Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

kontrola logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
majkllgg
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 16 srp 2016 20:30

kontrola logu

#1 Příspěvek od majkllgg »

Moc prosím o kontrolu logu.
Pomalé PC,vyskakující okna,
Avast našel a přesunul do truhly:Rootkit-gen,Dropper-gen,Adware-gen



Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15-08-2016 01
Ran by olga b (administrator) on DESKTOP-LJVVV29 (16-08-2016 21:41:12)
Running from C:\Users\olga b\Desktop
Loaded Profiles: olga b (Available Profiles: olga b)
Platform: Windows 10 Home (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Qksee Pvt Ltd.) C:\Program Files (x86)\qksee\qkseeSvc.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.2.2.524\AsusWSWinService.exe
(ASUS) C:\Program Files (x86)\ASUS\ASUS GIFTBOX Desktop\ASUSGiftBoxDesktop.exe
(Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe
(Trend Corp.) C:\Windows\Temp\_avast_\unp203798716.tmp
(Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fb_inet_server.exe
() C:\Program Files\AVAST Software\SecureLine\vpnsvc.exe
(TODO: <Company name>) C:\Windows\Temp\_avast_\unp203677473.tmp
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe
(Reimage®) C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
() C:\Windows\Temp\_avast_\unp13230391.tmp
(WFini LIMITED) C:\ProgramData\uwinpu\WFini.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10_50.DUEL\MSSQL\Binn\sqlservr.exe
(Reimage®) C:\Program Files\Reimage\Reimage Protector\ReiSystem.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Acresso Corporation) C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
(AVAST Software) C:\Program Files\AVAST Software\SecureLine\secureline.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfPro5Hook.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
(ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.2.2.524\AsusWSPanel.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(forum.viry.cz) C:\Users\olga b\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM-x32\...\Run: [WebStorage] => C:\Program Files (x86)\ASUS\WebStorage\2.2.2.524\ASUSWSLoader.exe [63272 2015-05-31] ()
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [9103976 2016-08-16] (AVAST Software)
HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [46368 2010-03-09] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [29984 2010-03-09] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PPort12reminder] => "C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\12\Config\Ereg\Ereg.ini"
HKLM-x32\...\Run: [PDFHook] => C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfpro5hook.exe [636192 2010-03-05] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PDF5 Registry Controller] => C:\Program Files (x86)\Nuance\PDF Viewer Plus\RegistryController.exe [62752 2010-03-05] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [143360 2012-09-06] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3076096 2012-06-06] (Brother Industries, Ltd.)
HKU\S-1-5-21-4008709856-33150063-3746546202-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4289728 2016-04-12] (Disc Soft Ltd)
HKU\S-1-5-21-4008709856-33150063-3746546202-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8894680 2016-08-05] (Piriform Ltd)
HKU\S-1-5-21-4008709856-33150063-3746546202-1001\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496 2009-05-05] (Acresso Corporation)
HKU\S-1-5-21-4008709856-33150063-3746546202-1001\...\MountPoints2: {6300f034-1c5c-11e6-9bd4-80a5895cc8ec} - "G:\setup.EXE" /AUTORUN
ShellIconOverlayIdentifiers: [!AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7191} => C:\Program Files (x86)\Common Files\AWS\2.2.2.524\ASUSWSShellExt64.dll [2015-04-22] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D809} => C:\Program Files (x86)\Common Files\AWS\2.2.2.524\ASUSWSShellExt64.dll [2015-04-22] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4E} => C:\Program Files (x86)\Common Files\AWS\2.2.2.524\ASUSWSShellExt64.dll [2015-04-22] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-08-16] (AVAST Software)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\avast! SecureLine.lnk [2016-01-08]
ShortcutTarget: avast! SecureLine.lnk -> C:\Program Files\AVAST Software\SecureLine\SecureLine.exe (AVAST Software)
Startup: C:\Users\olga b\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Poslat do aplikace OneNote.lnk [2016-05-21]
ShortcutTarget: Poslat do aplikace OneNote.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation)
BootExecute: autocheck autochk * aswBoot.exe /M:5eaa50e5 /wow /dir:"C:\Program Files\AVAST Software\Avast"

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

AutoConfigURL: [S-1-5-21-4008709856-33150063-3746546202-1001] => hxxp://unstops.biz/wpad.dat?16dc1d8656caa5dbb9eb5518d6e40f0010405013
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{1eb61279-a5ee-4691-b5a0-317d9ef0eb54}: [DhcpNameServer] 172.30.1.1
Tcpip\..\Interfaces\{e009fe8b-9376-4947-b341-edf4b332ce9e}: [DhcpNameServer] 192.168.0.1
ManualProxies: 0hxxp://unstops.biz/wpad.dat?16dc1d8656caa5dbb9eb5518d6e40f0010405013

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.nuesearch.com/?type=hp&ts=146891438 ... X35JXTJNDT
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.nuesearch.com/?type=hp&ts=146891438 ... X35JXTJNDT
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.nuesearch.com/search/?type=ds&ts=14 ... earchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.nuesearch.com/search/?type=ds&ts=14 ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.nuesearch.com/?type=hp&ts=146891438 ... X35JXTJNDT
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.nuesearch.com/?type=hp&ts=146891438 ... X35JXTJNDT
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.nuesearch.com/search/?type=ds&ts=14 ... earchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.nuesearch.com/search/?type=ds&ts=14 ... earchTerms}
HKU\S-1-5-21-4008709856-33150063-3746546202-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.nuesearch.com/search/?type=ds&ts=14 ... earchTerms}
HKU\S-1-5-21-4008709856-33150063-3746546202-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.nuesearch.com/?type=hp&ts=146891438 ... X35JXTJNDT
HKU\S-1-5-21-4008709856-33150063-3746546202-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.nuesearch.com/?type=hp&ts=146891438 ... X35JXTJNDT
HKU\S-1-5-21-4008709856-33150063-3746546202-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.nuesearch.com/search/?type=ds&ts=14 ... earchTerms}
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nuesearch.com/search/?type=ds&ts=14 ... earchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nuesearch.com/search/?type=ds&ts=14 ... earchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nuesearch.com/search/?type=ds&ts=14 ... earchTerms}
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nuesearch.com/search/?type=ds&ts=14 ... earchTerms}
SearchScopes: HKU\S-1-5-21-4008709856-33150063-3746546202-1001 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nuesearch.com/search/?type=ds&ts=14 ... earchTerms}
SearchScopes: HKU\S-1-5-21-4008709856-33150063-3746546202-1001 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nuesearch.com/search/?type=ds&ts=14 ... earchTerms}
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-08-03] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-08-03] (Microsoft Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2016-08-03] (Microsoft Corporation)
BHO-x32: PlusIEEventHelper Class -> {551A852F-39A6-44A7-9C13-AFBEC9185A9D} -> C:\Program Files (x86)\Nuance\PDF Viewer Plus\Bin\PlusIEContextMenu.dll [2009-02-06] (Zeon Corporation)
BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2015-04-30] (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL [2016-08-03] (Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-03] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-03] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-03] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-03] (Microsoft Corporation)

Edge:
======
Edge HomeButtonPage: HKU\S-1-5-21-4008709856-33150063-3746546202-1001 -> hxxp://www.nuesearch.com/?type=hp&ts=146891438 ... X35JXTJNDT

FireFox:
========
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIIPT.dll [2014-07-02] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIUpdater.dll [2014-07-02] (Intel Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-08-03] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-08-03] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-01] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-01] (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2014-11-15] ()
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-06-30] (Adobe Systems Inc.)
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-08-16]
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Extension: Avast SafePrice - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-08-16]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF

Chrome:
=======
CHR HomePage: Default -> hxxp://www.nuesearch.com/?type=hp&ts=146891438 ... X35JXTJNDT
CHR StartupUrls: Default -> "hxxp://www.nuesearch.com/?type=hp&ts=146891438 ... X35JXTJNDT"
CHR DefaultSearchURL: Default -> hxxp://www.nuesearch.com/search/?type=ds&ts=14 ... earchTerms}
CHR DefaultSearchKeyword: Default -> nuesearch
CHR Profile: C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-05-22]
CHR Extension: (Dokumenty Google) - C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-05-22]
CHR Extension: (Disk Google) - C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-05-22]
CHR Extension: (YouTube) - C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-05-22]
CHR Extension: (Dokumenty Google offline) - C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-05-22]
CHR Extension: (Avast Online Security) - C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-05-22]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-05-22]
CHR Extension: (Gmail) - C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-05-22]
CHR Extension: (Chrome Media Router) - C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-08-11]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx <not found>

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.2.2.524\AsusWSWinService.exe [71168 2015-05-31] (ASUS Cloud Corporation) [File not signed]
R2 ASUSGiftBoxDekstop; C:\Program Files (x86)\ASUS\ASUS GIFTBOX Desktop\ASUSGIFTBOXDesktop.exe [313488 2015-06-12] (ASUS) [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [323152 2015-07-29] (Windows (R) Win 7 DDK provider)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2016-08-16] (AVAST Software)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [266240 2012-06-05] (Brother Industries, Ltd.) [File not signed]
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2950856 2016-07-25] (Microsoft Corporation)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1443520 2016-04-12] (Disc Soft Ltd)
R2 esifsvc; C:\Windows\SysWOW64\esif_uf.exe [1385640 2015-08-17] (Intel Corporation)
R2 FirebirdServerDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fb_inet_server.exe [3727360 2010-09-17] (Firebird Project) [File not signed]
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [373312 2015-04-14] (WildTangent)
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [353896 2015-10-26] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [881152 2015-05-22] (Intel(R) Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [File not signed]
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe [174368 2015-04-21] (Intel Corporation)
R2 MSSQL$DUEL; C:\Program Files\Microsoft SQL Server\MSSQL10_50.DUEL\MSSQL\Binn\sqlservr.exe [62218696 2012-06-29] (Microsoft Corporation)
S3 ose; c:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [200240 2016-07-23] (Microsoft Corporation) [File not signed]
R2 PDFProFiltSrvPP; C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe [144672 2010-03-09] (Nuance Communications, Inc.)
R2 qkseeService; C:\Program Files (x86)\qksee\qkseeSvc.exe [733912 2016-07-07] (Qksee Pvt Ltd.)
R2 ReimageRealTimeProtector; C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [7942000 2016-08-09] (Reimage®)
R2 SecureLine; C:\Program Files\AVAST Software\SecureLine\VpnSvc.exe [592392 2016-06-27] ()
S2 shefaleCloudservice; C:\Program Files (x86)\Shefale\shefaleCloudservice.exe [985752 2016-05-19] ()
S4 SQLAgent$DUEL; C:\Program Files\Microsoft SQL Server\MSSQL10_50.DUEL\MSSQL\Binn\SQLAGENT.EXE [441288 2012-06-29] (Microsoft Corporation)
R2 WdMan; C:\ProgramData\uwinpu\WFini.exe [541928 2016-08-15] (WFini LIMITED)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24856 2016-08-03] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 AsusSGDrv; C:\Windows\system32\DRIVERS\AsusSGDrv.sys [138744 2015-08-17] (ASUS Corporation)
R3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-08-16] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-08-16] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108816 2016-08-16] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-08-16] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-08-16] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [969560 2016-08-16] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [513496 2016-08-16] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [163416 2016-08-16] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [292704 2016-08-16] (AVAST Software)
R3 athr; C:\Windows\System32\drivers\athw10x.sys [4323976 2015-09-08] (Qualcomm Atheros Communications, Inc.)
R3 dptf_cpu; C:\Windows\System32\drivers\dptf_cpu.sys [53752 2015-08-17] (Intel Corporation)
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2016-05-21] (Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [47672 2016-05-21] (Disc Soft Ltd)
R3 esif_lf; C:\Windows\system32\DRIVERS\esif_lf.sys [261624 2015-08-17] (Intel Corporation)
R3 iagpioe; C:\Windows\System32\drivers\iagpioe.sys [41984 2015-06-03] (Intel(R) Corporation)
R3 iai2ce; C:\Windows\System32\drivers\iai2ce.sys [89592 2015-06-03] (Intel(R) Corporation)
R3 igfxLP; C:\Windows\system32\DRIVERS\igdkmd64lp.sys [5906320 2015-10-26] (Intel Corporation)
S4 RsFx0153; C:\Windows\System32\DRIVERS\RsFx0153.sys [321992 2012-06-29] (Microsoft Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [887552 2015-07-15] (Realtek )
R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [146232 2015-06-26] (Intel Corporation)
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
U0 msahci; system32\drivers\msahci.sys [X]
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-08-16 21:41 - 2016-08-16 21:42 - 00027062 _____ C:\Users\olga b\Desktop\FRST.txt
2016-08-16 21:40 - 2016-08-16 21:41 - 00000000 ____D C:\FRST
2016-08-16 21:39 - 2016-08-16 21:38 - 00112640 _____ (forum.viry.cz) C:\Users\olga b\Desktop\FRSTLauncher.exe
2016-08-16 21:36 - 2016-08-16 21:38 - 00112640 _____ (forum.viry.cz) C:\Users\olga b\Downloads\FRSTLauncher.exe
2016-08-16 21:33 - 2016-08-16 21:27 - 02394624 _____ (Farbar) C:\Users\olga b\Desktop\FRST64.exe
2016-08-16 21:32 - 2016-08-16 21:32 - 02394624 _____ (Farbar) C:\Users\olga b\Downloads\FRST64 (1).exe
2016-08-16 21:27 - 2016-08-16 21:27 - 02394624 _____ (Farbar) C:\Users\olga b\Downloads\FRST64.exe
2016-08-16 21:21 - 2016-08-16 21:21 - 00016148 _____ C:\Windows\system32\DESKTOP-LJVVV29_olga b_HistoryPrediction.bin
2016-08-16 20:40 - 2016-07-27 21:25 - 00504488 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2016-08-16 20:29 - 2016-08-16 20:29 - 00391496 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2016-08-16 20:29 - 2016-08-16 20:29 - 00053208 _____ (AVAST Software) C:\Windows\avastSS.scr
2016-08-16 20:23 - 2016-08-16 20:23 - 08227032 _____ (Piriform Ltd) C:\Users\olga b\Downloads\ccsetup521.exe
2016-08-16 18:52 - 2016-08-16 19:51 - 00000001 _____ C:\Windows\SysWOW64\en.html
2016-08-15 10:39 - 2016-08-16 20:44 - 00000000 ____D C:\Users\olga b\AppData\Roaming\setup1
2016-08-15 10:39 - 2016-08-15 10:39 - 00000000 ____D C:\ProgramData\uwinpu
2016-08-15 10:21 - 2016-08-15 10:21 - 00221051 _____ C:\Users\olga b\Downloads\390081407_1_Oznámení o zahájení SŘ.pdf
2016-08-15 10:20 - 2016-08-15 10:20 - 00007157 _____ C:\Users\olga b\Downloads\392631567_1_CSSZ_Protokol_o_zpracovani_e-Podani_CSSZ_PVPOJ-B8CD2CE0901F4E718680F04738C8677F-392085166.html
2016-08-10 12:58 - 2016-08-10 12:59 - 00000000 ____D C:\Program Files (x86)\odv2lmt1
2016-08-10 10:58 - 2016-08-10 10:59 - 00000000 ____D C:\Program Files (x86)\iikk68h2
2016-08-10 10:55 - 2016-08-03 08:15 - 00468832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupEngine.dll
2016-08-10 10:55 - 2016-08-03 07:46 - 08016728 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-08-10 10:55 - 2016-08-03 07:46 - 01538168 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2016-08-10 10:55 - 2016-08-03 07:44 - 02429792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2016-08-10 10:55 - 2016-08-03 07:44 - 02115936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2016-08-10 10:55 - 2016-08-03 07:39 - 00660320 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupEngine.dll
2016-08-10 10:55 - 2016-08-03 07:38 - 06525424 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2016-08-10 10:55 - 2016-08-03 06:57 - 24604160 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-08-10 10:55 - 2016-08-03 06:57 - 21862912 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2016-08-10 10:55 - 2016-08-03 06:48 - 06788096 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2016-08-10 10:55 - 2016-08-03 06:46 - 02238464 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2016-08-10 10:55 - 2016-08-03 06:46 - 01123840 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll
2016-08-10 10:55 - 2016-08-03 06:45 - 12514304 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-08-10 10:55 - 2016-08-03 06:45 - 04847616 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll
2016-08-10 10:55 - 2016-08-03 06:44 - 19337216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-08-10 10:55 - 2016-08-03 06:40 - 05160960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2016-08-10 10:55 - 2016-08-03 06:39 - 00846848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NaturalLanguage6.dll
2016-08-10 10:55 - 2016-08-03 06:39 - 00214528 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-08-10 10:55 - 2016-08-03 06:38 - 03873280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll
2016-08-10 10:55 - 2016-08-03 06:37 - 04453888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2016-08-10 10:55 - 2016-08-03 06:36 - 07524352 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2016-08-10 10:55 - 2016-08-03 06:36 - 07502848 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2016-08-10 10:55 - 2016-08-03 06:35 - 18799616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2016-08-10 10:55 - 2016-08-03 06:35 - 04791296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-08-10 10:55 - 2016-08-03 06:35 - 03584000 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2016-08-10 10:55 - 2016-08-03 06:35 - 01381376 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2016-08-10 10:55 - 2016-08-03 06:32 - 00939008 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.dll
2016-08-10 10:55 - 2016-08-03 06:30 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\dbgcore.dll
2016-08-10 10:55 - 2016-08-03 06:28 - 03692032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
2016-08-10 10:55 - 2016-08-03 06:28 - 03579392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-08-10 10:55 - 2016-08-03 06:27 - 11270656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-08-10 10:55 - 2016-08-03 06:26 - 06713856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2016-08-10 10:55 - 2016-08-03 06:26 - 05454848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2016-08-10 10:55 - 2016-08-03 06:22 - 00716288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsSpellCheckingFacility.dll
2016-08-10 10:55 - 2016-08-03 06:21 - 00404992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DbgModel.dll
2016-08-10 10:55 - 2016-08-03 06:20 - 00117760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgcore.dll
2016-08-10 10:54 - 2016-08-03 08:25 - 00953472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2016-08-10 10:54 - 2016-08-03 08:25 - 00365120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2016-08-10 10:54 - 2016-08-03 08:15 - 02881624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-08-10 10:54 - 2016-08-03 08:14 - 00565648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2016-08-10 10:54 - 2016-08-03 07:46 - 02816016 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2016-08-10 10:54 - 2016-08-03 07:46 - 01561360 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2016-08-10 10:54 - 2016-08-03 07:46 - 01314496 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2016-08-10 10:54 - 2016-08-03 07:46 - 00632680 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2016-08-10 10:54 - 2016-08-03 07:46 - 00601336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2016-08-10 10:54 - 2016-08-03 07:46 - 00432352 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2016-08-10 10:54 - 2016-08-03 07:46 - 00158048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-08-10 10:54 - 2016-08-03 07:38 - 03625928 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-08-10 10:54 - 2016-08-03 07:38 - 00724168 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2016-08-10 10:54 - 2016-08-03 07:33 - 00224704 _____ (Microsoft Corporation) C:\Windows\system32\policymanager.dll
2016-08-10 10:54 - 2016-08-03 07:09 - 00954368 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2016-08-10 10:54 - 2016-08-03 07:03 - 16708608 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2016-08-10 10:54 - 2016-08-03 06:57 - 00694784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2016-08-10 10:54 - 2016-08-03 06:54 - 11557888 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2016-08-10 10:54 - 2016-08-03 06:53 - 13027328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2016-08-10 10:54 - 2016-08-03 06:52 - 02418688 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2016-08-10 10:54 - 2016-08-03 06:50 - 02902528 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
2016-08-10 10:54 - 2016-08-03 06:49 - 06305792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2016-08-10 10:54 - 2016-08-03 06:47 - 00456704 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2016-08-10 10:54 - 2016-08-03 06:47 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\WSClient.dll
2016-08-10 10:54 - 2016-08-03 06:46 - 00963072 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2016-08-10 10:54 - 2016-08-03 06:45 - 14241792 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2016-08-10 10:54 - 2016-08-03 06:44 - 00893440 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll
2016-08-10 10:54 - 2016-08-03 06:44 - 00814592 _____ (Microsoft Corporation) C:\Windows\system32\provcore.dll
2016-08-10 10:54 - 2016-08-03 06:44 - 00345088 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll
2016-08-10 10:54 - 2016-08-03 06:43 - 00326656 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2016-08-10 10:54 - 2016-08-03 06:43 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2016-08-10 10:54 - 2016-08-03 06:42 - 02839040 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2016-08-10 10:54 - 2016-08-03 06:42 - 02598912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll
2016-08-10 10:54 - 2016-08-03 06:42 - 02253824 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebSync.dll
2016-08-10 10:54 - 2016-08-03 06:42 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\eappprxy.dll
2016-08-10 10:54 - 2016-08-03 06:41 - 04398592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2016-08-10 10:54 - 2016-08-03 06:41 - 03119104 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-08-10 10:54 - 2016-08-03 06:41 - 01823232 _____ C:\Windows\SysWOW64\InputService.dll
2016-08-10 10:54 - 2016-08-03 06:41 - 01686528 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-08-10 10:54 - 2016-08-03 06:41 - 01606656 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-08-10 10:54 - 2016-08-03 06:40 - 01918976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2016-08-10 10:54 - 2016-08-03 06:40 - 00771072 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2016-08-10 10:54 - 2016-08-03 06:40 - 00572928 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-08-10 10:54 - 2016-08-03 06:40 - 00338944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2016-08-10 10:54 - 2016-08-03 06:39 - 05448704 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll
2016-08-10 10:54 - 2016-08-03 06:39 - 00806912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2016-08-10 10:54 - 2016-08-03 06:39 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-08-10 10:54 - 2016-08-03 06:38 - 06101504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mos.dll
2016-08-10 10:54 - 2016-08-03 06:38 - 03527168 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2016-08-10 10:54 - 2016-08-03 06:38 - 00819712 _____ (Microsoft Corporation) C:\Windows\system32\licensingdiag.exe
2016-08-10 10:54 - 2016-08-03 06:38 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll
2016-08-10 10:54 - 2016-08-03 06:38 - 00239104 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll
2016-08-10 10:54 - 2016-08-03 06:37 - 04168704 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll
2016-08-10 10:54 - 2016-08-03 06:37 - 02558976 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2016-08-10 10:54 - 2016-08-03 06:36 - 00584704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\provcore.dll
2016-08-10 10:54 - 2016-08-03 06:36 - 00279552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappcfg.dll
2016-08-10 10:54 - 2016-08-03 06:36 - 00215040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll
2016-08-10 10:54 - 2016-08-03 06:35 - 01717760 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2016-08-10 10:54 - 2016-08-03 06:35 - 00243712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll
2016-08-10 10:54 - 2016-08-03 06:35 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappprxy.dll
2016-08-10 10:54 - 2016-08-03 06:34 - 00740864 _____ (Microsoft Corporation) C:\Windows\system32\AzureSettingSyncProvider.dll
2016-08-10 10:54 - 2016-08-03 06:33 - 02587136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-08-10 10:54 - 2016-08-03 06:33 - 02198016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2016-08-10 10:54 - 2016-08-03 06:33 - 01387008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-08-10 10:54 - 2016-08-03 06:32 - 01492992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-08-10 10:54 - 2016-08-03 06:32 - 00794112 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2016-08-10 10:54 - 2016-08-03 06:32 - 00679936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-08-10 10:54 - 2016-08-03 06:32 - 00574464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2016-08-10 10:54 - 2016-08-03 06:32 - 00502784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-08-10 10:54 - 2016-08-03 06:32 - 00088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2016-08-10 10:54 - 2016-08-03 06:31 - 05329408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll
2016-08-10 10:54 - 2016-08-03 06:31 - 01096192 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2016-08-10 10:54 - 2016-08-03 06:31 - 00575488 _____ (Microsoft Corporation) C:\Windows\system32\DbgModel.dll
2016-08-10 10:54 - 2016-08-03 06:31 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2016-08-10 10:54 - 2016-08-03 06:30 - 02748416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2016-08-10 10:54 - 2016-08-03 06:30 - 00617472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licensingdiag.exe
2016-08-10 10:54 - 2016-08-03 06:27 - 03443200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbon.dll
2016-08-10 10:54 - 2016-08-03 06:27 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2016-08-10 10:54 - 2016-08-03 06:25 - 00565760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AzureSettingSyncProvider.dll
2016-08-10 10:54 - 2016-08-03 06:21 - 00854016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2016-08-10 10:54 - 2016-08-03 06:21 - 00268800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2016-08-10 10:53 - 2016-08-03 08:24 - 02152744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2016-08-10 10:53 - 2016-08-03 08:24 - 01767008 _____ C:\Windows\SysWOW64\CoreUIComponents.dll
2016-08-10 10:53 - 2016-08-03 08:24 - 01531368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2016-08-10 10:53 - 2016-08-03 08:24 - 01356368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll
2016-08-10 10:53 - 2016-08-03 08:24 - 00439648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
2016-08-10 10:53 - 2016-08-03 08:24 - 00046480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wldp.dll
2016-08-10 10:53 - 2016-08-03 08:23 - 01895576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hevcdecoder.dll
2016-08-10 10:53 - 2016-08-03 08:22 - 01811360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2016-08-10 10:53 - 2016-08-03 08:15 - 00700256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2016-08-10 10:53 - 2016-08-03 08:15 - 00046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NAPCRYPT.DLL
2016-08-10 10:53 - 2016-08-03 08:13 - 00065096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Clipc.dll
2016-08-10 10:53 - 2016-08-03 08:09 - 00185952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\policymanager.dll
2016-08-10 10:53 - 2016-08-03 07:46 - 03467776 _____ (Microsoft Corporation) C:\Windows\system32\WSService.dll
2016-08-10 10:53 - 2016-08-03 07:46 - 02463704 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2016-08-10 10:53 - 2016-08-03 07:46 - 01951864 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2016-08-10 10:53 - 2016-08-03 07:46 - 01563480 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2016-08-10 10:53 - 2016-08-03 07:46 - 00552288 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
2016-08-10 10:53 - 2016-08-03 07:46 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\wldp.dll
2016-08-10 10:53 - 2016-08-03 07:44 - 02495776 _____ C:\Windows\system32\CoreUIComponents.dll
2016-08-10 10:53 - 2016-08-03 07:44 - 02156400 _____ (Microsoft Corporation) C:\Windows\system32\hevcdecoder.dll
2016-08-10 10:53 - 2016-08-03 07:44 - 00388896 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll
2016-08-10 10:53 - 2016-08-03 07:44 - 00243760 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2016-08-10 10:53 - 2016-08-03 07:38 - 01134792 _____ (Microsoft Corporation) C:\Windows\system32\ClipUp.exe
2016-08-10 10:53 - 2016-08-03 07:38 - 00801632 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2016-08-10 10:53 - 2016-08-03 07:38 - 00252760 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll
2016-08-10 10:53 - 2016-08-03 07:38 - 00078040 _____ (Microsoft Corporation) C:\Windows\system32\Clipc.dll
2016-08-10 10:53 - 2016-08-03 07:37 - 00658568 _____ (Microsoft Corporation) C:\Windows\system32\ClipSVC.dll
2016-08-10 10:53 - 2016-08-03 07:32 - 00983904 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2016-08-10 10:53 - 2016-08-03 06:57 - 00483328 _____ (Microsoft Corporation) C:\Windows\system32\OneDriveSettingSyncProvider.dll
2016-08-10 10:53 - 2016-08-03 06:55 - 00290304 _____ (Microsoft Corporation) C:\Windows\system32\oemlicense.dll
2016-08-10 10:53 - 2016-08-03 06:53 - 07569408 _____ (Microsoft Corporation) C:\Windows\system32\mos.dll
2016-08-10 10:53 - 2016-08-03 06:51 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\MapConfiguration.dll
2016-08-10 10:53 - 2016-08-03 06:49 - 02446336 _____ C:\Windows\system32\InputService.dll
2016-08-10 10:53 - 2016-08-03 06:49 - 00371712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneDriveSettingSyncProvider.dll
2016-08-10 10:53 - 2016-08-03 06:47 - 00553472 _____ (Microsoft Corporation) C:\Windows\system32\GamePanel.exe
2016-08-10 10:53 - 2016-08-03 06:47 - 00293376 _____ C:\Windows\system32\TextInputFramework.dll
2016-08-10 10:53 - 2016-08-03 06:47 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oemlicense.dll
2016-08-10 10:53 - 2016-08-03 06:46 - 01416704 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-08-10 10:53 - 2016-08-03 06:46 - 00780288 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2016-08-10 10:53 - 2016-08-03 06:46 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-08-10 10:53 - 2016-08-03 06:46 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\WSSync.dll
2016-08-10 10:53 - 2016-08-03 06:45 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\iassvcs.dll
2016-08-10 10:53 - 2016-08-03 06:44 - 09889792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2016-08-10 10:53 - 2016-08-03 06:44 - 00328704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapConfiguration.dll
2016-08-10 10:53 - 2016-08-03 06:43 - 07055872 _____ (Microsoft Corporation) C:\Windows\system32\BingMaps.dll
2016-08-10 10:53 - 2016-08-03 06:43 - 00107008 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2016-08-10 10:53 - 2016-08-03 06:42 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupSvc.dll
2016-08-10 10:53 - 2016-08-03 06:41 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll
2016-08-10 10:53 - 2016-08-03 06:40 - 00420352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GamePanel.exe
2016-08-10 10:53 - 2016-08-03 06:40 - 00200704 _____ C:\Windows\SysWOW64\TextInputFramework.dll
2016-08-10 10:53 - 2016-08-03 06:39 - 00587776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2016-08-10 10:53 - 2016-08-03 06:39 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-08-10 10:53 - 2016-08-03 06:39 - 00153088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSSync.dll
2016-08-10 10:53 - 2016-08-03 06:39 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSClient.dll
2016-08-10 10:53 - 2016-08-03 06:38 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\IdCtrls.dll
2016-08-10 10:53 - 2016-08-03 06:38 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll
2016-08-10 10:53 - 2016-08-03 06:37 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iassvcs.dll
2016-08-10 10:53 - 2016-08-03 06:36 - 00671232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll
2016-08-10 10:53 - 2016-08-03 06:36 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\WPTaskScheduler.dll
2016-08-10 10:53 - 2016-08-03 06:36 - 00092160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll
2016-08-10 10:53 - 2016-08-03 06:35 - 00902656 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2016-08-10 10:53 - 2016-08-03 06:35 - 00832512 _____ (Microsoft Corporation) C:\Windows\system32\MapsStore.dll
2016-08-10 10:53 - 2016-08-03 06:35 - 00336384 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2016-08-10 10:53 - 2016-08-03 06:35 - 00246784 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2016-08-10 10:53 - 2016-08-03 06:34 - 01522176 _____ (Microsoft Corporation) C:\Windows\system32\ActiveSyncProvider.dll
2016-08-10 10:53 - 2016-08-03 06:34 - 00763904 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2016-08-10 10:53 - 2016-08-03 06:34 - 00584704 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll
2016-08-10 10:53 - 2016-08-03 06:34 - 00394752 _____ (Microsoft Corporation) C:\Windows\system32\Search.ProtocolHandler.MAPI2.dll
2016-08-10 10:53 - 2016-08-03 06:34 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2016-08-10 10:53 - 2016-08-03 06:34 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2016-08-10 10:53 - 2016-08-03 06:34 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\moshostcore.dll
2016-08-10 10:53 - 2016-08-03 06:34 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\moshost.dll
2016-08-10 10:53 - 2016-08-03 06:34 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\MosHostClient.dll
2016-08-10 10:53 - 2016-08-03 06:33 - 12589056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2016-08-10 10:53 - 2016-08-03 06:33 - 01844736 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2016-08-10 10:53 - 2016-08-03 06:33 - 01418240 _____ (Microsoft Corporation) C:\Windows\system32\RecoveryDrive.exe
2016-08-10 10:53 - 2016-08-03 06:33 - 01061888 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2016-08-10 10:53 - 2016-08-03 06:33 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2016-08-10 10:53 - 2016-08-03 06:33 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\TpmTasks.dll
2016-08-10 10:53 - 2016-08-03 06:33 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2016-08-10 10:53 - 2016-08-03 06:32 - 05079552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingMaps.dll
2016-08-10 10:53 - 2016-08-03 06:31 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Shell.Search.UriHandler.dll
2016-08-10 10:53 - 2016-08-03 06:30 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2016-08-10 10:53 - 2016-08-03 06:30 - 00092160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IdCtrls.dll
2016-08-10 10:53 - 2016-08-03 06:29 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll
2016-08-10 10:53 - 2016-08-03 06:29 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll
2016-08-10 10:53 - 2016-08-03 06:26 - 01467392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2016-08-10 10:53 - 2016-08-03 06:26 - 00584704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbonRes.dll
2016-08-10 10:53 - 2016-08-03 06:26 - 00282624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2016-08-10 10:53 - 2016-08-03 06:26 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2016-08-10 10:53 - 2016-08-03 06:26 - 00117760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2016-08-10 10:53 - 2016-08-03 06:25 - 00712192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2016-08-10 10:53 - 2016-08-03 06:25 - 00695808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2016-08-10 10:53 - 2016-08-03 06:25 - 00244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2016-08-10 10:53 - 2016-08-03 06:25 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2016-08-10 10:53 - 2016-08-03 06:25 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosHostClient.dll
2016-08-10 10:53 - 2016-08-03 06:25 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2016-08-10 10:35 - 2016-08-10 10:35 - 00050976 _____ C:\Users\olga b\Downloads\391859468_0_Vyzva_platci_01560271.pdf
2016-08-10 10:29 - 2016-08-16 20:44 - 00000000 ____D C:\Program Files (x86)\SoEasySvc
2016-08-10 10:29 - 2016-08-10 10:29 - 00000000 ____D C:\ProgramData\swinps
2016-08-10 10:29 - 2016-08-10 10:29 - 00000000 ____D C:\Program Files (x86)\il4v5ya7
2016-08-06 12:22 - 2016-08-06 12:22 - 00013448 _____ C:\Users\olga b\Downloads\Visner (1).xlsx
2016-08-04 15:36 - 2016-08-04 16:36 - 00000000 ____D C:\Users\olga b\Desktop\mzdy míša
2016-08-04 14:50 - 2016-08-04 14:50 - 00007162 _____ C:\Users\olga b\Downloads\390718217_1_CSSZ_Protokol_o_zpracovani_e-Podani_CSSZ_ONZ-21CE0AC340DB48AF876AA1FB4527DB93-390469940.html
2016-08-04 14:50 - 2016-08-04 14:50 - 00006627 _____ C:\Users\olga b\Downloads\390718217_0_CSSZ_Protokol_o_zpracovani_e-Podani_CSSZ_ONZ-21CE0AC340DB48AF876AA1FB4527DB93-390469940.xml
2016-08-02 14:24 - 2016-08-02 14:24 - 00094720 _____ C:\Users\olga b\Downloads\planovaci-kalendar-2016-na-vysku.xls
2016-08-02 13:45 - 2016-08-02 13:47 - 00014275 _____ C:\Users\olga b\Downloads\Visner.xlsx
2016-08-02 13:19 - 2016-08-02 13:20 - 00013461 _____ C:\Users\olga b\Downloads\Zámečník.xlsx
2016-08-02 13:18 - 2016-08-02 13:18 - 00012874 _____ C:\Users\olga b\Downloads\Visner_-dohoda.xlsx
2016-08-02 13:17 - 2016-08-02 13:17 - 00012871 _____ C:\Users\olga b\Downloads\Školař_-_dohoda.xlsx
2016-08-02 13:16 - 2016-08-02 13:16 - 00013450 _____ C:\Users\olga b\Downloads\Říha (1).xlsx
2016-08-02 13:15 - 2016-08-02 13:15 - 00013450 _____ C:\Users\olga b\Downloads\Říha.xlsx
2016-08-02 13:14 - 2016-08-02 13:14 - 00013303 _____ C:\Users\olga b\Downloads\Pánek_-_dohoda.xlsx
2016-08-02 13:13 - 2016-08-02 13:13 - 00013467 _____ C:\Users\olga b\Downloads\Maxera.xlsx
2016-08-02 13:13 - 2016-08-02 13:13 - 00013332 _____ C:\Users\olga b\Downloads\Nováček.xlsx
2016-08-02 13:11 - 2016-08-02 13:11 - 00013424 _____ C:\Users\olga b\Downloads\MalĂ˝.xlsx
2016-08-02 13:10 - 2016-08-02 13:10 - 00013571 _____ C:\Users\olga b\Downloads\Hanuš.xlsx
2016-08-02 13:08 - 2016-08-02 13:08 - 00013416 _____ C:\Users\olga b\Downloads\Borovka.xlsx
2016-08-01 09:45 - 2016-08-01 09:47 - 00000000 ____D C:\Program Files (x86)\niool51m
2016-07-28 10:34 - 2016-08-07 22:21 - 00000000 ____D C:\ProgramData\firebird
2016-07-28 10:34 - 2016-07-28 10:36 - 00000000 ____D C:\Users\Public\Msset32
2016-07-28 10:34 - 2016-07-28 10:34 - 00000000 ____D C:\Users\Public\Video
2016-07-28 10:31 - 2010-09-17 11:13 - 00548864 _____ (Firebird Project) C:\Windows\SysWOW64\GDS32.DLL
2016-07-28 10:30 - 2016-08-07 22:15 - 00000000 ____D C:\Fakturace8_0
2016-07-28 10:30 - 2016-08-07 22:15 - 00000000 ____D C:\DataWalSoft
2016-07-28 10:30 - 2016-07-28 10:30 - 00000747 _____ C:\Users\Public\Desktop\Manuál Fakturace WalSoft GOLD 8.lnk
2016-07-28 10:30 - 2016-07-28 10:30 - 00000715 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fakturace GOLD 8.lnk
2016-07-28 10:30 - 2016-07-28 10:30 - 00000703 _____ C:\Users\Public\Desktop\Fakturace GOLD 8.lnk
2016-07-28 10:30 - 2016-07-28 10:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WSDReader
2016-07-28 10:30 - 2016-07-28 10:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firebird 2.5 (Win32)
2016-07-28 10:30 - 2016-07-28 10:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fakturace GOLD 8
2016-07-28 10:30 - 2016-07-28 10:30 - 00000000 ____D C:\Program Files (x86)\WSDReader
2016-07-28 10:30 - 2016-07-28 10:30 - 00000000 ____D C:\Program Files (x86)\Firebird
2016-07-28 10:15 - 2016-07-28 10:15 - 13965920 _____ (Bc. Walter Masař ) C:\Users\olga b\Downloads\Fakturace8_27.exe
2016-07-24 23:55 - 2016-07-24 23:55 - 00030417 _____ C:\Users\olga b\Documents\tisk
2016-07-24 23:30 - 2016-07-24 23:35 - 00180201 _____ C:\Users\olga b\Documents\tiskárna
2016-07-24 23:08 - 2016-07-24 23:08 - 00000000 ___RD C:\Users\olga b\Documents\Scanned Documents
2016-07-24 23:08 - 2016-07-24 23:08 - 00000000 ____D C:\Users\olga b\Documents\Fax
2016-07-24 23:04 - 2016-07-25 00:13 - 00000000 ____D C:\Users\olga b\AppData\Local\ElevatedDiagnostics
2016-07-22 11:06 - 2016-07-22 11:06 - 00000003 _____ C:\Windows\SysWOW64\EN_261706859.html
2016-07-22 11:06 - 2016-07-22 11:06 - 00000003 _____ C:\Windows\SysWOW64\EN_261704984.html
2016-07-22 11:06 - 2016-07-22 11:06 - 00000003 _____ C:\Windows\SysWOW64\EN_261704296.html
2016-07-22 11:06 - 2016-07-22 11:06 - 00000003 _____ C:\Windows\SysWOW64\EN_261702281.html
2016-07-22 11:06 - 2016-07-22 11:06 - 00000003 _____ C:\Windows\SysWOW64\EN_261702000.html
2016-07-22 11:06 - 2016-07-22 11:06 - 00000003 _____ C:\Windows\SysWOW64\EN_261700500.html
2016-07-22 11:06 - 2016-07-22 11:06 - 00000003 _____ C:\Windows\SysWOW64\EN_261700187.html
2016-07-22 11:06 - 2016-07-22 11:06 - 00000003 _____ C:\Windows\SysWOW64\EN_261694078.html
2016-07-22 11:06 - 2016-07-22 11:06 - 00000003 _____ C:\Windows\SysWOW64\EN_261693375.html
2016-07-22 11:05 - 2016-07-22 11:05 - 03082528 _____ (Update) C:\Windows\SysWOW64\en9.exe
2016-07-22 11:05 - 2016-07-22 11:05 - 00000003 _____ C:\Windows\SysWOW64\EN_261679609.html
2016-07-22 11:05 - 2016-07-22 11:05 - 00000003 _____ C:\Windows\SysWOW64\EN_261679234.html
2016-07-22 11:05 - 2016-07-22 11:05 - 00000003 _____ C:\Windows\SysWOW64\EN_261678015.html
2016-07-22 11:05 - 2016-07-22 11:05 - 00000003 _____ C:\Windows\SysWOW64\EN_261677671.html
2016-07-22 11:05 - 2016-07-22 11:05 - 00000003 _____ C:\Windows\SysWOW64\EN_261670968.html
2016-07-22 11:05 - 2016-07-22 11:05 - 00000003 _____ C:\Windows\SysWOW64\en_261670234.html
2016-07-22 11:05 - 2016-07-22 11:05 - 00000000 ____D C:\Windows\SysWOW64\_SSpm
2016-07-22 11:05 - 2016-07-22 11:05 - 00000000 ____D C:\ProgramData\Kingsoft
2016-07-22 11:05 - 2016-07-22 11:05 - 00000000 ____D C:\ProgramData\BwinpB
2016-07-19 12:58 - 2016-07-19 12:59 - 00000000 ____D C:\ProgramData\8winp8
2016-07-19 12:58 - 2016-07-19 12:59 - 00000000 ____D C:\Program Files (x86)\6zuhw6g9
2016-07-19 11:40 - 2016-07-19 12:17 - 00096768 _____ C:\Users\olga b\Downloads\Nahrady_R_01-06_30-06_1468921198.xls
2016-07-19 10:48 - 2016-07-19 10:48 - 00071680 _____ C:\Users\olga b\Downloads\Nahrady_4J85288_01-02_29-02_1468917959.xls
2016-07-19 10:38 - 2016-07-19 10:38 - 00071168 _____ C:\Users\olga b\Downloads\Nahrady_4J85288_01-01_31-01_1468917452.xls
2016-07-19 10:27 - 2016-07-19 10:27 - 00000000 ____D C:\Users\olga b\AppData\Roaming\ControlCenter4
2016-07-19 10:26 - 2016-07-19 10:26 - 00000000 ____D C:\Users\olga b\AppData\Roaming\FLEXnet
2016-07-19 10:20 - 2016-07-19 10:20 - 00002130 _____ C:\Users\Public\Desktop\Brother Utilities.lnk
2016-07-19 10:20 - 2016-07-19 10:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother
2016-07-19 10:18 - 2016-07-19 10:18 - 00000000 ____D C:\Brother
2016-07-19 10:17 - 2016-07-19 10:18 - 00000000 ____D C:\Program Files (x86)\Brother
2016-07-19 10:17 - 2016-07-19 10:17 - 00000000 ____D C:\ProgramData\ControlCenter4
2016-07-19 10:17 - 2016-07-19 10:17 - 00000000 ____D C:\Program Files (x86)\ControlCenter4
2016-07-19 10:17 - 2016-07-19 10:17 - 00000000 ____D C:\Program Files (x86)\Browny02
2016-07-19 10:17 - 2012-09-10 16:31 - 00245760 ____N (brother) C:\Windows\SysWOW64\NSSearch.dll
2016-07-19 10:17 - 2012-07-31 09:39 - 01439744 _____ (Brother Industries, Ltd.) C:\Windows\system32\BrWi209d.dll
2016-07-19 10:17 - 2012-07-09 17:19 - 00005120 ____N (Brother Industries Ltd.) C:\Windows\SysWOW64\BrDctF2S.dll
2016-07-19 10:17 - 2012-06-05 08:59 - 00025299 _____ (Brother Industries, Ltd) C:\Windows\SysWOW64\BRLM03A.DLL
2016-07-19 10:17 - 2010-06-07 13:18 - 00050688 _____ (Brother Industries, Ltd.) C:\Windows\system32\BrUsi09d.dll
2016-07-19 10:17 - 2010-05-10 10:45 - 00103736 _____ (Brother Industries Ltd) C:\Windows\SysWOW64\BRRBTOOL.EXE
2016-07-19 10:17 - 2010-04-01 12:27 - 00278528 _____ (Brother Industries, Ltd.) C:\Windows\system32\BrJDec.dll
2016-07-19 10:17 - 2010-03-15 19:45 - 00073728 ____N (Brother Industries Ltd.) C:\Windows\SysWOW64\BrDctF2.dll
2016-07-19 10:17 - 2010-02-05 04:42 - 00180224 _____ (Brother Industries, Ltd.) C:\Windows\SysWOW64\BROSNMP.DLL
2016-07-19 10:17 - 2007-12-13 22:16 - 00005120 ____N (Brother Industries Ltd.) C:\Windows\SysWOW64\BrDctF2L.dll
2016-07-19 10:17 - 2005-01-17 09:10 - 00045056 _____ C:\Windows\SysWOW64\BRTCPCON.DLL
2016-07-19 10:17 - 2004-08-09 09:00 - 00000114 _____ C:\Windows\SysWOW64\BRLMW03A.INI
2016-07-19 10:17 - 2004-08-09 08:42 - 00077824 _____ (Brother Industries, Ltd.) C:\Windows\SysWOW64\BRLMW03A.DLL
2016-07-19 10:17 - 1999-10-26 18:00 - 00000050 _____ C:\Windows\system32\BRADM10A.DAT
2016-07-19 10:13 - 2016-07-19 10:13 - 00000000 ____D C:\ProgramData\zeon
2016-07-19 10:13 - 2016-07-19 10:13 - 00000000 ____D C:\Program Files\Nuance
2016-07-19 10:11 - 2016-07-19 10:30 - 00000000 ____D C:\ProgramData\Nuance
2016-07-19 10:11 - 2016-07-19 10:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nuance PaperPort 12
2016-07-19 10:11 - 2016-07-19 10:13 - 00000000 ____D C:\Program Files (x86)\Nuance
2016-07-19 10:11 - 2016-07-19 10:11 - 00001917 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Software Updates.lnk
2016-07-19 10:11 - 2016-07-19 10:11 - 00000000 ____D C:\Users\olga b\Documents\MyWebPages
2016-07-19 10:11 - 2016-07-19 10:11 - 00000000 ____D C:\Users\olga b\AppData\Roaming\Nuance
2016-07-19 10:11 - 2016-07-19 10:11 - 00000000 ____D C:\ProgramData\ScanSoft
2016-07-19 10:11 - 2016-07-19 10:11 - 00000000 ____D C:\ProgramData\FLEXnet
2016-07-19 10:07 - 2016-07-19 10:07 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0
2016-07-19 10:06 - 2016-07-19 10:20 - 00000000 ____D C:\ProgramData\Brother
2016-07-19 10:00 - 2016-07-19 10:00 - 00071168 _____ C:\Users\olga b\Downloads\Nahrady_4J85288_01-01_31-01_1468915207.xls
2016-07-19 09:46 - 2016-07-19 09:46 - 00000370 _____ C:\Windows\SysWOW64\data.bin
2016-07-19 09:46 - 2016-07-19 09:46 - 00000000 ____D C:\ProgramData\RwinpR
2016-07-17 13:58 - 2016-07-17 13:58 - 00002836 _____ C:\Users\olga b\Desktop\Správa skeneru – zástupce.lnk
2016-07-17 13:54 - 2016-07-17 13:54 - 00248320 _____ (CANON INC.) C:\Windows\system32\CNQ2414Y.dll
2016-07-17 13:54 - 2016-07-17 13:54 - 00103424 _____ (Canon Inc.) C:\Windows\system32\CNQ2414O.dll
2016-07-17 13:54 - 2012-07-04 11:55 - 01354240 _____ (CANON INC.) C:\Windows\system32\CNQ2414C.dll
2016-07-17 13:54 - 2012-07-04 11:55 - 00112128 _____ (CANON INC.) C:\Windows\system32\CNQ2414I.dll
2016-07-17 13:54 - 2012-07-04 11:29 - 00106496 _____ (CANON INC.) C:\Windows\SysWOW64\CNQ2414U.dll
2016-07-17 13:54 - 2010-12-17 14:49 - 00515072 _____ (CANON INC.) C:\Windows\system32\CNQ2414L.dll
2016-07-17 13:54 - 2010-12-17 14:49 - 00438272 _____ (CANON INC.) C:\Windows\SysWOW64\CNQ2414L.dll
2016-07-17 13:54 - 2010-03-19 10:04 - 00393256 _____ C:\Windows\SysWOW64\CNQ2414N.DAT
2016-07-17 13:54 - 2008-08-25 18:02 - 00017920 _____ (CANON INC.) C:\Windows\system32\CNHMCA6.dll
2016-07-17 13:54 - 2008-08-25 18:02 - 00015872 _____ (CANON INC.) C:\Windows\SysWOW64\CNHMCA.dll

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-08-16 21:21 - 2016-05-17 20:31 - 00000165 ____H C:\Users\olga b\AppData\Roaming\sp_data.sys
2016-08-16 20:45 - 2016-05-22 12:25 - 00000992 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-08-16 20:44 - 2016-07-07 13:04 - 00000000 ____D C:\Program Files (x86)\WinSaber
2016-08-16 20:36 - 2016-07-07 13:05 - 00000000 ____D C:\Program Files (x86)\qksee
2016-08-16 20:35 - 2016-05-22 12:25 - 00000988 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-08-16 20:34 - 2016-05-22 14:55 - 00004020 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1463921741
2016-08-16 20:34 - 2016-05-22 14:55 - 00001090 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2016-08-16 20:34 - 2016-05-17 20:31 - 00000000 __SHD C:\Users\olga b\IntelGraphicsProfiles
2016-08-16 20:34 - 2016-05-17 20:25 - 00000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-08-16 20:33 - 2015-07-10 14:21 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-08-16 20:32 - 2015-07-10 11:05 - 00131072 ___SH C:\Windows\system32\config\BBI
2016-08-16 20:29 - 2016-05-22 14:52 - 00513496 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2016-08-16 20:29 - 2016-05-22 14:52 - 00292704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2016-08-16 20:29 - 2016-05-22 14:52 - 00163416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2016-08-16 20:29 - 2016-05-22 14:52 - 00108816 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2016-08-16 20:29 - 2016-05-22 14:52 - 00103064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2016-08-16 20:29 - 2016-05-22 14:52 - 00074544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2016-08-16 20:29 - 2016-05-22 14:52 - 00037656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2016-08-16 20:29 - 2016-05-22 14:52 - 00004004 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2016-08-16 20:28 - 2016-05-22 14:55 - 00037144 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2016-08-16 20:28 - 2016-05-22 14:52 - 00969560 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2016-08-16 20:26 - 2015-07-10 13:02 - 00000000 ____D C:\Windows\INF
2016-08-16 20:23 - 2016-05-22 12:16 - 00000865 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-08-16 17:57 - 2016-07-15 23:36 - 00000000 ____D C:\ProgramData\ChelfNotify
2016-08-16 17:55 - 2015-07-10 13:04 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2016-08-16 17:55 - 2015-07-10 13:04 - 00000000 ___RD C:\Windows\DevicesFlow
2016-08-16 17:55 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\SysWOW64\oobe
2016-08-16 17:55 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\system32\oobe
2016-08-16 17:55 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Windows Defender
2016-08-16 17:55 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-08-16 17:01 - 2016-06-26 18:58 - 00003550 _____ C:\Windows\System32\Tasks\ASUS Live Update1
2016-08-16 17:01 - 2016-06-26 18:58 - 00003540 _____ C:\Windows\System32\Tasks\ASUS Live Update2
2016-08-16 17:01 - 2016-05-21 19:43 - 00004210 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{85BEC19D-1947-4FF6-A531-DF55CC2E1F7E}
2016-08-16 07:30 - 2015-07-10 13:04 - 00000000 ___HD C:\Program Files\WindowsApps
2016-08-16 07:30 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\AppReadiness
2016-08-15 10:08 - 2016-07-10 14:30 - 00000140 _____ C:\Windows\Reimage.ini
2016-08-11 17:17 - 2016-06-26 19:08 - 00000000 ____D C:\STEREO24
2016-08-11 17:00 - 2016-05-22 16:06 - 00000000 ____D C:\UCTO2016
2016-08-10 13:04 - 2015-07-10 12:55 - 00000000 ____D C:\Windows\CbsTemp
2016-08-10 12:59 - 2016-07-15 23:37 - 00003542 _____ C:\Windows\System32\Tasks\ChelfNotify Task
2016-08-10 12:59 - 2016-06-26 19:35 - 00000000 ____D C:\Windows\system32\MRT
2016-08-10 12:59 - 2016-05-21 21:26 - 00000000 ____D C:\Program Files (x86)\Platoward
2016-08-10 12:50 - 2016-06-26 19:35 - 147640136 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-08-10 12:48 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\system32\SecureBootUpdates
2016-08-09 06:46 - 2016-05-22 12:27 - 00002274 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-08-09 06:46 - 2016-05-22 12:27 - 00002262 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-08-06 17:47 - 2016-07-08 15:47 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-08-06 12:22 - 2016-05-17 20:31 - 00000000 ___HD C:\Users\olga b\AppData\Local\Packages
2016-08-04 02:02 - 2016-05-17 20:30 - 00000000 ___HD C:\Users\olga b
2016-08-03 21:31 - 2015-07-10 13:04 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-08-03 21:29 - 2015-08-15 07:30 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2016-08-03 08:45 - 2015-08-15 07:08 - 02718208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2016-08-01 10:40 - 2016-05-22 12:25 - 00004050 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-08-01 10:40 - 2016-05-22 12:25 - 00003818 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-08-01 09:47 - 2016-07-16 01:15 - 00000000 ____D C:\ProgramData\DwinpD
2016-07-25 00:13 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\system32\NDF
2016-07-24 22:18 - 2015-07-10 14:20 - 00352176 _____ C:\Windows\system32\FNTCACHE.DAT
2016-07-22 13:49 - 2016-05-17 20:47 - 00000000 ___HD C:\Users\olga b\AppData\Roaming\Kingsoft
2016-07-22 13:49 - 2016-05-17 20:47 - 00000000 ___HD C:\Users\olga b\AppData\Local\Kingsoft
2016-07-19 12:22 - 2015-08-15 15:26 - 00813396 _____ C:\Windows\system32\perfh005.dat
2016-07-19 12:22 - 2015-08-15 15:26 - 00173892 _____ C:\Windows\system32\perfc005.dat
2016-07-19 12:22 - 2015-08-15 07:21 - 01944576 _____ C:\Windows\system32\PerfStringBackup.INI
2016-07-19 10:16 - 2016-01-08 00:34 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-07-17 21:17 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\rescache
2016-07-17 13:54 - 2015-07-10 13:04 - 00000000 __RSD C:\Windows\Media

==================== Files in the root of some directories =======

2016-05-17 20:31 - 2016-08-16 21:21 - 0000165 ____H () C:\Users\olga b\AppData\Roaming\sp_data.sys
2016-01-08 00:35 - 2016-01-08 00:35 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\olga b\Desktop" je 2 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: kontrola logu

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

majkllgg
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 16 srp 2016 20:30

Re: kontrola logu

#3 Příspěvek od majkllgg »

# AdwCleaner v6.000 - *Logfile created 16/08/2016 *at 23:42:32
# *Updated on 12/08/2016 by ToolsLib
# *Database : 2016-08-16.1 [*Server]
# *Operating System : Windows 10 Home (X64)
# *Username : olga b - DESKTOP-LJVVV29
# *Running from : C:\Users\olga b\Desktop\adwcleaner_6.000.exe
# *Mode: Clean
# *Support : https://toolslib.net/forum



***** [ *Services ] *****

[-] *Service deleted: ReimageRealTimeProtector
[-] *Service deleted: IhPul
[-] *Service deleted: WdMan
[-] *Service deleted: qkseeService
[-] *Service deleted: shefaleCloudservice
[-] *Service deleted: winsaber
[-] *Service deleted: SoEasySvc


***** [ *Folders ] *****

[-] *Folder deleted: C:\ProgramData\8winp8
[-] *Folder deleted: C:\ProgramData\BwinpB
[-] *Folder deleted: C:\ProgramData\DwinpD
[-] *Folder deleted: C:\ProgramData\owinpo
[-] *Folder deleted: C:\ProgramData\RwinpR
[-] *Folder deleted: C:\ProgramData\swinps
[-] *Folder deleted: C:\ProgramData\uwinpu
[-] *Folder deleted: C:\Users\olga b\AppData\Local\BrowserAir
[-] *Folder deleted: C:\Users\olga b\AppData\Roaming\eCyber
[-] *Folder deleted: C:\Users\olga b\AppData\Roaming\SpringFiles
[-] *Folder deleted: C:\Users\olga b\AppData\Roaming\qksee
[-] *Folder deleted: C:\Users\olga b\AppData\Roaming\WinZiper
[-] *Folder deleted: C:\Users\olga b\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserAir
[-] *Folder deleted: C:\Program Files\Reimage
[-] *Folder deleted: C:\Program Files\Common Files\Doobzo
[-] *Folder deleted: C:\ProgramData\Reimage Protector
[-] *Folder deleted: C:\ProgramData\SearchModule
[-] *Folder deleted: C:\ProgramData\ChelfNotify
[#] *Folder deleted on reboot: C:\ProgramData\Application Data\Reimage Protector
[#] *Folder deleted on reboot: C:\ProgramData\Application Data\SearchModule
[#] *Folder deleted on reboot: C:\ProgramData\Application Data\ChelfNotify
[-] *Folder deleted: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qksee
[-] *Folder deleted: C:\Program Files (x86)\TData
[-] *Folder deleted: C:\Program Files (x86)\qksee
[-] *Folder deleted: C:\Program Files (x86)\Shefale
[-] *Folder deleted: C:\Program Files (x86)\TXQQBrowser
[-] *Folder deleted: C:\Program Files (x86)\WinSaber
[-] *Folder deleted: C:\Program Files (x86)\SoEasySvc
[#] *Folder deleted on reboot: C:\Program Files (x86)\winsaber


***** [ *Files ] *****

[-] *File deleted: C:\Users\olga b\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\BrowserAir.lnk
[-] *File deleted: C:\Users\olga b\Desktop\BrowserAir.lnk
[-] *File deleted: C:\Windows\Reimage.ini


***** [ DLL ] *****



***** [ WMI ] *****



***** [ *Shortcuts ] *****



***** [ *Scheduled Tasks ] *****

[-] *Task deleted: ReimageUpdater
[-] *Task deleted: ReimageUpdater
[-] *Task deleted: IBUpd
[-] *Task deleted: IBUpd2
[-] *Task deleted: Browser Updater Task(Core)
[-] *Task deleted: Shefale Cloud
[-] *Task deleted: ChelfNotify Task


***** [ *Registry ] *****

[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.001
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.7z
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.arj
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.bz2
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.bzip2
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.cab
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.cpio
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.deb
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.dmg
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.fat
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.gz
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.gzip
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.hfs
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.iso
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.lha
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.lzh
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.lzma
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.ntfs
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.rar
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.rpm
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.squashfs
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.swm
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.tar
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.taz
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.tbz
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.tbz2
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.tgz
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.tpz
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.txz
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.vhd
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.wim
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.xar
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.xz
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.z
[-] *Key deleted: HKLM\SOFTWARE\Classes\WinZippers.zip
[-] *Key deleted: HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\winzipersvc
[-] *Key deleted: HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\qkseeService
[-] *Key deleted: HKU\S-1-5-21-4008709856-33150063-3746546202-1001\Software\Classes\BrowserAir.OSNDJYDQE4OP2QEIHCR2DK6QUE
[#] *Key deleted on reboot: HKCU\Software\Classes\BrowserAir.OSNDJYDQE4OP2QEIHCR2DK6QUE
[-] *Key deleted: HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine
[-] *Key deleted: HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine.1
[-] *Key deleted: [x64] HKLM\SOFTWARE\Classes\CLSID\{10ECCE17-29B5-4880-A8F5-EAD298611484}
[-] *Key deleted: [x64] HKLM\SOFTWARE\Classes\CLSID\{801B440B-1EE3-49B0-B05D-2AB076D4E8CB}
[-] *Key deleted: [x64] HKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}
[-] *Key deleted: [x64] HKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
[-] *Key deleted: HKLM\SOFTWARE\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A}
[-] *Key deleted: HKCU\Software\Classes\CLSID\{17EF1FFB-0545-4C9A-BE64-78FF53338475}
[-] *Key deleted: HKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}
[-] *Key deleted: HKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
[-] *Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
[-] *Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{10ECCE17-29B5-4880-A8F5-EAD298611484}
[-] *Key deleted: [x64] HKLM\SOFTWARE\BrowserAir
[-] *Key deleted: [x64] HKLM\SOFTWARE\Reimage
[-] *Key deleted: [x64] HKLM\SOFTWARE\SearchModule
[-] *Key deleted: [x64] HKLM\SOFTWARE\{A16B1AF7-982D-40C3-B5C1-633E1A6A6678}
[-] *Key deleted: [x64] HKLM\SOFTWARE\{8C4CE252-7DB2-4F8E-8E76-BAD0E5826A83}
[-] *Key deleted: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Reimage Protector
[-] *Key deleted: HKU\.DEFAULT\Software\{A16B1AF7-982D-40C3-B5C1-633E1A6A6678}
[-] *Key deleted: HKU\.DEFAULT\Software\{8C4CE252-7DB2-4F8E-8E76-BAD0E5826A83}
[-] *Key deleted: HKU\S-1-5-21-4008709856-33150063-3746546202-1001\Software\BrowserAir
[-] *Key deleted: HKU\S-1-5-21-4008709856-33150063-3746546202-1001\Software\Reimage
[-] *Key deleted: HKU\S-1-5-21-4008709856-33150063-3746546202-1001\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief.
[-] *Key deleted: HKU\S-1-5-21-4008709856-33150063-3746546202-1001\Software\SrpnFiles
[#] *Key deleted on reboot: HKU\S-1-5-18\Software\{A16B1AF7-982D-40C3-B5C1-633E1A6A6678}
[#] *Key deleted on reboot: HKU\S-1-5-18\Software\{8C4CE252-7DB2-4F8E-8E76-BAD0E5826A83}
[#] *Key deleted on reboot: HKCU\Software\BrowserAir
[#] *Key deleted on reboot: HKCU\Software\Reimage
[#] *Key deleted on reboot: HKCU\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief.
[#] *Key deleted on reboot: HKCU\Software\SrpnFiles
[-] *Key deleted: HKLM\SOFTWARE\BrowserAir
[-] *Key deleted: HKLM\SOFTWARE\hdcode
[-] *Key deleted: HKLM\SOFTWARE\SearchModule
[-] *Key deleted: HKLM\SOFTWARE\SrpnFiles
[-] *Key deleted: HKLM\SOFTWARE\qkseeSvc
[-] *Key deleted: HKLM\SOFTWARE\qksee
[-] *Key deleted: HKLM\SOFTWARE\{A16B1AF7-982D-40C3-B5C1-633E1A6A6678}
[-] *Key deleted: HKLM\SOFTWARE\{E6276374-DE18-4AA5-A365-9016A2F98A2D}
[-] *Key deleted: HKLM\SOFTWARE\{8C4CE252-7DB2-4F8E-8E76-BAD0E5826A83}
[-] *Key deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\qksee
[-] *Data restored: [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
[-] *Data restored: [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
[-] *Data restored: [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
[-] *Data restored: [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
[-] *Data restored: HKU\S-1-5-21-4008709856-33150063-3746546202-1001\Software\Microsoft\Internet Explorer\Main [Search Page]
[-] *Data restored: HKU\S-1-5-21-4008709856-33150063-3746546202-1001\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] *Data restored: HKU\S-1-5-21-4008709856-33150063-3746546202-1001\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
[-] *Data restored: HKU\S-1-5-21-4008709856-33150063-3746546202-1001\Software\Microsoft\Internet Explorer\Main [Default_Search_URL]
[-] *Data restored: HKCU\Software\Microsoft\Internet Explorer\Main [Search Page]
[-] *Data restored: HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] *Data restored: HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
[-] *Data restored: HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL]
[-] *Data restored: HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
[-] *Data restored: HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
[-] *Data restored: HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
[-] *Data restored: HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
[-] *Key deleted: [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[-] *Data restored: [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] *Key deleted: HKU\S-1-5-21-4008709856-33150063-3746546202-1001\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[-] *Data restored: HKU\S-1-5-21-4008709856-33150063-3746546202-1001\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[#] *Key deleted on reboot: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[-] *Data restored: HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] *Key deleted: HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[-] *Data restored: HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] *Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\plusnetwork.com
[-] *Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.plusnetwork.com
[-] *Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\plusnetwork.com
[-] *Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.plusnetwork.com
[-] *Key deleted: HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL
[-] *Key deleted: HKLM\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\WinZipper
[-] *Key deleted: HKLM\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\WinZipper
[-] *Key deleted: HKLM\SOFTWARE\Classes\lnkfile\shellex\ContextMenuHandlers\WinZipper
[-] *Key deleted: HKLM\SOFTWARE\Microsoft\MediaPlayer\ShimInclusionList\BrowserAir.exe
[-] *Key deleted: HKCU\SOFTWARE\Mozilla\Firefox\{EB52F1AB-3C2B-424F-9794-833C687025CF}
[-] *Key deleted: HKLM\SOFTWARE\Mozilla\Firefox\{EB52F1AB-3C2B-424F-9794-833C687025CF}
[-] *Key deleted: HKLM\SYSTEM\CurrentControlSet\Control\Class\{0C95ABFE-4FB6-49DB-B22F-0E1F5FC4BEEC}
[-] *Key deleted: HKLM\SYSTEM\CurrentControlSet\Control\Class\{EEEFACB3-729F-4484-B66D-E7A7917BBFC1}
[-] *Key deleted: HKCU\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\BrowserAir.exe


***** [ *Browsers ] *****

[-] [www-searching.com] [Search Provider] *Deleted: www-searching.com
[-] [nuesearch] [Search Provider] *Deleted: nuesearch
[-] [C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default] [startup_urls] *Deleted: hxxp://www.nuesearch.com/?type=hp&ts=146891438 ... X35JXTJNDT
[-] [C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default] [favicon_url] *Deleted: hxxp://www.nuesearch.com/searchfavicon.ico
[-] [C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default] [homepage] *Deleted: hxxp://www.nuesearch.com/?type=hp&ts=146891438 ... X35JXTJNDT


*************************

:: *"Tracing" keys deleted
:: *Winsock settings cleared

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [13479 *Bytes] - [16/08/2016 23:42:32]
C:\AdwCleaner\AdwCleaner[S0].txt - [15405 *Bytes] - [16/08/2016 23:34:00]
C:\AdwCleaner\AdwCleaner[S1].txt - [15480 *Bytes] - [16/08/2016 23:39:24]

########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [13704 *Bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: kontrola logu

#4 Příspěvek od Rudy »

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

majkllgg
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 16 srp 2016 20:30

Re: kontrola logu

#5 Příspěvek od majkllgg »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17-08-2016
Ran by olga b (administrator) on DESKTOP-LJVVV29 (17-08-2016 20:08:59)
Running from C:\Users\olga b\Desktop
Loaded Profiles: olga b (Available Profiles: olga b)
Platform: Windows 10 Home (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe
(ASUS) C:\Program Files (x86)\ASUS\ASUS GIFTBOX Desktop\ASUSGiftBoxDesktop.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.2.2.524\AsusWSWinService.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10_50.DUEL\MSSQL\Binn\sqlservr.exe
(Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fb_inet_server.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
() C:\Program Files\AVAST Software\SecureLine\vpnsvc.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Acresso Corporation) C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
(AVAST Software) C:\Program Files\AVAST Software\SecureLine\secureline.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfPro5Hook.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
(WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe
(ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.2.2.524\AsusWSPanel.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\NetworkUXBroker.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
(forum.viry.cz) C:\Users\olga b\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM-x32\...\Run: [WebStorage] => C:\Program Files (x86)\ASUS\WebStorage\2.2.2.524\ASUSWSLoader.exe [63272 2015-05-31] ()
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [9103976 2016-08-16] (AVAST Software)
HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [46368 2010-03-09] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [29984 2010-03-09] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PPort12reminder] => "C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\12\Config\Ereg\Ereg.ini"
HKLM-x32\...\Run: [PDFHook] => C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfpro5hook.exe [636192 2010-03-05] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PDF5 Registry Controller] => C:\Program Files (x86)\Nuance\PDF Viewer Plus\RegistryController.exe [62752 2010-03-05] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [143360 2012-09-06] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3076096 2012-06-06] (Brother Industries, Ltd.)
HKU\S-1-5-21-4008709856-33150063-3746546202-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4289728 2016-04-12] (Disc Soft Ltd)
HKU\S-1-5-21-4008709856-33150063-3746546202-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8894680 2016-08-05] (Piriform Ltd)
HKU\S-1-5-21-4008709856-33150063-3746546202-1001\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496 2009-05-05] (Acresso Corporation)
HKU\S-1-5-21-4008709856-33150063-3746546202-1001\...\MountPoints2: {6300f034-1c5c-11e6-9bd4-80a5895cc8ec} - "G:\setup.EXE" /AUTORUN
ShellIconOverlayIdentifiers: [!AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7191} => C:\Program Files (x86)\Common Files\AWS\2.2.2.524\ASUSWSShellExt64.dll [2015-04-22] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D809} => C:\Program Files (x86)\Common Files\AWS\2.2.2.524\ASUSWSShellExt64.dll [2015-04-22] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4E} => C:\Program Files (x86)\Common Files\AWS\2.2.2.524\ASUSWSShellExt64.dll [2015-04-22] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-08-16] (AVAST Software)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\avast! SecureLine.lnk [2016-01-08]
ShortcutTarget: avast! SecureLine.lnk -> C:\Program Files\AVAST Software\SecureLine\SecureLine.exe (AVAST Software)
Startup: C:\Users\olga b\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Poslat do aplikace OneNote.lnk [2016-05-21]
ShortcutTarget: Poslat do aplikace OneNote.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

AutoConfigURL: [S-1-5-21-4008709856-33150063-3746546202-1001] => hxxp://unstops.biz/wpad.dat?16dc1d8656caa5dbb9eb5518d6e40f0010405013
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{1eb61279-a5ee-4691-b5a0-317d9ef0eb54}: [DhcpNameServer] 172.30.1.1
Tcpip\..\Interfaces\{e009fe8b-9376-4947-b341-edf4b332ce9e}: [DhcpNameServer] 192.168.0.1
ManualProxies: 0hxxp://unstops.biz/wpad.dat?16dc1d8656caa5dbb9eb5518d6e40f0010405013

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-08-03] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-08-03] (Microsoft Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2016-08-03] (Microsoft Corporation)
BHO-x32: PlusIEEventHelper Class -> {551A852F-39A6-44A7-9C13-AFBEC9185A9D} -> C:\Program Files (x86)\Nuance\PDF Viewer Plus\Bin\PlusIEContextMenu.dll [2009-02-06] (Zeon Corporation)
BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2015-04-30] (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL [2016-08-03] (Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-03] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-03] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-03] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-03] (Microsoft Corporation)

Edge:
======
Edge HomeButtonPage: HKU\S-1-5-21-4008709856-33150063-3746546202-1001 -> hxxp://www.seznam.cz/

FireFox:
========
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIIPT.dll [2014-07-02] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIUpdater.dll [2014-07-02] (Intel Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-08-03] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-08-03] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-01] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-01] (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2014-11-15] ()
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-06-30] (Adobe Systems Inc.)
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-08-16]
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Extension: Avast SafePrice - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-08-16]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF

Chrome:
=======
CHR StartupUrls: Default -> "hxxps://www.seznam.cz/"
CHR DefaultSearchURL: Default -> hxxp://search.seznam.cz/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> seznam.cz
CHR DefaultSuggestURL: Default -> hxxp://suggest.fulltext.seznam.cz/fulltext_ff?phrase={searchTerms}
CHR Profile: C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-05-22]
CHR Extension: (Dokumenty Google) - C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-05-22]
CHR Extension: (Disk Google) - C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-05-22]
CHR Extension: (YouTube) - C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-05-22]
CHR Extension: (Dokumenty Google offline) - C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-05-22]
CHR Extension: (Avast Online Security) - C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-05-22]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-05-22]
CHR Extension: (Gmail) - C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-05-22]
CHR Extension: (Chrome Media Router) - C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-08-11]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx <not found>

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.2.2.524\AsusWSWinService.exe [71168 2015-05-31] (ASUS Cloud Corporation) [File not signed]
R2 ASUSGiftBoxDekstop; C:\Program Files (x86)\ASUS\ASUS GIFTBOX Desktop\ASUSGIFTBOXDesktop.exe [313488 2015-06-12] (ASUS) [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [323152 2015-07-29] (Windows (R) Win 7 DDK provider)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2016-08-16] (AVAST Software)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [266240 2012-06-05] (Brother Industries, Ltd.) [File not signed]
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2950856 2016-07-25] (Microsoft Corporation)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1443520 2016-04-12] (Disc Soft Ltd)
R2 esifsvc; C:\Windows\SysWOW64\esif_uf.exe [1385640 2015-08-17] (Intel Corporation)
R2 FirebirdServerDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fb_inet_server.exe [3727360 2010-09-17] (Firebird Project) [File not signed]
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [373312 2015-04-14] (WildTangent)
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [353896 2015-10-26] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [881152 2015-05-22] (Intel(R) Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [File not signed]
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe [174368 2015-04-21] (Intel Corporation)
R2 MSSQL$DUEL; C:\Program Files\Microsoft SQL Server\MSSQL10_50.DUEL\MSSQL\Binn\sqlservr.exe [62218696 2012-06-29] (Microsoft Corporation)
S3 ose; c:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [200240 2016-07-23] (Microsoft Corporation) [File not signed]
R2 PDFProFiltSrvPP; C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe [144672 2010-03-09] (Nuance Communications, Inc.)
R2 SecureLine; C:\Program Files\AVAST Software\SecureLine\VpnSvc.exe [592392 2016-06-27] ()
S4 SQLAgent$DUEL; C:\Program Files\Microsoft SQL Server\MSSQL10_50.DUEL\MSSQL\Binn\SQLAGENT.EXE [441288 2012-06-29] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24856 2016-08-03] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 AsusSGDrv; C:\Windows\system32\DRIVERS\AsusSGDrv.sys [138744 2015-08-17] (ASUS Corporation)
R3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-08-16] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-08-16] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108816 2016-08-16] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-08-16] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-08-16] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [969560 2016-08-16] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [513496 2016-08-16] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [163416 2016-08-16] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [292704 2016-08-16] (AVAST Software)
R3 athr; C:\Windows\System32\drivers\athw10x.sys [4323976 2015-09-08] (Qualcomm Atheros Communications, Inc.)
R3 dptf_cpu; C:\Windows\System32\drivers\dptf_cpu.sys [53752 2015-08-17] (Intel Corporation)
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2016-05-21] (Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [47672 2016-05-21] (Disc Soft Ltd)
R3 esif_lf; C:\Windows\system32\DRIVERS\esif_lf.sys [261624 2015-08-17] (Intel Corporation)
R3 iagpioe; C:\Windows\System32\drivers\iagpioe.sys [41984 2015-06-03] (Intel(R) Corporation)
R3 iai2ce; C:\Windows\System32\drivers\iai2ce.sys [89592 2015-06-03] (Intel(R) Corporation)
R3 igfxLP; C:\Windows\system32\DRIVERS\igdkmd64lp.sys [5906320 2015-10-26] (Intel Corporation)
S4 RsFx0153; C:\Windows\System32\DRIVERS\RsFx0153.sys [321992 2012-06-29] (Microsoft Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [887552 2015-07-15] (Realtek )
R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [146232 2015-06-26] (Intel Corporation)
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
U0 msahci; system32\drivers\msahci.sys [X]
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-08-17 20:08 - 2016-08-17 20:09 - 00021341 _____ C:\Users\olga b\Desktop\FRST.txt
2016-08-17 20:08 - 2016-08-17 20:08 - 00000000 ____D C:\Users\olga b\Desktop\FRST-OlderVersion
2016-08-17 20:08 - 2016-08-16 21:38 - 00112640 _____ (forum.viry.cz) C:\Users\olga b\Desktop\FRSTLauncher.exe
2016-08-17 20:01 - 2016-08-17 20:01 - 00016148 _____ C:\Windows\system32\DESKTOP-LJVVV29_olga b_HistoryPrediction.bin
2016-08-17 16:50 - 2016-08-17 16:50 - 00198301 _____ C:\Users\olga b\Downloads\393757500_0_Rozhodnutí.pdf
2016-08-16 23:46 - 2016-08-16 23:46 - 00013849 _____ C:\Users\olga b\Desktop\AdwCleaner[C0].txt
2016-08-16 23:40 - 2016-08-16 23:40 - 00015480 _____ C:\Users\olga b\Desktop\AdwCleaner[S1].txt
2016-08-16 23:31 - 2016-08-16 23:42 - 00000000 ____D C:\AdwCleaner
2016-08-16 23:28 - 2016-08-16 23:27 - 03784256 _____ C:\Users\olga b\Desktop\adwcleaner_6.000.exe
2016-08-16 23:27 - 2016-08-16 23:27 - 03784256 _____ C:\Users\olga b\Downloads\adwcleaner_6.000.exe
2016-08-16 21:40 - 2016-08-17 20:08 - 00000000 ____D C:\FRST
2016-08-16 21:36 - 2016-08-16 21:38 - 00112640 _____ (forum.viry.cz) C:\Users\olga b\Downloads\FRSTLauncher.exe
2016-08-16 21:33 - 2016-08-17 20:08 - 02394624 _____ (Farbar) C:\Users\olga b\Desktop\FRST64.exe
2016-08-16 21:32 - 2016-08-16 21:32 - 02394624 _____ (Farbar) C:\Users\olga b\Downloads\FRST64 (1).exe
2016-08-16 21:27 - 2016-08-16 21:27 - 02394624 _____ (Farbar) C:\Users\olga b\Downloads\FRST64.exe
2016-08-16 20:40 - 2016-07-27 21:25 - 00504488 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2016-08-16 20:29 - 2016-08-16 20:29 - 00391496 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2016-08-16 20:29 - 2016-08-16 20:29 - 00053208 _____ (AVAST Software) C:\Windows\avastSS.scr
2016-08-16 20:23 - 2016-08-16 20:23 - 08227032 _____ (Piriform Ltd) C:\Users\olga b\Downloads\ccsetup521.exe
2016-08-16 18:52 - 2016-08-16 19:51 - 00000001 _____ C:\Windows\SysWOW64\en.html
2016-08-15 10:39 - 2016-08-16 20:44 - 00000000 ____D C:\Users\olga b\AppData\Roaming\setup1
2016-08-15 10:21 - 2016-08-15 10:21 - 00221051 _____ C:\Users\olga b\Downloads\390081407_1_Oznámení o zahájení SŘ.pdf
2016-08-15 10:20 - 2016-08-15 10:20 - 00007157 _____ C:\Users\olga b\Downloads\392631567_1_CSSZ_Protokol_o_zpracovani_e-Podani_CSSZ_PVPOJ-B8CD2CE0901F4E718680F04738C8677F-392085166.html
2016-08-10 12:58 - 2016-08-10 12:59 - 00000000 ____D C:\Program Files (x86)\odv2lmt1
2016-08-10 10:58 - 2016-08-10 10:59 - 00000000 ____D C:\Program Files (x86)\iikk68h2
2016-08-10 10:55 - 2016-08-03 08:15 - 00468832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupEngine.dll
2016-08-10 10:55 - 2016-08-03 07:46 - 08016728 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-08-10 10:55 - 2016-08-03 07:46 - 01538168 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2016-08-10 10:55 - 2016-08-03 07:44 - 02429792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2016-08-10 10:55 - 2016-08-03 07:44 - 02115936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2016-08-10 10:55 - 2016-08-03 07:39 - 00660320 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupEngine.dll
2016-08-10 10:55 - 2016-08-03 07:38 - 06525424 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2016-08-10 10:55 - 2016-08-03 06:57 - 24604160 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-08-10 10:55 - 2016-08-03 06:57 - 21862912 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2016-08-10 10:55 - 2016-08-03 06:48 - 06788096 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2016-08-10 10:55 - 2016-08-03 06:46 - 02238464 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2016-08-10 10:55 - 2016-08-03 06:46 - 01123840 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll
2016-08-10 10:55 - 2016-08-03 06:45 - 12514304 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-08-10 10:55 - 2016-08-03 06:45 - 04847616 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll
2016-08-10 10:55 - 2016-08-03 06:44 - 19337216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-08-10 10:55 - 2016-08-03 06:40 - 05160960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2016-08-10 10:55 - 2016-08-03 06:39 - 00846848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NaturalLanguage6.dll
2016-08-10 10:55 - 2016-08-03 06:39 - 00214528 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-08-10 10:55 - 2016-08-03 06:38 - 03873280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll
2016-08-10 10:55 - 2016-08-03 06:37 - 04453888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2016-08-10 10:55 - 2016-08-03 06:36 - 07524352 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2016-08-10 10:55 - 2016-08-03 06:36 - 07502848 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2016-08-10 10:55 - 2016-08-03 06:35 - 18799616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2016-08-10 10:55 - 2016-08-03 06:35 - 04791296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-08-10 10:55 - 2016-08-03 06:35 - 03584000 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2016-08-10 10:55 - 2016-08-03 06:35 - 01381376 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2016-08-10 10:55 - 2016-08-03 06:32 - 00939008 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.dll
2016-08-10 10:55 - 2016-08-03 06:30 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\dbgcore.dll
2016-08-10 10:55 - 2016-08-03 06:28 - 03692032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
2016-08-10 10:55 - 2016-08-03 06:28 - 03579392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-08-10 10:55 - 2016-08-03 06:27 - 11270656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-08-10 10:55 - 2016-08-03 06:26 - 06713856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2016-08-10 10:55 - 2016-08-03 06:26 - 05454848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2016-08-10 10:55 - 2016-08-03 06:22 - 00716288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsSpellCheckingFacility.dll
2016-08-10 10:55 - 2016-08-03 06:21 - 00404992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DbgModel.dll
2016-08-10 10:55 - 2016-08-03 06:20 - 00117760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgcore.dll
2016-08-10 10:54 - 2016-08-03 08:25 - 00953472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2016-08-10 10:54 - 2016-08-03 08:25 - 00365120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2016-08-10 10:54 - 2016-08-03 08:15 - 02881624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-08-10 10:54 - 2016-08-03 08:14 - 00565648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2016-08-10 10:54 - 2016-08-03 07:46 - 02816016 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2016-08-10 10:54 - 2016-08-03 07:46 - 01561360 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2016-08-10 10:54 - 2016-08-03 07:46 - 01314496 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2016-08-10 10:54 - 2016-08-03 07:46 - 00632680 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2016-08-10 10:54 - 2016-08-03 07:46 - 00601336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2016-08-10 10:54 - 2016-08-03 07:46 - 00432352 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2016-08-10 10:54 - 2016-08-03 07:46 - 00158048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-08-10 10:54 - 2016-08-03 07:38 - 03625928 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-08-10 10:54 - 2016-08-03 07:38 - 00724168 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2016-08-10 10:54 - 2016-08-03 07:33 - 00224704 _____ (Microsoft Corporation) C:\Windows\system32\policymanager.dll
2016-08-10 10:54 - 2016-08-03 07:09 - 00954368 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2016-08-10 10:54 - 2016-08-03 07:03 - 16708608 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2016-08-10 10:54 - 2016-08-03 06:57 - 00694784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2016-08-10 10:54 - 2016-08-03 06:54 - 11557888 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2016-08-10 10:54 - 2016-08-03 06:53 - 13027328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2016-08-10 10:54 - 2016-08-03 06:52 - 02418688 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2016-08-10 10:54 - 2016-08-03 06:50 - 02902528 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
2016-08-10 10:54 - 2016-08-03 06:49 - 06305792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2016-08-10 10:54 - 2016-08-03 06:47 - 00456704 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2016-08-10 10:54 - 2016-08-03 06:47 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\WSClient.dll
2016-08-10 10:54 - 2016-08-03 06:46 - 00963072 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2016-08-10 10:54 - 2016-08-03 06:45 - 14241792 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2016-08-10 10:54 - 2016-08-03 06:44 - 00893440 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll
2016-08-10 10:54 - 2016-08-03 06:44 - 00814592 _____ (Microsoft Corporation) C:\Windows\system32\provcore.dll
2016-08-10 10:54 - 2016-08-03 06:44 - 00345088 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll
2016-08-10 10:54 - 2016-08-03 06:43 - 00326656 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2016-08-10 10:54 - 2016-08-03 06:43 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2016-08-10 10:54 - 2016-08-03 06:42 - 02839040 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2016-08-10 10:54 - 2016-08-03 06:42 - 02598912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll
2016-08-10 10:54 - 2016-08-03 06:42 - 02253824 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebSync.dll
2016-08-10 10:54 - 2016-08-03 06:42 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\eappprxy.dll
2016-08-10 10:54 - 2016-08-03 06:41 - 04398592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2016-08-10 10:54 - 2016-08-03 06:41 - 03119104 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-08-10 10:54 - 2016-08-03 06:41 - 01823232 _____ C:\Windows\SysWOW64\InputService.dll
2016-08-10 10:54 - 2016-08-03 06:41 - 01686528 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-08-10 10:54 - 2016-08-03 06:41 - 01606656 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-08-10 10:54 - 2016-08-03 06:40 - 01918976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2016-08-10 10:54 - 2016-08-03 06:40 - 00771072 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2016-08-10 10:54 - 2016-08-03 06:40 - 00572928 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-08-10 10:54 - 2016-08-03 06:40 - 00338944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2016-08-10 10:54 - 2016-08-03 06:39 - 05448704 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll
2016-08-10 10:54 - 2016-08-03 06:39 - 00806912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2016-08-10 10:54 - 2016-08-03 06:39 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-08-10 10:54 - 2016-08-03 06:38 - 06101504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mos.dll
2016-08-10 10:54 - 2016-08-03 06:38 - 03527168 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2016-08-10 10:54 - 2016-08-03 06:38 - 00819712 _____ (Microsoft Corporation) C:\Windows\system32\licensingdiag.exe
2016-08-10 10:54 - 2016-08-03 06:38 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll
2016-08-10 10:54 - 2016-08-03 06:38 - 00239104 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll
2016-08-10 10:54 - 2016-08-03 06:37 - 04168704 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll
2016-08-10 10:54 - 2016-08-03 06:37 - 02558976 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2016-08-10 10:54 - 2016-08-03 06:36 - 00584704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\provcore.dll
2016-08-10 10:54 - 2016-08-03 06:36 - 00279552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappcfg.dll
2016-08-10 10:54 - 2016-08-03 06:36 - 00215040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll
2016-08-10 10:54 - 2016-08-03 06:35 - 01717760 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2016-08-10 10:54 - 2016-08-03 06:35 - 00243712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll
2016-08-10 10:54 - 2016-08-03 06:35 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappprxy.dll
2016-08-10 10:54 - 2016-08-03 06:34 - 00740864 _____ (Microsoft Corporation) C:\Windows\system32\AzureSettingSyncProvider.dll
2016-08-10 10:54 - 2016-08-03 06:33 - 02587136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-08-10 10:54 - 2016-08-03 06:33 - 02198016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2016-08-10 10:54 - 2016-08-03 06:33 - 01387008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-08-10 10:54 - 2016-08-03 06:32 - 01492992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-08-10 10:54 - 2016-08-03 06:32 - 00794112 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2016-08-10 10:54 - 2016-08-03 06:32 - 00679936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-08-10 10:54 - 2016-08-03 06:32 - 00574464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2016-08-10 10:54 - 2016-08-03 06:32 - 00502784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-08-10 10:54 - 2016-08-03 06:32 - 00088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2016-08-10 10:54 - 2016-08-03 06:31 - 05329408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll
2016-08-10 10:54 - 2016-08-03 06:31 - 01096192 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2016-08-10 10:54 - 2016-08-03 06:31 - 00575488 _____ (Microsoft Corporation) C:\Windows\system32\DbgModel.dll
2016-08-10 10:54 - 2016-08-03 06:31 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2016-08-10 10:54 - 2016-08-03 06:30 - 02748416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2016-08-10 10:54 - 2016-08-03 06:30 - 00617472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licensingdiag.exe
2016-08-10 10:54 - 2016-08-03 06:27 - 03443200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbon.dll
2016-08-10 10:54 - 2016-08-03 06:27 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2016-08-10 10:54 - 2016-08-03 06:25 - 00565760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AzureSettingSyncProvider.dll
2016-08-10 10:54 - 2016-08-03 06:21 - 00854016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2016-08-10 10:54 - 2016-08-03 06:21 - 00268800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2016-08-10 10:53 - 2016-08-03 08:24 - 02152744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2016-08-10 10:53 - 2016-08-03 08:24 - 01767008 _____ C:\Windows\SysWOW64\CoreUIComponents.dll
2016-08-10 10:53 - 2016-08-03 08:24 - 01531368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2016-08-10 10:53 - 2016-08-03 08:24 - 01356368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll
2016-08-10 10:53 - 2016-08-03 08:24 - 00439648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
2016-08-10 10:53 - 2016-08-03 08:24 - 00046480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wldp.dll
2016-08-10 10:53 - 2016-08-03 08:23 - 01895576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hevcdecoder.dll
2016-08-10 10:53 - 2016-08-03 08:22 - 01811360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2016-08-10 10:53 - 2016-08-03 08:15 - 00700256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2016-08-10 10:53 - 2016-08-03 08:15 - 00046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NAPCRYPT.DLL
2016-08-10 10:53 - 2016-08-03 08:13 - 00065096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Clipc.dll
2016-08-10 10:53 - 2016-08-03 08:09 - 00185952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\policymanager.dll
2016-08-10 10:53 - 2016-08-03 07:46 - 03467776 _____ (Microsoft Corporation) C:\Windows\system32\WSService.dll
2016-08-10 10:53 - 2016-08-03 07:46 - 02463704 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2016-08-10 10:53 - 2016-08-03 07:46 - 01951864 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2016-08-10 10:53 - 2016-08-03 07:46 - 01563480 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2016-08-10 10:53 - 2016-08-03 07:46 - 00552288 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
2016-08-10 10:53 - 2016-08-03 07:46 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\wldp.dll
2016-08-10 10:53 - 2016-08-03 07:44 - 02495776 _____ C:\Windows\system32\CoreUIComponents.dll
2016-08-10 10:53 - 2016-08-03 07:44 - 02156400 _____ (Microsoft Corporation) C:\Windows\system32\hevcdecoder.dll
2016-08-10 10:53 - 2016-08-03 07:44 - 00388896 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll
2016-08-10 10:53 - 2016-08-03 07:44 - 00243760 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2016-08-10 10:53 - 2016-08-03 07:38 - 01134792 _____ (Microsoft Corporation) C:\Windows\system32\ClipUp.exe
2016-08-10 10:53 - 2016-08-03 07:38 - 00801632 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2016-08-10 10:53 - 2016-08-03 07:38 - 00252760 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll
2016-08-10 10:53 - 2016-08-03 07:38 - 00078040 _____ (Microsoft Corporation) C:\Windows\system32\Clipc.dll
2016-08-10 10:53 - 2016-08-03 07:37 - 00658568 _____ (Microsoft Corporation) C:\Windows\system32\ClipSVC.dll
2016-08-10 10:53 - 2016-08-03 07:32 - 00983904 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2016-08-10 10:53 - 2016-08-03 06:57 - 00483328 _____ (Microsoft Corporation) C:\Windows\system32\OneDriveSettingSyncProvider.dll
2016-08-10 10:53 - 2016-08-03 06:55 - 00290304 _____ (Microsoft Corporation) C:\Windows\system32\oemlicense.dll
2016-08-10 10:53 - 2016-08-03 06:53 - 07569408 _____ (Microsoft Corporation) C:\Windows\system32\mos.dll
2016-08-10 10:53 - 2016-08-03 06:51 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\MapConfiguration.dll
2016-08-10 10:53 - 2016-08-03 06:49 - 02446336 _____ C:\Windows\system32\InputService.dll
2016-08-10 10:53 - 2016-08-03 06:49 - 00371712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneDriveSettingSyncProvider.dll
2016-08-10 10:53 - 2016-08-03 06:47 - 00553472 _____ (Microsoft Corporation) C:\Windows\system32\GamePanel.exe
2016-08-10 10:53 - 2016-08-03 06:47 - 00293376 _____ C:\Windows\system32\TextInputFramework.dll
2016-08-10 10:53 - 2016-08-03 06:47 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oemlicense.dll
2016-08-10 10:53 - 2016-08-03 06:46 - 01416704 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-08-10 10:53 - 2016-08-03 06:46 - 00780288 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2016-08-10 10:53 - 2016-08-03 06:46 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-08-10 10:53 - 2016-08-03 06:46 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\WSSync.dll
2016-08-10 10:53 - 2016-08-03 06:45 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\iassvcs.dll
2016-08-10 10:53 - 2016-08-03 06:44 - 09889792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2016-08-10 10:53 - 2016-08-03 06:44 - 00328704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapConfiguration.dll
2016-08-10 10:53 - 2016-08-03 06:43 - 07055872 _____ (Microsoft Corporation) C:\Windows\system32\BingMaps.dll
2016-08-10 10:53 - 2016-08-03 06:43 - 00107008 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2016-08-10 10:53 - 2016-08-03 06:42 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupSvc.dll
2016-08-10 10:53 - 2016-08-03 06:41 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll
2016-08-10 10:53 - 2016-08-03 06:40 - 00420352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GamePanel.exe
2016-08-10 10:53 - 2016-08-03 06:40 - 00200704 _____ C:\Windows\SysWOW64\TextInputFramework.dll
2016-08-10 10:53 - 2016-08-03 06:39 - 00587776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2016-08-10 10:53 - 2016-08-03 06:39 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-08-10 10:53 - 2016-08-03 06:39 - 00153088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSSync.dll
2016-08-10 10:53 - 2016-08-03 06:39 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSClient.dll
2016-08-10 10:53 - 2016-08-03 06:38 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\IdCtrls.dll
2016-08-10 10:53 - 2016-08-03 06:38 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll
2016-08-10 10:53 - 2016-08-03 06:37 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iassvcs.dll
2016-08-10 10:53 - 2016-08-03 06:36 - 00671232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll
2016-08-10 10:53 - 2016-08-03 06:36 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\WPTaskScheduler.dll
2016-08-10 10:53 - 2016-08-03 06:36 - 00092160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll
2016-08-10 10:53 - 2016-08-03 06:35 - 00902656 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2016-08-10 10:53 - 2016-08-03 06:35 - 00832512 _____ (Microsoft Corporation) C:\Windows\system32\MapsStore.dll
2016-08-10 10:53 - 2016-08-03 06:35 - 00336384 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2016-08-10 10:53 - 2016-08-03 06:35 - 00246784 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2016-08-10 10:53 - 2016-08-03 06:34 - 01522176 _____ (Microsoft Corporation) C:\Windows\system32\ActiveSyncProvider.dll
2016-08-10 10:53 - 2016-08-03 06:34 - 00763904 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2016-08-10 10:53 - 2016-08-03 06:34 - 00584704 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll
2016-08-10 10:53 - 2016-08-03 06:34 - 00394752 _____ (Microsoft Corporation) C:\Windows\system32\Search.ProtocolHandler.MAPI2.dll
2016-08-10 10:53 - 2016-08-03 06:34 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2016-08-10 10:53 - 2016-08-03 06:34 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2016-08-10 10:53 - 2016-08-03 06:34 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\moshostcore.dll
2016-08-10 10:53 - 2016-08-03 06:34 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\moshost.dll
2016-08-10 10:53 - 2016-08-03 06:34 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\MosHostClient.dll
2016-08-10 10:53 - 2016-08-03 06:33 - 12589056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2016-08-10 10:53 - 2016-08-03 06:33 - 01844736 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2016-08-10 10:53 - 2016-08-03 06:33 - 01418240 _____ (Microsoft Corporation) C:\Windows\system32\RecoveryDrive.exe
2016-08-10 10:53 - 2016-08-03 06:33 - 01061888 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2016-08-10 10:53 - 2016-08-03 06:33 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2016-08-10 10:53 - 2016-08-03 06:33 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\TpmTasks.dll
2016-08-10 10:53 - 2016-08-03 06:33 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2016-08-10 10:53 - 2016-08-03 06:32 - 05079552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingMaps.dll
2016-08-10 10:53 - 2016-08-03 06:31 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Shell.Search.UriHandler.dll
2016-08-10 10:53 - 2016-08-03 06:30 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2016-08-10 10:53 - 2016-08-03 06:30 - 00092160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IdCtrls.dll
2016-08-10 10:53 - 2016-08-03 06:29 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll
2016-08-10 10:53 - 2016-08-03 06:29 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll
2016-08-10 10:53 - 2016-08-03 06:26 - 01467392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2016-08-10 10:53 - 2016-08-03 06:26 - 00584704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbonRes.dll
2016-08-10 10:53 - 2016-08-03 06:26 - 00282624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2016-08-10 10:53 - 2016-08-03 06:26 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2016-08-10 10:53 - 2016-08-03 06:26 - 00117760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2016-08-10 10:53 - 2016-08-03 06:25 - 00712192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2016-08-10 10:53 - 2016-08-03 06:25 - 00695808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2016-08-10 10:53 - 2016-08-03 06:25 - 00244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2016-08-10 10:53 - 2016-08-03 06:25 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2016-08-10 10:53 - 2016-08-03 06:25 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosHostClient.dll
2016-08-10 10:53 - 2016-08-03 06:25 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2016-08-10 10:35 - 2016-08-10 10:35 - 00050976 _____ C:\Users\olga b\Downloads\391859468_0_Vyzva_platci_01560271.pdf
2016-08-10 10:29 - 2016-08-10 10:29 - 00000000 ____D C:\Program Files (x86)\il4v5ya7
2016-08-06 12:22 - 2016-08-06 12:22 - 00013448 _____ C:\Users\olga b\Downloads\Visner (1).xlsx
2016-08-04 15:36 - 2016-08-04 16:36 - 00000000 ____D C:\Users\olga b\Desktop\mzdy míša
2016-08-04 14:50 - 2016-08-04 14:50 - 00007162 _____ C:\Users\olga b\Downloads\390718217_1_CSSZ_Protokol_o_zpracovani_e-Podani_CSSZ_ONZ-21CE0AC340DB48AF876AA1FB4527DB93-390469940.html
2016-08-04 14:50 - 2016-08-04 14:50 - 00006627 _____ C:\Users\olga b\Downloads\390718217_0_CSSZ_Protokol_o_zpracovani_e-Podani_CSSZ_ONZ-21CE0AC340DB48AF876AA1FB4527DB93-390469940.xml
2016-08-02 14:24 - 2016-08-02 14:24 - 00094720 _____ C:\Users\olga b\Downloads\planovaci-kalendar-2016-na-vysku.xls
2016-08-02 13:45 - 2016-08-02 13:47 - 00014275 _____ C:\Users\olga b\Downloads\Visner.xlsx
2016-08-02 13:19 - 2016-08-02 13:20 - 00013461 _____ C:\Users\olga b\Downloads\Zámečník.xlsx
2016-08-02 13:18 - 2016-08-02 13:18 - 00012874 _____ C:\Users\olga b\Downloads\Visner_-dohoda.xlsx
2016-08-02 13:17 - 2016-08-02 13:17 - 00012871 _____ C:\Users\olga b\Downloads\Školař_-_dohoda.xlsx
2016-08-02 13:16 - 2016-08-02 13:16 - 00013450 _____ C:\Users\olga b\Downloads\Říha (1).xlsx
2016-08-02 13:15 - 2016-08-02 13:15 - 00013450 _____ C:\Users\olga b\Downloads\Říha.xlsx
2016-08-02 13:14 - 2016-08-02 13:14 - 00013303 _____ C:\Users\olga b\Downloads\Pánek_-_dohoda.xlsx
2016-08-02 13:13 - 2016-08-02 13:13 - 00013467 _____ C:\Users\olga b\Downloads\Maxera.xlsx
2016-08-02 13:13 - 2016-08-02 13:13 - 00013332 _____ C:\Users\olga b\Downloads\Nováček.xlsx
2016-08-02 13:11 - 2016-08-02 13:11 - 00013424 _____ C:\Users\olga b\Downloads\MalĂ˝.xlsx
2016-08-02 13:10 - 2016-08-02 13:10 - 00013571 _____ C:\Users\olga b\Downloads\Hanuš.xlsx
2016-08-02 13:08 - 2016-08-02 13:08 - 00013416 _____ C:\Users\olga b\Downloads\Borovka.xlsx
2016-08-01 09:45 - 2016-08-01 09:47 - 00000000 ____D C:\Program Files (x86)\niool51m
2016-07-28 10:34 - 2016-08-07 22:21 - 00000000 ____D C:\ProgramData\firebird
2016-07-28 10:34 - 2016-07-28 10:36 - 00000000 ____D C:\Users\Public\Msset32
2016-07-28 10:34 - 2016-07-28 10:34 - 00000000 ____D C:\Users\Public\Video
2016-07-28 10:31 - 2010-09-17 11:13 - 00548864 _____ (Firebird Project) C:\Windows\SysWOW64\GDS32.DLL
2016-07-28 10:30 - 2016-08-07 22:15 - 00000000 ____D C:\Fakturace8_0
2016-07-28 10:30 - 2016-08-07 22:15 - 00000000 ____D C:\DataWalSoft
2016-07-28 10:30 - 2016-07-28 10:30 - 00000747 _____ C:\Users\Public\Desktop\Manuál Fakturace WalSoft GOLD 8.lnk
2016-07-28 10:30 - 2016-07-28 10:30 - 00000715 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fakturace GOLD 8.lnk
2016-07-28 10:30 - 2016-07-28 10:30 - 00000703 _____ C:\Users\Public\Desktop\Fakturace GOLD 8.lnk
2016-07-28 10:30 - 2016-07-28 10:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WSDReader
2016-07-28 10:30 - 2016-07-28 10:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firebird 2.5 (Win32)
2016-07-28 10:30 - 2016-07-28 10:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fakturace GOLD 8
2016-07-28 10:30 - 2016-07-28 10:30 - 00000000 ____D C:\Program Files (x86)\WSDReader
2016-07-28 10:30 - 2016-07-28 10:30 - 00000000 ____D C:\Program Files (x86)\Firebird
2016-07-28 10:15 - 2016-07-28 10:15 - 13965920 _____ (Bc. Walter Masař ) C:\Users\olga b\Downloads\Fakturace8_27.exe
2016-07-24 23:55 - 2016-07-24 23:55 - 00030417 _____ C:\Users\olga b\Documents\tisk
2016-07-24 23:30 - 2016-07-24 23:35 - 00180201 _____ C:\Users\olga b\Documents\tiskárna
2016-07-24 23:08 - 2016-07-24 23:08 - 00000000 ___RD C:\Users\olga b\Documents\Scanned Documents
2016-07-24 23:08 - 2016-07-24 23:08 - 00000000 ____D C:\Users\olga b\Documents\Fax
2016-07-24 23:04 - 2016-07-25 00:13 - 00000000 ____D C:\Users\olga b\AppData\Local\ElevatedDiagnostics
2016-07-22 11:06 - 2016-07-22 11:06 - 00000003 _____ C:\Windows\SysWOW64\EN_261706859.html
2016-07-22 11:06 - 2016-07-22 11:06 - 00000003 _____ C:\Windows\SysWOW64\EN_261704984.html
2016-07-22 11:06 - 2016-07-22 11:06 - 00000003 _____ C:\Windows\SysWOW64\EN_261704296.html
2016-07-22 11:06 - 2016-07-22 11:06 - 00000003 _____ C:\Windows\SysWOW64\EN_261702281.html
2016-07-22 11:06 - 2016-07-22 11:06 - 00000003 _____ C:\Windows\SysWOW64\EN_261702000.html
2016-07-22 11:06 - 2016-07-22 11:06 - 00000003 _____ C:\Windows\SysWOW64\EN_261700500.html
2016-07-22 11:06 - 2016-07-22 11:06 - 00000003 _____ C:\Windows\SysWOW64\EN_261700187.html
2016-07-22 11:06 - 2016-07-22 11:06 - 00000003 _____ C:\Windows\SysWOW64\EN_261694078.html
2016-07-22 11:06 - 2016-07-22 11:06 - 00000003 _____ C:\Windows\SysWOW64\EN_261693375.html
2016-07-22 11:05 - 2016-07-22 11:05 - 03082528 _____ (Update) C:\Windows\SysWOW64\en9.exe
2016-07-22 11:05 - 2016-07-22 11:05 - 00000003 _____ C:\Windows\SysWOW64\EN_261679609.html
2016-07-22 11:05 - 2016-07-22 11:05 - 00000003 _____ C:\Windows\SysWOW64\EN_261679234.html
2016-07-22 11:05 - 2016-07-22 11:05 - 00000003 _____ C:\Windows\SysWOW64\EN_261678015.html
2016-07-22 11:05 - 2016-07-22 11:05 - 00000003 _____ C:\Windows\SysWOW64\EN_261677671.html
2016-07-22 11:05 - 2016-07-22 11:05 - 00000003 _____ C:\Windows\SysWOW64\EN_261670968.html
2016-07-22 11:05 - 2016-07-22 11:05 - 00000003 _____ C:\Windows\SysWOW64\en_261670234.html
2016-07-22 11:05 - 2016-07-22 11:05 - 00000000 ____D C:\Windows\SysWOW64\_SSpm
2016-07-22 11:05 - 2016-07-22 11:05 - 00000000 ____D C:\ProgramData\Kingsoft
2016-07-19 12:58 - 2016-07-19 12:59 - 00000000 ____D C:\Program Files (x86)\6zuhw6g9
2016-07-19 11:40 - 2016-07-19 12:17 - 00096768 _____ C:\Users\olga b\Downloads\Nahrady_R_01-06_30-06_1468921198.xls
2016-07-19 10:48 - 2016-07-19 10:48 - 00071680 _____ C:\Users\olga b\Downloads\Nahrady_4J85288_01-02_29-02_1468917959.xls
2016-07-19 10:38 - 2016-07-19 10:38 - 00071168 _____ C:\Users\olga b\Downloads\Nahrady_4J85288_01-01_31-01_1468917452.xls
2016-07-19 10:27 - 2016-07-19 10:27 - 00000000 ____D C:\Users\olga b\AppData\Roaming\ControlCenter4
2016-07-19 10:26 - 2016-07-19 10:26 - 00000000 ____D C:\Users\olga b\AppData\Roaming\FLEXnet
2016-07-19 10:20 - 2016-07-19 10:20 - 00002130 _____ C:\Users\Public\Desktop\Brother Utilities.lnk
2016-07-19 10:20 - 2016-07-19 10:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother
2016-07-19 10:18 - 2016-07-19 10:18 - 00000000 ____D C:\Brother
2016-07-19 10:17 - 2016-07-19 10:18 - 00000000 ____D C:\Program Files (x86)\Brother
2016-07-19 10:17 - 2016-07-19 10:17 - 00000000 ____D C:\ProgramData\ControlCenter4
2016-07-19 10:17 - 2016-07-19 10:17 - 00000000 ____D C:\Program Files (x86)\ControlCenter4
2016-07-19 10:17 - 2016-07-19 10:17 - 00000000 ____D C:\Program Files (x86)\Browny02
2016-07-19 10:17 - 2012-09-10 16:31 - 00245760 ____N (brother) C:\Windows\SysWOW64\NSSearch.dll
2016-07-19 10:17 - 2012-07-31 09:39 - 01439744 _____ (Brother Industries, Ltd.) C:\Windows\system32\BrWi209d.dll
2016-07-19 10:17 - 2012-07-09 17:19 - 00005120 ____N (Brother Industries Ltd.) C:\Windows\SysWOW64\BrDctF2S.dll
2016-07-19 10:17 - 2012-06-05 08:59 - 00025299 _____ (Brother Industries, Ltd) C:\Windows\SysWOW64\BRLM03A.DLL
2016-07-19 10:17 - 2010-06-07 13:18 - 00050688 _____ (Brother Industries, Ltd.) C:\Windows\system32\BrUsi09d.dll
2016-07-19 10:17 - 2010-05-10 10:45 - 00103736 _____ (Brother Industries Ltd) C:\Windows\SysWOW64\BRRBTOOL.EXE
2016-07-19 10:17 - 2010-04-01 12:27 - 00278528 _____ (Brother Industries, Ltd.) C:\Windows\system32\BrJDec.dll
2016-07-19 10:17 - 2010-03-15 19:45 - 00073728 ____N (Brother Industries Ltd.) C:\Windows\SysWOW64\BrDctF2.dll
2016-07-19 10:17 - 2010-02-05 04:42 - 00180224 _____ (Brother Industries, Ltd.) C:\Windows\SysWOW64\BROSNMP.DLL
2016-07-19 10:17 - 2007-12-13 22:16 - 00005120 ____N (Brother Industries Ltd.) C:\Windows\SysWOW64\BrDctF2L.dll
2016-07-19 10:17 - 2005-01-17 09:10 - 00045056 _____ C:\Windows\SysWOW64\BRTCPCON.DLL
2016-07-19 10:17 - 2004-08-09 09:00 - 00000114 _____ C:\Windows\SysWOW64\BRLMW03A.INI
2016-07-19 10:17 - 2004-08-09 08:42 - 00077824 _____ (Brother Industries, Ltd.) C:\Windows\SysWOW64\BRLMW03A.DLL
2016-07-19 10:17 - 1999-10-26 18:00 - 00000050 _____ C:\Windows\system32\BRADM10A.DAT
2016-07-19 10:13 - 2016-07-19 10:13 - 00000000 ____D C:\ProgramData\zeon
2016-07-19 10:13 - 2016-07-19 10:13 - 00000000 ____D C:\Program Files\Nuance
2016-07-19 10:11 - 2016-07-19 10:30 - 00000000 ____D C:\ProgramData\Nuance
2016-07-19 10:11 - 2016-07-19 10:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nuance PaperPort 12
2016-07-19 10:11 - 2016-07-19 10:13 - 00000000 ____D C:\Program Files (x86)\Nuance
2016-07-19 10:11 - 2016-07-19 10:11 - 00001917 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Software Updates.lnk
2016-07-19 10:11 - 2016-07-19 10:11 - 00000000 ____D C:\Users\olga b\Documents\MyWebPages
2016-07-19 10:11 - 2016-07-19 10:11 - 00000000 ____D C:\Users\olga b\AppData\Roaming\Nuance
2016-07-19 10:11 - 2016-07-19 10:11 - 00000000 ____D C:\ProgramData\ScanSoft
2016-07-19 10:11 - 2016-07-19 10:11 - 00000000 ____D C:\ProgramData\FLEXnet
2016-07-19 10:07 - 2016-07-19 10:07 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0
2016-07-19 10:06 - 2016-07-19 10:20 - 00000000 ____D C:\ProgramData\Brother
2016-07-19 10:00 - 2016-07-19 10:00 - 00071168 _____ C:\Users\olga b\Downloads\Nahrady_4J85288_01-01_31-01_1468915207.xls
2016-07-19 09:46 - 2016-07-19 09:46 - 00000370 _____ C:\Windows\SysWOW64\data.bin

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-08-17 20:01 - 2016-05-17 20:31 - 00000165 ____H C:\Users\olga b\AppData\Roaming\sp_data.sys
2016-08-17 18:45 - 2016-05-22 12:25 - 00000992 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-08-17 16:49 - 2016-05-22 16:06 - 00000000 ____D C:\UCTO2016
2016-08-17 14:37 - 2015-07-10 13:02 - 00000000 ____D C:\Windows\INF
2016-08-17 14:18 - 2016-05-21 19:43 - 00004210 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{85BEC19D-1947-4FF6-A531-DF55CC2E1F7E}
2016-08-17 10:45 - 2016-05-22 12:25 - 00000988 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-08-17 10:09 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\AppReadiness
2016-08-17 06:50 - 2015-07-10 13:04 - 00000000 ___HD C:\Program Files\WindowsApps
2016-08-16 23:45 - 2016-05-17 20:31 - 00000000 __SHD C:\Users\olga b\IntelGraphicsProfiles
2016-08-16 23:45 - 2016-05-17 20:25 - 00000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-08-16 23:43 - 2015-07-10 14:21 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-08-16 23:43 - 2015-07-10 11:05 - 00131072 ___SH C:\Windows\system32\config\BBI
2016-08-16 20:34 - 2016-05-22 14:55 - 00004020 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1463921741
2016-08-16 20:34 - 2016-05-22 14:55 - 00001090 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2016-08-16 20:29 - 2016-05-22 14:52 - 00513496 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2016-08-16 20:29 - 2016-05-22 14:52 - 00292704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2016-08-16 20:29 - 2016-05-22 14:52 - 00163416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2016-08-16 20:29 - 2016-05-22 14:52 - 00108816 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2016-08-16 20:29 - 2016-05-22 14:52 - 00103064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2016-08-16 20:29 - 2016-05-22 14:52 - 00074544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2016-08-16 20:29 - 2016-05-22 14:52 - 00037656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2016-08-16 20:29 - 2016-05-22 14:52 - 00004004 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2016-08-16 20:28 - 2016-05-22 14:55 - 00037144 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2016-08-16 20:28 - 2016-05-22 14:52 - 00969560 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2016-08-16 20:23 - 2016-05-22 12:16 - 00000865 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-08-16 17:55 - 2015-07-10 13:04 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2016-08-16 17:55 - 2015-07-10 13:04 - 00000000 ___RD C:\Windows\DevicesFlow
2016-08-16 17:55 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\SysWOW64\oobe
2016-08-16 17:55 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\system32\oobe
2016-08-16 17:55 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Windows Defender
2016-08-16 17:55 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-08-16 17:01 - 2016-06-26 18:58 - 00003550 _____ C:\Windows\System32\Tasks\ASUS Live Update1
2016-08-16 17:01 - 2016-06-26 18:58 - 00003540 _____ C:\Windows\System32\Tasks\ASUS Live Update2
2016-08-11 17:17 - 2016-06-26 19:08 - 00000000 ____D C:\STEREO24
2016-08-10 13:04 - 2015-07-10 12:55 - 00000000 ____D C:\Windows\CbsTemp
2016-08-10 12:59 - 2016-06-26 19:35 - 00000000 ____D C:\Windows\system32\MRT
2016-08-10 12:59 - 2016-05-21 21:26 - 00000000 ____D C:\Program Files (x86)\Platoward
2016-08-10 12:50 - 2016-06-26 19:35 - 147640136 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-08-10 12:48 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\system32\SecureBootUpdates
2016-08-09 06:46 - 2016-05-22 12:27 - 00002274 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-08-09 06:46 - 2016-05-22 12:27 - 00002262 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-08-06 17:47 - 2016-07-08 15:47 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-08-06 12:22 - 2016-05-17 20:31 - 00000000 ___HD C:\Users\olga b\AppData\Local\Packages
2016-08-04 02:02 - 2016-05-17 20:30 - 00000000 ___HD C:\Users\olga b
2016-08-03 21:31 - 2015-07-10 13:04 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-08-03 21:29 - 2015-08-15 07:30 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2016-08-03 08:45 - 2015-08-15 07:08 - 02718208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2016-08-01 10:40 - 2016-05-22 12:25 - 00004050 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-08-01 10:40 - 2016-05-22 12:25 - 00003818 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-07-25 00:13 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\system32\NDF
2016-07-24 22:18 - 2015-07-10 14:20 - 00352176 _____ C:\Windows\system32\FNTCACHE.DAT
2016-07-22 13:49 - 2016-05-17 20:47 - 00000000 ___HD C:\Users\olga b\AppData\Roaming\Kingsoft
2016-07-22 13:49 - 2016-05-17 20:47 - 00000000 ___HD C:\Users\olga b\AppData\Local\Kingsoft
2016-07-19 12:22 - 2015-08-15 15:26 - 00813396 _____ C:\Windows\system32\perfh005.dat
2016-07-19 12:22 - 2015-08-15 15:26 - 00173892 _____ C:\Windows\system32\perfc005.dat
2016-07-19 12:22 - 2015-08-15 07:21 - 01944576 _____ C:\Windows\system32\PerfStringBackup.INI
2016-07-19 10:16 - 2016-01-08 00:34 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information

==================== Files in the root of some directories =======

2016-05-17 20:31 - 2016-08-17 20:01 - 0000165 ____H () C:\Users\olga b\AppData\Roaming\sp_data.sys
2016-01-08 00:35 - 2016-01-08 00:35 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Some files in TEMP:
====================
C:\Users\olga b\AppData\Local\Temp\libeay32.dll
C:\Users\olga b\AppData\Local\Temp\msvcr120.dll
C:\Users\olga b\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\olga b\Desktop" je 8 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: kontrola logu

#6 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
HKU\S-1-5-21-4008709856-33150063-3746546202-1001\...\MountPoints2: {6300f034-1c5c-11e6-9bd4-80a5895cc8ec} - "G:\setup.EXE" /AUTORUN
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx <not found>
C:\Program Files (x86)\il4v5ya7
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\ProgramData\DP45977C.lfl
C:\Users\olga b\AppData\Local\Temp
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

majkllgg
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 16 srp 2016 20:30

Re: kontrola logu

#7 Příspěvek od majkllgg »

Fix result of Farbar Recovery Scan Tool (x64) Version: 17-08-2016
Ran by olga b (17-08-2016 21:31:30) Run:1
Running from C:\Users\olga b\Desktop
Loaded Profiles: olga b (Available Profiles: olga b)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
HKU\S-1-5-21-4008709856-33150063-3746546202-1001\...\MountPoints2: {6300f034-1c5c-11e6-9bd4-80a5895cc8ec} - "G:\setup.EXE" /AUTORUN
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx <not found>
C:\Program Files (x86)\il4v5ya7
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\ProgramData\DP45977C.lfl
C:\Users\olga b\AppData\Local\Temp
End
*****************

"HKU\S-1-5-21-4008709856-33150063-3746546202-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{6300f034-1c5c-11e6-9bd4-80a5895cc8ec}" => key removed successfully
HKCR\CLSID\{6300f034-1c5c-11e6-9bd4-80a5895cc8ec} => key not found.
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck" => key removed successfully
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki" => key removed successfully
C:\Program Files (x86)\il4v5ya7 => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
C:\ProgramData\DP45977C.lfl => moved successfully

"C:\Users\olga b\AppData\Local\Temp" folder move:

Could not move "C:\Users\olga b\AppData\Local\Temp" => Scheduled to move on reboot.


Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 17-08-2016 21:34:17)

C:\Users\olga b\AppData\Local\Temp => moved successfully

==== End of Fixlog 21:34:28 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: kontrola logu

#8 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

majkllgg
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 16 srp 2016 20:30

Re: kontrola logu

#9 Příspěvek od majkllgg »

Reklamní Okna už se při otevření stránky neotvírají.Jen ještě když se přihlašuji do mailu a kliknu na kolonku přihlašovací údaje nepravidelně se otevře stránka s reklamou.Nevím,jestli to není jen v nastavení Microsoft Edge.
Nemám dát ještě scan v programu Adwcleaner jestli to něco nenajde?
Kam můžu poslat nějakou korunu za pomoc?Pro mě nejlíp přes sms.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: kontrola logu

#10 Příspěvek od Rudy »

Udělejte ještě tyto skeny:

1. Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu

Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
Do okna vlozte skript nize




autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin;





Nasledne kliknete na Run Script
PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem.

a

2. Junkware removal tool: http://thisisudax.org/downloads/JRT.exe
•Ulozte nejlepe na plochu
•Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
•Probehne vytvoreni zalohy a nasledne prohledavani
•Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

majkllgg
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 16 srp 2016 20:30

Re: kontrola logu

#11 Příspěvek od majkllgg »

Ten první program spustím,ale potom se objeví chyba scriptu a nespustí se.Mám 64 bit verzi není v tom problém?

majkllgg
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 16 srp 2016 20:30

Re: kontrola logu

#12 Příspěvek od majkllgg »

Zoek.exe v5.0.0.1 Updated 31-December-2015
Tool run by olga b on 17.08.2016 at 23:27:21,60.
Microsoft Windows 10 Home 10.0.10240 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\olga b\Desktop\zoek (1).exe [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2016-08-17-205934.log 1706 bytes

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost

==== Empty Folders Check ======================

C:\Windows\serviceprofiles\Localservice\AppData\Local\NetworkTiles deleted successfully

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== Deleting Files \ Folders ======================

C:\PROGRA~2\Razoghchak deleted
C:\Users\olga b\AppData\Roaming\setup1 deleted
C:\Users\olga b\AppData\Local\MSGBOX.EXE deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\windows\SysNative\Tasks\avast! SL Update deleted
C:\windows\SysNative\tasks\SMW_UpdateTask_Time_3230373836343536302d23787845322a5b3434322d57 deleted
C:\windows\SysNative\GroupPolicy\Machine deleted
C:\windows\SysNative\GroupPolicy\User deleted
C:\windows\SysNative\GroupPolicy\GPT.INI deleted
C:\Windows\Syswow64\GroupPolicy\gpt.ini deleted
C:\Users\olga b\Desktop\Hotmail.lnk deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"sp@avast.com"="C:\Program Files\AVAST Software\Avast\SafePrice\FF" [16.08.2016 20:29]
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"sp@avast.com"="C:\Program Files\AVAST Software\Avast\SafePrice\FF" [16.08.2016 20:29]

==== Chromium Look ======================


Avast Online Security - olga b\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
Chrome Media Router - olga b\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Default_Search_URL"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://www.google.com"
"Default_Search_URL"="http://www.google.com"
"Search Page"="http://www.google.com"
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://www.google.com"
"Default_Search_URL"="http://www.google.com"
"Search Page"="http://www.google.com"
"Start Page"="http://www.google.com"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

==== All HKLM and HKCU SearchScopes ======================

HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTer ... TR&pc=ASTE
HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTer ... TR&pc=ASTE
HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTer ... TR&pc=ASTE

==== Reset Google Chrome ======================

C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== shortcuts on Users Desktops ======================

C:\Users\olga b\Desktop\JežekSW STEREO 24.lnk -
C:\Users\olga b\Desktop\Pomocník při upgradu na Windows 10.lnk -
C:\Users\olga b\Desktop\Převod dat do STEREO 24.lnk -
C:\Users\olga b\Desktop\Správa skeneru – zástupce.lnk -
C:\Users\olga b\Desktop\Tento počítač – zástupce.lnk -
C:\Users\olga b\Desktop\ÚČTO 2016 DOSBOX.LNK -

==== shortcuts on All Users Desktop ======================

C:\Users\Public\Desktop\Acrobat Reader DC.lnk - C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe
C:\Users\Public\Desktop\ASUS HiPost.lnk - C:\Program Files (x86)\ASUS\ASUS HiPost\SmartClipboardASUS.exe
C:\Users\Public\Desktop\Avast Free Antivirus.lnk - C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Users\Public\Desktop\Avast SafeZone Browser.lnk - C:\Program Files\AVAST Software\SZBrowser\launcher.exe
C:\Users\Public\Desktop\Brother Utilities.lnk - C:\Program Files (x86)\Brother\BrLauncher\BrLauncher.exe
C:\Users\Public\Desktop\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner64.exe
C:\Users\Public\Desktop\DAEMON Tools Lite.lnk - C:\Program Files\DAEMON Tools Lite\DTLauncher.exe
C:\Users\Public\Desktop\Dropbox 25 GB.lnk - C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe manual
C:\Users\Public\Desktop\Evernote.lnk - C:\windows\Installer\{FEDC7C10-EF67-11E4-9B07-00505695D7B0}\Evernote.ico
C:\Users\Public\Desktop\Eye Care Switcher.Lnk - C:\Program Files (x86)\ASUS\Splendid\Eye Care Switcher.exe
C:\Users\Public\Desktop\Fakturace GOLD 8.lnk - C:\Fakturace8_0\FakturaceGOLD8.exe
C:\Users\Public\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Public\Desktop\Manuál Fakturace WalSoft GOLD 8.lnk -
C:\Users\Public\Desktop\WebStorage.lnk - C:\Program Files (x86)\ASUS\WebStorage\2.2.2.524\AsusWSPanel.exe

==== shortcuts in Users Start Menu ======================

C:\Users\olga b\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk - C:\Users\olga b\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Users\olga b\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www-searching.com/?prd=set_epc&s ... 6cbb38432e,
C:\Users\olga b\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Poslat do aplikace OneNote.lnk - C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE /tsr
C:\Users\olga b\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Co je nového v nejnovější verzi.lnk -
C:\Users\olga b\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Manuál konzolové verze RARu.lnk -
C:\Users\olga b\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Nápověda WinRARu.lnk -
C:\Users\olga b\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk - C:\Program Files (x86)\WinRAR\WinRAR.exe

==== shortcuts in All Users Start Menu ======================

C:\ProgramData\Microsoft\Windows\Start Menu\Software Updates.lnk - C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk - C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk - C:\Windows\Installer\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}\SC_Reader.ico
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk - C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk - C:\Program Files\AVAST Software\SZBrowser\launcher.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk - C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fakturace GOLD 8.lnk - C:\Fakturace8_0\FakturaceGOLD8.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive pro firmy.lnk - C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVE.EXE
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk - C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTE.EXE
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk - C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pomocník při upgradu na Windows 10.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk - C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk - C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype pro firmy 2016.lnk - C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk - C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\ASUS Live Update.Lnk - C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother\Brother Utilities.lnk - C:\Program Files (x86)\Brother\BrLauncher\BrLauncher.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner64.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite\DAEMON Tools Lite.lnk - C:\Program Files\DAEMON Tools Lite\DTLauncher.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fakturace GOLD 8\Fakturace GOLD 8.lnk - C:\Fakturace8_0\FakturaceGOLD8.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fakturace GOLD 8\Manuál Fakturace WalSoft GOLD 8.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firebird 2.5 (Win32)\After Installation.lnk - C:\Program Files (x86)\Firebird\Firebird_2_5\doc\After_Installation.url
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firebird 2.5 (Win32)\Firebird 2.1.3 Installation Guide.lnk - C:\Program Files (x86)\Firebird\Firebird_2_5\doc\Firebird_v2.1.3.InstallationGuide.pdf
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firebird 2.5 (Win32)\Firebird 2.5 Quick Start Guide.lnk - C:\Program Files (x86)\Firebird\Firebird_2_5\doc\Firebird-2.5-QuickStart.pdf
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firebird 2.5 (Win32)\Firebird 2.5.0 Readme.lnk - C:\Program Files (x86)\Firebird\Firebird_2_5\readme.txt
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firebird 2.5 (Win32)\Firebird 2.5.0 Release Notes.lnk - C:\Program Files (x86)\Firebird\Firebird_2_5\doc\Firebird_v2.5.0.ReleaseNotes.pdf
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firebird 2.5 (Win32)\Firebird ISQL Tool.lnk - C:\Program Files (x86)\Firebird\Firebird_2_5\bin\isql.exe -z
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firebird 2.5 (Win32)\Firebird Web-site.lnk - C:\Program Files (x86)\Firebird\Firebird_2_5\doc\firebirdsql.org.url
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firebird 2.5 (Win32)\Uninstall Firebird 2.5.0.lnk - C:\Program Files (x86)\Firebird\Firebird_2_5\unins000.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ježek software STEREO\Ježek software Stereo 24.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ježek software STEREO\Odinstalovat STEREO 24.07.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ježek software STEREO\Převod dat do Stereo 24.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008\Configuration Tools\SQL Server Installation Center (64-bit).lnk - C:\Program Files (x86)\Microsoft SQL Server\100\Setup Bootstrap\Release\x64\LandingPage.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008 R2\Import and Export Data (64-bit).lnk - C:\Program Files (x86)\Microsoft SQL Server\100\DTS\Binn\DTSWizard.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008 R2\Configuration Tools\SQL Server Configuration Manager.lnk - C:\Windows\SysWOW64\mmc.exe /32 C:\Windows\SysWOW64\SQLServerManager10.msc
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008 R2\Configuration Tools\SQL Server Error and Usage Reporting.lnk - C:\Program Files (x86)\Microsoft SQL Server\100\Shared\SqlWtsn.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008 R2\Configuration Tools\SQL Server Installation Center (64-bit).lnk - C:\Program Files (x86)\Microsoft SQL Server\100\Setup Bootstrap\SQLServer2008R2\x64\LandingPage.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nuance PaperPort 12\ImageViewer.lnk - C:\Program Files (x86)\Nuance\PaperPort\pppagevw.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nuance PaperPort 12\PaperPort.lnk - C:\Program Files (x86)\Nuance\PaperPort\PaprPort.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nuance PaperPort 12\PDF Viewer Plus.lnk - C:\Program Files (x86)\Nuance\PDF Viewer Plus\bin\PDFPlus.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nuance PaperPort 12\Průvodce nastavením skeneru.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office 2016\Database Compare 2016.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office 2016\Jazykové předvolby Office 2016.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office 2016\Office 2016 Upload Center.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office 2016\Protokol telemetrie pro Office 2016.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office 2016\Spreadsheet Compare 2016.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office 2016\Správce nahrávek Skypu pro firmy.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office 2016\Řídicí panel telemetrie pro Office 2016.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Co je nového v nejnovější verzi.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Manuál konzolové verze RARu.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Nápověda WinRARu.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk - C:\Program Files (x86)\WinRAR\WinRAR.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip\Uninstall.lnk - C:\Program Files (x86)\WinZipper\wzUninstall.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WSDReader\WSDReader.lnk - C:\Program Files (x86)\WSDReader\WSDReader.exe

==== shortcuts in Quick Launch ======================

C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\olga b\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\olga b\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\olga b\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\olga b\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\olga b\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Excel 2016.lnk - C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE
C:\Users\olga b\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk -
C:\Users\olga b\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\olga b\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Edge.lnk - C:\Windows\explorer.exe "microsoft-edge:http://www-searching.com/?prd=set_epe&s ... 6cbb38432e,"
C:\Users\olga b\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Outlook 2016.lnk - C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
C:\Users\olga b\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Search.lnk - C:\program files\internet explorer\iexplore.exe http://www-searching.com/?prd=set_epe&s ... 6cbb38432e,
C:\Users\olga b\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Word 2016.lnk - C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE

==== shortcuts After Repair ======================

C:\Users\olga b\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\olga b\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Search.lnk - C:\Program Files\Internet Explorer\iexplore.exe

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\olga b\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\olga b\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\olga b\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\olga b\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

C:\Users\olga b\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

No Flash Cache Found

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=9 folders=4 1464314 bytes)

==== Empty Temp Folders ======================

C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\OLGAB~1\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on 18.08.2016 at 0:06:59,46 ======================

majkllgg
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 16 srp 2016 20:30

Re: kontrola logu

#13 Příspěvek od majkllgg »

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.7 (07.03.2016)
Operating System: Windows 10 Home x64
Ran by olga b (Administrator) on 18.08.2016 at 0:09:10,20
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 3

Successfully deleted: C:\Users\olga b\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\search.lnk (Shortcut)
Successfully deleted: C:\Windows\prefetch\AVAST_FREE_ANTIVIRUS_SETUP_ON-B6432632.pf (File)
Successfully repaired: C:\Users\olga b\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Edge.lnk (Shortcut)



Registry: 0





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 18.08.2016 at 0:13:36,33
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: kontrola logu

#14 Příspěvek od Rudy »

Změnilo se něco po skenech?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

majkllgg
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 16 srp 2016 20:30

Re: kontrola logu

#15 Příspěvek od majkllgg »

Už všechno funguje jak má.Omlouvám se ,že píšu až teď byla dovolená.
Ještě jednou moooc děkuji za pomoc.
Je nějaké číslo kam poslat prémiovou sms?

Zamčeno