

C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Pohotovost\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Pohotovost\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\Pohotovost\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

C:\Users\Pohotovost\AppData\Local\Mozilla\Firefox\Profiles\2tgp7nql.default\Cache emptied successfully
C:\Users\Pohotovost\AppData\Local\Mozilla\Firefox\Profiles\99j55thz.default-1420241738999\cache2 emptied successfully

==== Empty Chrome Cache ======================

C:\Users\Pohotovost\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache is not empty, a reboot is needed

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=299 folders=29 82986337 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Pohotovost\AppData\Local\Temp will be emptied at reboot
C:\windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\windows\Temp successfully emptied
C:\Users\POHOTO~1\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Users\Pohotovost\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\ZC8JTWLU\fbstatic-a.akamaihd.net" not found

==== EOF on so 11.07.2015 at 20:23:03,22 ======================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: vyskakovacie okná - nitram81

#5 Příspěvek od vyosek »

Poprosim o novy log z FRST
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

nitram81
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 11 črc 2015 13:30

Re: vyskakovacie okná - nitram81

#6 Příspěvek od nitram81 »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:11-07-2015
Ran by Pohotovost (administrator) on POHOTOVOST-HP on 11-07-2015 20:42:36
Running from C:\Users\Pohotovost\Desktop
Loaded Profiles: Pohotovost (Available Profiles: Pohotovost)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
(Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11\WLTRYSVC.EXE
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11\BCMWLTRY.EXE
(Autodesk, Inc.) C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Cisco Systems, Inc.) C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
(Infineon Technologies AG) C:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\IFXSPMGT.exe
(DigitalPersona, Inc.) C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleCrashHandler64.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Infineon Technologies AG) C:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\IFXTCS.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
() C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(Infineon Technologies AG) C:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\IfxPsdSv.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpAgent.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11\WLTRAY.EXE
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
() C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe
(Portrait Displays, Inc) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Portrait Displays, Inc.) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdiSDKHelperx64.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Ghisler Software GmbH) C:\Program Files\totalcmd\TOTALCMD64.EXE


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2887440 2012-03-09] (Synaptics Incorporated)
HKLM\...\Run: [HPPowerAssistant] => C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [3488640 2012-03-14] (Hewlett-Packard Company)
HKLM\...\Run: [Broadcom Wireless Manager UI] => C:\Program Files\Broadcom\Broadcom 802.11\WLTRAY.exe [7173632 2013-08-03] (Broadcom Corporation)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1425408 2012-03-05] (IDT, Inc.)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1337000 2015-04-30] (Microsoft Corporation)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-03-27] (Intel Corporation)
HKLM-x32\...\Run: [Cisco AnyConnect Secure Mobility Agent for Windows] => C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe [708496 2015-04-20] (Cisco Systems, Inc.)
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe,
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
Winlogon\Notify\DeviceNP-x32: DeviceNP.dll [X]
HKU\S-1-5-21-1419437457-1003452090-4212318537-1001\...\Policies\Explorer: []
HKU\S-1-5-21-1419437457-1003452090-4212318537-1001\...\MountPoints2: {847632ad-4aea-11e3-9812-b8763faf7792} - D:\AutoRun.exe
Lsa: [Notification Packages] DPPassFilter scecli C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2013-08-03]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\vpngui.exe.lnk [2013-11-11]
ShortcutTarget: vpngui.exe.lnk -> C:\Windows\Installer\{467D5E81-8349-4892-9E81-C3674ED8E451}\Icon09DB8A851.exe ()
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\windows\system32\AcSignIcon.dll [2012-02-06] (Autodesk, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-1419437457-1003452090-4212318537-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1419437457-1003452090-4212318537-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: File Sanitizer for HP ProtectTools -> {3134413B-49B4-425C-98A5-893C1F195601} -> C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll [2012-03-22] (Hewlett-Packard)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{FAAAA6FE-E8E5-48D2-8DD0-AEF8344E440E}: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\Pohotovost\AppData\Roaming\Mozilla\Firefox\Profiles\99j55thz.default-1420241738999
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_17_0_0_191.dll [2015-07-11] ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_191.dll [2015-07-11] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-01-06] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-01-06] (Intel Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-06-25] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-06-25] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Extension: Adblock Plus - C:\Users\Pohotovost\AppData\Roaming\Mozilla\Firefox\Profiles\99j55thz.default-1420241738999\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-02-20]
FF HKLM-x32\...\Firefox\Extensions: [otis@digitalpersona.com] - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt
FF Extension: DigitalPersona Extension - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt [2013-08-03]

Chrome:
=======
CHR Profile: C:\Users\Pohotovost\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Wallet) - C:\Users\Pohotovost\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-03]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [19232 2012-01-31] (Autodesk, Inc.)
R2 DpHost; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [493904 2012-03-15] (DigitalPersona, Inc.)
S3 FLCDLOCK; c:\windows\SysWOW64\flcdlock.exe [477056 2012-11-19] (Hewlett-Packard Company)
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [523680 2012-09-13] (Hewlett-Packard Company)
R2 IFXSpMgtSrv; c:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\ifxspmgt.exe [1127800 2012-01-27] (Infineon Technologies AG)
R2 IFXTCS; c:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\ifxtcs.exe [984440 2012-01-27] (Infineon Technologies AG)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280 2012-03-28] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165144 2012-03-28] (Intel Corporation)
R2 McAfee Endpoint Encryption Agent; C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe [1327104 2012-03-22] () [File not signed]
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23816 2015-04-30] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [366544 2015-04-30] (Microsoft Corporation)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1134584 2012-03-07] (PDF Complete Inc)
R2 PersonalSecureDriveService; c:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\IfxPsdSv.exe [212344 2012-01-27] (Infineon Technologies AG)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 wltrysvc; C:\Program Files\Broadcom\Broadcom 802.11\bcmwltry.exe [5858304 2013-08-03] (Broadcom Corporation) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [134696 2012-02-02] (Broadcom Corporation.)
R3 BTWDPAN; C:\Windows\System32\DRIVERS\btwdpan.sys [89640 2012-02-02] (Broadcom Corporation.)
R1 CLVirtualDrive; C:\Windows\System32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink)
R3 CVPNDRVA; C:\windows\system32\Drivers\CVPNDRVA.sys [304784 2010-03-23] ()
S3 DAMDrv; C:\Windows\System32\DRIVERS\DAMDrv64.sys [64832 2012-11-09] (Hewlett-Packard Company)
U5 ewusbnet; C:\Windows\System32\Drivers\ewusbnet.sys [243200 2009-12-15] (Huawei Technologies Co., Ltd.)
S3 Huawei; C:\Windows\System32\DRIVERS\ewdcsc.sys [29696 2009-12-15] (Huawei Tech. Co., Ltd.)
S3 hwusbdev; C:\Windows\System32\DRIVERS\ewusbdev.sys [114304 2009-12-15] (Huawei Technologies Co., Ltd.)
R3 johci; C:\Windows\System32\DRIVERS\johci.sys [26208 2012-07-16] (JMicron Technology Corp.)
R0 MfeEpeOpal; C:\Windows\System32\Drivers\MfeEpeOpal.sys [93640 2012-03-22] (McAfee, Inc.)
R0 MfeEpePc; C:\Windows\System32\Drivers\MfeEpePc.sys [158792 2012-03-22] (McAfee, Inc.)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [280376 2015-03-04] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124568 2015-03-04] (Microsoft Corporation)
R1 PersonalSecureDrive; C:\Windows\System32\drivers\psd.sys [44576 2010-01-26] (Infineon Technologies AG)
R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [1064184 2012-09-23] (Sunplus)
S3 vpnva; C:\Windows\System32\DRIVERS\vpnva64-6.sys [52592 2014-11-19] (Cisco Systems, Inc.)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-07-11 20:42 - 2015-07-11 20:42 - 00016691 _____ C:\Users\Pohotovost\Desktop\FRST.txt
2015-07-11 20:40 - 2015-07-11 20:40 - 02130944 _____ (Farbar) C:\Users\Pohotovost\Desktop\FRST64.exe
2015-07-11 20:26 - 2015-07-11 20:26 - 00000000 ____D C:\Users\Pohotovost\AppData\Local\GHISLER
2015-07-11 20:21 - 2015-07-11 20:21 - 00000000 ____D C:\ProgramData\Validity
2015-07-11 20:21 - 2015-07-11 20:21 - 00000000 ____D C:\ProgramData\HPQLOG
2015-07-11 20:19 - 2015-07-11 20:05 - 00024064 _____ C:\windows\zoek-delete.exe
2015-07-11 20:06 - 2015-07-11 20:23 - 00016203 _____ C:\zoek-results.log
2015-07-11 20:05 - 2015-07-11 20:16 - 00000000 ____D C:\zoek_backup
2015-07-11 20:04 - 2015-07-11 20:03 - 01308672 _____ C:\Users\Pohotovost\Desktop\zoek.exe
2015-07-11 20:00 - 2015-07-11 20:00 - 00000000 ____D C:\Users\Pohotovost\AppData\Local\GWX
2015-07-11 15:10 - 2015-07-11 15:11 - 00000000 ____D C:\AdwCleaner
2015-07-11 15:08 - 2015-07-11 15:08 - 02248704 _____ C:\Users\Pohotovost\Downloads\adwcleaner_4.208 (1).exe
2015-07-11 15:08 - 2015-07-11 15:08 - 02248704 _____ C:\Users\Pohotovost\Desktop\adwcleaner_4.208.exe
2015-07-11 14:23 - 2015-07-11 20:42 - 00000000 ____D C:\FRST
2015-07-11 13:52 - 2015-07-09 19:59 - 00017856 _____ (Microsoft Corporation) C:\windows\system32\CompatTelRunner.exe
2015-07-11 13:52 - 2015-07-09 19:58 - 01085440 _____ (Microsoft Corporation) C:\windows\system32\appraiser.dll
2015-07-11 13:52 - 2015-07-09 19:58 - 00765440 _____ (Microsoft Corporation) C:\windows\system32\invagent.dll
2015-07-11 13:52 - 2015-07-09 19:58 - 00726528 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2015-07-11 13:52 - 2015-07-09 19:58 - 00433664 _____ (Microsoft Corporation) C:\windows\system32\devinv.dll
2015-07-11 13:52 - 2015-07-09 19:58 - 00227328 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2015-07-11 13:52 - 2015-07-09 19:58 - 00067584 _____ (Microsoft Corporation) C:\windows\system32\acmigration.dll
2015-07-11 13:52 - 2015-07-09 19:50 - 01145856 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2015-07-11 13:52 - 2015-06-27 00:07 - 03154944 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll
2015-07-11 13:52 - 2015-06-27 00:07 - 02603008 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2015-07-11 13:52 - 2015-06-27 00:07 - 00696320 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2015-07-11 13:52 - 2015-06-27 00:07 - 00192000 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll
2015-07-11 13:52 - 2015-06-27 00:07 - 00098304 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll
2015-07-11 13:52 - 2015-06-27 00:07 - 00091136 _____ (Microsoft Corporation) C:\windows\system32\WinSetupUI.dll
2015-07-11 13:52 - 2015-06-27 00:07 - 00037888 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll
2015-07-11 13:52 - 2015-06-27 00:07 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2015-07-11 13:52 - 2015-06-27 00:06 - 00139776 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2015-07-11 13:52 - 2015-06-27 00:06 - 00037376 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe
2015-07-11 13:52 - 2015-06-27 00:06 - 00012288 _____ (Microsoft Corporation) C:\windows\system32\wu.upgrade.ps.dll
2015-07-11 13:52 - 2015-06-26 19:56 - 00566784 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapi.dll
2015-07-11 13:52 - 2015-06-26 19:56 - 00173056 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuwebv.dll
2015-07-11 13:52 - 2015-06-26 19:56 - 00093184 _____ (Microsoft Corporation) C:\windows\SysWOW64\wudriver.dll
2015-07-11 13:52 - 2015-06-26 19:56 - 00030208 _____ (Microsoft Corporation) C:\windows\SysWOW64\wups.dll
2015-07-11 13:52 - 2015-06-26 19:55 - 00034816 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapp.exe
2015-07-07 19:15 - 2015-05-01 15:17 - 00124112 _____ (Microsoft Corporation) C:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-07-07 19:15 - 2015-05-01 15:16 - 00102608 _____ (Microsoft Corporation) C:\windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-07-07 19:11 - 2015-06-01 21:16 - 00389840 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2015-07-07 19:11 - 2015-06-01 20:07 - 00342736 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2015-07-07 19:11 - 2015-05-27 16:08 - 19607040 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2015-07-07 19:11 - 2015-05-23 05:28 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2015-07-07 19:11 - 2015-05-23 05:15 - 00503808 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2015-07-07 19:11 - 2015-05-23 05:15 - 00062464 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2015-07-07 19:11 - 2015-05-23 05:15 - 00047616 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2015-07-07 19:11 - 2015-05-23 05:14 - 00341504 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec
2015-07-07 19:11 - 2015-05-23 05:13 - 00064000 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2015-07-07 19:11 - 2015-05-23 05:10 - 02278912 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2015-07-07 19:11 - 2015-05-23 05:09 - 00047104 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2015-07-07 19:11 - 2015-05-23 05:08 - 00030720 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2015-07-07 19:11 - 2015-05-23 05:06 - 00478208 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2015-07-07 19:11 - 2015-05-23 05:05 - 00664064 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2015-07-07 19:11 - 2015-05-23 05:05 - 00115712 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2015-07-07 19:11 - 2015-05-23 05:04 - 00620032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2015-07-07 19:11 - 2015-05-23 04:57 - 00418304 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2015-07-07 19:11 - 2015-05-23 04:52 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-07-07 19:11 - 2015-05-23 04:49 - 00168960 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2015-07-07 19:11 - 2015-05-23 04:48 - 00076288 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2015-07-07 19:11 - 2015-05-23 04:47 - 04305920 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2015-07-07 19:11 - 2015-05-23 04:47 - 00285696 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2015-07-07 19:11 - 2015-05-23 04:38 - 00689152 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2015-07-07 19:11 - 2015-05-23 04:37 - 02052608 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2015-07-07 19:11 - 2015-05-23 04:37 - 01155072 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2015-07-07 19:11 - 2015-05-23 04:28 - 12829696 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2015-07-07 19:11 - 2015-05-23 04:20 - 01950720 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2015-07-07 19:11 - 2015-05-23 04:16 - 01309696 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2015-07-07 19:11 - 2015-05-23 04:14 - 00710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2015-07-07 19:11 - 2015-05-22 21:16 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2015-07-07 19:11 - 2015-05-22 21:16 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2015-07-07 19:11 - 2015-05-22 21:01 - 00066560 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2015-07-07 19:11 - 2015-05-22 21:00 - 02885632 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2015-07-07 19:11 - 2015-05-22 21:00 - 00584192 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2015-07-07 19:11 - 2015-05-22 21:00 - 00417792 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2015-07-07 19:11 - 2015-05-22 21:00 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2015-07-07 19:11 - 2015-05-22 20:59 - 00088064 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2015-07-07 19:11 - 2015-05-22 20:53 - 00054784 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2015-07-07 19:11 - 2015-05-22 20:52 - 06026240 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2015-07-07 19:11 - 2015-05-22 20:52 - 00034304 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2015-07-07 19:11 - 2015-05-22 20:48 - 00633856 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2015-07-07 19:11 - 2015-05-22 20:47 - 00816640 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2015-07-07 19:11 - 2015-05-22 20:47 - 00814080 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2015-07-07 19:11 - 2015-05-22 20:47 - 00144384 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2015-07-07 19:11 - 2015-05-22 20:47 - 00114688 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2015-07-07 19:11 - 2015-05-22 20:40 - 00968704 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2015-07-07 19:11 - 2015-05-22 20:36 - 00490496 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2015-07-07 19:11 - 2015-05-22 20:29 - 00077824 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2015-07-07 19:11 - 2015-05-22 20:25 - 00199680 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2015-07-07 19:11 - 2015-05-22 20:24 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2015-07-07 19:11 - 2015-05-22 20:21 - 00316928 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2015-07-07 19:11 - 2015-05-22 20:07 - 00720384 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2015-07-07 19:11 - 2015-05-22 20:06 - 00801280 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2015-07-07 19:11 - 2015-05-22 20:05 - 02125824 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2015-07-07 19:11 - 2015-05-22 20:05 - 01359360 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2015-07-07 19:11 - 2015-05-22 19:57 - 14404096 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2015-07-07 19:11 - 2015-05-22 19:50 - 02426880 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2015-07-07 19:11 - 2015-05-22 19:38 - 01545728 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2015-07-07 19:11 - 2015-05-22 19:26 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2015-07-07 19:11 - 2015-05-21 15:19 - 00193536 _____ (Microsoft Corporation) C:\windows\system32\aepic.dll
2015-07-07 19:11 - 2015-04-20 05:17 - 01647104 _____ (Microsoft Corporation) C:\windows\system32\DWrite.dll
2015-07-07 19:11 - 2015-04-20 05:17 - 01179136 _____ (Microsoft Corporation) C:\windows\system32\FntCache.dll
2015-07-07 19:11 - 2015-04-20 04:56 - 01250816 _____ (Microsoft Corporation) C:\windows\SysWOW64\DWrite.dll
2015-07-07 19:10 - 2015-05-27 16:35 - 24917504 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2015-07-07 19:10 - 2015-05-25 20:24 - 05569984 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2015-07-07 19:10 - 2015-05-25 20:23 - 00155584 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2015-07-07 19:10 - 2015-05-25 20:23 - 00095680 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2015-07-07 19:10 - 2015-05-25 20:21 - 01728960 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 01461760 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 01255424 _____ (Microsoft Corporation) C:\windows\system32\diagtrack.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 01162752 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00879104 _____ (Microsoft Corporation) C:\windows\system32\tdh.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00728576 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00503808 _____ (Microsoft Corporation) C:\windows\system32\srcore.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00424960 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00362496 _____ (Microsoft Corporation) C:\windows\system32\wow64win.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00342016 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00314880 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00309760 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00215040 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00210944 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00113664 _____ (Microsoft Corporation) C:\windows\system32\sechost.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00086528 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00050176 _____ (Microsoft Corporation) C:\windows\system32\srclient.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00029184 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00028160 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00016384 _____ (Microsoft Corporation) C:\windows\system32\ntvdm64.dll
2015-07-07 19:10 - 2015-05-25 20:19 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\wow64cpu.dll
2015-07-07 19:10 - 2015-05-25 20:18 - 00879104 _____ (Microsoft Corporation) C:\windows\system32\advapi32.dll
2015-07-07 19:10 - 2015-05-25 20:18 - 00404992 _____ (Microsoft Corporation) C:\windows\system32\tracerpt.exe
2015-07-07 19:10 - 2015-05-25 20:18 - 00338432 _____ (Microsoft Corporation) C:\windows\system32\conhost.exe
2015-07-07 19:10 - 2015-05-25 20:18 - 00296960 _____ (Microsoft Corporation) C:\windows\system32\rstrui.exe
2015-07-07 19:10 - 2015-05-25 20:18 - 00112640 _____ (Microsoft Corporation) C:\windows\system32\smss.exe
2015-07-07 19:10 - 2015-05-25 20:18 - 00104448 _____ (Microsoft Corporation) C:\windows\system32\logman.exe
2015-07-07 19:10 - 2015-05-25 20:18 - 00064000 _____ (Microsoft Corporation) C:\windows\system32\auditpol.exe
2015-07-07 19:10 - 2015-05-25 20:18 - 00047104 _____ (Microsoft Corporation) C:\windows\system32\typeperf.exe
2015-07-07 19:10 - 2015-05-25 20:18 - 00043520 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll
2015-07-07 19:10 - 2015-05-25 20:18 - 00043008 _____ (Microsoft Corporation) C:\windows\system32\relog.exe
2015-07-07 19:10 - 2015-05-25 20:18 - 00031232 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2015-07-07 19:10 - 2015-05-25 20:18 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2015-07-07 19:10 - 2015-05-25 20:18 - 00019456 _____ (Microsoft Corporation) C:\windows\system32\diskperf.exe
2015-07-07 19:10 - 2015-05-25 20:14 - 00146432 _____ (Microsoft Corporation) C:\windows\system32\msaudite.dll
2015-07-07 19:10 - 2015-05-25 20:14 - 00060416 _____ (Microsoft Corporation) C:\windows\system32\msobjs.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00686080 _____ (Microsoft Corporation) C:\windows\system32\adtschema.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\apisetschema.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00006144 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00005120 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 20:07 - 03989440 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe
2015-07-07 19:10 - 2015-05-25 20:07 - 03934144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe
2015-07-07 19:10 - 2015-05-25 20:04 - 01310744 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00641536 _____ (Microsoft Corporation) C:\windows\SysWOW64\advapi32.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00635392 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdh.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00551424 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00259584 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00248832 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00221184 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncrypt.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00172032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wdigest.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00092160 _____ (Microsoft Corporation) C:\windows\SysWOW64\sechost.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\srclient.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\credssp.dll
2015-07-07 19:10 - 2015-05-25 20:01 - 00014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntvdm64.dll
2015-07-07 19:10 - 2015-05-25 20:00 - 00364544 _____ (Microsoft Corporation) C:\windows\SysWOW64\tracerpt.exe
2015-07-07 19:10 - 2015-05-25 20:00 - 00082944 _____ (Microsoft Corporation) C:\windows\SysWOW64\logman.exe
2015-07-07 19:10 - 2015-05-25 20:00 - 00050176 _____ (Microsoft Corporation) C:\windows\SysWOW64\auditpol.exe
2015-07-07 19:10 - 2015-05-25 20:00 - 00040448 _____ (Microsoft Corporation) C:\windows\SysWOW64\typeperf.exe
2015-07-07 19:10 - 2015-05-25 20:00 - 00037888 _____ (Microsoft Corporation) C:\windows\SysWOW64\relog.exe
2015-07-07 19:10 - 2015-05-25 20:00 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\setup16.exe
2015-07-07 19:10 - 2015-05-25 20:00 - 00017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\diskperf.exe
2015-07-07 19:10 - 2015-05-25 19:59 - 01114112 _____ (Microsoft Corporation) C:\windows\SysWOW64\kernel32.dll
2015-07-07 19:10 - 2015-05-25 19:59 - 00274944 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll
2015-07-07 19:10 - 2015-05-25 19:59 - 00096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2015-07-07 19:10 - 2015-05-25 19:59 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wow32.dll
2015-07-07 19:10 - 2015-05-25 19:57 - 00146432 _____ (Microsoft Corporation) C:\windows\SysWOW64\msaudite.dll
2015-07-07 19:10 - 2015-05-25 19:57 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\msobjs.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00686080 _____ (Microsoft Corporation) C:\windows\SysWOW64\adtschema.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\apisetschema.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00005120 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 19:00 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\UtcResources.dll
2015-07-07 19:10 - 2015-05-25 18:50 - 00007680 _____ (Microsoft Corporation) C:\windows\SysWOW64\instnm.exe
2015-07-07 19:10 - 2015-05-25 18:50 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\user.exe
2015-07-07 19:10 - 2015-05-25 18:48 - 00006144 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 18:48 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 18:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-07-07 19:10 - 2015-05-25 18:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-07-07 19:10 - 2015-04-27 21:23 - 01480192 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll
2015-07-07 19:10 - 2015-04-27 21:23 - 00229376 _____ (Microsoft Corporation) C:\windows\system32\wintrust.dll
2015-07-07 19:10 - 2015-04-27 21:23 - 00188416 _____ (Microsoft Corporation) C:\windows\system32\cryptsvc.dll
2015-07-07 19:10 - 2015-04-27 21:23 - 00140288 _____ (Microsoft Corporation) C:\windows\system32\cryptnet.dll
2015-07-07 19:10 - 2015-04-27 21:05 - 00179200 _____ (Microsoft Corporation) C:\windows\SysWOW64\wintrust.dll
2015-07-07 19:10 - 2015-04-27 21:04 - 01174528 _____ (Microsoft Corporation) C:\windows\SysWOW64\crypt32.dll
2015-07-07 19:10 - 2015-04-27 21:04 - 00143872 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptsvc.dll
2015-07-07 19:10 - 2015-04-27 21:04 - 00103936 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptnet.dll
2015-07-07 19:10 - 2015-04-24 20:17 - 00633856 _____ (Microsoft Corporation) C:\windows\system32\comctl32.dll
2015-07-07 19:10 - 2015-04-24 19:56 - 00530432 _____ (Microsoft Corporation) C:\windows\SysWOW64\comctl32.dll
2015-07-07 19:10 - 2015-04-18 05:10 - 00460800 _____ (Microsoft Corporation) C:\windows\system32\certcli.dll
2015-07-07 19:10 - 2015-04-18 04:56 - 00342016 _____ (Microsoft Corporation) C:\windows\SysWOW64\certcli.dll
2015-07-07 19:09 - 2015-05-25 19:08 - 03206144 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2015-07-07 19:09 - 2015-04-29 20:22 - 14635008 _____ (Microsoft Corporation) C:\windows\system32\wmp.dll
2015-07-07 19:09 - 2015-04-29 20:21 - 00009728 _____ (Microsoft Corporation) C:\windows\system32\spwmp.dll
2015-07-07 19:09 - 2015-04-29 20:21 - 00005120 _____ (Microsoft Corporation) C:\windows\system32\msdxm.ocx
2015-07-07 19:09 - 2015-04-29 20:21 - 00005120 _____ (Microsoft Corporation) C:\windows\system32\dxmasf.dll
2015-07-07 19:09 - 2015-04-29 20:19 - 12625920 _____ (Microsoft Corporation) C:\windows\system32\wmploc.DLL
2015-07-07 19:09 - 2015-04-29 20:07 - 11411456 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmp.dll
2015-07-07 19:09 - 2015-04-29 20:07 - 00008192 _____ (Microsoft Corporation) C:\windows\SysWOW64\spwmp.dll
2015-07-07 19:09 - 2015-04-29 20:07 - 00004096 _____ (Microsoft Corporation) C:\windows\SysWOW64\msdxm.ocx
2015-07-07 19:09 - 2015-04-29 20:07 - 00004096 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxmasf.dll
2015-07-07 19:09 - 2015-04-29 20:05 - 12625408 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmploc.DLL
2015-07-07 19:09 - 2015-04-13 05:28 - 00328704 _____ (Microsoft Corporation) C:\windows\system32\services.exe
2015-07-07 19:09 - 2015-04-11 05:19 - 00069888 _____ (Microsoft Corporation) C:\windows\system32\Drivers\stream.sys
2015-07-07 19:09 - 2015-04-08 05:29 - 00275456 _____ (Microsoft Corporation) C:\windows\system32\InkEd.dll
2015-07-07 19:09 - 2015-04-08 05:29 - 00024576 _____ (Microsoft Corporation) C:\windows\system32\jnwmon.dll
2015-07-07 19:09 - 2015-04-08 05:14 - 00216064 _____ (Microsoft Corporation) C:\windows\SysWOW64\InkEd.dll
2015-07-07 19:02 - 2015-05-09 20:26 - 00493504 _____ (Microsoft Corporation) C:\windows\system32\mcupdate_GenuineIntel.dll
2015-07-07 17:25 - 2015-07-07 17:25 - 00000000 ____D C:\windows\system32\appmgmt
2015-07-07 17:15 - 2015-07-07 17:15 - 00000000 ____D C:\Users\Pohotovost\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zařízení Bluetooth
2015-07-03 17:14 - 2015-07-03 17:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco
2015-07-03 16:51 - 2015-07-03 17:08 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-07-03 15:49 - 2015-07-11 20:23 - 00000008 __RSH C:\ProgramData\ntuser.pol
2015-06-25 20:54 - 2015-06-25 20:54 - 00047221 _____ C:\vsechny.vcf
2015-06-25 20:51 - 2015-06-25 20:54 - 00000000 ____D C:\!
2015-06-25 20:48 - 2015-07-11 14:14 - 00000004 _____ C:\windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-06-25 20:47 - 2015-06-25 20:47 - 00000000 ____D C:\Nová složka
2015-06-25 20:46 - 2015-06-25 20:46 - 00152822 ____R C:\2015-06-25 Nokia 6303 classic.nbu
2015-06-25 20:45 - 2015-07-07 17:27 - 00000000 ____D C:\Users\Pohotovost\AppData\Roaming\Seznam.cz
2015-06-25 20:45 - 2015-06-25 20:45 - 00002259 _____ C:\Users\Default\Desktop\Google Chrome.lnk
2015-06-25 20:45 - 2015-06-25 20:45 - 00002259 _____ C:\Users\Default User\Desktop\Google Chrome.lnk
2015-06-25 20:45 - 2015-06-25 20:45 - 00001047 _____ C:\Users\Public\Desktop\NbuExplorer.lnk
2015-06-25 20:45 - 2015-06-25 20:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NbuExplorer
2015-06-25 20:45 - 2015-06-25 20:45 - 00000000 ____D C:\Program Files (x86)\NbuExplorer
2015-06-25 20:34 - 2015-07-11 14:34 - 18174128 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerInstaller.exe
2015-06-25 20:26 - 2015-06-25 20:35 - 00101382 ____R C:\6303.nbu
2015-06-25 20:24 - 2015-06-25 20:24 - 00000000 ____H C:\windows\system32\Drivers\Msft_User_PCCSWpdDriver_01_09_00.Wdf
2015-06-25 20:22 - 2015-06-25 20:26 - 00000000 ____D C:\Users\Pohotovost\AppData\Roaming\Nokia
2015-06-25 20:22 - 2015-06-25 20:24 - 00000000 ____D C:\Users\Pohotovost\AppData\Roaming\PC Suite
2015-06-25 20:22 - 2015-06-25 20:24 - 00000000 ____D C:\ProgramData\PC Suite
2015-06-25 20:21 - 2015-06-25 20:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nokia PC Suite
2015-06-25 20:20 - 2015-06-25 20:21 - 00002038 _____ C:\Users\Public\Desktop\Nokia PC Suite.lnk
2015-06-25 20:18 - 2015-06-25 20:22 - 00000000 ____D C:\Program Files\DIFX
2015-06-25 20:18 - 2012-06-11 11:33 - 00026112 _____ (Nokia) C:\windows\system32\Drivers\pccsmcfdx64.sys
2015-06-25 20:17 - 2015-06-25 20:20 - 00000000 ____D C:\Program Files (x86)\Nokia
2015-06-25 20:17 - 2015-06-25 20:17 - 00000000 ____D C:\Program Files (x86)\PC Connectivity Solution
2015-06-25 20:17 - 2012-01-09 17:28 - 00057856 _____ (Nokia) C:\windows\system32\nmwcdclsX64.dll
2015-06-25 20:15 - 2015-06-25 20:15 - 00000000 ____D C:\ProgramData\Installations

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-07-11 20:34 - 2013-04-11 22:11 - 00000830 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2015-07-11 20:32 - 2009-07-14 06:45 - 00031536 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-07-11 20:32 - 2009-07-14 06:45 - 00031536 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-07-11 20:28 - 2015-01-03 01:27 - 00000952 _____ C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-07-11 20:28 - 2015-01-03 01:27 - 00000948 _____ C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-07-11 20:27 - 2013-04-11 20:36 - 00669116 _____ C:\windows\system32\perfh005.dat
2015-07-11 20:27 - 2013-04-11 20:36 - 00141744 _____ C:\windows\system32\perfc005.dat
2015-07-11 20:27 - 2009-07-14 07:13 - 01584554 _____ C:\windows\system32\PerfStringBackup.INI
2015-07-11 20:23 - 2014-12-05 14:56 - 00002896 _____ C:\windows\System32\Tasks\AutoKMS
2015-07-11 20:23 - 2014-12-05 14:56 - 00000266 _____ C:\windows\Tasks\AutoKMS.job
2015-07-11 20:23 - 2013-08-03 20:01 - 01919461 _____ C:\windows\WindowsUpdate.log
2015-07-11 20:23 - 2013-04-11 22:09 - 00000000 ____D C:\ProgramData\PDFC
2015-07-11 20:23 - 2009-07-14 06:51 - 00064653 _____ C:\windows\setupact.log
2015-07-11 20:21 - 2010-11-21 05:47 - 00147436 _____ C:\windows\PFRO.log
2015-07-11 20:21 - 2009-07-14 07:08 - 00000006 ____H C:\windows\Tasks\SA.DAT
2015-07-11 20:16 - 2009-07-14 05:20 - 00000000 ___HD C:\windows\system32\GroupPolicy
2015-07-11 20:16 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\GroupPolicy
2015-07-11 14:34 - 2013-04-11 22:11 - 00778416 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2015-07-11 14:34 - 2013-04-11 22:11 - 00142512 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-07-11 14:34 - 2013-04-11 22:11 - 00003768 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater
2015-07-11 14:11 - 2015-04-19 19:18 - 00000000 ___SD C:\windows\SysWOW64\GWX
2015-07-11 14:11 - 2015-04-19 19:18 - 00000000 ___SD C:\windows\system32\GWX
2015-07-11 13:53 - 2015-01-03 02:55 - 00000000 ___SD C:\windows\system32\CompatTel
2015-07-11 13:53 - 2015-01-03 02:55 - 00000000 ____D C:\windows\system32\appraiser
2015-07-11 13:43 - 2009-07-14 06:57 - 00001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-07-11 13:41 - 2009-07-14 06:45 - 00422504 _____ C:\windows\system32\FNTCACHE.DAT
2015-07-11 13:40 - 2015-01-03 02:23 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-07-11 13:40 - 2015-01-03 02:23 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2015-07-11 13:38 - 2013-04-11 20:32 - 00000000 ____D C:\Program Files\Windows Journal
2015-07-11 13:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\PolicyDefinitions
2015-07-07 19:32 - 2013-11-21 13:37 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-07-07 19:28 - 2013-08-03 21:14 - 00002117 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
2015-07-07 19:28 - 2013-08-03 21:14 - 00001912 _____ C:\windows\epplauncher.mif
2015-07-07 19:27 - 2013-08-03 21:14 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2015-07-07 19:27 - 2013-08-03 21:13 - 00000000 ____D C:\Program Files\Microsoft Security Client
2015-07-07 19:22 - 2013-11-14 01:24 - 00000000 ____D C:\windows\system32\MRT
2015-07-07 19:14 - 2015-01-03 02:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-07-07 18:18 - 2013-11-12 19:25 - 00000166 _____ C:\windows\SysWOW64\DOErrors.log
2015-07-07 17:33 - 2013-08-03 20:25 - 00000000 ____D C:\Program Files (x86)\AlcorMicro
2015-07-07 17:31 - 2009-07-14 04:34 - 00000505 _____ C:\windows\win.ini
2015-07-07 17:25 - 2013-08-03 21:01 - 00000000 ____D C:\ProgramData\Skype
2015-07-07 17:19 - 2013-08-03 20:40 - 00000000 ____D C:\ProgramData\Temp
2015-07-07 17:12 - 2013-11-11 18:37 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-07-05 12:08 - 2010-11-21 05:27 - 00300704 ____N (Microsoft Corporation) C:\windows\system32\MpSigStub.exe
2015-07-03 17:26 - 2013-11-11 18:48 - 00002282 ____H C:\Users\Pohotovost\Documents\Default.rdp
2015-07-03 17:14 - 2013-11-11 18:46 - 00000000 ____D C:\ProgramData\Cisco
2015-07-03 17:14 - 2013-08-03 20:27 - 00000000 ____D C:\Program Files (x86)\Cisco
2015-06-25 20:47 - 2014-03-06 12:59 - 00000000 ____D C:\Program Files (x86)\Adobe
2015-06-25 20:23 - 2015-01-03 01:27 - 00003948 _____ C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-06-25 20:23 - 2015-01-03 01:27 - 00003696 _____ C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-06-25 20:22 - 2013-04-11 22:14 - 00027196 _____ C:\windows\DPINST.LOG

==================== Files in the root of some directories =======

2013-11-21 10:00 - 2013-11-21 10:00 - 0000153 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-05-05 20:59

==================== End of log ============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: vyskakovacie okná - nitram81

#7 Příspěvek od vyosek »

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    HKLM-x32\...\Run: [] => [X]
    Winlogon\Notify\DeviceNP-x32: DeviceNP.dll [X]
    HKU\S-1-5-21-1419437457-1003452090-4212318537-1001\...\Policies\Explorer: []
    HKU\S-1-5-21-1419437457-1003452090-4212318537-1001\...\MountPoints2: {847632ad-4aea-11e3-9812-b8763faf7792} - D:\AutoRun.exe
    
    HKU\S-1-5-21-1419437457-1003452090-4212318537-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    
    2015-07-11 20:42 - 2015-07-11 20:42 - 00016691 _____ C:\Users\Pohotovost\Desktop\FRST.txt
    2015-07-11 20:19 - 2015-07-11 20:05 - 00024064 _____ C:\windows\zoek-delete.exe
    2015-07-11 20:06 - 2015-07-11 20:23 - 00016203 _____ C:\zoek-results.log
    2015-07-11 20:05 - 2015-07-11 20:16 - 00000000 ____D C:\zoek_backup
    2015-07-11 20:04 - 2015-07-11 20:03 - 01308672 _____ C:\Users\Pohotovost\Desktop\zoek.exe
    2015-07-11 15:10 - 2015-07-11 15:11 - 00000000 ____D C:\AdwCleaner
    2015-07-11 15:08 - 2015-07-11 15:08 - 02248704 _____ C:\Users\Pohotovost\Downloads\adwcleaner_4.208 (1).exe
    2015-07-11 15:08 - 2015-07-11 15:08 - 02248704 _____ C:\Users\Pohotovost\Desktop\adwcleaner_4.208.exe
    2015-07-11 20:23 - 2014-12-05 14:56 - 00002896 _____ C:\windows\System32\Tasks\AutoKMS
    2015-07-11 20:23 - 2014-12-05 14:56 - 00000266 _____ C:\windows\Tasks\AutoKMS.job
    
    2015-07-11 20:34 - 2013-04-11 22:11 - 00000830 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
    2015-07-11 20:28 - 2015-01-03 01:27 - 00000952 _____ C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
    2015-07-11 20:28 - 2015-01-03 01:27 - 00000948 _____ C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
    
    Hosts:
    EmptyTemp:
    Reboot:
    End
    
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

nitram81
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 11 črc 2015 13:30

Re: vyskakovacie okná - nitram81

#8 Příspěvek od nitram81 »

Fix result of Farbar Recovery Scan Tool (x64) Version:11-07-2015
Ran by Pohotovost at 2015-07-11 20:54:38 Run:1
Running from C:\Users\Pohotovost\Desktop
Loaded Profiles: Pohotovost (Available Profiles: Pohotovost)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:

HKLM-x32\...\Run: [] => [X]
Winlogon\Notify\DeviceNP-x32: DeviceNP.dll [X]
HKU\S-1-5-21-1419437457-1003452090-4212318537-1001\...\Policies\Explorer: []
HKU\S-1-5-21-1419437457-1003452090-4212318537-1001\...\MountPoints2: {847632ad-4aea-11e3-9812-b8763faf7792} - D:\AutoRun.exe

HKU\S-1-5-21-1419437457-1003452090-4212318537-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =

2015-07-11 20:42 - 2015-07-11 20:42 - 00016691 _____ C:\Users\Pohotovost\Desktop\FRST.txt
2015-07-11 20:19 - 2015-07-11 20:05 - 00024064 _____ C:\windows\zoek-delete.exe
2015-07-11 20:06 - 2015-07-11 20:23 - 00016203 _____ C:\zoek-results.log
2015-07-11 20:05 - 2015-07-11 20:16 - 00000000 ____D C:\zoek_backup
2015-07-11 20:04 - 2015-07-11 20:03 - 01308672 _____ C:\Users\Pohotovost\Desktop\zoek.exe
2015-07-11 15:10 - 2015-07-11 15:11 - 00000000 ____D C:\AdwCleaner
2015-07-11 15:08 - 2015-07-11 15:08 - 02248704 _____ C:\Users\Pohotovost\Downloads\adwcleaner_4.208 (1).exe
2015-07-11 15:08 - 2015-07-11 15:08 - 02248704 _____ C:\Users\Pohotovost\Desktop\adwcleaner_4.208.exe
2015-07-11 20:23 - 2014-12-05 14:56 - 00002896 _____ C:\windows\System32\Tasks\AutoKMS
2015-07-11 20:23 - 2014-12-05 14:56 - 00000266 _____ C:\windows\Tasks\AutoKMS.job

2015-07-11 20:34 - 2013-04-11 22:11 - 00000830 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2015-07-11 20:28 - 2015-01-03 01:27 - 00000952 _____ C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-07-11 20:28 - 2015-01-03 01:27 - 00000948 _____ C:\windows\Tasks\GoogleUpdateTaskMachineCore.job

Hosts:
EmptyTemp:
Reboot:
End
*****************

Processes closed successfully.
Restore point was successfully created.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully
"HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\DeviceNP" => key removed successfully
HKU\S-1-5-21-1419437457-1003452090-4212318537-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\ => value removed successfully
"HKU\S-1-5-21-1419437457-1003452090-4212318537-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{847632ad-4aea-11e3-9812-b8763faf7792}" => key removed successfully
HKCR\CLSID\{847632ad-4aea-11e3-9812-b8763faf7792} => key not found.
HKU\S-1-5-21-1419437457-1003452090-4212318537-1001\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
C:\Users\Pohotovost\Desktop\FRST.txt => moved successfully.
C:\windows\zoek-delete.exe => moved successfully.
C:\zoek-results.log => moved successfully.
C:\zoek_backup => moved successfully.
C:\Users\Pohotovost\Desktop\zoek.exe => moved successfully.
C:\AdwCleaner => moved successfully.
C:\Users\Pohotovost\Downloads\adwcleaner_4.208 (1).exe => moved successfully.
C:\Users\Pohotovost\Desktop\adwcleaner_4.208.exe => moved successfully.
C:\windows\System32\Tasks\AutoKMS => moved successfully.
C:\windows\Tasks\AutoKMS.job => moved successfully.
C:\windows\Tasks\Adobe Flash Player Updater.job => moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully.
C:\Windows\System32\Drivers\etc\hosts => moved successfully.
Hosts restored successfully.
EmptyTemp: => 160.3 MB temporary data Removed.


The system needed a reboot..

==== End of Fixlog 20:55:00 ====

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: vyskakovacie okná - nitram81

#9 Příspěvek od vyosek »

Jak se chova PC, porad okna skacou??
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

nitram81
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 11 črc 2015 13:30

Re: vyskakovacie okná - nitram81

#10 Příspěvek od nitram81 »

Zatím vše v pohodě, pokud se vyskakovací okna "umoudřila", mockrát děkuji za pomoc...

PS: Toho červíka jsem si do PC dostal pravděpodobně kliknutím na vyskočený dotazník UPC...ale pak jsem se dozvěděl na ofiko stránkách UPC , že je to podvodný dotazník ... od té doby mi okn vyskakovala snad při každém kliknutí na nějaký odkaz...

Ještě jednou díky moc...

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: vyskakovacie okná - nitram81

#11 Příspěvek od vyosek »

Tak jeste uklidime :James008:

:arrow: DelFix https://toolslib.net/downloads/finish/2/
  • Stahnete a spustte
  • Ponechte zatrzitkou pouze u volby Remove disinfection tools
  • Kliknete na Run
:arrow: Stahnete Ccleaner https://www.piriform.com/ccleaner/download/standard
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

nitram81
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 11 črc 2015 13:30

Re: vyskakovacie okná - nitram81

#12 Příspěvek od nitram81 »

Vypadá, že je PC funkční jako dříve...mockrát děkuji a přeji mnoho podobných úspěchů s odstraňováním bordelu na PC u jiných uživatelů...

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: vyskakovacie okná - nitram81

#13 Příspěvek od vyosek »

Nemate zac, rad jsem pomohl :worship: Zase nekdy :)


A na zaklade Pravidla o zamykani temat :lock:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Zamčeno