Tak se zdá, že to už běží bez problémů. Zkusil jsem ještě jednu věc a to přeinstalovat Awast a firefox už běží jako dříve, jestli to nedělal ten doplněk pro firefox.
Pro jistotu ještě přikládám log z frst jestli je vše ok.
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 15-07-2017
Ran by tomdasa (administrator) on TOMDASA-PC (18-07-2017 10:19:31)
Running from C:\Users\tomdasa\Desktop
Loaded Profiles: tomdasa (Available Profiles: tomdasa)
Platform: Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 9 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Software602 a.s.) C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
(Nero AG) C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
() C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
() C:\Windows\System32\PnkBstrA.exe
() C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
() C:\Program Files\CyberLink\Shared Files\RichVideo.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
() C:\Program Files\HTC\HTC Sync Manager\HTC Sync\adb.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Realtek Semiconductor) C:\Windows\RtHDVCpl.exe
(Hewlett-Packard Company) C:\hp\support\hpsysdrv.exe
() C:\hp\KBD\KbdStub.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(PixArt Imaging Incorporation) C:\Windows\PixArt\Pac207\Monitor.exe
(CyberLink Corp.) C:\Program Files\CyberLink\PCM4Everio\EverioService.exe
(Microsoft Corporation) C:\Windows\WindowsMobile\wmdc.exe
(CANON INC.) C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Service.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(AVAST Software s.r.o.) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
() C:\Program Files\CMS\CMS.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Windows\RtHDVCpl.exe [5369856 2008-03-26] (Realtek Semiconductor)
HKLM\...\Run: [hpsysdrv] => c:\hp\support\hpsysdrv.exe [65536 2007-04-18] (Hewlett-Packard Company)
HKLM\...\Run: [KBD] => C:\HP\KBD\KbdStub.EXE [65536 2006-12-08] ()
HKLM\...\Run: [IAAnotif] => C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [178712 2007-07-12] (Intel Corporation)
HKLM\...\Run: [Monitor] => C:\Windows\PixArt\PAC207\Monitor.exe [319488 2006-11-03] (PixArt Imaging Incorporation)
HKLM\...\Run: [LanguageShortcut] => C:\Program Files\CyberLink\PowerDVD\Language\Language.exe [62760 2007-10-11] ()
HKLM\...\Run: [EverioService] => C:\Program Files\CyberLink\PCM4Everio\EverioService.exe [151552 2008-05-21] (CyberLink Corp.)
HKLM\...\Run: [UpdatePPShortCut] => C:\Program Files\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe [222504 2008-02-21] (CyberLink Corp.)
HKLM\...\Run: [Windows Mobile Device Center] => C:\Windows\WindowsMobile\wmdc.exe [648072 2007-05-31] (Microsoft Corporation)
HKLM\...\Run: [CanonQuickMenu] => C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE [1282120 2013-05-02] (CANON INC.)
HKLM\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [453736 2013-02-19] (CANON INC.)
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2789248 2016-02-17] (NVIDIA Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [213832 2017-07-18] (AVAST Software)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-2113988722-11527645-2074921056-1000\...\Run: [ehTray.exe] => C:\Windows\ehome\ehTray.exe [125952 2008-01-19] (Microsoft Corporation)
HKU\S-1-5-21-2113988722-11527645-2074921056-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\tomdasa\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-2113988722-11527645-2074921056-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\css.scr
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 02 C:\Windows\system32\napinsp.dll [50176 2008-01-19] (Společnost Microsoft)
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [147456 2008-12-12] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{444720EC-4150-48E7-AC32-C7258357290F}: [DhcpNameServer] 10.0.0.138
Internet Explorer:
==================
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://
www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://
www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-2113988722-11527645-2074921056-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://
www.seznam.cz/
HKU\S-1-5-21-2113988722-11527645-2074921056-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://
www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
SearchScopes: HKU\S-1-5-21-2113988722-11527645-2074921056-1000 -> DefaultScope {0C2FEAAE-7A8F-4270-B508-AAE4328B1598} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12
SearchScopes: HKU\S-1-5-21-2113988722-11527645-2074921056-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://
www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2113988722-11527645-2074921056-1000 -> {0C2FEAAE-7A8F-4270-B508-AAE4328B1598} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12
SearchScopes: HKU\S-1-5-21-2113988722-11527645-2074921056-1000 -> {3EC4DBFF-46C7-4964-AB26-60E942F7387C} URL = hxxp://encyklopedie.seznam.cz/search?s={searchTerms}&sourceid={referrer:source?}
SearchScopes: HKU\S-1-5-21-2113988722-11527645-2074921056-1000 -> {8588BED3-78EA-42AF-841C-6BA975F9C4FA} URL = hxxp://zbozi.seznam.cz/?q={searchTerms}&sourceid={referrer:source?}
SearchScopes: HKU\S-1-5-21-2113988722-11527645-2074921056-1000 -> {A3B1A68E-51A6-4355-BBD8-4F9F33248A0A} URL = hxxp://search.seznam.cz/searchScreen?w={searchTerms}&mod=f&sourceid={referrer:source?}
SearchScopes: HKU\S-1-5-21-2113988722-11527645-2074921056-1000 -> {AB65709D-7E2C-44EB-8B19-51828FE1828A} URL = hxxp://
www.mapy.cz/?query={searchTerms}&source ... rer:source?}
BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-07-07] (CANON INC.)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll [2012-05-04] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-07-18] (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll [2012-05-04] (Oracle Corporation)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-07-07] (CANON INC.)
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
FireFox:
========
FF DefaultProfile: wiow0zyv.default
FF ProfilePath: C:\Users\tomdasa\AppData\Roaming\TomTom\HOME\Profiles\9e2jaxif.default [2017-07-17]
FF NewTab: TomTom\HOME\Profiles\9e2jaxif.default -> about:newtab
FF Homepage: TomTom\HOME\Profiles\9e2jaxif.default -> about:home
FF Extension: (No Name) - C:\Program Files\TomTom HOME 2\xul\extensions\
MapShare-status@tomtom.com [not found]
FF ProfilePath: C:\Users\tomdasa\AppData\Roaming\Mozilla\Firefox\Profiles\wiow0zyv.default [2017-07-18]
FF Homepage: Mozilla\Firefox\Profiles\wiow0zyv.default -> hxxps://
www.seznam.cz/
FF Extension: (Avast Online Security) - C:\Users\tomdasa\AppData\Roaming\Mozilla\Firefox\Profiles\wiow0zyv.default\Extensions\
wrc@avast.com.xpi [2017-07-18]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: (Microsoft .NET Framework Assistant) - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-06-24] [not signed]
FF HKLM\...\Firefox\Extensions: [{34712C68-7391-4c47-94F3-8F88D49AD632}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: (RealDownloader) - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2012-12-14] [not signed]
FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_26_0_0_131.dll [2017-07-06] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1229199.dll [2017-03-31] (Adobe Systems, Inc.)
FF Plugin: @canon.com/EPPEX -> C:\Program Files\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.)
FF Plugin: @divx.com/DivX Browser Plugin,version=1.0.0 -> C:\Program Files\DivX\DivX Web Player\npdivx32.dll [2008-11-21] (DivX,Inc.)
FF Plugin: @divx.com/DivX Player Plugin,version=1.0.0 -> C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll [2008-11-21] (DivX, Inc)
FF Plugin: @itstructures.com/ffactivex -> C:\Program Files\Firefox ActiveX Plugin\npffax.dll [2011-12-28] ()
FF Plugin: @java.com/DTPlugin,version=10.5.1 -> C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\dtplugin\npDeployJava1.dll [2012-05-04] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50709.0\npctrl.dll [2016-07-11] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-30] (Microsoft Corporation)
FF Plugin: @real.com/nppl3260;version=16.0.0.282 -> c:\program files\real\realplayer\Netscape6\nppl3260.dll [2012-12-14] (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlchromebrowserrecordext;version=1.3.0 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll [2012-11-29] (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlhtml5videoshim;version=1.3.0 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll [2012-11-29] (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlpepperflashvideoshim;version=1.3.0 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll [2012-11-29] (RealNetworks, Inc.)
FF Plugin: @real.com/nprpplugin;version=16.0.0.282 -> c:\program files\real\realplayer\Netscape6\nprpplugin.dll [2012-12-14] (RealPlayer)
FF Plugin: @realnetworks.com/npdlplugin;version=1 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll [2012-11-29] (RealDownloader)
FF Plugin: @software602.cz/602XML Filler -> C:\Program Files\Software602\602XML\Filler\npfiller.dll [2012-08-06] (Software602 a.s.)
FF Plugin: @videolan.org/vlc,version=2.0.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2015-09-24] (Adobe Systems Inc.)
FF Plugin: synology.com/SurveillancePlugin -> C:\Program Files\Synology\SurveillancePlugin\1.0.0.1158\npSurveillancePlugin.dll [2017-01-12] (Synology)
Opera:
=======
StartMenuInternet: (HKLM) OperaNext - C:\Program Files\Opera Next\Opera.exe
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 602XML Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [85344 2011-10-10] (Software602 a.s.)
S3 AdobeFlashPlayerUpdateSvc; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [272384 2017-07-06] (Adobe Systems Incorporated) [File not signed]
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [5815840 2017-07-18] (AVAST Software s.r.o.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [263312 2017-07-18] (AVAST Software)
R2 HP Health Check Service; c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [65536 2007-09-19] (Hewlett-Packard) [File not signed]
R3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [217088 2007-06-04] (Hewlett-Packard Co.) [File not signed]
R2 hpqddsvc; C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll [131072 2007-06-04] (Hewlett-Packard Co.) [File not signed]
R2 HTCMonitorService; C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2014-06-27] (Nero AG)
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [43520 2006-11-08] (Hewlett-Packard) [File not signed]
R2 PassThru Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [166912 2013-10-17] () [File not signed]
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53248 2006-11-08] (Hewlett-Packard) [File not signed]
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76888 2013-05-04] ()
R2 RealNetworks Downloader Resolver Service; C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe [38608 2012-11-29] ()
R2 RichVideo; C:\Program Files\CyberLink\Shared Files\RichVideo.exe [241734 2008-02-14] () [File not signed]
S3 ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [575488 2008-08-07] (Nokia.) [File not signed]
S2 SkypeUpdate; C:\Program Files\Skype\Updater\Updater.exe [317400 2017-04-05] (Skype Technologies) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-19] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 aswbidsdriver; C:\Windows\system32\drivers\aswbidsdriverx.sys [266976 2017-07-18] (AVAST Software s.r.o.)
R0 aswbidsh; C:\Windows\system32\drivers\aswbidshx.sys [157384 2017-07-18] (AVAST Software s.r.o.)
R0 aswblog; C:\Windows\system32\drivers\aswblogx.sys [276704 2017-07-18] (AVAST Software s.r.o.)
R0 aswbuniv; C:\Windows\system32\drivers\aswbunivx.sys [50352 2017-07-18] (AVAST Software s.r.o.)
S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [42824 2017-07-18] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [39752 2017-07-18] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [123896 2017-07-18] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr.sys [70088 2017-07-18] (AVAST Software)
S0 aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [70840 2017-07-18] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [774288 2017-07-18] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [496976 2017-07-18] (AVAST Software)
R3 aswStmXP; C:\Windows\system32\drivers\aswStmXP.sys [202688 2017-07-18] (AVAST Software)
R0 aswVmm; C:\Windows\system32\drivers\aswVmm.sys [296312 2017-07-18] (AVAST Software)
R0 FltMgr; C:\Windows\System32\drivers\fltmgr.sys [190424 2009-04-11] (Společnost Microsoft)
R0 giveio; C:\Windows\System32\giveio.sys [5248 1996-04-03] () [File not signed]
S3 hitmanpro37; C:\Windows\system32\drivers\hitmanpro37.sys [35992 2015-01-07] ()
S3 ivusb; C:\Windows\System32\DRIVERS\ivusb.sys [25112 2010-07-29] (Initio Corporation)
S3 MarvinBus; C:\Windows\System32\DRIVERS\MarvinBus.sys [171520 2005-09-23] (Pinnacle Systems GmbH) [File not signed]
R3 Ntfs; C:\Windows\system32\Drivers\Ntfs.sys [1082232 2013-03-03] (Společnost Microsoft)
R3 PAC207; C:\Windows\System32\DRIVERS\PFC027.SYS [507136 2006-12-05] (PixArt Imaging Inc.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [717296 2009-02-25] () [File not signed]
S3 usbvm326_W; C:\Windows\System32\Drivers\usbvm326_w.sys [195200 2006-08-01] (Vimicro Corporation) [File not signed]
R2 {95808DC4-FA4A-4C74-92FE-5B863F82066B}; C:\Program Files\CyberLink\PowerDVD\000.fcl [41456 2008-01-19] (Cyberlink Corp.)
U3 a6fb4cgu; C:\Windows\system32\Drivers\a6fb4cgu.sys [0 ] (Microsoft Corporation) <==== ATTENTION (zero byte File/Folder)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-07-18 10:19 - 2017-07-18 10:21 - 00018847 _____ C:\Users\tomdasa\Desktop\FRST.txt
2017-07-18 10:18 - 2017-07-18 10:18 - 01780736 _____ (Farbar) C:\Users\tomdasa\Desktop\FRST.exe
2017-07-18 09:42 - 2017-07-18 09:42 - 00000858 _____ C:\Users\Public\Desktop\Avast SafeZone Browser.lnk
2017-07-18 09:42 - 2017-07-18 09:42 - 00000858 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2017-07-18 09:41 - 2017-07-18 09:41 - 00039752 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2017-07-18 09:40 - 2017-07-18 09:40 - 00000000 ____D C:\ProgramData\SWCUTemp
2017-07-18 09:39 - 2017-07-18 09:39 - 00000000 ____D C:\Users\tomdasa\AppData\Roaming\AVAST Software
2017-07-18 09:38 - 2017-07-18 09:38 - 00496976 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2017-07-18 09:38 - 2017-07-18 09:38 - 00296312 _____ (AVAST Software) C:\Windows\system32\Drivers\aswvmm.sys
2017-07-18 09:38 - 2017-07-18 09:38 - 00202688 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStmXP.sys
2017-07-18 09:38 - 2017-07-18 09:38 - 00123896 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2017-07-18 09:38 - 2017-07-18 09:38 - 00070840 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2017-07-18 09:38 - 2017-07-18 09:38 - 00070088 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr.sys
2017-07-18 09:38 - 2017-07-18 09:38 - 00042824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2017-07-18 09:38 - 2017-07-18 09:38 - 00001791 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2017-07-18 09:38 - 2017-07-18 09:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2017-07-18 09:38 - 2017-07-18 09:37 - 00774288 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2017-07-18 09:38 - 2017-07-18 09:37 - 00303280 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2017-07-18 09:38 - 2017-07-18 09:37 - 00276704 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswblogx.sys
2017-07-18 09:38 - 2017-07-18 09:37 - 00266976 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsdriverx.sys
2017-07-18 09:38 - 2017-07-18 09:37 - 00157384 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidshx.sys
2017-07-18 09:38 - 2017-07-18 09:37 - 00050352 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbunivx.sys
2017-07-18 09:36 - 2017-07-18 09:41 - 00000000 ____D C:\Program Files\AVAST Software
2017-07-18 09:05 - 2017-07-18 09:09 - 00183072 _____ C:\Windows\ntbtlog.txt
2017-07-17 18:44 - 2017-07-18 10:08 - 00000000 ____D C:\Users\tomdasa\AppData\LocalLow\Mozilla
2017-07-17 18:44 - 2017-07-17 18:44 - 00000820 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2017-07-17 18:44 - 2017-07-17 18:44 - 00000808 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2017-07-17 18:44 - 2017-07-17 18:44 - 00000000 ____D C:\Users\tomdasa\AppData\Roaming\Mozilla
2017-07-17 18:44 - 2017-07-17 18:44 - 00000000 ____D C:\Users\tomdasa\AppData\Local\Mozilla
2017-07-17 18:44 - 2017-07-17 18:44 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2017-07-17 18:44 - 2017-07-17 18:44 - 00000000 ____D C:\Program Files\Mozilla Firefox
2017-07-17 18:44 - 2017-07-17 18:37 - 00000808 _____ C:\Users\tomdasa\Documents\indexfile.txt
2017-07-17 18:10 - 2017-07-17 22:33 - 00000000 ____D C:\Program Files\MozBackup
2017-07-17 18:10 - 2017-07-17 18:37 - 06007153 _____ C:\Users\tomdasa\Documents\Firefox - 2017-07-17.pcv
2017-07-17 16:38 - 2017-07-17 16:38 - 00000000 ____D C:\Users\tomdasa\.android
2017-07-17 15:28 - 2017-07-17 15:28 - 00000000 ____D C:\zoek
2017-07-16 11:40 - 2017-07-17 15:29 - 00002969 _____ C:\runcheck.txt
2017-07-16 11:40 - 2017-07-16 18:37 - 00000000 ____D C:\zoek_backup
2017-07-15 20:39 - 2017-07-15 20:39 - 00000000 ____D C:\_OTM
2017-07-15 20:38 - 2017-07-15 20:38 - 00522240 _____ (OldTimer Tools) C:\Users\tomdasa\Desktop\OTM.exe
2017-07-01 21:58 - 2017-07-01 21:58 - 00000275 _____ C:\Users\tomdasa\Desktop\Místní disk (G) – zástupce (2).lnk
2017-06-29 00:47 - 2017-06-29 00:47 - 00000000 ____D C:\Program Files\DirectVobSub
2017-06-29 00:47 - 2017-06-29 00:47 - 00000000 ____D C:\Program Files\DCoder Image Source
2017-06-29 00:47 - 2017-06-29 00:47 - 00000000 ____D C:\Program Files\3DYD Youtube Source
2017-06-29 00:46 - 2017-06-29 00:46 - 00000000 ____D C:\Program Files\MadVR
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-07-18 10:19 - 2015-11-04 23:10 - 00000000 ____D C:\FRST
2017-07-18 09:41 - 2015-11-04 21:26 - 00000000 ____D C:\ProgramData\AVAST Software
2017-07-18 09:17 - 2015-01-01 14:48 - 00000000 ____D C:\Users\tomdasa\AppData\Roaming\Seznam.cz
2017-07-18 09:11 - 2015-05-10 10:30 - 00376360 _____ C:\Windows\system32\FNTCACHE.DAT
2017-07-18 09:11 - 2014-11-17 20:06 - 00000000 ____D C:\Users\tomdasa\AppData\Local\HTC MediaHub
2017-07-18 09:11 - 2009-11-20 10:37 - 00000000 ____D C:\Users\tomdasa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink BD Solution
2017-07-18 09:11 - 2006-11-02 15:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-07-18 09:11 - 2006-11-02 14:47 - 00003696 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2017-07-18 09:11 - 2006-11-02 14:47 - 00003696 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2017-07-18 09:09 - 2008-11-03 15:40 - 00009592 _____ C:\Users\tomdasa\AppData\Local\d3d9caps.dat
2017-07-18 09:04 - 2008-10-27 20:58 - 00000012 _____ C:\Windows\bthservsdp.dat
2017-07-18 09:04 - 2006-11-02 15:01 - 00032606 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2017-07-18 07:57 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\inf
2017-07-17 20:59 - 2013-01-23 12:20 - 00000000 ____D C:\Users\tomdasa\Documents\PLOCHA
2017-07-17 17:57 - 2008-10-26 14:58 - 00067584 _____ C:\Users\tomdasa\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2017-07-17 16:38 - 2008-10-26 13:36 - 00000000 ____D C:\Users\tomdasa
2017-07-15 23:17 - 2017-05-02 06:57 - 00000000 ____D C:\Users\tomdasa\Desktop\Plocha
2017-07-15 20:52 - 2015-10-09 10:46 - 00000000 ____D C:\Program Files\trend micro
2017-07-15 20:18 - 2015-09-05 10:14 - 00000000 ____D C:\AdwCleaner
2017-07-15 12:50 - 2016-10-26 18:57 - 00000000 ___RD C:\Users\tomdasa\Documents\PLOCHA1
2017-07-06 09:22 - 2015-02-05 12:01 - 00000821 _____ C:\Users\Public\Desktop\VLC media player.lnk
2017-07-06 09:21 - 2015-10-23 23:43 - 00803328 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2017-07-06 09:21 - 2015-10-23 23:43 - 00144896 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2017-07-06 09:21 - 2008-04-25 21:01 - 00000000 ____D C:\Windows\system32\Macromed
2017-07-06 09:20 - 2008-12-22 21:13 - 00000000 ____D C:\Program Files\Common Files\Adobe AIR
2017-07-03 09:21 - 2008-04-26 05:53 - 00645076 _____ C:\Windows\system32\perfh005.dat
2017-07-03 09:21 - 2008-04-26 05:53 - 00137762 _____ C:\Windows\system32\perfc005.dat
2017-07-03 09:21 - 2006-11-02 12:33 - 01532822 _____ C:\Windows\system32\PerfStringBackup.INI
2017-07-01 22:48 - 2012-04-16 12:32 - 00000000 ____D C:\Users\tomdasa\AppData\Local\Adobe
2017-06-29 11:04 - 2017-02-19 20:38 - 00000000 ____D C:\Users\tomdasa\Documents\SRO
2017-06-29 08:11 - 2015-05-17 23:57 - 00000000 ____D C:\Users\tomdasa\Desktop\údržba
2017-06-29 06:22 - 2008-11-01 18:12 - 00000000 ____D C:\Program Files\7-Zip
==================== Files in the root of some directories =======
2016-11-10 16:20 - 2017-06-08 23:05 - 0117673 _____ () C:\Program Files\CMS Setup Log.txt
2016-11-10 18:17 - 2016-11-10 18:17 - 0015992 _____ () C:\Program Files\CMS Uninstall Log.txt
2009-01-24 12:10 - 2009-01-24 12:10 - 0087608 _____ () C:\Users\tomdasa\AppData\Roaming\inst.exe
2009-01-24 12:10 - 2009-01-24 12:10 - 0007887 _____ () C:\Users\tomdasa\AppData\Roaming\pcouffin.cat
2009-01-24 12:10 - 2009-01-24 12:10 - 0001144 _____ () C:\Users\tomdasa\AppData\Roaming\pcouffin.inf
2009-01-24 12:10 - 2009-01-24 12:10 - 0047360 _____ (VSO Software) C:\Users\tomdasa\AppData\Roaming\pcouffin.sys
2008-12-25 01:03 - 2013-05-03 21:40 - 0138056 _____ () C:\Users\tomdasa\AppData\Roaming\PnkBstrK.sys
2009-01-24 12:11 - 2016-12-29 18:43 - 0000671 _____ () C:\Users\tomdasa\AppData\Roaming\vso_ts_preview.xml
2008-11-03 15:40 - 2017-07-18 09:09 - 0009592 _____ () C:\Users\tomdasa\AppData\Local\d3d9caps.dat
2008-10-26 14:58 - 2017-07-17 17:57 - 0067584 _____ () C:\Users\tomdasa\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2008-11-07 19:51 - 2008-11-07 19:51 - 0000056 ____H () C:\ProgramData\ezsidmv.dat
2008-04-25 21:01 - 2014-11-16 14:34 - 0038718 _____ () C:\ProgramData\hpzinstall.log
2011-11-25 21:10 - 2011-11-25 21:10 - 0000196 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
Some files in TEMP:
====================
2017-07-16 11:40 - 2017-07-17 15:14 - 0030720 _____ (NirSoft) C:\Users\tomdasa\AppData\Local\Temp\NirCmd.exe
2017-07-16 11:40 - 2017-07-17 15:14 - 0256512 _____ () C:\Users\tomdasa\AppData\Local\Temp\PEVZ.EXE
2017-07-16 11:40 - 2017-07-17 15:14 - 0161792 _____ (SteelWerX) C:\Users\tomdasa\AppData\Local\Temp\swreg.exe
2017-07-16 11:40 - 2017-07-17 15:14 - 0154232 _____ (Noël Danjou) C:\Users\tomdasa\AppData\Local\Temp\wget.exe
2017-07-16 11:40 - 2017-07-17 15:14 - 0024064 _____ () C:\Users\tomdasa\AppData\Local\Temp\zoek-delete.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-07-18 09:17
==================== End of FRST.txt ============================