Prosím o kontrolu
Napsal: 30 bře 2015 07:13
Počitač je dost pomalý, po projetí Avastem najde nějaké viry a přesune je do truhly, po nějakém čase se tam objeví znovu.
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 11-03-2015
Ran by Martina (administrator) on MARTIN-PC on 29-03-2015 21:01:50
Running from C:\Users\Martina\Desktop
Loaded Profiles: Martina (Available profiles: Martina)
Platform: Microsoft Windows 8.1 Pro (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(IObit) C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Software602 a.s.) C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
() C:\Program Files\Aladdin\Aladdin SQL Server\AladdinSQL.exe
(Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Firebird Project) C:\Program Files\Firebird\Firebird_2_5\bin\fb_inet_server.exe
(NETGEAR) C:\Program Files\NETGEAR Genie\bin\NETGEARGenieDaemon.exe
() C:\Windows\System32\Rezip.exe
(IObit) C:\Program Files\IObit\Start Menu 8\StartMenuServices.exe
() C:\Program Files\Paradox Security Systems\BabyWare\nxServer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(IObit) C:\Program Files\IObit\Smart Defrag 3\SmartDefrag.exe
(Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\EasySpeedUpManager\EasySpeedUpManager.exe
(IObit) C:\Program Files\IObit\IObit Uninstaller\UninstallMonitor.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(IObit) C:\Program Files\IObit\Start Menu 8\StartMenu8.exe
() C:\Program Files\IObit\Start Menu 8\InstallServices32.exe
(IObit) C:\Program Files\IObit\Start Menu 8\StartMenu_Hook.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
() C:\Program Files\Opera\28.0.1750.48\opera_crashreporter.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(NETGEAR Inc.) C:\Program Files\NETGEAR Genie\bin\NETGEARGenie.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
() C:\Program Files\NETGEAR Genie\bin\genie2_tray.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1578280 2009-10-10] (Synaptics Incorporated)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [12021464 2014-12-14] (Realtek Semiconductor)
HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-01-29] (AVAST Software)
HKLM\...\Run: [IObit Malware Fighter] => C:\Program Files\IObit\IObit Malware Fighter\IMF.exe [1601856 2014-06-23] (IObit)
HKLM\...\Run: [PrnStatusMX] => C:\Program Files\Hewlett-Packard\PrnStatusMX\PrnStatusMX.exe [1077248 2007-08-29] (Marvell Semiconductor, Inc.)
HKLM\...\Run: [BackgroundContainer] => "C:\WINDOWS\system32\Rundll32.exe" "C:\Users\Martina\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll",DllRun <===== ATTENTION
HKLM\...\Run: [UpdatePDRShortCut] => C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe [222504 2008-01-04] (CyberLink Corp.)
HKLM\...\Run: [Sony PC Companion] => C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [446648 2013-01-07] (Sony)
HKLM\...\Run: [UCam_Menu] => C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [222504 2009-05-19] (CyberLink Corp.)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-11-20] (Adobe Systems Incorporated)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [26232152 2015-02-19] (Google)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [ISUSPM Startup] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.EXE [249856 2005-08-11] (Macrovision Corporation)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [NETGEARGenie] => C:\Program Files\NETGEAR Genie\bin\NETGEARGenie.exe [596480 2014-06-11] (NETGEAR Inc.)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [5282584 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [BackgroundContainer] => "C:\WINDOWS\system32\Rundll32.exe" "C:\Users\Martina\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll",DllRun <===== ATTENTION
IFEO\AUpdate.exe: [Debugger] C:\Program Files\IObit\Advanced SystemCare 7\AutoReactivator.exe
IFEO\Driver_Booster_FreeSoftwareDownloader.exe: [Debugger] C:\Program Files\IObit\Advanced SystemCare 7\AutoReactivator.exe
IFEO\SetupHlp.exe: [Debugger] C:\Program Files\IObit\Advanced SystemCare 7\AutoReactivator.exe
IFEO\SkipUacExec.exe: [Debugger] C:\Program Files\IObit\Advanced SystemCare 7\AutoReactivator.exe
IFEO\SkipUacTask.exe: [Debugger] C:\Program Files\IObit\Advanced SystemCare 7\AutoReactivator.exe
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)
ShellIconOverlayIdentifiers: [GDriveBlacklistedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSharedEditOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSharedViewOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSyncedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSyncingOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] -> {99FD978C-D287-4F50-827F-B2C658EDA8E7} => C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 2 (GFS Stub)] -> {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} => C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] -> {920E6DB1-9907-4370-B3A0-BAFC03D81399} => C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 3 (GFS Folder)] -> {16F3DD56-1AF5-4347-846D-7C10C4192619} => C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] -> {2916C86E-86A6-43FE-8112-43ABE6BF8DCC} => C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll No File
CHR HKU\S-1-5-21-3670137199-2938631228-624182700-1001\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.seznam.cz/?clid=22668
URLSearchHook: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 - (No Name) - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - No File
SearchScopes: HKLM -> DefaultScope {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKLM -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKLM -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://www.google.com/search?sourceid=i ... lz=1I7SMSN
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> DefaultScope {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {32D8395A-1F28-4398-9879-2E623D1FD4FE} URL = http://search.conduit.com/ResultsExt.as ... 82919&UM=1
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://www.google.com/search?sourceid=i ... lz=1I7SMSN
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL =
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {FCA093FF-4951-49CF-8FC4-C8F63011EF9A} URL = http://search.seznam.cz/?q={searchTerms ... cksearch_2
BHO: No Name -> {03EB0E9C-7A91-4381-A220-9B52B641CDB1} -> No File
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll [2014-10-16] (IObit)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll No File
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2014-11-12] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-11-25] (AVAST Software)
BHO: No Name -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> No File
BHO: No Name -> {9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F} -> No File
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-04] (Google Inc.)
BHO: No Name -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> No File
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-11-12] (Oracle Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-04] (Google Inc.)
Toolbar: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-04] (Google Inc.)
Toolbar: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File
DPF: {27932703-59C1-4B18-A46D-ED8FC2D35BAA} http://192.168.1.113/NEWIE.cab
DPF: {55A2C0CD-3DE8-4264-9637-A0B40B05714E} https://col0-sec.mail.live.com/mail/Mai ... 1213076673
DPF: {62789780-B744-11D0-986B-00609731A21D} http://195.28.70.134/kapor2/lib/mgaxctrl.cab
DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} http://download.divx.com/player/DivXBrowserPlugin.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0017-0000-0045-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {D8950D0E-FCE7-4AE4-9370-7E4CFBC04362} https://eportal.cssz.cz/fas/page/active ... bff_cs.cab
DPF: {D9D72A92-132E-46EC-A6F1-896B19227142} http://www.elnika.cz/online/ActiveX/ax4web.cab
DPF: {DED4D168-AEEE-4E0C-B699-36A9A320ED5E} http://www.cyberlink.com/prog/win8/js/UpdateAdvisor.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2009-02-26] (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2013-02-26] (Skype Technologies)
ShellExecuteHooks: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll No File [ ]
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default
FF Homepage: https://www.seznam.cz/?clid=22668
FF DefaultSearchEngine: Seznam
FF SelectedSearchEngine: Seznam
FF DefaultSearchUrl: hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}&
FF SearchEngineOrder.1: Seznam
FF Keyword.URL: hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}&
FF NewTab: about:newtab
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-02-05] ()
FF Plugin: @IObit.com/np_Asc_Plugin -> C:\Program Files\IObit\Surfing Protection\BrowerProtect\np_Asc_plugin.dll [2013-07-17] (IObit)
FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-11-12] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-11-12] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin: @software602.cz/602XML Filler -> C:\Program Files\Software602\602XML\Filler\npfiller.dll [2012-08-06] (Software602 a.s.)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default\searchplugins\seznam-avast.xml [2015-01-08]
FF SearchPlugin: C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default\searchplugins\yahoo_ff.xml [2013-10-30]
FF Extension: Ads Removal - C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default\Extensions\adremoveext@adremoveext.net [2014-09-02]
FF Extension: Advanced SystemCare Surfing Protection - C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default\Extensions\ascsurfingprotection@iobit.com [2014-06-13]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-12-19]
Chrome:
=======
CHR DefaultSearchKeyword: Default -> yahoo.com search
CHR DefaultSearchURL: Default -> http://search.yahoo.com/search?fr=chr-g ... earchTerms}
CHR DefaultSuggestURL: Default -> http://ff.search.yahoo.com/gossip?outpu ... earchTerms}
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
CHR Profile: C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-02-04]
CHR Extension: (Google Drive) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-02-04]
CHR Extension: (Advanced SystemCare Surfing Protection) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbmegnmpleoagolcnjnejdacakedpcgd [2014-04-30]
CHR Extension: (YouTube) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2011-12-21]
CHR Extension: (Google Search) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2011-12-21]
CHR Extension: (Avast SafePrice) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2014-07-27]
CHR Extension: (Ads Removal) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\fopdddcinljmpmioaklghcalngfhbaen [2014-09-02]
CHR Extension: (Avast Online Security) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-12-19]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2014-11-05]
CHR Extension: (Google Wallet) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-02-04]
CHR Extension: (Gmail) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2011-12-21]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-11-25]
CHR HKLM\...\Chrome\Extension: [ndibdjnfmopecpmkdieinmbadjfpblof] - No Path Or update_url value
CHR HKU\S-1-5-21-3670137199-2938631228-624182700-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - https://clients2.google.com/service/update2/crx
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 602XML Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [84520 2011-03-14] (Software602 a.s.)
R2 Aladdin SQL Server; C:\Program Files\Aladdin\Aladdin SQL Server\AladdinSQL.exe [140736 2012-08-17] () [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-11-25] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [104416 2014-11-25] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3192344 2014-11-25] (Avast Software)
R2 BcmBtRSupport; C:\WINDOWS\system32\BtwRSupportService.exe [1680088 2013-10-28] (Broadcom Corporation.)
S3 BthHFSrv; C:\WINDOWS\System32\BthHFSrv.dll [250880 2014-10-29] (Microsoft Corporation)
R2 FirebirdServerDefaultInstance; C:\Program Files\Firebird\Firebird_2_5\bin\fb_inet_server.exe [3727360 2010-09-17] (Firebird Project) [File not signed]
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 IMFservice; C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe [342336 2014-05-15] (IObit)
S2 LiveUpdateSvc; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2283296 2014-10-16] (IObit)
R2 NETGEARGenieDaemon; C:\Program Files\NETGEAR Genie\bin\NETGEARGenieDaemon.exe [189440 2014-03-24] (NETGEAR) [File not signed]
R2 NEWare_Database_16001; C:\Program Files\Paradox Security Systems\BabyWare\nxServer.exe [5316608 2012-03-19] () [File not signed]
R2 Rezip; C:\windows\SYSTEM32\Rezip.exe [311296 2009-03-05] () [File not signed]
S4 RichVideo; C:\Program Files\CyberLink\Shared files\RichVideo.exe [247152 2009-07-07] ()
S3 ScDeviceEnum; C:\WINDOWS\System32\ScDeviceEnum.dll [103936 2014-10-29] (Microsoft Corporation)
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155320 2012-01-18] (Avanquest Software) [File not signed]
R2 StartMenuService; C:\Program Files\IObit\Start Menu 8\StartMenuServices.exe [72512 2013-12-09] (IObit)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [284488 2015-02-04] (Microsoft Corporation)
S3 WEPHOSTSVC; C:\WINDOWS\system32\wephostsvc.dll [20992 2014-10-29] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [22200 2015-02-04] (Microsoft Corporation)
S3 workfolderssvc; C:\WINDOWS\system32\workfolderssvc.dll [1269248 2014-10-29] (Microsoft Corporation)
S2 TeamViewer9; No ImagePath
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24184 2014-11-25] ()
R1 aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [26136 2014-11-25] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [70384 2014-11-25] (AVAST Software)
R0 aswNdisFlt; C:\WINDOWS\System32\DRIVERS\aswNdisFlt.sys [271288 2014-11-25] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [81768 2014-11-25] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49944 2014-11-25] ()
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [787800 2014-11-25] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [423784 2014-11-25] (AVAST Software)
S2 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [91496 2014-11-25] (AVAST Software)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [206248 2014-11-25] ()
R3 athr; C:\WINDOWS\system32\DRIVERS\athwn.sys [2795520 2013-06-18] (Qualcomm Atheros Communications, Inc.)
R1 BasicRender; C:\WINDOWS\System32\drivers\BasicRender.sys [25600 2014-02-22] (Microsoft Corporation)
R3 bcbtums; C:\WINDOWS\system32\drivers\bcbtums.sys [175320 2013-10-28] (Broadcom Corporation.)
S3 btwampfl; C:\WINDOWS\system32\DRIVERS\btwampfl.sys [144600 2013-10-28] (Broadcom Corporation.)
R1 dtsoftbus01; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [242240 2013-12-18] (DT Soft Ltd)
S3 FileMonitor; C:\Program Files\IObit\IObit Malware Fighter\Drivers\win7_x86\FileMonitor.sys [21480 2013-03-23] (IObit)
S3 FTDIBUS; C:\WINDOWS\system32\drivers\ftdibus.sys [77808 2014-01-31] (FTDI Ltd.)
S3 GPIO; C:\WINDOWS\System32\drivers\iaiogpio.sys [22016 2013-07-23] (Intel Corporation)
R1 hwinterface; C:\WINDOWS\System32\Drivers\hwinterface.sys [3026 2014-04-17] (Logix4u) [File not signed]
R2 NPF; C:\WINDOWS\system32\drivers\npf.sys [35088 2014-09-09] (CACE Technologies, Inc.)
S3 RegFilter; C:\Program Files\IObit\IObit Malware Fighter\drivers\win7_x86\regfilter.sys [32288 2013-11-19] (IObit.com)
S3 Ser2plx86; C:\WINDOWS\system32\DRIVERS\ser2pl.sys [139776 2013-10-25] (Prolific Technology Inc.)
S3 silabenm; C:\WINDOWS\system32\DRIVERS\silabenm.sys [47176 2012-11-26] (Silicon Laboratories)
S3 silabser; C:\WINDOWS\system32\DRIVERS\silabser.sys [63104 2012-11-26] (Silicon Laboratories)
S3 SIoctl; c:\windows\system32\drivers\sioctl.sys [6144 2008-04-25] () [File not signed]
R0 SmartDefragDriver; C:\WINDOWS\System32\Drivers\SmartDefragDriver.sys [18624 2014-06-04] (IObit)
S3 UrlFilter; C:\Program Files\IObit\IObit Malware Fighter\drivers\win7_x86\UrlFilter.sys [20944 2013-11-19] (IObit.com)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [218192 2014-11-25] (Avast Software)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [84800 2015-02-04] (Microsoft Corporation)
R0 Wof; C:\WINDOWS\system32\Drivers\Wof.sys [138584 2014-03-13] (Microsoft Corporation)
S3 WUDFWpdMtp; C:\WINDOWS\System32\drivers\WUDFRd.sys [190976 2014-10-29] (Microsoft Corporation)
R3 ykinw8; C:\WINDOWS\system32\DRIVERS\ykinx86.sys [242688 2013-06-18] (Marvell)
S1 FNETURPX; System32\drivers\FNETURPX.SYS [X]
U3 idsvc; No ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-03-29 21:02 - 2015-03-29 21:02 - 00000000 ____D () C:\Users\Martina\Desktop\Nová složka
2015-03-29 21:01 - 2015-03-29 21:01 - 00028176 _____ () C:\Users\Martina\Desktop\FRST.txt
2015-03-29 20:59 - 2015-03-29 21:00 - 00028326 _____ () C:\Users\Martina\Desktop\Addition.txt
2015-03-29 20:57 - 2015-03-29 21:01 - 00000000 ____D () C:\FRST
2015-03-29 20:54 - 2015-03-29 20:54 - 01135104 _____ (Farbar) C:\Users\Martina\Desktop\FRST.exe
2015-03-29 20:54 - 2015-03-29 20:54 - 00112640 _____ (forum.viry.cz) C:\Users\Martina\Downloads\FRSTLauncher (1).exe
2015-03-29 20:54 - 2015-03-29 20:54 - 00112640 _____ (forum.viry.cz) C:\Users\Martina\Desktop\FRSTLauncher.exe
2015-03-29 20:01 - 2015-03-29 20:01 - 00000247 _____ () C:\WINDOWS\system32\2015-03-29-18-01-00.058-aswFe.exe-5444.log
2015-03-29 19:54 - 2015-03-29 20:00 - 00000247 _____ () C:\WINDOWS\system32\2015-03-29-17-54-18.020-aswFe.exe-4924.log
2015-03-29 19:54 - 2015-03-29 19:54 - 00000197 _____ () C:\WINDOWS\system32\2015-03-29-17-54-16.021-AvastVBoxSVC.exe-3164.log
2015-03-29 19:33 - 2015-03-29 19:35 - 00000000 ____D () C:\Users\Martina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Opera Software
2015-03-27 22:02 - 2015-03-27 22:02 - 00548352 _____ () C:\Users\Martina\Downloads\37_Loupaci_stroje_a_krajecky.pps
2015-03-27 16:04 - 2015-03-27 16:04 - 00114721 _____ () C:\Users\Martina\Downloads\klasifikace_zamestnani_systematicka_cast_2014_09_01.xlsx
2015-03-27 14:22 - 2015-03-27 17:01 - 00000000 ____D () C:\Users\Martina\Desktop\§75 - žadosti
2015-03-18 21:32 - 2015-03-18 21:32 - 00000981 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2015-03-16 18:52 - 2015-03-16 18:52 - 00000197 _____ () C:\WINDOWS\system32\2015-03-16-16-52-55.077-AvastVBoxSVC.exe-2684.log
2015-03-15 11:27 - 2015-03-15 11:27 - 00000197 _____ () C:\WINDOWS\system32\2015-03-15-09-27-24.038-AvastVBoxSVC.exe-3036.log
2015-03-14 20:46 - 2015-03-14 20:46 - 00000197 _____ () C:\WINDOWS\system32\2015-03-14-18-46-39.022-AvastVBoxSVC.exe-3744.log
2015-03-13 17:14 - 2015-03-13 17:14 - 00692192 _____ (Opera Software) C:\Users\Martina\Downloads\Opera_NI_stable.exe
2015-03-13 16:43 - 2015-03-13 16:43 - 00000197 _____ () C:\WINDOWS\system32\2015-03-13-14-43-12.028-AvastVBoxSVC.exe-4416.log
2015-03-12 13:41 - 2015-03-04 23:24 - 00792032 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2015-03-12 13:41 - 2015-03-04 23:24 - 00178144 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2015-03-11 13:28 - 2015-03-06 04:33 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2015-03-11 13:28 - 2015-02-21 02:41 - 12827648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-03-11 13:28 - 2015-02-21 02:27 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2015-03-11 13:28 - 2015-02-21 02:25 - 19720192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-03-11 13:28 - 2015-02-21 01:32 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2015-03-11 13:28 - 2015-02-20 04:09 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-03-11 13:28 - 2015-02-20 04:06 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2015-03-11 13:28 - 2015-02-20 04:03 - 02278400 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-03-11 13:28 - 2015-02-20 03:30 - 04300288 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-03-11 13:28 - 2015-02-20 03:30 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-03-11 13:28 - 2015-02-20 03:26 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-03-11 13:28 - 2015-02-20 03:24 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-03-11 13:28 - 2015-02-20 03:24 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-03-11 13:28 - 2015-02-20 03:01 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-03-11 13:28 - 2015-02-20 02:57 - 01311232 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-03-11 13:28 - 2015-02-12 19:34 - 19731824 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-03-11 13:28 - 2015-02-08 01:49 - 00791040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2015-03-11 13:28 - 2015-02-07 01:09 - 00396419 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2015-03-11 13:28 - 2015-02-06 03:08 - 01943040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-03-11 13:28 - 2015-01-31 01:29 - 02484224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-03-11 13:28 - 2015-01-31 01:20 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2015-03-11 13:28 - 2015-01-30 04:25 - 00131584 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys
2015-03-11 13:28 - 2015-01-30 04:25 - 00083456 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys
2015-03-11 13:28 - 2015-01-29 20:34 - 01488040 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2015-03-11 13:28 - 2015-01-29 03:29 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\photowiz.dll
2015-03-11 13:28 - 2015-01-29 03:00 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-11 13:28 - 2015-01-29 02:50 - 00811008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2015-03-11 13:28 - 2015-01-23 07:02 - 00560392 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2015-03-11 13:28 - 2015-01-21 07:15 - 01123848 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2015-03-11 13:28 - 2014-12-11 07:40 - 00041296 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentServer.exe
2015-03-11 13:27 - 2015-02-26 01:27 - 03543552 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-03-11 13:27 - 2015-02-21 02:27 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2015-03-11 13:27 - 2015-02-20 04:20 - 00301056 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-03-11 13:27 - 2015-02-20 04:15 - 00035840 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-03-11 13:27 - 2015-02-20 03:56 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-03-11 13:27 - 2015-02-20 03:24 - 00684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-03-11 13:27 - 2015-02-20 02:55 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-03-11 13:27 - 2015-02-05 22:17 - 00869696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2015-03-11 13:27 - 2015-02-04 01:51 - 00227136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2015-03-11 13:27 - 2015-02-04 01:51 - 00084800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2015-03-11 13:27 - 2015-02-04 01:51 - 00038392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2015-03-11 13:27 - 2015-02-03 02:03 - 03551744 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2015-03-11 13:27 - 2015-02-03 01:53 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll
2015-03-11 13:27 - 2015-01-30 03:44 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42u.dll
2015-03-11 13:27 - 2015-01-30 03:42 - 01204224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42.dll
2015-03-11 13:27 - 2015-01-30 03:40 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2015-03-11 13:27 - 2015-01-30 03:24 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2015-03-11 13:27 - 2015-01-30 03:16 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2015-03-11 13:27 - 2015-01-30 03:06 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2015-03-11 13:27 - 2015-01-29 02:56 - 00602624 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2015-03-11 13:27 - 2015-01-29 02:55 - 00873984 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2015-03-11 13:27 - 2015-01-29 02:49 - 02459136 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-03-11 13:27 - 2015-01-28 17:35 - 05769024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-03-11 13:27 - 2015-01-28 17:35 - 01468408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-03-11 13:27 - 2015-01-28 03:47 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageContextHandler.dll
2015-03-11 13:27 - 2015-01-28 03:11 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2015-03-11 13:27 - 2015-01-28 01:41 - 02207488 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-03-11 13:27 - 2015-01-24 04:20 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2015-03-11 13:27 - 2015-01-24 03:51 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe
2015-03-11 13:27 - 2015-01-24 02:48 - 02975744 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2015-03-11 10:18 - 2015-03-11 10:18 - 00000247 _____ () C:\WINDOWS\system32\2015-03-11-08-18-03.002-aswFe.exe-4372.log
2015-03-09 17:54 - 2015-03-09 18:01 - 00000197 _____ () C:\WINDOWS\system32\2015-03-09-15-54-18.099-AvastVBoxSVC.exe-2732.log
2015-03-08 10:21 - 2015-03-08 10:22 - 00000197 _____ () C:\WINDOWS\system32\2015-03-08-08-21-48.055-AvastVBoxSVC.exe-2896.log
2015-03-07 19:50 - 2015-03-07 19:50 - 00001259 _____ () C:\Users\Martina\Desktop\7zFM – zástupce.lnk
2015-03-07 18:58 - 2015-03-07 18:58 - 00000473 _____ () C:\Users\Martina\Downloads\prohlídky.csv
2015-03-05 16:38 - 2015-03-05 16:38 - 00000247 _____ () C:\WINDOWS\system32\2015-03-05-14-38-37.071-aswFe.exe-4276.log
2015-03-05 16:31 - 2015-03-05 16:38 - 00000247 _____ () C:\WINDOWS\system32\2015-03-05-14-31-03.074-aswFe.exe-3908.log
2015-03-04 14:25 - 2015-03-04 14:26 - 00000197 _____ () C:\WINDOWS\system32\2015-03-04-12-25-03.085-AvastVBoxSVC.exe-2888.log
2015-03-03 21:03 - 2015-03-03 21:41 - 00023800 _____ () C:\Users\Martina\Downloads\Prihlaska_SS_2015_dalkove.xlsx
2015-03-03 09:31 - 2015-03-03 09:31 - 00000197 _____ () C:\WINDOWS\system32\2015-03-03-07-31-39.030-AvastVBoxSVC.exe-2892.log
2015-03-02 22:38 - 2015-03-02 22:45 - 118460416 _____ () C:\Users\Martina\Downloads\04_ostatni_vceli_produkty.avi
2015-03-02 20:02 - 2015-03-02 20:02 - 10214319 _____ () C:\Users\Martina\Downloads\western_cuisine_vector_288204.zip
2015-03-02 20:01 - 2015-03-02 20:01 - 09002831 _____ () C:\Users\Martina\Downloads\cute_cartoon_bee_vector_156286.zip
2015-02-28 21:19 - 2015-02-28 21:19 - 10730824 _____ () C:\Users\Martina\Downloads\bee_honey_honeycomb_vector_163546.zip
2015-02-28 20:30 - 2015-02-28 20:30 - 04403433 _____ () C:\Users\Martina\Downloads\vector_honey_bees_collected_156365.zip
2015-02-28 20:09 - 2015-02-28 20:09 - 00042724 _____ () C:\Users\Martina\Downloads\echinos_park_script_demo.zip
2015-02-28 20:05 - 2015-02-28 20:05 - 00396312 _____ () C:\Users\Martina\Downloads\echinos_park_script.zip
2015-02-28 15:27 - 2015-02-28 15:27 - 02293298 _____ () C:\Users\Martina\Downloads\free_bee_logo_blackgold_144783.zip
2015-02-28 15:27 - 2015-02-28 15:27 - 00078774 _____ () C:\Users\Martina\Downloads\bee_clip_art_18782.zip
2015-02-28 14:22 - 2015-02-28 14:23 - 00000197 _____ () C:\WINDOWS\system32\2015-02-28-12-22-44.002-AvastVBoxSVC.exe-3244.log
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-03-29 21:00 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\sru
2015-03-29 20:49 - 2013-12-04 17:42 - 01754508 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2015-03-29 20:49 - 2012-04-11 07:50 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-03-29 20:47 - 2015-01-02 13:37 - 01325706 _____ () C:\WINDOWS\WindowsUpdate.log
2015-03-29 20:46 - 2013-12-04 17:58 - 00000000 ___DO () C:\Users\Martina\SkyDrive
2015-03-29 20:11 - 2015-02-05 22:06 - 00000958 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-29 19:49 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\AppReadiness
2015-03-29 19:40 - 2014-09-09 16:40 - 00000000 ____D () C:\Users\Martina\AppData\Local\NETGEARGenie
2015-03-29 19:40 - 2014-08-18 19:55 - 00002036 _____ () C:\Users\Martina\Desktop\SafeZone prohlížeč.lnk
2015-03-29 19:32 - 2015-02-05 22:06 - 00000954 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-03-29 19:31 - 2014-01-06 20:03 - 00165659 _____ () C:\MyXML.xml
2015-03-29 19:30 - 2013-11-27 07:47 - 00000000 ____D () C:\ProgramData\ProductData
2015-03-28 22:24 - 2015-01-13 13:35 - 00010484 _____ () C:\WINDOWS\setupact.log
2015-03-28 22:24 - 2013-08-22 09:23 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-03-28 22:23 - 2015-01-13 18:34 - 00013338 _____ () C:\WINDOWS\PFRO.log
2015-03-27 10:08 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Microsoft.NET
2015-03-21 20:46 - 2013-12-19 21:32 - 00000000 ____D () C:\Program Files\Opera
2015-03-16 19:12 - 2012-10-14 17:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2015-03-15 21:44 - 2013-08-22 08:13 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2015-03-14 20:51 - 2014-11-30 17:53 - 00012577 _____ () C:\Users\Martina\Desktop\Mabo´s Bees.xlsx
2015-03-13 17:54 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\rescache
2015-03-13 16:41 - 2013-08-22 09:22 - 00756136 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2015-03-12 21:45 - 2013-08-22 10:17 - 00000000 ___RD () C:\WINDOWS\ToastData
2015-03-12 21:45 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-12 21:45 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-12 21:45 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\WinStore
2015-03-12 21:45 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Windows Defender
2015-03-12 13:51 - 2010-06-28 15:46 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-12 13:50 - 2012-07-26 08:43 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-03-12 13:49 - 2013-07-22 23:28 - 00000000 ____D () C:\WINDOWS\system32\MRT
2015-03-12 13:43 - 2010-06-28 16:33 - 119837696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-03-12 13:41 - 2013-08-22 10:17 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-10 09:43 - 2013-06-24 08:55 - 01374720 ___SH () C:\Users\Martina\Downloads\Thumbs.db
2015-03-09 18:03 - 2010-06-28 16:25 - 00000000 ____D () C:\Users\Martina\AppData\Local\Google
2015-03-08 10:37 - 2012-09-02 20:38 - 00000000 ____D () C:\KelWin
2015-03-05 16:18 - 2010-06-28 15:55 - 00222272 _____ () C:\Users\Martina\AppData\Local\GDIPFONTCACHEV1.DAT
2015-03-02 21:26 - 2014-10-07 11:17 - 00000000 ____D () C:\Users\Martina\AppData\Local\Viber
2015-03-02 21:25 - 2014-10-07 11:26 - 00000000 ____D () C:\Users\Martina\AppData\Roaming\ViberPC
==================== Files in the root of some directories =======
2014-02-11 22:13 - 2014-02-11 22:13 - 0000000 _____ () C:\Users\Martina\AppData\Roaming\Dance
2014-02-11 22:17 - 2014-02-11 22:17 - 0000000 _____ () C:\Users\Martina\AppData\Roaming\Dance Kit
2012-01-16 18:00 - 2012-01-16 18:00 - 0000446 _____ () C:\Users\Martina\AppData\Roaming\gurman4-config.ini
2013-01-31 20:01 - 2013-01-31 20:01 - 0038413 _____ () C:\Users\Martina\AppData\Roaming\Microsoft Excel 97-2003.ADR
2013-01-31 20:00 - 2013-07-23 06:45 - 0009307 _____ () C:\Users\Martina\AppData\Roaming\Microsoft Excel 97-2003.EML
2012-02-27 09:26 - 2012-02-27 09:26 - 0000000 _____ () C:\Users\Martina\AppData\Roaming\wklnhst.dat
2015-02-11 12:13 - 2015-02-11 12:13 - 0000000 ____H () C:\Users\Martina\AppData\Local\BITB3CA.tmp
2013-06-04 12:47 - 2013-06-04 12:47 - 0004096 ____H () C:\Users\Martina\AppData\Local\keyfile3.drm
2014-02-11 21:35 - 2014-02-11 21:35 - 0007597 _____ () C:\Users\Martina\AppData\Local\Resmon.ResmonCfg
2011-08-15 11:45 - 2011-08-15 11:45 - 0000000 _____ () C:\Users\Martina\AppData\Local\{00E65F36-C873-47BF-96D5-F90ECB74FE64}
2015-02-11 12:13 - 2015-02-11 12:13 - 0000000 _____ () C:\Users\Martina\AppData\Local\{D5B6EDC6-5224-4A6E-909D-3F79E1EDA3C7}
2014-02-11 22:17 - 2014-02-11 22:17 - 0000000 _____ () C:\ProgramData\ColorTable
2014-02-11 22:17 - 2014-02-11 22:17 - 0000000 _____ () C:\ProgramData\Core Data Application
2014-02-11 22:17 - 2014-02-11 22:17 - 0000000 _____ () C:\ProgramData\Dance
2014-02-11 22:17 - 2014-02-11 22:17 - 0000000 _____ () C:\ProgramData\Definition Bundle
2014-02-13 18:20 - 2014-02-13 18:20 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2010-06-28 15:43 - 2009-08-17 05:16 - 0131368 _____ () C:\ProgramData\FullRemove.exe
2012-12-14 16:50 - 2012-12-14 16:50 - 0000107 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
2014-01-29 19:49 - 2014-02-11 22:13 - 0000000 ____H () C:\ProgramData\PKP_DLes.DAT
2014-01-29 19:48 - 2014-02-11 22:17 - 0000000 ____H () C:\ProgramData\PKP_DLet.DAT
2014-01-29 19:48 - 2014-02-11 22:17 - 0000000 ____H () C:\ProgramData\PKP_DLev.DAT
Files to move or delete:
====================
C:\Users\Martina\xobglu16.dll
C:\Users\Martina\xobglu32.dll
Some content of TEMP:
====================
C:\Users\Martina\AppData\Local\Temp\sip-alg-detector.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 11-03-2015
Ran by Martina (administrator) on MARTIN-PC on 29-03-2015 21:01:50
Running from C:\Users\Martina\Desktop
Loaded Profiles: Martina (Available profiles: Martina)
Platform: Microsoft Windows 8.1 Pro (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(IObit) C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Software602 a.s.) C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
() C:\Program Files\Aladdin\Aladdin SQL Server\AladdinSQL.exe
(Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Firebird Project) C:\Program Files\Firebird\Firebird_2_5\bin\fb_inet_server.exe
(NETGEAR) C:\Program Files\NETGEAR Genie\bin\NETGEARGenieDaemon.exe
() C:\Windows\System32\Rezip.exe
(IObit) C:\Program Files\IObit\Start Menu 8\StartMenuServices.exe
() C:\Program Files\Paradox Security Systems\BabyWare\nxServer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(IObit) C:\Program Files\IObit\Smart Defrag 3\SmartDefrag.exe
(Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\EasySpeedUpManager\EasySpeedUpManager.exe
(IObit) C:\Program Files\IObit\IObit Uninstaller\UninstallMonitor.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(IObit) C:\Program Files\IObit\Start Menu 8\StartMenu8.exe
() C:\Program Files\IObit\Start Menu 8\InstallServices32.exe
(IObit) C:\Program Files\IObit\Start Menu 8\StartMenu_Hook.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
() C:\Program Files\Opera\28.0.1750.48\opera_crashreporter.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(NETGEAR Inc.) C:\Program Files\NETGEAR Genie\bin\NETGEARGenie.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
() C:\Program Files\NETGEAR Genie\bin\genie2_tray.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1578280 2009-10-10] (Synaptics Incorporated)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [12021464 2014-12-14] (Realtek Semiconductor)
HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-01-29] (AVAST Software)
HKLM\...\Run: [IObit Malware Fighter] => C:\Program Files\IObit\IObit Malware Fighter\IMF.exe [1601856 2014-06-23] (IObit)
HKLM\...\Run: [PrnStatusMX] => C:\Program Files\Hewlett-Packard\PrnStatusMX\PrnStatusMX.exe [1077248 2007-08-29] (Marvell Semiconductor, Inc.)
HKLM\...\Run: [BackgroundContainer] => "C:\WINDOWS\system32\Rundll32.exe" "C:\Users\Martina\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll",DllRun <===== ATTENTION
HKLM\...\Run: [UpdatePDRShortCut] => C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe [222504 2008-01-04] (CyberLink Corp.)
HKLM\...\Run: [Sony PC Companion] => C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [446648 2013-01-07] (Sony)
HKLM\...\Run: [UCam_Menu] => C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [222504 2009-05-19] (CyberLink Corp.)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-11-20] (Adobe Systems Incorporated)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [26232152 2015-02-19] (Google)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [ISUSPM Startup] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.EXE [249856 2005-08-11] (Macrovision Corporation)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [NETGEARGenie] => C:\Program Files\NETGEAR Genie\bin\NETGEARGenie.exe [596480 2014-06-11] (NETGEAR Inc.)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [5282584 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [BackgroundContainer] => "C:\WINDOWS\system32\Rundll32.exe" "C:\Users\Martina\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll",DllRun <===== ATTENTION
IFEO\AUpdate.exe: [Debugger] C:\Program Files\IObit\Advanced SystemCare 7\AutoReactivator.exe
IFEO\Driver_Booster_FreeSoftwareDownloader.exe: [Debugger] C:\Program Files\IObit\Advanced SystemCare 7\AutoReactivator.exe
IFEO\SetupHlp.exe: [Debugger] C:\Program Files\IObit\Advanced SystemCare 7\AutoReactivator.exe
IFEO\SkipUacExec.exe: [Debugger] C:\Program Files\IObit\Advanced SystemCare 7\AutoReactivator.exe
IFEO\SkipUacTask.exe: [Debugger] C:\Program Files\IObit\Advanced SystemCare 7\AutoReactivator.exe
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)
ShellIconOverlayIdentifiers: [GDriveBlacklistedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSharedEditOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSharedViewOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSyncedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSyncingOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] -> {99FD978C-D287-4F50-827F-B2C658EDA8E7} => C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 2 (GFS Stub)] -> {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} => C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] -> {920E6DB1-9907-4370-B3A0-BAFC03D81399} => C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 3 (GFS Folder)] -> {16F3DD56-1AF5-4347-846D-7C10C4192619} => C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] -> {2916C86E-86A6-43FE-8112-43ABE6BF8DCC} => C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll No File
CHR HKU\S-1-5-21-3670137199-2938631228-624182700-1001\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.seznam.cz/?clid=22668
URLSearchHook: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 - (No Name) - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - No File
SearchScopes: HKLM -> DefaultScope {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKLM -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKLM -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://www.google.com/search?sourceid=i ... lz=1I7SMSN
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> DefaultScope {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {32D8395A-1F28-4398-9879-2E623D1FD4FE} URL = http://search.conduit.com/ResultsExt.as ... 82919&UM=1
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://www.google.com/search?sourceid=i ... lz=1I7SMSN
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL =
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {FCA093FF-4951-49CF-8FC4-C8F63011EF9A} URL = http://search.seznam.cz/?q={searchTerms ... cksearch_2
BHO: No Name -> {03EB0E9C-7A91-4381-A220-9B52B641CDB1} -> No File
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll [2014-10-16] (IObit)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll No File
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2014-11-12] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-11-25] (AVAST Software)
BHO: No Name -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> No File
BHO: No Name -> {9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F} -> No File
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-04] (Google Inc.)
BHO: No Name -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> No File
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-11-12] (Oracle Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-04] (Google Inc.)
Toolbar: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-04] (Google Inc.)
Toolbar: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File
DPF: {27932703-59C1-4B18-A46D-ED8FC2D35BAA} http://192.168.1.113/NEWIE.cab
DPF: {55A2C0CD-3DE8-4264-9637-A0B40B05714E} https://col0-sec.mail.live.com/mail/Mai ... 1213076673
DPF: {62789780-B744-11D0-986B-00609731A21D} http://195.28.70.134/kapor2/lib/mgaxctrl.cab
DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} http://download.divx.com/player/DivXBrowserPlugin.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0017-0000-0045-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {D8950D0E-FCE7-4AE4-9370-7E4CFBC04362} https://eportal.cssz.cz/fas/page/active ... bff_cs.cab
DPF: {D9D72A92-132E-46EC-A6F1-896B19227142} http://www.elnika.cz/online/ActiveX/ax4web.cab
DPF: {DED4D168-AEEE-4E0C-B699-36A9A320ED5E} http://www.cyberlink.com/prog/win8/js/UpdateAdvisor.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2009-02-26] (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2013-02-26] (Skype Technologies)
ShellExecuteHooks: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll No File [ ]
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default
FF Homepage: https://www.seznam.cz/?clid=22668
FF DefaultSearchEngine: Seznam
FF SelectedSearchEngine: Seznam
FF DefaultSearchUrl: hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}&
FF SearchEngineOrder.1: Seznam
FF Keyword.URL: hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}&
FF NewTab: about:newtab
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-02-05] ()
FF Plugin: @IObit.com/np_Asc_Plugin -> C:\Program Files\IObit\Surfing Protection\BrowerProtect\np_Asc_plugin.dll [2013-07-17] (IObit)
FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-11-12] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-11-12] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin: @software602.cz/602XML Filler -> C:\Program Files\Software602\602XML\Filler\npfiller.dll [2012-08-06] (Software602 a.s.)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default\searchplugins\seznam-avast.xml [2015-01-08]
FF SearchPlugin: C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default\searchplugins\yahoo_ff.xml [2013-10-30]
FF Extension: Ads Removal - C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default\Extensions\adremoveext@adremoveext.net [2014-09-02]
FF Extension: Advanced SystemCare Surfing Protection - C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default\Extensions\ascsurfingprotection@iobit.com [2014-06-13]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-12-19]
Chrome:
=======
CHR DefaultSearchKeyword: Default -> yahoo.com search
CHR DefaultSearchURL: Default -> http://search.yahoo.com/search?fr=chr-g ... earchTerms}
CHR DefaultSuggestURL: Default -> http://ff.search.yahoo.com/gossip?outpu ... earchTerms}
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
CHR Profile: C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-02-04]
CHR Extension: (Google Drive) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-02-04]
CHR Extension: (Advanced SystemCare Surfing Protection) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbmegnmpleoagolcnjnejdacakedpcgd [2014-04-30]
CHR Extension: (YouTube) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2011-12-21]
CHR Extension: (Google Search) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2011-12-21]
CHR Extension: (Avast SafePrice) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2014-07-27]
CHR Extension: (Ads Removal) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\fopdddcinljmpmioaklghcalngfhbaen [2014-09-02]
CHR Extension: (Avast Online Security) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-12-19]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2014-11-05]
CHR Extension: (Google Wallet) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-02-04]
CHR Extension: (Gmail) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2011-12-21]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-11-25]
CHR HKLM\...\Chrome\Extension: [ndibdjnfmopecpmkdieinmbadjfpblof] - No Path Or update_url value
CHR HKU\S-1-5-21-3670137199-2938631228-624182700-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - https://clients2.google.com/service/update2/crx
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 602XML Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [84520 2011-03-14] (Software602 a.s.)
R2 Aladdin SQL Server; C:\Program Files\Aladdin\Aladdin SQL Server\AladdinSQL.exe [140736 2012-08-17] () [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-11-25] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [104416 2014-11-25] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3192344 2014-11-25] (Avast Software)
R2 BcmBtRSupport; C:\WINDOWS\system32\BtwRSupportService.exe [1680088 2013-10-28] (Broadcom Corporation.)
S3 BthHFSrv; C:\WINDOWS\System32\BthHFSrv.dll [250880 2014-10-29] (Microsoft Corporation)
R2 FirebirdServerDefaultInstance; C:\Program Files\Firebird\Firebird_2_5\bin\fb_inet_server.exe [3727360 2010-09-17] (Firebird Project) [File not signed]
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 IMFservice; C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe [342336 2014-05-15] (IObit)
S2 LiveUpdateSvc; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2283296 2014-10-16] (IObit)
R2 NETGEARGenieDaemon; C:\Program Files\NETGEAR Genie\bin\NETGEARGenieDaemon.exe [189440 2014-03-24] (NETGEAR) [File not signed]
R2 NEWare_Database_16001; C:\Program Files\Paradox Security Systems\BabyWare\nxServer.exe [5316608 2012-03-19] () [File not signed]
R2 Rezip; C:\windows\SYSTEM32\Rezip.exe [311296 2009-03-05] () [File not signed]
S4 RichVideo; C:\Program Files\CyberLink\Shared files\RichVideo.exe [247152 2009-07-07] ()
S3 ScDeviceEnum; C:\WINDOWS\System32\ScDeviceEnum.dll [103936 2014-10-29] (Microsoft Corporation)
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155320 2012-01-18] (Avanquest Software) [File not signed]
R2 StartMenuService; C:\Program Files\IObit\Start Menu 8\StartMenuServices.exe [72512 2013-12-09] (IObit)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [284488 2015-02-04] (Microsoft Corporation)
S3 WEPHOSTSVC; C:\WINDOWS\system32\wephostsvc.dll [20992 2014-10-29] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [22200 2015-02-04] (Microsoft Corporation)
S3 workfolderssvc; C:\WINDOWS\system32\workfolderssvc.dll [1269248 2014-10-29] (Microsoft Corporation)
S2 TeamViewer9; No ImagePath
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24184 2014-11-25] ()
R1 aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [26136 2014-11-25] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [70384 2014-11-25] (AVAST Software)
R0 aswNdisFlt; C:\WINDOWS\System32\DRIVERS\aswNdisFlt.sys [271288 2014-11-25] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [81768 2014-11-25] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49944 2014-11-25] ()
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [787800 2014-11-25] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [423784 2014-11-25] (AVAST Software)
S2 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [91496 2014-11-25] (AVAST Software)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [206248 2014-11-25] ()
R3 athr; C:\WINDOWS\system32\DRIVERS\athwn.sys [2795520 2013-06-18] (Qualcomm Atheros Communications, Inc.)
R1 BasicRender; C:\WINDOWS\System32\drivers\BasicRender.sys [25600 2014-02-22] (Microsoft Corporation)
R3 bcbtums; C:\WINDOWS\system32\drivers\bcbtums.sys [175320 2013-10-28] (Broadcom Corporation.)
S3 btwampfl; C:\WINDOWS\system32\DRIVERS\btwampfl.sys [144600 2013-10-28] (Broadcom Corporation.)
R1 dtsoftbus01; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [242240 2013-12-18] (DT Soft Ltd)
S3 FileMonitor; C:\Program Files\IObit\IObit Malware Fighter\Drivers\win7_x86\FileMonitor.sys [21480 2013-03-23] (IObit)
S3 FTDIBUS; C:\WINDOWS\system32\drivers\ftdibus.sys [77808 2014-01-31] (FTDI Ltd.)
S3 GPIO; C:\WINDOWS\System32\drivers\iaiogpio.sys [22016 2013-07-23] (Intel Corporation)
R1 hwinterface; C:\WINDOWS\System32\Drivers\hwinterface.sys [3026 2014-04-17] (Logix4u) [File not signed]
R2 NPF; C:\WINDOWS\system32\drivers\npf.sys [35088 2014-09-09] (CACE Technologies, Inc.)
S3 RegFilter; C:\Program Files\IObit\IObit Malware Fighter\drivers\win7_x86\regfilter.sys [32288 2013-11-19] (IObit.com)
S3 Ser2plx86; C:\WINDOWS\system32\DRIVERS\ser2pl.sys [139776 2013-10-25] (Prolific Technology Inc.)
S3 silabenm; C:\WINDOWS\system32\DRIVERS\silabenm.sys [47176 2012-11-26] (Silicon Laboratories)
S3 silabser; C:\WINDOWS\system32\DRIVERS\silabser.sys [63104 2012-11-26] (Silicon Laboratories)
S3 SIoctl; c:\windows\system32\drivers\sioctl.sys [6144 2008-04-25] () [File not signed]
R0 SmartDefragDriver; C:\WINDOWS\System32\Drivers\SmartDefragDriver.sys [18624 2014-06-04] (IObit)
S3 UrlFilter; C:\Program Files\IObit\IObit Malware Fighter\drivers\win7_x86\UrlFilter.sys [20944 2013-11-19] (IObit.com)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [218192 2014-11-25] (Avast Software)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [84800 2015-02-04] (Microsoft Corporation)
R0 Wof; C:\WINDOWS\system32\Drivers\Wof.sys [138584 2014-03-13] (Microsoft Corporation)
S3 WUDFWpdMtp; C:\WINDOWS\System32\drivers\WUDFRd.sys [190976 2014-10-29] (Microsoft Corporation)
R3 ykinw8; C:\WINDOWS\system32\DRIVERS\ykinx86.sys [242688 2013-06-18] (Marvell)
S1 FNETURPX; System32\drivers\FNETURPX.SYS [X]
U3 idsvc; No ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-03-29 21:02 - 2015-03-29 21:02 - 00000000 ____D () C:\Users\Martina\Desktop\Nová složka
2015-03-29 21:01 - 2015-03-29 21:01 - 00028176 _____ () C:\Users\Martina\Desktop\FRST.txt
2015-03-29 20:59 - 2015-03-29 21:00 - 00028326 _____ () C:\Users\Martina\Desktop\Addition.txt
2015-03-29 20:57 - 2015-03-29 21:01 - 00000000 ____D () C:\FRST
2015-03-29 20:54 - 2015-03-29 20:54 - 01135104 _____ (Farbar) C:\Users\Martina\Desktop\FRST.exe
2015-03-29 20:54 - 2015-03-29 20:54 - 00112640 _____ (forum.viry.cz) C:\Users\Martina\Downloads\FRSTLauncher (1).exe
2015-03-29 20:54 - 2015-03-29 20:54 - 00112640 _____ (forum.viry.cz) C:\Users\Martina\Desktop\FRSTLauncher.exe
2015-03-29 20:01 - 2015-03-29 20:01 - 00000247 _____ () C:\WINDOWS\system32\2015-03-29-18-01-00.058-aswFe.exe-5444.log
2015-03-29 19:54 - 2015-03-29 20:00 - 00000247 _____ () C:\WINDOWS\system32\2015-03-29-17-54-18.020-aswFe.exe-4924.log
2015-03-29 19:54 - 2015-03-29 19:54 - 00000197 _____ () C:\WINDOWS\system32\2015-03-29-17-54-16.021-AvastVBoxSVC.exe-3164.log
2015-03-29 19:33 - 2015-03-29 19:35 - 00000000 ____D () C:\Users\Martina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Opera Software
2015-03-27 22:02 - 2015-03-27 22:02 - 00548352 _____ () C:\Users\Martina\Downloads\37_Loupaci_stroje_a_krajecky.pps
2015-03-27 16:04 - 2015-03-27 16:04 - 00114721 _____ () C:\Users\Martina\Downloads\klasifikace_zamestnani_systematicka_cast_2014_09_01.xlsx
2015-03-27 14:22 - 2015-03-27 17:01 - 00000000 ____D () C:\Users\Martina\Desktop\§75 - žadosti
2015-03-18 21:32 - 2015-03-18 21:32 - 00000981 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2015-03-16 18:52 - 2015-03-16 18:52 - 00000197 _____ () C:\WINDOWS\system32\2015-03-16-16-52-55.077-AvastVBoxSVC.exe-2684.log
2015-03-15 11:27 - 2015-03-15 11:27 - 00000197 _____ () C:\WINDOWS\system32\2015-03-15-09-27-24.038-AvastVBoxSVC.exe-3036.log
2015-03-14 20:46 - 2015-03-14 20:46 - 00000197 _____ () C:\WINDOWS\system32\2015-03-14-18-46-39.022-AvastVBoxSVC.exe-3744.log
2015-03-13 17:14 - 2015-03-13 17:14 - 00692192 _____ (Opera Software) C:\Users\Martina\Downloads\Opera_NI_stable.exe
2015-03-13 16:43 - 2015-03-13 16:43 - 00000197 _____ () C:\WINDOWS\system32\2015-03-13-14-43-12.028-AvastVBoxSVC.exe-4416.log
2015-03-12 13:41 - 2015-03-04 23:24 - 00792032 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2015-03-12 13:41 - 2015-03-04 23:24 - 00178144 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2015-03-11 13:28 - 2015-03-06 04:33 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2015-03-11 13:28 - 2015-02-21 02:41 - 12827648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-03-11 13:28 - 2015-02-21 02:27 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2015-03-11 13:28 - 2015-02-21 02:25 - 19720192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-03-11 13:28 - 2015-02-21 01:32 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2015-03-11 13:28 - 2015-02-20 04:09 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-03-11 13:28 - 2015-02-20 04:06 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2015-03-11 13:28 - 2015-02-20 04:03 - 02278400 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-03-11 13:28 - 2015-02-20 03:30 - 04300288 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-03-11 13:28 - 2015-02-20 03:30 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-03-11 13:28 - 2015-02-20 03:26 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-03-11 13:28 - 2015-02-20 03:24 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-03-11 13:28 - 2015-02-20 03:24 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-03-11 13:28 - 2015-02-20 03:01 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-03-11 13:28 - 2015-02-20 02:57 - 01311232 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-03-11 13:28 - 2015-02-12 19:34 - 19731824 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-03-11 13:28 - 2015-02-08 01:49 - 00791040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2015-03-11 13:28 - 2015-02-07 01:09 - 00396419 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2015-03-11 13:28 - 2015-02-06 03:08 - 01943040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-03-11 13:28 - 2015-01-31 01:29 - 02484224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-03-11 13:28 - 2015-01-31 01:20 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2015-03-11 13:28 - 2015-01-30 04:25 - 00131584 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys
2015-03-11 13:28 - 2015-01-30 04:25 - 00083456 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys
2015-03-11 13:28 - 2015-01-29 20:34 - 01488040 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2015-03-11 13:28 - 2015-01-29 03:29 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\photowiz.dll
2015-03-11 13:28 - 2015-01-29 03:00 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-11 13:28 - 2015-01-29 02:50 - 00811008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2015-03-11 13:28 - 2015-01-23 07:02 - 00560392 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2015-03-11 13:28 - 2015-01-21 07:15 - 01123848 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2015-03-11 13:28 - 2014-12-11 07:40 - 00041296 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentServer.exe
2015-03-11 13:27 - 2015-02-26 01:27 - 03543552 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-03-11 13:27 - 2015-02-21 02:27 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2015-03-11 13:27 - 2015-02-20 04:20 - 00301056 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-03-11 13:27 - 2015-02-20 04:15 - 00035840 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-03-11 13:27 - 2015-02-20 03:56 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-03-11 13:27 - 2015-02-20 03:24 - 00684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-03-11 13:27 - 2015-02-20 02:55 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-03-11 13:27 - 2015-02-05 22:17 - 00869696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2015-03-11 13:27 - 2015-02-04 01:51 - 00227136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2015-03-11 13:27 - 2015-02-04 01:51 - 00084800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2015-03-11 13:27 - 2015-02-04 01:51 - 00038392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2015-03-11 13:27 - 2015-02-03 02:03 - 03551744 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2015-03-11 13:27 - 2015-02-03 01:53 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll
2015-03-11 13:27 - 2015-01-30 03:44 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42u.dll
2015-03-11 13:27 - 2015-01-30 03:42 - 01204224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42.dll
2015-03-11 13:27 - 2015-01-30 03:40 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2015-03-11 13:27 - 2015-01-30 03:24 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2015-03-11 13:27 - 2015-01-30 03:16 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2015-03-11 13:27 - 2015-01-30 03:06 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2015-03-11 13:27 - 2015-01-29 02:56 - 00602624 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2015-03-11 13:27 - 2015-01-29 02:55 - 00873984 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2015-03-11 13:27 - 2015-01-29 02:49 - 02459136 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-03-11 13:27 - 2015-01-28 17:35 - 05769024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-03-11 13:27 - 2015-01-28 17:35 - 01468408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-03-11 13:27 - 2015-01-28 03:47 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageContextHandler.dll
2015-03-11 13:27 - 2015-01-28 03:11 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2015-03-11 13:27 - 2015-01-28 01:41 - 02207488 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-03-11 13:27 - 2015-01-24 04:20 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2015-03-11 13:27 - 2015-01-24 03:51 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe
2015-03-11 13:27 - 2015-01-24 02:48 - 02975744 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2015-03-11 10:18 - 2015-03-11 10:18 - 00000247 _____ () C:\WINDOWS\system32\2015-03-11-08-18-03.002-aswFe.exe-4372.log
2015-03-09 17:54 - 2015-03-09 18:01 - 00000197 _____ () C:\WINDOWS\system32\2015-03-09-15-54-18.099-AvastVBoxSVC.exe-2732.log
2015-03-08 10:21 - 2015-03-08 10:22 - 00000197 _____ () C:\WINDOWS\system32\2015-03-08-08-21-48.055-AvastVBoxSVC.exe-2896.log
2015-03-07 19:50 - 2015-03-07 19:50 - 00001259 _____ () C:\Users\Martina\Desktop\7zFM – zástupce.lnk
2015-03-07 18:58 - 2015-03-07 18:58 - 00000473 _____ () C:\Users\Martina\Downloads\prohlídky.csv
2015-03-05 16:38 - 2015-03-05 16:38 - 00000247 _____ () C:\WINDOWS\system32\2015-03-05-14-38-37.071-aswFe.exe-4276.log
2015-03-05 16:31 - 2015-03-05 16:38 - 00000247 _____ () C:\WINDOWS\system32\2015-03-05-14-31-03.074-aswFe.exe-3908.log
2015-03-04 14:25 - 2015-03-04 14:26 - 00000197 _____ () C:\WINDOWS\system32\2015-03-04-12-25-03.085-AvastVBoxSVC.exe-2888.log
2015-03-03 21:03 - 2015-03-03 21:41 - 00023800 _____ () C:\Users\Martina\Downloads\Prihlaska_SS_2015_dalkove.xlsx
2015-03-03 09:31 - 2015-03-03 09:31 - 00000197 _____ () C:\WINDOWS\system32\2015-03-03-07-31-39.030-AvastVBoxSVC.exe-2892.log
2015-03-02 22:38 - 2015-03-02 22:45 - 118460416 _____ () C:\Users\Martina\Downloads\04_ostatni_vceli_produkty.avi
2015-03-02 20:02 - 2015-03-02 20:02 - 10214319 _____ () C:\Users\Martina\Downloads\western_cuisine_vector_288204.zip
2015-03-02 20:01 - 2015-03-02 20:01 - 09002831 _____ () C:\Users\Martina\Downloads\cute_cartoon_bee_vector_156286.zip
2015-02-28 21:19 - 2015-02-28 21:19 - 10730824 _____ () C:\Users\Martina\Downloads\bee_honey_honeycomb_vector_163546.zip
2015-02-28 20:30 - 2015-02-28 20:30 - 04403433 _____ () C:\Users\Martina\Downloads\vector_honey_bees_collected_156365.zip
2015-02-28 20:09 - 2015-02-28 20:09 - 00042724 _____ () C:\Users\Martina\Downloads\echinos_park_script_demo.zip
2015-02-28 20:05 - 2015-02-28 20:05 - 00396312 _____ () C:\Users\Martina\Downloads\echinos_park_script.zip
2015-02-28 15:27 - 2015-02-28 15:27 - 02293298 _____ () C:\Users\Martina\Downloads\free_bee_logo_blackgold_144783.zip
2015-02-28 15:27 - 2015-02-28 15:27 - 00078774 _____ () C:\Users\Martina\Downloads\bee_clip_art_18782.zip
2015-02-28 14:22 - 2015-02-28 14:23 - 00000197 _____ () C:\WINDOWS\system32\2015-02-28-12-22-44.002-AvastVBoxSVC.exe-3244.log
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-03-29 21:00 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\sru
2015-03-29 20:49 - 2013-12-04 17:42 - 01754508 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2015-03-29 20:49 - 2012-04-11 07:50 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-03-29 20:47 - 2015-01-02 13:37 - 01325706 _____ () C:\WINDOWS\WindowsUpdate.log
2015-03-29 20:46 - 2013-12-04 17:58 - 00000000 ___DO () C:\Users\Martina\SkyDrive
2015-03-29 20:11 - 2015-02-05 22:06 - 00000958 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-29 19:49 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\AppReadiness
2015-03-29 19:40 - 2014-09-09 16:40 - 00000000 ____D () C:\Users\Martina\AppData\Local\NETGEARGenie
2015-03-29 19:40 - 2014-08-18 19:55 - 00002036 _____ () C:\Users\Martina\Desktop\SafeZone prohlížeč.lnk
2015-03-29 19:32 - 2015-02-05 22:06 - 00000954 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-03-29 19:31 - 2014-01-06 20:03 - 00165659 _____ () C:\MyXML.xml
2015-03-29 19:30 - 2013-11-27 07:47 - 00000000 ____D () C:\ProgramData\ProductData
2015-03-28 22:24 - 2015-01-13 13:35 - 00010484 _____ () C:\WINDOWS\setupact.log
2015-03-28 22:24 - 2013-08-22 09:23 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-03-28 22:23 - 2015-01-13 18:34 - 00013338 _____ () C:\WINDOWS\PFRO.log
2015-03-27 10:08 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Microsoft.NET
2015-03-21 20:46 - 2013-12-19 21:32 - 00000000 ____D () C:\Program Files\Opera
2015-03-16 19:12 - 2012-10-14 17:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2015-03-15 21:44 - 2013-08-22 08:13 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2015-03-14 20:51 - 2014-11-30 17:53 - 00012577 _____ () C:\Users\Martina\Desktop\Mabo´s Bees.xlsx
2015-03-13 17:54 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\rescache
2015-03-13 16:41 - 2013-08-22 09:22 - 00756136 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2015-03-12 21:45 - 2013-08-22 10:17 - 00000000 ___RD () C:\WINDOWS\ToastData
2015-03-12 21:45 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-12 21:45 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-12 21:45 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\WinStore
2015-03-12 21:45 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Windows Defender
2015-03-12 13:51 - 2010-06-28 15:46 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-12 13:50 - 2012-07-26 08:43 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-03-12 13:49 - 2013-07-22 23:28 - 00000000 ____D () C:\WINDOWS\system32\MRT
2015-03-12 13:43 - 2010-06-28 16:33 - 119837696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-03-12 13:41 - 2013-08-22 10:17 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-10 09:43 - 2013-06-24 08:55 - 01374720 ___SH () C:\Users\Martina\Downloads\Thumbs.db
2015-03-09 18:03 - 2010-06-28 16:25 - 00000000 ____D () C:\Users\Martina\AppData\Local\Google
2015-03-08 10:37 - 2012-09-02 20:38 - 00000000 ____D () C:\KelWin
2015-03-05 16:18 - 2010-06-28 15:55 - 00222272 _____ () C:\Users\Martina\AppData\Local\GDIPFONTCACHEV1.DAT
2015-03-02 21:26 - 2014-10-07 11:17 - 00000000 ____D () C:\Users\Martina\AppData\Local\Viber
2015-03-02 21:25 - 2014-10-07 11:26 - 00000000 ____D () C:\Users\Martina\AppData\Roaming\ViberPC
==================== Files in the root of some directories =======
2014-02-11 22:13 - 2014-02-11 22:13 - 0000000 _____ () C:\Users\Martina\AppData\Roaming\Dance
2014-02-11 22:17 - 2014-02-11 22:17 - 0000000 _____ () C:\Users\Martina\AppData\Roaming\Dance Kit
2012-01-16 18:00 - 2012-01-16 18:00 - 0000446 _____ () C:\Users\Martina\AppData\Roaming\gurman4-config.ini
2013-01-31 20:01 - 2013-01-31 20:01 - 0038413 _____ () C:\Users\Martina\AppData\Roaming\Microsoft Excel 97-2003.ADR
2013-01-31 20:00 - 2013-07-23 06:45 - 0009307 _____ () C:\Users\Martina\AppData\Roaming\Microsoft Excel 97-2003.EML
2012-02-27 09:26 - 2012-02-27 09:26 - 0000000 _____ () C:\Users\Martina\AppData\Roaming\wklnhst.dat
2015-02-11 12:13 - 2015-02-11 12:13 - 0000000 ____H () C:\Users\Martina\AppData\Local\BITB3CA.tmp
2013-06-04 12:47 - 2013-06-04 12:47 - 0004096 ____H () C:\Users\Martina\AppData\Local\keyfile3.drm
2014-02-11 21:35 - 2014-02-11 21:35 - 0007597 _____ () C:\Users\Martina\AppData\Local\Resmon.ResmonCfg
2011-08-15 11:45 - 2011-08-15 11:45 - 0000000 _____ () C:\Users\Martina\AppData\Local\{00E65F36-C873-47BF-96D5-F90ECB74FE64}
2015-02-11 12:13 - 2015-02-11 12:13 - 0000000 _____ () C:\Users\Martina\AppData\Local\{D5B6EDC6-5224-4A6E-909D-3F79E1EDA3C7}
2014-02-11 22:17 - 2014-02-11 22:17 - 0000000 _____ () C:\ProgramData\ColorTable
2014-02-11 22:17 - 2014-02-11 22:17 - 0000000 _____ () C:\ProgramData\Core Data Application
2014-02-11 22:17 - 2014-02-11 22:17 - 0000000 _____ () C:\ProgramData\Dance
2014-02-11 22:17 - 2014-02-11 22:17 - 0000000 _____ () C:\ProgramData\Definition Bundle
2014-02-13 18:20 - 2014-02-13 18:20 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2010-06-28 15:43 - 2009-08-17 05:16 - 0131368 _____ () C:\ProgramData\FullRemove.exe
2012-12-14 16:50 - 2012-12-14 16:50 - 0000107 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
2014-01-29 19:49 - 2014-02-11 22:13 - 0000000 ____H () C:\ProgramData\PKP_DLes.DAT
2014-01-29 19:48 - 2014-02-11 22:17 - 0000000 ____H () C:\ProgramData\PKP_DLet.DAT
2014-01-29 19:48 - 2014-02-11 22:17 - 0000000 ____H () C:\ProgramData\PKP_DLev.DAT
Files to move or delete:
====================
C:\Users\Martina\xobglu16.dll
C:\Users\Martina\xobglu32.dll
Some content of TEMP:
====================
C:\Users\Martina\AppData\Local\Temp\sip-alg-detector.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed