Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Kontrola logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
milav
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 14 říj 2007 17:59

Re: Kontrola logu

#16 Příspěvek od milav »

Ale v tom druhém logu po restartu se už o karanténě píše... Já jsem ten první log dal uložit před přesunem do karantény, abys viděl co tam bylo nalezeno.

milav
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 14 říj 2007 17:59

Re: Kontrola logu

#17 Příspěvek od milav »

Tady posílám nové, teď vytvořené logy.

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 01-01-2017 (ATTENTION: ====> FRSTversion is 304 days old and could be outdated)
Ran by Milan (administrator) on MILAN-PC (01-11-2017 11:19:16)
Running from C:\Users\Milan\Desktop
Loaded Profiles: Milan (Available Profiles: Milan)
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(pdfforge GmbH) C:\Program Files\PDF Architect 4\creator-ws.exe
(© pdfforge GmbH.) C:\ProgramData\pdfforge\PDF Architect 4 Manager\PDF Architect 4\Architect Manager.exe
(pdfforge GbR) C:\Program Files\PDF Architect\HelperService.exe
(pdfforge GbR) C:\Program Files\PDF Architect\ConversionService.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(CANON INC.) C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
() C:\Users\Milan\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.bin
(Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [9874024 2010-11-19] (Realtek Semiconductor)
HKLM\...\Run: [CanonMyPrinter] => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [1983816 2009-07-27] (CANON INC.)
HKLM\...\Run: [CanonSolutionMenu] => C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [767312 2009-03-18] (CANON INC.)
HKLM\...\Run: [OrderReminder] => C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe [98304 2005-03-18] (Hewlett-Packard)
HKLM\...\Run: [HP Software Update] => C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [49152 2007-03-11] (Hewlett-Packard Co.)
HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1002984 2016-11-14] (Microsoft Corporation)
HKLM\...\Run: [SDTray] => C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe [3825176 2012-11-13] (Safer-Networking Ltd.)
HKLM\...\Run: [seznam-listicka-distribuce] => C:\Program Files\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-3185578175-294760507-565108644-1000\...\Run: [Spybot-S&D Cleaning] => C:\Program Files\Spybot - Search & Destroy 2\SDCleaner.exe [5915776 2016-03-21] (Safer-Networking Ltd.)
HKU\S-1-5-21-3185578175-294760507-565108644-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [7648984 2017-06-13] (Piriform Ltd)
HKU\S-1-5-21-3185578175-294760507-565108644-1000\...\Run: [Dropbox Update] => C:\Users\Milan\AppData\Local\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-04] (Dropbox, Inc.)
HKU\S-1-5-21-3185578175-294760507-565108644-1000\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.)
HKU\S-1-5-21-3185578175-294760507-565108644-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Milan\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-3185578175-294760507-565108644-1000\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Milan\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [103080 2015-05-26] ()
HKU\S-1-5-21-3185578175-294760507-565108644-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [27832272 2017-08-25] (Skype Technologies S.A.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk [2011-12-26]
ShortcutTarget: Adobe Gamma Loader.lnk -> C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
Startup: C:\Users\Milan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2016-08-05]
ShortcutTarget: Dropbox.lnk -> C:\Users\Milan\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Milan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk [2011-12-26]
ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
BootExecute: autocheck autochk * sdnclean.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{3FDCC64A-7CFA-4651-B704-1F461A4FD72C}: [DhcpNameServer] 10.0.0.138

Internet Explorer:
==================
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3185578175-294760507-565108644-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3185578175-294760507-565108644-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/?clid=29530
SearchScopes: HKLM -> DefaultScope value is missing
SearchScopes: HKU\S-1-5-21-3185578175-294760507-565108644-1000 -> {0AE2AEBE-219A-487C-91F5-4BAED3A4D42F} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_29530
SearchScopes: HKU\S-1-5-21-3185578175-294760507-565108644-1000 -> {21847039-42C1-4622-9A82-ABEBC42DC68F} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_29530
SearchScopes: HKU\S-1-5-21-3185578175-294760507-565108644-1000 -> {2204E442-5DC4-4F6D-AA92-5A4E16F4278E} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_29530
SearchScopes: HKU\S-1-5-21-3185578175-294760507-565108644-1000 -> {331D243F-EA60-4426-8098-EACD2C3BC6B0} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_29530
SearchScopes: HKU\S-1-5-21-3185578175-294760507-565108644-1000 -> {72FA176B-A3CD-442A-8A4A-4A43EB529059} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_29530
SearchScopes: HKU\S-1-5-21-3185578175-294760507-565108644-1000 -> {73C79A96-C317-45DA-912C-91C6A6BB72C1} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_29530
SearchScopes: HKU\S-1-5-21-3185578175-294760507-565108644-1000 -> {B035C288-8426-4E3C-BC50-1F4A54FDF7FA} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_29530
SearchScopes: HKU\S-1-5-21-3185578175-294760507-565108644-1000 -> {BB9DE296-C17A-4360-897C-DB397FC82C75} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_29530
SearchScopes: HKU\S-1-5-21-3185578175-294760507-565108644-1000 -> {CDB3A312-DBC3-47CE-A6ED-AFBAA64AAF28} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_29530
BHO: PDF Architect 4 Helper -> {38279E1A-7019-40C1-B579-E99DFB3312E8} -> C:\Program Files\PDF Architect 4\creator-ie-helper.dll [2016-01-15] (pdfforge GmbH)
BHO: PDF Architect Helper -> {3A2D5EBA-F86D-4BD3-A177-019765996711} -> C:\Program Files\PDF Architect\PDFIEHelper.dll [2012-11-22] (pdfforge GbR)
BHO: Spybot-S&D IE Protection -> {53707962-6F74-2D53-2644-206D7942484F} -> C:\Program Files\Spybot - Search & Destroy 2\SDHelper.dll [2012-11-13] (Safer-Networking Ltd.)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Skype add-on for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08] (Skype Technologies S.A.)
Toolbar: HKLM - PDF Architect 4 Toolbar - {23FD9C33-A9E1-48A1-8404-E5925CF1C8E1} - C:\Program Files\PDF Architect 4\creator-ie-plugin.dll [2016-01-15] (pdfforge GmbH)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08] (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2017-07-18] (Skype Technologies)

FireFox:
========
FF ProfilePath: C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\qrar7tc0.default [2017-11-01]
FF DefaultSearchEngine: Mozilla\Firefox\Profiles\qrar7tc0.default -> Seznam
FF SelectedSearchEngine: Mozilla\Firefox\Profiles\qrar7tc0.default ->
FF Homepage: Mozilla\Firefox\Profiles\qrar7tc0.default -> hxxps://www.seznam.cz/
FF Extension: (Seznam pro Firefox - Esko) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\qrar7tc0.default\Extensions\sko-extension@firma.seznam.cz.xpi [2017-10-31]
FF Extension: (uBlock Origin) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\qrar7tc0.default\Extensions\uBlock0@raymondhill.net.xpi [2017-10-31]
FF Extension: (No Name) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\qrar7tc0.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [not found]
FF Extension: (Skype extension for Firefox) - C:\Program Files\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1} [2017-07-02] [not signed]
FF HKLM\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files\PDF Architect\FFPDFArchitectExt
FF Extension: (PDF Architect Converter For Firefox) - C:\Program Files\PDF Architect\FFPDFArchitectExt [2012-11-28] [not signed]
FF HKLM\...\Firefox\Extensions: [pdf_architect_4_conv@pdfarchitect.org] - C:\Program Files\PDF Architect 4\resources\pdfarchitect4firefoxextension
FF Extension: (PDF Architect 4 Creator) - C:\Program Files\PDF Architect 4\resources\pdfarchitect4firefoxextension [2016-05-11] [not signed]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_27_0_0_183.dll [2017-10-30] ()
FF Plugin: @canon.com/EPPEX -> C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [2010-02-05] (CANON INC.)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2015-05-20] (Google)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-07-31] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2017-07-31] (Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Default

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [217088 2007-03-11] (Hewlett-Packard Co.) [File not signed]
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4430792 2017-08-07] (Malwarebytes)
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [103696 2016-11-14] (Microsoft Corporation)
R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [280864 2016-11-14] (Microsoft Corporation)
S3 PDF Architect 4; C:\Program Files\PDF Architect 4\ws.exe [2220768 2016-01-15] (pdfforge GmbH)
S3 PDF Architect 4 CrashHandler; C:\Program Files\PDF Architect 4\crash-handler-ws.exe [970464 2016-01-15] (pdfforge GmbH)
R2 PDF Architect 4 Creator; C:\Program Files\PDF Architect 4\creator-ws.exe [772832 2016-01-15] (pdfforge GmbH)
R2 PDF Architect 4 Manager; C:\ProgramData\pdfforge\PDF Architect 4 Manager\PDF Architect 4\Architect Manager.exe [959248 2015-10-05] (© pdfforge GmbH.)
R2 PDF Architect Helper Service; C:\Program Files\PDF Architect\HelperService.exe [1522312 2012-11-22] (pdfforge GbR)
R2 PDF Architect Service; C:\Program Files\PDF Architect\ConversionService.exe [905864 2012-11-22] (pdfforge GbR)
R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1103392 2012-11-13] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [4088608 2016-09-21] (Safer-Networking Ltd.) [File not signed]
R2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [235984 2016-11-24] (Safer-Networking Ltd.) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 asmthub3; C:\Windows\System32\DRIVERS\asmthub3.sys [100328 2011-02-24] (ASMedia Technology Inc)
R3 asmtxhci; C:\Windows\System32\DRIVERS\asmtxhci.sys [308200 2011-02-24] (ASMedia Technology Inc)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae.sys [59904 2017-10-04] ()
R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [166840 2017-11-01] (Malwarebytes)
R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [91576 2017-11-01] (Malwarebytes)
R3 MBAMProtection; C:\Windows\System32\DRIVERS\mbam.sys [40384 2017-11-01] (Malwarebytes)
R0 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [221112 2017-11-01] (Malwarebytes)
R3 MBAMWebProtection; C:\Windows\System32\DRIVERS\mwac.sys [65824 2017-11-01] (Malwarebytes)
R3 MEI; C:\Windows\System32\DRIVERS\HECI.sys [41088 2010-10-19] (Intel Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [252808 2016-08-25] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-11-01 11:17 - 2017-11-01 11:18 - 000000000 ____D C:\Users\Milan\Desktop\Staré logy FRST
2017-11-01 11:17 - 2017-11-01 11:17 - 000000000 ____D C:\Users\Milan\Desktop\FRST-OlderVersion
2017-11-01 10:15 - 2017-11-01 10:52 - 000091576 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2017-11-01 10:15 - 2017-11-01 10:52 - 000065824 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2017-11-01 10:15 - 2017-11-01 10:52 - 000040384 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2017-11-01 10:15 - 2017-11-01 10:15 - 000221112 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2017-11-01 10:15 - 2017-11-01 10:15 - 000166840 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys
2017-11-01 10:15 - 2017-11-01 10:15 - 000002020 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2017-11-01 10:15 - 2017-11-01 10:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-11-01 10:14 - 2017-11-01 10:14 - 000000000 ____D C:\ProgramData\Malwarebytes
2017-11-01 10:14 - 2017-11-01 10:14 - 000000000 ____D C:\Program Files\Malwarebytes
2017-11-01 10:14 - 2017-10-04 13:15 - 000059904 _____ C:\Windows\system32\Drivers\mbae.sys
2017-11-01 10:13 - 2017-11-01 10:14 - 071535032 _____ (Malwarebytes ) C:\Users\Milan\Downloads\mb3-setup-consumer-3.2.2.2029-1.0.212-1.0.2951.exe
2017-10-31 16:51 - 2017-10-31 16:56 - 000000000 ____D C:\AdwCleaner
2017-10-31 16:47 - 2017-10-31 16:47 - 008261584 _____ (Malwarebytes) C:\Users\Milan\Desktop\adwcleaner_7.0.4.0.exe
2017-10-31 09:51 - 2017-11-01 11:20 - 000016397 _____ C:\Users\Milan\Desktop\FRST.txt
2017-10-31 09:50 - 2017-11-01 11:19 - 000000000 ____D C:\FRST
2017-10-31 09:50 - 2017-10-31 09:50 - 000015327 _____ C:\Users\Milan\Desktop\LM.bat
2017-10-31 09:47 - 2017-11-01 11:17 - 001799680 _____ (Farbar) C:\Users\Milan\Desktop\FRST.exe
2017-10-30 22:20 - 2017-10-30 22:21 - 000000000 ____D C:\rsit
2017-10-27 18:09 - 2017-11-01 10:37 - 000000000 ____D C:\ProgramData\~0
2017-10-27 18:09 - 2017-10-30 22:00 - 000000000 ____D C:\Users\Milan\AppData\Local\IIIQF
2017-10-27 10:02 - 2017-10-27 18:29 - 000123665 _____ C:\Windows\hpgins21.dat.temp
2017-10-26 16:41 - 2007-05-02 10:39 - 000000282 _____ C:\Windows\hpgmdl21.dat.temp
2017-10-26 16:17 - 2017-10-30 22:00 - 000000000 ___RD C:\Users\Milan\Documents\Scanned Documents
2017-10-26 16:17 - 2017-10-30 22:00 - 000000000 ____D C:\Users\Milan\Documents\Fax
2017-10-19 21:28 - 2017-10-30 22:00 - 000000000 ____D C:\Users\Milan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2017-10-11 18:05 - 2017-10-11 18:05 - 124059592 ____C (Microsoft Corporation) C:\Windows\system32\MRT-KB890830.exe
2017-10-11 07:57 - 2017-09-13 16:13 - 004001512 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2017-10-11 07:57 - 2017-09-13 16:13 - 003945704 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-10-11 07:57 - 2017-09-13 16:13 - 000137960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2017-10-11 07:57 - 2017-09-13 16:13 - 000067304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2017-10-11 07:57 - 2017-09-13 16:10 - 001310528 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000830464 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000828928 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000655360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000428032 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000392704 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000261120 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000254464 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000223232 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000141312 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000099840 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000083968 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000080896 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2017-10-11 07:57 - 2017-09-13 16:08 - 001062912 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-10-11 07:57 - 2017-09-13 16:08 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2017-10-11 07:57 - 2017-09-13 16:08 - 000644096 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2017-10-11 07:57 - 2017-09-13 16:08 - 000554496 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2017-10-11 07:57 - 2017-09-13 16:08 - 000082432 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2017-10-11 07:57 - 2017-09-13 16:08 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2017-10-11 07:57 - 2017-09-13 16:08 - 000038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2017-10-11 07:57 - 2017-09-13 16:08 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2017-10-11 07:57 - 2017-09-13 16:08 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2017-10-11 07:57 - 2017-09-13 15:53 - 000271360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2017-10-11 07:57 - 2017-09-13 15:50 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2017-10-11 07:57 - 2017-09-13 15:50 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2017-10-11 07:57 - 2017-09-13 15:50 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2017-10-11 07:57 - 2017-09-13 15:50 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2017-10-11 07:57 - 2017-09-13 15:50 - 000016896 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2017-10-11 07:57 - 2017-09-13 15:48 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2017-10-11 07:57 - 2017-09-13 15:46 - 000226304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2017-10-11 07:57 - 2017-09-13 15:46 - 000124416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2017-10-11 07:57 - 2017-09-13 15:46 - 000098304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2017-10-11 07:57 - 2017-09-13 15:46 - 000069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2017-10-11 07:57 - 2017-09-13 15:46 - 000036352 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2017-10-11 07:57 - 2017-09-13 15:46 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2017-10-11 07:57 - 2017-09-13 15:46 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2017-10-11 07:57 - 2017-09-09 00:47 - 000347344 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2017-10-11 07:57 - 2017-09-08 16:14 - 001213672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2017-10-11 07:57 - 2017-09-08 16:10 - 001549824 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2017-10-11 07:57 - 2017-09-08 16:10 - 001363968 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll
2017-10-11 07:57 - 2017-09-08 16:10 - 000109568 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2017-10-11 07:57 - 2017-09-08 16:09 - 001400320 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2017-10-11 07:57 - 2017-09-08 16:09 - 000666624 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2017-10-11 07:57 - 2017-09-08 16:09 - 000337408 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2017-10-11 07:57 - 2017-09-08 16:09 - 000306688 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2017-10-11 07:57 - 2017-09-08 16:09 - 000197120 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2017-10-11 07:57 - 2017-09-08 16:09 - 000104448 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll
2017-10-11 07:57 - 2017-09-08 16:09 - 000059392 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2017-10-11 07:57 - 2017-09-08 16:09 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2017-10-11 07:57 - 2017-09-08 16:00 - 000427520 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2017-10-11 07:57 - 2017-09-08 16:00 - 000164352 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2017-10-11 07:57 - 2017-09-08 15:59 - 000086528 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2017-10-11 07:57 - 2017-09-08 15:59 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\msshooks.dll
2017-10-11 07:57 - 2017-09-08 15:50 - 002402304 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2017-10-11 07:57 - 2017-09-08 15:20 - 000640512 _____ (Microsoft Corporation) C:\Windows\system32\mswstr10.dll
2017-10-11 07:57 - 2017-09-08 15:20 - 000345088 _____ (Microsoft Corporation) C:\Windows\system32\msexcl40.dll
2017-10-11 07:57 - 2017-09-08 15:20 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\msjint40.dll
2017-10-11 07:57 - 2017-09-07 20:27 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2017-10-11 07:57 - 2017-09-07 20:26 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2017-10-11 07:57 - 2017-09-07 20:11 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2017-10-11 07:57 - 2017-09-07 20:10 - 000499200 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2017-10-11 07:57 - 2017-09-07 20:10 - 000341504 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2017-10-11 07:57 - 2017-09-07 20:10 - 000047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2017-10-11 07:57 - 2017-09-07 20:09 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2017-10-11 07:57 - 2017-09-07 20:04 - 020267008 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2017-10-11 07:57 - 2017-09-07 20:03 - 002292736 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2017-10-11 07:57 - 2017-09-07 20:03 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2017-10-11 07:57 - 2017-09-07 20:02 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2017-10-11 07:57 - 2017-09-07 19:59 - 000476160 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2017-10-11 07:57 - 2017-09-07 19:58 - 000663040 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2017-10-11 07:57 - 2017-09-07 19:58 - 000620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2017-10-11 07:57 - 2017-09-07 19:58 - 000115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2017-10-11 07:57 - 2017-09-07 19:58 - 000104960 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2017-10-11 07:57 - 2017-09-07 19:52 - 000667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2017-10-11 07:57 - 2017-09-07 19:49 - 000416256 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2017-10-11 07:57 - 2017-09-07 19:44 - 000073216 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2017-10-11 07:57 - 2017-09-07 19:44 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2017-10-11 07:57 - 2017-09-07 19:43 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2017-10-11 07:57 - 2017-09-07 19:40 - 000168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2017-10-11 07:57 - 2017-09-07 19:39 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2017-10-11 07:57 - 2017-09-07 19:37 - 000279040 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2017-10-11 07:57 - 2017-09-07 19:36 - 000130048 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2017-10-11 07:57 - 2017-09-07 19:29 - 004547072 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2017-10-11 07:57 - 2017-09-07 19:29 - 000230400 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2017-10-11 07:57 - 2017-09-07 19:26 - 000694784 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2017-10-11 07:57 - 2017-09-07 19:26 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2017-10-11 07:57 - 2017-09-07 19:25 - 002058752 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2017-10-11 07:57 - 2017-09-07 19:25 - 001155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2017-10-11 07:57 - 2017-09-07 19:17 - 013677568 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2017-10-11 07:57 - 2017-09-07 19:01 - 002767872 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2017-10-11 07:57 - 2017-09-07 18:57 - 001316864 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2017-10-11 07:57 - 2017-09-07 18:57 - 000710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2017-10-11 07:57 - 2017-09-07 16:12 - 002755072 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
2017-10-11 07:57 - 2017-09-07 15:48 - 000313856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2017-10-11 07:57 - 2017-09-07 15:48 - 000312320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2017-10-11 07:57 - 2017-09-07 15:48 - 000115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2017-10-11 07:57 - 2017-08-19 16:10 - 003209216 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2017-10-11 07:57 - 2017-08-19 16:10 - 000103424 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2017-10-11 07:57 - 2017-08-19 16:10 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2017-10-11 07:57 - 2017-08-19 15:57 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2017-10-11 07:57 - 2017-08-19 15:57 - 000023040 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2017-10-11 07:57 - 2017-08-14 18:35 - 000827904 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2017-10-11 07:57 - 2017-08-14 18:35 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll
2017-10-11 07:57 - 2017-08-13 22:35 - 000031744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2017-10-08 19:37 - 2017-10-09 08:26 - 000000000 ____D C:\Users\Milan\AppData\Roaming\Adobe

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-11-01 11:17 - 2016-11-19 08:30 - 000000000 ____D C:\Users\Milan\AppData\LocalLow\Mozilla
2017-11-01 11:00 - 2009-07-14 05:34 - 000028944 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-11-01 11:00 - 2009-07-14 05:34 - 000028944 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-11-01 10:58 - 2015-04-27 21:16 - 000000000 ____D C:\Users\Milan\AppData\Roaming\Seznam.cz
2017-11-01 10:58 - 2011-04-12 02:37 - 000668882 _____ C:\Windows\system32\perfh005.dat
2017-11-01 10:58 - 2011-04-12 02:37 - 000141542 _____ C:\Windows\system32\perfc005.dat
2017-11-01 10:58 - 2010-11-20 22:01 - 001584626 _____ C:\Windows\system32\PerfStringBackup.INI
2017-11-01 10:58 - 2009-07-14 03:37 - 000000000 ____D C:\Windows\inf
2017-11-01 10:56 - 2017-07-02 21:34 - 000000000 ____D C:\Program Files\Mozilla Firefox
2017-11-01 10:56 - 2012-05-03 06:09 - 000000000 ____D C:\Program Files\Mozilla Maintenance Service
2017-11-01 10:54 - 2011-12-24 20:49 - 000000000 ____D C:\Users\Milan\AppData\Roaming\Skype
2017-11-01 10:52 - 2009-07-14 05:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2017-11-01 10:50 - 2015-07-16 05:38 - 000000918 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-3185578175-294760507-565108644-1000UA.job
2017-11-01 09:21 - 2012-01-11 23:21 - 000000000 ___HD C:\Users\Milan\AppData\LocalLow\Temp
2017-10-31 14:50 - 2015-07-16 05:38 - 000000866 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-3185578175-294760507-565108644-1000Core.job
2017-10-30 23:04 - 2013-03-18 21:28 - 000803328 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2017-10-30 23:04 - 2011-12-25 20:58 - 000000000 ___HD C:\Users\Milan\AppData\Local\Adobe
2017-10-30 23:04 - 2011-12-24 22:55 - 000144896 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2017-10-30 23:04 - 2011-12-24 22:55 - 000000000 ____D C:\Windows\system32\Macromed
2017-10-30 22:33 - 2013-04-26 20:15 - 000000000 ____D C:\Program Files\trend micro
2017-10-30 22:00 - 2017-02-20 23:37 - 000000000 ____D C:\Users\Milan\AppData\Local\FSDART
2017-10-30 22:00 - 2013-06-29 18:53 - 000000000 ____D C:\ProgramData\McAfee
2017-10-30 22:00 - 2012-05-16 21:53 - 000000000 ____D C:\Users\Milan\AppData\Roaming\Dropbox
2017-10-30 22:00 - 2011-12-26 11:45 - 000000000 ____D C:\ProgramData\HP Product Assistant
2017-10-30 22:00 - 2011-12-25 22:31 - 000000000 ____D C:\ProgramData\Spybot - Search & Destroy
2017-10-30 22:00 - 2011-12-24 20:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2017-10-30 22:00 - 2011-12-24 20:03 - 000000000 ____D C:\Program Files\CCleaner
2017-10-30 22:00 - 2009-07-14 03:37 - 000000000 ____D C:\Windows\registration
2017-10-30 21:58 - 2011-12-26 11:44 - 000000000 ____D C:\Program Files\HP
2017-10-30 21:01 - 2011-12-24 15:04 - 000000000 ____D C:\Users\Milan
2017-10-30 20:48 - 2017-02-20 23:37 - 000000000 ____D C:\ProgramData\F-Secure
2017-10-27 19:00 - 2011-12-26 11:44 - 000123676 _____ C:\Windows\hpgins21.dat
2017-10-27 19:00 - 2011-12-26 11:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2017-10-27 18:52 - 2011-12-26 11:46 - 000000000 ____D C:\Program Files\Common Files\HP
2017-10-27 18:31 - 2012-01-05 21:01 - 000000000 ___HD C:\Users\Milan\AppData\Roaming\Image Zone Express
2017-10-26 20:04 - 2011-12-26 13:24 - 000000000 ___HD C:\Users\Milan\Documents\Moje naskenované obrázky
2017-10-11 18:19 - 2009-07-14 05:33 - 000305632 _____ C:\Windows\system32\FNTCACHE.DAT
2017-10-11 18:09 - 2013-08-13 23:07 - 000000000 ____D C:\Windows\system32\MRT
2017-10-11 18:05 - 2011-12-28 10:05 - 124059592 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-10-11 07:45 - 2016-12-28 19:16 - 000000000 ____D C:\Program Files\Mozilla Thunderbird
2017-10-03 20:09 - 2015-02-17 20:54 - 000029852 _____ C:\Users\Milan\Desktop\Alternátor.odt

==================== Files in the root of some directories =======

2015-02-13 23:26 - 2015-02-13 23:26 - 006103040 _____ () C:\Program Files\GUT7501.tmp
2016-05-03 21:28 - 2016-05-03 21:28 - 000000091 _____ () C:\Users\Milan\AppData\Roaming\Safer-Networking.log
2014-06-08 22:15 - 2014-06-08 22:15 - 000000000 _____ () C:\Users\Milan\AppData\Roaming\Microsoft\3B5B.tmp
2013-03-22 20:27 - 2015-11-16 08:40 - 000004608 _____ () C:\Users\Milan\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-05-04 12:00 - 2017-07-30 20:04 - 000007598 _____ () C:\Users\Milan\AppData\Local\Resmon.ResmonCfg
2011-12-24 20:54 - 2011-12-24 20:54 - 000000056 _____ () C:\ProgramData\ezsidmv.dat
2011-12-26 11:44 - 2017-10-27 19:44 - 000009589 _____ () C:\ProgramData\hpzinstall.log

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2017-09-13 21:04

==================== End of FRST.txt ============================
Přílohy
Addition.zip
(12.41 KiB) Staženo 69 x

Kodlz
Přítel fóra
Přítel fóra
Příspěvky: 780
Registrován: 30 kvě 2008 12:11

Re: Kontrola logu

#18 Příspěvek od Kodlz »

Asi tam mas vice verzi FRST. ted jsi mi poslal z verze ktera je ze zacatku roku, vysledky by nemuseli byt objektivni.
Poprosim te vytvorit log z aktualni verze FRST.

milav
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 14 říj 2007 17:59

Re: Kontrola logu

#19 Příspěvek od milav »

Přiložené logy jsou jen z FRST. Nově jsem stáhnul FRST i FRSTLauncher. Když jsem spustil FRSTlauncher, tak mi to napsalo že nesouhlasí verze systému a FRST. Že mám stáhnout 32 bitovou verzi. Ale já ji stahuji. Vím že mám 32 bitový systém. Vše jsem zkoušel opakovaně.Takže jsem spustil aspoň sken ze samotného FRST.
Vidím že v logu je opět napsáno že verze je stará 304 dnů, ale je to ta, kterou jsem stáhnul. Stahoval jsem ze stránky dle tvého odkazu, který jsi uvedl výše.

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 01-01-2017 (ATTENTION: ====> FRSTversion is 304 days old and could be outdated)
Ran by Milan (administrator) on MILAN-PC (01-11-2017 13:21:52)
Running from C:\Users\Milan\Downloads
Loaded Profiles: Milan (Available Profiles: Milan)
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(pdfforge GmbH) C:\Program Files\PDF Architect 4\creator-ws.exe
(© pdfforge GmbH.) C:\ProgramData\pdfforge\PDF Architect 4 Manager\PDF Architect 4\Architect Manager.exe
(pdfforge GbR) C:\Program Files\PDF Architect\HelperService.exe
(pdfforge GbR) C:\Program Files\PDF Architect\ConversionService.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(CANON INC.) C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
() C:\Users\Milan\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.bin
(Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe
(Mozilla Corporation) C:\Program Files\Mozilla Thunderbird\thunderbird.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [9874024 2010-11-19] (Realtek Semiconductor)
HKLM\...\Run: [CanonMyPrinter] => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [1983816 2009-07-27] (CANON INC.)
HKLM\...\Run: [CanonSolutionMenu] => C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [767312 2009-03-18] (CANON INC.)
HKLM\...\Run: [OrderReminder] => C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe [98304 2005-03-18] (Hewlett-Packard)
HKLM\...\Run: [HP Software Update] => C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [49152 2007-03-11] (Hewlett-Packard Co.)
HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1002984 2016-11-14] (Microsoft Corporation)
HKLM\...\Run: [SDTray] => C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe [3825176 2012-11-13] (Safer-Networking Ltd.)
HKLM\...\Run: [seznam-listicka-distribuce] => C:\Program Files\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-3185578175-294760507-565108644-1000\...\Run: [Spybot-S&D Cleaning] => C:\Program Files\Spybot - Search & Destroy 2\SDCleaner.exe [5915776 2016-03-21] (Safer-Networking Ltd.)
HKU\S-1-5-21-3185578175-294760507-565108644-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [7648984 2017-06-13] (Piriform Ltd)
HKU\S-1-5-21-3185578175-294760507-565108644-1000\...\Run: [Dropbox Update] => C:\Users\Milan\AppData\Local\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-04] (Dropbox, Inc.)
HKU\S-1-5-21-3185578175-294760507-565108644-1000\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.)
HKU\S-1-5-21-3185578175-294760507-565108644-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Milan\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-3185578175-294760507-565108644-1000\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Milan\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [103080 2015-05-26] ()
HKU\S-1-5-21-3185578175-294760507-565108644-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [27832272 2017-08-25] (Skype Technologies S.A.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk [2011-12-26]
ShortcutTarget: Adobe Gamma Loader.lnk -> C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
Startup: C:\Users\Milan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2016-08-05]
ShortcutTarget: Dropbox.lnk -> C:\Users\Milan\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Milan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk [2011-12-26]
ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
BootExecute: autocheck autochk * sdnclean.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{3FDCC64A-7CFA-4651-B704-1F461A4FD72C}: [DhcpNameServer] 10.0.0.138

Internet Explorer:
==================
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3185578175-294760507-565108644-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3185578175-294760507-565108644-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/?clid=29530
SearchScopes: HKLM -> DefaultScope value is missing
SearchScopes: HKU\S-1-5-21-3185578175-294760507-565108644-1000 -> {0AE2AEBE-219A-487C-91F5-4BAED3A4D42F} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_29530
SearchScopes: HKU\S-1-5-21-3185578175-294760507-565108644-1000 -> {21847039-42C1-4622-9A82-ABEBC42DC68F} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_29530
SearchScopes: HKU\S-1-5-21-3185578175-294760507-565108644-1000 -> {2204E442-5DC4-4F6D-AA92-5A4E16F4278E} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_29530
SearchScopes: HKU\S-1-5-21-3185578175-294760507-565108644-1000 -> {331D243F-EA60-4426-8098-EACD2C3BC6B0} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_29530
SearchScopes: HKU\S-1-5-21-3185578175-294760507-565108644-1000 -> {72FA176B-A3CD-442A-8A4A-4A43EB529059} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_29530
SearchScopes: HKU\S-1-5-21-3185578175-294760507-565108644-1000 -> {73C79A96-C317-45DA-912C-91C6A6BB72C1} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_29530
SearchScopes: HKU\S-1-5-21-3185578175-294760507-565108644-1000 -> {B035C288-8426-4E3C-BC50-1F4A54FDF7FA} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_29530
SearchScopes: HKU\S-1-5-21-3185578175-294760507-565108644-1000 -> {BB9DE296-C17A-4360-897C-DB397FC82C75} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_29530
SearchScopes: HKU\S-1-5-21-3185578175-294760507-565108644-1000 -> {CDB3A312-DBC3-47CE-A6ED-AFBAA64AAF28} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_29530
BHO: PDF Architect 4 Helper -> {38279E1A-7019-40C1-B579-E99DFB3312E8} -> C:\Program Files\PDF Architect 4\creator-ie-helper.dll [2016-01-15] (pdfforge GmbH)
BHO: PDF Architect Helper -> {3A2D5EBA-F86D-4BD3-A177-019765996711} -> C:\Program Files\PDF Architect\PDFIEHelper.dll [2012-11-22] (pdfforge GbR)
BHO: Spybot-S&D IE Protection -> {53707962-6F74-2D53-2644-206D7942484F} -> C:\Program Files\Spybot - Search & Destroy 2\SDHelper.dll [2012-11-13] (Safer-Networking Ltd.)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Skype add-on for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08] (Skype Technologies S.A.)
Toolbar: HKLM - PDF Architect 4 Toolbar - {23FD9C33-A9E1-48A1-8404-E5925CF1C8E1} - C:\Program Files\PDF Architect 4\creator-ie-plugin.dll [2016-01-15] (pdfforge GmbH)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08] (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2017-07-18] (Skype Technologies)

FireFox:
========
FF ProfilePath: C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\qrar7tc0.default [2017-11-01]
FF DefaultSearchEngine: Mozilla\Firefox\Profiles\qrar7tc0.default -> Seznam
FF SelectedSearchEngine: Mozilla\Firefox\Profiles\qrar7tc0.default ->
FF Homepage: Mozilla\Firefox\Profiles\qrar7tc0.default -> hxxps://www.seznam.cz/
FF Extension: (Seznam pro Firefox - Esko) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\qrar7tc0.default\Extensions\sko-extension@firma.seznam.cz.xpi [2017-10-31]
FF Extension: (uBlock Origin) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\qrar7tc0.default\Extensions\uBlock0@raymondhill.net.xpi [2017-10-31]
FF Extension: (No Name) - C:\Users\Milan\AppData\Roaming\Mozilla\Firefox\Profiles\qrar7tc0.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [not found]
FF Extension: (Skype extension for Firefox) - C:\Program Files\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1} [2017-07-02] [not signed]
FF HKLM\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files\PDF Architect\FFPDFArchitectExt
FF Extension: (PDF Architect Converter For Firefox) - C:\Program Files\PDF Architect\FFPDFArchitectExt [2012-11-28] [not signed]
FF HKLM\...\Firefox\Extensions: [pdf_architect_4_conv@pdfarchitect.org] - C:\Program Files\PDF Architect 4\resources\pdfarchitect4firefoxextension
FF Extension: (PDF Architect 4 Creator) - C:\Program Files\PDF Architect 4\resources\pdfarchitect4firefoxextension [2016-05-11] [not signed]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_27_0_0_183.dll [2017-10-30] ()
FF Plugin: @canon.com/EPPEX -> C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [2010-02-05] (CANON INC.)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2015-05-20] (Google)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-07-31] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2017-07-31] (Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Default

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [217088 2007-03-11] (Hewlett-Packard Co.) [File not signed]
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [103696 2016-11-14] (Microsoft Corporation)
R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [280864 2016-11-14] (Microsoft Corporation)
S3 PDF Architect 4; C:\Program Files\PDF Architect 4\ws.exe [2220768 2016-01-15] (pdfforge GmbH)
S3 PDF Architect 4 CrashHandler; C:\Program Files\PDF Architect 4\crash-handler-ws.exe [970464 2016-01-15] (pdfforge GmbH)
R2 PDF Architect 4 Creator; C:\Program Files\PDF Architect 4\creator-ws.exe [772832 2016-01-15] (pdfforge GmbH)
R2 PDF Architect 4 Manager; C:\ProgramData\pdfforge\PDF Architect 4 Manager\PDF Architect 4\Architect Manager.exe [959248 2015-10-05] (© pdfforge GmbH.)
R2 PDF Architect Helper Service; C:\Program Files\PDF Architect\HelperService.exe [1522312 2012-11-22] (pdfforge GbR)
R2 PDF Architect Service; C:\Program Files\PDF Architect\ConversionService.exe [905864 2012-11-22] (pdfforge GbR)
R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1103392 2012-11-13] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [4088608 2016-09-21] (Safer-Networking Ltd.) [File not signed]
R2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [235984 2016-11-24] (Safer-Networking Ltd.) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 asmthub3; C:\Windows\System32\DRIVERS\asmthub3.sys [100328 2011-02-24] (ASMedia Technology Inc)
R3 asmtxhci; C:\Windows\System32\DRIVERS\asmtxhci.sys [308200 2011-02-24] (ASMedia Technology Inc)
R3 MEI; C:\Windows\System32\DRIVERS\HECI.sys [41088 2010-10-19] (Intel Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [252808 2016-08-25] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-11-01 13:21 - 2017-11-01 13:22 - 000016123 _____ C:\Users\Milan\Downloads\FRST.txt
2017-11-01 13:21 - 2017-11-01 13:21 - 000015327 _____ C:\Users\Milan\Desktop\LM.bat
2017-11-01 13:20 - 2017-11-01 13:20 - 001799680 _____ (Farbar) C:\Users\Milan\Downloads\FRST.exe
2017-11-01 13:20 - 2017-11-01 13:20 - 000112640 _____ (forum.viry.cz) C:\Users\Milan\Downloads\FRSTLauncher.exe
2017-11-01 13:12 - 2017-11-01 13:21 - 000029696 _____ C:\Users\Milan\AppData\Local\MSGBOX.EXE
2017-11-01 11:24 - 2017-11-01 11:24 - 000038181 _____ C:\Users\Milan\Desktop\FRST1.txt
2017-11-01 11:17 - 2017-11-01 11:18 - 000000000 ____D C:\Users\Milan\Desktop\Staré logy FRST
2017-11-01 11:17 - 2017-11-01 11:17 - 000000000 ____D C:\Users\Milan\Desktop\FRST-OlderVersion
2017-11-01 10:14 - 2017-11-01 10:14 - 000000000 ____D C:\Program Files\Malwarebytes
2017-11-01 10:13 - 2017-11-01 10:14 - 071535032 _____ (Malwarebytes ) C:\Users\Milan\Downloads\mb3-setup-consumer-3.2.2.2029-1.0.212-1.0.2951.exe
2017-10-31 16:51 - 2017-10-31 16:56 - 000000000 ____D C:\AdwCleaner
2017-10-31 16:47 - 2017-10-31 16:47 - 008261584 _____ (Malwarebytes) C:\Users\Milan\Desktop\adwcleaner_7.0.4.0.exe
2017-10-31 09:50 - 2017-11-01 13:21 - 000000000 ____D C:\FRST
2017-10-30 22:20 - 2017-10-30 22:21 - 000000000 ____D C:\rsit
2017-10-27 18:09 - 2017-11-01 10:37 - 000000000 ____D C:\ProgramData\~0
2017-10-27 18:09 - 2017-10-30 22:00 - 000000000 ____D C:\Users\Milan\AppData\Local\IIIQF
2017-10-27 10:02 - 2017-10-27 18:29 - 000123665 _____ C:\Windows\hpgins21.dat.temp
2017-10-26 16:41 - 2007-05-02 10:39 - 000000282 _____ C:\Windows\hpgmdl21.dat.temp
2017-10-26 16:17 - 2017-10-30 22:00 - 000000000 ___RD C:\Users\Milan\Documents\Scanned Documents
2017-10-26 16:17 - 2017-10-30 22:00 - 000000000 ____D C:\Users\Milan\Documents\Fax
2017-10-19 21:28 - 2017-10-30 22:00 - 000000000 ____D C:\Users\Milan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2017-10-11 18:05 - 2017-10-11 18:05 - 124059592 ____C (Microsoft Corporation) C:\Windows\system32\MRT-KB890830.exe
2017-10-11 07:57 - 2017-09-13 16:13 - 004001512 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2017-10-11 07:57 - 2017-09-13 16:13 - 003945704 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-10-11 07:57 - 2017-09-13 16:13 - 000137960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2017-10-11 07:57 - 2017-09-13 16:13 - 000067304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2017-10-11 07:57 - 2017-09-13 16:10 - 001310528 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000830464 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000828928 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000655360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000428032 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000392704 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000261120 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000254464 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000223232 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000141312 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000099840 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000083968 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000080896 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2017-10-11 07:57 - 2017-09-13 16:09 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2017-10-11 07:57 - 2017-09-13 16:08 - 001062912 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-10-11 07:57 - 2017-09-13 16:08 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2017-10-11 07:57 - 2017-09-13 16:08 - 000644096 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2017-10-11 07:57 - 2017-09-13 16:08 - 000554496 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2017-10-11 07:57 - 2017-09-13 16:08 - 000082432 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2017-10-11 07:57 - 2017-09-13 16:08 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2017-10-11 07:57 - 2017-09-13 16:08 - 000038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2017-10-11 07:57 - 2017-09-13 16:08 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2017-10-11 07:57 - 2017-09-13 16:08 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2017-10-11 07:57 - 2017-09-13 15:53 - 000271360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2017-10-11 07:57 - 2017-09-13 15:50 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2017-10-11 07:57 - 2017-09-13 15:50 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2017-10-11 07:57 - 2017-09-13 15:50 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2017-10-11 07:57 - 2017-09-13 15:50 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2017-10-11 07:57 - 2017-09-13 15:50 - 000016896 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2017-10-11 07:57 - 2017-09-13 15:48 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2017-10-11 07:57 - 2017-09-13 15:46 - 000226304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2017-10-11 07:57 - 2017-09-13 15:46 - 000124416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2017-10-11 07:57 - 2017-09-13 15:46 - 000098304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2017-10-11 07:57 - 2017-09-13 15:46 - 000069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2017-10-11 07:57 - 2017-09-13 15:46 - 000036352 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2017-10-11 07:57 - 2017-09-13 15:46 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2017-10-11 07:57 - 2017-09-13 15:46 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2017-10-11 07:57 - 2017-09-09 00:47 - 000347344 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2017-10-11 07:57 - 2017-09-08 16:14 - 001213672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2017-10-11 07:57 - 2017-09-08 16:10 - 001549824 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2017-10-11 07:57 - 2017-09-08 16:10 - 001363968 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll
2017-10-11 07:57 - 2017-09-08 16:10 - 000109568 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2017-10-11 07:57 - 2017-09-08 16:09 - 001400320 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2017-10-11 07:57 - 2017-09-08 16:09 - 000666624 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2017-10-11 07:57 - 2017-09-08 16:09 - 000337408 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2017-10-11 07:57 - 2017-09-08 16:09 - 000306688 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2017-10-11 07:57 - 2017-09-08 16:09 - 000197120 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2017-10-11 07:57 - 2017-09-08 16:09 - 000104448 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll
2017-10-11 07:57 - 2017-09-08 16:09 - 000059392 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2017-10-11 07:57 - 2017-09-08 16:09 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2017-10-11 07:57 - 2017-09-08 16:00 - 000427520 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2017-10-11 07:57 - 2017-09-08 16:00 - 000164352 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2017-10-11 07:57 - 2017-09-08 15:59 - 000086528 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2017-10-11 07:57 - 2017-09-08 15:59 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\msshooks.dll
2017-10-11 07:57 - 2017-09-08 15:50 - 002402304 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2017-10-11 07:57 - 2017-09-08 15:20 - 000640512 _____ (Microsoft Corporation) C:\Windows\system32\mswstr10.dll
2017-10-11 07:57 - 2017-09-08 15:20 - 000345088 _____ (Microsoft Corporation) C:\Windows\system32\msexcl40.dll
2017-10-11 07:57 - 2017-09-08 15:20 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\msjint40.dll
2017-10-11 07:57 - 2017-09-07 20:27 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2017-10-11 07:57 - 2017-09-07 20:26 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2017-10-11 07:57 - 2017-09-07 20:11 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2017-10-11 07:57 - 2017-09-07 20:10 - 000499200 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2017-10-11 07:57 - 2017-09-07 20:10 - 000341504 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2017-10-11 07:57 - 2017-09-07 20:10 - 000047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2017-10-11 07:57 - 2017-09-07 20:09 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2017-10-11 07:57 - 2017-09-07 20:04 - 020267008 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2017-10-11 07:57 - 2017-09-07 20:03 - 002292736 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2017-10-11 07:57 - 2017-09-07 20:03 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2017-10-11 07:57 - 2017-09-07 20:02 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2017-10-11 07:57 - 2017-09-07 19:59 - 000476160 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2017-10-11 07:57 - 2017-09-07 19:58 - 000663040 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2017-10-11 07:57 - 2017-09-07 19:58 - 000620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2017-10-11 07:57 - 2017-09-07 19:58 - 000115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2017-10-11 07:57 - 2017-09-07 19:58 - 000104960 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2017-10-11 07:57 - 2017-09-07 19:52 - 000667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2017-10-11 07:57 - 2017-09-07 19:49 - 000416256 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2017-10-11 07:57 - 2017-09-07 19:44 - 000073216 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2017-10-11 07:57 - 2017-09-07 19:44 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2017-10-11 07:57 - 2017-09-07 19:43 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2017-10-11 07:57 - 2017-09-07 19:40 - 000168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2017-10-11 07:57 - 2017-09-07 19:39 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2017-10-11 07:57 - 2017-09-07 19:37 - 000279040 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2017-10-11 07:57 - 2017-09-07 19:36 - 000130048 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2017-10-11 07:57 - 2017-09-07 19:29 - 004547072 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2017-10-11 07:57 - 2017-09-07 19:29 - 000230400 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2017-10-11 07:57 - 2017-09-07 19:26 - 000694784 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2017-10-11 07:57 - 2017-09-07 19:26 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2017-10-11 07:57 - 2017-09-07 19:25 - 002058752 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2017-10-11 07:57 - 2017-09-07 19:25 - 001155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2017-10-11 07:57 - 2017-09-07 19:17 - 013677568 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2017-10-11 07:57 - 2017-09-07 19:01 - 002767872 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2017-10-11 07:57 - 2017-09-07 18:57 - 001316864 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2017-10-11 07:57 - 2017-09-07 18:57 - 000710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2017-10-11 07:57 - 2017-09-07 16:12 - 002755072 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
2017-10-11 07:57 - 2017-09-07 15:48 - 000313856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2017-10-11 07:57 - 2017-09-07 15:48 - 000312320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2017-10-11 07:57 - 2017-09-07 15:48 - 000115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2017-10-11 07:57 - 2017-08-19 16:10 - 003209216 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2017-10-11 07:57 - 2017-08-19 16:10 - 000103424 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2017-10-11 07:57 - 2017-08-19 16:10 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2017-10-11 07:57 - 2017-08-19 15:57 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2017-10-11 07:57 - 2017-08-19 15:57 - 000023040 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2017-10-11 07:57 - 2017-08-14 18:35 - 000827904 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2017-10-11 07:57 - 2017-08-14 18:35 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll
2017-10-11 07:57 - 2017-08-13 22:35 - 000031744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2017-10-08 19:37 - 2017-10-09 08:26 - 000000000 ____D C:\Users\Milan\AppData\Roaming\Adobe

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-11-01 12:53 - 2016-11-19 08:30 - 000000000 ____D C:\Users\Milan\AppData\LocalLow\Mozilla
2017-11-01 12:52 - 2015-07-16 05:38 - 000000918 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-3185578175-294760507-565108644-1000UA.job
2017-11-01 11:00 - 2009-07-14 05:34 - 000028944 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-11-01 11:00 - 2009-07-14 05:34 - 000028944 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-11-01 10:58 - 2015-04-27 21:16 - 000000000 ____D C:\Users\Milan\AppData\Roaming\Seznam.cz
2017-11-01 10:58 - 2011-04-12 02:37 - 000668882 _____ C:\Windows\system32\perfh005.dat
2017-11-01 10:58 - 2011-04-12 02:37 - 000141542 _____ C:\Windows\system32\perfc005.dat
2017-11-01 10:58 - 2010-11-20 22:01 - 001584626 _____ C:\Windows\system32\PerfStringBackup.INI
2017-11-01 10:58 - 2009-07-14 03:37 - 000000000 ____D C:\Windows\inf
2017-11-01 10:56 - 2017-07-02 21:34 - 000000000 ____D C:\Program Files\Mozilla Firefox
2017-11-01 10:56 - 2012-05-03 06:09 - 000000000 ____D C:\Program Files\Mozilla Maintenance Service
2017-11-01 10:54 - 2011-12-24 20:49 - 000000000 ____D C:\Users\Milan\AppData\Roaming\Skype
2017-11-01 10:52 - 2009-07-14 05:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2017-11-01 09:21 - 2012-01-11 23:21 - 000000000 ___HD C:\Users\Milan\AppData\LocalLow\Temp
2017-10-31 14:50 - 2015-07-16 05:38 - 000000866 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-3185578175-294760507-565108644-1000Core.job
2017-10-30 23:04 - 2013-03-18 21:28 - 000803328 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2017-10-30 23:04 - 2011-12-25 20:58 - 000000000 ___HD C:\Users\Milan\AppData\Local\Adobe
2017-10-30 23:04 - 2011-12-24 22:55 - 000144896 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2017-10-30 23:04 - 2011-12-24 22:55 - 000000000 ____D C:\Windows\system32\Macromed
2017-10-30 22:33 - 2013-04-26 20:15 - 000000000 ____D C:\Program Files\trend micro
2017-10-30 22:00 - 2017-02-20 23:37 - 000000000 ____D C:\Users\Milan\AppData\Local\FSDART
2017-10-30 22:00 - 2013-06-29 18:53 - 000000000 ____D C:\ProgramData\McAfee
2017-10-30 22:00 - 2012-05-16 21:53 - 000000000 ____D C:\Users\Milan\AppData\Roaming\Dropbox
2017-10-30 22:00 - 2011-12-26 11:45 - 000000000 ____D C:\ProgramData\HP Product Assistant
2017-10-30 22:00 - 2011-12-25 22:31 - 000000000 ____D C:\ProgramData\Spybot - Search & Destroy
2017-10-30 22:00 - 2011-12-24 20:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2017-10-30 22:00 - 2011-12-24 20:03 - 000000000 ____D C:\Program Files\CCleaner
2017-10-30 22:00 - 2009-07-14 03:37 - 000000000 ____D C:\Windows\registration
2017-10-30 21:58 - 2011-12-26 11:44 - 000000000 ____D C:\Program Files\HP
2017-10-30 21:01 - 2011-12-24 15:04 - 000000000 ____D C:\Users\Milan
2017-10-30 20:48 - 2017-02-20 23:37 - 000000000 ____D C:\ProgramData\F-Secure
2017-10-27 19:00 - 2011-12-26 11:44 - 000123676 _____ C:\Windows\hpgins21.dat
2017-10-27 19:00 - 2011-12-26 11:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2017-10-27 18:52 - 2011-12-26 11:46 - 000000000 ____D C:\Program Files\Common Files\HP
2017-10-27 18:31 - 2012-01-05 21:01 - 000000000 ___HD C:\Users\Milan\AppData\Roaming\Image Zone Express
2017-10-26 20:04 - 2011-12-26 13:24 - 000000000 ___HD C:\Users\Milan\Documents\Moje naskenované obrázky
2017-10-11 18:19 - 2009-07-14 05:33 - 000305632 _____ C:\Windows\system32\FNTCACHE.DAT
2017-10-11 18:09 - 2013-08-13 23:07 - 000000000 ____D C:\Windows\system32\MRT
2017-10-11 18:05 - 2011-12-28 10:05 - 124059592 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-10-11 07:45 - 2016-12-28 19:16 - 000000000 ____D C:\Program Files\Mozilla Thunderbird
2017-10-03 20:09 - 2015-02-17 20:54 - 000029852 _____ C:\Users\Milan\Desktop\Alternátor.odt

==================== Files in the root of some directories =======

2015-02-13 23:26 - 2015-02-13 23:26 - 006103040 _____ () C:\Program Files\GUT7501.tmp
2016-05-03 21:28 - 2016-05-03 21:28 - 000000091 _____ () C:\Users\Milan\AppData\Roaming\Safer-Networking.log
2014-06-08 22:15 - 2014-06-08 22:15 - 000000000 _____ () C:\Users\Milan\AppData\Roaming\Microsoft\3B5B.tmp
2013-03-22 20:27 - 2015-11-16 08:40 - 000004608 _____ () C:\Users\Milan\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2017-11-01 13:12 - 2017-11-01 13:21 - 000029696 _____ () C:\Users\Milan\AppData\Local\MSGBOX.EXE
2015-05-04 12:00 - 2017-07-30 20:04 - 000007598 _____ () C:\Users\Milan\AppData\Local\Resmon.ResmonCfg
2011-12-24 20:54 - 2011-12-24 20:54 - 000000056 _____ () C:\ProgramData\ezsidmv.dat
2011-12-26 11:44 - 2017-10-27 19:44 - 000009589 _____ () C:\ProgramData\hpzinstall.log

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2017-09-13 21:04

==================== End of FRST.txt ============================
Přílohy
Addition.zip
(12.25 KiB) Staženo 80 x

Kodlz
Přítel fóra
Přítel fóra
Příspěvky: 780
Registrován: 30 kvě 2008 12:11

Re: Kontrola logu

#20 Příspěvek od Kodlz »

dobre,
kazdopadne tam nic nevidim...takze myslim, ze pc je ciste.
jde to nejak poznat vycisteni na vykonu?

milav
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 14 říj 2007 17:59

Re: Kontrola logu

#21 Příspěvek od milav »

Momentálně mám využití paměti 51% a běží mi tam Thunderbird, Skype a Firefox. Musím teď provést odinstalovámí nepotřebných programů a pouvažiji o rošíření RAM.
Moc děkuji za trpělivost a spolupráci s takovým neumětelem jako jsem já. :)

Kodlz
Přítel fóra
Přítel fóra
Příspěvky: 780
Registrován: 30 kvě 2008 12:11

Re: Kontrola logu

#22 Příspěvek od Kodlz »

jsem rad, ze jsem aspon tochu pomohl.
:closed:

Zamčeno