Avast hrozí a v FF vyskakují nová okna
Napsal: 30 zář 2017 14:19
Zdravím,
Avast na mě hází tyto výstrahy a sem tam se mi otevře ve Firefox nové okno. Prosím o pomoc.

Log z ComboFix:
ComboFix 17-09-14.01 - Jezevec 30.09.2017 13:22:33.1.2 - x64
Microsoft Windows 7 Professional 6.1.7601.1.1250.420.1029.18.4041.940 [GMT 2:00]
Spuštěný z: c:\users\Jezevec\Desktop\ComboFix.exe
AV: Avast Antivirus *Disabled/Updated* {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
SP: Avast Antivirus *Disabled/Updated* {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\_ctypes.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\_elementtree.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\_hashlib.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\_multiprocessing.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\_psutil_windows.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\_socket.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\_ssl.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\_yappi.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\common.time34.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\hashobjs_ext.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\PIL._imaging.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\pyexpat.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\pysqlite2._sqlite.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\python27.dll
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\pythoncom27.dll
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\pywintypes27.dll
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\select.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\thumbnails_ext.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\unicodedata.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\usb_ext.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32api.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32com.shell.shell.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32crypt.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32event.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32file.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32gui.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32inet.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32pdh.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32pipe.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32process.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32profile.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32security.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32ts.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\windows._lib_cacheinvalidation.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\windows.device_monitor.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\windows.volumes.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\windows.winwrap.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wx._controls_.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wx._core_.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wx._gdi_.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wx._html2.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wx._misc_.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wx._windows_.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wxbase30u_net_vc90.dll
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wxbase30u_vc90.dll
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wxmsw30u_adv_vc90.dll
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wxmsw30u_core_vc90.dll
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wxmsw30u_html_vc90.dll
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wxmsw30u_webview_vc90.dll
c:\windows\msdownld.tmp
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2017-08-28 do 2017-09-30 )))))))))))))))))))))))))))))))
.
.
2017-09-30 12:12 . 2017-09-30 12:12 144 ----a-w- c:\windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2017-09-30 12:11 . 2017-09-30 12:11 -------- d-----w- c:\users\Default\AppData\Local\temp
2017-09-27 16:21 . 2017-09-27 16:21 -------- d--h--w- C:\OneDriveTemp
2017-09-23 15:44 . 2017-09-24 15:44 -------- d-----w- c:\windows\AutoKMS
2017-09-23 15:43 . 2017-09-23 15:43 -------- d-----w- c:\programdata\Microsoft Toolkit
2017-09-23 14:14 . 2017-09-23 14:14 -------- d-----w- C:\$AV_ASW
2017-09-23 14:12 . 2017-09-23 14:12 -------- d-----w- c:\programdata\ecba57a0-35f5-1
2017-09-23 14:12 . 2017-09-23 14:12 -------- d-----w- c:\programdata\ecba57a0-2713-0
2017-09-23 14:10 . 2017-09-23 14:10 12431360 ----a-w- c:\programdata\Microsoft\Windows NT\MSFax\ActivityLog\CalendarExt.dll
2017-09-23 14:10 . 2017-09-23 14:10 -------- d-----w- c:\program files (x86)\360
2017-09-23 14:09 . 2017-09-30 05:38 -------- d-----w- c:\programdata\LCFApp
2017-09-23 14:09 . 2017-09-23 14:09 -------- d-----w- c:\users\Public\Thunder Network
2017-09-23 14:09 . 2017-09-23 14:09 -------- d-----w- c:\programdata\Thunder Network
2017-09-20 16:48 . 2017-09-20 16:48 49992 ----a-w- c:\windows\system32\DbxSvc.exe
2017-09-20 16:48 . 2017-09-20 16:48 45672 ----a-w- c:\windows\system32\drivers\dbx-dev.sys
2017-09-20 16:48 . 2017-09-20 16:48 45640 ----a-w- c:\windows\system32\drivers\dbx-stable.sys
2017-09-20 16:48 . 2017-09-20 16:48 45640 ----a-w- c:\windows\system32\drivers\dbx-canary.sys
2017-09-12 21:49 . 2017-08-16 01:10 293072 ----a-w- c:\program files\Internet Explorer\sqmapi.dll
2017-09-07 09:56 . 2017-09-07 09:56 3199232 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\OFFICE16\Mso30win32client.dll
2017-09-07 09:45 . 2017-09-07 09:45 4766976 ----a-w- c:\program files\Common Files\Microsoft Shared\OFFICE16\Mso30win32client.dll
2017-08-31 16:49 . 2017-08-31 16:49 401488 ----a-w- c:\windows\system32\aswBoot.exe
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2017-09-25 16:49 . 2016-06-21 08:21 361784 ----a-w- c:\windows\system32\drivers\aswvmm.sys
2017-09-18 16:49 . 2016-06-21 08:21 199312 ----a-w- c:\windows\system32\drivers\aswstm.sys
2017-09-13 01:07 . 2014-09-02 14:40 138202976 -c--a-w- c:\windows\system32\MRT.exe
2017-09-12 17:38 . 2016-06-21 08:29 803328 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2017-09-12 17:38 . 2016-06-21 08:29 144896 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2017-08-31 16:49 . 2016-06-21 08:21 84416 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2017-08-31 16:49 . 2016-06-21 08:21 590880 ----a-w- c:\windows\system32\drivers\aswSP.sys
2017-08-31 16:49 . 2016-06-21 08:21 47016 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2017-08-31 16:49 . 2016-06-21 08:21 147784 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2017-08-31 16:49 . 2016-06-21 08:21 110376 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2017-08-31 16:49 . 2016-06-21 08:21 1016384 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2017-08-31 16:49 . 2017-03-01 14:07 57736 ----a-w- c:\windows\system32\drivers\aswbuniva.sys
2017-08-31 16:49 . 2017-03-01 14:07 343296 ----a-w- c:\windows\system32\drivers\aswbloga.sys
2017-08-31 16:49 . 2017-03-01 14:07 320528 ----a-w- c:\windows\system32\drivers\aswbidsdrivera.sys
2017-08-31 16:49 . 2017-03-01 14:07 198976 ----a-w- c:\windows\system32\drivers\aswbidsha.sys
2017-08-11 06:35 . 2017-09-12 21:49 345600 ----a-w- c:\windows\system32\schannel.dll
2017-08-11 06:35 . 2017-09-12 21:49 190464 ----a-w- c:\windows\system32\rpchttp.dll
2017-08-11 06:19 . 2017-09-12 21:49 254464 ----a-w- c:\windows\SysWow64\schannel.dll
2017-08-11 06:19 . 2017-09-12 21:49 141312 ----a-w- c:\windows\SysWow64\rpchttp.dll
2017-08-11 06:19 . 2017-09-12 21:49 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2017-07-29 14:56 . 2017-08-09 13:06 117248 ----a-w- c:\windows\system32\drivers\tdx.sys
2017-07-26 10:10 . 2017-07-13 14:41 292 ----a-w- c:\users\Jezevec\advanced_ip_scanner_MAC.bin
2017-07-26 10:10 . 2017-07-13 14:41 15 ----a-w- c:\users\Jezevec\advanced_ip_scanner_Comments.bin
2017-07-26 10:10 . 2017-07-13 14:41 15 ----a-w- c:\users\Jezevec\advanced_ip_scanner_Aliases.bin
2017-07-23 08:57 . 2016-06-21 17:25 97856 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2017-07-21 14:26 . 2017-08-09 13:06 282624 ----a-w- c:\windows\SysWow64\mstext40.dll
2017-07-21 14:26 . 2017-08-09 13:06 518144 ----a-w- c:\windows\SysWow64\msjetoledb40.dll
2017-07-21 14:26 . 2017-08-09 13:06 290816 ----a-w- c:\windows\SysWow64\msjtes40.dll
2017-07-21 14:26 . 2017-08-09 13:06 409600 ----a-w- c:\windows\SysWow64\msexch40.dll
2017-07-14 15:29 . 2017-08-09 13:06 486400 ----a-w- c:\windows\system32\wer.dll
2017-07-14 15:29 . 2017-08-09 13:06 34304 ----a-w- c:\windows\system32\werdiagcontroller.dll
2017-07-14 15:29 . 2017-08-09 13:06 2319872 ----a-w- c:\windows\system32\tquery.dll
2017-07-14 15:29 . 2017-08-09 13:06 2058240 ----a-w- c:\windows\system32\Query.dll
2017-07-14 15:29 . 2017-08-09 13:06 778240 ----a-w- c:\windows\system32\mssvp.dll
2017-07-14 15:29 . 2017-08-09 13:06 491520 ----a-w- c:\windows\system32\mssph.dll
2017-07-14 15:29 . 2017-08-09 13:06 2222080 ----a-w- c:\windows\system32\mssrch.dll
2017-07-14 15:29 . 2017-08-09 13:06 99840 ----a-w- c:\windows\system32\mssprxy.dll
2017-07-14 15:29 . 2017-08-09 13:06 75264 ----a-w- c:\windows\system32\msscntrs.dll
2017-07-14 15:29 . 2017-08-09 13:06 288256 ----a-w- c:\windows\system32\mssphtb.dll
2017-07-14 15:29 . 2017-08-09 13:06 14336 ----a-w- c:\windows\system32\msshooks.dll
2017-07-14 15:29 . 2017-08-09 13:06 115200 ----a-w- c:\windows\system32\mssitlb.dll
2017-07-14 15:12 . 2017-08-09 13:06 591872 ----a-w- c:\windows\system32\SearchIndexer.exe
2017-07-14 15:12 . 2017-08-09 13:06 249856 ----a-w- c:\windows\system32\SearchProtocolHost.exe
2017-07-14 15:11 . 2017-08-09 13:06 113664 ----a-w- c:\windows\system32\SearchFilterHost.exe
2017-07-14 15:10 . 2017-08-09 13:06 382976 ----a-w- c:\windows\SysWow64\wer.dll
2017-07-14 15:10 . 2017-08-09 13:06 1549824 ----a-w- c:\windows\SysWow64\tquery.dll
2017-07-14 15:10 . 2017-08-09 13:06 1363968 ----a-w- c:\windows\SysWow64\Query.dll
2017-07-14 15:10 . 2017-08-09 13:06 666624 ----a-w- c:\windows\SysWow64\mssvp.dll
2017-07-14 15:10 . 2017-08-09 13:06 59392 ----a-w- c:\windows\SysWow64\msscntrs.dll
2017-07-14 15:10 . 2017-08-09 13:06 34816 ----a-w- c:\windows\SysWow64\mssprxy.dll
2017-07-14 15:10 . 2017-08-09 13:06 337408 ----a-w- c:\windows\SysWow64\mssph.dll
2017-07-14 15:10 . 2017-08-09 13:06 197120 ----a-w- c:\windows\SysWow64\mssphtb.dll
2017-07-14 15:10 . 2017-08-09 13:06 1400320 ----a-w- c:\windows\SysWow64\mssrch.dll
2017-07-14 15:10 . 2017-08-09 13:06 104448 ----a-w- c:\windows\SysWow64\mssitlb.dll
2017-07-14 15:00 . 2017-08-09 13:06 427520 ----a-w- c:\windows\SysWow64\SearchIndexer.exe
2017-07-14 15:00 . 2017-08-09 13:06 164352 ----a-w- c:\windows\SysWow64\SearchProtocolHost.exe
2017-07-14 14:59 . 2017-08-09 13:06 86528 ----a-w- c:\windows\SysWow64\SearchFilterHost.exe
2017-07-14 14:59 . 2017-08-09 13:06 9728 ----a-w- c:\windows\SysWow64\msshooks.dll
2017-07-14 14:57 . 2017-08-09 13:06 50688 ----a-w- c:\windows\system32\wermgr.exe
2017-07-14 14:50 . 2017-08-09 13:06 54272 ----a-w- c:\windows\SysWow64\wermgr.exe
2017-07-14 14:50 . 2017-08-09 13:06 28672 ----a-w- c:\windows\SysWow64\werdiagcontroller.dll
2017-07-08 15:34 . 2017-08-09 13:06 370920 ----a-w- c:\windows\system32\clfs.sys
2017-07-07 15:33 . 2017-08-09 13:06 363752 ----a-w- c:\windows\system32\drivers\volmgrx.sys
2017-07-07 15:29 . 2017-08-09 13:06 149504 ----a-w- c:\windows\system32\t2embed.dll
2017-07-07 15:11 . 2017-08-09 13:06 109568 ----a-w- c:\windows\SysWow64\t2embed.dll
2017-07-04 08:46 . 2017-07-04 08:46 124288 ----a-w- c:\windows\system32\drivers\wfcre.sys
2017-06-24 14:19 . 2017-06-24 14:19 19110936 ----a-w- c:\program files (x86)\Common Files\lpuninstall.exe
2015-03-26 11:48 . 2015-03-26 11:48 2174976 ----a-w- c:\program files (x86)\Common Files\atimpenc.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt01]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 285000 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt02]
@="{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 285000 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt03]
@="{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 285000 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt04]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 285000 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt05]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 285000 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt06]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 285000 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt07]
@="{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 285000 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt08]
@="{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 285000 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt09]
@="{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 285000 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt10]
@="{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 285000 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive1]
@="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
[HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
2017-09-21 14:48 2602704 ----a-w- c:\users\Jezevec\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\FileSyncShell.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive2]
@="{5AB7172C-9C11-405C-8DD5-AF20F3606282}"
[HKEY_CLASSES_ROOT\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}]
2017-09-21 14:48 2602704 ----a-w- c:\users\Jezevec\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\FileSyncShell.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive3]
@="{A78ED123-AB77-406B-9962-2A5D9D2F7F30}"
[HKEY_CLASSES_ROOT\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}]
2017-09-21 14:48 2602704 ----a-w- c:\users\Jezevec\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\FileSyncShell.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive4]
@="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
[HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
2017-09-21 14:48 2602704 ----a-w- c:\users\Jezevec\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\FileSyncShell.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive5]
@="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
[HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
2017-09-21 14:48 2602704 ----a-w- c:\users\Jezevec\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\FileSyncShell.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)]
@="{8BA85C75-763B-4103-94EB-9470F12FE0F7}"
[HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
2017-07-11 05:04 1524016 ----a-w- c:\progra~2\MICROS~1\Office16\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)]
@="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}"
[HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
2017-07-11 05:04 1524016 ----a-w- c:\progra~2\MICROS~1\Office16\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)]
@="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}"
[HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
2017-07-11 05:04 1524016 ----a-w- c:\progra~2\MICROS~1\Office16\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\###MegaShellExtPending]
@="{056D528D-CE28-4194-9BA3-BA2E9197FF8C}"
[HKEY_CLASSES_ROOT\CLSID\{056D528D-CE28-4194-9BA3-BA2E9197FF8C}]
2017-06-23 09:32 569856 ----a-w- c:\users\Jezevec\AppData\Local\MEGAsync\ShellExtX32.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\###MegaShellExtSynced]
@="{05B38830-F4E9-4329-978B-1DD28605D202}"
[HKEY_CLASSES_ROOT\CLSID\{05B38830-F4E9-4329-978B-1DD28605D202}]
2017-06-23 09:32 569856 ----a-w- c:\users\Jezevec\AppData\Local\MEGAsync\ShellExtX32.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\###MegaShellExtSyncing]
@="{0596C850-7BDD-4C9D-AFDF-873BE6890637}"
[HKEY_CLASSES_ROOT\CLSID\{0596C850-7BDD-4C9D-AFDF-873BE6890637}]
2017-06-23 09:32 569856 ----a-w- c:\users\Jezevec\AppData\Local\MEGAsync\ShellExtX32.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.szndesktop"="c:\users\Jezevec\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" [2015-05-26 103080]
"GoogleDriveSync"="c:\program files (x86)\Google\Drive\googledrivesync.exe" [2017-08-31 40257336]
"OneDrive"="c:\users\Jezevec\AppData\Local\Microsoft\OneDrive\OneDrive.exe" [2017-09-21 1686736]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"Dropbox"="c:\program files (x86)\Dropbox\Client\Dropbox.exe" [2017-09-20 3481912]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2017-07-12 587288]
.
c:\users\Jezevec\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
MEGAsync.lnk - c:\users\Jezevec\AppData\Local\MEGAsync\MEGAsync.exe [2016-6-3 5415936]
Poslat do aplikace OneNote.lnk - c:\program files\Microsoft Office\Office16\ONENOTEM.EXE /tsr [2015-7-31 171696]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
R0 MpKsiUXMRBT;guarder701;c:\windows\System32\MpKslmitORu.sys;c:\windows\SYSNATIVE\MpKslmitORu.sys [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 dbupdate;Dropbox Update Service (dbupdate);c:\program files (x86)\Dropbox\Update\DropboxUpdate.exe;c:\program files (x86)\Dropbox\Update\DropboxUpdate.exe [x]
R2 Fabs;FABS - Helping agent for MAGIX media database;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [x]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service;c:\windows\system32\igfxCUIService.exe;c:\windows\SYSNATIVE\igfxCUIService.exe [x]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x]
R3 aswHwid;aswHwid;c:\windows\system32\drivers\aswHwid.sys;c:\windows\SYSNATIVE\drivers\aswHwid.sys [x]
R3 BITCOMET_HELPER_SERVICE;BitComet Disk Boost Service;c:\program files\BitComet\tools\BitCometService.exe;c:\program files\BitComet\tools\BitCometService.exe [x]
R3 dbupdatem;Dropbox Update Service (dbupdatem);c:\program files (x86)\Dropbox\Update\DropboxUpdate.exe;c:\program files (x86)\Dropbox\Update\DropboxUpdate.exe [x]
R3 dbx;dbx;c:\windows\system32\DRIVERS\dbx.sys;c:\windows\SYSNATIVE\DRIVERS\dbx.sys [x]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service;c:\program files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe;c:\program files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [x]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys;c:\windows\SYSNATIVE\drivers\dmvsc.sys [x]
R3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [x]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
R3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;c:\program files\Intel\iCLS Client\SocketHeciServer.exe;c:\program files\Intel\iCLS Client\SocketHeciServer.exe [x]
R3 MpKslFakeKy;MpKslFakeKy; [x]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x]
R3 ose64;Office 64 Source Engine;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 RTL8023x64;Realtek 10/100 NIC Family NDIS x64 Driver;c:\windows\system32\DRIVERS\Rtnic64.sys;c:\windows\SYSNATIVE\DRIVERS\Rtnic64.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R3 WiaRpc;Události načítání snímků;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x]
S0 aswbidsh;aswbidsh;c:\windows\\SystemRoot\system32\drivers\aswbidsha.sys;c:\windows\\SystemRoot\system32\drivers\aswbidsha.sys [x]
S0 aswblog;aswblog;c:\windows\\SystemRoot\system32\drivers\aswbloga.sys;c:\windows\\SystemRoot\system32\drivers\aswbloga.sys [x]
S0 aswbuniv;aswbuniv;c:\windows\\SystemRoot\system32\drivers\aswbuniva.sys;c:\windows\\SystemRoot\system32\drivers\aswbuniva.sys [x]
S0 aswRvrt;aswRvrt;c:\windows\\SystemRoot\system32\drivers\aswRvrt.sys;c:\windows\\SystemRoot\system32\drivers\aswRvrt.sys [x]
S0 aswVmm;aswVmm;c:\windows\\SystemRoot\system32\drivers\aswVmm.sys;c:\windows\\SystemRoot\system32\drivers\aswVmm.sys [x]
S0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hcs.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hcs.sys [x]
S0 SI3112r;SiI-3512 SATARaid Controller;c:\windows\system32\DRIVERS\SI3112r.sys;c:\windows\SYSNATIVE\DRIVERS\SI3112r.sys [x]
S1 aswbidsdriver;aswbidsdriver;c:\windows\system32\drivers\aswbidsdrivera.sys;c:\windows\SYSNATIVE\drivers\aswbidsdrivera.sys [x]
S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x]
S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x]
S1 wfcre;wfcre;c:\windows\system32\drivers\wfcre.sys;c:\windows\SYSNATIVE\drivers\wfcre.sys [x]
S2 ABBYY.Licensing.FineReader.Corporate.11.0;ABBYY FineReader 11 CE Licensing Service;c:\program files (x86)\Common Files\ABBYY\FineReader\11.00\Licensing\CE\NetworkLicenseServer.exe;c:\program files (x86)\Common Files\ABBYY\FineReader\11.00\Licensing\CE\NetworkLicenseServer.exe [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys [x]
S2 DbxSvc;DbxSvc;c:\windows\system32\DbxSvc.exe;c:\windows\SYSNATIVE\DbxSvc.exe [x]
S2 DiagTrack;Diagnostics Tracking Service;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x]
S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x]
S2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
S2 SSPORT;SSPORT;c:\windows\system32\Drivers\SSPORT.sys;c:\windows\SYSNATIVE\Drivers\SSPORT.sys [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S3 aswbIDSAgent;aswbIDSAgent;c:\program files\AVAST Software\Avast\x64\aswidsagenta.exe;c:\program files\AVAST Software\Avast\x64\aswidsagenta.exe [x]
S3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus;c:\windows\system32\DRIVERS\dtlitescsibus.sys;c:\windows\SYSNATIVE\DRIVERS\dtlitescsibus.sys [x]
S3 dtliteusbbus;DAEMON Tools Lite Virtual USB Bus;c:\windows\system32\DRIVERS\dtliteusbbus.sys;c:\windows\SYSNATIVE\DRIVERS\dtliteusbbus.sys [x]
S3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x]
S3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
*Deregistered* - VqJXCIdY
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr QWAVE wcncsvc
.
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Svchost - LocalSystemNetworkRestricted
WiaRpc
.
.
Obsah adresáře 'Naplánované úlohy'
.
2017-09-30 c:\windows\Tasks\DropboxUpdateTaskMachineCore.job
- c:\program files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-06-22 06:16]
.
2017-09-30 c:\windows\Tasks\DropboxUpdateTaskMachineUA.job
- c:\program files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-06-22 06:16]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt01]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 333128 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt02]
@="{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 333128 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt03]
@="{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 333128 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt03Ex]
@="{1FAAF9CB-1375-5A19-6847-664E9D5B32EE}"
[HKEY_CLASSES_ROOT\CLSID\{1FAAF9CB-1375-5A19-6847-664E9D5B32EE}]
2017-09-23 14:10 12431360 ----a-w- c:\programdata\Microsoft\Windows NT\MSFax\ActivityLog\CalendarExt.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt04]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 333128 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt05]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 333128 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt06]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 333128 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt07]
@="{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 333128 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt08]
@="{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 333128 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt09]
@="{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 333128 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt10]
@="{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 333128 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive1]
@="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
[HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
2017-09-21 14:48 2863824 ----a-w- c:\users\Jezevec\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\amd64\FileSyncShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive2]
@="{5AB7172C-9C11-405C-8DD5-AF20F3606282}"
[HKEY_CLASSES_ROOT\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}]
2017-09-21 14:48 2863824 ----a-w- c:\users\Jezevec\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\amd64\FileSyncShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive3]
@="{A78ED123-AB77-406B-9962-2A5D9D2F7F30}"
[HKEY_CLASSES_ROOT\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}]
2017-09-21 14:48 2863824 ----a-w- c:\users\Jezevec\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\amd64\FileSyncShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive4]
@="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
[HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
2017-09-21 14:48 2863824 ----a-w- c:\users\Jezevec\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\amd64\FileSyncShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive5]
@="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
[HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
2017-09-21 14:48 2863824 ----a-w- c:\users\Jezevec\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\amd64\FileSyncShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ GoogleDriveBlacklisted]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2017-08-31 15:18 775064 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ GoogleDriveSynced]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2017-08-31 15:18 775064 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ GoogleDriveSyncing]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2017-08-31 15:18 775064 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)]
@="{8BA85C75-763B-4103-94EB-9470F12FE0F7}"
[HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
2017-07-11 05:03 2179376 ----a-w- c:\progra~1\MICROS~1\Office16\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)]
@="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}"
[HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
2017-07-11 05:03 2179376 ----a-w- c:\progra~1\MICROS~1\Office16\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)]
@="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}"
[HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
2017-07-11 05:03 2179376 ----a-w- c:\progra~1\MICROS~1\Office16\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\###MegaShellExtPending]
@="{056D528D-CE28-4194-9BA3-BA2E9197FF8C}"
[HKEY_CLASSES_ROOT\CLSID\{056D528D-CE28-4194-9BA3-BA2E9197FF8C}]
2017-06-23 09:32 598528 ----a-w- c:\users\Jezevec\AppData\Local\MEGAsync\ShellExtX64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\###MegaShellExtSynced]
@="{05B38830-F4E9-4329-978B-1DD28605D202}"
[HKEY_CLASSES_ROOT\CLSID\{05B38830-F4E9-4329-978B-1DD28605D202}]
2017-06-23 09:32 598528 ----a-w- c:\users\Jezevec\AppData\Local\MEGAsync\ShellExtX64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\###MegaShellExtSyncing]
@="{0596C850-7BDD-4C9D-AFDF-873BE6890637}"
[HKEY_CLASSES_ROOT\CLSID\{0596C850-7BDD-4C9D-AFDF-873BE6890637}]
2017-06-23 09:32 598528 ----a-w- c:\users\Jezevec\AppData\Local\MEGAsync\ShellExtX64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00asw]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2017-08-31 16:49 1770920 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00asw]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2017-08-31 16:49 1770920 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvLaunch.exe" [2017-08-31 239856]
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - LocalSystemNetworkRestricted
WiaRpc
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.seznam.cz/
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: E&xportovat do Microsoft Excelu - c:\progra~1\MICROS~1\Office16\EXCEL.EXE/3000
IE: Poslat do On&eNotu - c:\progra~1\MICROS~1\Office16\ONBttnIE.dll/105
IE: SmarThru4 Capture Selection - c:\program files (x86)\SmarThru 4\WebCapture.dll2.htm
IE: SmarThru4 Save as HTML - c:\program files (x86)\SmarThru 4\WebCapture.dll1.htm
IE: SmarThru4 Save Selected Text - c:\program files (x86)\SmarThru 4\WebCapture.dll.htm
IE: SmarThru4 Web Capture - c:\program files (x86)\SmarThru 4\WebCapture.dll
TCP: DhcpNameServer = 192.168.16.1 0.0.0.0
Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - c:\program files (x86)\Common Files\microsoft shared\OFFICE16\MSOXMLMF.DLL
Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - c:\program files (x86)\Microsoft Office\Office16\MSOSB.DLL
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - c:\program files (x86)\Microsoft Office\Office16\MSOSB.DLL
FF - ProfilePath - c:\users\Jezevec\AppData\Roaming\Mozilla\Firefox\Profiles\zn0d1o7w.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}&
FF - prefs.js: browser.startup.homepage - hxxps://www.seznam.cz/
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VqJXCIdY]
"ImagePath"="system32\drivers\VqJXCIdY.sys"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (LocalSystem)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,c4,2b,c5,ec,cc,0d,ce,48,bb,c1,a2,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,c4,2b,c5,ec,cc,0d,ce,48,bb,c1,a2,\
.
[HKEY_USERS\S-1-5-21-3508648510-883788364-2179421100-1001\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{81FA2D9F-3A26-7CE7-1164-E720A7481261}*]
"jafggkipocnakjfkgehf"=hex:62,61,68,69,00,00
"jafggkipocnakjfkgelf"=hex:62,61,68,69,00,00
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files\AVAST Software\Avast\AvastUI.exe
c:\users\Jezevec\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
.
**************************************************************************
.
Celkový čas: 2017-09-30 14:15:22 - počítač byl restartován
ComboFix-quarantined-files.txt 2017-09-30 12:15
.
Před spuštěním: Volných bajtů: 45 065 383 936
Po spuštění: Volných bajtů: 45 515 022 336
.
- - End Of File - - 4019789EA7767F83AD8ABE08B0D61D07
A36C5E4F47E84449FF07ED3517B43A31
Avast na mě hází tyto výstrahy a sem tam se mi otevře ve Firefox nové okno. Prosím o pomoc.

Log z ComboFix:
ComboFix 17-09-14.01 - Jezevec 30.09.2017 13:22:33.1.2 - x64
Microsoft Windows 7 Professional 6.1.7601.1.1250.420.1029.18.4041.940 [GMT 2:00]
Spuštěný z: c:\users\Jezevec\Desktop\ComboFix.exe
AV: Avast Antivirus *Disabled/Updated* {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
SP: Avast Antivirus *Disabled/Updated* {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\_ctypes.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\_elementtree.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\_hashlib.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\_multiprocessing.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\_psutil_windows.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\_socket.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\_ssl.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\_yappi.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\common.time34.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\hashobjs_ext.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\PIL._imaging.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\pyexpat.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\pysqlite2._sqlite.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\python27.dll
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\pythoncom27.dll
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\pywintypes27.dll
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\select.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\thumbnails_ext.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\unicodedata.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\usb_ext.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32api.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32com.shell.shell.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32crypt.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32event.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32file.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32gui.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32inet.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32pdh.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32pipe.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32process.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32profile.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32security.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\win32ts.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\windows._lib_cacheinvalidation.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\windows.device_monitor.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\windows.volumes.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\windows.winwrap.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wx._controls_.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wx._core_.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wx._gdi_.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wx._html2.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wx._misc_.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wx._windows_.pyd
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wxbase30u_net_vc90.dll
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wxbase30u_vc90.dll
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wxmsw30u_adv_vc90.dll
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wxmsw30u_core_vc90.dll
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wxmsw30u_html_vc90.dll
c:\users\Jezevec\AppData\Local\Temp\_MEI23642\wxmsw30u_webview_vc90.dll
c:\windows\msdownld.tmp
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2017-08-28 do 2017-09-30 )))))))))))))))))))))))))))))))
.
.
2017-09-30 12:12 . 2017-09-30 12:12 144 ----a-w- c:\windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2017-09-30 12:11 . 2017-09-30 12:11 -------- d-----w- c:\users\Default\AppData\Local\temp
2017-09-27 16:21 . 2017-09-27 16:21 -------- d--h--w- C:\OneDriveTemp
2017-09-23 15:44 . 2017-09-24 15:44 -------- d-----w- c:\windows\AutoKMS
2017-09-23 15:43 . 2017-09-23 15:43 -------- d-----w- c:\programdata\Microsoft Toolkit
2017-09-23 14:14 . 2017-09-23 14:14 -------- d-----w- C:\$AV_ASW
2017-09-23 14:12 . 2017-09-23 14:12 -------- d-----w- c:\programdata\ecba57a0-35f5-1
2017-09-23 14:12 . 2017-09-23 14:12 -------- d-----w- c:\programdata\ecba57a0-2713-0
2017-09-23 14:10 . 2017-09-23 14:10 12431360 ----a-w- c:\programdata\Microsoft\Windows NT\MSFax\ActivityLog\CalendarExt.dll
2017-09-23 14:10 . 2017-09-23 14:10 -------- d-----w- c:\program files (x86)\360
2017-09-23 14:09 . 2017-09-30 05:38 -------- d-----w- c:\programdata\LCFApp
2017-09-23 14:09 . 2017-09-23 14:09 -------- d-----w- c:\users\Public\Thunder Network
2017-09-23 14:09 . 2017-09-23 14:09 -------- d-----w- c:\programdata\Thunder Network
2017-09-20 16:48 . 2017-09-20 16:48 49992 ----a-w- c:\windows\system32\DbxSvc.exe
2017-09-20 16:48 . 2017-09-20 16:48 45672 ----a-w- c:\windows\system32\drivers\dbx-dev.sys
2017-09-20 16:48 . 2017-09-20 16:48 45640 ----a-w- c:\windows\system32\drivers\dbx-stable.sys
2017-09-20 16:48 . 2017-09-20 16:48 45640 ----a-w- c:\windows\system32\drivers\dbx-canary.sys
2017-09-12 21:49 . 2017-08-16 01:10 293072 ----a-w- c:\program files\Internet Explorer\sqmapi.dll
2017-09-07 09:56 . 2017-09-07 09:56 3199232 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\OFFICE16\Mso30win32client.dll
2017-09-07 09:45 . 2017-09-07 09:45 4766976 ----a-w- c:\program files\Common Files\Microsoft Shared\OFFICE16\Mso30win32client.dll
2017-08-31 16:49 . 2017-08-31 16:49 401488 ----a-w- c:\windows\system32\aswBoot.exe
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2017-09-25 16:49 . 2016-06-21 08:21 361784 ----a-w- c:\windows\system32\drivers\aswvmm.sys
2017-09-18 16:49 . 2016-06-21 08:21 199312 ----a-w- c:\windows\system32\drivers\aswstm.sys
2017-09-13 01:07 . 2014-09-02 14:40 138202976 -c--a-w- c:\windows\system32\MRT.exe
2017-09-12 17:38 . 2016-06-21 08:29 803328 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2017-09-12 17:38 . 2016-06-21 08:29 144896 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2017-08-31 16:49 . 2016-06-21 08:21 84416 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2017-08-31 16:49 . 2016-06-21 08:21 590880 ----a-w- c:\windows\system32\drivers\aswSP.sys
2017-08-31 16:49 . 2016-06-21 08:21 47016 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2017-08-31 16:49 . 2016-06-21 08:21 147784 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2017-08-31 16:49 . 2016-06-21 08:21 110376 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2017-08-31 16:49 . 2016-06-21 08:21 1016384 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2017-08-31 16:49 . 2017-03-01 14:07 57736 ----a-w- c:\windows\system32\drivers\aswbuniva.sys
2017-08-31 16:49 . 2017-03-01 14:07 343296 ----a-w- c:\windows\system32\drivers\aswbloga.sys
2017-08-31 16:49 . 2017-03-01 14:07 320528 ----a-w- c:\windows\system32\drivers\aswbidsdrivera.sys
2017-08-31 16:49 . 2017-03-01 14:07 198976 ----a-w- c:\windows\system32\drivers\aswbidsha.sys
2017-08-11 06:35 . 2017-09-12 21:49 345600 ----a-w- c:\windows\system32\schannel.dll
2017-08-11 06:35 . 2017-09-12 21:49 190464 ----a-w- c:\windows\system32\rpchttp.dll
2017-08-11 06:19 . 2017-09-12 21:49 254464 ----a-w- c:\windows\SysWow64\schannel.dll
2017-08-11 06:19 . 2017-09-12 21:49 141312 ----a-w- c:\windows\SysWow64\rpchttp.dll
2017-08-11 06:19 . 2017-09-12 21:49 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2017-07-29 14:56 . 2017-08-09 13:06 117248 ----a-w- c:\windows\system32\drivers\tdx.sys
2017-07-26 10:10 . 2017-07-13 14:41 292 ----a-w- c:\users\Jezevec\advanced_ip_scanner_MAC.bin
2017-07-26 10:10 . 2017-07-13 14:41 15 ----a-w- c:\users\Jezevec\advanced_ip_scanner_Comments.bin
2017-07-26 10:10 . 2017-07-13 14:41 15 ----a-w- c:\users\Jezevec\advanced_ip_scanner_Aliases.bin
2017-07-23 08:57 . 2016-06-21 17:25 97856 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2017-07-21 14:26 . 2017-08-09 13:06 282624 ----a-w- c:\windows\SysWow64\mstext40.dll
2017-07-21 14:26 . 2017-08-09 13:06 518144 ----a-w- c:\windows\SysWow64\msjetoledb40.dll
2017-07-21 14:26 . 2017-08-09 13:06 290816 ----a-w- c:\windows\SysWow64\msjtes40.dll
2017-07-21 14:26 . 2017-08-09 13:06 409600 ----a-w- c:\windows\SysWow64\msexch40.dll
2017-07-14 15:29 . 2017-08-09 13:06 486400 ----a-w- c:\windows\system32\wer.dll
2017-07-14 15:29 . 2017-08-09 13:06 34304 ----a-w- c:\windows\system32\werdiagcontroller.dll
2017-07-14 15:29 . 2017-08-09 13:06 2319872 ----a-w- c:\windows\system32\tquery.dll
2017-07-14 15:29 . 2017-08-09 13:06 2058240 ----a-w- c:\windows\system32\Query.dll
2017-07-14 15:29 . 2017-08-09 13:06 778240 ----a-w- c:\windows\system32\mssvp.dll
2017-07-14 15:29 . 2017-08-09 13:06 491520 ----a-w- c:\windows\system32\mssph.dll
2017-07-14 15:29 . 2017-08-09 13:06 2222080 ----a-w- c:\windows\system32\mssrch.dll
2017-07-14 15:29 . 2017-08-09 13:06 99840 ----a-w- c:\windows\system32\mssprxy.dll
2017-07-14 15:29 . 2017-08-09 13:06 75264 ----a-w- c:\windows\system32\msscntrs.dll
2017-07-14 15:29 . 2017-08-09 13:06 288256 ----a-w- c:\windows\system32\mssphtb.dll
2017-07-14 15:29 . 2017-08-09 13:06 14336 ----a-w- c:\windows\system32\msshooks.dll
2017-07-14 15:29 . 2017-08-09 13:06 115200 ----a-w- c:\windows\system32\mssitlb.dll
2017-07-14 15:12 . 2017-08-09 13:06 591872 ----a-w- c:\windows\system32\SearchIndexer.exe
2017-07-14 15:12 . 2017-08-09 13:06 249856 ----a-w- c:\windows\system32\SearchProtocolHost.exe
2017-07-14 15:11 . 2017-08-09 13:06 113664 ----a-w- c:\windows\system32\SearchFilterHost.exe
2017-07-14 15:10 . 2017-08-09 13:06 382976 ----a-w- c:\windows\SysWow64\wer.dll
2017-07-14 15:10 . 2017-08-09 13:06 1549824 ----a-w- c:\windows\SysWow64\tquery.dll
2017-07-14 15:10 . 2017-08-09 13:06 1363968 ----a-w- c:\windows\SysWow64\Query.dll
2017-07-14 15:10 . 2017-08-09 13:06 666624 ----a-w- c:\windows\SysWow64\mssvp.dll
2017-07-14 15:10 . 2017-08-09 13:06 59392 ----a-w- c:\windows\SysWow64\msscntrs.dll
2017-07-14 15:10 . 2017-08-09 13:06 34816 ----a-w- c:\windows\SysWow64\mssprxy.dll
2017-07-14 15:10 . 2017-08-09 13:06 337408 ----a-w- c:\windows\SysWow64\mssph.dll
2017-07-14 15:10 . 2017-08-09 13:06 197120 ----a-w- c:\windows\SysWow64\mssphtb.dll
2017-07-14 15:10 . 2017-08-09 13:06 1400320 ----a-w- c:\windows\SysWow64\mssrch.dll
2017-07-14 15:10 . 2017-08-09 13:06 104448 ----a-w- c:\windows\SysWow64\mssitlb.dll
2017-07-14 15:00 . 2017-08-09 13:06 427520 ----a-w- c:\windows\SysWow64\SearchIndexer.exe
2017-07-14 15:00 . 2017-08-09 13:06 164352 ----a-w- c:\windows\SysWow64\SearchProtocolHost.exe
2017-07-14 14:59 . 2017-08-09 13:06 86528 ----a-w- c:\windows\SysWow64\SearchFilterHost.exe
2017-07-14 14:59 . 2017-08-09 13:06 9728 ----a-w- c:\windows\SysWow64\msshooks.dll
2017-07-14 14:57 . 2017-08-09 13:06 50688 ----a-w- c:\windows\system32\wermgr.exe
2017-07-14 14:50 . 2017-08-09 13:06 54272 ----a-w- c:\windows\SysWow64\wermgr.exe
2017-07-14 14:50 . 2017-08-09 13:06 28672 ----a-w- c:\windows\SysWow64\werdiagcontroller.dll
2017-07-08 15:34 . 2017-08-09 13:06 370920 ----a-w- c:\windows\system32\clfs.sys
2017-07-07 15:33 . 2017-08-09 13:06 363752 ----a-w- c:\windows\system32\drivers\volmgrx.sys
2017-07-07 15:29 . 2017-08-09 13:06 149504 ----a-w- c:\windows\system32\t2embed.dll
2017-07-07 15:11 . 2017-08-09 13:06 109568 ----a-w- c:\windows\SysWow64\t2embed.dll
2017-07-04 08:46 . 2017-07-04 08:46 124288 ----a-w- c:\windows\system32\drivers\wfcre.sys
2017-06-24 14:19 . 2017-06-24 14:19 19110936 ----a-w- c:\program files (x86)\Common Files\lpuninstall.exe
2015-03-26 11:48 . 2015-03-26 11:48 2174976 ----a-w- c:\program files (x86)\Common Files\atimpenc.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt01]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 285000 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt02]
@="{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 285000 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt03]
@="{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 285000 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt04]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 285000 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt05]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 285000 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt06]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 285000 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt07]
@="{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 285000 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt08]
@="{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 285000 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt09]
@="{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 285000 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt10]
@="{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 285000 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive1]
@="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
[HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
2017-09-21 14:48 2602704 ----a-w- c:\users\Jezevec\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\FileSyncShell.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive2]
@="{5AB7172C-9C11-405C-8DD5-AF20F3606282}"
[HKEY_CLASSES_ROOT\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}]
2017-09-21 14:48 2602704 ----a-w- c:\users\Jezevec\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\FileSyncShell.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive3]
@="{A78ED123-AB77-406B-9962-2A5D9D2F7F30}"
[HKEY_CLASSES_ROOT\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}]
2017-09-21 14:48 2602704 ----a-w- c:\users\Jezevec\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\FileSyncShell.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive4]
@="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
[HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
2017-09-21 14:48 2602704 ----a-w- c:\users\Jezevec\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\FileSyncShell.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive5]
@="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
[HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
2017-09-21 14:48 2602704 ----a-w- c:\users\Jezevec\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\FileSyncShell.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)]
@="{8BA85C75-763B-4103-94EB-9470F12FE0F7}"
[HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
2017-07-11 05:04 1524016 ----a-w- c:\progra~2\MICROS~1\Office16\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)]
@="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}"
[HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
2017-07-11 05:04 1524016 ----a-w- c:\progra~2\MICROS~1\Office16\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)]
@="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}"
[HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
2017-07-11 05:04 1524016 ----a-w- c:\progra~2\MICROS~1\Office16\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\###MegaShellExtPending]
@="{056D528D-CE28-4194-9BA3-BA2E9197FF8C}"
[HKEY_CLASSES_ROOT\CLSID\{056D528D-CE28-4194-9BA3-BA2E9197FF8C}]
2017-06-23 09:32 569856 ----a-w- c:\users\Jezevec\AppData\Local\MEGAsync\ShellExtX32.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\###MegaShellExtSynced]
@="{05B38830-F4E9-4329-978B-1DD28605D202}"
[HKEY_CLASSES_ROOT\CLSID\{05B38830-F4E9-4329-978B-1DD28605D202}]
2017-06-23 09:32 569856 ----a-w- c:\users\Jezevec\AppData\Local\MEGAsync\ShellExtX32.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\###MegaShellExtSyncing]
@="{0596C850-7BDD-4C9D-AFDF-873BE6890637}"
[HKEY_CLASSES_ROOT\CLSID\{0596C850-7BDD-4C9D-AFDF-873BE6890637}]
2017-06-23 09:32 569856 ----a-w- c:\users\Jezevec\AppData\Local\MEGAsync\ShellExtX32.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.szndesktop"="c:\users\Jezevec\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" [2015-05-26 103080]
"GoogleDriveSync"="c:\program files (x86)\Google\Drive\googledrivesync.exe" [2017-08-31 40257336]
"OneDrive"="c:\users\Jezevec\AppData\Local\Microsoft\OneDrive\OneDrive.exe" [2017-09-21 1686736]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"Dropbox"="c:\program files (x86)\Dropbox\Client\Dropbox.exe" [2017-09-20 3481912]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2017-07-12 587288]
.
c:\users\Jezevec\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
MEGAsync.lnk - c:\users\Jezevec\AppData\Local\MEGAsync\MEGAsync.exe [2016-6-3 5415936]
Poslat do aplikace OneNote.lnk - c:\program files\Microsoft Office\Office16\ONENOTEM.EXE /tsr [2015-7-31 171696]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
R0 MpKsiUXMRBT;guarder701;c:\windows\System32\MpKslmitORu.sys;c:\windows\SYSNATIVE\MpKslmitORu.sys [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 dbupdate;Dropbox Update Service (dbupdate);c:\program files (x86)\Dropbox\Update\DropboxUpdate.exe;c:\program files (x86)\Dropbox\Update\DropboxUpdate.exe [x]
R2 Fabs;FABS - Helping agent for MAGIX media database;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [x]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service;c:\windows\system32\igfxCUIService.exe;c:\windows\SYSNATIVE\igfxCUIService.exe [x]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x]
R3 aswHwid;aswHwid;c:\windows\system32\drivers\aswHwid.sys;c:\windows\SYSNATIVE\drivers\aswHwid.sys [x]
R3 BITCOMET_HELPER_SERVICE;BitComet Disk Boost Service;c:\program files\BitComet\tools\BitCometService.exe;c:\program files\BitComet\tools\BitCometService.exe [x]
R3 dbupdatem;Dropbox Update Service (dbupdatem);c:\program files (x86)\Dropbox\Update\DropboxUpdate.exe;c:\program files (x86)\Dropbox\Update\DropboxUpdate.exe [x]
R3 dbx;dbx;c:\windows\system32\DRIVERS\dbx.sys;c:\windows\SYSNATIVE\DRIVERS\dbx.sys [x]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service;c:\program files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe;c:\program files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [x]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys;c:\windows\SYSNATIVE\drivers\dmvsc.sys [x]
R3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [x]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
R3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;c:\program files\Intel\iCLS Client\SocketHeciServer.exe;c:\program files\Intel\iCLS Client\SocketHeciServer.exe [x]
R3 MpKslFakeKy;MpKslFakeKy; [x]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x]
R3 ose64;Office 64 Source Engine;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 RTL8023x64;Realtek 10/100 NIC Family NDIS x64 Driver;c:\windows\system32\DRIVERS\Rtnic64.sys;c:\windows\SYSNATIVE\DRIVERS\Rtnic64.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R3 WiaRpc;Události načítání snímků;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x]
S0 aswbidsh;aswbidsh;c:\windows\\SystemRoot\system32\drivers\aswbidsha.sys;c:\windows\\SystemRoot\system32\drivers\aswbidsha.sys [x]
S0 aswblog;aswblog;c:\windows\\SystemRoot\system32\drivers\aswbloga.sys;c:\windows\\SystemRoot\system32\drivers\aswbloga.sys [x]
S0 aswbuniv;aswbuniv;c:\windows\\SystemRoot\system32\drivers\aswbuniva.sys;c:\windows\\SystemRoot\system32\drivers\aswbuniva.sys [x]
S0 aswRvrt;aswRvrt;c:\windows\\SystemRoot\system32\drivers\aswRvrt.sys;c:\windows\\SystemRoot\system32\drivers\aswRvrt.sys [x]
S0 aswVmm;aswVmm;c:\windows\\SystemRoot\system32\drivers\aswVmm.sys;c:\windows\\SystemRoot\system32\drivers\aswVmm.sys [x]
S0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hcs.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hcs.sys [x]
S0 SI3112r;SiI-3512 SATARaid Controller;c:\windows\system32\DRIVERS\SI3112r.sys;c:\windows\SYSNATIVE\DRIVERS\SI3112r.sys [x]
S1 aswbidsdriver;aswbidsdriver;c:\windows\system32\drivers\aswbidsdrivera.sys;c:\windows\SYSNATIVE\drivers\aswbidsdrivera.sys [x]
S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x]
S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x]
S1 wfcre;wfcre;c:\windows\system32\drivers\wfcre.sys;c:\windows\SYSNATIVE\drivers\wfcre.sys [x]
S2 ABBYY.Licensing.FineReader.Corporate.11.0;ABBYY FineReader 11 CE Licensing Service;c:\program files (x86)\Common Files\ABBYY\FineReader\11.00\Licensing\CE\NetworkLicenseServer.exe;c:\program files (x86)\Common Files\ABBYY\FineReader\11.00\Licensing\CE\NetworkLicenseServer.exe [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys [x]
S2 DbxSvc;DbxSvc;c:\windows\system32\DbxSvc.exe;c:\windows\SYSNATIVE\DbxSvc.exe [x]
S2 DiagTrack;Diagnostics Tracking Service;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x]
S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x]
S2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
S2 SSPORT;SSPORT;c:\windows\system32\Drivers\SSPORT.sys;c:\windows\SYSNATIVE\Drivers\SSPORT.sys [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S3 aswbIDSAgent;aswbIDSAgent;c:\program files\AVAST Software\Avast\x64\aswidsagenta.exe;c:\program files\AVAST Software\Avast\x64\aswidsagenta.exe [x]
S3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus;c:\windows\system32\DRIVERS\dtlitescsibus.sys;c:\windows\SYSNATIVE\DRIVERS\dtlitescsibus.sys [x]
S3 dtliteusbbus;DAEMON Tools Lite Virtual USB Bus;c:\windows\system32\DRIVERS\dtliteusbbus.sys;c:\windows\SYSNATIVE\DRIVERS\dtliteusbbus.sys [x]
S3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x]
S3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
*Deregistered* - VqJXCIdY
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr QWAVE wcncsvc
.
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Svchost - LocalSystemNetworkRestricted
WiaRpc
.
.
Obsah adresáře 'Naplánované úlohy'
.
2017-09-30 c:\windows\Tasks\DropboxUpdateTaskMachineCore.job
- c:\program files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-06-22 06:16]
.
2017-09-30 c:\windows\Tasks\DropboxUpdateTaskMachineUA.job
- c:\program files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-06-22 06:16]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt01]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 333128 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt02]
@="{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 333128 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt03]
@="{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 333128 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt03Ex]
@="{1FAAF9CB-1375-5A19-6847-664E9D5B32EE}"
[HKEY_CLASSES_ROOT\CLSID\{1FAAF9CB-1375-5A19-6847-664E9D5B32EE}]
2017-09-23 14:10 12431360 ----a-w- c:\programdata\Microsoft\Windows NT\MSFax\ActivityLog\CalendarExt.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt04]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 333128 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt05]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 333128 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt06]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 333128 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt07]
@="{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 333128 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt08]
@="{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 333128 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt09]
@="{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 333128 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ DropboxExt10]
@="{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}]
2017-09-20 16:36 333128 ----a-w- c:\program files (x86)\Dropbox\Client\DropboxExt64.18.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive1]
@="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
[HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
2017-09-21 14:48 2863824 ----a-w- c:\users\Jezevec\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\amd64\FileSyncShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive2]
@="{5AB7172C-9C11-405C-8DD5-AF20F3606282}"
[HKEY_CLASSES_ROOT\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}]
2017-09-21 14:48 2863824 ----a-w- c:\users\Jezevec\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\amd64\FileSyncShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive3]
@="{A78ED123-AB77-406B-9962-2A5D9D2F7F30}"
[HKEY_CLASSES_ROOT\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}]
2017-09-21 14:48 2863824 ----a-w- c:\users\Jezevec\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\amd64\FileSyncShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive4]
@="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
[HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
2017-09-21 14:48 2863824 ----a-w- c:\users\Jezevec\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\amd64\FileSyncShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive5]
@="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
[HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
2017-09-21 14:48 2863824 ----a-w- c:\users\Jezevec\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\amd64\FileSyncShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ GoogleDriveBlacklisted]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2017-08-31 15:18 775064 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ GoogleDriveSynced]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2017-08-31 15:18 775064 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ GoogleDriveSyncing]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2017-08-31 15:18 775064 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)]
@="{8BA85C75-763B-4103-94EB-9470F12FE0F7}"
[HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
2017-07-11 05:03 2179376 ----a-w- c:\progra~1\MICROS~1\Office16\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)]
@="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}"
[HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
2017-07-11 05:03 2179376 ----a-w- c:\progra~1\MICROS~1\Office16\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)]
@="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}"
[HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
2017-07-11 05:03 2179376 ----a-w- c:\progra~1\MICROS~1\Office16\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\###MegaShellExtPending]
@="{056D528D-CE28-4194-9BA3-BA2E9197FF8C}"
[HKEY_CLASSES_ROOT\CLSID\{056D528D-CE28-4194-9BA3-BA2E9197FF8C}]
2017-06-23 09:32 598528 ----a-w- c:\users\Jezevec\AppData\Local\MEGAsync\ShellExtX64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\###MegaShellExtSynced]
@="{05B38830-F4E9-4329-978B-1DD28605D202}"
[HKEY_CLASSES_ROOT\CLSID\{05B38830-F4E9-4329-978B-1DD28605D202}]
2017-06-23 09:32 598528 ----a-w- c:\users\Jezevec\AppData\Local\MEGAsync\ShellExtX64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\###MegaShellExtSyncing]
@="{0596C850-7BDD-4C9D-AFDF-873BE6890637}"
[HKEY_CLASSES_ROOT\CLSID\{0596C850-7BDD-4C9D-AFDF-873BE6890637}]
2017-06-23 09:32 598528 ----a-w- c:\users\Jezevec\AppData\Local\MEGAsync\ShellExtX64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00asw]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2017-08-31 16:49 1770920 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00asw]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2017-08-31 16:49 1770920 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvLaunch.exe" [2017-08-31 239856]
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - LocalSystemNetworkRestricted
WiaRpc
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.seznam.cz/
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: E&xportovat do Microsoft Excelu - c:\progra~1\MICROS~1\Office16\EXCEL.EXE/3000
IE: Poslat do On&eNotu - c:\progra~1\MICROS~1\Office16\ONBttnIE.dll/105
IE: SmarThru4 Capture Selection - c:\program files (x86)\SmarThru 4\WebCapture.dll2.htm
IE: SmarThru4 Save as HTML - c:\program files (x86)\SmarThru 4\WebCapture.dll1.htm
IE: SmarThru4 Save Selected Text - c:\program files (x86)\SmarThru 4\WebCapture.dll.htm
IE: SmarThru4 Web Capture - c:\program files (x86)\SmarThru 4\WebCapture.dll
TCP: DhcpNameServer = 192.168.16.1 0.0.0.0
Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - c:\program files (x86)\Common Files\microsoft shared\OFFICE16\MSOXMLMF.DLL
Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - c:\program files (x86)\Microsoft Office\Office16\MSOSB.DLL
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - c:\program files (x86)\Microsoft Office\Office16\MSOSB.DLL
FF - ProfilePath - c:\users\Jezevec\AppData\Roaming\Mozilla\Firefox\Profiles\zn0d1o7w.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}&
FF - prefs.js: browser.startup.homepage - hxxps://www.seznam.cz/
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\VqJXCIdY]
"ImagePath"="system32\drivers\VqJXCIdY.sys"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (LocalSystem)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,c4,2b,c5,ec,cc,0d,ce,48,bb,c1,a2,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,c4,2b,c5,ec,cc,0d,ce,48,bb,c1,a2,\
.
[HKEY_USERS\S-1-5-21-3508648510-883788364-2179421100-1001\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{81FA2D9F-3A26-7CE7-1164-E720A7481261}*]
"jafggkipocnakjfkgehf"=hex:62,61,68,69,00,00
"jafggkipocnakjfkgelf"=hex:62,61,68,69,00,00
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files\AVAST Software\Avast\AvastUI.exe
c:\users\Jezevec\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
.
**************************************************************************
.
Celkový čas: 2017-09-30 14:15:22 - počítač byl restartován
ComboFix-quarantined-files.txt 2017-09-30 12:15
.
Před spuštěním: Volných bajtů: 45 065 383 936
Po spuštění: Volných bajtů: 45 515 022 336
.
- - End Of File - - 4019789EA7767F83AD8ABE08B0D61D07
A36C5E4F47E84449FF07ED3517B43A31
