Stránka 1 z 2

start a aplikace

Napsal: 11 dub 2017 11:34
od rudkr63
Prosím o kontrolu logu:V případě zadání "prohledat windows" se sice okno otevře,ale po vepsání nereaguje. V případě stažení aplikace (Mozilla,VLC...) se apl.zobrazí na ploše, ale nidke v nabídce start.Vložit ji tam pr.klik-připnout na start také nejde.Zůstává jen na ploše, odkud jde spustit.Další aplikace jako malování,Store... jen probliknou a pak se zavřou, nejde spustit.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15-03-2017
Ran by ruda6 (administrator) on RUDA-II (11-04-2017 11:37:39)
Running from C:\Users\ruda6\Desktop
Loaded Profiles: ruda6 (Available Profiles: ruda6 & DefaultAppPool)
Platform: Windows 10 Home Version 1703 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\igfxCUIService.exe
(Intel Corporation) C:\Windows\System32\IntelSSTAPO\ParameterService\ParameterService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Windows (R) Win 7 DDK provider) C:\Windows\System32\AdminService.exe
(ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\IntelCpHDCPSvc.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_WT50RP.EXE
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(Microsoft Corporation) C:\Windows\System32\SecurityHealthService.exe
(Microsoft Corporation) C:\Windows\System32\TCPSVCS.EXE
(Acer Cloud Technology) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
(Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\IntelCpHeciSvc.exe
(AVAST Software s.r.o.) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\igfxEM.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QALSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QAAgent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QALockHandler.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QAAdminAgent.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\igfxext.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Acer) C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATII4E.EXE
(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATII4E.EXE
(Skillbrains) C:\Program Files (x86)\Skillbrains\lightshot\5.4.0.1\Lightshot.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
(SweetLabs, Inc) C:\Users\ruda6\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe
() C:\Program Files (x86)\Acer\Care Center\ACCStd.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\ePowerButton_NB.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(eM Client s.r.o.) C:\Program Files (x86)\eM Client\MailClient.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.exe
(eM Client s.r.o.) C:\Program Files (x86)\eM Client\MailClient.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16475392 2016-06-03] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_TrueHarmony] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1454336 2016-06-03] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320584 2016-06-01] (Intel Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2398776 2016-06-15] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [213824 2017-04-09] (AVAST Software)
HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [225944 2016-07-11] ()
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1057408 2012-06-08] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [ArcSoft Connection Service] => C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [203264 2009-10-10] (ArcSoft Inc.)
HKU\S-1-5-21-2427891007-549799556-2631738521-1001\...\Run: [AcerPortal] => C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe [2418392 2016-09-09] (Acer)
HKU\S-1-5-21-2427891007-549799556-2631738521-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9364696 2017-03-03] (Piriform Ltd)
HKU\S-1-5-21-2427891007-549799556-2631738521-1001\...\Run: [eM Client] => C:\Program Files (x86)\eM Client\MailClient.exe [24742760 2016-10-21] (eM Client s.r.o.)
HKU\S-1-5-21-2427891007-549799556-2631738521-1001\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATII4E.EXE [283232 2012-02-28] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-2427891007-549799556-2631738521-1001\...\Run: [EPLTarget\P0000000000000001] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATII4E.EXE [283232 2012-02-28] (SEIKO EPSON CORPORATION)
ShellIconOverlayIdentifiers: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2016-05-30] (Acer Incorporated)
ShellIconOverlayIdentifiers: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2016-05-30] (Acer Incorporated)
ShellIconOverlayIdentifiers: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2016-05-30] (Acer Incorporated)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-04-09] (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{58f7a18a-7b4a-4c6c-a9b8-e7e9e4abd041}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{76a45111-a01f-4390-a3cf-a224f6fd689d}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
HKU\S-1-5-21-2427891007-549799556-2631738521-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?cobrand=acer17win10.msn.co ... 17&pc=ACTE
HKU\S-1-5-21-2427891007-549799556-2631738521-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer17win10.msn.com/?pc=ACTE
SearchScopes: HKU\S-1-5-21-2427891007-549799556-2631738521-1001 -> DefaultScope {B9C58563-D9E1-484E-BBFF-77DF36AB1DB7} URL =
SearchScopes: HKU\S-1-5-21-2427891007-549799556-2631738521-1001 -> {D2332C21-7B3D-46D5-8CCE-D85C19FE05A9} URL =
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2017-04-09] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2017-04-09] (Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-04-09] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-04-09] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-04-09] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-04-09] (Microsoft Corporation)

FireFox:
========
FF DefaultProfile: 7a3kxtca.default
FF ProfilePath: C:\Users\ruda6\AppData\Roaming\Mozilla\Firefox\Profiles\7a3kxtca.default [2017-04-11]
FF Homepage: Mozilla\Firefox\Profiles\7a3kxtca.default -> hxxps://www.seznam.cz/
FF Extension: (Avast Passwords) - C:\Users\ruda6\AppData\Roaming\Mozilla\Firefox\Profiles\7a3kxtca.default\Extensions\jid1-r1tDuNiNb4SEww@jetpack.xpi [2017-04-10]
FF Extension: (S3.Google Translator) - C:\Users\ruda6\AppData\Roaming\Mozilla\Firefox\Profiles\7a3kxtca.default\Extensions\s3google@translator.xpi [2017-04-09]
FF Extension: (Tab Mix Plus) - C:\Users\ruda6\AppData\Roaming\Mozilla\Firefox\Profiles\7a3kxtca.default\Extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi [2017-04-09]
FF Extension: (Disable Prefetch) - C:\Users\ruda6\AppData\Roaming\Mozilla\Firefox\Profiles\7a3kxtca.default\features\{52462704-7499-4225-8eac-843a1a965c9c}\disable-prefetch@mozilla.org.xpi [2017-04-10]
FF Extension: (Site Deployment Checker) - C:\Program Files\Mozilla Firefox\browser\features\deployment-checker@mozilla.org.xpi [2017-04-10] [not signed]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF48
FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF48 [2017-04-10]
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF48
FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF48 [2017-04-10]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF48
FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF48
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2017-04-09] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-04-09] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-04-09] (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2017-03-13] ()

Chrome:
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> hxxp://www.google.cz/?gws_rd=ssl
CHR StartupUrls: Default -> "hxxps://www.google.cz/webhp?authuser=0&ei=RwGyW ... EKkuCAcoAg"
CHR DefaultSearchKeyword: Default -> lp
CHR Profile: C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default [2017-04-11]
CHR Extension: (Překladač Google) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2017-04-09]
CHR Extension: (Prezentace Google) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-04-09]
CHR Extension: (Dokumenty Google) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-04-09]
CHR Extension: (Disk Google) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-04-09]
CHR Extension: (YouTube) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-04-09]
CHR Extension: (Adblock Plus) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2017-04-09]
CHR Extension: (JSONView) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\chklaanhfefbnpoihckbnefhakgolnmc [2017-04-09]
CHR Extension: (Black Menu for Google™) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\eignhdfgaldabilaaegmdfbajngjmoke [2017-04-09]
CHR Extension: (Avast Passwords) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\emhginjpijfggbofeediiojmdlmlkoik [2017-04-09]
CHR Extension: (Avast SafePrice) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2017-04-10]
CHR Extension: (Tabulky Google) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-04-09]
CHR Extension: (Dokumenty Google offline) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-04-09]
CHR Extension: (Avast Online Security) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2017-04-10]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2017-04-09]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-04-09]
CHR Extension: (ImTranslator: Překladač, Slovník, Hlas) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\noaijdpnepcgjemiklgfkcfbkokogabh [2017-04-09]
CHR Extension: (Gmail) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-04-09]
CHR Extension: (Chrome Media Router) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-04-09]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [109056 2009-09-28] (ArcSoft Inc.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7398336 2017-04-09] (AVAST Software s.r.o.)
R2 AtherosSvc; C:\WINDOWS\system32\AdminService.exe [347064 2016-08-26] (Windows (R) Win 7 DDK provider)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [261712 2017-04-09] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [310496 2017-04-10] (AVAST Software)
R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2267352 2016-08-30] (Acer Incorporated)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [3737792 2017-03-26] (Microsoft Corporation)
R3 cphs; C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\IntelCpHeciSvc.exe [310256 2017-02-07] (Intel Corporation)
R2 cplspcon; C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\IntelCpHDCPSvc.exe [488944 2017-02-07] (Intel Corporation)
S2 Dashlane Upgrade Service; C:\Program Files (x86)\Dashlane\Upgrade\DashlaneUpgradeService.exe [83992 2016-08-04] (Dashlane, Inc.)
S3 DevicesFlowUserSvc; C:\WINDOWS\System32\DevicesFlowBroker.dll [689152 2017-03-18] (Microsoft Corporation)
S3 DevicesFlowUserSvc_bba92; C:\WINDOWS\system32\svchost.exe [47664 2017-03-18] (Microsoft Corporation)
S3 DevicesFlowUserSvc_bba92; C:\WINDOWS\SysWOW64\svchost.exe [40904 2017-03-18] (Microsoft Corporation)
R2 DusmSvc; C:\WINDOWS\System32\dusmsvc.dll [302592 2017-03-18] (Microsoft Corporation)
R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [135824 2011-12-12] (Seiko Epson Corporation)
S2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [350576 2017-03-13] (WildTangent)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1165368 2016-06-15] (NVIDIA Corporation)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [17992 2016-06-01] (Intel Corporation)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\igfxCUIService.exe [350704 2017-02-07] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [974632 2016-02-19] (Intel(R) Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2016-03-02] (Intel Corporation) [File not signed]
R2 IntelSSTSvc; C:\WINDOWS\system32\IntelSSTAPO\ParameterService\ParameterService.exe [26592 2016-03-04] (Intel Corporation)
R2 iprip; C:\WINDOWS\System32\iprip.dll [35840 2017-04-09] (Microsoft Corporation)
S3 IpxlatCfgSvc; C:\WINDOWS\System32\IpxlatCfg.dll [64000 2017-03-18] (Microsoft Corporation)
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [8704 2016-03-02] (Intel Corporation) [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [215328 2016-05-17] (Intel Corporation)
S3 NaturalAuthentication; C:\WINDOWS\System32\NaturalAuth.dll [723968 2017-03-18] (Microsoft Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1881144 2016-06-15] (NVIDIA Corporation)
S3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3634232 2016-06-15] (NVIDIA Corporation)
S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2522680 2016-06-15] (NVIDIA Corporation)
S3 ose; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [198192 2017-03-25] (Microsoft Corporation) [File not signed]
R3 QALSvc; C:\Program Files\Acer\Acer Quick Access\QALSvc.exe [440224 2016-07-29] (Acer Incorporated)
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [481696 2016-07-29] (Acer Incorporated)
R2 SecurityHealthService; C:\WINDOWS\system32\SecurityHealthService.exe [335808 2017-03-18] (Microsoft Corporation)
S3 SEMgrSvc; C:\WINDOWS\system32\SEMgrSvc.dll [1191424 2017-03-18] (Microsoft Corporation)
S3 spectrum; C:\WINDOWS\system32\spectrum.exe [891904 2017-03-18] (Microsoft Corporation)
R3 TokenBroker; C:\WINDOWS\System32\TokenBroker.dll [1054720 2017-03-18] (Microsoft Corporation)
R3 TokenBroker; C:\WINDOWS\SysWOW64\TokenBroker.dll [799232 2017-03-18] (Microsoft Corporation)
S3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [295840 2016-05-28] (acer)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342264 2017-03-18] (Microsoft Corporation)
S3 WFDSConMgrSvc; C:\WINDOWS\System32\wfdsconmgrsvc.dll [555008 2017-03-18] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102816 2017-03-18] (Microsoft Corporation)
S3 wlpasvc; C:\WINDOWS\System32\lpasvc.dll [1295360 2017-03-18] (Microsoft Corporation)
S3 xbgm; C:\WINDOWS\System32\xbgmsvc.dll [301216 2017-03-18] (Microsoft Corporation)
S3 XboxGipSvc; C:\WINDOWS\System32\XboxGipSvc.dll [18944 2017-03-18] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 aswbidsdriver; C:\WINDOWS\system32\drivers\aswbidsdrivera.sys [307736 2017-04-09] (AVAST Software s.r.o.)
R0 aswbidsh; C:\WINDOWS\system32\drivers\aswbidsha.sys [189768 2017-04-09] (AVAST Software s.r.o.)
R0 aswblog; C:\WINDOWS\system32\drivers\aswbloga.sys [334088 2017-04-09] (AVAST Software s.r.o.)
R0 aswbuniv; C:\WINDOWS\system32\drivers\aswbuniva.sys [48528 2017-04-09] (AVAST Software s.r.o.)
S3 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [38296 2017-04-09] (AVAST Software)
R1 aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [32600 2017-04-09] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [127112 2017-04-09] (AVAST Software)
R1 aswNetSec; C:\WINDOWS\system32\drivers\aswNetSec.sys [505880 2017-04-10] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [101152 2017-04-09] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys [75704 2017-04-09] (AVAST Software)
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [1005048 2017-04-09] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [556784 2017-04-09] (AVAST Software)
R2 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [164064 2017-04-09] (AVAST Software)
R0 aswVmm; C:\WINDOWS\system32\drivers\aswVmm.sys [339696 2017-04-09] (AVAST Software)
R3 BthLEEnum; C:\WINDOWS\system32\DRIVERS\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [96768 2017-03-18] (Microsoft Corporation)
R3 CAD; C:\WINDOWS\System32\drivers\CAD.sys [53664 2017-03-18] (Microsoft Corporation)
S2 CldFlt; C:\WINDOWS\System32\drivers\cldflt.sys [12288 2017-03-18] (Microsoft Corporation)
R3 ETDI2C; C:\WINDOWS\System32\drivers\ETDI2C.sys [183896 2016-03-24] (ELAN Microelectronic Corp.)
S3 iaLPSS2i_GPIO2_BXT_P; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [85504 2017-03-18] (Intel Corporation)
S3 iaLPSS2i_I2C_BXT_P; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [168448 2017-03-18] (Intel Corporation)
S3 iaLPSS2_I2C; C:\WINDOWS\System32\drivers\iaLPSS2_I2C.sys [185144 2016-05-17] (Intel Corporation)
R3 igfx; C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\igdkmd64.sys [11041776 2017-02-07] (Intel Corporation)
R3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [21344 2016-07-29] (Acer Incorporated)
S3 mausbhost; C:\WINDOWS\System32\drivers\mausbhost.sys [405408 2017-03-18] (Microsoft Corporation)
S3 mausbip; C:\WINDOWS\System32\drivers\mausbip.sys [51104 2017-03-18] (Microsoft Corporation)
S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [122368 2017-03-18] (Microsoft Corporation)
S3 nvdimmn; C:\WINDOWS\System32\drivers\nvdimmn.sys [80896 2017-03-18] (Microsoft Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvacwu.inf_amd64_31f4ef4821269ebb\nvlddmkm.sys [14190520 2017-01-17] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [28216 2016-06-15] (NVIDIA Corporation)
S3 NVSWCFilter; C:\WINDOWS\System32\drivers\nvswcfilter.sys [28344 2016-05-09] (Windows (R) Win 7 DDK provider)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation)
S3 pmem; C:\WINDOWS\System32\drivers\pmem.sys [101376 2017-03-18] (Microsoft Corporation)
R3 Qcamain10x64; C:\WINDOWS\System32\drivers\Qcamain10x64.sys [2344448 2017-03-18] (Qualcomm Atheros, Inc.)
R3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [14688 2016-07-29] (Acer Incorporated)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [943112 2016-09-22] (Realtek )
R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [769752 2015-12-18] (Realsil Semiconductor Corporation)
S3 SDFRd; C:\WINDOWS\System32\drivers\SDFRd.sys [31128 2017-03-18] ()
S3 SpatialGraphFilter; C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys [40352 2017-03-20] (Microsoft Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44632 2017-03-18] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [294816 2017-03-18] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [121248 2017-03-18] (Microsoft Corporation)
S3 WinNat; C:\WINDOWS\System32\drivers\winnat.sys [217088 2017-03-18] (Microsoft Corporation)
U1 aswbdisk; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

NETSVC: TokenBroker -> C:\Windows\System32\TokenBroker.dll (Microsoft Corporation)
NETSVC: XboxGipSvc -> C:\Windows\System32\XboxGipSvc.dll (Microsoft Corporation)
NETSVC: xbgm -> C:\Windows\System32\xbgmsvc.dll (Microsoft Corporation)
NETSVC: NaturalAuthentication -> C:\Windows\System32\NaturalAuth.dll (Microsoft Corporation)
NETSVCx32: TokenBroker -> C:\Windows\SysWOW64\TokenBroker.dll (Microsoft Corporation)

==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-04-11 10:38 - 2017-04-11 10:38 - 00001039 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eM Client.lnk
2017-04-11 10:38 - 2017-04-11 10:38 - 00000000 ____D C:\Program Files (x86)\eM Client
2017-04-11 10:31 - 2017-04-11 10:31 - 00039181 _____ C:\Users\ruda6\Downloads\contacts.csv
2017-04-11 10:24 - 2017-04-11 10:24 - 00121256 _____ C:\Users\ruda6\OneDrive\Dokumenty\GOMoRKF175055081.pdf
2017-04-11 00:07 - 2017-04-11 00:07 - 00002230 _____ C:\Users\Public\Desktop\Media Impression 2.lnk
2017-04-11 00:07 - 2017-04-11 00:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft MediaImpression 2
2017-04-11 00:07 - 2017-04-11 00:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Connect
2017-04-11 00:06 - 2006-11-14 11:31 - 00022784 _____ (Arcsoft, Inc.) C:\WINDOWS\SysWOW64\Drivers\afc.sys
2017-04-11 00:06 - 2003-03-18 22:14 - 00499712 ____R (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp71.dll
2017-04-11 00:06 - 2003-02-21 04:42 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr71.dll
2017-04-11 00:04 - 2017-04-11 00:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ABBYY FineReader 9.0 Sprint
2017-04-10 23:53 - 2017-04-11 00:03 - 00002538 _____ C:\Users\Public\Desktop\Epson User's Guide EPSON Perfection V370 Photo.lnk
2017-04-10 23:49 - 2012-08-08 00:00 - 00094208 _____ (Seiko Epson Corporation.) C:\WINDOWS\system32\esxw2_dd.dll
2017-04-10 23:49 - 2012-04-20 00:00 - 00262144 _____ (Seiko Epson Corporation) C:\WINDOWS\SysWOW64\esintdd.dll
2017-04-10 23:49 - 2012-04-18 00:00 - 00281088 _____ (Seiko Epson Corporation) C:\WINDOWS\system32\esxuindd.dll
2017-04-10 23:49 - 2012-03-26 01:00 - 00065793 _____ C:\WINDOWS\system32\esfwdd.bin
2017-04-10 23:49 - 2009-10-16 00:00 - 00132560 _____ (Seiko Epson Corporation) C:\WINDOWS\system32\esdevapp.exe
2017-04-10 23:49 - 2009-10-16 00:00 - 00013824 _____ (Seiko Epson Corporation) C:\WINDOWS\system32\esxcdev.dll
2017-04-10 23:41 - 2017-04-10 23:41 - 00000000 ____D C:\ProgramData\SWCUTemp
2017-04-10 23:39 - 2017-04-10 23:39 - 01223266 _____ C:\Users\ruda6\OneDrive\Dokumenty\kontrola.pdf
2017-04-10 23:31 - 2017-04-10 23:43 - 00002433 _____ C:\Users\Public\Desktop\Epson User's Guide L355 Series.lnk
2017-04-10 23:31 - 2017-04-10 23:43 - 00002426 _____ C:\Users\Public\Desktop\Epson Network Guide L355 Series.lnk
2017-04-10 23:27 - 2017-04-10 23:27 - 00001577 _____ C:\Users\ruda6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ashampoo Photo Commander 15.lnk
2017-04-10 23:26 - 2017-04-10 23:26 - 00936461 _____ C:\Users\ruda6\OneDrive\Dokumenty\GoMo VK.pdf
2017-04-10 23:16 - 2017-04-10 23:16 - 00001317 _____ C:\Users\Public\Desktop\Ashampoo Photo Commander 15.lnk
2017-04-10 21:50 - 2017-04-10 23:16 - 00000000 ____D C:\Users\ruda6\AppData\Roaming\Ashampoo
2017-04-10 21:50 - 2017-04-10 21:50 - 00000000 ____D C:\Users\ruda6\AppData\Local\CrashRpt
2017-04-10 21:49 - 2017-04-10 23:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2017-04-10 21:49 - 2017-04-10 23:16 - 00000000 ____D C:\ProgramData\Ashampoo
2017-04-10 21:49 - 2017-04-10 23:16 - 00000000 ____D C:\Program Files (x86)\Ashampoo
2017-04-10 21:49 - 2017-04-10 21:49 - 00001317 _____ C:\Users\Public\Desktop\Ashampoo Photo Commander 11.lnk
2017-04-10 21:49 - 2017-04-10 21:49 - 00000000 ____D C:\Users\ruda6\AppData\Local\ashampoo
2017-04-10 21:36 - 2017-04-11 10:55 - 00000000 ____D C:\Users\ruda6\AppData\Roaming\XnView
2017-04-10 21:36 - 2017-04-10 21:36 - 00000992 _____ C:\Users\ruda6\Desktop\XnView.lnk
2017-04-10 21:36 - 2017-04-10 21:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XnView
2017-04-10 21:36 - 2017-04-10 21:36 - 00000000 ____D C:\Program Files (x86)\XnView
2017-04-10 19:56 - 2017-04-10 19:56 - 00000000 ____D C:\Users\ruda6\AppData\Local\ElevatedDiagnostics
2017-04-10 19:52 - 2017-04-10 19:52 - 00000920 _____ C:\Users\Public\Desktop\VLC media player.lnk
2017-04-10 19:52 - 2017-04-10 19:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2017-04-10 17:12 - 2017-04-10 17:12 - 00000000 ____D C:\Program Files\VideoLAN
2017-04-10 17:08 - 2017-04-10 19:53 - 00000000 ____D C:\Users\ruda6\AppData\Roaming\vlc
2017-04-10 17:07 - 2017-04-10 17:07 - 00000000 ____D C:\Program Files (x86)\VideoLAN
2017-04-10 14:47 - 2017-04-10 14:47 - 00000000 ____D C:\Users\ruda6\AppData\Local\ArcSoft
2017-04-10 14:47 - 2017-04-10 14:47 - 00000000 ____D C:\ProgramData\ArcSoft
2017-04-10 14:45 - 2017-04-11 00:07 - 00000000 ____D C:\Users\ruda6\AppData\Roaming\ArcSoft
2017-04-10 14:45 - 2017-04-10 14:45 - 00000000 ____D C:\Program Files (x86)\ArcSoft
2017-04-10 14:44 - 2017-04-10 14:44 - 00000000 ____D C:\Users\ruda6\AppData\Local\ABBYY
2017-04-10 14:43 - 2017-04-11 00:04 - 00000000 ____D C:\Program Files (x86)\ABBYY FineReader 9.0 Sprint
2017-04-10 14:43 - 2017-04-10 14:43 - 00000000 ____D C:\ProgramData\ABBYY
2017-04-10 14:15 - 2017-04-11 00:08 - 00000000 ____D C:\Users\ruda6\AppData\Roaming\Epson
2017-04-10 14:09 - 2017-04-10 14:09 - 00000000 ____D C:\ProgramData\UDL
2017-04-10 14:09 - 2017-04-10 14:09 - 00000000 ____D C:\ProgramData\Sony Corporation
2017-04-10 13:45 - 2017-04-10 23:43 - 00000256 _____ C:\Users\Public\Desktop\Epson Connect Guide.url
2017-04-10 13:44 - 2017-04-11 00:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software
2017-04-10 13:44 - 2017-04-10 14:42 - 00000000 ____D C:\Program Files (x86)\Epson Software
2017-04-10 13:41 - 2017-04-10 13:41 - 00000000 ____D C:\Program Files\EpsonNet
2017-04-10 13:41 - 2012-11-12 20:41 - 00535552 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\system32\ensppui.dll
2017-04-10 13:41 - 2012-11-12 20:41 - 00535552 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\system32\enppui.dll
2017-04-10 13:41 - 2012-11-12 15:15 - 00558592 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\system32\ensppmon.dll
2017-04-10 13:41 - 2012-11-12 15:15 - 00558592 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\system32\enppmon.dll
2017-04-10 13:41 - 2012-10-22 17:19 - 00219648 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\system32\enspres.dll
2017-04-10 13:41 - 2012-10-22 17:19 - 00219648 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\system32\enpres.dll
2017-04-10 13:39 - 2017-04-10 23:57 - 00001007 _____ C:\Users\Public\Desktop\EPSON Scan.lnk
2017-04-10 13:39 - 2011-12-12 00:00 - 00135824 _____ (Seiko Epson Corporation) C:\WINDOWS\system32\escsvc64.exe
2017-04-10 13:38 - 2017-04-11 00:05 - 00000000 ____D C:\Program Files (x86)\epson
2017-04-10 13:37 - 2017-04-10 23:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
2017-04-10 13:37 - 2017-04-10 19:13 - 00000000 ____D C:\ProgramData\EPSON
2017-04-10 13:37 - 2017-04-10 13:37 - 00000000 ____D C:\Program Files\Common Files\EPSON
2017-04-10 12:29 - 2017-04-10 12:29 - 00478684 _____ C:\Users\ruda6\OneDrive\Dokumenty\Canabis 100 studií.pdf
2017-04-10 11:24 - 2017-04-10 11:25 - 00000000 ____D C:\Users\ruda6\OneDrive\Dokumenty\FRST
2017-04-10 11:04 - 2017-04-10 11:04 - 00000000 ____D C:\Program Files (x86)\Microsoft ASP.NET
2017-04-10 10:38 - 2017-04-10 10:42 - 00007605 _____ C:\Users\ruda6\AppData\Local\resmon.resmoncfg
2017-04-10 00:45 - 2017-04-10 00:45 - 00003276 _____ C:\Users\ruda6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\App Explorer.lnk
2017-04-10 00:35 - 2017-04-10 11:45 - 00000000 ____D C:\Program Files\Mozilla Firefox
2017-04-10 00:29 - 2017-04-10 00:29 - 00000000 ____D C:\Users\ruda6\AppData\Local\AVAST Software
2017-04-10 00:08 - 2017-04-10 00:08 - 00505880 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetSec.sys
2017-04-10 00:08 - 2017-04-10 00:08 - 00001983 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Premier.lnk
2017-04-10 00:08 - 2017-04-10 00:08 - 00001971 _____ C:\Users\Public\Desktop\Avast Premier.lnk
2017-04-10 00:08 - 2017-04-09 23:23 - 00399944 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2017-04-09 23:40 - 2017-04-10 19:14 - 00000000 ____D C:\Users\DefaultAppPool
2017-04-09 23:40 - 2017-04-09 23:40 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini
2017-04-09 23:40 - 2017-04-09 23:40 - 00000000 _SHDL C:\Users\DefaultAppPool\Soubory cookie
2017-04-09 23:40 - 2017-04-09 23:40 - 00000000 _SHDL C:\Users\DefaultAppPool\Šablony
2017-04-09 23:40 - 2017-04-09 23:40 - 00000000 _SHDL C:\Users\DefaultAppPool\Poslední
2017-04-09 23:40 - 2017-04-09 23:40 - 00000000 _SHDL C:\Users\DefaultAppPool\Okolní tiskárny
2017-04-09 23:40 - 2017-04-09 23:40 - 00000000 _SHDL C:\Users\DefaultAppPool\Okolní síť
2017-04-09 23:40 - 2017-04-09 23:40 - 00000000 _SHDL C:\Users\DefaultAppPool\Nabídka Start
2017-04-09 23:40 - 2017-04-09 23:40 - 00000000 _SHDL C:\Users\DefaultAppPool\Dokumenty
2017-04-09 23:40 - 2017-04-09 23:40 - 00000000 _SHDL C:\Users\DefaultAppPool\Data aplikací
2017-04-09 23:40 - 2017-04-09 23:40 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2017-04-09 23:40 - 2017-04-09 23:40 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Data aplikací
2017-04-09 23:40 - 2017-04-09 11:32 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Local\Host App Service
2017-04-09 23:39 - 2017-04-10 00:08 - 00004006 _____ C:\WINDOWS\System32\Tasks\SafeZone scheduled Autoupdate 1491773989
2017-04-09 23:39 - 2017-04-10 00:08 - 00001092 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2017-04-09 23:39 - 2017-04-09 23:39 - 00032600 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2017-04-09 23:39 - 2017-04-09 23:39 - 00001092 _____ C:\Users\Public\Desktop\Avast SafeZone Browser.lnk
2017-04-09 23:23 - 2017-04-10 20:52 - 00004268 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update
2017-04-09 23:23 - 2017-04-10 19:14 - 00000000 ____D C:\WINDOWS\System32\Tasks\AVAST Software
2017-04-09 23:23 - 2017-04-09 23:23 - 01005048 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2017-04-09 23:23 - 2017-04-09 23:23 - 00556784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2017-04-09 23:23 - 2017-04-09 23:23 - 00339696 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2017-04-09 23:23 - 2017-04-09 23:23 - 00164064 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2017-04-09 23:23 - 2017-04-09 23:23 - 00127112 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2017-04-09 23:23 - 2017-04-09 23:23 - 00101152 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2017-04-09 23:23 - 2017-04-09 23:23 - 00075704 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2017-04-09 23:23 - 2017-04-09 23:23 - 00038296 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2017-04-09 23:23 - 2017-04-09 23:23 - 00000000 ____D C:\Users\ruda6\AppData\Roaming\AVAST Software
2017-04-09 23:23 - 2017-04-09 23:23 - 00000000 ____D C:\Program Files\Common Files\AV
2017-04-09 23:23 - 2017-04-09 23:22 - 00334088 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbloga.sys
2017-04-09 23:23 - 2017-04-09 23:22 - 00307736 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsdrivera.sys
2017-04-09 23:23 - 2017-04-09 23:22 - 00189768 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsha.sys
2017-04-09 23:23 - 2017-04-09 23:22 - 00048528 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbuniva.sys
2017-04-09 23:10 - 2017-04-09 23:39 - 00000000 ____D C:\Program Files\AVAST Software
2017-04-09 23:09 - 2017-04-10 09:53 - 00000000 ____D C:\ProgramData\AVAST Software
2017-04-09 22:43 - 2017-04-09 22:43 - 00000000 ____D C:\Users\ruda6\OneDrive\Dokumenty\Lightshot
2017-04-09 22:42 - 2017-04-09 23:57 - 00000404 _____ C:\WINDOWS\Tasks\update-sys.job
2017-04-09 22:42 - 2017-04-09 23:57 - 00000404 _____ C:\WINDOWS\Tasks\update-S-1-5-21-2427891007-549799556-2631738521-1001.job
2017-04-09 22:42 - 2017-04-09 22:42 - 00003392 _____ C:\WINDOWS\System32\Tasks\update-S-1-5-21-2427891007-549799556-2631738521-1001
2017-04-09 22:42 - 2017-04-09 22:42 - 00003330 _____ C:\WINDOWS\System32\Tasks\update-sys
2017-04-09 22:42 - 2017-04-09 22:42 - 00000424 _____ C:\Users\ruda6\AppData\Local\UserProducts.xml
2017-04-09 22:42 - 2017-04-09 22:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lightshot
2017-04-09 22:42 - 2017-04-09 22:42 - 00000000 ____D C:\Program Files (x86)\Skillbrains
2017-04-09 22:29 - 2017-04-09 22:29 - 00002404 ____N C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WildTangent Games App - wildgames.lnk
2017-04-09 22:27 - 2017-04-09 22:27 - 00000000 ____D C:\Users\ruda6\AppData\Roaming\WildTangent
2017-04-09 22:27 - 2017-04-09 22:27 - 00000000 ____D C:\ProgramData\BlueStacks
2017-04-09 20:37 - 2017-04-10 19:14 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-04-09 20:37 - 2017-04-09 20:38 - 00000000 ____D C:\Users\ruda6\AppData\Local\Mozilla
2017-04-09 20:37 - 2017-04-09 20:37 - 00001009 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2017-04-09 20:37 - 2017-04-09 20:37 - 00000997 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2017-04-09 20:37 - 2017-04-09 20:37 - 00000000 ____D C:\Users\ruda6\AppData\Roaming\Mozilla
2017-04-09 20:14 - 2017-04-09 20:14 - 00000000 ____D C:\Users\ruda6\AppData\Local\NetworkTiles
2017-04-09 15:39 - 2017-04-09 19:57 - 00000437 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2017-04-09 14:22 - 2017-04-09 14:22 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IIS
2017-04-09 14:22 - 2017-04-09 14:22 - 00000000 ____D C:\WINDOWS\SysWOW64\BestPractices
2017-04-09 14:22 - 2017-04-09 14:22 - 00000000 ____D C:\WINDOWS\system32\BestPractices
2017-04-09 14:22 - 2017-04-09 14:22 - 00000000 ____D C:\inetpub
2017-04-09 14:01 - 2017-04-09 14:01 - 00000000 ____D C:\Users\ruda6\AppData\Local\NVIDIA Corporation
2017-04-09 14:00 - 2017-04-10 19:14 - 00000000 ____D C:\Users\ruda6\AppData\Local\NVIDIA
2017-04-09 13:56 - 2017-04-09 13:56 - 00532136 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2017-04-09 13:48 - 2017-04-09 13:49 - 00000000 ____D C:\WINDOWS\system32\MRT
2017-04-09 13:48 - 2017-04-09 13:48 - 138634176 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-04-09 13:17 - 2017-04-09 13:17 - 00000000 ____D C:\WINDOWS\System32\Tasks\S-1-5-21-2427891007-549799556-2631738521-1001
2017-04-09 12:56 - 2017-04-09 12:56 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2017-04-09 12:49 - 2017-04-11 10:41 - 00000000 ____D C:\Users\ruda6\AppData\Roaming\eM Client
2017-04-09 12:49 - 2017-04-09 12:49 - 00000000 ____D C:\Users\ruda6\AppData\Local\CEF
2017-04-09 12:47 - 2017-04-09 12:48 - 49987584 _____ C:\Users\ruda6\Downloads\setup (1).msi
2017-04-09 12:30 - 2017-04-11 08:37 - 00004194 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{089A808E-5327-41B0-9E4A-C79C13D377BA}
2017-04-09 12:29 - 2017-04-09 12:31 - 00000000 ____D C:\Program Files\CCleaner
2017-04-09 12:29 - 2017-04-09 12:29 - 00002854 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2017-04-09 12:29 - 2017-04-09 12:29 - 00000867 _____ C:\Users\Public\Desktop\CCleaner.lnk
2017-04-09 12:29 - 2017-04-09 12:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2017-04-09 12:28 - 2017-04-09 12:28 - 09275712 _____ (Piriform Ltd) C:\Users\ruda6\Downloads\ccsetup528pro.exe
2017-04-09 12:26 - 2017-04-10 21:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ACER
2017-04-09 12:26 - 2017-04-09 14:47 - 00000000 ____D C:\Windows.old
2017-04-09 12:26 - 2017-04-09 12:26 - 00000000 ____D C:\WINDOWS\InfusedApps
2017-04-09 12:25 - 2017-04-09 12:25 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2017-04-09 12:25 - 2017-04-09 11:27 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2017-04-09 12:24 - 2017-04-09 12:24 - 00000000 ____D C:\Program Files\Elantech
2017-04-09 12:22 - 2017-04-09 12:22 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2017-04-09 12:22 - 2017-04-09 12:22 - 00000000 ____D C:\WINDOWS\Setup
2017-04-09 12:22 - 2017-04-09 12:22 - 00000000 ____D C:\Program Files\Reference Assemblies
2017-04-09 12:22 - 2017-04-09 12:22 - 00000000 ____D C:\Program Files\MSBuild
2017-04-09 12:22 - 2017-04-09 12:22 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2017-04-09 12:22 - 2017-04-09 12:22 - 00000000 ____D C:\Program Files (x86)\MSBuild
2017-04-09 12:22 - 2017-04-09 11:32 - 00000000 ____D C:\WINDOWS\OCR
2017-04-09 12:21 - 2017-04-11 10:25 - 01119136 _____ C:\WINDOWS\system32\perfh005.dat
2017-04-09 12:21 - 2017-04-11 10:25 - 00274680 _____ C:\WINDOWS\system32\perfc005.dat
2017-04-09 12:21 - 2017-04-09 12:21 - 00296964 _____ C:\WINDOWS\system32\perfi005.dat
2017-04-09 12:21 - 2017-04-09 12:21 - 00038778 _____ C:\WINDOWS\system32\perfd005.dat
2017-04-09 12:21 - 2017-04-09 12:21 - 00000000 ____D C:\WINDOWS\SysWOW64\winrm
2017-04-09 12:21 - 2017-04-09 12:21 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep
2017-04-09 12:21 - 2017-04-09 12:21 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr
2017-04-09 12:21 - 2017-04-09 12:21 - 00000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2017-04-09 12:21 - 2017-04-09 12:21 - 00000000 ____D C:\WINDOWS\SysWOW64\cs
2017-04-09 12:21 - 2017-04-09 12:21 - 00000000 ____D C:\WINDOWS\SysWOW64\0409
2017-04-09 12:21 - 2017-04-09 12:21 - 00000000 ____D C:\WINDOWS\system32\winrm
2017-04-09 12:21 - 2017-04-09 12:21 - 00000000 ____D C:\WINDOWS\system32\slmgr
2017-04-09 12:21 - 2017-04-09 12:21 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2017-04-09 12:21 - 2017-04-09 12:21 - 00000000 ____D C:\WINDOWS\system32\cs
2017-04-09 12:21 - 2017-04-09 12:21 - 00000000 ____D C:\WINDOWS\system32\0409
2017-04-09 12:21 - 2017-04-09 12:21 - 00000000 ____D C:\WINDOWS\DigitalLocker
2017-04-09 12:21 - 2017-04-09 11:32 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN
2017-04-09 12:21 - 2017-04-09 11:32 - 00000000 ____D C:\WINDOWS\system32\WCN
2017-04-09 12:20 - 2017-03-18 22:59 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2017-04-09 12:20 - 2017-03-18 22:59 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2017-04-09 12:18 - 2017-04-11 09:42 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2017-04-09 12:18 - 2017-04-10 19:56 - 00000000 ____D C:\WINDOWS\system32\NDF
2017-04-09 12:18 - 2017-04-10 19:14 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2017-04-09 12:18 - 2017-04-10 19:13 - 00000000 ___HD C:\Program Files\WindowsApps
2017-04-09 12:18 - 2017-04-10 19:13 - 00000000 ____D C:\WINDOWS\registration
2017-04-09 12:18 - 2017-04-10 09:07 - 00000000 ____D C:\WINDOWS\appcompat
2017-04-09 12:18 - 2017-04-09 14:22 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2017-04-09 12:18 - 2017-04-09 14:22 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2017-04-09 12:18 - 2017-04-09 13:55 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2017-04-09 12:18 - 2017-04-09 12:26 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2017-04-09 12:18 - 2017-04-09 12:22 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2017-04-09 12:18 - 2017-04-09 12:22 - 00000000 ____D C:\WINDOWS\SystemApps
2017-04-09 12:18 - 2017-04-09 12:22 - 00000000 ____D C:\WINDOWS\system32\MUI
2017-04-09 12:18 - 2017-04-09 12:21 - 00000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2017-04-09 12:18 - 2017-04-09 12:21 - 00000000 ___SD C:\WINDOWS\system32\dsc
2017-04-09 12:18 - 2017-04-09 12:21 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2017-04-09 12:18 - 2017-04-09 12:21 - 00000000 ____D C:\WINDOWS\SysWOW64\setup
2017-04-09 12:18 - 2017-04-09 12:21 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2017-04-09 12:18 - 2017-04-09 12:21 - 00000000 ____D C:\WINDOWS\SysWOW64\Com
2017-04-09 12:18 - 2017-04-09 12:21 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2017-04-09 12:18 - 2017-04-09 12:21 - 00000000 ____D C:\WINDOWS\system32\setup
2017-04-09 12:18 - 2017-04-09 12:21 - 00000000 ____D C:\WINDOWS\system32\migwiz
2017-04-09 12:18 - 2017-04-09 12:21 - 00000000 ____D C:\WINDOWS\system32\Dism
2017-04-09 12:18 - 2017-04-09 12:21 - 00000000 ____D C:\WINDOWS\system32\Com
2017-04-09 12:18 - 2017-04-09 12:21 - 00000000 ____D C:\Program Files\Windows Defender
2017-04-09 12:18 - 2017-04-09 12:21 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 __SHD C:\Program Files\Windows Sidebar
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 __RSD C:\WINDOWS\Media
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ___SD C:\WINDOWS\SysWOW64\Nui
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ___SD C:\WINDOWS\SysWOW64\Configuration
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ___SD C:\WINDOWS\system32\Nui
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ___SD C:\WINDOWS\system32\Configuration
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ___RD C:\WINDOWS\Offline Web Pages
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\Web
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\Vss
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\tracing
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\TAPI
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\SysWOW64\SMI
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\SysWOW64\ras
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\SysWOW64\NDF
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\SysWOW64\MsDtc
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\SysWOW64\Ipmi
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\SysWOW64\InputMethod
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\SysWOW64\IME
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\SysWOW64\icsxml
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicyUsers
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\SysWOW64\FxsTmp
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\SysWOW64\downlevel
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\SysWOW64\Bthprops
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\SysWOW64\AppLocker
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\SystemResources
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\WinMetadata
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\winevt
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\ras
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\ProximityToast
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\PointOfService
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\MsDtc
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\Macromed
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\Ipmi
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\IME
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\icsxml
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\ias
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\Hydrogen
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\GroupPolicyUsers
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\GroupPolicy
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\downlevel
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\DDFs
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\config\Journal
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\Bthprops
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\appraiser
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\AppLocker
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\System
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\SKB
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\ShellExperiences
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\security
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\schemas
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\SchCache
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\Resources
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\Provisioning
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\PLA
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\Performance
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\ModemLogs
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\L2Schemas
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\InputMethod
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\Globalization
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\GameBarPresenceWriter
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\Cursors
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\Branding
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\bcastdvr
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\addins
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\ProgramData\WindowsHolographicDevices
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\Program Files\Windows Security
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\Program Files\Windows Portable Devices
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\Program Files\Common Files\Services
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\Program Files (x86)\Windows NT
2017-04-09 12:18 - 2017-04-09 12:18 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2017-04-09 12:18 - 2017-04-09 12:17 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2017-04-09 12:18 - 2017-04-09 12:17 - 00215943 _____ C:\WINDOWS\SysWOW64\dssec.dat
2017-04-09 12:18 - 2017-04-09 12:17 - 00215943 _____ C:\WINDOWS\system32\dssec.dat
2017-04-09 12:18 - 2017-04-09 12:17 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2017-04-09 12:18 - 2017-04-09 12:17 - 00004096 _____ C:\WINDOWS\system32\config\VSMIDK
2017-04-09 12:18 - 2017-04-09 12:17 - 00003683 _____ C:\WINDOWS\system32\Drivers\etc\lmhosts.sam
2017-04-09 12:18 - 2017-04-09 12:17 - 00000858 _____ C:\WINDOWS\system32\DefaultQuestions.json
2017-04-09 12:18 - 2017-04-09 12:17 - 00000741 _____ C:\WINDOWS\SysWOW64\NOISE.DAT
2017-04-09 12:18 - 2017-04-09 12:17 - 00000741 _____ C:\WINDOWS\system32\NOISE.DAT
2017-04-09 12:18 - 2017-04-09 12:10 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-04-09 12:18 - 2017-04-09 12:09 - 00000000 ____D C:\WINDOWS\AppReadiness
2017-04-09 12:18 - 2017-04-09 11:37 - 00000000 ____D C:\WINDOWS\rescache
2017-04-09 12:18 - 2017-04-09 11:36 - 00000000 ____D C:\Program Files\Windows NT
2017-04-09 12:18 - 2017-04-09 11:35 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2017-04-09 12:18 - 2017-04-09 11:34 - 00000000 __RHD C:\Users\Public\Libraries
2017-04-09 12:18 - 2017-04-09 11:32 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2017-04-09 12:18 - 2017-04-09 11:32 - 00000000 ___SD C:\WINDOWS\system32\F12
2017-04-09 12:18 - 2017-04-09 11:32 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe
2017-04-09 12:18 - 2017-04-09 11:32 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2017-04-09 12:18 - 2017-04-09 11:32 - 00000000 ____D C:\WINDOWS\system32\spool
2017-04-09 12:18 - 2017-04-09 11:32 - 00000000 ____D C:\WINDOWS\system32\oobe
2017-04-09 12:18 - 2017-04-09 11:32 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2017-04-09 12:18 - 2017-04-09 11:32 - 00000000 ____D C:\WINDOWS\IME
2017-04-09 12:18 - 2017-04-09 11:32 - 00000000 ____D C:\WINDOWS\Help
2017-04-09 12:18 - 2017-04-09 11:32 - 00000000 ____D C:\ProgramData\USOPrivate
2017-04-09 12:18 - 2017-04-09 11:32 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2017-04-09 12:18 - 2017-04-09 11:30 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2017-04-09 12:18 - 2017-04-09 11:30 - 00000000 ____D C:\Program Files\Common Files\System
2017-04-09 12:18 - 2017-04-09 11:30 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2017-04-09 12:18 - 2017-04-09 11:28 - 00000000 ___RD C:\WINDOWS\PrintDialog
2017-04-09 12:18 - 2017-04-09 11:28 - 00000000 ___RD C:\WINDOWS\MiracastView
2017-04-09 12:18 - 2017-04-09 11:28 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2017-04-09 12:18 - 2017-04-09 11:28 - 00000000 ____D C:\WINDOWS\HoloShell
2017-04-09 12:18 - 2016-05-05 06:52 - 00008651 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2017-04-09 12:17 - 2017-04-11 00:08 - 00000000 ____D C:\WINDOWS\INF
2017-04-09 12:16 - 2017-04-10 17:29 - 00000000 ____D C:\WINDOWS\CbsTemp
2017-04-09 12:15 - 2017-04-10 18:26 - 00000000 ____D C:\WINDOWS\Panther
2017-04-09 12:15 - 2017-04-09 13:55 - 00032768 _____ C:\WINDOWS\system32\config\ELAM
2017-04-09 12:15 - 2017-04-09 12:21 - 00000000 ____D C:\WINDOWS\servicing
2017-04-09 12:15 - 2017-04-09 12:18 - 00000000 ____D C:\WINDOWS\system32\SMI
2017-04-09 12:15 - 2017-04-07 19:40 - 00524288 _____ C:\WINDOWS\system32\config\BBI
2017-04-09 12:14 - 2017-04-09 12:26 - 00000000 ____D C:\Users\ruda6\AppData\Local\Google
2017-04-09 12:14 - 2017-04-09 12:19 - 00003470 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2017-04-09 12:14 - 2017-04-09 12:19 - 00003346 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2017-04-09 12:14 - 2017-04-09 12:14 - 01065376 _____ (Google Inc.) C:\Users\ruda6\Downloads\ChromeSetup.exe
2017-04-09 12:14 - 2017-04-09 12:14 - 00002348 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-04-09 12:14 - 2017-04-09 12:14 - 00002336 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-04-09 12:14 - 2017-04-09 12:14 - 00000000 ____D C:\Program Files (x86)\Google
2017-04-09 12:02 - 2017-04-09 12:02 - 00000000 ____D C:\Users\ruda6\AppData\Local\PackageStaging
2017-04-09 11:55 - 2017-04-11 11:05 - 00000000 ____D C:\Users\ruda6\AppData\Local\CrashDumps
2017-04-09 11:55 - 2017-04-09 11:55 - 00000000 ____D C:\Users\ruda6\AppData\Local\MicrosoftEdge
2017-04-09 11:53 - 2017-04-09 11:53 - 00000000 ____D C:\Users\ruda6\AppData\Roaming\acer
2017-04-09 11:48 - 2017-04-09 11:53 - 00000000 ____D C:\Users\ruda6\AppData\Local\acer
2017-04-09 11:48 - 2017-04-09 11:48 - 00000000 ____D C:\Users\ruda6\AppData\Roaming\Macromedia
2017-04-09 11:48 - 2017-04-09 11:48 - 00000000 ____D C:\Users\ruda6\AppData\Roaming\Intel Corporation
2017-04-09 11:48 - 2017-04-09 11:48 - 00000000 ____D C:\Users\ruda6\AppData\Local\CareCenter
2017-04-09 11:48 - 2017-04-09 11:48 - 00000000 ____D C:\Users\Public\App Explorer
2017-04-09 11:47 - 2017-04-09 15:51 - 00000000 ____D C:\Users\ruda6\AppData\Local\clear.fi
2017-04-09 11:47 - 2017-04-09 11:47 - 00003274 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2
2017-04-09 11:47 - 2017-04-09 11:47 - 00002391 _____ C:\Users\ruda6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-04-09 11:47 - 2017-04-09 11:47 - 00000000 ____D C:\Users\ruda6\AppData\Local\DBG
2017-04-09 11:47 - 2017-04-09 11:47 - 00000000 ____D C:\Users\ruda6\AppData\Local\Comms
2017-04-09 11:47 - 2017-04-09 11:47 - 00000000 ____D C:\ProgramData\Dashlane
2017-04-09 11:45 - 2017-04-10 16:44 - 00000000 ____D C:\Users\ruda6\AppData\Local\VirtualStore
2017-04-09 11:45 - 2017-04-09 12:02 - 00000000 ____D C:\Users\ruda6\AppData\Local\Packages
2017-04-09 11:45 - 2017-04-09 11:46 - 00000000 ____D C:\Users\ruda6\AppData\Local\ConnectedDevicesPlatform
2017-04-09 11:45 - 2017-04-09 11:45 - 00000020 ___SH C:\Users\ruda6\ntuser.ini
2017-04-09 11:45 - 2017-04-09 11:45 - 00000000 ____D C:\WINDOWS\oem
2017-04-09 11:45 - 2017-04-09 11:45 - 00000000 ____D C:\Users\ruda6\AppData\Roaming\Adobe
2017-04-09 11:45 - 2017-04-09 11:45 - 00000000 ____D C:\Users\ruda6\AppData\Local\TileDataLayer
2017-04-09 11:45 - 2017-04-09 11:45 - 00000000 ____D C:\Users\ruda6\AppData\Local\Publishers
2017-04-09 11:45 - 2017-04-09 11:45 - 00000000 ____D C:\Users\ruda6\AppData\Local\AOP SDK
2017-04-09 11:36 - 2017-04-11 10:23 - 00003508 _____ C:\WINDOWS\System32\Tasks\DashlaneUpgradeCheck
2017-04-09 11:36 - 2017-04-09 11:36 - 00000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2017-04-09 11:36 - 2017-04-09 11:36 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Data aplikací
2017-04-09 11:36 - 2017-04-09 11:36 - 00000000 _SHDL C:\Users\Default User
2017-04-09 11:36 - 2017-04-09 11:36 - 00000000 _SHDL C:\Users\All Users
2017-04-09 11:36 - 2017-04-09 11:36 - 00000000 _SHDL C:\ProgramData\Šablony
2017-04-09 11:36 - 2017-04-09 11:36 - 00000000 _SHDL C:\ProgramData\Plocha
2017-04-09 11:36 - 2017-04-09 11:36 - 00000000 _SHDL C:\ProgramData\Nabídka Start
2017-04-09 11:36 - 2017-04-09 11:36 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2017-04-09 11:36 - 2017-04-09 11:36 - 00000000 _SHDL C:\ProgramData\Dokumenty
2017-04-09 11:36 - 2017-04-09 11:36 - 00000000 _SHDL C:\ProgramData\Data aplikací
2017-04-09 11:34 - 2017-04-11 10:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-04-09 11:34 - 2017-04-10 21:25 - 00005404 _____ C:\WINDOWS\System32\Tasks\Software Update Application
2017-04-09 11:34 - 2017-04-10 21:25 - 00003778 _____ C:\WINDOWS\System32\Tasks\ACC
2017-04-09 11:34 - 2017-04-10 21:25 - 00003060 _____ C:\WINDOWS\System32\Tasks\ACCBackgroundApplication
2017-04-09 11:34 - 2017-04-09 13:55 - 00000000 ____D C:\WINDOWS\System32\Tasks\McAfee
2017-04-09 11:34 - 2017-04-09 11:53 - 00003508 _____ C:\WINDOWS\System32\Tasks\BacKGroundAgent
2017-04-09 11:34 - 2017-04-09 11:53 - 00003388 _____ C:\WINDOWS\System32\Tasks\AcerCloud
2017-04-09 11:34 - 2017-04-09 11:34 - 00022924 _____ C:\WINDOWS\system32\emptyregdb.dat
2017-04-09 11:34 - 2017-04-09 11:34 - 00003852 _____ C:\WINDOWS\System32\Tasks\ACCAgent
2017-04-09 11:34 - 2017-04-09 11:34 - 00003118 _____ C:\WINDOWS\System32\Tasks\Intel PTT EK Recertification
2017-04-09 11:34 - 2017-04-09 11:34 - 00002766 _____ C:\WINDOWS\System32\Tasks\UbtFrameworkService
2017-04-09 11:34 - 2017-04-09 11:34 - 00002408 _____ C:\WINDOWS\System32\Tasks\App Explorer
2017-04-09 11:34 - 2017-04-09 11:34 - 00002256 _____ C:\WINDOWS\System32\Tasks\Power Button
2017-04-09 11:34 - 2017-04-09 11:34 - 00002180 _____ C:\WINDOWS\System32\Tasks\Quick Access
2017-04-09 11:34 - 2017-04-09 11:34 - 00002042 _____ C:\WINDOWS\System32\Tasks\FubToolByPLD
2017-04-09 11:33 - 2017-04-11 08:44 - 00000000 ____D C:\Users\ruda6\AppData\Local\Host App Service
2017-04-09 11:33 - 2017-04-10 19:39 - 00000000 ____D C:\Users\ruda6

Re: start a aplikace

Napsal: 11 dub 2017 17:24
od Rudy
Zdravím!
Vážený, zabalte to do raru a přiložte to k vešmu postu. Rozhodně není možné, abych to řešil po částech a do každého vlákna to vložil. Musí to být v jednom celku. Ostatní vlákna mažu.

Re: start a aplikace

Napsal: 11 dub 2017 17:31
od rudkr63
Omlouvám se

Re: start a aplikace

Napsal: 11 dub 2017 17:34
od Rudy
Spusťte tuto utilitu:
Stáhněte AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan<(hledání) a pak na >Clean< (mazání).
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: start a aplikace

Napsal: 11 dub 2017 17:55
od rudkr63
# AdwCleaner v6.045 - Log vytvořen 11/04/2017 v 18:52:19
# Aktualizováno dne 28/03/2017 z Malwarebytes
# Databáze : 2017-04-10.2 [Server]
# Operační systém : Windows 10 Home (X64)
# Uživatelské jméno : ruda6 - RUDA-II
# Spuštěno z : C:\Users\ruda6\Downloads\adwcleaner_6.045.exe
# Mod: Čištění
# Podpora : https://www.malwarebytes.com/support



***** [ Služby ] *****



***** [ Složky ] *****

[-] Složka smazána: C:\Users\ruda6\AppData\Local\Host App Service
[-] Složka smazána: C:\Program Files\DriverSetupUtility
[-] Složka smazána: C:\ProgramData\DriverSetupUtility
[#] Složka smazána po restartu: C:\Users\ruda6\AppData\Local\Host App Service
[-] Složka smazána: C:\Users\Default\AppData\Local\Host App Service
[-] Složka smazána: C:\Users\Public\App Explorer
[-] Složka smazána: C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\chklaanhfefbnpoihckbnefhakgolnmc


***** [ Soubory ] *****

[-] Soubor smazán: C:\Users\ruda6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Facebook.lnk
[-] Soubor smazán: C:\Users\ruda6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\App Explorer.lnk
[-] Soubor smazán: C:\Users\Public\Desktop\eBay.lnk
[-] Soubor smazán: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\App Explorer.lnk
[-] Soubor smazán: C:\ProgramData\Microsoft\Windows\Start Menu\eBay.lnk
[-] Soubor smazán: C:\ProgramData\Microsoft\Windows\Start Menu\Booking.com.lnk


***** [ DLL ] *****



***** [ WMI ] *****



***** [ Zástupci ] *****



***** [ Naplánované úlohy ] *****

[-] Úloha smazána: App Explorer
[-] Úloha smazána: Software Update Application


***** [ Registry ] *****

[-] Klíč smazán: HKLM\SOFTWARE\Classes\Interface\{7BCA6879-A9F8-47DE-AE05-F5CE7EA3A474}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\TypeLib\{ADF1FA2A-6EAA-4A97-A55F-3C8B92843EF5}
[-] Klíč smazán: HKU\S-1-5-21-2427891007-549799556-2631738521-1001\Software\Host App Service
[-] Klíč smazán: HKU\S-1-5-21-2427891007-549799556-2631738521-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\Host App Service
[#] Klíč smazán po restartu: HKCU\Software\Host App Service
[#] Klíč smazán po restartu: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Host App Service
[#] Klíč smazán po restartu: [x64] HKCU\Software\Host App Service
[#] Klíč smazán po restartu: [x64] HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Host App Service
[-] Klíč smazán: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{2B51C83A-465D-4EA9-9CDC-1ED95ED09AC6}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\Installer\Features\A38C15B2D5649AE4C9CDE19DE50DA96C
[-] Klíč smazán: HKLM\SOFTWARE\Classes\Installer\Products\A38C15B2D5649AE4C9CDE19DE50DA96C
[-] Klíč smazán: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A38C15B2D5649AE4C9CDE19DE50DA96C
[#] Klíč smazán po restartu: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A38C15B2D5649AE4C9CDE19DE50DA96C
[#] Klíč smazán po restartu: [x64] HKLM\SOFTWARE\Classes\Installer\Features\A38C15B2D5649AE4C9CDE19DE50DA96C
[#] Klíč smazán po restartu: [x64] HKLM\SOFTWARE\Classes\Installer\Products\A38C15B2D5649AE4C9CDE19DE50DA96C
[-] Klíč smazán: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\slunecnice.cz
[-] Klíč smazán: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.slunecnice.cz
[-] Klíč smazán: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\slunecnice.cz
[-] Klíč smazán: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.slunecnice.cz
[#] Klíč smazán po restartu: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\slunecnice.cz
[#] Klíč smazán po restartu: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.slunecnice.cz
[#] Klíč smazán po restartu: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\slunecnice.cz
[#] Klíč smazán po restartu: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.slunecnice.cz
[-] Klíč smazán: HKLM\SOFTWARE\Classes\AppID\OverlayIcon.DLL


***** [ Prohlížeče ] *****

[-] [C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Smazáno: slunecnice.cz
[-] [C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Smazáno: search.yahoo.com
[-] [C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Smazáno: trotux
[-] [C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default] [extension] Smazáno: chklaanhfefbnpoihckbnefhakgolnmc


*************************

:: "Tracing" klíče smazány
:: Winsock nastavení vyčištěno

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [5834 Bajty] - [11/04/2017 18:52:19]
C:\AdwCleaner\AdwCleaner[S0].txt - [5941 Bajty] - [11/04/2017 18:45:35]

########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [5980 Bajty] ##########

Re: start a aplikace

Napsal: 11 dub 2017 18:01
od Rudy
Dejte nový log FRST.

Re: start a aplikace

Napsal: 11 dub 2017 18:24
od rudkr63
nový log FRST
FRST.zip
(86.29 KiB) Staženo 96 x

Re: start a aplikace

Napsal: 11 dub 2017 19:13
od Rudy
Otevřte poznámkový blok a zkopírujte do něj:
Start
SearchScopes: HKU\S-1-5-21-2427891007-549799556-2631738521-1001 -> DefaultScope {B9C58563-D9E1-484E-BBFF-77DF36AB1DB7} URL =
SearchScopes: HKU\S-1-5-21-2427891007-549799556-2631738521-1001 -> {D2332C21-7B3D-46D5-8CCE-D85C19FE05A9} URL =
U1 aswbdisk; no ImagePath
C:\WINDOWS\system32\ApnDatabase.xml
C:\ProgramData\DP45977C.lfl
C:\Users\ruda6\AppData\Local\Temp

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: start a aplikace

Napsal: 11 dub 2017 20:20
od rudkr63
Snad jsem to udělal správně.V tomto NB nejde ani najít, natož otevřít poznámkový blok.Tak jsem odkaz zkopíroval a uložil do poz.bloku ve druhém NB a pak přenesl přes Flas na tento NB na plochu a spustil.
Fix result of Farbar Recovery Scan Tool (x64) Version: 15-03-2017
Ran by ruda6 (11-04-2017 20:58:43) Run:1
Running from C:\Users\ruda6\Desktop
Loaded Profiles: ruda6 (Available Profiles: ruda6 & DefaultAppPool)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
SearchScopes: HKU\S-1-5-21-2427891007-549799556-2631738521-1001 -> DefaultScope {B9C58563-D9E1-484E-BBFF-77DF36AB1DB7} URL =
SearchScopes: HKU\S-1-5-21-2427891007-549799556-2631738521-1001 -> {D2332C21-7B3D-46D5-8CCE-D85C19FE05A9} URL =
U1 aswbdisk; no ImagePath
C:\WINDOWS\system32\ApnDatabase.xml
C:\ProgramData\DP45977C.lfl
C:\Users\ruda6\AppData\Local\Temp

EmptyTemp:
End
*****************

HKU\S-1-5-21-2427891007-549799556-2631738521-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
HKU\S-1-5-21-2427891007-549799556-2631738521-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D2332C21-7B3D-46D5-8CCE-D85C19FE05A9} => key removed successfully
HKCR\CLSID\{D2332C21-7B3D-46D5-8CCE-D85C19FE05A9} => key not found.
HKLM\System\CurrentControlSet\Services\aswbdisk => key could not remove, key could be protected
C:\WINDOWS\system32\ApnDatabase.xml => moved successfully
C:\ProgramData\DP45977C.lfl => moved successfully

"C:\Users\ruda6\AppData\Local\Temp" folder move:

Could not move "C:\Users\ruda6\AppData\Local\Temp" => Scheduled to move on reboot.


=========== EmptyTemp: ==========

BITS transfer queue => 6578176 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 20303567 B
Java, Flash, Steam htmlcache => 506 B
Windows/system/drivers => 5082064 B
Edge => 198 B
Chrome => 326528893 B
Firefox => 355239670 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 37 B
systemprofile32 => 216 B
LocalService => 7346 B
NetworkService => 0 B
ruda6 => 976838680 B
DefaultAppPool => 0 B

RecycleBin => 5031544 B
EmptyTemp: => 1.6 GB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 11-04-2017 21:16:52)

C:\Users\ruda6\AppData\Local\Temp => moved successfully

Result of scheduled keys to remove after reboot:

HKLM\System\CurrentControlSet\Services\aswbdisk => key could not remove, key could be protected

==== End of Fixlog 21:16:52 ====

Re: start a aplikace

Napsal: 11 dub 2017 20:40
od Rudy
Smazáno. Nastala nějaká změna?

Re: start a aplikace

Napsal: 11 dub 2017 20:46
od rudkr63
Bohužel. Stav je stejný.Ikony nelze připnout ke startu.Aplikace nefunkční, Store nepřístupný-vše zůstalo.
Ještě bych doplnil, že po provedení fixlist.txt se NB vypnul a zůstal v nečinnosti. Po cca. 10 minutách jsem ho tedy restartoval a okamžitě proběhly aktualizace
W 10

Re: start a aplikace

Napsal: 11 dub 2017 21:03
od Rudy
Zkuste obnovu systému k datu, kdy korektně fungoval.

Re: start a aplikace

Napsal: 11 dub 2017 21:22
od rudkr63
Mám s tím následující problém.Z 3. na 4.4. byla provedena velká aktualizace a 4.4. už nastaly problémy.Ty se mi nepodařilo odstranit (měl jsem napsat dřív) a tak jsem udělal obnovu tov. nastavení. Od té doby stejně vašechny problémy přetrvávají.Pokud vytvořím bod obnovy ke dni 3.4.-před aktualizací a tov. nastavením, tak to asi nebude fungovat-nebo? Nevím.

Re: start a aplikace

Napsal: 12 dub 2017 16:30
od Rudy
Mělo by to fungovat v tom bodě obnovy, o němž víte, že byl systém ještě OK.

Re: start a aplikace

Napsal: 17 dub 2017 20:20
od rudkr63
Jen pro doplnění. I přes různé rady na netu mi nezbylo stejně nic jiného, než přeinstalovat OS a není vše jede jak má.V každém případě děkuji za ochotu pomoci.