Chrome obcas nenacitava stranky, musim ich 1x obnovit.
Vo FF nepotrebujem
(Домашняя страница Mail.Ru)
(Seznam lištička)
(Nepi Jano!)
V Chrome nepotrebujem
CHR HomePage: Default -> mail.ru/cnt/11956636?rciguc__PARAM__
PC je trochu spomaleny, ale to bude mozno vekom.
Dakujem za kontrolu.
Kód: Vybrat vše
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 23.09.2018
Ran by Spravca (administrator) on PC (24-09-2018 14:53:12)
Running from C:\Documents and Settings\Spravca\Dokumenty\Downloads
Loaded Profiles: Spravca (Available Profiles: Spravca & peter & peter1)
Platform: Systém Microsoft Windows XP Professional Service Pack 3 (X86) Language: Čeština
Internet Explorer Version 8 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe
(ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe
(Microsoft Corporation) C:\WINDOWS\system32\scardsvr.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Hemoco bvba) C:\Program Files\Lansweeper\IISexpress\IISexpressSVC.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
(Microsoft Corporation) C:\Program Files\IIS Express\iisexpress.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(Glarysoft Ltd) C:\Program Files\Glary Utilities 5\Integrator.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(Google Inc.) C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jucheck.exe
(Google Inc.) C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDCPL] => C:\WINDOWS\RTHDCPL.EXE [16132608 2007-04-12] (Realtek Semiconductor Corp.)
HKLM\...\Run: [AlcWzrd] => C:\WINDOWS\ALCWZRD.EXE [2808832 2006-05-04] (RealTek Semicoductor Corp.)
HKLM\...\Run: [KeePass 2 PreLoad] => C:\Program Files\KeePass Password Safe 2\KeePass.exe [2720144 2015-08-09] (Dominik Reichl)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
Winlogon\Notify\AtiExtEvent: C:\WINDOWS\system32\Ati2evxx.dll [2007-02-02] (ATI Technologies Inc.)
HKU\S-1-5-21-1409082233-651377827-725345543-1003\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [90112 2006-11-10] ()
HKU\S-1-5-21-1409082233-651377827-725345543-1003\...\Run: [GUDelayStartup] => C:\Program Files\Glary Utilities 5\StartupManager.exe [43984 2018-09-17] (Glarysoft Ltd)
HKU\S-1-5-21-1409082233-651377827-725345543-1003\...\Policies\system: [EnableProfileQuota] 1
HKU\S-1-5-21-1409082233-651377827-725345543-1003\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\CRAZYS~1.SCR [903168 2007-07-21] (Jan Kolarik & Ondrej Vaverka)
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> (None)
BootExecute: autocheck autochk * BootDefrag.exe
GroupPolicy: Restriction ? <==== ATTENTION
GroupPolicy\User: Restriction ? <==== ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
ProxyServer: [S-1-5-21-1409082233-651377827-725345543-1003] => 185.82.212.95:8080
AutoConfigURL: [S-1-5-21-1409082233-651377827-725345543-1003] => 185.82.212.95:8080
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{B07DBD5D-AD32-4174-BAEE-DF0B8CDE12BF}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1409082233-651377827-725345543-1003\Software\Microsoft\Internet Explorer\Main,Start Page =
URLSearchHook: HKU\S-1-5-21-1409082233-651377827-725345543-1003 - (No Name) - {f0381dbd-e018-4e07-ae40-d96ab15083f0} - No File
SearchScopes: HKU\S-1-5-21-1409082233-651377827-725345543-1003 -> {4F11ACBB-393F-4c86-A214-FF3D0D155CC3} URL = hxxp://search.burn4free-toolbar.com/search?p=Q&ts=ne&w={searchTerms}&csrc=search-field
SearchScopes: HKU\S-1-5-21-1409082233-651377827-725345543-1003 -> {682FCCDA-76E7-44A5-8EB2-2FC94F70710E} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
BHO: Podpora odkazu pro Adobe PDF Reader -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23] (Adobe Systems Incorporated)
BHO: Skype add-on (mastermind) -> {22BF413B-C6D2-4d91-82A9-A0F997BA588C} -> C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2009-08-04] (Skype Technologies S.A.)
BHO: Spybot-S&D IE Protection -> {53707962-6F74-2D53-2644-206D7942484F} -> C:\Program Files\Spybot - Search & Destroy\SDHelper.dll [2009-01-26] (Safer Networking Limited)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2018-03-02] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2018-03-02] (Oracle Corporation)
Toolbar: HKLM - No Name - {f0381dbd-e018-4e07-ae40-d96ab15083f0} - No File
Toolbar: HKU\S-1-5-21-1409082233-651377827-725345543-1003 -> &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll [2008-04-14] (Společnost Microsoft)
Toolbar: HKU\S-1-5-21-1409082233-651377827-725345543-1003 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKU\S-1-5-21-1409082233-651377827-725345543-1003 -> No Name - {F0381DBD-E018-4E07-AE40-D96AB15083F0} - No File
DPF: {17492023-C23A-453E-A040-C7C580BBF700} hxxp://download.microsoft.com/download/8/b/d/8bd77752-5704-4d68-a152-f7252adaa4f2/LegitCheckControl.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
DPF: {B49C4597-8721-4789-9250-315DFBD9F525} hxxp://www.yayindayiz.biz/yayin/ampx2.6.1.11_en_dl.cab
DPF: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL [2000-04-19] (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2011-11-03] (Skype Technologies)
FireFox:
========
FF DefaultProfile: vw66mlbp.default
FF ProfilePath: C:\Documents and Settings\Spravca\Data aplikací\Mozilla\Firefox\Profiles\vw66mlbp.default [2018-09-11]
FF Homepage: C:\Documents and Settings\Spravca\Data aplikací\Mozilla\Firefox\Profiles\vw66mlbp.default -> hxxp://www.google.sk/
FF Extension: (Nepi Jano!) - C:\Documents and Settings\Spravca\Data aplikací\Mozilla\Firefox\Profiles\vw66mlbp.default\Extensions\@nepi-jano.xpi [2017-10-11]
FF Extension: (facepaste) - C:\Documents and Settings\Spravca\Data aplikací\Mozilla\Firefox\Profiles\vw66mlbp.default\Extensions\facepaste.firefox.addon@azabani.com.xpi [2017-05-15] [Legacy]
FF Extension: (SaveFrom.net helper) - C:\Documents and Settings\Spravca\Data aplikací\Mozilla\Firefox\Profiles\vw66mlbp.default\Extensions\helper-sig@savefrom.net.xpi [2018-09-07]
FF Extension: (Домашняя страница Mail.Ru) - C:\Documents and Settings\Spravca\Data aplikací\Mozilla\Firefox\Profiles\vw66mlbp.default\Extensions\homepage@mail.ru [2017-02-01] [Legacy]
FF Extension: (LastPass: Free Password Manager) - C:\Documents and Settings\Spravca\Data aplikací\Mozilla\Firefox\Profiles\vw66mlbp.default\Extensions\support@lastpass.com.xpi [2018-09-07]
FF Extension: (uBlock Origin) - C:\Documents and Settings\Spravca\Data aplikací\Mozilla\Firefox\Profiles\vw66mlbp.default\Extensions\uBlock0@raymondhill.net.xpi [2018-09-07]
FF Extension: (Vlc context menu) - C:\Documents and Settings\Spravca\Data aplikací\Mozilla\Firefox\Profiles\vw66mlbp.default\Extensions\vlcplaylist@helgatauscher.de.xpi [2016-05-17] [Legacy]
FF Extension: (VLC Youtube Shortcut) - C:\Documents and Settings\Spravca\Data aplikací\Mozilla\Firefox\Profiles\vw66mlbp.default\Extensions\vlc_shortcut@kosan.kosan.xpi [2017-07-03] [Legacy]
FF Extension: (Video DownloadHelper) - C:\Documents and Settings\Spravca\Data aplikací\Mozilla\Firefox\Profiles\vw66mlbp.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2017-12-20] [Legacy]
FF Extension: (Adblock Plus) - C:\Documents and Settings\Spravca\Data aplikací\Mozilla\Firefox\Profiles\vw66mlbp.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2018-09-07]
FF Extension: (Seznam lištička) - C:\Documents and Settings\Spravca\Data aplikací\Mozilla\Firefox\Profiles\vw66mlbp.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2017-10-11] [Legacy]
FF SearchPlugin: C:\Documents and Settings\Spravca\Data aplikací\Mozilla\Firefox\Profiles\vw66mlbp.default\searchplugins\mailru.xml [2017-02-01]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: (Microsoft .NET Framework Assistant) - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2012-11-10] [Legacy] [not signed]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_26_0_0_131.dll [2017-07-03] ()
FF Plugin: @divx.com/DivX Browser Plugin,version=1.0.0 -> C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll [2009-11-14] (DivX,Inc.)
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2017-12-01] (Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2017-12-01] (Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2017-12-01] (Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2017-12-01] (Foxit Corporation)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google)
FF Plugin: @java.com/DTPlugin,version=10.51.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2018-03-02] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.51.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2018-03-02] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-30] (Microsoft Corporation)
FF Plugin: @real.com/nppl3260;version=6.0.12.448 -> C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll [2009-10-05] (RealNetworks, Inc.)
FF Plugin: @real.com/nprjplug;version=1.0.3.448 -> C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll [2009-10-05] (RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=6.0.12.448 -> C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll [2009-10-05] (RealNetworks, Inc.)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.)
FF Plugin: @verimatrix.com/ViewRightWeb -> C:\Program Files\Verimatrix\ViewRight Web\\npViewRight.dll [2012-12-19] (Verimatrix, Inc.)
FF Plugin: @videolan.org/vlc,version=2.2.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-08-09] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-08-09] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-08-09] (VideoLAN)
FF Plugin: yaxmpb@yahoo.com/YahooActiveXPluginBridge;version=1.0.0.1 -> C:\Program Files\Yahoo!\Common\npyaxmpb.dll [2006-11-03] (Yahoo! Inc.)
FF Plugin HKU\S-1-5-21-1409082233-651377827-725345543-1003: @tools.google.com/Google Update;version=3 -> C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-06-07] (Google Inc.)
FF Plugin HKU\S-1-5-21-1409082233-651377827-725345543-1003: @tools.google.com/Google Update;version=9 -> C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-06-07] (Google Inc.)
FF Plugin HKU\S-1-5-21-1409082233-651377827-725345543-1003: @verimatrix.com/ViewRightWeb -> C:\Program Files\Verimatrix\ViewRight Web\\npViewRight.dll [2012-12-19] (Verimatrix, Inc.)
Chrome:
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> mail.ru/cnt/11956636?rciguc__PARAM__
CHR StartupUrls: Default -> "hxxp://www.google.sk/"
CHR NewTab: Default -> Not-active:"chrome-extension://ohcahokjbpeadggaaojimmmpahjemoaa/newtab.html"
CHR Profile: C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default [2018-09-24]
CHR Extension: (Prezentace Google) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-04-28]
CHR Extension: (Flash Video Downloader) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aiimdkdngfcipjohbjenkahhlhccpdbc [2018-09-24]
CHR Extension: (Dokumenty Google) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-04-28]
CHR Extension: (Seznam doplněk - Email) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2018-09-07]
CHR Extension: (YouTube) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25]
CHR Extension: (Adblock Plus) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2018-09-12]
CHR Extension: (APK Downloader) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\cgihflhdpokeobcfimliamffejfnmfii [2015-11-12]
CHR Extension: (DownAlbum) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\cgjnhhjpfcdhbhlcmmjppicjmgfkppok [2018-08-27]
CHR Extension: (uBlock Origin) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2018-08-28]
CHR Extension: (Google Search) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-28]
CHR Extension: (Nepi Jano!) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\dmiebaglkdeebobffhbomapifjjjjakj [2017-11-04]
CHR Extension: (VTchromizer) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\efbjojhplkelaegfbieplglfidafgoka [2017-03-09]
CHR Extension: (Gmail v režime offline) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk [2016-07-21]
CHR Extension: (Tabulky Google) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-04-28]
CHR Extension: (PhotoLive - Download Facebook Photos!) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fpjnpabklnaaifclgealaepelncljadk [2017-12-05]
CHR Extension: (Dokumenty Google offline) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-04-28]
CHR Extension: (No Coin - Block miners on the web!) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\gojamcfopckidlocpkbelmpjcgmbgjcl [2018-03-03]
CHR Extension: (Mixcloud Downloader) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\hcacjajhaajmpeladcjdbgghfgfamome [2018-05-12]
CHR Extension: (LastPass: Free Password Manager) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2018-09-07]
CHR Extension: (Centrum.cz Email Notifikátor) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\hmmnahgmbjnpgdoadbfoficgoamahklm [2017-03-09]
CHR Extension: (VXG Media Player) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\hncknjnnbahamgpjoafdebabmoamcnni [2018-09-07]
CHR Extension: (Music Player for Google Drive) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\hnfeekfpnjbdmelcapngdgkjnhgijjkh [2016-07-21]
CHR Extension: (Mate Translate – translator, dictionary) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\ihmgiclibbndffejedjimfjmfoabpcke [2018-08-20]
CHR Extension: (View image) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\jpcmhcelnjdmblfmjabdeclccemkghjk [2018-09-18]
CHR Extension: (Windy) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\kfboghlfmbkcjhddfklnbpobkajncacl [2018-05-09]
CHR Extension: (SafeInCloud Password Manager) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\lchdigjbcmdgcfeijpfkpadacbijihjl [2018-06-26]
CHR Extension: (Project Naptha) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\molncoemjfmpgdkbdlbjmhlcgniigdnf [2018-09-24]
CHR Extension: (Tipli do prehliadača) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\mpijoellhiljjmeeloljbehhhjkpijpb [2018-03-21]
CHR Extension: (PDF Merge - spájanie súborov PDF) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\ndolbcaghkmhjhgggldkgjibdilpbdbm [2018-01-26]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
CHR Extension: (Professional Video & Flash Downloader ) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\ohcahokjbpeadggaaojimmmpahjemoaa [2017-10-06]
CHR Extension: (PDFMerge!) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pgdacedgjnjempjojkeglobekhdnljlp [2017-03-08]
CHR Extension: (Gmail) - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-30]
CHR HKU\S-1-5-21-1409082233-651377827-725345543-1003\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\DOCUME~1\Spravca\LOCALS~1\DATAAP~1\Google\Drive\user_default\apdfllckaahabafndbhieahigkjlhalf_live.crx [2016-07-02]
CHR HKU\S-1-5-21-1409082233-651377827-725345543-1003\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
StartMenuInternet: chrome.exe - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
StartMenuInternet: Google Chrome - C:\Documents and Settings\Spravca\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S4 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [272384 2018-03-09] (Adobe Systems Incorporated) [File not signed]
S3 CGVPNCliService; C:\Program Files\CyberGhost 5\Service.exe [65128 2016-01-11] (CyberGhost S.R.L)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2251320 2018-03-07] (ESET)
S3 FoxitReaderService; C:\Program Files\Foxit Software\Foxit Reader\FoxitConnectedPDFService.exe [1659456 2017-12-12] (Foxit Software Inc.)
S2 HidServ; C:\WINDOWS\System32\svchost.exe [14336 2008-04-14] (Microsoft Corporation) <==== ATTENTION (no ServiceDLL)
R2 IISExpressSVC; C:\Program Files\Lansweeper\IISExpress\IISexpressSVC.exe [131072 2017-08-07] (Hemoco bvba) [File not signed]
R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2018-03-02] (Oracle Corporation)
S3 lansweeperservice; C:\Program Files\Lansweeper\Service\Lansweeperservice.exe [15909888 2018-02-19] (Lansweeper) [File not signed]
S3 Mezzmo; C:\Program Files\Conceiva\Mezzmo\MezzmoMediaServer.exe [5645056 2014-12-08] (Conceiva Pty. Ltd.)
S3 PassThru Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [167424 2012-12-07] () [File not signed]
S3 Serviio; C:\Program Files\Serviio\bin\ServiioService.exe [327680 2015-03-21] () [File not signed]
S4 WiseBootAssistant; C:\Program Files\Wise\Wise Care 365\BootTime.exe [579904 2015-04-30] (WiseCleaner.com) [File not signed]
S3 WsAppService; C:\Program Files\Wondershare\WAF\2.4.3.231\WsAppService.exe [480256 2017-10-24] (Wondershare) [File not signed]
S3 MBAMScheduler; "\mbamscheduler.exe" [X]
S4 MBAMService; "\mbamservice.exe" [X]
S3 rpcapd; "%ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini" [X]
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 AmdK8; C:\WINDOWS\System32\DRIVERS\AmdK8.sys [36864 2006-07-01] (Advanced Micro Devices)
R0 BootDefragDriver; C:\WINDOWS\System32\drivers\BootDefragDriver.sys [14784 2014-06-16] (Glarysoft Ltd)
S1 Changer; C:\WINDOWS\system32\Drivers\Changer.sys [8192 2008-04-14] (Microsoft Corporation)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [113544 2018-03-07] (ESET)
R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [91104 2018-03-07] (ESET)
R1 ehdrv; C:\WINDOWS\System32\DRIVERS\ehdrv.sys [140968 2018-03-07] (ESET)
R2 ekbdflt; C:\WINDOWS\System32\DRIVERS\ekbdflt.sys [43912 2018-03-07] (ESET)
R1 epfw; C:\WINDOWS\System32\DRIVERS\epfw.sys [69304 2018-03-07] (ESET)
R3 Epfwndis; C:\WINDOWS\System32\DRIVERS\Epfwndis.sys [56840 2018-03-07] (ESET)
R1 epfwtdi; C:\WINDOWS\System32\DRIVERS\epfwtdi.sys [77616 2018-03-07] (ESET)
S3 GemCCID; C:\WINDOWS\System32\DRIVERS\GemCCID.sys [98816 2013-02-22] (Gemalto)
R1 GUBootStartup; C:\WINDOWS\System32\drivers\GUBootStartup.sys [25864 2018-07-26] (Glarysoft Ltd)
R1 GUSBootStartup; C:\WINDOWS\System32\drivers\GUSBootStartup.sys [17472 2016-07-01] (Glarysoft Ltd)
R3 HssDrv; C:\WINDOWS\System32\DRIVERS\HssDrv.sys [39656 2012-08-01] (AnchorFree Inc.)
S1 lbrtfdc; C:\WINDOWS\system32\Drivers\lbrtfdc.sys [34688 2008-04-14] (Toshiba Corp.)
S3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation)
R3 MTsensor; C:\WINDOWS\System32\DRIVERS\ASACPI.sys [5810 2004-08-13] ()
S3 NPF; C:\WINDOWS\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc.)
S3 taphss; C:\WINDOWS\System32\DRIVERS\taphss.sys [33512 2012-08-01] (AnchorFree Inc)
R2 VBoxDrv; C:\Program Files\YouWave Android\vb\VBoxDrv.sys [142720 2014-03-30] (Oracle Corporation)
S3 WiseHDInfo; C:\WINDOWS\WiseHDInfo32.dll [13264 2015-10-01] (wisecleaner.com) [File not signed]
S3 WiseRegNotify; C:\WINDOWS\WiseRegNotify.sys [23984 2016-07-14] (WiseCleaner.com) [File not signed]
U2 CertPropSvc; no ImagePath
S4 IntelIde; no ImagePath
U5 P3; C:\Windows\System32\Drivers\P3.sys [46592 2008-04-14] (Microsoft Corporation)
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-14] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-09-11 18:29 - 2018-09-11 18:29 - 000000747 _____ C:\Documents and Settings\All Users\Plocha\Perfect Player.lnk
2018-09-11 18:29 - 2018-09-11 18:29 - 000000000 ____D C:\Program Files\PerfectPlayer
2018-09-11 18:29 - 2018-09-11 18:29 - 000000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Perfect Player
2018-09-11 18:18 - 2018-09-11 18:23 - 000000000 ____D C:\Program Files\Perfect Player
2018-08-27 16:25 - 2018-08-27 16:25 - 000000000 ____D C:\PLAYLISTFINDER for XP
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-09-24 14:54 - 2008-03-29 11:19 - 000000000 ____D C:\Temp
2018-09-24 14:53 - 2015-01-19 21:05 - 000000000 ____D C:\FRST
2018-09-24 14:43 - 2014-06-28 06:46 - 000000320 _____ C:\WINDOWS\Tasks\GlaryInitialize 5.job
2018-09-24 14:42 - 2008-03-29 11:13 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2018-09-24 14:42 - 2008-03-29 11:13 - 000000000 ___HD C:\Documents and Settings\Spravca\Šablony
2018-09-24 14:41 - 2008-03-29 11:28 - 000524288 _____ C:\WINDOWS\system32\config\ACEEvent.evt
2018-09-24 14:41 - 2008-03-29 11:13 - 000032612 _____ C:\WINDOWS\SchedLgU.Txt
2018-09-24 14:41 - 2008-03-29 11:13 - 000000178 ___SH C:\Documents and Settings\Spravca\ntuser.ini
2018-09-24 14:40 - 2015-08-05 21:04 - 000000000 ____D C:\AdwCleaner
2018-09-24 13:38 - 2014-06-28 06:46 - 000000000 ____D C:\Documents and Settings\Spravca\Data aplikací\DiskDefrag
2018-09-24 13:38 - 2001-10-25 14:00 - 000002206 _____ C:\WINDOWS\system32\wpa.dbl
2018-09-21 11:10 - 2008-04-28 01:23 - 000000000 ____D C:\Documents and Settings\Spravca\Data aplikací\vlc
2018-09-21 10:23 - 2016-07-02 01:44 - 000000000 ___RD C:\DRIVE
2018-09-20 12:00 - 2008-03-29 11:38 - 000002407 _____ C:\WINDOWS\wincmd.ini
2018-09-20 10:00 - 2014-11-07 07:17 - 000000380 _____ C:\WINDOWS\Tasks\GlaryUpdate 5.job
2018-09-19 22:44 - 2014-06-28 06:46 - 000000766 _____ C:\Documents and Settings\All Users\Nabídka Start\Programy\Glary Utilities 5.lnk
2018-09-19 22:44 - 2014-06-28 06:46 - 000000760 _____ C:\Documents and Settings\All Users\Plocha\Glary Utilities 5.lnk
2018-09-19 22:43 - 2014-06-28 06:46 - 000000000 ____D C:\Program Files\Glary Utilities 5
2018-09-14 12:22 - 2008-03-29 11:13 - 000000000 ____D C:\Documents and Settings\Spravca
2018-09-12 17:46 - 2008-03-29 12:02 - 000000000 ___RD C:\Documents and Settings\All Users\Nabídka Start\Programy
2018-09-12 17:46 - 2008-03-29 12:02 - 000000000 ____D C:\Documents and Settings\All Users\Plocha
2018-09-12 17:23 - 2015-09-04 23:01 - 000000000 ____D C:\Documents and Settings\Spravca\Data aplikací\SimpleTV V03
2018-09-12 07:59 - 2010-08-16 00:00 - 000000000 ____D C:\Documents and Settings\Spravca\Data aplikací\GlarySoft
2018-09-11 00:44 - 2016-06-14 21:09 - 000000000 ____D C:\Documents and Settings\Spravca\Data aplikací\PerfectPlayer
2018-09-10 20:59 - 2017-11-08 09:22 - 000000290 _____ C:\WINDOWS\wcx_ftp.ini
2018-09-07 00:59 - 2015-12-10 18:47 - 000000724 _____ C:\Documents and Settings\All Users\Plocha\VLC media player.lnk
2018-08-27 16:25 - 2009-06-01 00:07 - 000172857 ____H C:\treeinfo.wc
2018-08-27 15:38 - 2018-06-25 15:32 - 000342624 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2018-08-27 15:38 - 2015-09-18 10:23 - 000000000 ____D C:\Program Files\Mozilla Maintenance Service
==================== Files in the root of some directories =======
2014-09-07 23:08 - 2014-09-07 23:08 - 000000000 _____ () C:\Program Files\GUM6F.tmp
2018-05-29 16:46 - 2018-05-29 17:14 - 000000005 _____ () C:\Documents and Settings\Spravca\Data aplikací\pprcount.dat
2009-03-16 07:32 - 2017-02-07 13:15 - 000049664 _____ () C:\Documents and Settings\Spravca\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2018-03-14 22:02 - 2018-03-14 22:02 - 000000864 _____ () C:\Documents and Settings\Spravca\Local Settings\Data aplikací\recently-used.xbel
2018-03-02 12:38 - 2018-03-02 12:38 - 000000100 _____ () C:\Documents and Settings\All Users\Data aplikací\Microsoft.SqlServer.Compact.400.32.bc
2016-04-28 17:44 - 2016-04-28 17:44 - 000000016 _____ () C:\Documents and Settings\All Users\Data aplikací\mntemp
Some zero byte size files/folders:
==========================
C:\Windows\logo_1.exe
C:\Windows\VDLL.DLL
C:\Windows\System32\runouce.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
==================== End of FRST.txt ============================