Stránka 1 z 1

Problemy s prohlizecem

Napsal: 25 dub 2015 23:10
od amiga
Zdravím,

zavírají se mi okna v různých web prohlížečích, internet je pomalý a vyskakuji různé nestandardní hlášení.

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-04-2015
Ran by Kristina (administrator) on LENOVO-PC on 25-04-2015 22:54:52
Running from C:\Users\Kristina\Downloads
Loaded Profiles: Kristina & Kristina_2 (Available profiles: Kristina & Kristina_2)
Platform: Windows 8.1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(FileOpen Systems Inc.) C:\Program Files\FileOpen\Services\FileOpenManager64.exe
(Maxthon) C:\Program Files (x86)\Maxthon\Modules\Service\Update\MaxthonUpdateSvc.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
() C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe
() C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe
(McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\CSP\1.3.336.0\McCSPServiceHost.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(AMD) C:\Windows\System32\atieclxx.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDIntelligent.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(FileOpen Systems Inc.) C:\Program Files\FileOpen\Services\FileOpenBroker64.exe
(Pokki) C:\Users\Kristina_2\AppData\Local\Pokki\Engine\HostAppServiceUpdater.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTStackServer.exe
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
(Pokki) C:\Users\Kristina_2\AppData\Local\Pokki\Engine\HostAppService.exe
(Pokki) C:\Users\Kristina_2\AppData\Local\Pokki\Engine\HostAppService.exe
(Pokki) C:\Users\Kristina_2\AppData\Local\Pokki\Engine\StartMenuIndexer.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe
(McAfee, Inc.) C:\Program Files\mcafee\virusscan\mcods.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\Core\mchost.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office15\WINWORD.EXE
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Corporation) C:\Windows\System32\AuthHost.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_6.3.9600.20278_x64__8wekyb3d8bbwe\numbers.exe
(AMD) C:\Windows\System32\atieclxx.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDIntelligent.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunes.exe
(Realtek semiconductor) C:\Windows\RTFTrack.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(FileOpen Systems Inc.) C:\Program Files\FileOpen\Services\FileOpenBroker64.exe
(Pokki) C:\Users\Kristina\AppData\Local\Pokki\Engine\HostAppServiceUpdater.exe
(BitTorrent Inc.) C:\Users\Kristina\AppData\Roaming\uTorrent\uTorrent.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTStackServer.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BtITunesPlugIn.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\SyncServer.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\ATH.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\Bluetooth Headset Helper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [903384 2013-07-25] (Conexant Systems, Inc.)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1647616 2012-06-13] (Conexant Systems, Inc.)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2894664 2013-08-08] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RtsFT] => C:\windows\RTFTrack.exe [6340312 2013-07-19] (Realtek semiconductor)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17111056 2014-06-19] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [193008 2014-06-19] (Lenovo(beijing) Limited)
HKLM\...\Run: [FileOpenBroker] => C:\Program Files\FileOpen\Services\FileOpenBroker64.exe [1314112 2015-02-09] (FileOpen Systems Inc.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-12-07] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\Common Files\mcafee\platform\McUICnt.exe [643064 2014-09-17] (McAfee, Inc.)
HKLM-x32\...\Run: [UpdateP2GShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [214312 2011-12-07] (CyberLink Corp.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.)
HKLM-x32\...\Run: [WsmUpdater] => C:\Program Files (x86)\Web Solution Mart\Windows 8 Codecs Pack\Updater.exe [292208 2012-05-18] (Web Solution Mart)
HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [139264 2013-05-14] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [4522496 2012-12-27] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrHelp] => C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe [2009088 2013-01-18] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-1916204915-1586930695-2207962810-1002\...\Run: [Pokki] => "%LOCALAPPDATA%\Pokki\Engine\HostAppServiceUpdater.exe" /LOGON
HKU\S-1-5-21-1916204915-1586930695-2207962810-1002\...\Run: [uTorrent] => C:\Users\Kristina\AppData\Roaming\uTorrent\uTorrent.exe [1374032 2015-02-02] (BitTorrent Inc.)
HKU\S-1-5-21-1916204915-1586930695-2207962810-1002\...\Run: [GarminExpressTrayApp] => "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
HKU\S-1-5-21-1916204915-1586930695-2207962810-1002\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2014-08-07] (Apple Inc.)
HKU\S-1-5-21-1916204915-1586930695-2207962810-1002\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [43816 2014-08-14] (Apple Inc.)
HKU\S-1-5-21-1916204915-1586930695-2207962810-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.)
HKU\S-1-5-21-1916204915-1586930695-2207962810-1005\...\Run: [Pokki] => "%LOCALAPPDATA%\Pokki\Engine\HostAppServiceUpdater.exe" /LOGON
HKU\S-1-5-18\...\Run: [GarminExpressTrayApp] => C:\Program Files (x86)\Garmin\Express Tray\tray.exe [1010008 2015-04-08] (Garmin Ltd. or its subsidiaries)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2014-06-19]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\Users\Kristina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Download Cambridge English Vocabulary in Use Collection Torrent - KickassTorrents.lnk [2015-04-17]
ShortcutTarget: Download Cambridge English Vocabulary in Use Collection Torrent - KickassTorrents.lnk -> C:\ProgramData\{d76686e8-6afa-783d-d766-686e86af1ba1}\Download Cambridge English Vocabulary in Use Collection Torrent - KickassTorrents.exe (No File)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1916204915-1586930695-2207962810-1002\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1916204915-1586930695-2207962810-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com/?pc=LCJB
HKU\S-1-5-21-1916204915-1586930695-2207962810-1002\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.lenovo.com
HKU\S-1-5-21-1916204915-1586930695-2207962810-1002\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com
HKU\S-1-5-21-1916204915-1586930695-2207962810-1005\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1916204915-1586930695-2207962810-1005\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com/?pc=LCJB
HKU\S-1-5-21-1916204915-1586930695-2207962810-1005\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.lenovo.com
HKU\S-1-5-21-1916204915-1586930695-2207962810-1005\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1916204915-1586930695-2207962810-1002 -> DefaultScope {2078DBB7-E4DA-479B-AA77-627158872F6F} URL =
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2013-11-15] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2013-11-02] (Microsoft Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2013-11-15] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2013-11-02] (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll [2015-01-13] (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll [2015-01-13] (McAfee, Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1

FireFox:
========
FF Plugin: @garmin.com/GpsControl -> C:\Program Files\Garmin GPS Plugin\npGarmin.dll [2014-03-31] (GARMIN Corp.)
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2015-01-13] ()
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-02-18] ()
FF Plugin-x32: @garmin.com/GpsControl -> C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll [2014-03-31] (GARMIN Corp.)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2015-01-13] ()
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2013-11-15] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-06] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-06] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2013-11-15] (Microsoft Corporation)
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2014-06-19]

Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR HomePage: Default -> https://www.google.cz/
CHR StartupUrls: Default -> "hxxp://www.google.cz/"
CHR Profile: C:\Users\Kristina\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Kristina\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-08-29]
CHR Extension: (Google Docs) - C:\Users\Kristina\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-08-30]
CHR Extension: (Google Drive) - C:\Users\Kristina\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-08-29]
CHR Extension: (YouTube) - C:\Users\Kristina\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-08-29]
CHR Extension: (Google Search) - C:\Users\Kristina\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-08-29]
CHR Extension: (Google Sheets) - C:\Users\Kristina\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-08-29]
CHR Extension: (Google Wallet) - C:\Users\Kristina\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-08-29]
CHR Extension: (Gmail) - C:\Users\Kristina\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-08-29]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S2 0008661429786283mcinstcleanup; C:\windows\TEMP\000866~1.EXE [851136 2014-08-08] (McAfee, Inc.)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2013-12-07] (Advanced Micro Devices, Inc.) [File not signed]
S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2252504 2013-08-07] (Broadcom Corporation.)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2012-10-26] (Brother Industries, Ltd.) [File not signed]
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation)
R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [976600 2013-09-05] (Broadcom Corporation.)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [92160 2013-07-29] (ELAN Microelectronics Corp.)
R2 FileOpenManager; C:\Program Files\FileOpen\Services\FileOpenManager64.exe [341312 2015-02-09] (FileOpen Systems Inc.)
S2 Garmin Device Interaction Service; C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe [708616 2015-04-08] (Garmin Ltd. or its subsidiaries)
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.)
S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [272776 2014-09-03] ()
R2 MaxthonUpdateSvc; C:\Program Files (x86)\Maxthon\Modules\Service\Update\MaxthonUpdateSvc.exe [1870616 2015-04-10] (Maxthon)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [562200 2015-01-13] (McAfee, Inc.)
S3 McAWFwk; c:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe [334608 2013-07-29] (McAfee, Inc.)
R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.3.336.0\McCSPServiceHost.exe [422632 2014-11-21] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.)
R3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [601864 2015-01-07] (McAfee, Inc.)
S4 McOobeSv2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.)
R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1050952 2014-11-06] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [221832 2014-10-01] (McAfee, Inc.)
R2 mfevtp; C:\windows\system32\mfevtps.exe [189920 2014-10-01] (McAfee, Inc.)
R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390632 2012-04-24] ()
R2 VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe [68368 2014-06-19] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [36096 2013-05-21] (Advanced Micro Devices, Inc.)
R2 AODDriver4.2.0; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59648 2013-09-20] (Advanced Micro Devices)
R2 APXACC; C:\Windows\system32\DRIVERS\appexDrv.sys [219360 2013-04-18] (AppEx Networks Corporation)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [222720 2013-09-24] (Advanced Micro Devices)
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-08-07] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7488176 2013-09-29] (Broadcom Corporation)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [72136 2014-10-01] (McAfee, Inc.)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)
R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [181584 2014-10-01] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [313680 2014-10-01] (McAfee, Inc.)
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [70608 2014-10-01] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [526360 2014-10-01] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [786304 2014-10-01] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\system32\DRIVERS\mfencbdc.sys [447440 2014-09-19] (McAfee, Inc.)
S3 mfencrk; C:\Windows\system32\DRIVERS\mfencrk.sys [96600 2014-09-19] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [348560 2014-10-01] (McAfee, Inc.)
S3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew02.sys [4649440 2013-06-18] (Intel Corporation)
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [8247640 2013-07-19] (Realtek Semiconductor Corp.)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-14] ("CyberLink)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-25 22:55 - 2015-04-25 22:55 - 02099712 _____ (Farbar) C:\Users\Kristina\Downloads\FRST64 (1).exe
2015-04-25 22:54 - 2015-04-25 22:56 - 00024306 _____ () C:\Users\Kristina\Downloads\FRST.txt
2015-04-25 22:54 - 2015-04-25 22:55 - 00000000 ____D () C:\FRST
2015-04-25 22:53 - 2015-04-25 22:54 - 02099712 _____ (Farbar) C:\Users\Kristina\Desktop\FRST64.exe
2015-04-25 22:10 - 2015-04-25 22:16 - 00000000 ____D () C:\Users\Kristina_2\Desktop\Photos iPhone
2015-04-25 22:09 - 2015-04-25 22:09 - 00000000 ____D () C:\Users\Kristina_2\Desktop\DCIM
2015-04-25 22:05 - 2015-04-25 22:06 - 00000000 ____D () C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2015-04-25 21:59 - 2015-04-25 21:59 - 00000000 ____D () C:\Users\Kristina_2\AppData\Local\Apple Computer
2015-04-23 11:48 - 2015-04-25 22:07 - 00003758 _____ () C:\windows\System32\Tasks\AutoKMS
2015-04-20 17:39 - 2015-04-20 17:39 - 01831424 _____ () C:\Users\Kristina_2\Downloads\Projekce2050.ppt
2015-04-19 17:12 - 2015-04-19 17:12 - 00000000 ____D () C:\Users\Kristina_2\AppData\Roaming\Maxthon3
2015-04-18 08:23 - 2015-04-18 08:23 - 00000000 ____D () C:\Users\Kristina\AppData\Roaming\WebApp
2015-04-18 08:21 - 2015-04-18 08:21 - 00000000 ____D () C:\Users\Kristina\Documents\Lenovo
2015-04-18 08:21 - 2015-04-18 08:21 - 00000000 ____D () C:\Users\Kristina\Documents\CyberLink
2015-04-18 08:21 - 2015-04-18 08:21 - 00000000 ____D () C:\Users\Kristina\AppData\Roaming\CyberLink
2015-04-18 08:11 - 2015-04-18 08:18 - 00000000 ____D () C:\Users\Kristina\Desktop\VIDEO_TS
2015-04-17 21:13 - 2015-04-17 21:13 - 00000000 ____D () C:\ProgramData\dkkifbimcmnajngoplacdedmkfagcgmg
2015-04-17 21:13 - 2015-04-17 21:13 - 00000000 ____D () C:\ProgramData\1790432641294492718
2015-04-17 21:13 - 2015-04-17 21:13 - 00000000 ____D () C:\Program Files (x86)\SSaalePluS
2015-04-17 21:12 - 2015-04-24 17:17 - 00000000 ____D () C:\ProgramData\{d76686e8-6afa-783d-d766-686e86af1ba1}
2015-04-17 21:12 - 2015-04-17 21:12 - 00002136 _____ () C:\Users\Kristina\Desktop\Download Cambridge English Vocabulary in Use Collection Torrent - KickassTorrents.lnk
2015-04-16 18:01 - 2015-04-19 11:27 - 00000000 ____D () C:\Users\Kristina_2\Desktop\ASS-Strategický management
2015-04-15 12:43 - 2015-03-23 22:59 - 07476032 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2015-04-15 12:43 - 2015-03-23 22:59 - 01733952 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2015-04-15 12:43 - 2015-03-23 22:59 - 00360480 _____ (Microsoft Corporation) C:\windows\system32\sechost.dll
2015-04-15 12:43 - 2015-03-23 22:58 - 01498872 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2015-04-15 12:43 - 2015-03-23 22:45 - 00257216 _____ (Microsoft Corporation) C:\windows\SysWOW64\sechost.dll
2015-04-15 12:43 - 2015-03-20 05:12 - 00246272 _____ (Microsoft Corporation) C:\windows\system32\microsoft-windows-system-events.dll
2015-04-15 12:43 - 2015-03-20 05:10 - 00285184 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll
2015-04-15 12:43 - 2015-03-20 05:10 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\wow64cpu.dll
2015-04-15 12:43 - 2015-03-20 04:17 - 00411648 _____ (Microsoft Corporation) C:\windows\system32\tracerpt.exe
2015-04-15 12:43 - 2015-03-20 03:41 - 00369152 _____ (Microsoft Corporation) C:\windows\SysWOW64\tracerpt.exe
2015-04-15 12:43 - 2015-03-20 03:40 - 00950784 _____ (Microsoft Corporation) C:\windows\system32\tdh.dll
2015-04-15 12:43 - 2015-03-20 03:16 - 00749568 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdh.dll
2015-04-15 12:42 - 2015-03-22 23:45 - 00227328 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2015-04-15 12:42 - 2015-03-22 23:09 - 01111552 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2015-04-15 12:42 - 2015-03-22 23:09 - 00957440 _____ (Microsoft Corporation) C:\windows\system32\appraiser.dll
2015-04-15 12:42 - 2015-03-22 23:09 - 00769024 _____ (Microsoft Corporation) C:\windows\system32\invagent.dll
2015-04-15 12:42 - 2015-03-22 23:09 - 00726528 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2015-04-15 12:42 - 2015-03-22 23:09 - 00419328 _____ (Microsoft Corporation) C:\windows\system32\devinv.dll
2015-04-15 12:42 - 2015-03-22 23:09 - 00030720 _____ (Microsoft Corporation) C:\windows\system32\acmigration.dll
2015-04-15 12:42 - 2015-03-14 09:54 - 00133256 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2015-04-15 12:42 - 2015-03-14 09:20 - 01385256 _____ (Microsoft Corporation) C:\windows\system32\msctf.dll
2015-04-15 12:42 - 2015-03-14 09:13 - 01124352 _____ (Microsoft Corporation) C:\windows\SysWOW64\msctf.dll
2015-04-15 12:42 - 2015-03-14 02:56 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2015-04-15 12:42 - 2015-03-14 02:56 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll
2015-04-15 12:42 - 2015-03-14 02:51 - 00015360 _____ (Microsoft Corporation) C:\windows\system32\wu.upgrade.ps.dll
2015-04-15 12:42 - 2015-03-14 02:37 - 00267264 _____ (Microsoft Corporation) C:\windows\system32\WinSetupUI.dll
2015-04-15 12:42 - 2015-03-14 02:14 - 00027136 _____ (Microsoft Corporation) C:\windows\SysWOW64\wups.dll
2015-04-15 12:42 - 2015-03-14 01:22 - 03678720 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2015-04-15 12:42 - 2015-03-14 01:12 - 00140288 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll
2015-04-15 12:42 - 2015-03-14 01:12 - 00035840 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe
2015-04-15 12:42 - 2015-03-14 01:09 - 00200192 _____ (Microsoft Corporation) C:\windows\system32\storewuauth.dll
2015-04-15 12:42 - 2015-03-14 01:08 - 00408064 _____ (Microsoft Corporation) C:\windows\system32\WUSettingsProvider.dll
2015-04-15 12:42 - 2015-03-14 01:08 - 00095744 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll
2015-04-15 12:42 - 2015-03-14 01:06 - 02373632 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll
2015-04-15 12:42 - 2015-03-14 01:06 - 00891392 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2015-04-15 12:42 - 2015-03-14 01:02 - 00124928 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuwebv.dll
2015-04-15 12:42 - 2015-03-14 01:02 - 00029696 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapp.exe
2015-04-15 12:42 - 2015-03-14 00:59 - 00721920 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapi.dll
2015-04-15 12:42 - 2015-03-14 00:59 - 00081920 _____ (Microsoft Corporation) C:\windows\SysWOW64\wudriver.dll
2015-04-15 12:42 - 2015-03-13 05:32 - 24980480 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2015-04-15 12:42 - 2015-03-13 05:08 - 00584192 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2015-04-15 12:42 - 2015-03-13 05:07 - 02886144 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2015-04-15 12:42 - 2015-03-13 04:53 - 00816128 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2015-04-15 12:42 - 2015-03-13 04:50 - 06025216 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2015-04-15 12:42 - 2015-03-13 04:42 - 19695616 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2015-04-15 12:42 - 2015-03-13 04:28 - 00503296 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2015-04-15 12:42 - 2015-03-13 04:26 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2015-04-15 12:42 - 2015-03-13 04:22 - 02278400 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2015-04-15 12:42 - 2015-03-13 04:17 - 01032704 _____ (Microsoft Corporation) C:\windows\system32\inetcomm.dll
2015-04-15 12:42 - 2015-03-13 04:16 - 00664064 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2015-04-15 12:42 - 2015-03-13 04:08 - 00720384 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2015-04-15 12:42 - 2015-03-13 04:07 - 00801280 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2015-04-15 12:42 - 2015-03-13 04:00 - 14397440 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2015-04-15 12:42 - 2015-03-13 03:58 - 00259072 _____ (Microsoft Corporation) C:\windows\system32\pku2u.dll
2015-04-15 12:42 - 2015-03-13 03:50 - 00880128 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcomm.dll
2015-04-15 12:42 - 2015-03-13 03:49 - 04305408 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2015-04-15 12:42 - 2015-03-13 03:45 - 02358784 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2015-04-15 12:42 - 2015-03-13 03:44 - 00689152 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2015-04-15 12:42 - 2015-03-13 03:37 - 00208896 _____ (Microsoft Corporation) C:\windows\SysWOW64\pku2u.dll
2015-04-15 12:42 - 2015-03-13 03:34 - 12825600 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2015-04-15 12:42 - 2015-03-13 03:33 - 01548288 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2015-04-15 12:42 - 2015-03-13 03:22 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2015-04-15 12:42 - 2015-03-13 03:20 - 01888256 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2015-04-15 12:42 - 2015-03-13 03:16 - 01311232 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2015-04-15 12:42 - 2015-03-13 03:14 - 00710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2015-04-15 12:42 - 2015-03-04 11:25 - 00377152 _____ (Microsoft Corporation) C:\windows\system32\Drivers\clfs.sys
2015-04-15 12:42 - 2015-03-04 04:04 - 00075264 _____ (Microsoft Corporation) C:\windows\system32\clfsw32.dll
2015-04-15 12:42 - 2015-03-04 03:19 - 00058880 _____ (Microsoft Corporation) C:\windows\SysWOW64\clfsw32.dll
2015-04-15 12:42 - 2015-02-24 09:32 - 00991552 _____ (Microsoft Corporation) C:\windows\system32\Drivers\http.sys
2015-04-15 12:42 - 2015-02-21 00:49 - 00780800 _____ (Microsoft Corporation) C:\windows\system32\lsm.dll
2015-04-13 16:51 - 2015-04-13 16:51 - 00042489 _____ () C:\Users\Kristina_2\Downloads\sylabus-kre-SRP-2014
2015-04-11 12:02 - 2015-04-11 12:02 - 00000368 _____ () C:\Users\Kristina_2\Downloads\Analýza_v_rukou_manažera.bibtex
2015-04-09 17:49 - 2015-04-09 17:49 - 00000000 ____D () C:\Users\Default\AppData\Local\Garmin_Ltd._or_its_subsid
2015-04-09 17:49 - 2015-04-09 17:49 - 00000000 ____D () C:\Users\Default User\AppData\Local\Garmin_Ltd._or_its_subsid
2015-04-09 17:48 - 2015-04-09 17:48 - 00001917 _____ () C:\Users\Public\Desktop\Garmin Express.lnk
2015-04-08 20:48 - 2015-04-08 20:48 - 00000000 ___SD () C:\windows\SysWOW64\GWX
2015-04-08 20:48 - 2015-04-08 20:48 - 00000000 ___SD () C:\windows\system32\GWX
2015-04-08 20:31 - 2015-04-08 20:32 - 00002074 _____ () C:\out.txt
2015-04-08 20:28 - 2015-04-08 20:32 - 00000000 ____D () C:\Users\Kristina\AppData\Roaming\Ulozto File Manager
2015-04-08 20:28 - 2015-04-08 20:28 - 00001970 _____ () C:\Users\Public\Desktop\Ulož.to File Manager.lnk
2015-04-08 20:28 - 2015-04-08 20:28 - 00000000 ____D () C:\Users\Kristina\Documents\Ulozto
2015-04-08 20:28 - 2015-04-08 20:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ulož.to File Manager
2015-04-08 20:28 - 2015-04-08 20:28 - 00000000 ____D () C:\Program Files (x86)\Ulozto File Manager
2015-04-08 20:14 - 2015-04-08 20:25 - 250971650 _____ () C:\Users\Kristina\Desktop\fotky.rar
2015-04-08 20:04 - 2015-04-08 20:09 - 00000000 ____D () C:\Users\Kristina\Desktop\fotky
2015-04-08 19:46 - 2015-04-08 19:46 - 00000000 ____D () C:\windows\system32\LSC
2015-03-31 19:43 - 2015-03-31 19:43 - 00000000 ____D () C:\Users\Kristina_2\AppData\Roaming\FileOpen
2015-03-30 13:21 - 2015-04-22 12:33 - 00000000 ____D () C:\Users\Kristina_2\Desktop\ASS-Metody výzkumu
2015-03-29 13:36 - 2015-03-29 13:36 - 07361792 _____ (Microsoft Corporation) C:\Users\Kristina_2\Downloads\CzGram (1).EXE
2015-03-29 12:12 - 2015-03-29 12:12 - 07361792 _____ (Microsoft Corporation) C:\Users\Kristina_2\Downloads\CzGram.EXE
2015-03-28 17:16 - 2015-04-25 22:05 - 00003994 _____ () C:\windows\System32\Tasks\User_Feed_Synchronization-{C6C0BC69-51DB-48FF-8DB4-714EA72EB40F}
2015-03-28 17:16 - 2015-03-28 17:16 - 00000000 __SHD () C:\Users\Kristina_2\AppData\Local\EmieUserList
2015-03-28 17:16 - 2015-03-28 17:16 - 00000000 __SHD () C:\Users\Kristina_2\AppData\Local\EmieSiteList
2015-03-28 17:16 - 2015-03-28 17:16 - 00000000 __SHD () C:\Users\Kristina_2\AppData\Local\EmieBrowserModeList
2015-03-28 14:53 - 2015-04-17 21:31 - 00000000 ____D () C:\Users\Kristina\Desktop\ELVIS - The King Greatest Hits 2CD [Bubanee]

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-25 22:56 - 2014-08-29 19:34 - 00000000 ____D () C:\Users\Kristina\AppData\Roaming\uTorrent
2015-04-25 22:46 - 2014-08-30 10:26 - 00000980 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-25 22:37 - 2014-10-20 08:24 - 00003600 _____ () C:\windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1916204915-1586930695-2207962810-1005
2015-04-25 22:37 - 2014-08-24 08:54 - 00003600 _____ () C:\windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1916204915-1586930695-2207962810-1002
2015-04-25 22:21 - 2014-06-19 17:10 - 01921247 _____ () C:\windows\WindowsUpdate.log
2015-04-25 22:09 - 2013-08-22 15:46 - 00071511 _____ () C:\windows\setupact.log
2015-04-25 22:08 - 2014-08-29 19:57 - 00000000 ____D () C:\Users\Kristina_2\AppData\Local\Pokki
2015-04-25 22:03 - 2014-08-24 09:26 - 00000000 ___DO () C:\Users\Kristina\OneDrive
2015-04-25 22:01 - 2014-08-30 10:26 - 00000976 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-04-25 22:01 - 2014-08-24 08:46 - 00000000 ____D () C:\Users\Kristina\AppData\Local\Pokki
2015-04-25 22:00 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\system32\sru
2015-04-25 21:59 - 2014-10-20 08:19 - 00000000 ____D () C:\Users\Kristina_2\AppData\Roaming\Apple Computer
2015-04-23 11:51 - 2014-06-19 17:50 - 00000000 ____D () C:\Program Files (x86)\McAfee
2015-04-23 11:47 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\AppReadiness
2015-04-23 11:45 - 2014-10-20 08:21 - 00000000 ___RD () C:\Users\Kristina_2\OneDrive
2015-04-22 12:35 - 2014-08-30 10:20 - 05402240 _____ () C:\Users\Public\CAFADEBUG.log
2015-04-22 11:01 - 2014-08-24 08:55 - 00003986 _____ () C:\windows\System32\Tasks\User_Feed_Synchronization-{90396B5D-6493-4732-81F1-AB9463FC5F67}
2015-04-21 18:25 - 2014-10-20 08:18 - 00000000 ____D () C:\Users\Kristina_2\AppData\Local\Packages
2015-04-21 14:31 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\rescache
2015-04-19 09:41 - 2014-06-19 17:48 - 00739924 _____ () C:\windows\system32\perfh005.dat
2015-04-19 09:41 - 2014-06-19 17:48 - 00151610 _____ () C:\windows\system32\perfc005.dat
2015-04-19 09:41 - 2014-03-18 10:53 - 01745984 _____ () C:\windows\system32\PerfStringBackup.INI
2015-04-18 08:21 - 2014-08-24 08:49 - 00000000 ____D () C:\Users\Kristina\AppData\Roaming\Lenovo
2015-04-18 08:21 - 2014-06-19 18:08 - 00000000 ____D () C:\ProgramData\Lenovo
2015-04-18 08:21 - 2014-06-19 17:47 - 00000000 ____D () C:\ProgramData\CyberLink
2015-04-17 10:55 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\AppCompat
2015-04-16 19:20 - 2015-02-28 09:47 - 00006538 _____ () C:\windows\BRRBCOM.INI
2015-04-16 19:15 - 2015-03-04 12:07 - 00002350 _____ () C:\Users\Kristina_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk
2015-04-16 19:12 - 2015-01-27 23:24 - 00022016 ___SH () C:\Users\Kristina_2\Desktop\Thumbs.db
2015-04-16 19:07 - 2013-08-22 14:25 - 00262144 ___SH () C:\windows\system32\config\ELAM
2015-04-16 19:06 - 2013-08-22 15:45 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2015-04-16 18:05 - 2013-08-22 14:25 - 00262144 ___SH () C:\windows\system32\config\BBI
2015-04-16 18:04 - 2014-06-19 18:08 - 00004608 _____ () C:\windows\system32\VfService.trf
2015-04-16 18:03 - 2015-01-05 20:57 - 00000000 ____D () C:\windows\system32\appraiser
2015-04-16 18:03 - 2014-08-30 07:29 - 00000000 ___SD () C:\windows\system32\CompatTel
2015-04-16 16:46 - 2014-08-30 10:27 - 00002214 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-04-16 10:45 - 2013-08-22 16:20 - 00000000 ____D () C:\windows\CbsTemp
2015-04-15 19:00 - 2015-01-11 19:45 - 00000000 ____D () C:\Users\Kristina\AppData\Roaming\Skype
2015-04-15 15:08 - 2014-08-24 10:22 - 00000000 ____D () C:\windows\system32\MRT
2015-04-15 14:56 - 2014-08-24 10:22 - 128913832 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2015-04-15 12:40 - 2014-11-13 05:04 - 00017408 _____ (Microsoft Corporation) C:\windows\system32\wuaext.dll
2015-04-14 00:24 - 2015-01-11 19:42 - 00792056 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2015-04-14 00:24 - 2015-01-11 19:42 - 00178168 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-04-09 17:50 - 2014-06-19 17:10 - 00000000 ____D () C:\ProgramData\Package Cache
2015-04-09 17:49 - 2014-09-16 20:11 - 00000000 ____D () C:\ProgramData\Garmin
2015-04-09 17:49 - 2014-09-16 20:05 - 00000000 ____D () C:\Program Files (x86)\Garmin
2015-04-09 17:48 - 2014-09-16 20:11 - 00003556 _____ () C:\windows\System32\Tasks\GarminUpdaterTask
2015-04-09 17:48 - 2014-09-16 20:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin
2015-03-31 19:42 - 2015-01-18 13:38 - 00000000 ____D () C:\Users\Kristina_2\AppData\Local\Adobe
2015-03-31 19:42 - 2014-10-20 08:18 - 00000000 ____D () C:\Users\Kristina_2\AppData\Roaming\Adobe
2015-03-28 12:02 - 2014-08-29 19:57 - 00000000 ____D () C:\Users\Kristina_2
2015-03-28 10:21 - 2014-08-24 08:46 - 00000000 ____D () C:\Users\Kristina
2015-03-28 10:14 - 2014-03-18 10:44 - 00030652 _____ () C:\windows\PFRO.log
2015-03-28 10:12 - 2013-08-22 16:36 - 00000000 ___RD () C:\windows\ToastData
2015-03-28 10:11 - 2013-08-22 16:37 - 00004167 _____ () C:\windows\DtcInstall.log
2015-03-28 10:00 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-28 10:00 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-28 10:00 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-03-28 10:00 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-28 10:00 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-28 10:00 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-03-28 10:00 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-28 10:00 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-28 10:00 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-03-28 10:00 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\MediaViewer
2015-03-28 10:00 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\FileManager
2015-03-28 10:00 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\Camera
2015-03-28 09:59 - 2014-03-18 10:38 - 00000000 ____D () C:\Program Files\Windows Journal
2015-03-28 09:59 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\SysWOW64\sppui
2015-03-28 09:59 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\SysWOW64\setup
2015-03-28 09:59 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\SysWOW64\migwiz
2015-03-28 09:59 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\SysWOW64\Com
2015-03-28 09:59 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Portable Devices
2015-03-28 09:59 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2015-03-28 09:59 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Multimedia Platform
2015-03-28 09:59 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\System
2015-03-28 09:59 - 2013-08-22 14:36 - 00000000 ____D () C:\windows\SysWOW64\oobe
2015-03-28 09:59 - 2013-08-22 14:36 - 00000000 ____D () C:\windows\SysWOW64\Dism
2015-03-28 09:59 - 2013-08-22 14:36 - 00000000 ____D () C:\windows\servicing
2015-03-28 09:58 - 2013-08-22 16:36 - 00000000 ___SD () C:\windows\system32\dsc
2015-03-28 09:58 - 2013-08-22 16:36 - 00000000 ___RD () C:\windows\ImmersiveControlPanel
2015-03-28 09:58 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\system32\WinBioPlugIns
2015-03-28 09:58 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\system32\SystemResetPlatform
2015-03-28 09:58 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\system32\sppui
2015-03-28 09:58 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\system32\setup
2015-03-28 09:58 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\system32\migwiz
2015-03-28 09:58 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\system32\Com
2015-03-28 09:58 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\IME
2015-03-28 09:58 - 2013-08-22 14:36 - 00000000 ____D () C:\windows\system32\Sysprep
2015-03-28 09:58 - 2013-08-22 14:36 - 00000000 ____D () C:\windows\system32\oobe
2015-03-28 09:58 - 2013-08-22 14:36 - 00000000 ____D () C:\windows\system32\Dism
2015-03-28 09:56 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\WindowsPowerShell
2015-03-28 09:56 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender
2015-03-28 09:56 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Portable Devices
2015-03-28 09:56 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer
2015-03-28 09:56 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Multimedia Platform
2015-03-28 09:56 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender

==================== Files in the root of some directories =======

2014-06-19 17:17 - 2014-06-19 17:17 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Some content of TEMP:
====================
C:\Users\Kristina\AppData\Local\Temp\730.exe
C:\Users\Kristina\AppData\Local\Temp\autorun.exe
C:\Users\Kristina\AppData\Local\Temp\lua5.1.dll
C:\Users\Kristina\AppData\Local\Temp\lua51.dll
C:\Users\Kristina\AppData\Local\Temp\oct1CF1.tmp.exe
C:\Users\Kristina\AppData\Local\Temp\oct2CF5.tmp.exe
C:\Users\Kristina\AppData\Local\Temp\oct41E8.tmp.exe
C:\Users\Kristina\AppData\Local\Temp\oct42C8.tmp.exe
C:\Users\Kristina\AppData\Local\Temp\oct4B2D.tmp.exe
C:\Users\Kristina\AppData\Local\Temp\oct7442.tmp.exe
C:\Users\Kristina\AppData\Local\Temp\octFCF3.tmp.exe
C:\Users\Kristina\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Kristina\AppData\Local\Temp\_is923D.exe
C:\Users\Kristina\AppData\Local\Temp\_isD930.exe
C:\Users\Kristina\AppData\Local\Temp\_isE7BA.exe
C:\Users\Kristina_2\AppData\Local\Temp\oct2CB.tmp.exe
C:\Users\Kristina_2\AppData\Local\Temp\oct54C9.tmp.exe
C:\Users\Kristina_2\AppData\Local\Temp\oct7832.tmp.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-04-21 16:01

==================== End Of Log ============================

Re: Problemy s prohlizecem

Napsal: 26 dub 2015 07:16
od Márty84
Zdravim :)

:arrow: Stahnete AdwCleaner https://toolslib.net/downloads/finish/1/ a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Cleaning
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner\AdwCleaner [S?].txt ). Ten mi sem zkopirujte.

Re: Problemy s prohlizecem

Napsal: 26 dub 2015 07:49
od amiga
# AdwCleaner v4.202 - Log vytvořen 26/04/2015 v 07:38:58
# Aktualizováno 23/04/2015 by Xplode
# Databáze : 2015-04-23.2 [Server]
# Operační system : Windows 8.1 (x64)
# Uživatelské jméno : Kristina - LENOVO-PC
# Spuštěno z : C:\Users\Kristina\Desktop\adwcleaner_4.202.exe
# Nastavení : Čištění

***** [ Služby ] *****

[#] Služba Smazáno : 0008661429786283mcinstcleanup

***** [ Soubory / Složky ] *****

Složka Smazáno : C:\ProgramData\1790432641294492718
Složka Smazáno : C:\ProgramData\{d76686e8-6afa-783d-d766-686e86af1ba1}
Složka Smazáno : C:\Program Files (x86)\SSaalePluS
Složka Smazáno : C:\Users\Kristina\AppData\Local\pokki
Složka Smazáno : C:\Users\Kristina_2\AppData\Local\pokki
Složka Smazáno : C:\ProgramData\dkkifbimcmnajngoplacdedmkfagcgmg
Soubor Smazáno : C:\Users\Kristina_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_filesharefanatic.dl.tb.ask.com_0.localstorage
Soubor Smazáno : C:\Users\Kristina_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_filesharefanatic.dl.tb.ask.com_0.localstorage-journal

***** [ Naplánované úlohy ] *****


***** [ Zástupci ] *****


***** [ Registry ] *****

Klíč Smazáno : HKCU\Software\Classes\pokki
Hodnota Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Pokki]
Klíč Smazáno : HKCU\Software\Classes\AllFileSystemObjects\shell\pokki
Klíč Smazáno : HKCU\Software\Classes\Directory\shell\pokki
Klíč Smazáno : HKCU\Software\Classes\Drive\shell\pokki
Klíč Smazáno : HKCU\Software\Classes\lnkfile\shell\pokki
Klíč Smazáno : HKCU\Software\Pokki
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki_Start_Menu
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B696F285-F54E-2524-58B1-E06A70ABE6BE}
Data Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - *.local

***** [ Prohlížeče ] *****

Re: Problemy s prohlizecem

Napsal: 26 dub 2015 08:14
od Márty84
:arrow: Postupujte podle navodu kolegy
vyosek píše: :arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte

:arrow: Postupujte podle navodu kolegy
vyosek píše: :arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    autoclean;
    resethosts;
    emptyclsid;
    IEdefaults;
    FFdefaults;
    CHRdefaults;
    emptyIEcache;
    emptyFFcache;
    emptyCHRcache;
    emptyalltemp;
    emptyflash;
    emptyjava;
    emptyrecycle.bin;
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem




23.5. pro neaktivitu :lock: http://forum.viry.cz/viewtopic.php?f=12&t=123975