
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o pomoc s logem
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Prosím o pomoc s logem
Dobrý večer, prosím Vás o pomoc s logem z RSIT. Děkuji.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Svatava Zalabáková at 2015-11-06 22:06:51
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 2 GB (1%) free of 288 GB
Total RAM: 3066 MB (32% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:07:03, on 6.11.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18057)
Boot mode: Normal
Running processes:
C:\windows\system32\taskhost.exe
C:\windows\system32\Dwm.exe
C:\windows\Explorer.EXE
C:\windows\system32\GWX\GWX.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Users\Svatava Zalabáková\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\Desktop\RSIT (1).exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\Desktop\RSIT (1).exe
C:\Program Files\trend micro\Svatava Zalabáková.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE= ... ll&pf=cmnb
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SoundMAX] C:\Program Files\Analog Devices\SoundMAX\soundmax.exe /tray
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\RunOnce: [AvgUninstallURL] cmd.exe /c start http://www.avg.com/ww.special-uninstall ... er=9.0.872
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [Google Update] "C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Diar_VS] C:\Program Files\Diar 5\diar.exe
O4 - HKCU\..\Run: [Dropbox Update] "C:\Users\Svatava Zalabáková\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Dropbox.lnk = ?
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.mcafee.com (HKLM)
O15 - Trusted Zone: http://betavscan.mcafeeasap.com (HKLM)
O15 - Trusted Zone: http://vs.mcafeeasap.com (HKLM)
O15 - Trusted Zone: http://www.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://*.mcafee.com (HKLM)
O15 - ESC Trusted Zone: http://betavscan.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://vs.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://www.mcafeeasap.com (HKLM)
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ADI Filters Service (AEADIFilters) - Andrea Electronics Corporation - C:\windows\system32\AEADISRV.EXE
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - LSI Corporation - C:\Program Files\LSI SoftModem\agrsmsvc.exe
O23 - Service: AMD External Events Utility - AMD - C:\windows\system32\atiesrxx.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP Service (hpsrv) - Hewlett-Packard Company - C:\windows\system32\Hpservice.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: RoxMediaDB10 - Sonic Solutions - c:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe
--
End of file - 11680 bytes
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job - C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\windows\tasks\DropboxUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001Core.job - C:\Users\Svatava Zalabáková\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c
C:\windows\tasks\DropboxUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001UA.job - C:\Users\Svatava Zalabáková\AppData\Local\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
C:\windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001Core.job - C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001UA.job - C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\windows\tasks\HPCeeScheduleForSvatava Zalabáková.job - C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForSvatava Zalabáková (null)
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-09-05 63912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll [2015-03-04 460712]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-04 172968]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0BF43445-2F28-4351-9252-17FE6E806AA0}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-08-25 186904]
"WirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2009-07-23 498744]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-06-04 1791272]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-08-04 98304]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2009-05-18 1314816]
"SoundMAX"=C:\Program Files\Analog Devices\SoundMAX\soundmax.exe [2009-05-18 3866624]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2009-03-24 1983816]
"CanonSolutionMenu"=C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2009-03-18 767312]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-06-06 937920]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2015-04-29 981688]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"AvgUninstallURL"=cmd.exe /c start http://www.avg.com/ww.special-uninstall ... er=9.0.872 []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2009-06-17 2363392]
"Google Update"=C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-02 144200]
"Diar_VS"=C:\Program Files\Diar 5\diar.exe [2007-11-11 496128]
"Dropbox Update"=C:\Users\Svatava Zalabáková\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-07-06 134512]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Users\Svatava Zalabáková\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Svatava Zalabáková\AppData\Roaming\Dropbox\bin\Dropbox.exe
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-11-06 21:59:42 ----D---- C:\rsit
2015-11-06 21:59:42 ----D---- C:\Program Files\trend micro
2015-11-06 21:44:08 ----D---- C:\AdwCleaner
2015-11-06 21:11:39 ----D---- C:\Program Files\GrPing
2015-10-15 12:40:21 ----A---- C:\windows\system32\appraiser.dll
2015-10-15 12:40:20 ----A---- C:\windows\system32\invagent.dll
2015-10-15 12:40:20 ----A---- C:\windows\system32\aeinv.dll
2015-10-15 12:40:19 ----A---- C:\windows\system32\generaltel.dll
2015-10-15 12:40:19 ----A---- C:\windows\system32\devinv.dll
2015-10-15 12:40:19 ----A---- C:\windows\system32\CompatTelRunner.exe
2015-10-15 12:40:19 ----A---- C:\windows\system32\acmigration.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\ucrtbase.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-crt-string-l1-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-crt-private-l1-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-crt-math-l1-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-core-localization-l1-2-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-core-file-l2-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-core-file-l1-2-0.dll
2015-10-14 11:46:59 ----A---- C:\windows\system32\api-ms-win-eventing-provider-l1-1-0.dll
2015-10-14 11:46:59 ----A---- C:\windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-10-14 11:46:59 ----A---- C:\windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-10-14 11:46:59 ----A---- C:\windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2015-10-14 11:46:58 ----A---- C:\windows\system32\api-ms-win-crt-time-l1-1-0.dll
2015-10-14 11:46:58 ----A---- C:\windows\system32\api-ms-win-crt-process-l1-1-0.dll
2015-10-14 11:46:58 ----A---- C:\windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-10-14 11:46:50 ----A---- C:\windows\system32\ntoskrnl.exe
2015-10-14 11:46:49 ----A---- C:\windows\system32\ntkrnlpa.exe
2015-10-14 11:46:47 ----A---- C:\windows\system32\drivers\ksecpkg.sys
2015-10-14 11:46:46 ----A---- C:\windows\system32\srcore.dll
2015-10-14 11:46:46 ----A---- C:\windows\system32\lsasrv.dll
2015-10-14 11:46:45 ----A---- C:\windows\system32\rstrui.exe
2015-10-14 11:46:45 ----A---- C:\windows\system32\rpcrt4.dll
2015-10-14 11:46:45 ----A---- C:\windows\system32\kerberos.dll
2015-10-14 11:46:44 ----A---- C:\windows\system32\schannel.dll
2015-10-14 11:46:44 ----A---- C:\windows\system32\msv1_0.dll
2015-10-14 11:46:43 ----A---- C:\windows\system32\drivers\mrxsmb.sys
2015-10-14 11:46:42 ----A---- C:\windows\system32\ntdll.dll
2015-10-14 11:46:41 ----A---- C:\windows\system32\wdigest.dll
2015-10-14 11:46:41 ----A---- C:\windows\system32\TSpkg.dll
2015-10-14 11:46:41 ----A---- C:\windows\system32\smss.exe
2015-10-14 11:46:41 ----A---- C:\windows\system32\ncrypt.dll
2015-10-14 11:46:41 ----A---- C:\windows\system32\drivers\ksecdd.sys
2015-10-14 11:46:40 ----A---- C:\windows\system32\auditpol.exe
2015-10-14 11:46:39 ----A---- C:\windows\system32\lsass.exe
2015-10-14 11:46:38 ----A---- C:\windows\system32\srclient.dll
2015-10-14 11:46:38 ----A---- C:\windows\system32\csrsrv.dll
2015-10-14 11:46:37 ----A---- C:\windows\system32\sspisrv.dll
2015-10-14 11:46:37 ----A---- C:\windows\system32\sspicli.dll
2015-10-14 11:46:37 ----A---- C:\windows\system32\cryptbase.dll
2015-10-14 11:46:37 ----A---- C:\windows\system32\credssp.dll
2015-10-14 11:46:36 ----A---- C:\windows\system32\secur32.dll
2015-10-14 11:46:36 ----A---- C:\windows\system32\msaudite.dll
2015-10-14 11:46:36 ----A---- C:\windows\system32\drivers\mrxsmb20.sys
2015-10-14 11:46:36 ----A---- C:\windows\system32\drivers\mrxsmb10.sys
2015-10-14 11:46:36 ----A---- C:\windows\system32\apisetschema.dll
2015-10-14 11:46:35 ----A---- C:\windows\system32\msobjs.dll
2015-10-14 11:46:35 ----A---- C:\windows\system32\adtschema.dll
2015-10-14 11:46:19 ----A---- C:\windows\system32\shell32.dll
2015-10-14 11:46:18 ----A---- C:\windows\system32\ExplorerFrame.dll
2015-10-14 11:46:17 ----A---- C:\windows\system32\wuaueng.dll
2015-10-14 11:46:16 ----A---- C:\windows\system32\wuwebv.dll
2015-10-14 11:46:16 ----A---- C:\windows\system32\wudriver.dll
2015-10-14 11:46:16 ----A---- C:\windows\system32\wucltux.dll
2015-10-14 11:46:16 ----A---- C:\windows\system32\wuapi.dll
2015-10-14 11:46:16 ----A---- C:\windows\system32\WinSetupUI.dll
2015-10-14 11:46:15 ----A---- C:\windows\system32\wuauclt.exe
2015-10-14 11:46:15 ----A---- C:\windows\system32\wuapp.exe
2015-10-14 11:46:14 ----A---- C:\windows\system32\wups2.dll
2015-10-14 11:46:14 ----A---- C:\windows\system32\wups.dll
2015-10-14 11:46:14 ----A---- C:\windows\system32\wu.upgrade.ps.dll
2015-10-14 11:45:55 ----A---- C:\windows\system32\appidapi.dll
2015-10-14 11:45:54 ----A---- C:\windows\system32\setbcdlocale.dll
2015-10-14 11:45:54 ----A---- C:\windows\system32\appidsvc.dll
2015-10-14 11:45:54 ----A---- C:\windows\system32\appidpolicyconverter.exe
2015-10-14 11:45:54 ----A---- C:\windows\system32\appidcertstorecheck.exe
2015-10-14 11:45:53 ----A---- C:\windows\system32\drivers\appid.sys
2015-10-14 11:45:03 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2015-10-14 11:45:03 ----A---- C:\windows\system32\ieetwproxystub.dll
2015-10-14 11:45:03 ----A---- C:\windows\system32\ieetwcollector.exe
2015-10-14 11:45:03 ----A---- C:\windows\system32\ie4uinit.exe
2015-10-14 11:45:02 ----A---- C:\windows\system32\urlmon.dll
2015-10-14 11:45:02 ----A---- C:\windows\system32\occache.dll
2015-10-14 11:45:02 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2015-10-14 11:45:02 ----A---- C:\windows\system32\jsproxy.dll
2015-10-14 11:45:02 ----A---- C:\windows\system32\ieUnatt.exe
2015-10-14 11:45:02 ----A---- C:\windows\system32\iernonce.dll
2015-10-14 11:45:02 ----A---- C:\windows\system32\iedkcs32.dll
2015-10-14 11:45:01 ----A---- C:\windows\system32\msfeeds.dll
2015-10-14 11:45:01 ----A---- C:\windows\system32\jscript9diag.dll
2015-10-14 11:45:01 ----A---- C:\windows\system32\ieapfltr.dll
2015-10-14 11:45:01 ----A---- C:\windows\system32\dxtmsft.dll
2015-10-14 11:45:00 ----A---- C:\windows\system32\webcheck.dll
2015-10-14 11:44:59 ----A---- C:\windows\system32\msrating.dll
2015-10-14 11:44:59 ----A---- C:\windows\system32\iesetup.dll
2015-10-14 11:44:59 ----A---- C:\windows\system32\iertutil.dll
2015-10-14 11:44:59 ----A---- C:\windows\system32\ieetwcollectorres.dll
2015-10-14 11:44:58 ----A---- C:\windows\system32\wininet.dll
2015-10-14 11:44:56 ----A---- C:\windows\system32\dxtrans.dll
2015-10-14 11:44:55 ----A---- C:\windows\system32\ieui.dll
2015-10-14 11:44:54 ----A---- C:\windows\system32\ieframe.dll
2015-10-14 11:44:51 ----A---- C:\windows\system32\mshtmled.dll
2015-10-14 11:44:50 ----A---- C:\windows\system32\mshtmlmedia.dll
2015-10-14 11:44:50 ----A---- C:\windows\system32\MshtmlDac.dll
2015-10-14 11:44:48 ----A---- C:\windows\system32\mshtml.dll
2015-10-14 11:44:46 ----A---- C:\windows\system32\jscript9.dll
2015-10-14 11:44:45 ----A---- C:\windows\system32\vbscript.dll
2015-10-14 11:44:45 ----A---- C:\windows\system32\jscript.dll
======List of files/folders modified in the last 1 month======
2015-11-06 22:00:14 ----D---- C:\windows\Temp
2015-11-06 21:59:42 ----RD---- C:\Program Files
2015-11-06 21:54:39 ----D---- C:\windows\System32
2015-11-06 21:54:39 ----D---- C:\windows\inf
2015-11-06 21:54:39 ----A---- C:\windows\system32\PerfStringBackup.INI
2015-11-06 21:54:01 ----D---- C:\Users\Svatava Zalabáková\AppData\Roaming\Dropbox
2015-11-06 21:46:54 ----D---- C:\windows\system32\config
2015-11-06 21:11:55 ----D---- C:\windows\Prefetch
2015-11-06 20:19:43 ----SHD---- C:\System Volume Information
2015-11-04 21:06:29 ----D---- C:\windows\Tasks
2015-11-04 21:06:29 ----D---- C:\windows\system32\Tasks
2015-11-04 12:35:55 ----D---- C:\Users\Svatava Zalabáková\AppData\Roaming\vlc
2015-11-03 18:08:44 ----D---- C:\windows\system32\NDF
2015-10-18 19:35:21 ----A---- C:\windows\system32\FlashPlayerApp.exe
2015-10-16 08:45:08 ----D---- C:\windows\winsxs
2015-10-16 08:44:56 ----SD---- C:\windows\system32\CompatTel
2015-10-16 08:44:52 ----D---- C:\windows\system32\appraiser
2015-10-16 08:44:51 ----D---- C:\windows\AppPatch
2015-10-15 15:20:25 ----D---- C:\windows\rescache
2015-10-15 12:33:19 ----D---- C:\windows\system32\drivers
2015-10-15 12:33:19 ----D---- C:\windows\system32\cs-CZ
2015-10-15 12:33:18 ----D---- C:\windows\system32\en-US
2015-10-15 12:33:17 ----D---- C:\windows\system32\CodeIntegrity
2015-10-15 12:33:16 ----D---- C:\Program Files\Internet Explorer
2015-10-15 12:13:10 ----D---- C:\windows\system32\MRT
2015-10-15 12:02:40 ----A---- C:\windows\system32\MRT.exe
2015-10-15 12:02:15 ----SHD---- C:\windows\Installer
2015-10-14 11:43:20 ----D---- C:\windows\system32\catroot2
2015-10-09 13:18:35 ----SD---- C:\windows\system32\GWX
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aic78xx;aic78xx; C:\windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
R0 hpdskflt;HP Filter; C:\windows\system32\DRIVERS\hpdskflt.sys [2011-05-13 25656]
R0 iaStor;Intel RAID Controller; C:\windows\system32\DRIVERS\iaStor.sys [2009-08-07 330264]
R0 MpFilter;Microsoft Malware Protection Driver; C:\windows\system32\DRIVERS\MpFilter.sys [2015-03-04 245096]
R0 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 PxHelp20;PxHelp20; C:\windows\System32\Drivers\PxHelp20.sys [2010-07-12 45648]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 mfehidk;McAfee Inc. mfehidk; C:\windows\system32\drivers\mfehidk.sys [2009-05-16 214024]
R1 mfetdik;McAfee Inc. mfetdik; C:\windows\system32\drivers\mfetdik.sys [2009-05-16 55336]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 NisDrv;Microsoft Network Inspection System; C:\windows\system32\DRIVERS\NisDrvWFP.sys [2015-03-04 95408]
R3 5U876UVC;HP Webcam [2 MP series]; C:\windows\system32\DRIVERS\5U876.sys [2009-06-30 118656]
R3 Accelerometer;HP Mobile Data Protection Sensor; C:\windows\system32\DRIVERS\Accelerometer.sys [2011-05-13 35896]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\ADIHdAud.sys [2009-05-18 381440]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\windows\system32\DRIVERS\AGRSM.sys [2010-01-26 1163328]
R3 AtiHdmiService;ATI Service for HD Audio Codec; C:\windows\system32\drivers\AtiHdmi.sys [2009-07-24 103440]
R3 atikmdag;atikmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2009-08-04 4994048]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\windows\system32\DRIVERS\bcmwl6.sys [2013-05-24 2709056]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
R3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2009-07-01 86056]
R3 btwavdt;Bluetooth AVDT Service; C:\windows\system32\DRIVERS\btwavdt.sys [2009-07-01 108072]
R3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-08 29472]
R3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2009-07-01 18344]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2010-06-04 1303728]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336]
S2 Parvdm;Parvdm; C:\windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 HpqKbFiltr;HpqKbFilter Driver; C:\windows\system32\DRIVERS\HpqKbFiltr.sys [2009-04-29 15872]
S3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd32.sys [2009-06-10 4756480]
S3 MfeAVFK;McAfee Inc. MfeAVFK; C:\windows\system32\drivers\MfeAVFK.sys [2009-05-16 79816]
S3 MfeBOPK;McAfee Inc. MfeBOPK; C:\windows\system32\drivers\MfeBOPK.sys [2009-05-16 35272]
S3 MfeRKDK;McAfee Inc. MfeRKDK; C:\windows\system32\drivers\MfeRKDK.sys [2009-05-16 34248]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit; C:\windows\system32\DRIVERS\netw5v32.sys [2009-07-13 4231168]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\windows\system32\drivers\ccdcmb.sys [2012-11-16 18560]
S3 nmwcdc;Nokia USB Communication Driver; C:\windows\system32\drivers\ccdcmbo.sys [2012-11-16 23168]
S3 sisagp;Filtr SIS sběrnice AGP; C:\windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TPM;TPM; C:\windows\system32\drivers\tpm.sys [2009-07-14 30720]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 upperdev;upperdev; C:\windows\system32\DRIVERS\usbser_lowerflt.sys [2012-11-16 8192]
S3 UsbC;SafeNet MicroDog USB Device Driver; C:\windows\System32\Drivers\rcusbwdm.sys [2007-11-19 65216]
S3 usbscan;Ovladač skeneru USB; C:\windows\system32\drivers\usbscan.sys [2013-07-03 36352]
S3 usbser;USB Modem Driver; C:\windows\system32\DRIVERS\usbser.sys [2013-08-29 28160]
S3 UsbserFilt;UsbserFilt; C:\windows\system32\DRIVERS\usbser_lowerfltj.sys [2012-11-16 8192]
S3 viaagp;Filtr VIA sběrnice AGP; C:\windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
R2 AEADIFilters;Andrea ADI Filters Service; C:\windows\system32\AEADISRV.EXE [2008-07-15 90112]
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Program Files\LSI SoftModem\agrsmsvc.exe [2009-12-03 26112]
R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2009-08-04 176128]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-07-30 582944]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2009-07-14 20992]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2015-05-19 99128]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2013-05-13 270624]
R2 hpsrv;HP Service; C:\windows\system32\Hpservice.exe [2011-05-13 26168]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-08-25 354840]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2009-06-17 73728]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2015-04-30 22216]
R2 yksvc;Marvell Yukon Service; C:\windows\System32\svchost.exe [2009-07-14 20992]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe [2013-05-13 1129760]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2015-04-30 284504]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-27 144200]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-10-18 269000]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-27 144200]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2015-09-16 102912]
S3 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2009-02-10 116104]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 RoxMediaDB10;RoxMediaDB10; c:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe [2009-06-13 1120752]
S3 stllssvr;stllssvr; c:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2009-04-30 74392]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2010-06-02 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-11 45744]
S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Svatava Zalabáková at 2015-11-06 22:06:51
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 2 GB (1%) free of 288 GB
Total RAM: 3066 MB (32% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:07:03, on 6.11.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18057)
Boot mode: Normal
Running processes:
C:\windows\system32\taskhost.exe
C:\windows\system32\Dwm.exe
C:\windows\Explorer.EXE
C:\windows\system32\GWX\GWX.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Users\Svatava Zalabáková\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\Desktop\RSIT (1).exe
C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Svatava Zalabáková\Desktop\RSIT (1).exe
C:\Program Files\trend micro\Svatava Zalabáková.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE= ... ll&pf=cmnb
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SoundMAX] C:\Program Files\Analog Devices\SoundMAX\soundmax.exe /tray
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\RunOnce: [AvgUninstallURL] cmd.exe /c start http://www.avg.com/ww.special-uninstall ... er=9.0.872
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [Google Update] "C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Diar_VS] C:\Program Files\Diar 5\diar.exe
O4 - HKCU\..\Run: [Dropbox Update] "C:\Users\Svatava Zalabáková\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Dropbox.lnk = ?
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.mcafee.com (HKLM)
O15 - Trusted Zone: http://betavscan.mcafeeasap.com (HKLM)
O15 - Trusted Zone: http://vs.mcafeeasap.com (HKLM)
O15 - Trusted Zone: http://www.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://*.mcafee.com (HKLM)
O15 - ESC Trusted Zone: http://betavscan.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://vs.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://www.mcafeeasap.com (HKLM)
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ADI Filters Service (AEADIFilters) - Andrea Electronics Corporation - C:\windows\system32\AEADISRV.EXE
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - LSI Corporation - C:\Program Files\LSI SoftModem\agrsmsvc.exe
O23 - Service: AMD External Events Utility - AMD - C:\windows\system32\atiesrxx.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP Service (hpsrv) - Hewlett-Packard Company - C:\windows\system32\Hpservice.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: RoxMediaDB10 - Sonic Solutions - c:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe
--
End of file - 11680 bytes
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job - C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\windows\tasks\DropboxUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001Core.job - C:\Users\Svatava Zalabáková\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c
C:\windows\tasks\DropboxUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001UA.job - C:\Users\Svatava Zalabáková\AppData\Local\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
C:\windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001Core.job - C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001UA.job - C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\windows\tasks\HPCeeScheduleForSvatava Zalabáková.job - C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForSvatava Zalabáková (null)
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-09-05 63912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll [2015-03-04 460712]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-04 172968]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0BF43445-2F28-4351-9252-17FE6E806AA0}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-08-25 186904]
"WirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2009-07-23 498744]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-06-04 1791272]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-08-04 98304]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2009-05-18 1314816]
"SoundMAX"=C:\Program Files\Analog Devices\SoundMAX\soundmax.exe [2009-05-18 3866624]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2009-03-24 1983816]
"CanonSolutionMenu"=C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2009-03-18 767312]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-06-06 937920]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2015-04-29 981688]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"AvgUninstallURL"=cmd.exe /c start http://www.avg.com/ww.special-uninstall ... er=9.0.872 []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2009-06-17 2363392]
"Google Update"=C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-02 144200]
"Diar_VS"=C:\Program Files\Diar 5\diar.exe [2007-11-11 496128]
"Dropbox Update"=C:\Users\Svatava Zalabáková\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-07-06 134512]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Users\Svatava Zalabáková\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Svatava Zalabáková\AppData\Roaming\Dropbox\bin\Dropbox.exe
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-11-06 21:59:42 ----D---- C:\rsit
2015-11-06 21:59:42 ----D---- C:\Program Files\trend micro
2015-11-06 21:44:08 ----D---- C:\AdwCleaner
2015-11-06 21:11:39 ----D---- C:\Program Files\GrPing
2015-10-15 12:40:21 ----A---- C:\windows\system32\appraiser.dll
2015-10-15 12:40:20 ----A---- C:\windows\system32\invagent.dll
2015-10-15 12:40:20 ----A---- C:\windows\system32\aeinv.dll
2015-10-15 12:40:19 ----A---- C:\windows\system32\generaltel.dll
2015-10-15 12:40:19 ----A---- C:\windows\system32\devinv.dll
2015-10-15 12:40:19 ----A---- C:\windows\system32\CompatTelRunner.exe
2015-10-15 12:40:19 ----A---- C:\windows\system32\acmigration.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\ucrtbase.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-crt-string-l1-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-crt-private-l1-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-crt-math-l1-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-core-localization-l1-2-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-core-file-l2-1-0.dll
2015-10-14 11:47:00 ----A---- C:\windows\system32\api-ms-win-core-file-l1-2-0.dll
2015-10-14 11:46:59 ----A---- C:\windows\system32\api-ms-win-eventing-provider-l1-1-0.dll
2015-10-14 11:46:59 ----A---- C:\windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-10-14 11:46:59 ----A---- C:\windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-10-14 11:46:59 ----A---- C:\windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2015-10-14 11:46:58 ----A---- C:\windows\system32\api-ms-win-crt-time-l1-1-0.dll
2015-10-14 11:46:58 ----A---- C:\windows\system32\api-ms-win-crt-process-l1-1-0.dll
2015-10-14 11:46:58 ----A---- C:\windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-10-14 11:46:50 ----A---- C:\windows\system32\ntoskrnl.exe
2015-10-14 11:46:49 ----A---- C:\windows\system32\ntkrnlpa.exe
2015-10-14 11:46:47 ----A---- C:\windows\system32\drivers\ksecpkg.sys
2015-10-14 11:46:46 ----A---- C:\windows\system32\srcore.dll
2015-10-14 11:46:46 ----A---- C:\windows\system32\lsasrv.dll
2015-10-14 11:46:45 ----A---- C:\windows\system32\rstrui.exe
2015-10-14 11:46:45 ----A---- C:\windows\system32\rpcrt4.dll
2015-10-14 11:46:45 ----A---- C:\windows\system32\kerberos.dll
2015-10-14 11:46:44 ----A---- C:\windows\system32\schannel.dll
2015-10-14 11:46:44 ----A---- C:\windows\system32\msv1_0.dll
2015-10-14 11:46:43 ----A---- C:\windows\system32\drivers\mrxsmb.sys
2015-10-14 11:46:42 ----A---- C:\windows\system32\ntdll.dll
2015-10-14 11:46:41 ----A---- C:\windows\system32\wdigest.dll
2015-10-14 11:46:41 ----A---- C:\windows\system32\TSpkg.dll
2015-10-14 11:46:41 ----A---- C:\windows\system32\smss.exe
2015-10-14 11:46:41 ----A---- C:\windows\system32\ncrypt.dll
2015-10-14 11:46:41 ----A---- C:\windows\system32\drivers\ksecdd.sys
2015-10-14 11:46:40 ----A---- C:\windows\system32\auditpol.exe
2015-10-14 11:46:39 ----A---- C:\windows\system32\lsass.exe
2015-10-14 11:46:38 ----A---- C:\windows\system32\srclient.dll
2015-10-14 11:46:38 ----A---- C:\windows\system32\csrsrv.dll
2015-10-14 11:46:37 ----A---- C:\windows\system32\sspisrv.dll
2015-10-14 11:46:37 ----A---- C:\windows\system32\sspicli.dll
2015-10-14 11:46:37 ----A---- C:\windows\system32\cryptbase.dll
2015-10-14 11:46:37 ----A---- C:\windows\system32\credssp.dll
2015-10-14 11:46:36 ----A---- C:\windows\system32\secur32.dll
2015-10-14 11:46:36 ----A---- C:\windows\system32\msaudite.dll
2015-10-14 11:46:36 ----A---- C:\windows\system32\drivers\mrxsmb20.sys
2015-10-14 11:46:36 ----A---- C:\windows\system32\drivers\mrxsmb10.sys
2015-10-14 11:46:36 ----A---- C:\windows\system32\apisetschema.dll
2015-10-14 11:46:35 ----A---- C:\windows\system32\msobjs.dll
2015-10-14 11:46:35 ----A---- C:\windows\system32\adtschema.dll
2015-10-14 11:46:19 ----A---- C:\windows\system32\shell32.dll
2015-10-14 11:46:18 ----A---- C:\windows\system32\ExplorerFrame.dll
2015-10-14 11:46:17 ----A---- C:\windows\system32\wuaueng.dll
2015-10-14 11:46:16 ----A---- C:\windows\system32\wuwebv.dll
2015-10-14 11:46:16 ----A---- C:\windows\system32\wudriver.dll
2015-10-14 11:46:16 ----A---- C:\windows\system32\wucltux.dll
2015-10-14 11:46:16 ----A---- C:\windows\system32\wuapi.dll
2015-10-14 11:46:16 ----A---- C:\windows\system32\WinSetupUI.dll
2015-10-14 11:46:15 ----A---- C:\windows\system32\wuauclt.exe
2015-10-14 11:46:15 ----A---- C:\windows\system32\wuapp.exe
2015-10-14 11:46:14 ----A---- C:\windows\system32\wups2.dll
2015-10-14 11:46:14 ----A---- C:\windows\system32\wups.dll
2015-10-14 11:46:14 ----A---- C:\windows\system32\wu.upgrade.ps.dll
2015-10-14 11:45:55 ----A---- C:\windows\system32\appidapi.dll
2015-10-14 11:45:54 ----A---- C:\windows\system32\setbcdlocale.dll
2015-10-14 11:45:54 ----A---- C:\windows\system32\appidsvc.dll
2015-10-14 11:45:54 ----A---- C:\windows\system32\appidpolicyconverter.exe
2015-10-14 11:45:54 ----A---- C:\windows\system32\appidcertstorecheck.exe
2015-10-14 11:45:53 ----A---- C:\windows\system32\drivers\appid.sys
2015-10-14 11:45:03 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2015-10-14 11:45:03 ----A---- C:\windows\system32\ieetwproxystub.dll
2015-10-14 11:45:03 ----A---- C:\windows\system32\ieetwcollector.exe
2015-10-14 11:45:03 ----A---- C:\windows\system32\ie4uinit.exe
2015-10-14 11:45:02 ----A---- C:\windows\system32\urlmon.dll
2015-10-14 11:45:02 ----A---- C:\windows\system32\occache.dll
2015-10-14 11:45:02 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2015-10-14 11:45:02 ----A---- C:\windows\system32\jsproxy.dll
2015-10-14 11:45:02 ----A---- C:\windows\system32\ieUnatt.exe
2015-10-14 11:45:02 ----A---- C:\windows\system32\iernonce.dll
2015-10-14 11:45:02 ----A---- C:\windows\system32\iedkcs32.dll
2015-10-14 11:45:01 ----A---- C:\windows\system32\msfeeds.dll
2015-10-14 11:45:01 ----A---- C:\windows\system32\jscript9diag.dll
2015-10-14 11:45:01 ----A---- C:\windows\system32\ieapfltr.dll
2015-10-14 11:45:01 ----A---- C:\windows\system32\dxtmsft.dll
2015-10-14 11:45:00 ----A---- C:\windows\system32\webcheck.dll
2015-10-14 11:44:59 ----A---- C:\windows\system32\msrating.dll
2015-10-14 11:44:59 ----A---- C:\windows\system32\iesetup.dll
2015-10-14 11:44:59 ----A---- C:\windows\system32\iertutil.dll
2015-10-14 11:44:59 ----A---- C:\windows\system32\ieetwcollectorres.dll
2015-10-14 11:44:58 ----A---- C:\windows\system32\wininet.dll
2015-10-14 11:44:56 ----A---- C:\windows\system32\dxtrans.dll
2015-10-14 11:44:55 ----A---- C:\windows\system32\ieui.dll
2015-10-14 11:44:54 ----A---- C:\windows\system32\ieframe.dll
2015-10-14 11:44:51 ----A---- C:\windows\system32\mshtmled.dll
2015-10-14 11:44:50 ----A---- C:\windows\system32\mshtmlmedia.dll
2015-10-14 11:44:50 ----A---- C:\windows\system32\MshtmlDac.dll
2015-10-14 11:44:48 ----A---- C:\windows\system32\mshtml.dll
2015-10-14 11:44:46 ----A---- C:\windows\system32\jscript9.dll
2015-10-14 11:44:45 ----A---- C:\windows\system32\vbscript.dll
2015-10-14 11:44:45 ----A---- C:\windows\system32\jscript.dll
======List of files/folders modified in the last 1 month======
2015-11-06 22:00:14 ----D---- C:\windows\Temp
2015-11-06 21:59:42 ----RD---- C:\Program Files
2015-11-06 21:54:39 ----D---- C:\windows\System32
2015-11-06 21:54:39 ----D---- C:\windows\inf
2015-11-06 21:54:39 ----A---- C:\windows\system32\PerfStringBackup.INI
2015-11-06 21:54:01 ----D---- C:\Users\Svatava Zalabáková\AppData\Roaming\Dropbox
2015-11-06 21:46:54 ----D---- C:\windows\system32\config
2015-11-06 21:11:55 ----D---- C:\windows\Prefetch
2015-11-06 20:19:43 ----SHD---- C:\System Volume Information
2015-11-04 21:06:29 ----D---- C:\windows\Tasks
2015-11-04 21:06:29 ----D---- C:\windows\system32\Tasks
2015-11-04 12:35:55 ----D---- C:\Users\Svatava Zalabáková\AppData\Roaming\vlc
2015-11-03 18:08:44 ----D---- C:\windows\system32\NDF
2015-10-18 19:35:21 ----A---- C:\windows\system32\FlashPlayerApp.exe
2015-10-16 08:45:08 ----D---- C:\windows\winsxs
2015-10-16 08:44:56 ----SD---- C:\windows\system32\CompatTel
2015-10-16 08:44:52 ----D---- C:\windows\system32\appraiser
2015-10-16 08:44:51 ----D---- C:\windows\AppPatch
2015-10-15 15:20:25 ----D---- C:\windows\rescache
2015-10-15 12:33:19 ----D---- C:\windows\system32\drivers
2015-10-15 12:33:19 ----D---- C:\windows\system32\cs-CZ
2015-10-15 12:33:18 ----D---- C:\windows\system32\en-US
2015-10-15 12:33:17 ----D---- C:\windows\system32\CodeIntegrity
2015-10-15 12:33:16 ----D---- C:\Program Files\Internet Explorer
2015-10-15 12:13:10 ----D---- C:\windows\system32\MRT
2015-10-15 12:02:40 ----A---- C:\windows\system32\MRT.exe
2015-10-15 12:02:15 ----SHD---- C:\windows\Installer
2015-10-14 11:43:20 ----D---- C:\windows\system32\catroot2
2015-10-09 13:18:35 ----SD---- C:\windows\system32\GWX
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aic78xx;aic78xx; C:\windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
R0 hpdskflt;HP Filter; C:\windows\system32\DRIVERS\hpdskflt.sys [2011-05-13 25656]
R0 iaStor;Intel RAID Controller; C:\windows\system32\DRIVERS\iaStor.sys [2009-08-07 330264]
R0 MpFilter;Microsoft Malware Protection Driver; C:\windows\system32\DRIVERS\MpFilter.sys [2015-03-04 245096]
R0 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 PxHelp20;PxHelp20; C:\windows\System32\Drivers\PxHelp20.sys [2010-07-12 45648]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 mfehidk;McAfee Inc. mfehidk; C:\windows\system32\drivers\mfehidk.sys [2009-05-16 214024]
R1 mfetdik;McAfee Inc. mfetdik; C:\windows\system32\drivers\mfetdik.sys [2009-05-16 55336]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 NisDrv;Microsoft Network Inspection System; C:\windows\system32\DRIVERS\NisDrvWFP.sys [2015-03-04 95408]
R3 5U876UVC;HP Webcam [2 MP series]; C:\windows\system32\DRIVERS\5U876.sys [2009-06-30 118656]
R3 Accelerometer;HP Mobile Data Protection Sensor; C:\windows\system32\DRIVERS\Accelerometer.sys [2011-05-13 35896]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\ADIHdAud.sys [2009-05-18 381440]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\windows\system32\DRIVERS\AGRSM.sys [2010-01-26 1163328]
R3 AtiHdmiService;ATI Service for HD Audio Codec; C:\windows\system32\drivers\AtiHdmi.sys [2009-07-24 103440]
R3 atikmdag;atikmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2009-08-04 4994048]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\windows\system32\DRIVERS\bcmwl6.sys [2013-05-24 2709056]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
R3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2009-07-01 86056]
R3 btwavdt;Bluetooth AVDT Service; C:\windows\system32\DRIVERS\btwavdt.sys [2009-07-01 108072]
R3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-08 29472]
R3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2009-07-01 18344]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2010-06-04 1303728]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336]
S2 Parvdm;Parvdm; C:\windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 HpqKbFiltr;HpqKbFilter Driver; C:\windows\system32\DRIVERS\HpqKbFiltr.sys [2009-04-29 15872]
S3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd32.sys [2009-06-10 4756480]
S3 MfeAVFK;McAfee Inc. MfeAVFK; C:\windows\system32\drivers\MfeAVFK.sys [2009-05-16 79816]
S3 MfeBOPK;McAfee Inc. MfeBOPK; C:\windows\system32\drivers\MfeBOPK.sys [2009-05-16 35272]
S3 MfeRKDK;McAfee Inc. MfeRKDK; C:\windows\system32\drivers\MfeRKDK.sys [2009-05-16 34248]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit; C:\windows\system32\DRIVERS\netw5v32.sys [2009-07-13 4231168]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\windows\system32\drivers\ccdcmb.sys [2012-11-16 18560]
S3 nmwcdc;Nokia USB Communication Driver; C:\windows\system32\drivers\ccdcmbo.sys [2012-11-16 23168]
S3 sisagp;Filtr SIS sběrnice AGP; C:\windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TPM;TPM; C:\windows\system32\drivers\tpm.sys [2009-07-14 30720]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 upperdev;upperdev; C:\windows\system32\DRIVERS\usbser_lowerflt.sys [2012-11-16 8192]
S3 UsbC;SafeNet MicroDog USB Device Driver; C:\windows\System32\Drivers\rcusbwdm.sys [2007-11-19 65216]
S3 usbscan;Ovladač skeneru USB; C:\windows\system32\drivers\usbscan.sys [2013-07-03 36352]
S3 usbser;USB Modem Driver; C:\windows\system32\DRIVERS\usbser.sys [2013-08-29 28160]
S3 UsbserFilt;UsbserFilt; C:\windows\system32\DRIVERS\usbser_lowerfltj.sys [2012-11-16 8192]
S3 viaagp;Filtr VIA sběrnice AGP; C:\windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
R2 AEADIFilters;Andrea ADI Filters Service; C:\windows\system32\AEADISRV.EXE [2008-07-15 90112]
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Program Files\LSI SoftModem\agrsmsvc.exe [2009-12-03 26112]
R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2009-08-04 176128]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-07-30 582944]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2009-07-14 20992]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2015-05-19 99128]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2013-05-13 270624]
R2 hpsrv;HP Service; C:\windows\system32\Hpservice.exe [2011-05-13 26168]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-08-25 354840]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2009-06-17 73728]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2015-04-30 22216]
R2 yksvc;Marvell Yukon Service; C:\windows\System32\svchost.exe [2009-07-14 20992]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe [2013-05-13 1129760]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2015-04-30 284504]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-27 144200]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-10-18 269000]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-27 144200]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2015-09-16 102912]
S3 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2009-02-10 116104]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 RoxMediaDB10;RoxMediaDB10; c:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe [2009-06-13 1120752]
S3 stllssvr;stllssvr; c:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2009-04-30 74392]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2010-06-02 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-11 45744]
S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
-----------------EOF-----------------
Re: Prosím o pomoc s logem
Máme problémy s výpadky připojení k wifi a celkového spomalení systému v intervalu cca 5 minut.
Děkuji.
Děkuji.
Re: Prosím o pomoc s logem
Zdravim 
Uvolnete nejake misto na disku, system se dusi.
Stahnete crystal disk info http://sourceforge.jp/projects/crystald ... 5_0_0.zip/
Spustte jako spravce. Za chvili se zobrazi vysledek.
Kliknete nahore na napis Úpravy a pak na napis Kopírovat. To co se zkopiruje (ulozi se to do pameti) mi sem vlozte (ctrl + V)
Stahnete AdwCleaner https://toolslib.net/downloads/finish/1/ a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Cleaning
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner\AdwCleaner[C?].txt ). Ten mi sem zkopirujte.
Spustte jako spravce. Za chvili se zobrazi vysledek.
Kliknete nahore na napis Úpravy a pak na napis Kopírovat. To co se zkopiruje (ulozi se to do pameti) mi sem vlozte (ctrl + V)
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Cleaning
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner\AdwCleaner[C?].txt ). Ten mi sem zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Prosím o pomoc s logem
Dobrý den, po delší době se vracím s výsledkem. Prosím o analýzu. Děkuji.
----------------------------------------------------------------------------
CrystalDiskInfo 5.0.0 (C) 2008-2012 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows 7 Home Premium Edition SP1 [6.1 Build 7601] (x86)
Date : 2015/11/27 16:36:30
-- Controller Map ----------------------------------------------------------
+ Intel(R) ICH9M-E/M SATA AHCI Controller [ATA]
- ST9320423AS
- hp DVDRAM GT20L
-- Disk List ---------------------------------------------------------------
(1) ST9320423AS : 320,0 GB [0/0/0, pd1] - st
----------------------------------------------------------------------------
(1) ST9320423AS
----------------------------------------------------------------------------
Model : ST9320423AS
Firmware : 0006HPM1
Serial Number : 5VJ1Y4RZ
Disk Size : 320,0 GB (8,4/137,4/320,0)
Buffer Size : 16384 KB
Queue Depth : 32
# of Sectors : 625142448
Rotation Rate : 7200 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 4
Transfer Mode : SATA/300
Power On Hours : 8847 hod.
Power On Count : 7338 krát
Temparature : 43 C (109 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 8080h [ON]
AAM Level : ----
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 120 _99 __6 000000108E77 Počet chyb čtení
03 _97 _97 __0 000000000000 Čas na roztočení ploten
04 _93 _93 __0 000000001CB4 Počet spuštění/zastavení
05 100 100 _36 000000000000 Počet přemapovaných sektorů
07 _69 _60 _30 00140BC2DF7C Počet chybných hledání
09 _90 _90 __0 00000000228F Hodin v činnosti
0A 100 100 _97 000000000000 Počet opakovaných pokusů o roztočení ploten
0C _93 _37 _20 000000001CAA Počet cyklů zapnutí zařízení
B7 100 253 __0 000000000000 Neznámý
B8 100 100 _97 000000000000 Ukončovacích chyb
BB 100 100 __0 000000000000 Ohlášeno neopravitelných chyb
BC 100 100 __0 000000000000 Časový limit příkazu
BD 100 100 __0 000000000000 Vysoká rychlost zápisu
BE _57 _51 _45 00002B21002B Teplota toku vzduchu
BF 100 100 __0 000000000005 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 000000000023 Počet vypnutí disku
C1 __5 __5 __0 00000002ECD8 Počet cyklů načítání/vymazání
C2 _43 _49 __0 F3340000002B Teplota
C3 _69 _57 __0 000000108E77 Počet oprav chybného čtení
C4 100 100 _36 000000000000 Počet udalostí s číslem realokování sektorů
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
FE 100 100 __0 000000000000 Ochrana proti pádu
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0C5A 3FFF C837 0010 0000 003F 003F 0000 0000 0000
010: 3556 4A31 5934 525A 2020 2020 2020 2020 2020 2020
020: 0000 8000 0004 3030 3036 4D31 4D31 5354 3933 3230
030: 3432 3341 5320 2020 2020 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0200 0007 3FFF 003F 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 0D06 0D06 0000 004C 0044
080: 01F8 0029 306B 7C09 6123 BC09 BC09 6123 203F 0028
090: 0028 8080 FFFE 0000 0000 0000 0000 0000 0000 0000
100: EAB0 2542 0000 0000 0000 0000 0000 0000 5000 C500
110: 1C6B 23A3 0000 0000 0000 0000 0000 0000 0000 401C
120: 401C 0000 0000 0000 0000 0000 0000 0000 0021 EAB0
130: 2542 EAB0 2542 2020 0002 0108 0108 5000 3C06 3C0A
140: 0000 0078 0000 0008 0000 001F 001F 0280 0000 0000
150: 0008 0000 0000 0000 0000 0000 0000 0000 3E00 8000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0003 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 103F 103F 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 1C20 0000 0000
220: 0000 0000 1010 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 95A5
----------------------------------------------------------------------------
CrystalDiskInfo 5.0.0 (C) 2008-2012 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows 7 Home Premium Edition SP1 [6.1 Build 7601] (x86)
Date : 2015/11/27 16:36:30
-- Controller Map ----------------------------------------------------------
+ Intel(R) ICH9M-E/M SATA AHCI Controller [ATA]
- ST9320423AS
- hp DVDRAM GT20L
-- Disk List ---------------------------------------------------------------
(1) ST9320423AS : 320,0 GB [0/0/0, pd1] - st
----------------------------------------------------------------------------
(1) ST9320423AS
----------------------------------------------------------------------------
Model : ST9320423AS
Firmware : 0006HPM1
Serial Number : 5VJ1Y4RZ
Disk Size : 320,0 GB (8,4/137,4/320,0)
Buffer Size : 16384 KB
Queue Depth : 32
# of Sectors : 625142448
Rotation Rate : 7200 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 4
Transfer Mode : SATA/300
Power On Hours : 8847 hod.
Power On Count : 7338 krát
Temparature : 43 C (109 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 8080h [ON]
AAM Level : ----
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 120 _99 __6 000000108E77 Počet chyb čtení
03 _97 _97 __0 000000000000 Čas na roztočení ploten
04 _93 _93 __0 000000001CB4 Počet spuštění/zastavení
05 100 100 _36 000000000000 Počet přemapovaných sektorů
07 _69 _60 _30 00140BC2DF7C Počet chybných hledání
09 _90 _90 __0 00000000228F Hodin v činnosti
0A 100 100 _97 000000000000 Počet opakovaných pokusů o roztočení ploten
0C _93 _37 _20 000000001CAA Počet cyklů zapnutí zařízení
B7 100 253 __0 000000000000 Neznámý
B8 100 100 _97 000000000000 Ukončovacích chyb
BB 100 100 __0 000000000000 Ohlášeno neopravitelných chyb
BC 100 100 __0 000000000000 Časový limit příkazu
BD 100 100 __0 000000000000 Vysoká rychlost zápisu
BE _57 _51 _45 00002B21002B Teplota toku vzduchu
BF 100 100 __0 000000000005 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 000000000023 Počet vypnutí disku
C1 __5 __5 __0 00000002ECD8 Počet cyklů načítání/vymazání
C2 _43 _49 __0 F3340000002B Teplota
C3 _69 _57 __0 000000108E77 Počet oprav chybného čtení
C4 100 100 _36 000000000000 Počet udalostí s číslem realokování sektorů
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
FE 100 100 __0 000000000000 Ochrana proti pádu
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0C5A 3FFF C837 0010 0000 003F 003F 0000 0000 0000
010: 3556 4A31 5934 525A 2020 2020 2020 2020 2020 2020
020: 0000 8000 0004 3030 3036 4D31 4D31 5354 3933 3230
030: 3432 3341 5320 2020 2020 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0200 0007 3FFF 003F 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 0D06 0D06 0000 004C 0044
080: 01F8 0029 306B 7C09 6123 BC09 BC09 6123 203F 0028
090: 0028 8080 FFFE 0000 0000 0000 0000 0000 0000 0000
100: EAB0 2542 0000 0000 0000 0000 0000 0000 5000 C500
110: 1C6B 23A3 0000 0000 0000 0000 0000 0000 0000 401C
120: 401C 0000 0000 0000 0000 0000 0000 0000 0021 EAB0
130: 2542 EAB0 2542 2020 0002 0108 0108 5000 3C06 3C0A
140: 0000 0078 0000 0008 0000 001F 001F 0280 0000 0000
150: 0008 0000 0000 0000 0000 0000 0000 0000 3E00 8000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0003 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 103F 103F 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 1C20 0000 0000
220: 0000 0000 1010 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 95A5
Re: Prosím o pomoc s logem
Tak jeste ADWCleaner.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Prosím o pomoc s logem
Takže vkládám:
# AdwCleaner v5.022 - Logfile created 27/11/2015 at 16:49:57
# Updated 22/11/2015 by Xplode
# Database : 2015-11-22.2 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x86)
# Username : Svatava Zalabáková - NB001
# Running from : C:\Users\Svatava Zalabáková\Desktop\adwcleaner_5.022.exe
# Option : Cleaning
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
***** [ Files ] *****
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
***** [ Web browsers ] *****
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [707 bytes] ##########
Musím teď zmizet, večer to dokončím, zatím děkkuji.
# AdwCleaner v5.022 - Logfile created 27/11/2015 at 16:49:57
# Updated 22/11/2015 by Xplode
# Database : 2015-11-22.2 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x86)
# Username : Svatava Zalabáková - NB001
# Running from : C:\Users\Svatava Zalabáková\Desktop\adwcleaner_5.022.exe
# Option : Cleaning
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
***** [ Files ] *****
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
***** [ Web browsers ] *****
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [707 bytes] ##########
Musím teď zmizet, večer to dokončím, zatím děkkuji.
Re: Prosím o pomoc s logem
Toto je OK
Udelejte kontrolu s MBAM. Test nastavte podle tohoto navodu (cili Vlastni sken vsech disku) http://forum.viry.cz/viewtopic.php?f=29&t=144868 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Prosím o pomoc s logem
Vkládám log z MBAM
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 27.11.2015
Čas skenování: 21:46
Protokol: log.txt
Správce: Ano
Verze: 2.2.0.1024
Databáze malwaru: v2015.11.27.04
Databáze rootkitů: v2015.11.26.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto
OS: Windows 7 Service Pack 1
CPU: x86
Souborový systém: NTFS
Uživatel: Svatava Zalabáková
Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 551784
Uplynulý čas: 13 hod, 2 min, 22 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Zapnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 0
(Nenalezeny žádné škodlivé položky)
Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 0
(Nenalezeny žádné škodlivé položky)
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 27.11.2015
Čas skenování: 21:46
Protokol: log.txt
Správce: Ano
Verze: 2.2.0.1024
Databáze malwaru: v2015.11.27.04
Databáze rootkitů: v2015.11.26.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto
OS: Windows 7 Service Pack 1
CPU: x86
Souborový systém: NTFS
Uživatel: Svatava Zalabáková
Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 551784
Uplynulý čas: 13 hod, 2 min, 22 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Zapnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 0
(Nenalezeny žádné škodlivé položky)
Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 0
(Nenalezeny žádné škodlivé položky)
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
Re: Prosím o pomoc s logem
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Prosím o pomoc s logem
Dobrý den, takže vkládám potřebné:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:28-11-2015
Ran by Svatava Zalabáková (administrator) on NB001 (29-11-2015 12:13:03)
Running from C:\Users\Svatava Zalabáková\Desktop
Loaded Profiles: Svatava Zalabáková (Available Profiles: Svatava Zalabáková)
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Andrea Electronics Corporation) C:\Windows\System32\AEADISRV.EXE
(LSI Corporation) C:\Program Files\LSI SoftModem\agrsmsvc.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\Core\smax4pnp.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(Dropbox, Inc.) C:\Users\Svatava Zalabáková\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
() C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Svatava Zalabáková\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [IAAnotif] => C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-08-25] (Intel Corporation)
HKLM\...\Run: [WirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [498744 2009-07-23] (Hewlett-Packard)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1791272 2010-06-04] (Synaptics Incorporated)
HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2009-08-04] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [SoundMAXPnP] => C:\Program Files\Analog Devices\Core\smax4pnp.exe [1314816 2009-05-18] (Analog Devices, Inc.)
HKLM\...\Run: [SoundMAX] => C:\Program Files\Analog Devices\SoundMAX\soundmax.exe [3866624 2009-05-18] (Analog Devices, Inc.)
HKLM\...\Run: [CanonMyPrinter] => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [1983816 2009-03-24] (CANON INC.)
HKLM\...\Run: [CanonSolutionMenu] => C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [767312 2009-03-18] (CANON INC.)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [937920 2011-06-06] (Adobe Systems Incorporated)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [981688 2015-04-29] (Microsoft Corporation)
HKLM\...\RunOnce: [AvgUninstallURL] => cmd.exe /c start hxxp://www.avg.com/ww.special-uninstallation-f ... AC0ANAA0AD (the data entry has 96 more characters).
HKLM\...\runonceex: [ContentMerger] => c:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\ContentMerger10.exe [19952 2009-06-13] (Sonic Solutions)
HKU\S-1-5-21-1140667397-1894699872-73031646-1001\...\Run: [LightScribe Control Panel] => C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2009-06-17] (Hewlett-Packard Company)
HKU\S-1-5-21-1140667397-1894699872-73031646-1001\...\Run: [Google Update] => C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-09-02] (Google Inc.)
HKU\S-1-5-21-1140667397-1894699872-73031646-1001\...\Run: [Diar_VS] => C:\Program Files\Diar 5\diar.exe [496128 2007-11-11] (Václav Šimandl)
HKU\S-1-5-21-1140667397-1894699872-73031646-1001\...\Run: [Dropbox Update] => C:\Users\Svatava Zalabáková\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-07-06] (Dropbox, Inc.)
HKU\S-1-5-21-1140667397-1894699872-73031646-1001\...\MountPoints2: {fcd60305-4577-11e5-b87b-0027133629af} - D:\LG_PC_Programs.exe
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Svatava Zalabáková\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Svatava Zalabáková\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Svatava Zalabáková\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-11-05] (Dropbox, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2009-12-02]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\Users\Svatava Zalabáková\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-11-12]
ShortcutTarget: Dropbox.lnk -> C:\Users\Svatava Zalabáková\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 93.99.200.155 77.48.31.69
Tcpip\..\Interfaces\{2272253D-FB66-4BF2-84D0-FA89EF8B7E05}: [DhcpNameServer] 93.99.200.155 77.48.31.69
Internet Explorer:
==================
HKU\S-1-5-21-1140667397-1894699872-73031646-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/
HKU\S-1-5-21-1140667397-1894699872-73031646-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=cs_CZ&c=92&bd=all&pf=cmnb
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-09-05] (Adobe Systems Incorporated)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll [2015-03-04] (Oracle Corporation)
BHO: Pomocník pro přihlášení ke službě Windows Live -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-04] (Oracle Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2015-10-19] (Hewlett-Packard Company)
Toolbar: HKLM - No Name - {0BF43445-2F28-4351-9252-17FE6E806AA0} - No File
Toolbar: HKU\S-1-5-21-1140667397-1894699872-73031646-1001 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
FireFox:
========
FF Plugin: @canon.com/EPPEX -> C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [2009-03-27] (CANON INC.)
FF Plugin: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-04] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-04] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-22] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-22] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2011-09-05] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1140667397-1894699872-73031646-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-21] (Google Inc.)
FF Plugin HKU\S-1-5-21-1140667397-1894699872-73031646-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-21] (Google Inc.)
Chrome:
=======
CHR HomePage: Profile 1 -> hxxp://seznam.cz/
CHR Session Restore: Profile 1 -> is enabled.
CHR Plugin: (Shockwave Flash) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\46.0.2490.86\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Native Client) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\46.0.2490.86\ppGoogleNaClPluginChrome.dll => No File
CHR Plugin: (Chrome PDF Viewer) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\46.0.2490.86\pdf.dll => No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (CANON iMAGE GATEWAY Album Plugin Utility) - C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
CHR Plugin: (DivX Web Player) - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll => No File
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll => No File
CHR Plugin: (Java(TM) Platform SE 7 U9) - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll => No File
CHR Plugin: (Java Deployment Toolkit 7.0.90.5) - C:\windows\system32\npDeployJava1.dll => No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll => No File
CHR Profile: C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Default
CHR Profile: C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Profile 1
CHR Extension: (Disk Google) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (YouTube) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-29]
CHR Extension: (Vyhledávání Google) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-01]
CHR Extension: (Kalendář Google) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2015-10-15]
CHR Extension: (Dokumenty Google offline) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-19]
CHR Extension: (AdBlock) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-11-27]
CHR Extension: (iPiccy Photo Editor) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\imokeandodnlammaoenbgcnbhigjbpjh [2015-04-16]
CHR Extension: (AT_Tibi) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\kkejacdnegffabffbjebeloagdhmjoln [2012-11-18]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-24]
CHR Extension: (Gmail) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-04]
StartMenuInternet: Google Chrome - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AgereModemAudio; C:\Program Files\LSI SoftModem\agrsmsvc.exe [26112 2009-12-03] (LSI Corporation)
R2 HPSupportSolutionsFrameworkService; C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [25800 2015-09-28] (Hewlett-Packard Company)
S3 IJPLMSVC; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [116104 2009-02-10] ()
R2 LightScribeService; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [73728 2009-06-17] (Hewlett-Packard Company) [File not signed]
S2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22216 2015-04-30] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [284504 2015-04-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
R2 yksvc; C:\windows\System32\yk62x86.dll [364544 2009-09-28] (Marvell)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 5U876UVC; C:\windows\System32\DRIVERS\5U876.sys [114688 2009-11-13] (Ricoh co.,Ltd.)
S3 MBAMProtector; C:\windows\system32\drivers\mbam.sys [23256 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\windows\system32\drivers\mwac.sys [51928 2015-10-05] (Malwarebytes Corporation)
S3 MfeAVFK; C:\windows\System32\drivers\MfeAVFK.sys [79816 2009-05-16] (McAfee, Inc.)
S3 MfeBOPK; C:\windows\System32\drivers\MfeBOPK.sys [35272 2009-05-16] (McAfee, Inc.)
R1 mfehidk; C:\windows\System32\drivers\mfehidk.sys [214024 2009-05-16] (McAfee, Inc.)
S3 MfeRKDK; C:\windows\System32\drivers\MfeRKDK.sys [34248 2009-05-16] (McAfee, Inc.)
R1 mfetdik; C:\windows\System32\drivers\mfetdik.sys [55336 2009-05-16] (McAfee, Inc.)
R0 MpFilter; C:\windows\System32\DRIVERS\MpFilter.sys [245096 2015-03-04] (Microsoft Corporation)
S3 UsbC; C:\windows\System32\Drivers\rcusbwdm.sys [65216 2007-11-19] (SafeNet, Inc.)
R3 yukonw7; C:\windows\System32\DRIVERS\yk62x86.sys [315392 2009-09-28] ()
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-11-29 12:13 - 2015-11-29 12:13 - 00017660 _____ C:\Users\Svatava Zalabáková\Desktop\FRST.txt
2015-11-29 12:11 - 2015-11-29 12:13 - 00000000 ____D C:\FRST
2015-11-29 12:05 - 2015-11-29 12:05 - 00112640 _____ (forum.viry.cz) C:\Users\Svatava Zalabáková\Desktop\FRSTLauncher.exe
2015-11-29 11:58 - 2015-11-29 11:58 - 01720320 _____ (Farbar) C:\Users\Svatava Zalabáková\Desktop\FRST.exe
2015-11-28 16:45 - 2015-11-28 16:45 - 00000000 ____D C:\windows\LastGood
2015-11-28 16:44 - 2009-11-13 18:20 - 00114688 _____ (Ricoh co.,Ltd.) C:\windows\system32\Drivers\5U876.sys
2015-11-28 16:44 - 2009-11-06 11:59 - 00035328 _____ (Ricoh co.,Ltd.) C:\windows\system32\SET112B.tmp
2015-11-28 16:44 - 2009-11-06 11:41 - 00106496 _____ (Ricoh co.,Ltd.) C:\windows\system32\SET1189.tmp
2015-11-27 21:44 - 2015-11-27 21:46 - 00170200 _____ (Malwarebytes) C:\windows\system32\Drivers\MBAMSwissArmy.sys
2015-11-27 21:44 - 2015-11-27 21:44 - 00001060 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-11-27 21:44 - 2015-11-27 21:44 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-11-27 21:44 - 2015-11-27 21:44 - 00000000 ____D C:\Program Files\Malwarebytes Anti-Malware
2015-11-27 21:44 - 2015-10-05 09:50 - 00094936 _____ (Malwarebytes) C:\windows\system32\Drivers\mbamchameleon.sys
2015-11-27 21:44 - 2015-10-05 09:50 - 00051928 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mwac.sys
2015-11-27 21:44 - 2015-10-05 09:50 - 00023256 _____ (Malwarebytes) C:\windows\system32\Drivers\mbam.sys
2015-11-27 16:59 - 2015-11-27 16:59 - 00000000 __SHD C:\found.000
2015-11-27 16:34 - 2015-11-27 16:35 - 00000000 ____D C:\Users\Svatava Zalabáková\Desktop\CrystalDiskInfo5_0_0
2015-11-24 21:13 - 2015-11-26 12:51 - 00000000 ____D C:\Users\Svatava Zalabáková\Desktop\Nová složka (3)
2015-11-19 21:32 - 2015-11-19 21:43 - 00000000 ____D C:\Users\Svatava Zalabáková\Desktop\Nová složka
2015-11-19 14:07 - 2015-11-19 14:07 - 00002173 _____ C:\Users\Svatava Zalabáková\Desktop\HP Support Assistant.lnk
2015-11-19 14:07 - 2015-11-19 14:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2015-11-18 21:36 - 2015-11-18 21:46 - 00001827 _____ C:\Users\Svatava Zalabáková\Documents\SyncSettingsHODY.ffs_gui
2015-11-18 20:51 - 2015-11-18 21:49 - 00000000 ____D C:\Users\Svatava Zalabáková\AppData\Roaming\FreeFileSync
2015-11-18 20:50 - 2015-11-18 20:50 - 00001091 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeFileSync.lnk
2015-11-18 20:50 - 2015-11-18 20:50 - 00001079 _____ C:\Users\Public\Desktop\FreeFileSync.lnk
2015-11-18 20:50 - 2015-11-18 20:50 - 00001077 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealtimeSync.lnk
2015-11-18 20:50 - 2015-11-18 20:50 - 00001065 _____ C:\Users\Public\Desktop\RealtimeSync.lnk
2015-11-18 20:50 - 2015-11-18 20:50 - 00000000 ____D C:\Program Files\FreeFileSync
2015-11-12 16:41 - 2015-11-03 18:46 - 02386944 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2015-11-12 13:27 - 2015-11-12 13:27 - 00000000 ____D C:\Users\Svatava Zalabáková\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-11-11 13:33 - 2015-10-20 18:46 - 02955776 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll
2015-11-11 13:33 - 2015-10-20 18:46 - 02061824 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2015-11-11 13:33 - 2015-10-20 18:46 - 00566784 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2015-11-11 13:33 - 2015-10-20 18:46 - 00174080 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll
2015-11-11 13:33 - 2015-10-20 18:46 - 00093696 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll
2015-11-11 13:33 - 2015-10-20 18:46 - 00035840 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll
2015-11-11 13:33 - 2015-10-20 18:46 - 00030208 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2015-11-11 13:33 - 2015-10-20 18:45 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2015-11-11 13:33 - 2015-10-20 18:45 - 00073728 _____ (Microsoft Corporation) C:\windows\system32\WinSetupUI.dll
2015-11-11 13:33 - 2015-10-20 18:45 - 00035328 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe
2015-11-11 13:33 - 2015-10-20 18:45 - 00011776 _____ (Microsoft Corporation) C:\windows\system32\wu.upgrade.ps.dll
2015-11-11 13:32 - 2015-10-29 18:50 - 00005120 _____ (Microsoft Corporation) C:\windows\system32\shimeng.dll
2015-11-11 13:32 - 2015-10-29 18:49 - 00295936 _____ (Microsoft Corporation) C:\windows\system32\apphelp.dll
2015-11-11 13:32 - 2015-10-29 18:49 - 00062464 _____ (Microsoft Corporation) C:\windows\system32\aelupsvc.dll
2015-11-11 13:32 - 2015-10-29 18:49 - 00020992 _____ (Microsoft Corporation) C:\windows\system32\sdbinst.exe
2015-11-11 13:32 - 2015-10-20 01:52 - 03991488 _____ (Microsoft Corporation) C:\windows\system32\ntkrnlpa.exe
2015-11-11 13:32 - 2015-10-20 01:52 - 03935680 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2015-11-11 13:32 - 2015-10-20 01:52 - 00138176 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2015-11-11 13:32 - 2015-10-20 01:52 - 00067520 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2015-11-11 13:32 - 2015-10-20 01:48 - 01308160 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 01061376 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00655360 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00552960 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00400896 _____ (Microsoft Corporation) C:\windows\system32\srcore.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00262656 _____ (Microsoft Corporation) C:\windows\system32\rstrui.exe
2015-11-11 13:32 - 2015-10-20 01:45 - 00259584 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00251392 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00223232 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00172032 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00100352 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00069632 _____ (Microsoft Corporation) C:\windows\system32\smss.exe
2015-11-11 13:32 - 2015-10-20 01:45 - 00065536 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00043008 _____ (Microsoft Corporation) C:\windows\system32\srclient.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00038912 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\cryptbase.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00017408 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00015872 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll
2015-11-11 13:32 - 2015-10-20 01:44 - 00050176 _____ (Microsoft Corporation) C:\windows\system32\auditpol.exe
2015-11-11 13:32 - 2015-10-20 01:44 - 00022528 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2015-11-11 13:32 - 2015-10-20 01:39 - 00146432 _____ (Microsoft Corporation) C:\windows\system32\msaudite.dll
2015-11-11 13:32 - 2015-10-20 01:39 - 00060416 _____ (Microsoft Corporation) C:\windows\system32\msobjs.dll
2015-11-11 13:32 - 2015-10-20 01:35 - 00686080 _____ (Microsoft Corporation) C:\windows\system32\adtschema.dll
2015-11-11 13:32 - 2015-10-20 01:35 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\apisetschema.dll
2015-11-11 13:32 - 2015-10-20 00:29 - 00225792 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb10.sys
2015-11-11 13:32 - 2015-10-20 00:28 - 00124416 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb.sys
2015-11-11 13:32 - 2015-10-20 00:28 - 00098304 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb20.sys
2015-11-11 13:32 - 2015-10-13 17:31 - 00338944 _____ (Microsoft Corporation) C:\windows\system32\Drivers\afd.sys
2015-11-11 13:32 - 2015-10-13 17:31 - 00074752 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tdx.sys
2015-11-11 13:31 - 2015-11-03 22:51 - 00342728 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2015-11-11 13:31 - 2015-10-30 23:58 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2015-11-11 13:31 - 2015-10-30 23:58 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2015-11-11 13:31 - 2015-10-30 23:52 - 20331520 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2015-11-11 13:31 - 2015-10-30 23:47 - 00504832 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2015-11-11 13:31 - 2015-10-30 23:46 - 00062464 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2015-11-11 13:31 - 2015-10-30 23:45 - 00341504 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2015-11-11 13:31 - 2015-10-30 23:45 - 00047616 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2015-11-11 13:31 - 2015-10-30 23:44 - 00064000 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2015-11-11 13:31 - 2015-10-30 23:42 - 02279936 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2015-11-11 13:31 - 2015-10-30 23:39 - 00047104 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2015-11-11 13:31 - 2015-10-30 23:39 - 00030720 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2015-11-11 13:31 - 2015-10-30 23:37 - 00480256 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2015-11-11 13:31 - 2015-10-30 23:36 - 00663552 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2015-11-11 13:31 - 2015-10-30 23:36 - 00620032 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2015-11-11 13:31 - 2015-10-30 23:36 - 00115712 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2015-11-11 13:31 - 2015-10-30 23:36 - 00102912 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2015-11-11 13:31 - 2015-10-30 23:31 - 00667648 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2015-11-11 13:31 - 2015-10-30 23:28 - 00416256 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2015-11-11 13:31 - 2015-10-30 23:23 - 00060416 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2015-11-11 13:31 - 2015-10-30 23:21 - 00168960 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2015-11-11 13:31 - 2015-10-30 23:19 - 00076288 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2015-11-11 13:31 - 2015-10-30 23:18 - 00279040 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2015-11-11 13:31 - 2015-10-30 23:17 - 00130048 _____ (Microsoft Corporation) C:\windows\system32\occache.dll
2015-11-11 13:31 - 2015-10-30 23:16 - 04527616 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2015-11-11 13:31 - 2015-10-30 23:11 - 00230400 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2015-11-11 13:31 - 2015-10-30 23:10 - 00689152 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2015-11-11 13:31 - 2015-10-30 23:09 - 12854272 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2015-11-11 13:31 - 2015-10-30 23:09 - 02052608 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2015-11-11 13:31 - 2015-10-30 23:09 - 01155072 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2015-11-11 13:31 - 2015-10-30 23:09 - 00686080 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2015-11-11 13:31 - 2015-10-30 22:51 - 02011136 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2015-11-11 13:31 - 2015-10-30 22:48 - 01311744 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2015-11-11 13:31 - 2015-10-30 22:46 - 00710144 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2015-11-11 13:31 - 2015-10-13 05:50 - 00712640 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndis.sys
2015-11-11 13:31 - 2015-10-01 18:50 - 00216064 _____ (Microsoft Corporation) C:\windows\system32\InkEd.dll
2015-11-11 13:31 - 2015-10-01 18:50 - 00019968 _____ (Microsoft Corporation) C:\windows\system32\jnwmon.dll
2015-11-11 13:31 - 2015-09-23 14:09 - 00371920 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys
2015-11-11 13:31 - 2015-09-23 14:09 - 00251000 _____ (Microsoft Corporation) C:\windows\system32\bcryptprimitives.dll
2015-11-06 21:59 - 2015-11-06 22:06 - 00000000 ____D C:\Program Files\trend micro
2015-11-06 21:59 - 2015-11-06 22:01 - 00000000 ____D C:\rsit
2015-11-06 21:59 - 2015-11-06 21:59 - 01107968 _____ C:\Users\Svatava Zalabáková\Desktop\RSIT (1).exe
2015-11-06 21:56 - 2015-11-06 21:56 - 01107968 _____ C:\Users\Svatava Zalabáková\Desktop\Nepotvrzeno 395122.crdownload
2015-11-06 21:44 - 2015-11-27 16:49 - 00000000 ____D C:\AdwCleaner
2015-11-06 21:11 - 2015-11-06 21:11 - 00001795 _____ C:\Users\Svatava Zalabáková\Desktop\grping.lnk
2015-11-06 21:11 - 2015-11-06 21:11 - 00000000 ____D C:\Users\Svatava Zalabáková\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GrPing
2015-11-06 21:11 - 2015-11-06 21:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GrPing
2015-11-06 21:11 - 2015-11-06 21:11 - 00000000 ____D C:\Program Files\GrPing
2015-11-06 08:46 - 2010-02-23 19:15 - 00002039 _____ C:\Users\Svatava Zalabáková\Desktop\Canon Easy-PhotoPrint EX.lnk
2015-11-02 19:36 - 2015-11-02 19:39 - 00000000 ____D C:\Users\Svatava Zalabáková\Desktop\Fotky zařadit
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-11-29 12:12 - 2009-07-14 03:37 - 00000000 ____D C:\Windows
2015-11-29 12:03 - 2009-07-14 05:34 - 00022688 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-11-29 12:03 - 2009-07-14 05:34 - 00022688 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-11-29 12:00 - 2010-02-03 22:37 - 00000940 _____ C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-11-29 11:55 - 2015-07-06 18:30 - 00000970 _____ C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001UA.job
2015-11-29 11:55 - 2011-07-03 19:31 - 00001014 _____ C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001UA.job
2015-11-29 11:36 - 2010-02-03 22:37 - 00000936 _____ C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-11-29 11:35 - 2012-05-10 05:59 - 00000914 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2015-11-29 10:54 - 2015-07-06 18:30 - 00000918 _____ C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001Core.job
2015-11-29 10:51 - 2011-07-03 19:31 - 00000962 _____ C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001Core.job
2015-11-28 16:45 - 2009-07-14 03:37 - 00000000 ____D C:\windows\inf
2015-11-28 16:44 - 2009-07-27 17:13 - 00000000 ___HD C:\SYSTEM.SAV
2015-11-28 16:44 - 2009-07-27 17:13 - 00000000 ____D C:\swsetup
2015-11-27 21:16 - 2009-09-20 08:54 - 00669132 _____ C:\windows\system32\perfh005.dat
2015-11-27 21:16 - 2009-09-20 08:54 - 00141760 _____ C:\windows\system32\perfc005.dat
2015-11-27 21:16 - 2009-09-20 08:17 - 01584626 _____ C:\windows\system32\PerfStringBackup.INI
2015-11-27 17:07 - 2013-12-28 20:28 - 00000000 ___RD C:\Users\Svatava Zalabáková\Dropbox
2015-11-27 17:07 - 2013-12-28 20:24 - 00000000 ____D C:\Users\Svatava Zalabáková\AppData\Roaming\Dropbox
2015-11-27 17:05 - 2009-07-14 05:53 - 00000006 ____H C:\windows\Tasks\SA.DAT
2015-11-25 10:00 - 2015-08-28 14:50 - 00000000 ____D C:\Users\Svatava Zalabáková\AppData\Roaming\vlc
2015-11-23 08:19 - 2015-07-30 19:13 - 00000372 _____ C:\windows\Tasks\HPCeeScheduleForSvatava Zalabáková.job
2015-11-19 14:15 - 2009-09-20 08:14 - 00000000 ____D C:\ProgramData\Hewlett-Packard
2015-11-19 14:13 - 2009-12-02 13:23 - 00000000 ____D C:\Users\Svatava Zalabáková\AppData\Local\Hewlett-Packard
2015-11-19 14:13 - 2009-12-02 13:18 - 00000000 ____D C:\Users\Svatava Zalabáková
2015-11-19 14:11 - 2009-07-14 05:33 - 00465064 _____ C:\windows\system32\FNTCACHE.DAT
2015-11-19 14:07 - 2009-07-14 03:37 - 00000000 ____D C:\windows\Help
2015-11-19 14:01 - 2009-12-02 13:26 - 00126608 _____ C:\Users\Svatava Zalabáková\AppData\Local\GDIPFONTCACHEV1.DAT
2015-11-19 14:01 - 2009-09-20 08:10 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2015-11-19 14:01 - 2009-09-20 08:08 - 00000000 ____D C:\Program Files\Hewlett-Packard
2015-11-14 18:49 - 2012-05-10 05:59 - 00780488 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerApp.exe
2015-11-14 18:49 - 2011-12-09 11:07 - 00142536 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerCPLApp.cpl
2015-11-12 13:43 - 2009-07-27 12:09 - 00000000 ____D C:\Program Files\Windows Journal
2015-11-12 13:30 - 2013-08-16 08:15 - 00000000 ____D C:\windows\system32\MRT
2015-11-12 09:12 - 2009-12-02 14:10 - 143250520 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2015-11-04 12:36 - 2013-11-25 13:35 - 00000000 ____D C:\Users\Svatava Zalabáková\Desktop\STARÉ FOTO Hana, Vašek
2015-11-03 18:08 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\NDF
2015-11-03 17:53 - 2012-06-19 15:18 - 00000000 ____D C:\Users\Svatava Zalabáková\AppData\Local\ElevatedDiagnostics
==================== Files in the root of some directories =======
2011-10-16 20:57 - 2012-01-17 15:04 - 0482956 _____ () C:\Users\Svatava Zalabáková\AppData\Roaming\mdbu.bin
2009-12-02 13:55 - 2009-12-02 13:55 - 0000000 _____ () C:\Users\Svatava Zalabáková\AppData\Local\AtStart.txt
2010-07-14 18:54 - 2010-12-29 13:29 - 0009728 _____ () C:\Users\Svatava Zalabáková\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2009-12-02 13:55 - 2009-12-02 13:55 - 0000000 _____ () C:\Users\Svatava Zalabáková\AppData\Local\DSwitch.txt
2009-12-02 13:55 - 2009-12-02 13:55 - 0000000 _____ () C:\Users\Svatava Zalabáková\AppData\Local\QSwitch.txt
2011-11-28 07:38 - 2013-03-25 20:27 - 0007606 _____ () C:\Users\Svatava Zalabáková\AppData\Local\resmon.resmoncfg
2010-05-25 19:30 - 2010-05-25 19:30 - 0000056 ____H () C:\ProgramData\ezsidmv.dat
2009-09-20 08:39 - 2009-09-20 08:39 - 0000191 _____ () C:\ProgramData\HPWALog.txt
Some files in TEMP:
====================
C:\Users\Svatava Zalabáková\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpq_pwnk.dll
C:\Users\Svatava Zalabáková\AppData\Local\Temp\HPSFUpdater.exe
C:\Users\Svatava Zalabáková\AppData\Local\Temp\sqlite3.dll
C:\Users\Svatava Zalabáková\AppData\Local\Temp\UninstallHPSA.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\windows\explorer.exe => File is digitally signed
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\dnsapi.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001Core.job => C:\Users\Svatava Zalabáková\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001UA.job => C:\Users\Svatava Zalabáková\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001Core.job => C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001UA.job => C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForSvatava Zalabáková.job => C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Microsoft Security Essentials (Enabled - Up to date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A}
AS: Microsoft Security Essentials (Enabled - Up to date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Svatava Zalab�kov�\Desktop" je 35450 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000001
==================== End Of Log ==============================
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:28-11-2015
Ran by Svatava Zalabáková (administrator) on NB001 (29-11-2015 12:13:03)
Running from C:\Users\Svatava Zalabáková\Desktop
Loaded Profiles: Svatava Zalabáková (Available Profiles: Svatava Zalabáková)
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Andrea Electronics Corporation) C:\Windows\System32\AEADISRV.EXE
(LSI Corporation) C:\Program Files\LSI SoftModem\agrsmsvc.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\Core\smax4pnp.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(Dropbox, Inc.) C:\Users\Svatava Zalabáková\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
() C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Svatava Zalabáková\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [IAAnotif] => C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-08-25] (Intel Corporation)
HKLM\...\Run: [WirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [498744 2009-07-23] (Hewlett-Packard)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1791272 2010-06-04] (Synaptics Incorporated)
HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2009-08-04] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [SoundMAXPnP] => C:\Program Files\Analog Devices\Core\smax4pnp.exe [1314816 2009-05-18] (Analog Devices, Inc.)
HKLM\...\Run: [SoundMAX] => C:\Program Files\Analog Devices\SoundMAX\soundmax.exe [3866624 2009-05-18] (Analog Devices, Inc.)
HKLM\...\Run: [CanonMyPrinter] => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [1983816 2009-03-24] (CANON INC.)
HKLM\...\Run: [CanonSolutionMenu] => C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [767312 2009-03-18] (CANON INC.)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [937920 2011-06-06] (Adobe Systems Incorporated)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [981688 2015-04-29] (Microsoft Corporation)
HKLM\...\RunOnce: [AvgUninstallURL] => cmd.exe /c start hxxp://www.avg.com/ww.special-uninstallation-f ... AC0ANAA0AD (the data entry has 96 more characters).
HKLM\...\runonceex: [ContentMerger] => c:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\ContentMerger10.exe [19952 2009-06-13] (Sonic Solutions)
HKU\S-1-5-21-1140667397-1894699872-73031646-1001\...\Run: [LightScribe Control Panel] => C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2009-06-17] (Hewlett-Packard Company)
HKU\S-1-5-21-1140667397-1894699872-73031646-1001\...\Run: [Google Update] => C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-09-02] (Google Inc.)
HKU\S-1-5-21-1140667397-1894699872-73031646-1001\...\Run: [Diar_VS] => C:\Program Files\Diar 5\diar.exe [496128 2007-11-11] (Václav Šimandl)
HKU\S-1-5-21-1140667397-1894699872-73031646-1001\...\Run: [Dropbox Update] => C:\Users\Svatava Zalabáková\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-07-06] (Dropbox, Inc.)
HKU\S-1-5-21-1140667397-1894699872-73031646-1001\...\MountPoints2: {fcd60305-4577-11e5-b87b-0027133629af} - D:\LG_PC_Programs.exe
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Svatava Zalabáková\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Svatava Zalabáková\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-11-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Svatava Zalabáková\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-11-05] (Dropbox, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2009-12-02]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\Users\Svatava Zalabáková\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-11-12]
ShortcutTarget: Dropbox.lnk -> C:\Users\Svatava Zalabáková\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 93.99.200.155 77.48.31.69
Tcpip\..\Interfaces\{2272253D-FB66-4BF2-84D0-FA89EF8B7E05}: [DhcpNameServer] 93.99.200.155 77.48.31.69
Internet Explorer:
==================
HKU\S-1-5-21-1140667397-1894699872-73031646-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/
HKU\S-1-5-21-1140667397-1894699872-73031646-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=cs_CZ&c=92&bd=all&pf=cmnb
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-09-05] (Adobe Systems Incorporated)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll [2015-03-04] (Oracle Corporation)
BHO: Pomocník pro přihlášení ke službě Windows Live -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-04] (Oracle Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2015-10-19] (Hewlett-Packard Company)
Toolbar: HKLM - No Name - {0BF43445-2F28-4351-9252-17FE6E806AA0} - No File
Toolbar: HKU\S-1-5-21-1140667397-1894699872-73031646-1001 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
FireFox:
========
FF Plugin: @canon.com/EPPEX -> C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [2009-03-27] (CANON INC.)
FF Plugin: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-04] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-04] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-22] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-22] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2011-09-05] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1140667397-1894699872-73031646-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-21] (Google Inc.)
FF Plugin HKU\S-1-5-21-1140667397-1894699872-73031646-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-21] (Google Inc.)
Chrome:
=======
CHR HomePage: Profile 1 -> hxxp://seznam.cz/
CHR Session Restore: Profile 1 -> is enabled.
CHR Plugin: (Shockwave Flash) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\46.0.2490.86\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Native Client) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\46.0.2490.86\ppGoogleNaClPluginChrome.dll => No File
CHR Plugin: (Chrome PDF Viewer) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\46.0.2490.86\pdf.dll => No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (CANON iMAGE GATEWAY Album Plugin Utility) - C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
CHR Plugin: (DivX Web Player) - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll => No File
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll => No File
CHR Plugin: (Java(TM) Platform SE 7 U9) - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll => No File
CHR Plugin: (Java Deployment Toolkit 7.0.90.5) - C:\windows\system32\npDeployJava1.dll => No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll => No File
CHR Profile: C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Default
CHR Profile: C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Profile 1
CHR Extension: (Disk Google) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (YouTube) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-29]
CHR Extension: (Vyhledávání Google) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-01]
CHR Extension: (Kalendář Google) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2015-10-15]
CHR Extension: (Dokumenty Google offline) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-19]
CHR Extension: (AdBlock) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-11-27]
CHR Extension: (iPiccy Photo Editor) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\imokeandodnlammaoenbgcnbhigjbpjh [2015-04-16]
CHR Extension: (AT_Tibi) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\kkejacdnegffabffbjebeloagdhmjoln [2012-11-18]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-24]
CHR Extension: (Gmail) - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-04]
StartMenuInternet: Google Chrome - C:\Users\Svatava Zalabáková\AppData\Local\Google\Chrome\Application\chrome.exe
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AgereModemAudio; C:\Program Files\LSI SoftModem\agrsmsvc.exe [26112 2009-12-03] (LSI Corporation)
R2 HPSupportSolutionsFrameworkService; C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [25800 2015-09-28] (Hewlett-Packard Company)
S3 IJPLMSVC; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [116104 2009-02-10] ()
R2 LightScribeService; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [73728 2009-06-17] (Hewlett-Packard Company) [File not signed]
S2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22216 2015-04-30] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [284504 2015-04-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
R2 yksvc; C:\windows\System32\yk62x86.dll [364544 2009-09-28] (Marvell)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 5U876UVC; C:\windows\System32\DRIVERS\5U876.sys [114688 2009-11-13] (Ricoh co.,Ltd.)
S3 MBAMProtector; C:\windows\system32\drivers\mbam.sys [23256 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\windows\system32\drivers\mwac.sys [51928 2015-10-05] (Malwarebytes Corporation)
S3 MfeAVFK; C:\windows\System32\drivers\MfeAVFK.sys [79816 2009-05-16] (McAfee, Inc.)
S3 MfeBOPK; C:\windows\System32\drivers\MfeBOPK.sys [35272 2009-05-16] (McAfee, Inc.)
R1 mfehidk; C:\windows\System32\drivers\mfehidk.sys [214024 2009-05-16] (McAfee, Inc.)
S3 MfeRKDK; C:\windows\System32\drivers\MfeRKDK.sys [34248 2009-05-16] (McAfee, Inc.)
R1 mfetdik; C:\windows\System32\drivers\mfetdik.sys [55336 2009-05-16] (McAfee, Inc.)
R0 MpFilter; C:\windows\System32\DRIVERS\MpFilter.sys [245096 2015-03-04] (Microsoft Corporation)
S3 UsbC; C:\windows\System32\Drivers\rcusbwdm.sys [65216 2007-11-19] (SafeNet, Inc.)
R3 yukonw7; C:\windows\System32\DRIVERS\yk62x86.sys [315392 2009-09-28] ()
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-11-29 12:13 - 2015-11-29 12:13 - 00017660 _____ C:\Users\Svatava Zalabáková\Desktop\FRST.txt
2015-11-29 12:11 - 2015-11-29 12:13 - 00000000 ____D C:\FRST
2015-11-29 12:05 - 2015-11-29 12:05 - 00112640 _____ (forum.viry.cz) C:\Users\Svatava Zalabáková\Desktop\FRSTLauncher.exe
2015-11-29 11:58 - 2015-11-29 11:58 - 01720320 _____ (Farbar) C:\Users\Svatava Zalabáková\Desktop\FRST.exe
2015-11-28 16:45 - 2015-11-28 16:45 - 00000000 ____D C:\windows\LastGood
2015-11-28 16:44 - 2009-11-13 18:20 - 00114688 _____ (Ricoh co.,Ltd.) C:\windows\system32\Drivers\5U876.sys
2015-11-28 16:44 - 2009-11-06 11:59 - 00035328 _____ (Ricoh co.,Ltd.) C:\windows\system32\SET112B.tmp
2015-11-28 16:44 - 2009-11-06 11:41 - 00106496 _____ (Ricoh co.,Ltd.) C:\windows\system32\SET1189.tmp
2015-11-27 21:44 - 2015-11-27 21:46 - 00170200 _____ (Malwarebytes) C:\windows\system32\Drivers\MBAMSwissArmy.sys
2015-11-27 21:44 - 2015-11-27 21:44 - 00001060 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-11-27 21:44 - 2015-11-27 21:44 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-11-27 21:44 - 2015-11-27 21:44 - 00000000 ____D C:\Program Files\Malwarebytes Anti-Malware
2015-11-27 21:44 - 2015-10-05 09:50 - 00094936 _____ (Malwarebytes) C:\windows\system32\Drivers\mbamchameleon.sys
2015-11-27 21:44 - 2015-10-05 09:50 - 00051928 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mwac.sys
2015-11-27 21:44 - 2015-10-05 09:50 - 00023256 _____ (Malwarebytes) C:\windows\system32\Drivers\mbam.sys
2015-11-27 16:59 - 2015-11-27 16:59 - 00000000 __SHD C:\found.000
2015-11-27 16:34 - 2015-11-27 16:35 - 00000000 ____D C:\Users\Svatava Zalabáková\Desktop\CrystalDiskInfo5_0_0
2015-11-24 21:13 - 2015-11-26 12:51 - 00000000 ____D C:\Users\Svatava Zalabáková\Desktop\Nová složka (3)
2015-11-19 21:32 - 2015-11-19 21:43 - 00000000 ____D C:\Users\Svatava Zalabáková\Desktop\Nová složka
2015-11-19 14:07 - 2015-11-19 14:07 - 00002173 _____ C:\Users\Svatava Zalabáková\Desktop\HP Support Assistant.lnk
2015-11-19 14:07 - 2015-11-19 14:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2015-11-18 21:36 - 2015-11-18 21:46 - 00001827 _____ C:\Users\Svatava Zalabáková\Documents\SyncSettingsHODY.ffs_gui
2015-11-18 20:51 - 2015-11-18 21:49 - 00000000 ____D C:\Users\Svatava Zalabáková\AppData\Roaming\FreeFileSync
2015-11-18 20:50 - 2015-11-18 20:50 - 00001091 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeFileSync.lnk
2015-11-18 20:50 - 2015-11-18 20:50 - 00001079 _____ C:\Users\Public\Desktop\FreeFileSync.lnk
2015-11-18 20:50 - 2015-11-18 20:50 - 00001077 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealtimeSync.lnk
2015-11-18 20:50 - 2015-11-18 20:50 - 00001065 _____ C:\Users\Public\Desktop\RealtimeSync.lnk
2015-11-18 20:50 - 2015-11-18 20:50 - 00000000 ____D C:\Program Files\FreeFileSync
2015-11-12 16:41 - 2015-11-03 18:46 - 02386944 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2015-11-12 13:27 - 2015-11-12 13:27 - 00000000 ____D C:\Users\Svatava Zalabáková\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-11-11 13:33 - 2015-10-20 18:46 - 02955776 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll
2015-11-11 13:33 - 2015-10-20 18:46 - 02061824 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2015-11-11 13:33 - 2015-10-20 18:46 - 00566784 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2015-11-11 13:33 - 2015-10-20 18:46 - 00174080 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll
2015-11-11 13:33 - 2015-10-20 18:46 - 00093696 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll
2015-11-11 13:33 - 2015-10-20 18:46 - 00035840 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll
2015-11-11 13:33 - 2015-10-20 18:46 - 00030208 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2015-11-11 13:33 - 2015-10-20 18:45 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2015-11-11 13:33 - 2015-10-20 18:45 - 00073728 _____ (Microsoft Corporation) C:\windows\system32\WinSetupUI.dll
2015-11-11 13:33 - 2015-10-20 18:45 - 00035328 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe
2015-11-11 13:33 - 2015-10-20 18:45 - 00011776 _____ (Microsoft Corporation) C:\windows\system32\wu.upgrade.ps.dll
2015-11-11 13:32 - 2015-10-29 18:50 - 00005120 _____ (Microsoft Corporation) C:\windows\system32\shimeng.dll
2015-11-11 13:32 - 2015-10-29 18:49 - 00295936 _____ (Microsoft Corporation) C:\windows\system32\apphelp.dll
2015-11-11 13:32 - 2015-10-29 18:49 - 00062464 _____ (Microsoft Corporation) C:\windows\system32\aelupsvc.dll
2015-11-11 13:32 - 2015-10-29 18:49 - 00020992 _____ (Microsoft Corporation) C:\windows\system32\sdbinst.exe
2015-11-11 13:32 - 2015-10-20 01:52 - 03991488 _____ (Microsoft Corporation) C:\windows\system32\ntkrnlpa.exe
2015-11-11 13:32 - 2015-10-20 01:52 - 03935680 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2015-11-11 13:32 - 2015-10-20 01:52 - 00138176 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2015-11-11 13:32 - 2015-10-20 01:52 - 00067520 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2015-11-11 13:32 - 2015-10-20 01:48 - 01308160 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 01061376 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00655360 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00552960 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00400896 _____ (Microsoft Corporation) C:\windows\system32\srcore.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00262656 _____ (Microsoft Corporation) C:\windows\system32\rstrui.exe
2015-11-11 13:32 - 2015-10-20 01:45 - 00259584 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00251392 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00223232 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00172032 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00100352 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00069632 _____ (Microsoft Corporation) C:\windows\system32\smss.exe
2015-11-11 13:32 - 2015-10-20 01:45 - 00065536 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00043008 _____ (Microsoft Corporation) C:\windows\system32\srclient.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00038912 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\cryptbase.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00017408 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2015-11-11 13:32 - 2015-10-20 01:45 - 00015872 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll
2015-11-11 13:32 - 2015-10-20 01:44 - 00050176 _____ (Microsoft Corporation) C:\windows\system32\auditpol.exe
2015-11-11 13:32 - 2015-10-20 01:44 - 00022528 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2015-11-11 13:32 - 2015-10-20 01:39 - 00146432 _____ (Microsoft Corporation) C:\windows\system32\msaudite.dll
2015-11-11 13:32 - 2015-10-20 01:39 - 00060416 _____ (Microsoft Corporation) C:\windows\system32\msobjs.dll
2015-11-11 13:32 - 2015-10-20 01:35 - 00686080 _____ (Microsoft Corporation) C:\windows\system32\adtschema.dll
2015-11-11 13:32 - 2015-10-20 01:35 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\apisetschema.dll
2015-11-11 13:32 - 2015-10-20 00:29 - 00225792 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb10.sys
2015-11-11 13:32 - 2015-10-20 00:28 - 00124416 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb.sys
2015-11-11 13:32 - 2015-10-20 00:28 - 00098304 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb20.sys
2015-11-11 13:32 - 2015-10-13 17:31 - 00338944 _____ (Microsoft Corporation) C:\windows\system32\Drivers\afd.sys
2015-11-11 13:32 - 2015-10-13 17:31 - 00074752 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tdx.sys
2015-11-11 13:31 - 2015-11-03 22:51 - 00342728 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2015-11-11 13:31 - 2015-10-30 23:58 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2015-11-11 13:31 - 2015-10-30 23:58 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2015-11-11 13:31 - 2015-10-30 23:52 - 20331520 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2015-11-11 13:31 - 2015-10-30 23:47 - 00504832 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2015-11-11 13:31 - 2015-10-30 23:46 - 00062464 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2015-11-11 13:31 - 2015-10-30 23:45 - 00341504 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2015-11-11 13:31 - 2015-10-30 23:45 - 00047616 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2015-11-11 13:31 - 2015-10-30 23:44 - 00064000 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2015-11-11 13:31 - 2015-10-30 23:42 - 02279936 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2015-11-11 13:31 - 2015-10-30 23:39 - 00047104 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2015-11-11 13:31 - 2015-10-30 23:39 - 00030720 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2015-11-11 13:31 - 2015-10-30 23:37 - 00480256 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2015-11-11 13:31 - 2015-10-30 23:36 - 00663552 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2015-11-11 13:31 - 2015-10-30 23:36 - 00620032 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2015-11-11 13:31 - 2015-10-30 23:36 - 00115712 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2015-11-11 13:31 - 2015-10-30 23:36 - 00102912 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2015-11-11 13:31 - 2015-10-30 23:31 - 00667648 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2015-11-11 13:31 - 2015-10-30 23:28 - 00416256 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2015-11-11 13:31 - 2015-10-30 23:23 - 00060416 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2015-11-11 13:31 - 2015-10-30 23:21 - 00168960 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2015-11-11 13:31 - 2015-10-30 23:19 - 00076288 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2015-11-11 13:31 - 2015-10-30 23:18 - 00279040 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2015-11-11 13:31 - 2015-10-30 23:17 - 00130048 _____ (Microsoft Corporation) C:\windows\system32\occache.dll
2015-11-11 13:31 - 2015-10-30 23:16 - 04527616 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2015-11-11 13:31 - 2015-10-30 23:11 - 00230400 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2015-11-11 13:31 - 2015-10-30 23:10 - 00689152 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2015-11-11 13:31 - 2015-10-30 23:09 - 12854272 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2015-11-11 13:31 - 2015-10-30 23:09 - 02052608 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2015-11-11 13:31 - 2015-10-30 23:09 - 01155072 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2015-11-11 13:31 - 2015-10-30 23:09 - 00686080 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2015-11-11 13:31 - 2015-10-30 22:51 - 02011136 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2015-11-11 13:31 - 2015-10-30 22:48 - 01311744 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2015-11-11 13:31 - 2015-10-30 22:46 - 00710144 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2015-11-11 13:31 - 2015-10-13 05:50 - 00712640 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndis.sys
2015-11-11 13:31 - 2015-10-01 18:50 - 00216064 _____ (Microsoft Corporation) C:\windows\system32\InkEd.dll
2015-11-11 13:31 - 2015-10-01 18:50 - 00019968 _____ (Microsoft Corporation) C:\windows\system32\jnwmon.dll
2015-11-11 13:31 - 2015-09-23 14:09 - 00371920 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys
2015-11-11 13:31 - 2015-09-23 14:09 - 00251000 _____ (Microsoft Corporation) C:\windows\system32\bcryptprimitives.dll
2015-11-06 21:59 - 2015-11-06 22:06 - 00000000 ____D C:\Program Files\trend micro
2015-11-06 21:59 - 2015-11-06 22:01 - 00000000 ____D C:\rsit
2015-11-06 21:59 - 2015-11-06 21:59 - 01107968 _____ C:\Users\Svatava Zalabáková\Desktop\RSIT (1).exe
2015-11-06 21:56 - 2015-11-06 21:56 - 01107968 _____ C:\Users\Svatava Zalabáková\Desktop\Nepotvrzeno 395122.crdownload
2015-11-06 21:44 - 2015-11-27 16:49 - 00000000 ____D C:\AdwCleaner
2015-11-06 21:11 - 2015-11-06 21:11 - 00001795 _____ C:\Users\Svatava Zalabáková\Desktop\grping.lnk
2015-11-06 21:11 - 2015-11-06 21:11 - 00000000 ____D C:\Users\Svatava Zalabáková\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GrPing
2015-11-06 21:11 - 2015-11-06 21:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GrPing
2015-11-06 21:11 - 2015-11-06 21:11 - 00000000 ____D C:\Program Files\GrPing
2015-11-06 08:46 - 2010-02-23 19:15 - 00002039 _____ C:\Users\Svatava Zalabáková\Desktop\Canon Easy-PhotoPrint EX.lnk
2015-11-02 19:36 - 2015-11-02 19:39 - 00000000 ____D C:\Users\Svatava Zalabáková\Desktop\Fotky zařadit
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-11-29 12:12 - 2009-07-14 03:37 - 00000000 ____D C:\Windows
2015-11-29 12:03 - 2009-07-14 05:34 - 00022688 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-11-29 12:03 - 2009-07-14 05:34 - 00022688 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-11-29 12:00 - 2010-02-03 22:37 - 00000940 _____ C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-11-29 11:55 - 2015-07-06 18:30 - 00000970 _____ C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001UA.job
2015-11-29 11:55 - 2011-07-03 19:31 - 00001014 _____ C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001UA.job
2015-11-29 11:36 - 2010-02-03 22:37 - 00000936 _____ C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-11-29 11:35 - 2012-05-10 05:59 - 00000914 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2015-11-29 10:54 - 2015-07-06 18:30 - 00000918 _____ C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001Core.job
2015-11-29 10:51 - 2011-07-03 19:31 - 00000962 _____ C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001Core.job
2015-11-28 16:45 - 2009-07-14 03:37 - 00000000 ____D C:\windows\inf
2015-11-28 16:44 - 2009-07-27 17:13 - 00000000 ___HD C:\SYSTEM.SAV
2015-11-28 16:44 - 2009-07-27 17:13 - 00000000 ____D C:\swsetup
2015-11-27 21:16 - 2009-09-20 08:54 - 00669132 _____ C:\windows\system32\perfh005.dat
2015-11-27 21:16 - 2009-09-20 08:54 - 00141760 _____ C:\windows\system32\perfc005.dat
2015-11-27 21:16 - 2009-09-20 08:17 - 01584626 _____ C:\windows\system32\PerfStringBackup.INI
2015-11-27 17:07 - 2013-12-28 20:28 - 00000000 ___RD C:\Users\Svatava Zalabáková\Dropbox
2015-11-27 17:07 - 2013-12-28 20:24 - 00000000 ____D C:\Users\Svatava Zalabáková\AppData\Roaming\Dropbox
2015-11-27 17:05 - 2009-07-14 05:53 - 00000006 ____H C:\windows\Tasks\SA.DAT
2015-11-25 10:00 - 2015-08-28 14:50 - 00000000 ____D C:\Users\Svatava Zalabáková\AppData\Roaming\vlc
2015-11-23 08:19 - 2015-07-30 19:13 - 00000372 _____ C:\windows\Tasks\HPCeeScheduleForSvatava Zalabáková.job
2015-11-19 14:15 - 2009-09-20 08:14 - 00000000 ____D C:\ProgramData\Hewlett-Packard
2015-11-19 14:13 - 2009-12-02 13:23 - 00000000 ____D C:\Users\Svatava Zalabáková\AppData\Local\Hewlett-Packard
2015-11-19 14:13 - 2009-12-02 13:18 - 00000000 ____D C:\Users\Svatava Zalabáková
2015-11-19 14:11 - 2009-07-14 05:33 - 00465064 _____ C:\windows\system32\FNTCACHE.DAT
2015-11-19 14:07 - 2009-07-14 03:37 - 00000000 ____D C:\windows\Help
2015-11-19 14:01 - 2009-12-02 13:26 - 00126608 _____ C:\Users\Svatava Zalabáková\AppData\Local\GDIPFONTCACHEV1.DAT
2015-11-19 14:01 - 2009-09-20 08:10 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2015-11-19 14:01 - 2009-09-20 08:08 - 00000000 ____D C:\Program Files\Hewlett-Packard
2015-11-14 18:49 - 2012-05-10 05:59 - 00780488 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerApp.exe
2015-11-14 18:49 - 2011-12-09 11:07 - 00142536 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerCPLApp.cpl
2015-11-12 13:43 - 2009-07-27 12:09 - 00000000 ____D C:\Program Files\Windows Journal
2015-11-12 13:30 - 2013-08-16 08:15 - 00000000 ____D C:\windows\system32\MRT
2015-11-12 09:12 - 2009-12-02 14:10 - 143250520 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2015-11-04 12:36 - 2013-11-25 13:35 - 00000000 ____D C:\Users\Svatava Zalabáková\Desktop\STARÉ FOTO Hana, Vašek
2015-11-03 18:08 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\NDF
2015-11-03 17:53 - 2012-06-19 15:18 - 00000000 ____D C:\Users\Svatava Zalabáková\AppData\Local\ElevatedDiagnostics
==================== Files in the root of some directories =======
2011-10-16 20:57 - 2012-01-17 15:04 - 0482956 _____ () C:\Users\Svatava Zalabáková\AppData\Roaming\mdbu.bin
2009-12-02 13:55 - 2009-12-02 13:55 - 0000000 _____ () C:\Users\Svatava Zalabáková\AppData\Local\AtStart.txt
2010-07-14 18:54 - 2010-12-29 13:29 - 0009728 _____ () C:\Users\Svatava Zalabáková\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2009-12-02 13:55 - 2009-12-02 13:55 - 0000000 _____ () C:\Users\Svatava Zalabáková\AppData\Local\DSwitch.txt
2009-12-02 13:55 - 2009-12-02 13:55 - 0000000 _____ () C:\Users\Svatava Zalabáková\AppData\Local\QSwitch.txt
2011-11-28 07:38 - 2013-03-25 20:27 - 0007606 _____ () C:\Users\Svatava Zalabáková\AppData\Local\resmon.resmoncfg
2010-05-25 19:30 - 2010-05-25 19:30 - 0000056 ____H () C:\ProgramData\ezsidmv.dat
2009-09-20 08:39 - 2009-09-20 08:39 - 0000191 _____ () C:\ProgramData\HPWALog.txt
Some files in TEMP:
====================
C:\Users\Svatava Zalabáková\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpq_pwnk.dll
C:\Users\Svatava Zalabáková\AppData\Local\Temp\HPSFUpdater.exe
C:\Users\Svatava Zalabáková\AppData\Local\Temp\sqlite3.dll
C:\Users\Svatava Zalabáková\AppData\Local\Temp\UninstallHPSA.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\windows\explorer.exe => File is digitally signed
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\dnsapi.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001Core.job => C:\Users\Svatava Zalabáková\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001UA.job => C:\Users\Svatava Zalabáková\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001Core.job => C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001UA.job => C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForSvatava Zalabáková.job => C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Microsoft Security Essentials (Enabled - Up to date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A}
AS: Microsoft Security Essentials (Enabled - Up to date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Svatava Zalab�kov�\Desktop" je 35450 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000001
==================== End Of Log ==============================
- Přílohy
-
- Addition.rar
- (7.33 KiB) Staženo 43 x
Re: Prosím o pomoc s logem
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Svatava Zalab�kov�\Desktop" je 35450 MB.
Kód: Vybrat vše
Start
CloseProcesses:
CreateRestorePoint:
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [937920 2011-06-06] (Adobe Systems Incorporated)
HKLM\...\RunOnce: [AvgUninstallURL] => cmd.exe /c start hxxp://www.avg.com/ww.special-uninstall ... gBQAEEATgA"&"inst=NwA3AC0ANAA0AD (the data entry has 96 more characters).
HKU\S-1-5-21-1140667397-1894699872-73031646-1001\...\Run: [Google Update] => C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-09-02] (Google Inc.)
Toolbar: HKLM - No Name - {0BF43445-2F28-4351-9252-17FE6E806AA0} - No File
Toolbar: HKU\S-1-5-21-1140667397-1894699872-73031646-1001 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
CHR Plugin: (DivX Web Player) - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll => No File
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll => No File
CHR Plugin: (Java(TM) Platform SE 7 U9) - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll => No File
CHR Plugin: (Java Deployment Toolkit 7.0.90.5) - C:\windows\system32\npDeployJava1.dll => No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll => No File
S3 MfeAVFK; C:\windows\System32\drivers\MfeAVFK.sys [79816 2009-05-16] (McAfee, Inc.)
S3 MfeBOPK; C:\windows\System32\drivers\MfeBOPK.sys [35272 2009-05-16] (McAfee, Inc.)
R1 mfehidk; C:\windows\System32\drivers\mfehidk.sys [214024 2009-05-16] (McAfee, Inc.)
S3 MfeRKDK; C:\windows\System32\drivers\MfeRKDK.sys [34248 2009-05-16] (McAfee, Inc.)
R1 mfetdik; C:\windows\System32\drivers\mfetdik.sys [55336 2009-05-16] (McAfee, Inc.)
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-27 144200]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-27 144200]
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001Core.job => C:\Users\Svatava Zalabáková\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001UA.job => C:\Users\Svatava Zalabáková\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001Core.job => C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001UA.job => C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe
Hosts:
EmptyTemp:
Reboot:
EndKliknete na napis Ulozit jako...
Napiste spravne ten cerveny nazev fixlist a ulozte na plochu.
Vypnete antivir i dalsi pripadne zabezpeceni.
Spustte FRST jako spravce, kliknete na napis Fix a program vykona prikazy.
Po restartu pc by se mel objevit novy log - s nazvem fixlog, ten mi sem zase zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Prosím o pomoc s logem
Dobrý večer, tak jsem uvlolnil plochu a vkládám log po provedení operace:
Fix result of Farbar Recovery Scan Tool (x86) Version:30-11-2015
Ran by Svatava Zalabáková (2015-11-30 21:02:15) Run:1
Running from C:\Users\Svatava Zalabáková\Desktop
Loaded Profiles: Svatava Zalabáková (Available Profiles: Svatava Zalabáková)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [937920 2011-06-06] (Adobe Systems Incorporated)
HKLM\...\RunOnce: [AvgUninstallURL] => cmd.exe /c start hxxp://www.avg.com/ww.special-uninstall ... gBQAEEATgA"&"inst=NwA3AC0ANAA0AD (the data entry has 96 more characters).
HKU\S-1-5-21-1140667397-1894699872-73031646-1001\...\Run: [Google Update] => C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-09-02] (Google Inc.)
Toolbar: HKLM - No Name - {0BF43445-2F28-4351-9252-17FE6E806AA0} - No File
Toolbar: HKU\S-1-5-21-1140667397-1894699872-73031646-1001 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
CHR Plugin: (DivX Web Player) - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll => No File
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll => No File
CHR Plugin: (Java(TM) Platform SE 7 U9) - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll => No File
CHR Plugin: (Java Deployment Toolkit 7.0.90.5) - C:\windows\system32\npDeployJava1.dll => No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll => No File
S3 MfeAVFK; C:\windows\System32\drivers\MfeAVFK.sys [79816 2009-05-16] (McAfee, Inc.)
S3 MfeBOPK; C:\windows\System32\drivers\MfeBOPK.sys [35272 2009-05-16] (McAfee, Inc.)
R1 mfehidk; C:\windows\System32\drivers\mfehidk.sys [214024 2009-05-16] (McAfee, Inc.)
S3 MfeRKDK; C:\windows\System32\drivers\MfeRKDK.sys [34248 2009-05-16] (McAfee, Inc.)
R1 mfetdik; C:\windows\System32\drivers\mfetdik.sys [55336 2009-05-16] (McAfee, Inc.)
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-27 144200]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-27 144200]
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001Core.job => C:\Users\Svatava Zalabáková\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001UA.job => C:\Users\Svatava Zalabáková\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001Core.job => C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001UA.job => C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe
Hosts:
EmptyTemp:
Reboot:
End
*****************
Processes closed successfully.
Restore point was successfully created.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value removed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\\AvgUninstallURL => value removed successfully.
HKU\S-1-5-21-1140667397-1894699872-73031646-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update => value removed successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{0BF43445-2F28-4351-9252-17FE6E806AA0} => value removed successfully.
HKCR\CLSID\{0BF43445-2F28-4351-9252-17FE6E806AA0} => key not found.
HKU\S-1-5-21-1140667397-1894699872-73031646-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => value removed successfully.
HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => key not found.
C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll => not found.
C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll => not found.
C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll => not found.
C:\windows\system32\npDeployJava1.dll => not found.
c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll => not found.
MfeAVFK => service removed successfully.
MfeBOPK => service removed successfully.
mfehidk => Unable to stop service.
mfehidk => service removed successfully.
MfeRKDK => service removed successfully.
mfetdik => Unable to stop service.
mfetdik => service removed successfully.
AdobeARMservice => service removed successfully.
gupdate => service removed successfully.
SkypeUpdate => service removed successfully.
gupdatem => service removed successfully.
C:\windows\Tasks\Adobe Flash Player Updater.job => moved successfully
C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001Core.job => moved successfully
C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001UA.job => moved successfully
C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001Core.job => moved successfully
C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001UA.job => moved successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.
EmptyTemp: => 1.4 GB temporary data Removed.
The system needed a reboot.
==== End of Fixlog 21:04:14 ====
Fix result of Farbar Recovery Scan Tool (x86) Version:30-11-2015
Ran by Svatava Zalabáková (2015-11-30 21:02:15) Run:1
Running from C:\Users\Svatava Zalabáková\Desktop
Loaded Profiles: Svatava Zalabáková (Available Profiles: Svatava Zalabáková)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [937920 2011-06-06] (Adobe Systems Incorporated)
HKLM\...\RunOnce: [AvgUninstallURL] => cmd.exe /c start hxxp://www.avg.com/ww.special-uninstall ... gBQAEEATgA"&"inst=NwA3AC0ANAA0AD (the data entry has 96 more characters).
HKU\S-1-5-21-1140667397-1894699872-73031646-1001\...\Run: [Google Update] => C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-09-02] (Google Inc.)
Toolbar: HKLM - No Name - {0BF43445-2F28-4351-9252-17FE6E806AA0} - No File
Toolbar: HKU\S-1-5-21-1140667397-1894699872-73031646-1001 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
CHR Plugin: (DivX Web Player) - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll => No File
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll => No File
CHR Plugin: (Java(TM) Platform SE 7 U9) - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll => No File
CHR Plugin: (Java Deployment Toolkit 7.0.90.5) - C:\windows\system32\npDeployJava1.dll => No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll => No File
S3 MfeAVFK; C:\windows\System32\drivers\MfeAVFK.sys [79816 2009-05-16] (McAfee, Inc.)
S3 MfeBOPK; C:\windows\System32\drivers\MfeBOPK.sys [35272 2009-05-16] (McAfee, Inc.)
R1 mfehidk; C:\windows\System32\drivers\mfehidk.sys [214024 2009-05-16] (McAfee, Inc.)
S3 MfeRKDK; C:\windows\System32\drivers\MfeRKDK.sys [34248 2009-05-16] (McAfee, Inc.)
R1 mfetdik; C:\windows\System32\drivers\mfetdik.sys [55336 2009-05-16] (McAfee, Inc.)
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-27 144200]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-27 144200]
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001Core.job => C:\Users\Svatava Zalabáková\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001UA.job => C:\Users\Svatava Zalabáková\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001Core.job => C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001UA.job => C:\Users\Svatava Zalabáková\AppData\Local\Google\Update\GoogleUpdate.exe
Hosts:
EmptyTemp:
Reboot:
End
*****************
Processes closed successfully.
Restore point was successfully created.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value removed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\\AvgUninstallURL => value removed successfully.
HKU\S-1-5-21-1140667397-1894699872-73031646-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update => value removed successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{0BF43445-2F28-4351-9252-17FE6E806AA0} => value removed successfully.
HKCR\CLSID\{0BF43445-2F28-4351-9252-17FE6E806AA0} => key not found.
HKU\S-1-5-21-1140667397-1894699872-73031646-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => value removed successfully.
HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => key not found.
C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll => not found.
C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll => not found.
C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll => not found.
C:\windows\system32\npDeployJava1.dll => not found.
c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll => not found.
MfeAVFK => service removed successfully.
MfeBOPK => service removed successfully.
mfehidk => Unable to stop service.
mfehidk => service removed successfully.
MfeRKDK => service removed successfully.
mfetdik => Unable to stop service.
mfetdik => service removed successfully.
AdobeARMservice => service removed successfully.
gupdate => service removed successfully.
SkypeUpdate => service removed successfully.
gupdatem => service removed successfully.
C:\windows\Tasks\Adobe Flash Player Updater.job => moved successfully
C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001Core.job => moved successfully
C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001UA.job => moved successfully
C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001Core.job => moved successfully
C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1140667397-1894699872-73031646-1001UA.job => moved successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.
EmptyTemp: => 1.4 GB temporary data Removed.
The system needed a reboot.
==== End of Fixlog 21:04:14 ====
Re: Prosím o pomoc s logem
vyosek píše:DelFix https://toolslib.net/downloads/finish/2/
- Stahnete a spustte
- Ponechte zatrzitkou pouze u volby Remove disinfection tools
- Kliknete na Run
Pri instalaci pozor na toolbar (ci jine doplnky), jestli vam nabidne jeho instalaci, tak zruste zatrzitko.
Po spusteni se ocitnete ve funkci Cistic. Vlevo je spousta zatrzitek. Pozor dejte hlavne na kos, pokud nechate zatrzene, vzdy ho vysype.
Dale, podle toho jak je nastaven, smaze vsechna hesla ulozena na netu!!! Takze jestli mate nastavene, at si pocitac hesla pamatuje (coz neni pro bezpecnost dobre), budete je muset pak napsat znova rucne (napr mail, facebook, ruzna fora atd.)
Kliknete na Analyzovat a az dokonci analyzu, kliknete na Spustit Cleaner.
Potom kliknete vlevo na funkci Registry
Kliknete na Hledej problemy, kdyz najde, kliknete na Opravit problemy. Nabidne Vam zalohu, tu udelejte a ulozte ji tak, at ji v pripade potreby najdete.
Funkce Nastroje umoznuje odinstalovani programu. Je dukladnejsi nez samotny windows!
(Pokud je v pc vice uzivatelskych uctu, pouzijte program i v nich)
Stahnete program Defraggler https://www.piriform.com/defraggler/download/standard
Pri instalaci opet pozor na toolbar a dalsi nesmysly.
Po nainstalovani program spustte a kliknete na Analyzovat, po analyze kliknete na Defragmentovat a programek odvede svou praci.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Prosím o pomoc s logem
Dobrý den, vše jsem teda provedl, defragmentace již dochází.
Děkuji Vám za profesionální přístup! Počítač se viditelně zrychlil, ale problémy s výpadky k wifi stále přetrvávají.
Sehnal jsem si druhý ntbk, abych vyloučil problém s wifi routerem. Ten je teda podle testů ok.
Zřejmě se teda bude jednat o chybu wifi adaptéru...?
V google chrome píše DNS_PROBE_FINISHED_NO_INTERNET... ale to už není asi Vaše práce
Děkuji Vám za profesionální přístup! Počítač se viditelně zrychlil, ale problémy s výpadky k wifi stále přetrvávají.
Sehnal jsem si druhý ntbk, abych vyloučil problém s wifi routerem. Ten je teda podle testů ok.
Zřejmě se teda bude jednat o chybu wifi adaptéru...?
V google chrome píše DNS_PROBE_FINISHED_NO_INTERNET... ale to už není asi Vaše práce
Re: Prosím o pomoc s logem
20.2. pro neaktivitu
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).


Přispějete na provoz fóra?