Stránka 1 z 1

Prosím o kontrolu

Napsal: 30 bře 2015 07:13
od mabor
Počitač je dost pomalý, po projetí Avastem najde nějaké viry a přesune je do truhly, po nějakém čase se tam objeví znovu.

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 11-03-2015
Ran by Martina (administrator) on MARTIN-PC on 29-03-2015 21:01:50
Running from C:\Users\Martina\Desktop
Loaded Profiles: Martina (Available profiles: Martina)
Platform: Microsoft Windows 8.1 Pro (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(IObit) C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Software602 a.s.) C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
() C:\Program Files\Aladdin\Aladdin SQL Server\AladdinSQL.exe
(Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Firebird Project) C:\Program Files\Firebird\Firebird_2_5\bin\fb_inet_server.exe
(NETGEAR) C:\Program Files\NETGEAR Genie\bin\NETGEARGenieDaemon.exe
() C:\Windows\System32\Rezip.exe
(IObit) C:\Program Files\IObit\Start Menu 8\StartMenuServices.exe
() C:\Program Files\Paradox Security Systems\BabyWare\nxServer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(IObit) C:\Program Files\IObit\Smart Defrag 3\SmartDefrag.exe
(Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\EasySpeedUpManager\EasySpeedUpManager.exe
(IObit) C:\Program Files\IObit\IObit Uninstaller\UninstallMonitor.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(IObit) C:\Program Files\IObit\Start Menu 8\StartMenu8.exe
() C:\Program Files\IObit\Start Menu 8\InstallServices32.exe
(IObit) C:\Program Files\IObit\Start Menu 8\StartMenu_Hook.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
() C:\Program Files\Opera\28.0.1750.48\opera_crashreporter.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(NETGEAR Inc.) C:\Program Files\NETGEAR Genie\bin\NETGEARGenie.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
() C:\Program Files\NETGEAR Genie\bin\genie2_tray.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1578280 2009-10-10] (Synaptics Incorporated)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [12021464 2014-12-14] (Realtek Semiconductor)
HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-01-29] (AVAST Software)
HKLM\...\Run: [IObit Malware Fighter] => C:\Program Files\IObit\IObit Malware Fighter\IMF.exe [1601856 2014-06-23] (IObit)
HKLM\...\Run: [PrnStatusMX] => C:\Program Files\Hewlett-Packard\PrnStatusMX\PrnStatusMX.exe [1077248 2007-08-29] (Marvell Semiconductor, Inc.)
HKLM\...\Run: [BackgroundContainer] => "C:\WINDOWS\system32\Rundll32.exe" "C:\Users\Martina\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll",DllRun <===== ATTENTION
HKLM\...\Run: [UpdatePDRShortCut] => C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe [222504 2008-01-04] (CyberLink Corp.)
HKLM\...\Run: [Sony PC Companion] => C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [446648 2013-01-07] (Sony)
HKLM\...\Run: [UCam_Menu] => C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [222504 2009-05-19] (CyberLink Corp.)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-11-20] (Adobe Systems Incorporated)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [26232152 2015-02-19] (Google)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [ISUSPM Startup] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.EXE [249856 2005-08-11] (Macrovision Corporation)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [NETGEARGenie] => C:\Program Files\NETGEAR Genie\bin\NETGEARGenie.exe [596480 2014-06-11] (NETGEAR Inc.)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [5282584 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [BackgroundContainer] => "C:\WINDOWS\system32\Rundll32.exe" "C:\Users\Martina\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll",DllRun <===== ATTENTION
IFEO\AUpdate.exe: [Debugger] C:\Program Files\IObit\Advanced SystemCare 7\AutoReactivator.exe
IFEO\Driver_Booster_FreeSoftwareDownloader.exe: [Debugger] C:\Program Files\IObit\Advanced SystemCare 7\AutoReactivator.exe
IFEO\SetupHlp.exe: [Debugger] C:\Program Files\IObit\Advanced SystemCare 7\AutoReactivator.exe
IFEO\SkipUacExec.exe: [Debugger] C:\Program Files\IObit\Advanced SystemCare 7\AutoReactivator.exe
IFEO\SkipUacTask.exe: [Debugger] C:\Program Files\IObit\Advanced SystemCare 7\AutoReactivator.exe
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)
ShellIconOverlayIdentifiers: [GDriveBlacklistedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSharedEditOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSharedViewOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSyncedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSyncingOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] -> {99FD978C-D287-4F50-827F-B2C658EDA8E7} => C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 2 (GFS Stub)] -> {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} => C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] -> {920E6DB1-9907-4370-B3A0-BAFC03D81399} => C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 3 (GFS Folder)] -> {16F3DD56-1AF5-4347-846D-7C10C4192619} => C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] -> {2916C86E-86A6-43FE-8112-43ABE6BF8DCC} => C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll No File
CHR HKU\S-1-5-21-3670137199-2938631228-624182700-1001\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.seznam.cz/?clid=22668
URLSearchHook: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 - (No Name) - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - No File
SearchScopes: HKLM -> DefaultScope {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKLM -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKLM -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://www.google.com/search?sourceid=i ... lz=1I7SMSN
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> DefaultScope {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {32D8395A-1F28-4398-9879-2E623D1FD4FE} URL = http://search.conduit.com/ResultsExt.as ... 82919&UM=1
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://www.google.com/search?sourceid=i ... lz=1I7SMSN
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL =
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {FCA093FF-4951-49CF-8FC4-C8F63011EF9A} URL = http://search.seznam.cz/?q={searchTerms ... cksearch_2
BHO: No Name -> {03EB0E9C-7A91-4381-A220-9B52B641CDB1} -> No File
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll [2014-10-16] (IObit)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll No File
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2014-11-12] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-11-25] (AVAST Software)
BHO: No Name -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> No File
BHO: No Name -> {9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F} -> No File
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-04] (Google Inc.)
BHO: No Name -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> No File
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-11-12] (Oracle Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-04] (Google Inc.)
Toolbar: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-04] (Google Inc.)
Toolbar: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File
DPF: {27932703-59C1-4B18-A46D-ED8FC2D35BAA} http://192.168.1.113/NEWIE.cab
DPF: {55A2C0CD-3DE8-4264-9637-A0B40B05714E} https://col0-sec.mail.live.com/mail/Mai ... 1213076673
DPF: {62789780-B744-11D0-986B-00609731A21D} http://195.28.70.134/kapor2/lib/mgaxctrl.cab
DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} http://download.divx.com/player/DivXBrowserPlugin.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0017-0000-0045-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {D8950D0E-FCE7-4AE4-9370-7E4CFBC04362} https://eportal.cssz.cz/fas/page/active ... bff_cs.cab
DPF: {D9D72A92-132E-46EC-A6F1-896B19227142} http://www.elnika.cz/online/ActiveX/ax4web.cab
DPF: {DED4D168-AEEE-4E0C-B699-36A9A320ED5E} http://www.cyberlink.com/prog/win8/js/UpdateAdvisor.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2009-02-26] (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2013-02-26] (Skype Technologies)
ShellExecuteHooks: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll No File [ ]
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default
FF Homepage: https://www.seznam.cz/?clid=22668
FF DefaultSearchEngine: Seznam
FF SelectedSearchEngine: Seznam
FF DefaultSearchUrl: hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}&
FF SearchEngineOrder.1: Seznam
FF Keyword.URL: hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}&
FF NewTab: about:newtab
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-02-05] ()
FF Plugin: @IObit.com/np_Asc_Plugin -> C:\Program Files\IObit\Surfing Protection\BrowerProtect\np_Asc_plugin.dll [2013-07-17] (IObit)
FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-11-12] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-11-12] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin: @software602.cz/602XML Filler -> C:\Program Files\Software602\602XML\Filler\npfiller.dll [2012-08-06] (Software602 a.s.)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default\searchplugins\seznam-avast.xml [2015-01-08]
FF SearchPlugin: C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default\searchplugins\yahoo_ff.xml [2013-10-30]
FF Extension: Ads Removal - C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default\Extensions\adremoveext@adremoveext.net [2014-09-02]
FF Extension: Advanced SystemCare Surfing Protection - C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default\Extensions\ascsurfingprotection@iobit.com [2014-06-13]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-12-19]

Chrome:
=======
CHR DefaultSearchKeyword: Default -> yahoo.com search
CHR DefaultSearchURL: Default -> http://search.yahoo.com/search?fr=chr-g ... earchTerms}
CHR DefaultSuggestURL: Default -> http://ff.search.yahoo.com/gossip?outpu ... earchTerms}
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
CHR Profile: C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-02-04]
CHR Extension: (Google Drive) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-02-04]
CHR Extension: (Advanced SystemCare Surfing Protection) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbmegnmpleoagolcnjnejdacakedpcgd [2014-04-30]
CHR Extension: (YouTube) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2011-12-21]
CHR Extension: (Google Search) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2011-12-21]
CHR Extension: (Avast SafePrice) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2014-07-27]
CHR Extension: (Ads Removal) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\fopdddcinljmpmioaklghcalngfhbaen [2014-09-02]
CHR Extension: (Avast Online Security) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-12-19]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2014-11-05]
CHR Extension: (Google Wallet) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-02-04]
CHR Extension: (Gmail) - C:\Users\Martina\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2011-12-21]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-11-25]
CHR HKLM\...\Chrome\Extension: [ndibdjnfmopecpmkdieinmbadjfpblof] - No Path Or update_url value
CHR HKU\S-1-5-21-3670137199-2938631228-624182700-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - https://clients2.google.com/service/update2/crx

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 602XML Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [84520 2011-03-14] (Software602 a.s.)
R2 Aladdin SQL Server; C:\Program Files\Aladdin\Aladdin SQL Server\AladdinSQL.exe [140736 2012-08-17] () [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-11-25] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [104416 2014-11-25] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3192344 2014-11-25] (Avast Software)
R2 BcmBtRSupport; C:\WINDOWS\system32\BtwRSupportService.exe [1680088 2013-10-28] (Broadcom Corporation.)
S3 BthHFSrv; C:\WINDOWS\System32\BthHFSrv.dll [250880 2014-10-29] (Microsoft Corporation)
R2 FirebirdServerDefaultInstance; C:\Program Files\Firebird\Firebird_2_5\bin\fb_inet_server.exe [3727360 2010-09-17] (Firebird Project) [File not signed]
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 IMFservice; C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe [342336 2014-05-15] (IObit)
S2 LiveUpdateSvc; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2283296 2014-10-16] (IObit)
R2 NETGEARGenieDaemon; C:\Program Files\NETGEAR Genie\bin\NETGEARGenieDaemon.exe [189440 2014-03-24] (NETGEAR) [File not signed]
R2 NEWare_Database_16001; C:\Program Files\Paradox Security Systems\BabyWare\nxServer.exe [5316608 2012-03-19] () [File not signed]
R2 Rezip; C:\windows\SYSTEM32\Rezip.exe [311296 2009-03-05] () [File not signed]
S4 RichVideo; C:\Program Files\CyberLink\Shared files\RichVideo.exe [247152 2009-07-07] ()
S3 ScDeviceEnum; C:\WINDOWS\System32\ScDeviceEnum.dll [103936 2014-10-29] (Microsoft Corporation)
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155320 2012-01-18] (Avanquest Software) [File not signed]
R2 StartMenuService; C:\Program Files\IObit\Start Menu 8\StartMenuServices.exe [72512 2013-12-09] (IObit)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [284488 2015-02-04] (Microsoft Corporation)
S3 WEPHOSTSVC; C:\WINDOWS\system32\wephostsvc.dll [20992 2014-10-29] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [22200 2015-02-04] (Microsoft Corporation)
S3 workfolderssvc; C:\WINDOWS\system32\workfolderssvc.dll [1269248 2014-10-29] (Microsoft Corporation)
S2 TeamViewer9; No ImagePath

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24184 2014-11-25] ()
R1 aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [26136 2014-11-25] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [70384 2014-11-25] (AVAST Software)
R0 aswNdisFlt; C:\WINDOWS\System32\DRIVERS\aswNdisFlt.sys [271288 2014-11-25] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [81768 2014-11-25] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49944 2014-11-25] ()
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [787800 2014-11-25] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [423784 2014-11-25] (AVAST Software)
S2 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [91496 2014-11-25] (AVAST Software)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [206248 2014-11-25] ()
R3 athr; C:\WINDOWS\system32\DRIVERS\athwn.sys [2795520 2013-06-18] (Qualcomm Atheros Communications, Inc.)
R1 BasicRender; C:\WINDOWS\System32\drivers\BasicRender.sys [25600 2014-02-22] (Microsoft Corporation)
R3 bcbtums; C:\WINDOWS\system32\drivers\bcbtums.sys [175320 2013-10-28] (Broadcom Corporation.)
S3 btwampfl; C:\WINDOWS\system32\DRIVERS\btwampfl.sys [144600 2013-10-28] (Broadcom Corporation.)
R1 dtsoftbus01; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [242240 2013-12-18] (DT Soft Ltd)
S3 FileMonitor; C:\Program Files\IObit\IObit Malware Fighter\Drivers\win7_x86\FileMonitor.sys [21480 2013-03-23] (IObit)
S3 FTDIBUS; C:\WINDOWS\system32\drivers\ftdibus.sys [77808 2014-01-31] (FTDI Ltd.)
S3 GPIO; C:\WINDOWS\System32\drivers\iaiogpio.sys [22016 2013-07-23] (Intel Corporation)
R1 hwinterface; C:\WINDOWS\System32\Drivers\hwinterface.sys [3026 2014-04-17] (Logix4u) [File not signed]
R2 NPF; C:\WINDOWS\system32\drivers\npf.sys [35088 2014-09-09] (CACE Technologies, Inc.)
S3 RegFilter; C:\Program Files\IObit\IObit Malware Fighter\drivers\win7_x86\regfilter.sys [32288 2013-11-19] (IObit.com)
S3 Ser2plx86; C:\WINDOWS\system32\DRIVERS\ser2pl.sys [139776 2013-10-25] (Prolific Technology Inc.)
S3 silabenm; C:\WINDOWS\system32\DRIVERS\silabenm.sys [47176 2012-11-26] (Silicon Laboratories)
S3 silabser; C:\WINDOWS\system32\DRIVERS\silabser.sys [63104 2012-11-26] (Silicon Laboratories)
S3 SIoctl; c:\windows\system32\drivers\sioctl.sys [6144 2008-04-25] () [File not signed]
R0 SmartDefragDriver; C:\WINDOWS\System32\Drivers\SmartDefragDriver.sys [18624 2014-06-04] (IObit)
S3 UrlFilter; C:\Program Files\IObit\IObit Malware Fighter\drivers\win7_x86\UrlFilter.sys [20944 2013-11-19] (IObit.com)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [218192 2014-11-25] (Avast Software)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [84800 2015-02-04] (Microsoft Corporation)
R0 Wof; C:\WINDOWS\system32\Drivers\Wof.sys [138584 2014-03-13] (Microsoft Corporation)
S3 WUDFWpdMtp; C:\WINDOWS\System32\drivers\WUDFRd.sys [190976 2014-10-29] (Microsoft Corporation)
R3 ykinw8; C:\WINDOWS\system32\DRIVERS\ykinx86.sys [242688 2013-06-18] (Marvell)
S1 FNETURPX; System32\drivers\FNETURPX.SYS [X]
U3 idsvc; No ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-29 21:02 - 2015-03-29 21:02 - 00000000 ____D () C:\Users\Martina\Desktop\Nová složka
2015-03-29 21:01 - 2015-03-29 21:01 - 00028176 _____ () C:\Users\Martina\Desktop\FRST.txt
2015-03-29 20:59 - 2015-03-29 21:00 - 00028326 _____ () C:\Users\Martina\Desktop\Addition.txt
2015-03-29 20:57 - 2015-03-29 21:01 - 00000000 ____D () C:\FRST
2015-03-29 20:54 - 2015-03-29 20:54 - 01135104 _____ (Farbar) C:\Users\Martina\Desktop\FRST.exe
2015-03-29 20:54 - 2015-03-29 20:54 - 00112640 _____ (forum.viry.cz) C:\Users\Martina\Downloads\FRSTLauncher (1).exe
2015-03-29 20:54 - 2015-03-29 20:54 - 00112640 _____ (forum.viry.cz) C:\Users\Martina\Desktop\FRSTLauncher.exe
2015-03-29 20:01 - 2015-03-29 20:01 - 00000247 _____ () C:\WINDOWS\system32\2015-03-29-18-01-00.058-aswFe.exe-5444.log
2015-03-29 19:54 - 2015-03-29 20:00 - 00000247 _____ () C:\WINDOWS\system32\2015-03-29-17-54-18.020-aswFe.exe-4924.log
2015-03-29 19:54 - 2015-03-29 19:54 - 00000197 _____ () C:\WINDOWS\system32\2015-03-29-17-54-16.021-AvastVBoxSVC.exe-3164.log
2015-03-29 19:33 - 2015-03-29 19:35 - 00000000 ____D () C:\Users\Martina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Opera Software
2015-03-27 22:02 - 2015-03-27 22:02 - 00548352 _____ () C:\Users\Martina\Downloads\37_Loupaci_stroje_a_krajecky.pps
2015-03-27 16:04 - 2015-03-27 16:04 - 00114721 _____ () C:\Users\Martina\Downloads\klasifikace_zamestnani_systematicka_cast_2014_09_01.xlsx
2015-03-27 14:22 - 2015-03-27 17:01 - 00000000 ____D () C:\Users\Martina\Desktop\§75 - žadosti
2015-03-18 21:32 - 2015-03-18 21:32 - 00000981 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2015-03-16 18:52 - 2015-03-16 18:52 - 00000197 _____ () C:\WINDOWS\system32\2015-03-16-16-52-55.077-AvastVBoxSVC.exe-2684.log
2015-03-15 11:27 - 2015-03-15 11:27 - 00000197 _____ () C:\WINDOWS\system32\2015-03-15-09-27-24.038-AvastVBoxSVC.exe-3036.log
2015-03-14 20:46 - 2015-03-14 20:46 - 00000197 _____ () C:\WINDOWS\system32\2015-03-14-18-46-39.022-AvastVBoxSVC.exe-3744.log
2015-03-13 17:14 - 2015-03-13 17:14 - 00692192 _____ (Opera Software) C:\Users\Martina\Downloads\Opera_NI_stable.exe
2015-03-13 16:43 - 2015-03-13 16:43 - 00000197 _____ () C:\WINDOWS\system32\2015-03-13-14-43-12.028-AvastVBoxSVC.exe-4416.log
2015-03-12 13:41 - 2015-03-04 23:24 - 00792032 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2015-03-12 13:41 - 2015-03-04 23:24 - 00178144 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2015-03-11 13:28 - 2015-03-06 04:33 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2015-03-11 13:28 - 2015-02-21 02:41 - 12827648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-03-11 13:28 - 2015-02-21 02:27 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2015-03-11 13:28 - 2015-02-21 02:25 - 19720192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-03-11 13:28 - 2015-02-21 01:32 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2015-03-11 13:28 - 2015-02-20 04:09 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-03-11 13:28 - 2015-02-20 04:06 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2015-03-11 13:28 - 2015-02-20 04:03 - 02278400 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-03-11 13:28 - 2015-02-20 03:30 - 04300288 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-03-11 13:28 - 2015-02-20 03:30 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-03-11 13:28 - 2015-02-20 03:26 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-03-11 13:28 - 2015-02-20 03:24 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-03-11 13:28 - 2015-02-20 03:24 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-03-11 13:28 - 2015-02-20 03:01 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-03-11 13:28 - 2015-02-20 02:57 - 01311232 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-03-11 13:28 - 2015-02-12 19:34 - 19731824 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-03-11 13:28 - 2015-02-08 01:49 - 00791040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2015-03-11 13:28 - 2015-02-07 01:09 - 00396419 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2015-03-11 13:28 - 2015-02-06 03:08 - 01943040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-03-11 13:28 - 2015-01-31 01:29 - 02484224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-03-11 13:28 - 2015-01-31 01:20 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2015-03-11 13:28 - 2015-01-30 04:25 - 00131584 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys
2015-03-11 13:28 - 2015-01-30 04:25 - 00083456 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys
2015-03-11 13:28 - 2015-01-29 20:34 - 01488040 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2015-03-11 13:28 - 2015-01-29 03:29 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\photowiz.dll
2015-03-11 13:28 - 2015-01-29 03:00 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-11 13:28 - 2015-01-29 02:50 - 00811008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2015-03-11 13:28 - 2015-01-23 07:02 - 00560392 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2015-03-11 13:28 - 2015-01-21 07:15 - 01123848 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2015-03-11 13:28 - 2014-12-11 07:40 - 00041296 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentServer.exe
2015-03-11 13:27 - 2015-02-26 01:27 - 03543552 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-03-11 13:27 - 2015-02-21 02:27 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2015-03-11 13:27 - 2015-02-20 04:20 - 00301056 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-03-11 13:27 - 2015-02-20 04:15 - 00035840 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-03-11 13:27 - 2015-02-20 03:56 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-03-11 13:27 - 2015-02-20 03:24 - 00684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-03-11 13:27 - 2015-02-20 02:55 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-03-11 13:27 - 2015-02-05 22:17 - 00869696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2015-03-11 13:27 - 2015-02-04 01:51 - 00227136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2015-03-11 13:27 - 2015-02-04 01:51 - 00084800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2015-03-11 13:27 - 2015-02-04 01:51 - 00038392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2015-03-11 13:27 - 2015-02-03 02:03 - 03551744 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2015-03-11 13:27 - 2015-02-03 01:53 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll
2015-03-11 13:27 - 2015-01-30 03:44 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42u.dll
2015-03-11 13:27 - 2015-01-30 03:42 - 01204224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42.dll
2015-03-11 13:27 - 2015-01-30 03:40 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2015-03-11 13:27 - 2015-01-30 03:24 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2015-03-11 13:27 - 2015-01-30 03:16 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2015-03-11 13:27 - 2015-01-30 03:06 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2015-03-11 13:27 - 2015-01-29 02:56 - 00602624 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2015-03-11 13:27 - 2015-01-29 02:55 - 00873984 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2015-03-11 13:27 - 2015-01-29 02:49 - 02459136 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-03-11 13:27 - 2015-01-28 17:35 - 05769024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-03-11 13:27 - 2015-01-28 17:35 - 01468408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-03-11 13:27 - 2015-01-28 03:47 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageContextHandler.dll
2015-03-11 13:27 - 2015-01-28 03:11 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2015-03-11 13:27 - 2015-01-28 01:41 - 02207488 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-03-11 13:27 - 2015-01-24 04:20 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2015-03-11 13:27 - 2015-01-24 03:51 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe
2015-03-11 13:27 - 2015-01-24 02:48 - 02975744 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2015-03-11 10:18 - 2015-03-11 10:18 - 00000247 _____ () C:\WINDOWS\system32\2015-03-11-08-18-03.002-aswFe.exe-4372.log
2015-03-09 17:54 - 2015-03-09 18:01 - 00000197 _____ () C:\WINDOWS\system32\2015-03-09-15-54-18.099-AvastVBoxSVC.exe-2732.log
2015-03-08 10:21 - 2015-03-08 10:22 - 00000197 _____ () C:\WINDOWS\system32\2015-03-08-08-21-48.055-AvastVBoxSVC.exe-2896.log
2015-03-07 19:50 - 2015-03-07 19:50 - 00001259 _____ () C:\Users\Martina\Desktop\7zFM – zástupce.lnk
2015-03-07 18:58 - 2015-03-07 18:58 - 00000473 _____ () C:\Users\Martina\Downloads\prohlídky.csv
2015-03-05 16:38 - 2015-03-05 16:38 - 00000247 _____ () C:\WINDOWS\system32\2015-03-05-14-38-37.071-aswFe.exe-4276.log
2015-03-05 16:31 - 2015-03-05 16:38 - 00000247 _____ () C:\WINDOWS\system32\2015-03-05-14-31-03.074-aswFe.exe-3908.log
2015-03-04 14:25 - 2015-03-04 14:26 - 00000197 _____ () C:\WINDOWS\system32\2015-03-04-12-25-03.085-AvastVBoxSVC.exe-2888.log
2015-03-03 21:03 - 2015-03-03 21:41 - 00023800 _____ () C:\Users\Martina\Downloads\Prihlaska_SS_2015_dalkove.xlsx
2015-03-03 09:31 - 2015-03-03 09:31 - 00000197 _____ () C:\WINDOWS\system32\2015-03-03-07-31-39.030-AvastVBoxSVC.exe-2892.log
2015-03-02 22:38 - 2015-03-02 22:45 - 118460416 _____ () C:\Users\Martina\Downloads\04_ostatni_vceli_produkty.avi
2015-03-02 20:02 - 2015-03-02 20:02 - 10214319 _____ () C:\Users\Martina\Downloads\western_cuisine_vector_288204.zip
2015-03-02 20:01 - 2015-03-02 20:01 - 09002831 _____ () C:\Users\Martina\Downloads\cute_cartoon_bee_vector_156286.zip
2015-02-28 21:19 - 2015-02-28 21:19 - 10730824 _____ () C:\Users\Martina\Downloads\bee_honey_honeycomb_vector_163546.zip
2015-02-28 20:30 - 2015-02-28 20:30 - 04403433 _____ () C:\Users\Martina\Downloads\vector_honey_bees_collected_156365.zip
2015-02-28 20:09 - 2015-02-28 20:09 - 00042724 _____ () C:\Users\Martina\Downloads\echinos_park_script_demo.zip
2015-02-28 20:05 - 2015-02-28 20:05 - 00396312 _____ () C:\Users\Martina\Downloads\echinos_park_script.zip
2015-02-28 15:27 - 2015-02-28 15:27 - 02293298 _____ () C:\Users\Martina\Downloads\free_bee_logo_blackgold_144783.zip
2015-02-28 15:27 - 2015-02-28 15:27 - 00078774 _____ () C:\Users\Martina\Downloads\bee_clip_art_18782.zip
2015-02-28 14:22 - 2015-02-28 14:23 - 00000197 _____ () C:\WINDOWS\system32\2015-02-28-12-22-44.002-AvastVBoxSVC.exe-3244.log

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-29 21:00 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\sru
2015-03-29 20:49 - 2013-12-04 17:42 - 01754508 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2015-03-29 20:49 - 2012-04-11 07:50 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-03-29 20:47 - 2015-01-02 13:37 - 01325706 _____ () C:\WINDOWS\WindowsUpdate.log
2015-03-29 20:46 - 2013-12-04 17:58 - 00000000 ___DO () C:\Users\Martina\SkyDrive
2015-03-29 20:11 - 2015-02-05 22:06 - 00000958 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-29 19:49 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\AppReadiness
2015-03-29 19:40 - 2014-09-09 16:40 - 00000000 ____D () C:\Users\Martina\AppData\Local\NETGEARGenie
2015-03-29 19:40 - 2014-08-18 19:55 - 00002036 _____ () C:\Users\Martina\Desktop\SafeZone prohlížeč.lnk
2015-03-29 19:32 - 2015-02-05 22:06 - 00000954 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-03-29 19:31 - 2014-01-06 20:03 - 00165659 _____ () C:\MyXML.xml
2015-03-29 19:30 - 2013-11-27 07:47 - 00000000 ____D () C:\ProgramData\ProductData
2015-03-28 22:24 - 2015-01-13 13:35 - 00010484 _____ () C:\WINDOWS\setupact.log
2015-03-28 22:24 - 2013-08-22 09:23 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-03-28 22:23 - 2015-01-13 18:34 - 00013338 _____ () C:\WINDOWS\PFRO.log
2015-03-27 10:08 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Microsoft.NET
2015-03-21 20:46 - 2013-12-19 21:32 - 00000000 ____D () C:\Program Files\Opera
2015-03-16 19:12 - 2012-10-14 17:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2015-03-15 21:44 - 2013-08-22 08:13 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2015-03-14 20:51 - 2014-11-30 17:53 - 00012577 _____ () C:\Users\Martina\Desktop\Mabo´s Bees.xlsx
2015-03-13 17:54 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\rescache
2015-03-13 16:41 - 2013-08-22 09:22 - 00756136 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2015-03-12 21:45 - 2013-08-22 10:17 - 00000000 ___RD () C:\WINDOWS\ToastData
2015-03-12 21:45 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-12 21:45 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-12 21:45 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\WinStore
2015-03-12 21:45 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Windows Defender
2015-03-12 13:51 - 2010-06-28 15:46 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-12 13:50 - 2012-07-26 08:43 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-03-12 13:49 - 2013-07-22 23:28 - 00000000 ____D () C:\WINDOWS\system32\MRT
2015-03-12 13:43 - 2010-06-28 16:33 - 119837696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-03-12 13:41 - 2013-08-22 10:17 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-10 09:43 - 2013-06-24 08:55 - 01374720 ___SH () C:\Users\Martina\Downloads\Thumbs.db
2015-03-09 18:03 - 2010-06-28 16:25 - 00000000 ____D () C:\Users\Martina\AppData\Local\Google
2015-03-08 10:37 - 2012-09-02 20:38 - 00000000 ____D () C:\KelWin
2015-03-05 16:18 - 2010-06-28 15:55 - 00222272 _____ () C:\Users\Martina\AppData\Local\GDIPFONTCACHEV1.DAT
2015-03-02 21:26 - 2014-10-07 11:17 - 00000000 ____D () C:\Users\Martina\AppData\Local\Viber
2015-03-02 21:25 - 2014-10-07 11:26 - 00000000 ____D () C:\Users\Martina\AppData\Roaming\ViberPC

==================== Files in the root of some directories =======

2014-02-11 22:13 - 2014-02-11 22:13 - 0000000 _____ () C:\Users\Martina\AppData\Roaming\Dance
2014-02-11 22:17 - 2014-02-11 22:17 - 0000000 _____ () C:\Users\Martina\AppData\Roaming\Dance Kit
2012-01-16 18:00 - 2012-01-16 18:00 - 0000446 _____ () C:\Users\Martina\AppData\Roaming\gurman4-config.ini
2013-01-31 20:01 - 2013-01-31 20:01 - 0038413 _____ () C:\Users\Martina\AppData\Roaming\Microsoft Excel 97-2003.ADR
2013-01-31 20:00 - 2013-07-23 06:45 - 0009307 _____ () C:\Users\Martina\AppData\Roaming\Microsoft Excel 97-2003.EML
2012-02-27 09:26 - 2012-02-27 09:26 - 0000000 _____ () C:\Users\Martina\AppData\Roaming\wklnhst.dat
2015-02-11 12:13 - 2015-02-11 12:13 - 0000000 ____H () C:\Users\Martina\AppData\Local\BITB3CA.tmp
2013-06-04 12:47 - 2013-06-04 12:47 - 0004096 ____H () C:\Users\Martina\AppData\Local\keyfile3.drm
2014-02-11 21:35 - 2014-02-11 21:35 - 0007597 _____ () C:\Users\Martina\AppData\Local\Resmon.ResmonCfg
2011-08-15 11:45 - 2011-08-15 11:45 - 0000000 _____ () C:\Users\Martina\AppData\Local\{00E65F36-C873-47BF-96D5-F90ECB74FE64}
2015-02-11 12:13 - 2015-02-11 12:13 - 0000000 _____ () C:\Users\Martina\AppData\Local\{D5B6EDC6-5224-4A6E-909D-3F79E1EDA3C7}
2014-02-11 22:17 - 2014-02-11 22:17 - 0000000 _____ () C:\ProgramData\ColorTable
2014-02-11 22:17 - 2014-02-11 22:17 - 0000000 _____ () C:\ProgramData\Core Data Application
2014-02-11 22:17 - 2014-02-11 22:17 - 0000000 _____ () C:\ProgramData\Dance
2014-02-11 22:17 - 2014-02-11 22:17 - 0000000 _____ () C:\ProgramData\Definition Bundle
2014-02-13 18:20 - 2014-02-13 18:20 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2010-06-28 15:43 - 2009-08-17 05:16 - 0131368 _____ () C:\ProgramData\FullRemove.exe
2012-12-14 16:50 - 2012-12-14 16:50 - 0000107 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
2014-01-29 19:49 - 2014-02-11 22:13 - 0000000 ____H () C:\ProgramData\PKP_DLes.DAT
2014-01-29 19:48 - 2014-02-11 22:17 - 0000000 ____H () C:\ProgramData\PKP_DLet.DAT
2014-01-29 19:48 - 2014-02-11 22:17 - 0000000 ____H () C:\ProgramData\PKP_DLev.DAT

Files to move or delete:
====================
C:\Users\Martina\xobglu16.dll
C:\Users\Martina\xobglu32.dll


Some content of TEMP:
====================
C:\Users\Martina\AppData\Local\Temp\sip-alg-detector.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

Re: Prosím o kontrolu

Napsal: 30 bře 2015 07:32
od vyosek
Zdravim :)

:arrow: Odinstalujte vse od IOBit - jsou to cinske smejdy a spise jen skodi nez jsou uzitkem. Hledaji nesmyslne a neexistujici problemy, databazi haveti ukradli jine renomovane spolecnosti

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Po spusteni probehne stazeni databaze
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte

Re: Prosím o kontrolu

Napsal: 30 bře 2015 19:42
od mabor
# AdwCleaner v4.200 - Log vytvooen 30/03/2015 v 20:34:46
# Aktualizováno 29/03/2015 by Xplode
# Databáze : 2015-03-29.1 [Server]
# Operaení system : Windows 8.1 Pro (x86)
# Uživatelské jméno : Martina - MARTIN-PC
# Spuštino z : C:\Users\Martina\Desktop\adwcleaner_4.200.exe
# Nastavení : Eištiní

***** [ Služby ] *****


***** [ Soubory / Složky ] *****

Složka Smazáno : C:\ProgramData\Ask
Složka Smazáno : C:\ProgramData\AVG Security Toolbar
Složka Smazáno : C:\ProgramData\Conduit
Složka Smazáno : C:\ProgramData\Partner
Složka Smazáno : C:\Program Files\Conduit
Složka Smazáno : C:\Program Files\SqueakyChocolate
Složka Smazáno : C:\Program Files\DM
Složka Smazáno : C:\Program Files\Common Files\Spigot
Složka Smazáno : C:\Users\Martina\AppData\Local\apn
Složka Smazáno : C:\Users\Martina\AppData\Local\Conduit
Složka Smazáno : C:\Users\Martina\AppData\Local\Mobogenie
Složka Smazáno : C:\Users\Martina\AppData\Local\FileViewPro
Složka Smazáno : C:\Users\Martina\AppData\LocalLow\AVG Security Toolbar
Složka Smazáno : C:\Users\Martina\AppData\LocalLow\Conduit
Složka Smazáno : C:\Users\Martina\AppData\Roaming\OpenCandy
Složka Smazáno : C:\Users\Martina\AppData\Roaming\pdfforge
Složka Smazáno : C:\Users\Martina\Documents\Mobogenie
Složka Smazáno : C:\Users\Martina\Documents\PC Speed Maximizer
Soubor Smazáno : C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\searchplugins\yahoo_ff.xml
Soubor Smazáno : C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default\searchplugins\yahoo_ff.xml
Soubor Smazáno : C:\Users\Martina\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_wlogin.icq.com_0.localstorage
Soubor Smazáno : C:\Users\Martina\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_wlogin.icq.com_0.localstorage-journal

***** [ Naplánované úlohy ] *****

Úloha Smazáno : BackgroundContainer Startup Task

***** [ Zástupci ] *****


***** [ Registry ] *****

Klíe Smazáno : HKLM\SOFTWARE\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
Hodnota Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [BackgroundContainer]
Klíe Smazáno : HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SearchSettings
Klíe Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Activities\Search\ask.com
Klíe Smazáno : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Klíe Smazáno : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Klíe Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Klíe Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Klíe Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Hodnota Smazáno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]
Hodnota Smazáno : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{03EB0E9C-7A91-4381-A220-9B52B641CDB1}]
Klíe Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{32D8395A-1F28-4398-9879-2E623D1FD4FE}
Klíe Smazáno : HKCU\Software\Conduit
Klíe Smazáno : HKCU\Software\IGearSettings
Klíe Smazáno : HKCU\Software\Popajar
Klíe Smazáno : HKCU\Software\SmileysWeLove
Klíe Smazáno : HKCU\Software\VIS
Klíe Smazáno : HKCU\Software\YahooPartnerToolbar
Klíe Smazáno : HKCU\Software\AppDataLow\Software\BackgroundContainer
Klíe Smazáno : HKCU\Software\AppDataLow\Software\Conduit
Klíe Smazáno : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Klíe Smazáno : HKCU\Software\AppDataLow\Software\Search Settings
Klíe Smazáno : HKLM\SOFTWARE\Conduit

***** [ Prohlížeee ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Mozilla Firefox v


-\\ Google Chrome v


-\\ Chromium v


-\\ Opera v28.0.1750.48


*************************

AdwCleaner[R0].txt - [4170 bytu] - [30/03/2015 20:34:19]
AdwCleaner[S0].txt - [4049 bytu] - [30/03/2015 20:34:46]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [4107 bytu] ##########

Re: Prosím o kontrolu

Napsal: 30 bře 2015 20:40
od vyosek
:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    resethosts;
    emptyclsid;
    IEdefaults;
    FFdefaults;
    CHRdefaults;
    emptyIEcache;
    emptyFFcache;
    emptyCHRcache;
    emptyalltemp;
    emptyflash;
    emptyjava;
    emptyrecycle.bin;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem

Re: Prosím o kontrolu

Napsal: 31 bře 2015 06:32
od mabor
Zoek.exe v5.0.0.0 Updated 29-March-2015
Tool run by Martina on Łt 31. 03. 2015 at 6:51:26.51.
Microsoft Windows 8.1 Pro 6.3.9600 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Martina\Desktop\scan\zoek\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

31. 3. 2015 6:53:59 Zoek.exe System Restore Point Created Successfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost

==== Empty Folders Check ======================

C:\Program Files\DsNET Corp deleted successfully
C:\Program Files\Elecard deleted successfully
C:\Program Files\Fotostar deleted successfully
C:\Program Files\Intelore deleted successfully
C:\Program Files\mahjong deleted successfully
C:\Program Files\Multilizer deleted successfully
C:\Program Files\Nov  slo§ka deleted successfully
C:\Program Files\RocketDock deleted successfully
C:\Program Files\Thegrideon Software deleted successfully
C:\Program Files\Xi deleted successfully
C:\Program Files\Common Files\PDF Architect deleted successfully
C:\Program Files\Common Files\SWF Studio deleted successfully
C:\PROGRA~2\Astroburn Lite deleted successfully
C:\PROGRA~2\CorelDRAW Graphics Suite X5 deleted successfully
C:\PROGRA~2\Downloaded Installations deleted successfully
C:\PROGRA~2\firebird deleted successfully
C:\PROGRA~2\FLEXnet deleted successfully
C:\PROGRA~2\Font Downloader deleted successfully
C:\PROGRA~2\HPSSUPPLY deleted successfully
C:\PROGRA~2\Oracle deleted successfully
C:\PROGRA~2\Virtual Mechanics deleted successfully
C:\PROGRA~2\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D} deleted successfully
C:\PROGRA~2\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} deleted successfully
C:\PROGRA~2\{CED89F1A-945F-46EC-B23C-5EAF6D2DB12A} deleted successfully
C:\Users\Martina\AppData\Roaming\PhotoScape deleted successfully
C:\Users\Martina\AppData\Roaming\Windows Live Writer deleted successfully
C:\Users\Martina\AppData\Local\Aladdin deleted successfully
C:\Users\Martina\AppData\Local\GHISLER deleted successfully
C:\Users\Martina\AppData\Local\GlobalEnglish deleted successfully
C:\Users\Martina\AppData\Local\Nikon deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10921475-03CE-4E04-90CE-E2E7EF20C814} deleted successfully
HKEY_USERS\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{72853161-30C5-4D22-B7F9-0BBC1D38A37E} deleted successfully
HKEY_USERS\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{72853161-30C5-4D22-B7F9-0BBC1D38A37E} deleted successfully
HKEY_USERS\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{23F5D70E-14F5-4EF1-9693-A6DFE5602C60} deleted successfully
HKEY_USERS\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{67F230B6-9C84-41F0-9000-DE5C91FCFF0E} deleted successfully
HKEY_USERS\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D8F4CFB5-6ACD-4D03-9CBF-67FE453FE718} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_USERS\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{B5A7F190-DDA6-4420-B3BA-52453494E6CD} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{B5A7F190-DDA6-4420-B3BA-52453494E6CD} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{72853161-30C5-4D22-B7F9-0BBC1D38A37E} deleted successfully

==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\Martina\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\0uqsm48b.default\prefs.js:

Added to C:\Users\Martina\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\0uqsm48b.default\prefs.js:

Deleted from C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\prefs.js:
user_pref("browser.search.defaultenginename", "Yahoo!");
user_pref("browser.search.selectedEngine", "Yahoo!");
user_pref("keyword.URL", "http://search.yahoo.com/search?fr=green ... =902615&p=");

Added to C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default\prefs.js:
user_pref("browser.startup.homepage", "https://www.seznam.cz/?clid=22668");
user_pref("browser.search.defaulturl", "http://search.seznam.cz/?sourceid=quick ... earchTerms}&");
user_pref("browser.newtab.url", "about:newtab");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.defaultengine", "Seznam");
user_pref("browser.search.order.1", "Seznam");

Added to C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Users\Martina\AppData\Roaming\Nvu\Profiles\gdn1gvn9.default\prefs.js:

Added to C:\Users\Martina\AppData\Roaming\Nvu\Profiles\gdn1gvn9.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Users\Martina\AppData\Roaming\Thunderbird\Profiles\gxniqq6u.default\prefs.js:

Added to C:\Users\Martina\AppData\Roaming\Thunderbird\Profiles\gxniqq6u.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\Martina\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\0uqsm48b.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_201531.03._0717_.backup

ProfilePath: C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_201531.03._0717_.backup

ProfilePath: C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default

user.js not found
---- Lines browser.startup.page removed from prefs.js ----
user_pref("browser.startup.page", 1);
---- FireFox user.js and prefs.js backups ----

prefs_201531.03._0717_.backup

ProfilePath: C:\Users\Martina\AppData\Roaming\Nvu\Profiles\gdn1gvn9.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_201531.03._0717_.backup

ProfilePath: C:\Users\Martina\AppData\Roaming\Thunderbird\Profiles\gxniqq6u.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_201531.03._0717_.backup

==== Deleting Files \ Folders ======================

C:\Program Files\DsNET Corp not found
C:\Program Files\Elecard not found
C:\Program Files\Fotostar not found
C:\Program Files\Intelore not found
C:\Program Files\mahjong not found
C:\Program Files\Multilizer not found
C:\Program Files\Nov  slo§ka not found
C:\Program Files\RocketDock not found
C:\Program Files\Thegrideon Software not found
C:\Program Files\Xi not found
C:\PROGRA~2\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D} not found
C:\PROGRA~2\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} not found
C:\PROGRA~2\{CED89F1A-945F-46EC-B23C-5EAF6D2DB12A} not found
C:\Program Files\PSPad editor deleted
C:\Users\Martina\.android deleted
C:\Users\Martina\AppData\Roaming\gurman4-config.ini deleted
C:\Users\Martina\AppData\Roaming\SmileysWeLove deleted
C:\Users\Martina\AppData\Roaming\ProductData deleted
C:\Users\Martina\xobglu16.dll deleted
C:\Users\Martina\xobglu32.dll deleted
C:\Users\Martina\PP_MOTION.TMP deleted
C:\Users\Martina\PP_ROTATE_SLIDE.TMP deleted
C:\PROGRA~2\ProductData deleted
C:\Users\Martina\AppData\Local\BITB3CA.tmp deleted
C:\Users\Martina\AppData\Local\cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\Users\Martina\AppData\LocalLow\{46577E3C-95B4-4f4f-B4A7-0C29D12FB15D} deleted
C:\Users\Martina\AppData\LocalLow\ADSRemoval deleted
C:\WINDOWS\system32\config\systemprofile\Searches deleted
C:\WINDOWS\System32\SET2017.tmp deleted
C:\WINDOWS\System32\SET2C52.tmp deleted
C:\WINDOWS\System32\SET485B.tmp deleted
"C:\Users\Martina\AppData\Local\{00E65F36-C873-47BF-96D5-F90ECB74FE64}" deleted
"C:\Users\Martina\AppData\Local\{D5B6EDC6-5224-4A6E-909D-3F79E1EDA3C7}" deleted
"C:\Users\Martina\AppData\Roaming\Dance" deleted
"C:\Users\Martina\AppData\Roaming\Dance Kit" deleted
"C:\ProgramData\ColorTable" deleted
"C:\ProgramData\Core Data Application" deleted
"C:\ProgramData\Dance" deleted
"C:\ProgramData\Definition Bundle" deleted
"C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\iobitapps@mybrowserbar.com" deleted
"C:\Users\Martina\AppData\Roaming\ViberPC\config.db" deleted
"C:\Users\Martina\AppData\Roaming\ViberPC\info.db" deleted
"C:\Users\Martina\AppData\Roaming\ViberPC" deleted

==== Firefox Start and Search pages ======================

ProfilePath: C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\Martina\AppData\Roaming\Nvu\Profiles\gdn1gvn9.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\Martina\AppData\Roaming\Thunderbird\Profiles\gxniqq6u.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [29. 03. 2015 21:08]

==== Firefox Extensions ======================

ProfilePath: C:\Users\Martina\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\0uqsm48b.default
- CSS Stylesheet Editor - %ProfilePath%\extensions\csseditor@bluegriffon.com.xpi
- EyeDropper - %ProfilePath%\extensions\eyedropper@bluegriffon.com.xpi
- FontSquirrel Manager - %ProfilePath%\extensions\fs@bluegriffon.com.xpi
- Fullscreen - %ProfilePath%\extensions\fullscreen@bluegriffon.com.xpi
- Google Font Directory Manager - %ProfilePath%\extensions\gfd@bluegriffon.com.xpi
- Czech CZ Language Pack - %ProfilePath%\extensions\langpack-cs@bluegriffon.org.xpi
- Deutsch DE Language Pack - %ProfilePath%\extensions\langpack-de-DE@bluegriffon.org.xpi
- English US Language Pack - %ProfilePath%\extensions\langpack-en-US@bluegriffon.org.xpi
- Espaol Espaa Language Pack - %ProfilePath%\extensions\langpack-es-ES@bluegriffon.org.xpi
- Suomenkielinen FI Language Pack - %ProfilePath%\extensions\langpack-fi@bluegriffon.org.xpi
- Franais Language Pack - %ProfilePath%\extensions\langpack-fr-FR@bluegriffon.org.xpi
- Hebrew IL Language Pack - %ProfilePath%\extensions\langpack-he-IL@bluegriffon.org.xpi
- Italiano IT Language Pack - %ProfilePath%\extensions\langpack-it-IT@bluegriffon.org.xpi
- Japanese Language Pack - %ProfilePath%\extensions\langpack-ja-JP@bluegriffon.org.xpi
- Korean KR Language Pack - %ProfilePath%\extensions\langpack-ko@bluegriffon.org.xpi
- Nederlands NL Language Pack - %ProfilePath%\extensions\langpack-nl@bluegriffon.org.xpi
- Polski Language Pack - %ProfilePath%\extensions\langpack-pl@bluegriffon.org.xpi
- Slovenski jezik Language Pack - %ProfilePath%\extensions\langpack-sl@bluegriffon.org.xpi
- Svenska SE Language Pack - %ProfilePath%\extensions\langpack-sv-SE@bluegriffon.org.xpi
- Chinese Simplified zh-CN Language Pack - %ProfilePath%\extensions\langpack-zh-CN@bluegriffon.org.xpi
- Traditional Chinese zh-TW Language Pack - %ProfilePath%\extensions\langpack-zh-TW@bluegriffon.org.xpi
- MathML - %ProfilePath%\extensions\mathml@bluegriffon.com.xpi
- Snippets - %ProfilePath%\extensions\snippets@bluegriffon.com.xpi
- SVG-edit - %ProfilePath%\extensions\svg-edit@googlegroups.com.xpi
- Table Layouts - %ProfilePath%\extensions\tablelayout@bluegriffon.com.xpi
- Thumbnailer - %ProfilePath%\extensions\thumbnailer@bluegriffon.com.xpi

ProfilePath: C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default
- SmileysWeLove: Smileys for use with Facebook GMail and more - %ProfilePath%\extensions\jid1-vW9nopuIAJiRHw@jetpack.xpi

ProfilePath: C:\Users\Martina\AppData\Roaming\Nvu\Profiles\gdn1gvn9.default
- Undetermined - %ProfilePath%\extensions\installed-extensions.txt
- Nvu default - %ProfilePath%\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

ProfilePath: C:\Users\Martina\AppData\Roaming\Thunderbird\Profiles\gxniqq6u.default
- Instrument Test - %ProfilePath%\extensions\tbtestpilot@labs.mozilla.com.xpi

==== Firefox Plugins ======================

Profilepath: C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default
14D06C3796CE3F6BA8F43CDF3AD65D76 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U67
D3A7DD5F5DD78278D7DCD16F4BE1F413 - C:\Program Files\IObit\Advanced SystemCare 6\BrowerProtect\np_Asc_plugin.dll - Advanced SystemCare 6 Opera Plugin
3B00376AE69AC2E815425E54DEBFF750 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Photo Gallery
398334B85CBD2CEED553CC5C160B0D8D - C:\Program Files\Software602\602XML\Filler\npfiller.dll - Software602 Form Filler
AFAAF20CE491E1844AF7408EE42432AF - C:\WINDOWS\system32\npmproxy.dll - Microsoft® Windows® Operating System


==== Deleted Firefox Extensions ======================

C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\jid1-vW9nopuIAJiRHw@jetpack.xpi deleted

==== Fake Chromium Profiles Check ======================

Fake profile C:\Users\Martina\AppData\Local\Google\Chrome deleted

==== Chromium Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[29. 03. 2015 21:08]

HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
lmjegmlicamnimmfhcmpkclmigmmcbeh - No path found[]

==== Chromium Startpages ======================

Re: Prosím o kontrolu

Napsal: 31 bře 2015 16:58
od vyosek
Dejte novy log z FRST

Re: Prosím o kontrolu

Napsal: 31 bře 2015 18:17
od mabor
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 11-03-2015
Ran by Martina at 2015-03-31 19:15:17
Running from C:\Users\Martina\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

1-Wire Drivers Version 4.03 (HKLM\...\{B605C682-FD9B-491B-9245-731C036186C5}) (Version: 4.0.3 - Maxim Integrated Products)
5star Free Lines (HKLM\...\5star Free Lines) (Version: - )
602PdfDriver (Version: 1.00 - Software602 a.s.) Hidden
7-Zip 9.22beta (HKLM\...\7-Zip) (Version: - )
Adobe Flash Player 17 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 17.0.0.134 - Adobe Systems Incorporated)
Adobe Flash Player 17 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 17.0.0.149 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.10) - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Ashampoo Burning Studio FREE v.1.14.5 (HKLM\...\{91B33C97-91F8-FFB3-581B-BC952C901685}_is1) (Version: 1.14.5 - Ashampoo GmbH & Co. KG)
Atheros Client Installation Program (HKLM\...\{D1434266-0486-4469-B338-A60082CC04E1}) (Version: 1.0.1.0805 - Atheros)
Audacity 2.0.6 (HKLM\...\Audacity_is1) (Version: 2.0.6 - Audacity Team)
Avast Internet Security (HKLM\...\Avast) (Version: 10.2.2215 - AVAST Software)
BabyWare (HKLM\...\BabyWare_V2.0.31_BabyWare) (Version: V2.0.31 - Paradox Security Systems)
BatteryLifeExtender (HKLM\...\{FFD0E594-823B-4E2B-B680-720B3C852588}) (Version: 1.0.11 - Samsung)
CCleaner (HKLM\...\CCleaner) (Version: 5.04 - Piriform)
CMS (HKLM\...\CMS_is1) (Version: 2.19.01 - CMS)
Codec Pack - All In 1 6.0.3.0 (HKLM\...\Cool's_Codec_pack_4.12) (Version: - )
CorelDRAW Graphics Suite X3 (HKLM\...\{7C5123A9-30A8-4C44-89CA-A8C87A1FCC91}) (Version: 13.0 - Corel Corporation)
CPUID HWMonitor 1.24 (HKLM\...\CPUID HWMonitor_is1) (Version: - )
CyberLink DVD Suite (HKLM\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 6.0.2806 - CyberLink Corp.)
CyberLink LabelPrint (HKLM\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1916 - CyberLink Corp.)
CyberLink Power2Go (HKLM\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.0.3108a - CyberLink Corp.)
CyberLink PowerDirector (HKLM\...\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 7.0.3213 - CyberLink Corp.)
CyberLink PowerDVD 8 (HKLM\...\InstallShield_{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}) (Version: 8.0.2815b - CyberLink Corp.)
CyberLink PowerProducer (HKLM\...\InstallShield_{B7A0CE06-068E-11D6-97FD-0050BACBF861}) (Version: 5.0.1.1812 - CyberLink Corp.)
CyberLink YouCam (HKLM\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 2.0.3625 - CyberLink Corp.)
CZ (Version: 13.0 - Corel Corporation) Hidden
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 4.47.1.0333 - Disc Soft Ltd)
Easy Network Manager (HKLM\...\{34B76DCB-BF7C-440F-B058-C84172C1E338}) (Version: 4.2.8 - Samsung)
Easy SpeedUp Manager (HKLM\...\{EF367AA4-070B-493C-9575-85BE59D789C9}) (Version: 3.0.0.5 - Samsung Electronics Co.,Ltd.)
EasyBatteryManager (HKLM\...\{178EE5F4-0F86-4BF0-A0D1-9790AFF409D1}) (Version: 4.0.0.3 - Samsung)
Ekonomický systém KelWIN 2015.1 (HKLM\...\Ekonomický systém KelWIN_is1) (Version: - KELOC CS, s.r.o.)
Euro2A 5.00 (HKLM\...\Euro2A) (Version: - )
Firebird 2.5.0.26074 (Win32) (HKLM\...\FBDBServer_2_5_is1) (Version: 2.5.0.26074 - Firebird Project)
FontNav (Version: 5.0 - Corel Corporation) Hidden
FormApps Plug-in (HKLM\...\{9a1d8d96-8b6f-4b5e-9281-abf022feb360}) (Version: 1.8.1120.46 - Software602 a.s.)
Fotogalerie (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Google Drive (HKLM\...\{6C36881B-0E51-4231-9D02-BF2149664D34}) (Version: 1.20.8672.3137 - Google, Inc.)
Google Chrome (HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Google Chrome) (Version: 24.0.1312.56 - Google Inc.)
Google Toolbar for Internet Explorer (Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.26.9 - Google Inc.) Hidden
HP Color LaserJet CP1210 Series (HKLM\...\HP Color LaserJet CP1210 Series) (Version: - )
HP Color LaserJet CP1210 Series Toolbox (HKLM\...\{1E187923-04E5-4E1F-9BF2-40E32D93A1C4}) (Version: 1.0.21 - Hewlett-Packard)
hppusgCP1215 (Version: 000.000.00006 - Hewlett-Packard) Hidden
HPSSupply (HKLM\...\{7902E313-FF0F-4493-ACB1-A8147B78DCD0}) (Version: 2.1.1.0000 - Název společnosti:)
ChargeableUSB (HKLM\...\{92D50865-FC60-4EA8-BA7A-5581B0D13EFB}) (Version: 1.0.0.0 - SAMSUNG)
In-Field Paradox Upgrade Software (HKLM\...\In-Field Paradox Upgrade Software) (Version: - )
Intel(R) Rapid Storage Technology (HKLM\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.6.3.1001 - Intel Corporation)
Intel(R) Turbo Boost Technology Driver (HKLM\...\{D6C630BF-8DBB-4042-8562-DC9A52CB6E7E}) (Version: 01.00.01.1002 - Intel Corporation)
Java 7 Update 76 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F03217076FF}) (Version: 7.0.760 - Oracle)
Junk Mail filter update (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
MarketResearch (Version: 90.0.142.000 - Hewlett-Packard) Hidden
Marvell Miniport Driver (HKLM\...\Marvell Miniport Driver) (Version: 11.29.4.3 - Marvell)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Outlook Connector (HKLM\...\{95140000-007A-0405-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SkyDrive (HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\SkyDriveSetup.exe) (Version: 16.4.6013.0910 - Microsoft Corporation)
Microsoft Speech Recognition Engine 4.0 (English) (HKLM\...\MSCSR) (Version: - )
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2.0 - ENU (HKLM\...\{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2.0 Runtime (HKLM\...\{299C0434-4F4E-341F-A916-4E07AEB35E79}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Works (HKLM\...\{C73B5B3B-F974-48CA-8B91-3E8A432AEA5B}) (Version: 08.05.0822 - Microsoft Corporation)
Moje slovíčka 1.3 (HKLM\...\Moje slovíčka_is1) (Version: - Lukáš Matěna)
Movie Maker (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
MRP Základ vizuálního systému (HKLM\...\MRP Zaklad) (Version: - )
MrvlUsgTracking (HKLM\...\{A82D052A-0806-42DF-80CD-1730A1AC0ED3}) (Version: 1.0.7 - Marvell)
MSI to redistribute MS VS2005 CRT libraries (HKLM\...\{A8D93648-9F7F-407D-915C-62044644C3DA}) (Version: 8.0.50727.42 - The Firebird Project)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2721691) (HKLM\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB973685) (HKLM\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation)
MySQL Connector/ODBC (HKLM\...\{DBB6755D-3ACC-416D-B810-188C6951A4B5}) (Version: 3.51.07 - MySQL AB)
NETGEAR Genie (HKLM\...\NETGEAR Genie) (Version: 2.3.1.57 - NETGEAR Inc.)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.4 - NVIDIA Corporation)
Opera Stable 18.0.1284.68 (HKLM\...\Opera 18.0.1284.68) (Version: 18.0.1284.68 - Opera Software ASA)
Opera Stable 28.0.1750.48 (HKLM\...\Opera 28.0.1750.48) (Version: 28.0.1750.48 - Opera Software ASA)
ORPALIS PDF Reducer Free Edition (HKLM\...\{0DDB2FC6-EE08-4E53-AA8C-A8D87FA61F0A}) (Version: 1.1.12 - ORPALIS)
Ovládací panel NVIDIA 337.88 (Version: 337.88 - NVIDIA Corporation) Hidden
PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.2 - pdfforge)
PL-2303 USB-to-Serial (HKLM\...\{ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}) (Version: 1.1.0 - Prolific Technology INC)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7246 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Software (HKLM\...\{F2BC3383-F000-410C-A038-3846ADBE8D90}) (Version: 1.01.0088 - REALTEK Semiconductor Corp.)
REVIZEprofi (HKLM\...\REVIZEprofi - update_is1) (Version: - ILLKO, s.r.o. Blansko)
REVIZEprofi 1.6.5.6 (HKLM\...\Illko REVIZEprofi_is1) (Version: - )
Samsung Recovery Solution 4 (HKLM\...\{145DE957-0679-4A2A-BB5C-1D3E9808FAB2}) (Version: 4.0.0.6 - Samsung)
Silicon Laboratories CP210x USB to UART Bridge (Driver Removal) (HKLM\...\SLABCOMM&10C4&EA60) (Version: - )
Skype™ 7.2 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.2.103 - Skype Technologies S.A.)
Software602 Form Filler (HKLM\...\{1320CACA-1955-4E9E-84A1-B75F064221BB}) (Version: 4.52 - Software602 a.s.)
Sony PC Companion 2.10.136 (HKLM\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.136 - Sony)
Sony Player Plug-in for Windows Media Player (HKLM\...\Sony Player Plug-in for Windows Media Player) (Version: - )
STORMWARE PDF Printer 5.0.0.614 (HKLM\...\STORMWARE PDF Printer_is1) (Version: - STORMWARE)
STORMWARE POHODA CZ (HKLM\...\{8592E355-A295-47E3-B44C-197A1EB99DDB}) (Version: 9600.142 - STORMWARE)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 14.0.10.0 - Synaptics Incorporated)
The KMPlayer (remove only) (HKLM\...\The KMPlayer) (Version: - )
Total Commander (Remove or Repair) (HKLM\...\Totalcmd) (Version: 8.01 - Ghisler Software GmbH)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update Manager (Version: 4.60 - Corel Corporation) Hidden
User Guide (HKLM\...\{BAE68339-B0F6-4D33-9554-5A3DB2DFF5DA}) (Version: 1.0 - )
VBA (Version: 6.2 - Corel Corporation) Hidden
Viber (HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Viber) (Version: 3.0.0.134678 - Viber Media Inc)
Video Viewer (HKLM\...\Video Viewer) (Version: 0.0.8.6 - )
Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) (HKLM\...\A6A8668C0A13640CA28FE2A7D9654BE4AE478B13) (Version: 07/30/2009 6.2.0.9405 - Broadcom)
Windows Driver Package - Broadcom Bluetooth (09/11/2009 6.2.0.9407) (HKLM\...\755087041320E005CB1E8A67C5C55A260EB81B90) (Version: 09/11/2009 6.2.0.9407 - Broadcom)
Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) (HKLM\...\BF20603967CFDCB2BBF91950E8A56DFBC5C833FE) (Version: 07/28/2009 6.2.0.9800 - Broadcom)
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
Windows Live Sync (HKLM\...\{068B46A0-8858-4CEB-80BC-A4AE787A05FC}) (Version: 14.0.8089.726 - Microsoft Corporation)
Windows Media Player Firefox Plugin (HKLM\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
WinLoad 5.30 (HKLM\...\WinLoad 5.30_is1) (Version: - Paradox Security Systems)
WinLoad 5.70 (HKLM\...\WinLoad 5.70_is1) (Version: - Paradox Security Systems)
WinLoad 5.71 (HKLM\...\WinLoad 5.71_is1) (Version: - Paradox Security Systems)
WinPcap 4.1.2 (HKLM\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies)
World of Tanks (HKLM\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1) (Version: - Wargaming.net)
WSDReader verze 3.1 (HKLM\...\{7487EA94-BA18-4406-9CD9-0A4F80AB7F2D}_is1) (Version: 3.1 - BC. Walter Masař)
xLogicsoft (HKLM\...\xLogicsoft_is1) (Version: 2.1.0.3 - EASY Electronic Co.,Ltd)
Zebra Font Downloader (HKLM\...\Zebra Font Downloader_is1) (Version: - Zebra Technologies Corporation)
Zebra Status Monitor 4.6.39 (HKLM\...\Zebra Status Monitor_is1) (Version: - Zebra\Status Monitor)
ZebraDesigner 2 (HKLM\...\ZebraDesigner 2) (Version: - Zebra Technologies Corporation)
ZebraDesigner 2 (Version: 2.2.0 - Zebra Technologies Corporation) Hidden

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points =========================

12-03-2015 13:35:57 Windows Update
19-03-2015 20:29:16 Naplánovaný kontrolní bod
27-03-2015 11:16:45 Naplánovaný kontrolní bod
29-03-2015 21:06:45 avast! antivirus system restore point
30-03-2015 19:30:24 Odstraněno DesignPro 5
31-03-2015 06:53:12 zoek.exe restore point

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-03-31 06:54 - 2015-03-31 06:54 - 00000753 ____A C:\WINDOWS\system32\Drivers\etc\hosts

127.0.0.1 localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {02F5A40A-59A1-4D8A-848D-BFF7832FB526} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {090969C9-15BA-44EE-AE13-CB5BF1B7A3AB} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {094DA45B-D97E-4A71-8A4C-C885D1C94FAE} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {0BBDD355-F308-4930-94F6-30F76D0E68A0} - System32\Tasks\{0C094971-9AB7-45CA-A618-733DDD1339C5} => pcalua.exe -a C:\Users\Martina\AppData\Local\Temp\Spchapi.exe -d C:\Users\Martina\Desktop
Task: {0E1527CB-F070-4A7C-A87B-8DFBD3CC812D} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {0E7CB7E8-86C3-4855-B1F1-6CC6C6B6D77D} - System32\Tasks\ASC4_PerformanceMonitor => C:\Program Files\IObit\Advanced SystemCare 4\PMonitor.exe
Task: {1A21A60E-DEE3-4DAA-9D72-CEC3B773F0A6} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {1ACB2E21-EC51-4FD1-96FB-BCA199EF1560} - System32\Tasks\{85DFA091-1743-45FE-A086-B84D1F4C9A6E} => pcalua.exe -a "C:\vag IHR3040n\IHR3040n.exe" -d "C:\vag IHR3040n"
Task: {1D7750A5-CF8B-4DA6-BC31-00E8ED8795A9} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-03-12] (Microsoft Corporation)
Task: {2C0A56B7-9E68-44D1-82EB-9450DCD5ED0A} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {37AD6987-740E-4831-9EC6-81E772BB8C2F} - System32\Tasks\advSRS4 => C:\Program Files\Samsung\Samsung Recovery Solution 4\WCScheduler.exe [2010-01-19] (SEC)
Task: {38812B92-7A05-4850-9697-6107276C36F3} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {3B850053-2B22-4A74-9FD4-96207C9FD338} - System32\Tasks\{3D23304F-28E6-4E84-9EC9-9648A1944BD6} => pcalua.exe -a D:\Auto\4,09\VAG-COM\VagCom.exe -d D:\Auto\4,09\VAG-COM
Task: {422813A8-3C93-479B-AFFA-2A1EE6A3E0BB} - System32\Tasks\Uninstaller_SkipUac_Administrator => C:\Program Files\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: {5E4D0961-1B9B-40B5-8F2C-B437EBF45C49} - System32\Tasks\{66347E7C-BCC7-47EC-9F09-995AEB884ACF} => pcalua.exe -a C:\Users\Martina\Desktop\Aladdin-Aktualizace-7.2.2060.exe -d C:\Users\Martina\Desktop
Task: {607D2158-C07D-4DF7-8356-50C30BFA681D} - System32\Tasks\{3E355547-A51E-47C8-8CCB-ACDC72B7F282} => pcalua.exe -a "F:\VAG KABEL\Ovladač\VAG\VAG-COM_409.1_US_CZ\VAG-COM_409.1_US_CZ\Release4091us.exe" -d "F:\VAG KABEL\Ovladač\VAG\VAG-COM_409.1_US_CZ\VAG-COM_409.1_US_CZ"
Task: {6D603BBA-786D-48D7-9853-20EAFBFE8264} - System32\Tasks\{1E1228C1-98C8-4D2F-8A81-A9586AAD6901} => pcalua.exe -a C:\KelWin\Libs\kelwin.exe -d C:\KelWin\Libs
Task: {75FF7A42-EAC8-480D-8936-AEC1CA7B2159} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe
Task: {7C3EB68D-584D-4F6F-B608-81062DAE33BB} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {7DFA9388-A6D4-462E-915D-F4507F262C90} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-03-13] (Piriform Ltd)
Task: {8190D032-B847-478D-A6A4-2DD315317C59} - System32\Tasks\SidebarExecute => C:\Program Files\Windows Sidebar\sidebar.exe
Task: {82487FAF-7643-4529-87D7-AB5D908E1611} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-01-02] (Google Inc.)
Task: {88006682-8F56-487E-9F3D-B5119FC9F228} - System32\Tasks\{2AA52F58-36C6-4A2B-97A1-8463793B6D3C} => pcalua.exe -a "F:\VAG KABEL\Ovladač\VAG\VAG-COM_304.0_CZ\VAG-COM_304.0_CZ\vag_IHR3040n.exe"
Task: {89FC2594-D9A3-40D3-9455-6EECACC1A9AB} - System32\Tasks\{8E2D9DC7-9BAB-46F9-96AF-EFBAADFF9D33} => pcalua.exe -a "C:\Program Files\AVAST Software\Avast\aswRunDll.exe" -c "C:\Program Files\AVAST Software\Avast\Setup\setiface.dll" RunSetup
Task: {8D9F1105-E5DC-44CB-A1E2-3C90FB91F67F} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {91C22ED3-7C40-457B-B836-DC278C75AAFF} - System32\Tasks\{A99CE16D-AFCC-4330-AE9C-0000D677B917} => E:\Corel 12 CZ\setup.exe
Task: {9708D53D-CD1A-4FA3-B218-73056F6D042C} - System32\Tasks\EasyBatteryManager => C:\Program Files\Samsung\EasyBatteryManager\EasyBatteryMgr4.exe [2009-10-16] (SAMSUNG Electronics co., LTD.)
Task: {99512D30-1CE8-4CA9-9B2F-4B1E38E7C8A4} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {9E4F98AC-0074-4C8E-B33F-BE8B46159EDA} - System32\Tasks\{E8960D1F-07F5-49E0-9981-240B97CE3806} => C:\Program Files\Skype\Phone\Skype.exe [2015-02-26] (Skype Technologies S.A.)
Task: {A0D03681-6232-49C5-8D8A-E58A7915976D} - System32\Tasks\Adobe Flash Player Updater => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-03-31] (Adobe Systems Incorporated)
Task: {A87BFEEA-5D60-4E10-AEF9-21BAA1E4D9E3} - System32\Tasks\{ACC843B3-EDFB-4AA8-A42F-70A75985E205} => pcalua.exe -a C:\Users\Martina\Desktop\Aladdin-Aktualizace-7.2.2057.exe -d C:\Users\Martina\Desktop
Task: {ABF5266F-071B-4CE8-915B-DEA2BEAD5C13} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {AD1B43C3-C161-402A-AB08-15C4676FA174} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe
Task: {B53D8E0A-30EC-4F0C-8C71-480BE5C4CBD0} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {B7FD41C9-DC66-42DE-BDB0-6A96D51BAAA4} - System32\Tasks\{018D3A8D-5FBF-4893-B4C4-F39B9A9EF17F} => pcalua.exe -a "E:\Corel 12 CZ\setup.exe" -d "E:\Corel 12 CZ"
Task: {B81DD4D9-970E-4CE7-ADA5-8A5474D6A525} - System32\Tasks\{52A5D02F-D8E0-4F9B-9B93-EEA79C3C64EC} => C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE [2014-01-29] (Microsoft Corporation)
Task: {B8EB38FA-CE3B-4C4F-B936-F2ED08475C42} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-03-29] (Avast Software s.r.o.)
Task: {C123A70E-3869-41F0-8108-6518CD049043} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe
Task: {C8D21DDE-1969-45A7-887A-7ED8835A3977} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {CD7B1183-6676-4BAA-8041-842C79BD7D24} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe
Task: {CE1AEB85-9DF1-4E36-B78F-A49C3A45402C} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {D6590649-41F9-4239-A631-8E695DFCFCE5} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe
Task: {D977A4A7-EF9C-4367-8A7E-F18712676A04} - System32\Tasks\EasySpeedUpManager => C:\Program Files\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe [2009-10-13] (Samsung Electronics Co., Ltd.)
Task: {DA82A2AD-2559-476F-9D8C-1857099EB064} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {DAC0783E-F577-41CE-AC0F-0C96E414EBCF} - System32\Tasks\{3880AEF0-B7E4-4993-9057-8D40B44E662C} => C:\Program Files\VideoViewer\videoPlayer\VideoPlayer.exe [2008-08-06] ()
Task: {E623FD7E-32CD-4761-A619-7315B911C952} - System32\Tasks\{43A0AAAF-85DE-4A89-A9E0-4F85FFEA3D0B} => C:\Program Files\VideoViewer\videoPlayer\VideoPlayer.exe [2008-08-06] ()
Task: {E7F054CE-046B-43A4-9321-4F57B77269CD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-01-02] (Google Inc.)
Task: {E9E39E00-C74F-4826-894E-901068B9568B} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {EA0BBA13-84FD-4750-B8D7-BD04176A2614} - System32\Tasks\Uninstaller_SkipUac_Martina => C:\Program Files\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: {EBDB2B4D-3180-41A1-8005-EA7D23DD5A58} - System32\Tasks\Opera scheduled Autoupdate 1387481545 => C:\Program Files\Opera\launcher.exe [2015-03-16] (Opera Software)
Task: {F4A0E59A-1580-4065-82CB-B49777EE4EEE} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {F698AEDC-F228-41BD-97D9-CB846E6231D4} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {F8435048-3152-4C74-AAD6-3231E12AC511} - System32\Tasks\BatteryLifeExtender => C:\Program Files\Samsung\BatteryLifeExtender\BatteryLifeExtender.exe [2010-12-18] (Samsung Electronics. Co. Ltd.)
Task: {FE14EB26-C8F0-40DD-8AC9-55BDBB443A8A} - System32\Tasks\Driver Booster SkipUAC (Martina) => C:\Program Files\IObit\Driver Booster\DriverBooster.exe

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_Administrator.job => C:\Program Files\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_Martina.job => C:\Program Files\IObit\IObit Uninstaller\IObitUninstaler.exe

==================== Loaded Modules (whitelisted) ==============

2013-12-04 17:20 - 2014-05-20 02:04 - 00106840 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll
2015-03-29 21:08 - 2015-03-29 21:08 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-03-29 21:08 - 2015-03-29 21:08 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-03-31 07:25 - 2015-03-31 07:25 - 02924032 _____ () C:\Program Files\AVAST Software\Avast\defs\15033001\algo.dll
2015-03-31 13:14 - 2015-03-31 13:14 - 02924032 _____ () C:\Program Files\AVAST Software\Avast\defs\15033100\algo.dll
2011-04-11 08:26 - 2011-04-11 07:26 - 00024064 _____ () C:\WINDOWS\System32\spd__l.dll
2012-09-10 18:07 - 2012-09-10 17:07 - 00911872 _____ () C:\WINDOWS\system32\spool\DRIVERS\W32X86\3\spd__du.dll
2010-08-03 16:45 - 2012-08-17 18:48 - 00140736 _____ () C:\Program Files\Aladdin\Aladdin SQL Server\AladdinSQL.exe
2010-01-05 12:43 - 2009-03-05 11:54 - 00311296 _____ () C:\windows\SYSTEM32\Rezip.exe
2009-11-19 05:01 - 2009-11-19 05:01 - 00270336 _____ () C:\WINDOWS\system32\SaMinDrv.dll
2012-03-19 14:43 - 2012-03-19 14:43 - 05316608 _____ () C:\Program Files\Paradox Security Systems\BabyWare\nxServer.exe
2015-03-29 21:08 - 2015-03-29 21:08 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2015-03-18 21:32 - 2015-03-18 21:32 - 00157304 _____ () C:\Program Files\Opera\28.0.1750.48\message_center_win8.dll
2015-03-18 21:32 - 2015-03-18 21:32 - 00484472 _____ () C:\Program Files\Opera\28.0.1750.48\opera_crashreporter.exe
2015-03-18 21:32 - 2015-03-18 21:32 - 01488504 _____ () C:\Program Files\Opera\28.0.1750.48\libglesv2.dll
2015-03-18 21:32 - 2015-03-18 21:32 - 00079992 _____ () C:\Program Files\Opera\28.0.1750.48\libegl.dll
2015-03-18 21:32 - 2015-03-18 21:32 - 09625720 _____ () C:\Program Files\Opera\28.0.1750.48\pdf.dll
2013-09-29 03:13 - 2013-09-29 03:13 - 00544817 _____ () C:\Program Files\NETGEAR Genie\bin\libgcc_s_dw2-1.dll
2013-09-29 03:13 - 2013-09-29 03:13 - 00989805 _____ () C:\Program Files\NETGEAR Genie\bin\libstdc++-6.dll
2013-09-29 03:14 - 2013-09-29 03:14 - 03369922 _____ () C:\Program Files\NETGEAR Genie\bin\icuin51.dll
2013-09-29 03:14 - 2013-09-29 03:14 - 01978690 _____ () C:\Program Files\NETGEAR Genie\bin\icuuc51.dll
2013-09-29 03:14 - 2013-09-29 03:14 - 22378434 _____ () C:\Program Files\NETGEAR Genie\bin\icudt51.dll
2013-09-29 03:14 - 2013-09-29 03:14 - 01233408 _____ () C:\Program Files\NETGEAR Genie\bin\platforms\qwindows.dll
2015-01-09 08:40 - 2015-01-09 08:40 - 00640000 _____ () C:\Program Files\NETGEAR Genie\bin\Genie.dll
2014-12-19 08:03 - 2014-12-19 08:03 - 01686016 _____ () C:\Program Files\NETGEAR Genie\bin\SvtNetworkTool.dll
2013-09-29 03:13 - 2013-09-29 03:13 - 00051200 _____ () C:\Program Files\NETGEAR Genie\bin\imageformats\qgif.dll
2013-09-29 03:13 - 2013-09-29 03:13 - 00052224 _____ () C:\Program Files\NETGEAR Genie\bin\imageformats\qico.dll
2013-09-29 03:13 - 2013-09-29 03:13 - 00261120 _____ () C:\Program Files\NETGEAR Genie\bin\imageformats\qjpeg.dll
2013-09-29 03:13 - 2013-09-29 03:13 - 00046080 _____ () C:\Program Files\NETGEAR Genie\bin\imageformats\qsvg.dll
2015-01-09 08:01 - 2015-01-09 08:01 - 00192512 _____ () C:\Program Files\NETGEAR Genie\bin\GeniePlugin_Airprint.dll
2014-11-05 09:37 - 2014-11-05 09:37 - 00632832 _____ () C:\Program Files\NETGEAR Genie\bin\GeniePlugin_Internet.dll
2015-01-09 08:03 - 2015-01-09 08:03 - 06477824 _____ () C:\Program Files\NETGEAR Genie\bin\GeniePlugin_Map.dll
2014-06-30 03:55 - 2014-06-30 03:55 - 00068608 _____ () C:\Program Files\NETGEAR Genie\bin\QRCode.dll
2014-06-30 04:05 - 2014-06-30 04:05 - 01183232 _____ () C:\Program Files\NETGEAR Genie\bin\qwt.dll
2015-01-08 03:57 - 2015-01-08 03:57 - 02493952 _____ () C:\Program Files\NETGEAR Genie\bin\GeniePlugin_MyMedia.dll
2012-10-15 22:27 - 2012-10-15 22:27 - 00111616 _____ () C:\Program Files\NETGEAR Genie\bin\libvlc.dll
2012-10-15 22:28 - 2012-10-15 22:28 - 02286592 _____ () C:\Program Files\NETGEAR Genie\bin\libvlccore.dll
2014-12-05 07:32 - 2014-12-05 07:32 - 01056768 _____ () C:\Program Files\NETGEAR Genie\bin\GeniePlugin_NetworkProblem.dll
2014-09-11 10:39 - 2014-09-11 10:39 - 00144896 _____ () C:\Program Files\NETGEAR Genie\bin\DragonNetTool.dll
2015-01-09 08:03 - 2015-01-09 08:03 - 01195008 _____ () C:\Program Files\NETGEAR Genie\bin\GeniePlugin_ParentalControl.dll
2015-01-14 07:45 - 2015-01-14 07:45 - 10388480 _____ () C:\Program Files\NETGEAR Genie\bin\GeniePlugin_Resource.dll
2015-01-15 05:04 - 2015-01-15 05:04 - 02545664 _____ () C:\Program Files\NETGEAR Genie\bin\GeniePlugin_RouterConfiguration.dll
2014-12-18 09:49 - 2014-12-18 09:49 - 00177152 _____ () C:\Program Files\NETGEAR Genie\bin\GeniePlugin_Statistics.dll
2014-12-05 07:35 - 2014-12-05 07:35 - 00890368 _____ () C:\Program Files\NETGEAR Genie\bin\GeniePlugin_Ui.dll
2014-11-05 10:00 - 2014-11-05 10:00 - 00435712 _____ () C:\Program Files\NETGEAR Genie\bin\GeniePlugin_Wireless.dll
2014-06-30 03:55 - 2014-06-30 03:55 - 00081408 _____ () C:\Program Files\NETGEAR Genie\bin\DiagnosePlugin.dll
2014-11-03 10:23 - 2014-11-03 10:23 - 00143360 _____ () C:\Program Files\NETGEAR Genie\bin\DiagnoseDll.dll
2014-06-19 04:22 - 2014-06-19 04:22 - 02177405 _____ () C:\Program Files\NETGEAR Genie\bin\drivers\libntgr_api.dll
2014-09-04 08:00 - 2014-09-04 08:00 - 00072192 _____ () C:\Program Files\NETGEAR Genie\bin\SVTUtils.dll
2014-09-04 08:00 - 2014-09-04 08:00 - 00074240 _____ () C:\Program Files\NETGEAR Genie\bin\NetcardApi.dll
2014-09-04 08:00 - 2014-09-04 08:00 - 00136704 _____ () C:\Program Files\NETGEAR Genie\bin\airprintdll.dll
2012-10-15 22:28 - 2012-10-15 22:28 - 00219648 _____ () C:\Program Files\NETGEAR Genie\bin\plugins\access\libdshow_plugin.dll
2012-10-15 22:28 - 2012-10-15 22:28 - 00049664 _____ () C:\Program Files\NETGEAR Genie\bin\plugins\audio_output\libaout_directx_plugin.dll
2012-10-15 22:28 - 2012-10-15 22:28 - 00051200 _____ () C:\Program Files\NETGEAR Genie\bin\plugins\audio_output\libwaveout_plugin.dll
2012-10-15 22:28 - 2012-10-15 22:28 - 00070144 _____ () C:\Program Files\NETGEAR Genie\bin\plugins\video_output\libdirectx_plugin.dll
2013-09-29 03:13 - 2013-09-29 03:13 - 00040960 _____ () C:\Program Files\NETGEAR Genie\bin\printsupport\windowsprintersupport.dll
2014-11-05 09:59 - 2014-11-05 09:59 - 00642048 _____ () C:\Program Files\NETGEAR Genie\bin\InnerPlugin_Update.dll
2014-11-05 10:01 - 2014-11-05 10:01 - 00458752 _____ () C:\Program Files\NETGEAR Genie\bin\InnerPlugin_WirelessExport.dll
2014-06-30 04:33 - 2014-06-30 04:33 - 00046080 _____ () C:\Program Files\NETGEAR Genie\bin\WSetupApiPlugin.dll
2014-09-04 08:00 - 2014-09-04 08:00 - 00066560 _____ () C:\Program Files\NETGEAR Genie\bin\WSetupDll.dll
2014-12-15 04:27 - 2014-12-15 04:27 - 00105216 _____ () C:\Program Files\NETGEAR Genie\bin\genie2_tray.exe
2015-03-27 09:51 - 2015-03-27 09:51 - 14978224 _____ () C:\WINDOWS\system32\Macromed\Flash\pepflashplayer32_17_0_0_149.dll
2013-07-10 18:07 - 2013-07-10 18:07 - 00756888 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSPTLS.DLL

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\ProgramData\Temp:0B4227B4
AlternateDataStreams: C:\ProgramData\Temp:3064D21D
AlternateDataStreams: C:\ProgramData\Temp:4CF61E54
AlternateDataStreams: C:\ProgramData\Temp:A42A9F39
AlternateDataStreams: C:\ProgramData\Temp:ABE89FFE
AlternateDataStreams: C:\ProgramData\Temp:CDFF58FE
AlternateDataStreams: C:\ProgramData\Temp:E1F04E8D
AlternateDataStreams: C:\Users\Martina\SkyDrive:ms-properties
AlternateDataStreams: C:\Users\Martina\AppData\Roaming\Microsoft Excel 97-2003.EML:OECustomProperty

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3670137199-2938631228-624182700-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Martina\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 192.168.1.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\startupreg: Adobe ARM => c:\program files\common files\adobe\arm\1.0\adobearm.exe
MSCONFIG\startupreg: GrooveMonitor => "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
MSCONFIG\startupreg: HPUsageTracking => c:\program files\hewlett-packard\hp ut\bin\hppusg.exe" "c:\program files\hewlett-packard\hp ut
MSCONFIG\startupreg: ISUSPM Startup => "c:\program files\common files\installshield\updateservice\isuspm.exe" -startup
MSCONFIG\startupreg: ISUSScheduler => "c:\program files\common files\installshield\updateservice\issch.exe" -start
MSCONFIG\startupreg: PrnStatusMX => c:\program files\hewlett-packard\prnstatusmx\prnstatusmx.exe
MSCONFIG\startupreg: Skype => "c:\program files\skype\phone\skype.exe" /minimized /regrun
MSCONFIG\startupreg: UpdateLBPShortCut => c:\program files\cyberlink\labelprint\muitransfer\muistartmenu.exe" "c:\program files\cyberlink\labelprint" updatewithcreateonce "software\cyberlink\labelprint\2.5
MSCONFIG\startupreg: UpdateP2GoShortCut => c:\program files\cyberlink\power2go\muitransfer\muistartmenu.exe" "c:\program files\cyberlink\power2go" updatewithcreateonce "software\cyberlink\power2go\6.0
HKLM\...\StartupApproved\Run: => "Adobe ARM"
HKLM\...\StartupApproved\Run: => "GrooveMonitor"
HKLM\...\StartupApproved\Run: => "UCam_Menu"
HKLM\...\StartupApproved\Run: => "UpdatePDRShortCut"
HKLM\...\StartupApproved\Run: => "PrnStatusMX"
HKLM\...\StartupApproved\Run: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run: => "SearchSettings"
HKLM\...\StartupApproved\Run: => "IObit Malware Fighter"
HKLM\...\StartupApproved\Run: => "Sony PC Companion"
HKLM\...\StartupApproved\Run: => "BackgroundContainer"
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\StartupApproved\Run: => "ISUSPM Startup"
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\StartupApproved\Run: => "Sony PC Companion"
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\StartupApproved\Run: => "BrowserChoice"
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\StartupApproved\Run: => "DAEMON Tools Lite"
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\StartupApproved\Run: => "GoogleDriveSync"
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\StartupApproved\Run: => "Excel Password Recovery"
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\StartupApproved\Run: => "Rohos"
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\StartupApproved\Run: => "Viber"

==================== Accounts: =============================

Administrator (S-1-5-21-3670137199-2938631228-624182700-500 - Administrator - Disabled)
Guest (S-1-5-21-3670137199-2938631228-624182700-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3670137199-2938631228-624182700-1008 - Limited - Enabled)
Martina (S-1-5-21-3670137199-2938631228-624182700-1001 - Administrator - Enabled) => C:\Users\Martina

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (03/31/2015 07:12:53 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT AUTHORITY)
Description: Systém Windows nemůže načíst soubor registru tříd.
PODROBNOSTI – Je poškozena databáze konfiguračního registru.

Error: (03/31/2015 07:12:53 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1508) (User: NT AUTHORITY)
Description: Systém Windows nemohl načíst registr. Tento problém je často způsoben nedostatkem paměti nebo nedostatečnými zabezpečovacími právy.

PODROBNOSTI – Je poškozena databáze konfiguračního registru.
pro: C:\Users\Martina\AppData\Local\Microsoft\Windows\\UsrClass.dat

Error: (03/31/2015 07:12:52 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT AUTHORITY)
Description: Systém Windows nemůže načíst soubor registru tříd.
PODROBNOSTI – Je poškozena databáze konfiguračního registru.

Error: (03/31/2015 07:12:52 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1508) (User: NT AUTHORITY)
Description: Systém Windows nemohl načíst registr. Tento problém je často způsoben nedostatkem paměti nebo nedostatečnými zabezpečovacími právy.

PODROBNOSTI – Je poškozena databáze konfiguračního registru.
pro: C:\Users\Martina\AppData\Local\Microsoft\Windows\\UsrClass.dat

Error: (03/31/2015 02:25:05 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT AUTHORITY)
Description: Systém Windows nemůže načíst soubor registru tříd.
PODROBNOSTI – Je poškozena databáze konfiguračního registru.

Error: (03/31/2015 02:25:05 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1508) (User: NT AUTHORITY)
Description: Systém Windows nemohl načíst registr. Tento problém je často způsoben nedostatkem paměti nebo nedostatečnými zabezpečovacími právy.

PODROBNOSTI – Je poškozena databáze konfiguračního registru.
pro: C:\Users\Martina\AppData\Local\Microsoft\Windows\\UsrClass.dat

Error: (03/31/2015 01:43:35 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1 se nezdařilo.
Závislé sestavení Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error: (03/31/2015 01:43:34 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1 se nezdařilo.
Závislé sestavení Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error: (03/31/2015 01:43:14 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1 se nezdařilo.
Závislé sestavení Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error: (03/31/2015 01:42:58 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1 se nezdařilo.
Závislé sestavení Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.


System errors:
=============
Error: (03/31/2015 11:02:34 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070002): Euvit.Hospodskanglitina.

Error: (03/31/2015 11:02:34 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070002): Euvit.Obchodnanglitina.

Error: (03/31/2015 11:02:29 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070002): Microsoft.BingNews.

Error: (03/31/2015 11:02:29 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070002): Microsoft.HelpAndTips.

Error: (03/31/2015 11:02:27 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070002): Microsoft.Reader.

Error: (03/31/2015 11:02:22 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070002): Microsoft.BingMaps.

Error: (03/31/2015 11:02:22 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070002): Microsoft.BingTravel.

Error: (03/31/2015 11:02:22 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070002): Microsoft.SkypeApp.

Error: (03/31/2015 11:02:19 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070002): Microsoft.ZuneMusic.

Error: (03/31/2015 11:02:19 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070002): Microsoft.ZuneVideo.


Microsoft Office Sessions:
=========================
Error: (08/17/2014 08:54:20 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6700.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 243 seconds with 180 seconds of active time. This session ended with a crash.

Error: (11/02/2013 03:11:36 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 14 seconds with 0 seconds of active time. This session ended with a crash.

Error: (08/28/2011 10:31:14 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6557.5001, Microsoft Office Version: 12.0.6425.1000. This session lasted 20 seconds with 0 seconds of active time. This session ended with a crash.

Error: (05/09/2011 07:10:46 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 42 seconds with 0 seconds of active time. This session ended with a crash.

Error: (07/30/2010 08:11:08 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.6500.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 14 seconds with 0 seconds of active time. This session ended with a crash.


CodeIntegrity Errors:
===================================
Date: 2015-02-22 18:46:36.752
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

Date: 2015-02-22 18:46:33.555
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

Date: 2014-11-14 19:51:59.286
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

Date: 2014-11-14 19:51:53.978
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

Date: 2014-10-21 15:33:23.508
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

Date: 2014-10-21 15:33:13.421
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

Date: 2014-10-20 20:44:01.797
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

Date: 2014-09-21 12:12:59.405
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

Date: 2014-09-21 12:12:52.827
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

Date: 2014-09-12 14:05:21.510
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

Processor: Intel(R) Core(TM) i3 CPU M 330 @ 2.13GHz
Percentage of memory in use: 40%
Total physical RAM: 3060.55 MB
Available physical RAM: 1811.58 MB
Total Pagefile: 9204.55 MB
Available Pagefile: 6897.76 MB
Total Virtual: 2047.88 MB
Available Virtual: 1906.75 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:148.72 GB) (Free:76.12 GB) NTFS
Drive d: () (Fixed) (Total:301.95 GB) (Free:33.67 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: C253DF56)
Partition 1: (Not Active) - (Size=15 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=148.7 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=301.9 GB) - (Type=07 NTFS)

==================== End Of Log ============================

Re: Prosím o kontrolu

Napsal: 31 bře 2015 18:20
od vyosek
Jeste FRST.txt

Re: Prosím o kontrolu

Napsal: 31 bře 2015 18:35
od mabor
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 11-03-2015
Ran by Martina (administrator) on MARTIN-PC on 31-03-2015 19:13:03
Running from C:\Users\Martina\Desktop
Loaded Profiles: Martina (Available profiles: Martina)
Platform: Microsoft Windows 8.1 Pro (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Software602 a.s.) C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
() C:\Program Files\Aladdin\Aladdin SQL Server\AladdinSQL.exe
(Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Firebird Project) C:\Program Files\Firebird\Firebird_2_5\bin\fb_inet_server.exe
() C:\Windows\System32\Rezip.exe
() C:\Program Files\Paradox Security Systems\BabyWare\nxServer.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\EasySpeedUpManager\EasySpeedUpManager.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
() C:\Program Files\Opera\28.0.1750.48\opera_crashreporter.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(NETGEAR) C:\Program Files\NETGEAR Genie\bin\NETGEARGenieDaemon.exe
(NETGEAR Inc.) C:\Program Files\NETGEAR Genie\bin\NETGEARGenie.exe
() C:\Program Files\NETGEAR Genie\bin\genie2_tray.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\POWERPNT.EXE
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe
(Opera Software) C:\Program Files\Opera\28.0.1750.48\opera.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1578280 2009-10-10] (Synaptics Incorporated)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [12021464 2014-12-14] (Realtek Semiconductor)
HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5512912 2015-03-29] (Avast Software s.r.o.)
HKLM\...\Run: [PrnStatusMX] => C:\Program Files\Hewlett-Packard\PrnStatusMX\PrnStatusMX.exe [1077248 2007-08-29] (Marvell Semiconductor, Inc.)
HKLM\...\Run: [BackgroundContainer] => "C:\WINDOWS\system32\Rundll32.exe" "C:\Users\Martina\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll",DllRun <===== ATTENTION
HKLM\...\Run: [UpdatePDRShortCut] => C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe [222504 2008-01-04] (CyberLink Corp.)
HKLM\...\Run: [Sony PC Companion] => C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [446648 2013-01-07] (Sony)
HKLM\...\Run: [UCam_Menu] => C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [222504 2009-05-19] (CyberLink Corp.)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-11-20] (Adobe Systems Incorporated)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [271744 2014-12-18] (Oracle Corporation)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [26232152 2015-02-19] (Google)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [ISUSPM Startup] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.EXE [249856 2005-08-11] (Macrovision Corporation)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [5529880 2015-03-13] (Piriform Ltd)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [NETGEARGenie] => C:\Program Files\NETGEAR Genie\bin\NETGEARGenie.exe [602880 2014-12-15] (NETGEAR Inc.)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\RunOnce: [Adobe Speed Launcher] => 1427782229
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (Avast Software s.r.o.)
ShellIconOverlayIdentifiers: [GDriveBlacklistedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSharedEditOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSharedViewOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSyncedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSyncingOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] -> {99FD978C-D287-4F50-827F-B2C658EDA8E7} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 2 (GFS Stub)] -> {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] -> {920E6DB1-9907-4370-B3A0-BAFC03D81399} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 3 (GFS Folder)] -> {16F3DD56-1AF5-4347-846D-7C10C4192619} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] -> {2916C86E-86A6-43FE-8112-43ABE6BF8DCC} => No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
SearchScopes: HKLM -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKLM -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://www.google.com/search?sourceid=i ... lz=1I7SMSN
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> DefaultScope {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://www.google.com/search?sourceid=i ... lz=1I7SMSN
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL =
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {FCA093FF-4951-49CF-8FC4-C8F63011EF9A} URL = http://search.seznam.cz/?q={searchTerms ... cksearch_2
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2015-03-31] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-03-29] (Avast Software s.r.o.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2015-03-31] (Oracle Corporation)
DPF: {27932703-59C1-4B18-A46D-ED8FC2D35BAA} http://192.168.1.113/NEWIE.cab
DPF: {55A2C0CD-3DE8-4264-9637-A0B40B05714E} https://col0-sec.mail.live.com/mail/Mai ... 1213076673
DPF: {62789780-B744-11D0-986B-00609731A21D} http://195.28.70.134/kapor2/lib/mgaxctrl.cab
DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} http://download.divx.com/player/DivXBrowserPlugin.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0017-0000-0045-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {D8950D0E-FCE7-4AE4-9370-7E4CFBC04362} https://eportal.cssz.cz/fas/page/active ... bff_cs.cab
DPF: {D9D72A92-132E-46EC-A6F1-896B19227142} http://www.elnika.cz/online/ActiveX/ax4web.cab
DPF: {DED4D168-AEEE-4E0C-B699-36A9A320ED5E} http://www.cyberlink.com/prog/win8/js/UpdateAdvisor.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2009-02-26] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default
FF NewTab: about:newtab
FF Homepage: about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_17_0_0_134.dll [2015-03-31] ()
FF Plugin: @java.com/DTPlugin,version=10.76.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2015-03-31] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.76.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2015-03-31] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin: @software602.cz/602XML Filler -> C:\Program Files\Software602\602XML\Filler\npfiller.dll [2012-08-06] (Software602 a.s.)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Martina\AppData\Roaming\Mozilla\Firefox\Profiles\xt0ya78m.default\searchplugins\seznam-avast.xml [2015-01-08]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-12-19]

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-03-29]
CHR HKU\S-1-5-21-3670137199-2938631228-624182700-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - https://clients2.google.com/service/update2/crx

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 602XML Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [84520 2011-03-14] (Software602 a.s.)
R2 Aladdin SQL Server; C:\Program Files\Aladdin\Aladdin SQL Server\AladdinSQL.exe [140736 2012-08-17] () [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-03-29] (Avast Software s.r.o.)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [107448 2015-03-29] (Avast Software s.r.o.)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3205216 2015-03-29] (Avast Software)
R2 BcmBtRSupport; C:\WINDOWS\system32\BtwRSupportService.exe [1680088 2013-10-28] (Broadcom Corporation.)
S3 BthHFSrv; C:\WINDOWS\System32\BthHFSrv.dll [250880 2014-10-29] (Microsoft Corporation)
R2 FirebirdServerDefaultInstance; C:\Program Files\Firebird\Firebird_2_5\bin\fb_inet_server.exe [3727360 2010-09-17] (Firebird Project) [File not signed]
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 NETGEARGenieDaemon; C:\Program Files\NETGEAR Genie\bin\NETGEARGenieDaemon.exe [195840 2014-12-15] (NETGEAR)
R2 NEWare_Database_16001; C:\Program Files\Paradox Security Systems\BabyWare\nxServer.exe [5316608 2012-03-19] () [File not signed]
R2 Rezip; C:\windows\SYSTEM32\Rezip.exe [311296 2009-03-05] () [File not signed]
S4 RichVideo; C:\Program Files\CyberLink\Shared files\RichVideo.exe [247152 2009-07-07] ()
S3 ScDeviceEnum; C:\WINDOWS\System32\ScDeviceEnum.dll [103936 2014-10-29] (Microsoft Corporation)
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155320 2012-01-18] (Avanquest Software) [File not signed]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [284488 2015-02-04] (Microsoft Corporation)
S3 WEPHOSTSVC; C:\WINDOWS\system32\wephostsvc.dll [20992 2014-10-29] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [22200 2015-02-04] (Microsoft Corporation)
S3 workfolderssvc; C:\WINDOWS\system32\workfolderssvc.dll [1269248 2014-10-29] (Microsoft Corporation)
S2 TeamViewer9; No ImagePath

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24144 2015-03-29] ()
R1 aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [26096 2015-03-29] (Avast Software s.r.o.)
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [73440 2015-03-29] (Avast Software s.r.o.)
R0 aswNdisFlt; C:\WINDOWS\System32\DRIVERS\aswNdisFlt.sys [271248 2015-03-29] (Avast Software s.r.o.)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [81728 2015-03-29] (Avast Software s.r.o.)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49904 2015-03-29] ()
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [788272 2015-03-29] (Avast Software s.r.o.)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [427736 2015-03-29] (Avast Software s.r.o.)
R2 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [106912 2015-03-29] (Avast Software s.r.o.)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [208024 2015-03-29] ()
R3 athr; C:\WINDOWS\system32\DRIVERS\athwn.sys [2795520 2013-06-18] (Qualcomm Atheros Communications, Inc.)
R1 BasicRender; C:\WINDOWS\System32\drivers\BasicRender.sys [25600 2014-02-22] (Microsoft Corporation)
R3 bcbtums; C:\WINDOWS\system32\drivers\bcbtums.sys [175320 2013-10-28] (Broadcom Corporation.)
S3 btwampfl; C:\WINDOWS\system32\DRIVERS\btwampfl.sys [144600 2013-10-28] (Broadcom Corporation.)
R1 dtsoftbus01; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [242240 2013-12-18] (DT Soft Ltd)
S3 FTDIBUS; C:\WINDOWS\system32\drivers\ftdibus.sys [77808 2014-01-31] (FTDI Ltd.)
S3 GPIO; C:\WINDOWS\System32\drivers\iaiogpio.sys [22016 2013-07-23] (Intel Corporation)
R1 hwinterface; C:\WINDOWS\System32\Drivers\hwinterface.sys [3026 2014-04-17] (Logix4u) [File not signed]
U2 NPF; C:\WINDOWS\system32\drivers\npf.sys [35088 2011-08-21] (CACE Technologies, Inc.)
S3 Ser2plx86; C:\WINDOWS\system32\DRIVERS\ser2pl.sys [139776 2013-10-25] (Prolific Technology Inc.)
S3 silabenm; C:\WINDOWS\system32\DRIVERS\silabenm.sys [47176 2012-11-26] (Silicon Laboratories)
S3 silabser; C:\WINDOWS\system32\DRIVERS\silabser.sys [63104 2012-11-26] (Silicon Laboratories)
S3 SIoctl; c:\windows\system32\drivers\sioctl.sys [6144 2008-04-25] () [File not signed]
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [220240 2015-03-29] (Avast Software)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [84800 2015-02-04] (Microsoft Corporation)
R0 Wof; C:\WINDOWS\system32\Drivers\Wof.sys [138584 2014-03-13] (Microsoft Corporation)
S3 WUDFWpdMtp; C:\WINDOWS\System32\drivers\WUDFRd.sys [190976 2014-10-29] (Microsoft Corporation)
R3 ykinw8; C:\WINDOWS\system32\DRIVERS\ykinx86.sys [242688 2013-06-18] (Marvell)
S1 FNETURPX; System32\drivers\FNETURPX.SYS [X]
U3 idsvc; No ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-31 19:13 - 2015-03-31 19:13 - 00019810 _____ () C:\Users\Martina\Desktop\FRST.txt
2015-03-31 19:11 - 2015-03-31 19:11 - 00000000 ____D () C:\Users\Martina\AppData\Local\GHISLER
2015-03-31 16:50 - 2015-03-31 16:56 - 114707713 _____ () C:\Users\Martina\Downloads\Včelařství-04.2015.zip
2015-03-31 14:29 - 2015-03-31 14:29 - 00041188 _____ () C:\Users\Martina\Documents\netscan.xml
2015-03-31 14:27 - 2015-03-31 14:27 - 00000000 ____D () C:\Users\Martina\Downloads\netscan
2015-03-31 14:26 - 2015-03-31 14:26 - 02875048 _____ () C:\Users\Martina\Downloads\netscan.zip
2015-03-31 13:06 - 2015-03-31 14:25 - 00000000 ____D () C:\Program Files\WiSE
2015-03-31 13:06 - 2015-03-31 13:06 - 00000000 ____D () C:\Program Files\WinPcap
2015-03-31 13:05 - 2015-03-31 13:05 - 03351603 _____ (Jan Koubek - Softwarové Inženýrství ) C:\Users\Martina\Downloads\WiSetup.exe
2015-03-31 13:04 - 2015-03-31 13:04 - 03350528 _____ (Jan Koubek - Softwarové Inženýrství ) C:\Users\Martina\Downloads\WiSetup.exe.opdownload
2015-03-31 13:04 - 2015-03-31 13:04 - 03350528 _____ (Jan Koubek - Softwarové Inženýrství ) C:\Users\Martina\Downloads\WiSetup.exe (1).opdownload
2015-03-31 12:46 - 2015-03-31 12:46 - 00281104 _____ (CACE Technologies, Inc.) C:\WINDOWS\system32\wpcap.dll
2015-03-31 12:46 - 2015-03-31 12:46 - 00096784 _____ (CACE Technologies, Inc.) C:\WINDOWS\system32\packet.dll
2015-03-31 12:40 - 2015-03-31 12:40 - 00000000 ___RD () C:\Program Files\Skype
2015-03-31 12:40 - 2015-03-31 12:40 - 00000000 ____D () C:\Users\Martina\AppData\Local\Skype
2015-03-31 12:40 - 2015-03-31 12:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-03-31 12:40 - 2015-03-31 12:40 - 00000000 ____D () C:\Program Files\Common Files\Skype
2015-03-31 12:37 - 2015-03-31 12:37 - 00272808 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe
2015-03-31 12:37 - 2015-03-31 12:37 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe
2015-03-31 12:37 - 2015-03-31 12:37 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe
2015-03-31 12:37 - 2015-03-31 12:37 - 00096680 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2015-03-31 12:37 - 2015-03-31 12:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-03-31 12:37 - 2015-03-31 12:37 - 00000000 ____D () C:\Program Files\Common Files\Java
2015-03-31 07:23 - 2015-03-31 06:51 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2015-03-31 06:53 - 2015-03-31 07:25 - 00024009 _____ () C:\zoek-results.log
2015-03-31 06:51 - 2015-03-31 07:21 - 00000000 ____D () C:\zoek_backup
2015-03-31 06:48 - 2015-03-31 06:48 - 04170178 _____ () C:\Users\Martina\Downloads\zoek.zip
2015-03-30 20:37 - 2015-03-31 07:24 - 00003830 _____ () C:\WINDOWS\PFRO.log
2015-03-30 20:37 - 2015-03-31 07:24 - 00000154 _____ () C:\WINDOWS\setupact.log
2015-03-30 20:37 - 2015-03-30 20:37 - 00000000 _____ () C:\WINDOWS\setuperr.log
2015-03-30 20:31 - 2015-03-30 20:34 - 00000000 ____D () C:\AdwCleaner
2015-03-30 20:30 - 2015-03-30 20:30 - 02208768 _____ () C:\Users\Martina\Desktop\adwcleaner_4.200.exe
2015-03-30 19:54 - 2015-03-30 19:54 - 00000290 _____ () C:\WINDOWS\Tasks\Uninstaller_SkipUac_Martina.job
2015-03-30 19:54 - 2015-03-30 19:54 - 00000000 ____D () C:\Program Files\Common Files\IObit
2015-03-30 19:50 - 2015-03-30 19:50 - 07972728 _____ (TeamViewer GmbH) C:\Users\Martina\Downloads\TeamViewer_Setup_cs-iuu.exe
2015-03-29 21:08 - 2015-03-29 21:08 - 00788272 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswSnx.sys
2015-03-29 21:08 - 2015-03-29 21:08 - 00427736 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswSP.sys
2015-03-29 21:08 - 2015-03-29 21:08 - 00291312 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\aswBoot.exe
2015-03-29 21:08 - 2015-03-29 21:08 - 00208024 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys
2015-03-29 21:08 - 2015-03-29 21:08 - 00106912 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswStm.sys
2015-03-29 21:08 - 2015-03-29 21:08 - 00081728 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2015-03-29 21:08 - 2015-03-29 21:08 - 00073440 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2015-03-29 21:08 - 2015-03-29 21:08 - 00049904 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys
2015-03-29 21:08 - 2015-03-29 21:08 - 00043112 _____ (Avast Software s.r.o.) C:\WINDOWS\avastSS.scr
2015-03-29 21:08 - 2015-03-29 21:08 - 00026096 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswKbd.sys
2015-03-29 21:08 - 2015-03-29 21:08 - 00024144 _____ () C:\WINDOWS\system32\Drivers\aswHwid.sys
2015-03-29 21:07 - 2015-03-29 21:07 - 00271248 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswNdisFlt.sys
2015-03-29 21:04 - 2015-03-29 21:04 - 00023984 _____ () C:\Users\Martina\Desktop\Addition.txt
2015-03-29 21:02 - 2015-03-31 06:49 - 00000000 ____D () C:\Users\Martina\Desktop\scan
2015-03-29 20:57 - 2015-03-31 19:13 - 00000000 ____D () C:\FRST
2015-03-29 20:54 - 2015-03-29 20:54 - 01135104 _____ (Farbar) C:\Users\Martina\Desktop\FRST.exe
2015-03-29 20:54 - 2015-03-29 20:54 - 00112640 _____ (forum.viry.cz) C:\Users\Martina\Downloads\FRSTLauncher (1).exe
2015-03-29 20:54 - 2015-03-29 20:54 - 00112640 _____ (forum.viry.cz) C:\Users\Martina\Desktop\FRSTLauncher.exe
2015-03-29 20:01 - 2015-03-29 20:01 - 00000247 _____ () C:\WINDOWS\system32\2015-03-29-18-01-00.058-aswFe.exe-5444.log
2015-03-29 19:54 - 2015-03-29 20:00 - 00000247 _____ () C:\WINDOWS\system32\2015-03-29-17-54-18.020-aswFe.exe-4924.log
2015-03-29 19:54 - 2015-03-29 19:54 - 00000197 _____ () C:\WINDOWS\system32\2015-03-29-17-54-16.021-AvastVBoxSVC.exe-3164.log
2015-03-27 22:02 - 2015-03-27 22:02 - 00548352 _____ () C:\Users\Martina\Downloads\37_Loupaci_stroje_a_krajecky.pps
2015-03-27 16:04 - 2015-03-27 16:04 - 00114721 _____ () C:\Users\Martina\Downloads\klasifikace_zamestnani_systematicka_cast_2014_09_01.xlsx
2015-03-27 14:22 - 2015-03-31 19:11 - 00000000 ____D () C:\Users\Martina\Desktop\§75 - žadosti
2015-03-18 21:32 - 2015-03-18 21:32 - 00000981 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2015-03-16 18:52 - 2015-03-16 18:52 - 00000197 _____ () C:\WINDOWS\system32\2015-03-16-16-52-55.077-AvastVBoxSVC.exe-2684.log
2015-03-15 11:27 - 2015-03-15 11:27 - 00000197 _____ () C:\WINDOWS\system32\2015-03-15-09-27-24.038-AvastVBoxSVC.exe-3036.log
2015-03-14 20:46 - 2015-03-14 20:46 - 00000197 _____ () C:\WINDOWS\system32\2015-03-14-18-46-39.022-AvastVBoxSVC.exe-3744.log
2015-03-13 17:14 - 2015-03-13 17:14 - 00692192 _____ (Opera Software) C:\Users\Martina\Downloads\Opera_NI_stable.exe
2015-03-13 16:43 - 2015-03-13 16:43 - 00000197 _____ () C:\WINDOWS\system32\2015-03-13-14-43-12.028-AvastVBoxSVC.exe-4416.log
2015-03-12 13:41 - 2015-03-04 23:24 - 00792032 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2015-03-12 13:41 - 2015-03-04 23:24 - 00178144 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2015-03-11 13:28 - 2015-03-06 04:33 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2015-03-11 13:28 - 2015-02-21 02:41 - 12827648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-03-11 13:28 - 2015-02-21 02:27 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2015-03-11 13:28 - 2015-02-21 02:25 - 19720192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-03-11 13:28 - 2015-02-21 01:32 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2015-03-11 13:28 - 2015-02-20 04:09 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-03-11 13:28 - 2015-02-20 04:06 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2015-03-11 13:28 - 2015-02-20 04:03 - 02278400 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-03-11 13:28 - 2015-02-20 03:30 - 04300288 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-03-11 13:28 - 2015-02-20 03:30 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-03-11 13:28 - 2015-02-20 03:26 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-03-11 13:28 - 2015-02-20 03:24 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-03-11 13:28 - 2015-02-20 03:24 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-03-11 13:28 - 2015-02-20 03:01 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-03-11 13:28 - 2015-02-20 02:57 - 01311232 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-03-11 13:28 - 2015-02-12 19:34 - 19731824 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-03-11 13:28 - 2015-02-08 01:49 - 00791040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2015-03-11 13:28 - 2015-02-07 01:09 - 00396419 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2015-03-11 13:28 - 2015-02-06 03:08 - 01943040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-03-11 13:28 - 2015-01-31 01:29 - 02484224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-03-11 13:28 - 2015-01-31 01:20 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2015-03-11 13:28 - 2015-01-30 04:25 - 00131584 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys
2015-03-11 13:28 - 2015-01-30 04:25 - 00083456 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys
2015-03-11 13:28 - 2015-01-29 20:34 - 01488040 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2015-03-11 13:28 - 2015-01-29 03:29 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\photowiz.dll
2015-03-11 13:28 - 2015-01-29 03:00 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-11 13:28 - 2015-01-29 02:50 - 00811008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2015-03-11 13:28 - 2015-01-23 07:02 - 00560392 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2015-03-11 13:28 - 2015-01-21 07:15 - 01123848 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2015-03-11 13:28 - 2014-12-11 07:40 - 00041296 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentServer.exe
2015-03-11 13:27 - 2015-02-26 01:27 - 03543552 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-03-11 13:27 - 2015-02-21 02:27 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2015-03-11 13:27 - 2015-02-20 04:20 - 00301056 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-03-11 13:27 - 2015-02-20 04:15 - 00035840 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-03-11 13:27 - 2015-02-20 03:56 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-03-11 13:27 - 2015-02-20 03:24 - 00684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-03-11 13:27 - 2015-02-20 02:55 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-03-11 13:27 - 2015-02-05 22:17 - 00869696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2015-03-11 13:27 - 2015-02-04 01:51 - 00227136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2015-03-11 13:27 - 2015-02-04 01:51 - 00084800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2015-03-11 13:27 - 2015-02-04 01:51 - 00038392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2015-03-11 13:27 - 2015-02-03 02:03 - 03551744 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2015-03-11 13:27 - 2015-02-03 01:53 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll
2015-03-11 13:27 - 2015-01-30 03:44 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42u.dll
2015-03-11 13:27 - 2015-01-30 03:42 - 01204224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42.dll
2015-03-11 13:27 - 2015-01-30 03:40 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2015-03-11 13:27 - 2015-01-30 03:24 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2015-03-11 13:27 - 2015-01-30 03:16 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2015-03-11 13:27 - 2015-01-30 03:06 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2015-03-11 13:27 - 2015-01-29 02:56 - 00602624 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2015-03-11 13:27 - 2015-01-29 02:55 - 00873984 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2015-03-11 13:27 - 2015-01-29 02:49 - 02459136 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-03-11 13:27 - 2015-01-28 17:35 - 05769024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-03-11 13:27 - 2015-01-28 17:35 - 01468408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-03-11 13:27 - 2015-01-28 03:47 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageContextHandler.dll
2015-03-11 13:27 - 2015-01-28 03:11 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2015-03-11 13:27 - 2015-01-28 01:41 - 02207488 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-03-11 13:27 - 2015-01-24 04:20 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2015-03-11 13:27 - 2015-01-24 03:51 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe
2015-03-11 13:27 - 2015-01-24 02:48 - 02975744 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2015-03-11 10:18 - 2015-03-11 10:18 - 00000247 _____ () C:\WINDOWS\system32\2015-03-11-08-18-03.002-aswFe.exe-4372.log
2015-03-09 17:54 - 2015-03-09 18:01 - 00000197 _____ () C:\WINDOWS\system32\2015-03-09-15-54-18.099-AvastVBoxSVC.exe-2732.log
2015-03-08 10:21 - 2015-03-08 10:22 - 00000197 _____ () C:\WINDOWS\system32\2015-03-08-08-21-48.055-AvastVBoxSVC.exe-2896.log
2015-03-07 19:50 - 2015-03-07 19:50 - 00001259 _____ () C:\Users\Martina\Desktop\7zFM – zástupce.lnk
2015-03-07 18:58 - 2015-03-07 18:58 - 00000473 _____ () C:\Users\Martina\Downloads\prohlídky.csv
2015-03-05 16:38 - 2015-03-05 16:38 - 00000247 _____ () C:\WINDOWS\system32\2015-03-05-14-38-37.071-aswFe.exe-4276.log
2015-03-05 16:31 - 2015-03-05 16:38 - 00000247 _____ () C:\WINDOWS\system32\2015-03-05-14-31-03.074-aswFe.exe-3908.log
2015-03-04 14:25 - 2015-03-04 14:26 - 00000197 _____ () C:\WINDOWS\system32\2015-03-04-12-25-03.085-AvastVBoxSVC.exe-2888.log
2015-03-03 21:03 - 2015-03-03 21:41 - 00023800 _____ () C:\Users\Martina\Downloads\Prihlaska_SS_2015_dalkove.xlsx
2015-03-03 09:31 - 2015-03-03 09:31 - 00000197 _____ () C:\WINDOWS\system32\2015-03-03-07-31-39.030-AvastVBoxSVC.exe-2892.log
2015-03-02 22:38 - 2015-03-02 22:45 - 118460416 _____ () C:\Users\Martina\Downloads\04_ostatni_vceli_produkty.avi
2015-03-02 20:02 - 2015-03-02 20:02 - 10214319 _____ () C:\Users\Martina\Downloads\western_cuisine_vector_288204.zip
2015-03-02 20:01 - 2015-03-02 20:01 - 09002831 _____ () C:\Users\Martina\Downloads\cute_cartoon_bee_vector_156286.zip

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-31 19:11 - 2015-02-05 22:06 - 00000958 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-31 18:49 - 2012-04-11 07:50 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-03-31 18:39 - 2015-01-02 13:37 - 01391276 _____ () C:\WINDOWS\WindowsUpdate.log
2015-03-31 18:00 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\sru
2015-03-31 12:46 - 2014-09-09 16:40 - 00001992 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NETGEAR Genie.lnk
2015-03-31 12:46 - 2014-09-09 16:40 - 00001980 _____ () C:\Users\Public\Desktop\NETGEAR Genie.lnk
2015-03-31 12:46 - 2014-09-09 16:40 - 00000000 ____D () C:\Users\Martina\AppData\Local\NETGEARGenie
2015-03-31 12:42 - 2010-07-24 20:44 - 00000000 ____D () C:\Users\Martina\AppData\Roaming\Skype
2015-03-31 12:40 - 2010-07-24 20:43 - 00000000 ____D () C:\ProgramData\Skype
2015-03-31 11:30 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Microsoft.NET
2015-03-31 11:03 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\AppReadiness
2015-03-31 07:27 - 2014-08-18 19:55 - 00002036 _____ () C:\Users\Martina\Desktop\SafeZone prohlížeč.lnk
2015-03-31 07:27 - 2013-12-04 17:58 - 00000000 ___DO () C:\Users\Martina\SkyDrive
2015-03-31 07:26 - 2015-02-05 22:06 - 00000954 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-03-31 07:24 - 2013-08-22 09:23 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-03-31 07:20 - 2010-06-28 16:25 - 00000000 ____D () C:\Users\Martina\AppData\Local\Google
2015-03-31 07:17 - 2013-12-04 17:26 - 00000000 ____D () C:\Users\Martina
2015-03-30 20:37 - 2010-01-05 13:10 - 00000000 ____D () C:\Program Files\Google
2015-03-30 20:28 - 2015-01-13 13:47 - 00000000 ____D () C:\Program Files\PDFCreator
2015-03-30 20:27 - 2014-10-30 13:42 - 00000937 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2015-03-30 20:27 - 2014-10-30 13:41 - 00000000 ____D () C:\Program Files\CCleaner
2015-03-30 20:12 - 2013-02-16 12:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Illko
2015-03-30 20:12 - 2013-02-16 12:22 - 00000000 ____D () C:\Program Files\Illko
2015-03-30 20:12 - 2010-01-05 13:10 - 00000000 ____D () C:\ProgramData\Google
2015-03-30 20:10 - 2013-12-04 17:42 - 01754508 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2015-03-30 20:04 - 2014-01-06 20:03 - 00165659 _____ () C:\MyXML.xml
2015-03-30 20:04 - 2013-08-22 08:13 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2015-03-30 19:54 - 2011-08-11 23:12 - 00000000 ____D () C:\ProgramData\IObit
2015-03-30 19:54 - 2011-07-18 11:19 - 00000000 ____D () C:\Users\Martina\AppData\Roaming\IObit
2015-03-30 19:53 - 2011-07-18 11:19 - 00000000 ____D () C:\Program Files\IObit
2015-03-30 19:31 - 2013-02-17 12:49 - 00000000 ____D () C:\ProgramData\Avery
2015-03-29 21:10 - 2013-08-22 08:13 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2015-03-21 20:46 - 2013-12-19 21:32 - 00000000 ____D () C:\Program Files\Opera
2015-03-16 19:12 - 2012-10-14 17:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2015-03-14 20:51 - 2014-11-30 17:53 - 00012577 _____ () C:\Users\Martina\Desktop\Mabo´s Bees.xlsx
2015-03-13 17:54 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\rescache
2015-03-13 16:41 - 2013-08-22 09:22 - 00756136 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2015-03-12 21:45 - 2013-08-22 10:17 - 00000000 ___RD () C:\WINDOWS\ToastData
2015-03-12 21:45 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-12 21:45 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-12 21:45 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\WinStore
2015-03-12 21:45 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Windows Defender
2015-03-12 13:51 - 2010-06-28 15:46 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-12 13:50 - 2012-07-26 08:43 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-03-12 13:49 - 2013-07-22 23:28 - 00000000 ____D () C:\WINDOWS\system32\MRT
2015-03-12 13:43 - 2010-06-28 16:33 - 119837696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-03-12 13:41 - 2013-08-22 10:17 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-10 09:43 - 2013-06-24 08:55 - 01374720 ___SH () C:\Users\Martina\Downloads\Thumbs.db
2015-03-08 10:37 - 2012-09-02 20:38 - 00000000 ____D () C:\KelWin
2015-03-05 16:18 - 2010-06-28 15:55 - 00222272 _____ () C:\Users\Martina\AppData\Local\GDIPFONTCACHEV1.DAT
2015-03-03 15:16 - 2011-12-09 09:25 - 00246920 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2015-03-02 21:26 - 2014-10-07 11:17 - 00000000 ____D () C:\Users\Martina\AppData\Local\Viber

==================== Files in the root of some directories =======

2013-01-31 20:01 - 2013-01-31 20:01 - 0038413 _____ () C:\Users\Martina\AppData\Roaming\Microsoft Excel 97-2003.ADR
2013-01-31 20:00 - 2013-07-23 06:45 - 0009307 _____ () C:\Users\Martina\AppData\Roaming\Microsoft Excel 97-2003.EML
2012-02-27 09:26 - 2012-02-27 09:26 - 0000000 _____ () C:\Users\Martina\AppData\Roaming\wklnhst.dat
2013-06-04 12:47 - 2013-06-04 12:47 - 0004096 ____H () C:\Users\Martina\AppData\Local\keyfile3.drm
2014-02-11 21:35 - 2014-02-11 21:35 - 0007597 _____ () C:\Users\Martina\AppData\Local\Resmon.ResmonCfg
2014-02-13 18:20 - 2014-02-13 18:20 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2010-06-28 15:43 - 2009-08-17 05:16 - 0131368 _____ () C:\ProgramData\FullRemove.exe
2012-12-14 16:50 - 2012-12-14 16:50 - 0000107 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
2014-01-29 19:49 - 2014-02-11 22:13 - 0000000 ____H () C:\ProgramData\PKP_DLes.DAT
2014-01-29 19:48 - 2014-02-11 22:17 - 0000000 ____H () C:\ProgramData\PKP_DLet.DAT
2014-01-29 19:48 - 2014-02-11 22:17 - 0000000 ____H () C:\ProgramData\PKP_DLev.DAT

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-03-31 11:30

==================== End Of Log ============================

Re: Prosím o kontrolu

Napsal: 02 dub 2015 17:31
od vyosek
:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    HKLM\...\Run: [UpdatePDRShortCut] => C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe [222504 2008-01-04] (CyberLink Corp.)
    HKLM\...\Run: [Sony PC Companion] => C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [446648 2013-01-07] (Sony)
    HKLM\...\Run: [UCam_Menu] => C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [222504 2009-05-19] (CyberLink Corp.)
    HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-11-20] (Adobe Systems Incorporated)
    HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [271744 2014-12-18] (Oracle Corporation)
    HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
    HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [26232152 2015-02-19] (Google)
    HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [ISUSPM Startup] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.EXE [249856 2005-08-11] (Macrovision Corporation)
    HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [5529880 2015-03-13] (Piriform Ltd)
    HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [NETGEARGenie] => C:\Program Files\NETGEAR Genie\bin\NETGEARGenie.exe [602880 2014-12-15] (NETGEAR Inc.)
    HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\RunOnce: [Adobe Speed Launcher] => 1427782229
    ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
    ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
    ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
    ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] -> {99FD978C-D287-4F50-827F-B2C658EDA8E7} => No File
    ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 2 (GFS Stub)] -> {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} => No File
    ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] -> {920E6DB1-9907-4370-B3A0-BAFC03D81399} => No File
    ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 3 (GFS Folder)] -> {16F3DD56-1AF5-4347-846D-7C10C4192619} => No File
    ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] -> {2916C86E-86A6-43FE-8112-43ABE6BF8DCC} => No File
    
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
    HKU\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
    SearchScopes: HKLM -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}
    SearchScopes: HKLM -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7SMSN
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
    SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL = 
    
    CHR HKU\S-1-5-21-3670137199-2938631228-624182700-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - https://clients2.google.com/service/update2/crx
    
    S1 FNETURPX; System32\drivers\FNETURPX.SYS [X]
    U3 idsvc; No ImagePath
    
    2015-03-31 19:13 - 2015-03-31 19:13 - 00019810 _____ () C:\Users\Martina\Desktop\FRST.txt
    2015-03-31 07:23 - 2015-03-31 06:51 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
    2015-03-31 06:53 - 2015-03-31 07:25 - 00024009 _____ () C:\zoek-results.log
    2015-03-31 06:51 - 2015-03-31 07:21 - 00000000 ____D () C:\zoek_backup
    2015-03-31 06:48 - 2015-03-31 06:48 - 04170178 _____ () C:\Users\Martina\Downloads\zoek.zip
    2015-03-30 20:37 - 2015-03-31 07:24 - 00003830 _____ () C:\WINDOWS\PFRO.log
    2015-03-30 20:37 - 2015-03-31 07:24 - 00000154 _____ () C:\WINDOWS\setupact.log
    2015-03-30 20:37 - 2015-03-30 20:37 - 00000000 _____ () C:\WINDOWS\setuperr.log
    2015-03-30 20:31 - 2015-03-30 20:34 - 00000000 ____D () C:\AdwCleaner
    2015-03-30 20:30 - 2015-03-30 20:30 - 02208768 _____ () C:\Users\Martina\Desktop\adwcleaner_4.200.exe
    2015-03-30 19:54 - 2015-03-30 19:54 - 00000000 ____D () C:\Program Files\Common Files\IObit
    2015-03-29 21:04 - 2015-03-29 21:04 - 00023984 _____ () C:\Users\Martina\Desktop\Addition.txt
    2015-03-29 20:54 - 2015-03-29 20:54 - 00112640 _____ (forum.viry.cz) C:\Users\Martina\Downloads\FRSTLauncher (1).exe
    2015-03-29 20:54 - 2015-03-29 20:54 - 00112640 _____ (forum.viry.cz) C:\Users\Martina\Desktop\FRSTLauncher.exe
    2015-03-29 20:01 - 2015-03-29 20:01 - 00000247 _____ () C:\WINDOWS\system32\2015-03-29-18-01-00.058-aswFe.exe-5444.log
    2015-03-29 19:54 - 2015-03-29 20:00 - 00000247 _____ () C:\WINDOWS\system32\2015-03-29-17-54-18.020-aswFe.exe-4924.log
    2015-03-29 19:54 - 2015-03-29 19:54 - 00000197 _____ () C:\WINDOWS\system32\2015-03-29-17-54-16.021-AvastVBoxSVC.exe-3164.log
    C:\Users\Martina\xobglu16.dll
    C:\Users\Martina\xobglu32.dll
    
    Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
    Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_Administrator.job => C:\Program Files\IObit\IObit Uninstaller\IObitUninstaler.exe
    Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_Martina.job => C:\Program Files\IObit\IObit Uninstaller\IObitUninstaler.exe
    
    Hosts:
    EmptyTemp:
    Reboot:
    End
    
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt

Re: Prosím o kontrolu

Napsal: 03 dub 2015 11:22
od mabor
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 11-03-2015
Ran by Martina at 2015-04-03 11:50:03 Run:1
Running from C:\Users\Martina\Desktop
Loaded Profiles: Martina (Available profiles: Martina)
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
Start
CloseProcesses:
CreateRestorePoint:

HKLM\...\Run: [UpdatePDRShortCut] => C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe [222504 2008-01-04] (CyberLink Corp.)
HKLM\...\Run: [Sony PC Companion] => C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [446648 2013-01-07] (Sony)
HKLM\...\Run: [UCam_Menu] => C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [222504 2009-05-19] (CyberLink Corp.)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-11-20] (Adobe Systems Incorporated)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [271744 2014-12-18] (Oracle Corporation)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [26232152 2015-02-19] (Google)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [ISUSPM Startup] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.EXE [249856 2005-08-11] (Macrovision Corporation)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [5529880 2015-03-13] (Piriform Ltd)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\Run: [NETGEARGenie] => C:\Program Files\NETGEAR Genie\bin\NETGEARGenie.exe [602880 2014-12-15] (NETGEAR Inc.)
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\...\RunOnce: [Adobe Speed Launcher] => 1427782229
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] -> {99FD978C-D287-4F50-827F-B2C658EDA8E7} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 2 (GFS Stub)] -> {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] -> {920E6DB1-9907-4370-B3A0-BAFC03D81399} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 3 (GFS Folder)] -> {16F3DD56-1AF5-4347-846D-7C10C4192619} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] -> {2916C86E-86A6-43FE-8112-43ABE6BF8DCC} => No File

HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
SearchScopes: HKLM -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKLM -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://www.google.com/search?sourceid=i ... lz=1I7SMSN
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKU\S-1-5-21-3670137199-2938631228-624182700-1001 -> {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL =

CHR HKU\S-1-5-21-3670137199-2938631228-624182700-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - https://clients2.google.com/service/update2/crx

S1 FNETURPX; System32\drivers\FNETURPX.SYS [X]
U3 idsvc; No ImagePath

2015-03-31 19:13 - 2015-03-31 19:13 - 00019810 _____ () C:\Users\Martina\Desktop\FRST.txt
2015-03-31 07:23 - 2015-03-31 06:51 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2015-03-31 06:53 - 2015-03-31 07:25 - 00024009 _____ () C:\zoek-results.log
2015-03-31 06:51 - 2015-03-31 07:21 - 00000000 ____D () C:\zoek_backup
2015-03-31 06:48 - 2015-03-31 06:48 - 04170178 _____ () C:\Users\Martina\Downloads\zoek.zip
2015-03-30 20:37 - 2015-03-31 07:24 - 00003830 _____ () C:\WINDOWS\PFRO.log
2015-03-30 20:37 - 2015-03-31 07:24 - 00000154 _____ () C:\WINDOWS\setupact.log
2015-03-30 20:37 - 2015-03-30 20:37 - 00000000 _____ () C:\WINDOWS\setuperr.log
2015-03-30 20:31 - 2015-03-30 20:34 - 00000000 ____D () C:\AdwCleaner
2015-03-30 20:30 - 2015-03-30 20:30 - 02208768 _____ () C:\Users\Martina\Desktop\adwcleaner_4.200.exe
2015-03-30 19:54 - 2015-03-30 19:54 - 00000000 ____D () C:\Program Files\Common Files\IObit
2015-03-29 21:04 - 2015-03-29 21:04 - 00023984 _____ () C:\Users\Martina\Desktop\Addition.txt
2015-03-29 20:54 - 2015-03-29 20:54 - 00112640 _____ (forum.viry.cz) C:\Users\Martina\Downloads\FRSTLauncher (1).exe
2015-03-29 20:54 - 2015-03-29 20:54 - 00112640 _____ (forum.viry.cz) C:\Users\Martina\Desktop\FRSTLauncher.exe
2015-03-29 20:01 - 2015-03-29 20:01 - 00000247 _____ () C:\WINDOWS\system32\2015-03-29-18-01-00.058-aswFe.exe-5444.log
2015-03-29 19:54 - 2015-03-29 20:00 - 00000247 _____ () C:\WINDOWS\system32\2015-03-29-17-54-18.020-aswFe.exe-4924.log
2015-03-29 19:54 - 2015-03-29 19:54 - 00000197 _____ () C:\WINDOWS\system32\2015-03-29-17-54-16.021-AvastVBoxSVC.exe-3164.log
C:\Users\Martina\xobglu16.dll
C:\Users\Martina\xobglu32.dll

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_Administrator.job => C:\Program Files\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_Martina.job => C:\Program Files\IObit\IObit Uninstaller\IObitUninstaler.exe

Hosts:
EmptyTemp:
Reboot:
End
*****************

Processes closed successfully.
Restore point was successfully created.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\UpdatePDRShortCut => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Sony PC Companion => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\UCam_Menu => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully.
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value deleted successfully.
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleDriveSync => value deleted successfully.
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Windows\CurrentVersion\Run\\ISUSPM Startup => value deleted successfully.
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Monitoring => value deleted successfully.
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Windows\CurrentVersion\Run\\NETGEARGenie => value deleted successfully.
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Adobe Speed Launcher => Value not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive1" => Key deleted successfully.
HKCR\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A} => Key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive2" => Key deleted successfully.
HKCR\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => Key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive3" => Key deleted successfully.
HKCR\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524} => Key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\Groove Explorer Icon Overlay 1 (GFS Unread Stub)" => Key deleted successfully.
HKCR\CLSID\{99FD978C-D287-4F50-827F-B2C658EDA8E7} => Key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\Groove Explorer Icon Overlay 2 (GFS Stub)" => Key deleted successfully.
HKCR\CLSID\{AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} => Key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)" => Key deleted successfully.
HKCR\CLSID\{920E6DB1-9907-4370-B3A0-BAFC03D81399} => Key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\Groove Explorer Icon Overlay 3 (GFS Folder)" => Key deleted successfully.
HKCR\CLSID\{16F3DD56-1AF5-4347-846D-7C10C4192619} => Key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\Groove Explorer Icon Overlay 4 (GFS Unread Mark)" => Key deleted successfully.
HKCR\CLSID\{2916C86E-86A6-43FE-8112-43ABE6BF8DCC} => Key not found.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully.
HKU\S-1-5-21-3670137199-2938631228-624182700-1001\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{15C4DF55-4B67-495A-A3D3-A497C4A49EE0}" => Key deleted successfully.
HKCR\CLSID\{15C4DF55-4B67-495A-A3D3-A497C4A49EE0} => Key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}" => Key deleted successfully.
HKCR\CLSID\{67A2568C-7A0A-4EED-AECC-B5405DE63B64} => Key not found.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"HKU\S-1-5-21-3670137199-2938631228-624182700-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" => Key deleted successfully.
HKCR\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} => Key not found.
"HKU\S-1-5-21-3670137199-2938631228-624182700-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}" => Key deleted successfully.
HKCR\CLSID\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} => Key not found.
"HKU\S-1-5-21-3670137199-2938631228-624182700-1001\SOFTWARE\Google\Chrome\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh" => Key deleted successfully.
FNETURPX => Service deleted successfully.
idsvc => Service deleted successfully.
C:\Users\Martina\Desktop\FRST.txt => Moved successfully.
C:\WINDOWS\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\Martina\Downloads\zoek.zip => Moved successfully.
C:\WINDOWS\PFRO.log => Moved successfully.
C:\WINDOWS\setupact.log => Moved successfully.
C:\WINDOWS\setuperr.log => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Users\Martina\Desktop\adwcleaner_4.200.exe => Moved successfully.
C:\Program Files\Common Files\IObit => Moved successfully.
C:\Users\Martina\Desktop\Addition.txt => Moved successfully.
"C:\Users\Martina\Downloads\FRSTLauncher (1).exe" => File/Directory not found.
"C:\Users\Martina\Desktop\FRSTLauncher.exe" => File/Directory not found.
C:\WINDOWS\system32\2015-03-29-18-01-00.058-aswFe.exe-5444.log => Moved successfully.
C:\WINDOWS\system32\2015-03-29-17-54-18.020-aswFe.exe-4924.log => Moved successfully.
C:\WINDOWS\system32\2015-03-29-17-54-16.021-AvastVBoxSVC.exe-3164.log => Moved successfully.
"C:\Users\Martina\xobglu16.dll" => File/Directory not found.
"C:\Users\Martina\xobglu32.dll" => File/Directory not found.
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\WINDOWS\Tasks\Uninstaller_SkipUac_Administrator.job => Moved successfully.
C:\WINDOWS\Tasks\Uninstaller_SkipUac_Martina.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 556.5 MB temporary data.


The system needed a reboot.

==== End of Fixlog 11:51:18 ====

Re: Prosím o kontrolu

Napsal: 03 dub 2015 16:58
od vyosek
Jak se chova PC?

Re: Prosím o kontrolu

Napsal: 03 dub 2015 17:42
od mabor
Myslím že je vše o poznání rychlejší.
Jen asi jediný problém který jsem zaznamenal , je že v Opeře nejdou otevírat soubory "pdf".

Re: Prosím o kontrolu

Napsal: 04 dub 2015 06:25
od vyosek