Prosím o kontrolu logu -- kombinace XP a W10
Napsal: 08 led 2018 16:44
Prosím o kontrolu logu a jeho vyčištění .
Experimentoval jsem s W10 a nyní se mi při bootu objevují W10-ky dvě. Jen jedna je ale funkční , problém nastal při formátování oddílu s w10 , kdy vypla el. .Po zapnutí jsem oddíl znovu naformátoval a nainstaloval znovu.Od té doby jsou při spuštění dvě verze W10. Špatná se nerozběhne , protože se objeví hláška /C:\Windows\System32\Logfiles\Srt\SrtTrail.txt/ - ta ,ale fakticky v PC není .Prošel jsem přes google všechna možná témata k tomu , ale nic.
Např. Problém soubor protokolu.... "SrtTrail.txt - poradna Živě.cz - Zive.cz
Nejde boot Windows 10 [srtTrail.txt] - PC-HELP.CZ
různé fixy na youtube . Dle jednoho návodu jsem nastavil obrazovku na 5sec. dal Xp jako primární a
je to . Druhá W10 je funkční
Prosím o kontrolu protože jsem tam natáhl věcí
Zkoušel jsem z uvedených stránek
Stažení FRSTLauncheru
Odkaz ke stažení: http://viry.xf.cz/pro_usery/FRSTLauncher.exe
ale po spuštění mi napíše ," že musím stáhnout verzi PC - 32 bit." Ta je , ale stažená správně , proto
log z FRST
Děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 02.01.2018
Ran by Josef (administrator) on MISUT (08-01-2018 16:07:03)
Running from C:\Documents and Settings\Josef\Plocha
Loaded Profiles: Josef (Available Profiles: Josef & Administrator & Guest)
Platform: Systém Microsoft Windows XP Professional Service Pack 3 (X86) Language: Čeština
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Nero AG) C:\Program Files\Nero\Tools\InCD\InCDSrv.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Nero AG) C:\Program Files\Nero\Update\NASvc.exe
(Nero AG) C:\Program Files\Nero\Tools\InCD\NBHRegInCDSrv.exe
() C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
(PS Media s.r.o.) C:\WINDOWS\system32\ssins.exe
(DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Policies\Explorer\Run: [javar] => C:\Documents and Settings\Josef\Data aplikací\java\java.exe
HKU\S-1-5-21-2659733977-570214497-571619954-1004\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [6564776 2015-10-19] (Piriform Ltd)
HKU\S-1-5-21-2659733977-570214497-571619954-1004\...\Run: [WMPNSCFG] => C:\Program Files\Windows Media Player\WMPNSCFG.exe [204288 2009-02-04] (Microsoft Corporation)
HKU\S-1-5-21-2659733977-570214497-571619954-1004\...\Policies\Explorer\Run: [java] => C:\Documents and Settings\Josef\Data aplikací\java\java.exe
HKU\S-1-5-21-2659733977-570214497-571619954-1004\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\ssmypics.scr [47104 2008-04-14] (Microsoft Corporation)
ShellExecuteHooks: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [304128 2009-05-24] (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{45D39D7E-DCDA-4B5C-8AC0-202930864B89}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{4FA81D10-A15A-4D37-946E-9A1F29A4BABF}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-2659733977-570214497-571619954-1004\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "about:newtab" <==== ATTENTION
SearchScopes: HKU\S-1-5-21-2659733977-570214497-571619954-1004 -> DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2659733977-570214497-571619954-1004 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
Handler: cetihpz - {CF184AD3-CDCB-4168-A3F7-8E447D129300} - C:\Program Files\HP\hpcoretech\comp\hpuiprot.dll [2004-05-12] (Hewlett-Packard Company)
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Josef\Data aplikací\Mozilla\Firefox\Profiles\gh9fwllk.default-1456167743093 [2018-01-08]
FF Homepage: C:\Documents and Settings\Josef\Data aplikací\Mozilla\Firefox\Profiles\gh9fwllk.default-1456167743093 -> hxxps://www.seznam.cz/
FF Extension: (Google Translator for Firefox) - C:\Documents and Settings\Josef\Data aplikací\Mozilla\Firefox\Profiles\gh9fwllk.default-1456167743093\Extensions\translator@zoli.bod.xpi [2017-02-02] [Legacy]
FF Extension: (uBlock Origin) - C:\Documents and Settings\Josef\Data aplikací\Mozilla\Firefox\Profiles\gh9fwllk.default-1456167743093\Extensions\uBlock0@raymondhill.net.xpi [2017-12-25]
FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\Documents and Settings\All Users\Data aplikací\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext => not found
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird => not found
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_28_0_0_126.dll [2017-12-12] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @Nero.com/KM -> C:\PROGRA~1\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL [2011-09-23] (Nero AG)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.28.17\npGoogleUpdate3.dll [No File]
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.28.17\npGoogleUpdate3.dll [No File]
FF Plugin: @videolan.org/vlc,version=2.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-08-05] (Adobe Systems Inc.)
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [272384 2017-12-12] (Adobe Systems Incorporated) [File not signed]
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [1349576 2014-10-01] (ESET)
R2 InCDSrv; C:\Program Files\Nero\Tools\InCD\InCDSrv.exe [1420592 2009-10-16] (Nero AG)
R2 MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 NAUpdate; C:\Program Files\Nero\Update\NASvc.exe [641832 2011-09-23] (Nero AG)
R2 NeroRegInCDSrv; C:\Program Files\Nero\Tools\InCD\NBHRegInCDSrv.exe [53560 2009-10-16] (Nero AG)
R2 PassThru Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [167424 2012-12-07] () [File not signed]
S3 Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [65536 2004-03-18] (HP) [File not signed]
S2 SkypeUpdate; C:\Program Files\Skype\Updater\Updater.exe [317400 2017-04-05] (Skype Technologies) [File not signed]
R2 ssinstall; C:\WINDOWS\System32\ssins.exe [4696960 2017-05-13] (PS Media s.r.o.)
R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2015-05-21] (DEVGURU Co., LTD.)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [7757040 2017-04-06] (TeamViewer GmbH)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 Apowersoft_AudioDevice; C:\WINDOWS\System32\drivers\Apowersoft_AudioDevice.sys [26032 2014-04-09] (Wondershare)
S3 AR9271; C:\WINDOWS\System32\DRIVERS\athuw.sys [1763584 2011-07-28] (Atheros Communications, Inc.) [File not signed]
S3 BazisVirtualCDBus; C:\WINDOWS\System32\DRIVERS\BazisVirtualCDBus.sys [121688 2015-09-28] (Sysprogs OU)
R3 BCMTPM; C:\WINDOWS\System32\DRIVERS\btpmw32.sys [17290 2006-05-25] (Broadcom Corp.)
R1 BIOS; C:\WINDOWS\system32\drivers\BIOS.sys [13696 2005-03-16] (BIOSTAR Group) [File not signed]
S3 btwmodem; C:\WINDOWS\System32\DRIVERS\btwmodem.sys [30189 2006-05-12] (Broadcom Corporation.) [File not signed]
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [191928 2014-10-10] (ESET)
R1 ehdrv; C:\WINDOWS\System32\DRIVERS\ehdrv.sys [135296 2014-10-10] (ESET)
R2 epfw; C:\WINDOWS\System32\DRIVERS\epfw.sys [176448 2014-10-10] (ESET)
R3 Epfwndis; C:\WINDOWS\System32\DRIVERS\Epfwndis.sys [39464 2014-10-10] (ESET)
R1 epfwtdi; C:\WINDOWS\System32\DRIVERS\epfwtdi.sys [63160 2014-10-10] (ESET)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\DRIVERS\ew_usbccgpfilter.sys [15360 2017-04-11] (Huawei Technologies Co., Ltd.)
S3 HPZid412; C:\WINDOWS\System32\DRIVERS\HPZid412.sys [51088 2004-06-21] (HP)
S3 HPZipr12; C:\WINDOWS\System32\DRIVERS\HPZipr12.sys [16496 2004-06-21] (HP)
S3 HPZius12; C:\WINDOWS\System32\DRIVERS\HPZius12.sys [21744 2004-06-21] (HP)
R3 InCDFs; C:\WINDOWS\System32\DRIVERS\InCDFs.sys [130200 2009-10-16] (Nero AG)
R3 InCDPass; C:\WINDOWS\System32\DRIVERS\InCDPass.sys [48280 2009-10-16] (Nero AG)
R1 InCDRec; C:\WINDOWS\System32\DRIVERS\InCDRec.sys [19096 2009-10-16] (Nero AG)
S3 IT9135BDA; C:\WINDOWS\System32\Drivers\IT9135BDA.sys [145280 2013-03-01] (ITE )
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation)
S3 MPE; C:\WINDOWS\System32\DRIVERS\MPE.sys [15232 2008-04-14] (Microsoft Corporation)
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation)
R3 pfc; C:\WINDOWS\System32\drivers\pfc.sys [10368 2011-11-20] (Padus, Inc.) [File not signed]
S3 snpstd2; C:\WINDOWS\System32\DRIVERS\snpstd2.sys [334080 2004-07-28] ()
R2 thdudf; C:\WINDOWS\System32\DRIVERS\thdudf.sys [66944 2011-07-21] (TOSHIBA Corporation) [File not signed]
R3 WinDriver6; C:\WINDOWS\System32\drivers\windrvr6.sys [186592 2007-06-17] (Jungo) [File not signed]
S3 btaudio; system32\drivers\btaudio.sys [X]
S3 BTDriver; system32\DRIVERS\btport.sys [X]
S3 BTKRNL; system32\DRIVERS\btkrnl.sys [X]
S3 BTWDNDIS; system32\DRIVERS\btwdndis.sys [X]
S3 BTWUSB; System32\Drivers\btwusb.sys [X]
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [102272 2017-04-11] (Huawei Technologies Co., Ltd.)
U5 StarOpen; C:\Windows\System32\Drivers\StarOpen.sys [5632 2011-12-13] () [File not signed]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-01-08 16:07 - 2018-01-08 16:07 - 000011502 _____ C:\Documents and Settings\Josef\Plocha\FRST.txt
2018-01-08 16:05 - 2018-01-08 16:05 - 000112640 _____ (forum.viry.cz) C:\Documents and Settings\Josef\Plocha\FRSTLauncher.exe
2018-01-08 16:04 - 2018-01-08 16:06 - 000029696 _____ C:\Documents and Settings\Josef\Local Settings\Data aplikací\MSGBOX.EXE
2018-01-08 16:01 - 2018-01-08 16:01 - 001753600 _____ (Farbar) C:\Documents and Settings\Josef\Plocha\FRST.exe
2018-01-07 19:41 - 2018-01-07 19:41 - 000000818 _____ C:\Documents and Settings\Josef\Plocha\Zástupce - egui.lnk
2018-01-07 16:45 - 2018-01-07 16:45 - 000000000 ____D C:\Documents and Settings\Josef\Plocha\Nová složka
2018-01-07 11:09 - 2018-01-07 11:09 - 000000000 ____D C:\Temp
2018-01-06 15:34 - 2018-01-06 16:26 - 000000210 _____ C:\Documents and Settings\Josef\Plocha\boot.ini.ini
2018-01-06 15:05 - 2018-01-06 16:26 - 000000218 _____ C:\Documents and Settings\Josef\Plocha\boot.i.txt
2018-01-06 12:23 - 2018-01-06 12:23 - 000000000 ___HD C:\$SysReset
2018-01-06 12:09 - 2018-01-06 12:09 - 000000000 ____D C:\Program Files\EaseUS
2018-01-04 15:16 - 2018-01-04 15:16 - 000000000 ____D C:\Documents and Settings\Josef\Data aplikací\Jihosoft ISO Maker
2018-01-04 15:15 - 2018-01-04 15:15 - 000000000 ____D C:\Program Files\ISO Maker Free
2018-01-04 15:08 - 2018-01-04 15:08 - 000000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\WinCDEmu
2018-01-04 06:43 - 2018-01-07 12:01 - 000008192 __RSH C:\BOOTSECT.BAK
2018-01-04 06:43 - 2017-11-26 12:19 - 000397754 __RSH C:\bootmgr
2018-01-04 06:43 - 2017-09-29 12:49 - 000000001 ___SH C:\BOOTNXT
2018-01-01 18:22 - 2018-01-05 22:38 - 000094032 _____ C:\Documents and Settings\LocalService\Local Settings\Data aplikací\FontCache3.0.0.0.dat
2018-01-01 15:53 - 2018-01-01 15:53 - 000000000 ____D C:\Documents and Settings\Josef\Local Settings\Data aplikací\ImageMaster
2017-12-31 17:21 - 2018-01-08 15:08 - 000000222 ____C C:\WINDOWS\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
2017-12-31 17:21 - 2017-12-31 18:28 - 000000216 ____C C:\WINDOWS\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
2017-12-31 15:53 - 2017-12-31 15:53 - 000000000 __HDC C:\WINDOWS\$NtUninstallKB2934207$
2017-12-31 15:53 - 2017-12-31 15:53 - 000000000 __HDC C:\WINDOWS\$NtUninstallKB2930275$
2017-12-31 15:53 - 2017-12-31 15:53 - 000000000 __HDC C:\WINDOWS\$NtUninstallKB2922229$
2017-12-31 15:43 - 2017-12-31 15:43 - 000000000 __HDC C:\WINDOWS\$NtUninstallKB2914368$
2017-12-31 15:43 - 2017-12-31 15:43 - 000000000 __HDC C:\WINDOWS\$NtUninstallKB2884256$
2017-12-31 15:14 - 2014-02-27 00:28 - 000013312 ____C (Microsoft Corporation) C:\WINDOWS\system32\xp_eos.exe
2017-12-31 15:14 - 2014-02-27 00:28 - 000013312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xp_eos.exe
2017-12-31 14:39 - 2017-12-31 14:39 - 000000000 ____D C:\Program Files\ESET
2017-12-31 14:39 - 2017-12-31 14:39 - 000000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\ESET
2017-12-31 14:39 - 2017-12-31 14:39 - 000000000 ____D C:\Documents and Settings\All Users\Data aplikací\ESET
2017-12-31 14:32 - 2017-12-31 14:32 - 000000000 ____D C:\Program Files\Duolabs
2017-12-31 13:59 - 2017-12-31 13:59 - 000000000 ____D C:\Documents and Settings\All Users\Data aplikací\ESET(3)
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-01-08 16:07 - 2016-11-14 10:21 - 000000000 ____D C:\FRST
2018-01-08 16:07 - 2016-02-20 15:48 - 000000000 ____D C:\Documents and Settings\Josef\Local Settings\Temp
2018-01-08 16:07 - 2011-11-17 09:29 - 000000000 ____D C:\Documents and Settings\Josef\Plocha
2018-01-08 16:06 - 2011-11-17 09:29 - 000000000 ___HD C:\Documents and Settings\Josef\Local Settings\Data aplikací
2018-01-08 15:56 - 2017-07-08 10:34 - 000000914 ____C C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2018-01-08 15:10 - 2004-08-18 13:00 - 000012598 ____C C:\WINDOWS\system32\wpa.dbl
2018-01-08 15:08 - 2016-03-26 01:29 - 000000278 ____C C:\WINDOWS\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2659733977-570214497-571619954-1004.job
2018-01-08 15:08 - 2011-09-29 12:29 - 000000006 ___HC C:\WINDOWS\Tasks\SA.DAT
2018-01-08 14:21 - 2011-11-17 09:29 - 000000178 __SHC C:\Documents and Settings\Josef\ntuser.ini
2018-01-08 14:21 - 2011-09-29 12:29 - 000032380 _____ C:\WINDOWS\SchedLgU.Txt
2018-01-08 10:37 - 2011-11-17 17:04 - 000000466 ___HC C:\WINDOWS\Tasks\User_Feed_Synchronization-{02D609C1-B138-47A6-B631-4C8C2E89B3B5}.job
2018-01-08 08:53 - 2017-05-17 12:42 - 000000000 ____D C:\Documents and Settings\Josef\Plocha\dream
2018-01-07 22:13 - 2011-09-29 14:18 - 000000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy
2018-01-07 21:55 - 2012-10-12 11:52 - 000000000 ____D C:\Documents and Settings\Josef\Data aplikací\Skype
2018-01-07 21:21 - 2016-01-24 14:01 - 000000000 ____D C:\Documents and Settings\Josef\Plocha\espana
2018-01-07 19:39 - 2011-09-29 14:16 - 000000210 ___SH C:\boot.ini
2018-01-07 19:39 - 2004-08-18 13:00 - 000000792 ____C C:\WINDOWS\win.ini
2018-01-07 19:39 - 2004-08-18 13:00 - 000000246 ____C C:\WINDOWS\system.ini
2018-01-07 17:15 - 2012-04-02 16:05 - 000000000 ____D C:\Program Files\Unlocker
2018-01-07 17:13 - 2011-09-29 14:18 - 000000000 ____D C:\Documents and Settings\All Users\Plocha
2018-01-07 17:12 - 2011-11-17 09:29 - 000000000 ___RD C:\Documents and Settings\Josef\Nabídka Start\Programy
2018-01-07 16:28 - 2016-03-26 01:29 - 000000286 ____C C:\WINDOWS\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2659733977-570214497-571619954-1004.job
2018-01-07 13:19 - 2011-11-17 09:29 - 000000000 ___RD C:\Documents and Settings\Josef\Nabídka Start
2018-01-07 12:56 - 2013-04-02 11:03 - 000000000 ____D C:\WINDOWS\system32\NtmsData
2018-01-07 10:01 - 2011-11-20 19:05 - 000000354 ____H C:\Boot.BAK
2018-01-07 09:51 - 2016-04-10 19:23 - 000000028 ____C C:\WINDOWS\OutLog.txt
2018-01-06 18:05 - 2014-01-15 16:16 - 000001224 ___HC C:\WINDOWS\EPMBatch.ept
2018-01-06 18:02 - 2016-04-10 19:19 - 000000000 ____C C:\WINDOWS\BcdLog.txt
2018-01-06 17:34 - 2011-09-29 14:11 - 000000000 ____D C:\WINDOWS\security
2018-01-06 16:17 - 2012-04-16 12:10 - 000000000 ____D C:\WINDOWS\pss
2018-01-06 16:13 - 2011-11-17 09:29 - 000000000 __RHD C:\Documents and Settings\Josef\Data aplikací
2018-01-06 14:53 - 2011-09-29 14:19 - 001100766 ____C C:\WINDOWS\system32\PerfStringBackup.INI
2018-01-06 14:53 - 2004-08-18 13:00 - 000468274 ____C C:\WINDOWS\system32\perfh005.dat
2018-01-06 14:53 - 2004-08-18 13:00 - 000094656 ____C C:\WINDOWS\system32\perfc005.dat
2018-01-05 22:38 - 2011-09-29 12:29 - 000000000 ___HD C:\Documents and Settings\LocalService\Local Settings\Data aplikací
2018-01-04 20:46 - 2011-09-29 14:11 - 000000000 ___HD C:\WINDOWS\inf
2018-01-04 15:17 - 2011-11-17 09:29 - 000000000 ___RD C:\Documents and Settings\Josef\Dokumenty
2018-01-04 12:33 - 2014-07-28 12:21 - 000000000 ____D C:\Documents and Settings\Josef\Plocha\sejmout
2018-01-04 07:31 - 2011-09-29 14:11 - 000000000 RSHDC C:\WINDOWS\system32\dllcache
2018-01-04 07:30 - 2016-11-10 18:57 - 000004507 ____C C:\WINDOWS\imsins.BAK
2018-01-03 21:38 - 2017-06-18 09:42 - 000000559 ____C C:\Documents and Settings\Josef\Plocha\rcc.ini
2018-01-03 18:36 - 2013-03-02 20:06 - 000002562 ____C C:\WINDOWS\diagwrn.xml
2018-01-03 18:36 - 2013-03-02 20:06 - 000001908 ____C C:\WINDOWS\diagerr.xml
2018-01-02 15:22 - 2016-02-27 13:36 - 000000000 ____D C:\AdwCleaner
2018-01-02 15:22 - 2011-09-29 12:29 - 000000178 __SHC C:\Documents and Settings\LocalService\ntuser.ini
2018-01-02 15:17 - 2011-11-17 09:29 - 000000000 ____D C:\Documents and Settings\Josef
2018-01-01 21:54 - 2011-11-27 16:24 - 000000000 ____D C:\WINDOWS\Minidump
2018-01-01 15:58 - 2011-09-29 14:18 - 000000000 __RHD C:\Documents and Settings\All Users\Data aplikací
2018-01-01 14:09 - 2011-11-17 11:07 - 000000000 ____D C:\Documents and Settings\Josef\Dokumenty\Stažené soubory
2017-12-31 17:21 - 2016-02-20 17:00 - 000153176 ____C C:\WINDOWS\system32\FNTCACHE.DAT
2017-12-31 14:50 - 2016-04-12 12:37 - 000940958 ____C C:\WINDOWS\ntbtlog.txt
2017-12-31 14:32 - 2017-06-18 15:21 - 000000000 ____D C:\Documents and Settings\Guest
2017-12-31 14:32 - 2013-12-16 17:12 - 000000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Duolabs
2017-12-31 14:32 - 2011-11-17 12:30 - 000000000 ____D C:\Documents and Settings\LocalService\Local Settings\Data aplikací\ESET
2017-12-31 14:32 - 2011-09-29 12:55 - 000000000 ____D C:\Documents and Settings\Administrator
2017-12-31 14:32 - 2011-09-29 12:29 - 000000000 __SHD C:\Documents and Settings\NetworkService
2017-12-31 14:32 - 2011-09-29 12:29 - 000000000 __SHD C:\Documents and Settings\LocalService
2017-12-31 14:32 - 2011-09-29 12:23 - 000000000 ____D C:\WINDOWS\Registration
2017-12-27 18:04 - 2016-07-20 15:00 - 000000000 ____D C:\Documents and Settings\Josef\Data aplikací\Vso
2017-12-27 16:42 - 2011-11-18 08:28 - 000000000 ____D C:\Documents and Settings\Josef\Local Settings\Data aplikací\ApplicationHistory
2017-12-26 21:16 - 2016-02-20 15:48 - 000000000 ____D C:\Documents and Settings\NetworkService\Local Settings\temp
2017-12-26 10:35 - 2011-11-17 09:29 - 000000000 ___HD C:\Documents and Settings\Josef\Okolní síť
2017-12-25 22:26 - 2015-02-14 17:52 - 000000000 ____D C:\Program Files\KMPlayer
2017-12-15 10:59 - 2011-11-25 22:22 - 000001189 ____C C:\Documents and Settings\Josef\Data aplikací\vso_ts_preview.xml
2017-12-12 12:56 - 2017-10-14 18:56 - 009497600 ____C (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerInstaller.exe
2017-12-12 12:56 - 2015-11-14 17:37 - 000803328 ____C (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2017-12-12 12:56 - 2015-11-14 17:37 - 000144896 ____C (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2017-12-12 12:56 - 2011-09-29 12:25 - 000000000 ____D C:\WINDOWS\system32\Macromed
2017-12-10 16:44 - 2012-10-29 17:21 - 000000000 ____D C:\Documents and Settings\Josef\Data aplikací\vlc
==================== Files in the root of some directories =======
2015-03-15 19:26 - 2015-03-05 13:55 - 000000093 ____C () C:\Program Files\dependentlibs.list
2015-03-15 19:26 - 2015-03-05 14:06 - 000000899 ____C () C:\Program Files\freebl3.chk
2015-03-15 19:26 - 2015-03-15 19:33 - 000017516 ____C () C:\Program Files\install.log
2015-03-15 19:26 - 2015-03-05 14:06 - 000000899 ____C () C:\Program Files\nssdbm3.chk
2015-03-15 19:26 - 2015-03-05 15:39 - 000002166 ____C () C:\Program Files\precomplete
2015-03-15 19:26 - 2015-03-05 12:39 - 000000662 ____C () C:\Program Files\removed-files
2015-03-15 19:26 - 2015-03-05 14:06 - 000000899 ____C () C:\Program Files\softokn3.chk
2015-03-15 19:26 - 2015-03-05 14:05 - 000002260 ____C () C:\Program Files\voucher.bin
2013-03-13 08:03 - 2013-03-13 08:03 - 002174976 ____C (Advanced Micro Devices Inc.) C:\Program Files\Common Files\atimpenc.dll
2011-12-13 16:38 - 2013-11-23 15:34 - 000000744 ____C () C:\Documents and Settings\Josef\Data aplikací\filterclsid.dat
2011-11-25 22:22 - 2017-12-15 10:59 - 000001189 ____C () C:\Documents and Settings\Josef\Data aplikací\vso_ts_preview.xml
2011-11-17 10:13 - 2017-05-12 08:52 - 000093184 ____C () C:\Documents and Settings\Josef\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2011-11-18 08:28 - 2011-11-18 08:28 - 000000125 ____C () C:\Documents and Settings\Josef\Local Settings\Data aplikací\fusioncache.dat
2018-01-08 16:04 - 2018-01-08 16:06 - 000029696 _____ () C:\Documents and Settings\Josef\Local Settings\Data aplikací\MSGBOX.EXE
2011-11-20 10:08 - 2011-11-20 10:59 - 000001658 ____C () C:\Documents and Settings\All Users\Data aplikací\hpzinstall.log
2011-12-13 10:00 - 2014-07-21 09:44 - 000000000 ____C () C:\Documents and Settings\All Users\Data aplikací\LauncherAccess.dt
2013-02-03 15:22 - 2013-02-03 15:22 - 000000144 ____C () C:\Documents and Settings\All Users\Data aplikací\LmeUSB.log
2013-02-03 15:22 - 2013-02-03 15:22 - 000000144 ____C () C:\Documents and Settings\All Users\Data aplikací\LSDmbTH.log
2013-11-23 16:36 - 2013-11-23 16:36 - 000004104 ____C () C:\Documents and Settings\All Users\Data aplikací\ojobkspa.ako
2013-02-03 15:22 - 2013-02-03 15:22 - 000000147 ____C () C:\Documents and Settings\All Users\Data aplikací\PipShareTuner.log
Some files in TEMP:
====================
2016-10-19 16:11 - 2016-10-19 16:11 - 002458672 ____C (The OpenSSL Project, http://www.openssl.org/) C:\Documents and Settings\Josef\Local Settings\Temp\libeay32.dll
2016-10-19 16:11 - 2016-10-19 16:11 - 000970912 ____C (Microsoft Corporation) C:\Documents and Settings\Josef\Local Settings\Temp\msvcr120.dll
2016-10-19 16:11 - 2016-10-19 16:11 - 000772672 ____C () C:\Documents and Settings\Josef\Local Settings\Temp\sqlite3.dll
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
==================== End of FRST.txt ============================
Omlouvám se , nevšiml jsem si a zkopíroval 2x stejný
Experimentoval jsem s W10 a nyní se mi při bootu objevují W10-ky dvě. Jen jedna je ale funkční , problém nastal při formátování oddílu s w10 , kdy vypla el. .Po zapnutí jsem oddíl znovu naformátoval a nainstaloval znovu.Od té doby jsou při spuštění dvě verze W10. Špatná se nerozběhne , protože se objeví hláška /C:\Windows\System32\Logfiles\Srt\SrtTrail.txt/ - ta ,ale fakticky v PC není .Prošel jsem přes google všechna možná témata k tomu , ale nic.
Např. Problém soubor protokolu.... "SrtTrail.txt - poradna Živě.cz - Zive.cz
Nejde boot Windows 10 [srtTrail.txt] - PC-HELP.CZ
různé fixy na youtube . Dle jednoho návodu jsem nastavil obrazovku na 5sec. dal Xp jako primární a
je to . Druhá W10 je funkční
Prosím o kontrolu protože jsem tam natáhl věcí
Zkoušel jsem z uvedených stránek
Stažení FRSTLauncheru
Odkaz ke stažení: http://viry.xf.cz/pro_usery/FRSTLauncher.exe
ale po spuštění mi napíše ," že musím stáhnout verzi PC - 32 bit." Ta je , ale stažená správně , proto
log z FRST
Děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 02.01.2018
Ran by Josef (administrator) on MISUT (08-01-2018 16:07:03)
Running from C:\Documents and Settings\Josef\Plocha
Loaded Profiles: Josef (Available Profiles: Josef & Administrator & Guest)
Platform: Systém Microsoft Windows XP Professional Service Pack 3 (X86) Language: Čeština
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Nero AG) C:\Program Files\Nero\Tools\InCD\InCDSrv.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Nero AG) C:\Program Files\Nero\Update\NASvc.exe
(Nero AG) C:\Program Files\Nero\Tools\InCD\NBHRegInCDSrv.exe
() C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
(PS Media s.r.o.) C:\WINDOWS\system32\ssins.exe
(DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Policies\Explorer\Run: [javar] => C:\Documents and Settings\Josef\Data aplikací\java\java.exe
HKU\S-1-5-21-2659733977-570214497-571619954-1004\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [6564776 2015-10-19] (Piriform Ltd)
HKU\S-1-5-21-2659733977-570214497-571619954-1004\...\Run: [WMPNSCFG] => C:\Program Files\Windows Media Player\WMPNSCFG.exe [204288 2009-02-04] (Microsoft Corporation)
HKU\S-1-5-21-2659733977-570214497-571619954-1004\...\Policies\Explorer\Run: [java] => C:\Documents and Settings\Josef\Data aplikací\java\java.exe
HKU\S-1-5-21-2659733977-570214497-571619954-1004\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\ssmypics.scr [47104 2008-04-14] (Microsoft Corporation)
ShellExecuteHooks: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [304128 2009-05-24] (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{45D39D7E-DCDA-4B5C-8AC0-202930864B89}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{4FA81D10-A15A-4D37-946E-9A1F29A4BABF}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-2659733977-570214497-571619954-1004\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "about:newtab" <==== ATTENTION
SearchScopes: HKU\S-1-5-21-2659733977-570214497-571619954-1004 -> DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2659733977-570214497-571619954-1004 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
Handler: cetihpz - {CF184AD3-CDCB-4168-A3F7-8E447D129300} - C:\Program Files\HP\hpcoretech\comp\hpuiprot.dll [2004-05-12] (Hewlett-Packard Company)
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Josef\Data aplikací\Mozilla\Firefox\Profiles\gh9fwllk.default-1456167743093 [2018-01-08]
FF Homepage: C:\Documents and Settings\Josef\Data aplikací\Mozilla\Firefox\Profiles\gh9fwllk.default-1456167743093 -> hxxps://www.seznam.cz/
FF Extension: (Google Translator for Firefox) - C:\Documents and Settings\Josef\Data aplikací\Mozilla\Firefox\Profiles\gh9fwllk.default-1456167743093\Extensions\translator@zoli.bod.xpi [2017-02-02] [Legacy]
FF Extension: (uBlock Origin) - C:\Documents and Settings\Josef\Data aplikací\Mozilla\Firefox\Profiles\gh9fwllk.default-1456167743093\Extensions\uBlock0@raymondhill.net.xpi [2017-12-25]
FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\Documents and Settings\All Users\Data aplikací\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext => not found
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird => not found
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_28_0_0_126.dll [2017-12-12] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @Nero.com/KM -> C:\PROGRA~1\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL [2011-09-23] (Nero AG)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.28.17\npGoogleUpdate3.dll [No File]
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.28.17\npGoogleUpdate3.dll [No File]
FF Plugin: @videolan.org/vlc,version=2.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-08-05] (Adobe Systems Inc.)
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [272384 2017-12-12] (Adobe Systems Incorporated) [File not signed]
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [1349576 2014-10-01] (ESET)
R2 InCDSrv; C:\Program Files\Nero\Tools\InCD\InCDSrv.exe [1420592 2009-10-16] (Nero AG)
R2 MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 NAUpdate; C:\Program Files\Nero\Update\NASvc.exe [641832 2011-09-23] (Nero AG)
R2 NeroRegInCDSrv; C:\Program Files\Nero\Tools\InCD\NBHRegInCDSrv.exe [53560 2009-10-16] (Nero AG)
R2 PassThru Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [167424 2012-12-07] () [File not signed]
S3 Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [65536 2004-03-18] (HP) [File not signed]
S2 SkypeUpdate; C:\Program Files\Skype\Updater\Updater.exe [317400 2017-04-05] (Skype Technologies) [File not signed]
R2 ssinstall; C:\WINDOWS\System32\ssins.exe [4696960 2017-05-13] (PS Media s.r.o.)
R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2015-05-21] (DEVGURU Co., LTD.)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [7757040 2017-04-06] (TeamViewer GmbH)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 Apowersoft_AudioDevice; C:\WINDOWS\System32\drivers\Apowersoft_AudioDevice.sys [26032 2014-04-09] (Wondershare)
S3 AR9271; C:\WINDOWS\System32\DRIVERS\athuw.sys [1763584 2011-07-28] (Atheros Communications, Inc.) [File not signed]
S3 BazisVirtualCDBus; C:\WINDOWS\System32\DRIVERS\BazisVirtualCDBus.sys [121688 2015-09-28] (Sysprogs OU)
R3 BCMTPM; C:\WINDOWS\System32\DRIVERS\btpmw32.sys [17290 2006-05-25] (Broadcom Corp.)
R1 BIOS; C:\WINDOWS\system32\drivers\BIOS.sys [13696 2005-03-16] (BIOSTAR Group) [File not signed]
S3 btwmodem; C:\WINDOWS\System32\DRIVERS\btwmodem.sys [30189 2006-05-12] (Broadcom Corporation.) [File not signed]
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [191928 2014-10-10] (ESET)
R1 ehdrv; C:\WINDOWS\System32\DRIVERS\ehdrv.sys [135296 2014-10-10] (ESET)
R2 epfw; C:\WINDOWS\System32\DRIVERS\epfw.sys [176448 2014-10-10] (ESET)
R3 Epfwndis; C:\WINDOWS\System32\DRIVERS\Epfwndis.sys [39464 2014-10-10] (ESET)
R1 epfwtdi; C:\WINDOWS\System32\DRIVERS\epfwtdi.sys [63160 2014-10-10] (ESET)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\DRIVERS\ew_usbccgpfilter.sys [15360 2017-04-11] (Huawei Technologies Co., Ltd.)
S3 HPZid412; C:\WINDOWS\System32\DRIVERS\HPZid412.sys [51088 2004-06-21] (HP)
S3 HPZipr12; C:\WINDOWS\System32\DRIVERS\HPZipr12.sys [16496 2004-06-21] (HP)
S3 HPZius12; C:\WINDOWS\System32\DRIVERS\HPZius12.sys [21744 2004-06-21] (HP)
R3 InCDFs; C:\WINDOWS\System32\DRIVERS\InCDFs.sys [130200 2009-10-16] (Nero AG)
R3 InCDPass; C:\WINDOWS\System32\DRIVERS\InCDPass.sys [48280 2009-10-16] (Nero AG)
R1 InCDRec; C:\WINDOWS\System32\DRIVERS\InCDRec.sys [19096 2009-10-16] (Nero AG)
S3 IT9135BDA; C:\WINDOWS\System32\Drivers\IT9135BDA.sys [145280 2013-03-01] (ITE )
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation)
S3 MPE; C:\WINDOWS\System32\DRIVERS\MPE.sys [15232 2008-04-14] (Microsoft Corporation)
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation)
R3 pfc; C:\WINDOWS\System32\drivers\pfc.sys [10368 2011-11-20] (Padus, Inc.) [File not signed]
S3 snpstd2; C:\WINDOWS\System32\DRIVERS\snpstd2.sys [334080 2004-07-28] ()
R2 thdudf; C:\WINDOWS\System32\DRIVERS\thdudf.sys [66944 2011-07-21] (TOSHIBA Corporation) [File not signed]
R3 WinDriver6; C:\WINDOWS\System32\drivers\windrvr6.sys [186592 2007-06-17] (Jungo) [File not signed]
S3 btaudio; system32\drivers\btaudio.sys [X]
S3 BTDriver; system32\DRIVERS\btport.sys [X]
S3 BTKRNL; system32\DRIVERS\btkrnl.sys [X]
S3 BTWDNDIS; system32\DRIVERS\btwdndis.sys [X]
S3 BTWUSB; System32\Drivers\btwusb.sys [X]
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [102272 2017-04-11] (Huawei Technologies Co., Ltd.)
U5 StarOpen; C:\Windows\System32\Drivers\StarOpen.sys [5632 2011-12-13] () [File not signed]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-01-08 16:07 - 2018-01-08 16:07 - 000011502 _____ C:\Documents and Settings\Josef\Plocha\FRST.txt
2018-01-08 16:05 - 2018-01-08 16:05 - 000112640 _____ (forum.viry.cz) C:\Documents and Settings\Josef\Plocha\FRSTLauncher.exe
2018-01-08 16:04 - 2018-01-08 16:06 - 000029696 _____ C:\Documents and Settings\Josef\Local Settings\Data aplikací\MSGBOX.EXE
2018-01-08 16:01 - 2018-01-08 16:01 - 001753600 _____ (Farbar) C:\Documents and Settings\Josef\Plocha\FRST.exe
2018-01-07 19:41 - 2018-01-07 19:41 - 000000818 _____ C:\Documents and Settings\Josef\Plocha\Zástupce - egui.lnk
2018-01-07 16:45 - 2018-01-07 16:45 - 000000000 ____D C:\Documents and Settings\Josef\Plocha\Nová složka
2018-01-07 11:09 - 2018-01-07 11:09 - 000000000 ____D C:\Temp
2018-01-06 15:34 - 2018-01-06 16:26 - 000000210 _____ C:\Documents and Settings\Josef\Plocha\boot.ini.ini
2018-01-06 15:05 - 2018-01-06 16:26 - 000000218 _____ C:\Documents and Settings\Josef\Plocha\boot.i.txt
2018-01-06 12:23 - 2018-01-06 12:23 - 000000000 ___HD C:\$SysReset
2018-01-06 12:09 - 2018-01-06 12:09 - 000000000 ____D C:\Program Files\EaseUS
2018-01-04 15:16 - 2018-01-04 15:16 - 000000000 ____D C:\Documents and Settings\Josef\Data aplikací\Jihosoft ISO Maker
2018-01-04 15:15 - 2018-01-04 15:15 - 000000000 ____D C:\Program Files\ISO Maker Free
2018-01-04 15:08 - 2018-01-04 15:08 - 000000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\WinCDEmu
2018-01-04 06:43 - 2018-01-07 12:01 - 000008192 __RSH C:\BOOTSECT.BAK
2018-01-04 06:43 - 2017-11-26 12:19 - 000397754 __RSH C:\bootmgr
2018-01-04 06:43 - 2017-09-29 12:49 - 000000001 ___SH C:\BOOTNXT
2018-01-01 18:22 - 2018-01-05 22:38 - 000094032 _____ C:\Documents and Settings\LocalService\Local Settings\Data aplikací\FontCache3.0.0.0.dat
2018-01-01 15:53 - 2018-01-01 15:53 - 000000000 ____D C:\Documents and Settings\Josef\Local Settings\Data aplikací\ImageMaster
2017-12-31 17:21 - 2018-01-08 15:08 - 000000222 ____C C:\WINDOWS\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
2017-12-31 17:21 - 2017-12-31 18:28 - 000000216 ____C C:\WINDOWS\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
2017-12-31 15:53 - 2017-12-31 15:53 - 000000000 __HDC C:\WINDOWS\$NtUninstallKB2934207$
2017-12-31 15:53 - 2017-12-31 15:53 - 000000000 __HDC C:\WINDOWS\$NtUninstallKB2930275$
2017-12-31 15:53 - 2017-12-31 15:53 - 000000000 __HDC C:\WINDOWS\$NtUninstallKB2922229$
2017-12-31 15:43 - 2017-12-31 15:43 - 000000000 __HDC C:\WINDOWS\$NtUninstallKB2914368$
2017-12-31 15:43 - 2017-12-31 15:43 - 000000000 __HDC C:\WINDOWS\$NtUninstallKB2884256$
2017-12-31 15:14 - 2014-02-27 00:28 - 000013312 ____C (Microsoft Corporation) C:\WINDOWS\system32\xp_eos.exe
2017-12-31 15:14 - 2014-02-27 00:28 - 000013312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xp_eos.exe
2017-12-31 14:39 - 2017-12-31 14:39 - 000000000 ____D C:\Program Files\ESET
2017-12-31 14:39 - 2017-12-31 14:39 - 000000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\ESET
2017-12-31 14:39 - 2017-12-31 14:39 - 000000000 ____D C:\Documents and Settings\All Users\Data aplikací\ESET
2017-12-31 14:32 - 2017-12-31 14:32 - 000000000 ____D C:\Program Files\Duolabs
2017-12-31 13:59 - 2017-12-31 13:59 - 000000000 ____D C:\Documents and Settings\All Users\Data aplikací\ESET(3)
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-01-08 16:07 - 2016-11-14 10:21 - 000000000 ____D C:\FRST
2018-01-08 16:07 - 2016-02-20 15:48 - 000000000 ____D C:\Documents and Settings\Josef\Local Settings\Temp
2018-01-08 16:07 - 2011-11-17 09:29 - 000000000 ____D C:\Documents and Settings\Josef\Plocha
2018-01-08 16:06 - 2011-11-17 09:29 - 000000000 ___HD C:\Documents and Settings\Josef\Local Settings\Data aplikací
2018-01-08 15:56 - 2017-07-08 10:34 - 000000914 ____C C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2018-01-08 15:10 - 2004-08-18 13:00 - 000012598 ____C C:\WINDOWS\system32\wpa.dbl
2018-01-08 15:08 - 2016-03-26 01:29 - 000000278 ____C C:\WINDOWS\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2659733977-570214497-571619954-1004.job
2018-01-08 15:08 - 2011-09-29 12:29 - 000000006 ___HC C:\WINDOWS\Tasks\SA.DAT
2018-01-08 14:21 - 2011-11-17 09:29 - 000000178 __SHC C:\Documents and Settings\Josef\ntuser.ini
2018-01-08 14:21 - 2011-09-29 12:29 - 000032380 _____ C:\WINDOWS\SchedLgU.Txt
2018-01-08 10:37 - 2011-11-17 17:04 - 000000466 ___HC C:\WINDOWS\Tasks\User_Feed_Synchronization-{02D609C1-B138-47A6-B631-4C8C2E89B3B5}.job
2018-01-08 08:53 - 2017-05-17 12:42 - 000000000 ____D C:\Documents and Settings\Josef\Plocha\dream
2018-01-07 22:13 - 2011-09-29 14:18 - 000000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy
2018-01-07 21:55 - 2012-10-12 11:52 - 000000000 ____D C:\Documents and Settings\Josef\Data aplikací\Skype
2018-01-07 21:21 - 2016-01-24 14:01 - 000000000 ____D C:\Documents and Settings\Josef\Plocha\espana
2018-01-07 19:39 - 2011-09-29 14:16 - 000000210 ___SH C:\boot.ini
2018-01-07 19:39 - 2004-08-18 13:00 - 000000792 ____C C:\WINDOWS\win.ini
2018-01-07 19:39 - 2004-08-18 13:00 - 000000246 ____C C:\WINDOWS\system.ini
2018-01-07 17:15 - 2012-04-02 16:05 - 000000000 ____D C:\Program Files\Unlocker
2018-01-07 17:13 - 2011-09-29 14:18 - 000000000 ____D C:\Documents and Settings\All Users\Plocha
2018-01-07 17:12 - 2011-11-17 09:29 - 000000000 ___RD C:\Documents and Settings\Josef\Nabídka Start\Programy
2018-01-07 16:28 - 2016-03-26 01:29 - 000000286 ____C C:\WINDOWS\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2659733977-570214497-571619954-1004.job
2018-01-07 13:19 - 2011-11-17 09:29 - 000000000 ___RD C:\Documents and Settings\Josef\Nabídka Start
2018-01-07 12:56 - 2013-04-02 11:03 - 000000000 ____D C:\WINDOWS\system32\NtmsData
2018-01-07 10:01 - 2011-11-20 19:05 - 000000354 ____H C:\Boot.BAK
2018-01-07 09:51 - 2016-04-10 19:23 - 000000028 ____C C:\WINDOWS\OutLog.txt
2018-01-06 18:05 - 2014-01-15 16:16 - 000001224 ___HC C:\WINDOWS\EPMBatch.ept
2018-01-06 18:02 - 2016-04-10 19:19 - 000000000 ____C C:\WINDOWS\BcdLog.txt
2018-01-06 17:34 - 2011-09-29 14:11 - 000000000 ____D C:\WINDOWS\security
2018-01-06 16:17 - 2012-04-16 12:10 - 000000000 ____D C:\WINDOWS\pss
2018-01-06 16:13 - 2011-11-17 09:29 - 000000000 __RHD C:\Documents and Settings\Josef\Data aplikací
2018-01-06 14:53 - 2011-09-29 14:19 - 001100766 ____C C:\WINDOWS\system32\PerfStringBackup.INI
2018-01-06 14:53 - 2004-08-18 13:00 - 000468274 ____C C:\WINDOWS\system32\perfh005.dat
2018-01-06 14:53 - 2004-08-18 13:00 - 000094656 ____C C:\WINDOWS\system32\perfc005.dat
2018-01-05 22:38 - 2011-09-29 12:29 - 000000000 ___HD C:\Documents and Settings\LocalService\Local Settings\Data aplikací
2018-01-04 20:46 - 2011-09-29 14:11 - 000000000 ___HD C:\WINDOWS\inf
2018-01-04 15:17 - 2011-11-17 09:29 - 000000000 ___RD C:\Documents and Settings\Josef\Dokumenty
2018-01-04 12:33 - 2014-07-28 12:21 - 000000000 ____D C:\Documents and Settings\Josef\Plocha\sejmout
2018-01-04 07:31 - 2011-09-29 14:11 - 000000000 RSHDC C:\WINDOWS\system32\dllcache
2018-01-04 07:30 - 2016-11-10 18:57 - 000004507 ____C C:\WINDOWS\imsins.BAK
2018-01-03 21:38 - 2017-06-18 09:42 - 000000559 ____C C:\Documents and Settings\Josef\Plocha\rcc.ini
2018-01-03 18:36 - 2013-03-02 20:06 - 000002562 ____C C:\WINDOWS\diagwrn.xml
2018-01-03 18:36 - 2013-03-02 20:06 - 000001908 ____C C:\WINDOWS\diagerr.xml
2018-01-02 15:22 - 2016-02-27 13:36 - 000000000 ____D C:\AdwCleaner
2018-01-02 15:22 - 2011-09-29 12:29 - 000000178 __SHC C:\Documents and Settings\LocalService\ntuser.ini
2018-01-02 15:17 - 2011-11-17 09:29 - 000000000 ____D C:\Documents and Settings\Josef
2018-01-01 21:54 - 2011-11-27 16:24 - 000000000 ____D C:\WINDOWS\Minidump
2018-01-01 15:58 - 2011-09-29 14:18 - 000000000 __RHD C:\Documents and Settings\All Users\Data aplikací
2018-01-01 14:09 - 2011-11-17 11:07 - 000000000 ____D C:\Documents and Settings\Josef\Dokumenty\Stažené soubory
2017-12-31 17:21 - 2016-02-20 17:00 - 000153176 ____C C:\WINDOWS\system32\FNTCACHE.DAT
2017-12-31 14:50 - 2016-04-12 12:37 - 000940958 ____C C:\WINDOWS\ntbtlog.txt
2017-12-31 14:32 - 2017-06-18 15:21 - 000000000 ____D C:\Documents and Settings\Guest
2017-12-31 14:32 - 2013-12-16 17:12 - 000000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Duolabs
2017-12-31 14:32 - 2011-11-17 12:30 - 000000000 ____D C:\Documents and Settings\LocalService\Local Settings\Data aplikací\ESET
2017-12-31 14:32 - 2011-09-29 12:55 - 000000000 ____D C:\Documents and Settings\Administrator
2017-12-31 14:32 - 2011-09-29 12:29 - 000000000 __SHD C:\Documents and Settings\NetworkService
2017-12-31 14:32 - 2011-09-29 12:29 - 000000000 __SHD C:\Documents and Settings\LocalService
2017-12-31 14:32 - 2011-09-29 12:23 - 000000000 ____D C:\WINDOWS\Registration
2017-12-27 18:04 - 2016-07-20 15:00 - 000000000 ____D C:\Documents and Settings\Josef\Data aplikací\Vso
2017-12-27 16:42 - 2011-11-18 08:28 - 000000000 ____D C:\Documents and Settings\Josef\Local Settings\Data aplikací\ApplicationHistory
2017-12-26 21:16 - 2016-02-20 15:48 - 000000000 ____D C:\Documents and Settings\NetworkService\Local Settings\temp
2017-12-26 10:35 - 2011-11-17 09:29 - 000000000 ___HD C:\Documents and Settings\Josef\Okolní síť
2017-12-25 22:26 - 2015-02-14 17:52 - 000000000 ____D C:\Program Files\KMPlayer
2017-12-15 10:59 - 2011-11-25 22:22 - 000001189 ____C C:\Documents and Settings\Josef\Data aplikací\vso_ts_preview.xml
2017-12-12 12:56 - 2017-10-14 18:56 - 009497600 ____C (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerInstaller.exe
2017-12-12 12:56 - 2015-11-14 17:37 - 000803328 ____C (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2017-12-12 12:56 - 2015-11-14 17:37 - 000144896 ____C (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2017-12-12 12:56 - 2011-09-29 12:25 - 000000000 ____D C:\WINDOWS\system32\Macromed
2017-12-10 16:44 - 2012-10-29 17:21 - 000000000 ____D C:\Documents and Settings\Josef\Data aplikací\vlc
==================== Files in the root of some directories =======
2015-03-15 19:26 - 2015-03-05 13:55 - 000000093 ____C () C:\Program Files\dependentlibs.list
2015-03-15 19:26 - 2015-03-05 14:06 - 000000899 ____C () C:\Program Files\freebl3.chk
2015-03-15 19:26 - 2015-03-15 19:33 - 000017516 ____C () C:\Program Files\install.log
2015-03-15 19:26 - 2015-03-05 14:06 - 000000899 ____C () C:\Program Files\nssdbm3.chk
2015-03-15 19:26 - 2015-03-05 15:39 - 000002166 ____C () C:\Program Files\precomplete
2015-03-15 19:26 - 2015-03-05 12:39 - 000000662 ____C () C:\Program Files\removed-files
2015-03-15 19:26 - 2015-03-05 14:06 - 000000899 ____C () C:\Program Files\softokn3.chk
2015-03-15 19:26 - 2015-03-05 14:05 - 000002260 ____C () C:\Program Files\voucher.bin
2013-03-13 08:03 - 2013-03-13 08:03 - 002174976 ____C (Advanced Micro Devices Inc.) C:\Program Files\Common Files\atimpenc.dll
2011-12-13 16:38 - 2013-11-23 15:34 - 000000744 ____C () C:\Documents and Settings\Josef\Data aplikací\filterclsid.dat
2011-11-25 22:22 - 2017-12-15 10:59 - 000001189 ____C () C:\Documents and Settings\Josef\Data aplikací\vso_ts_preview.xml
2011-11-17 10:13 - 2017-05-12 08:52 - 000093184 ____C () C:\Documents and Settings\Josef\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2011-11-18 08:28 - 2011-11-18 08:28 - 000000125 ____C () C:\Documents and Settings\Josef\Local Settings\Data aplikací\fusioncache.dat
2018-01-08 16:04 - 2018-01-08 16:06 - 000029696 _____ () C:\Documents and Settings\Josef\Local Settings\Data aplikací\MSGBOX.EXE
2011-11-20 10:08 - 2011-11-20 10:59 - 000001658 ____C () C:\Documents and Settings\All Users\Data aplikací\hpzinstall.log
2011-12-13 10:00 - 2014-07-21 09:44 - 000000000 ____C () C:\Documents and Settings\All Users\Data aplikací\LauncherAccess.dt
2013-02-03 15:22 - 2013-02-03 15:22 - 000000144 ____C () C:\Documents and Settings\All Users\Data aplikací\LmeUSB.log
2013-02-03 15:22 - 2013-02-03 15:22 - 000000144 ____C () C:\Documents and Settings\All Users\Data aplikací\LSDmbTH.log
2013-11-23 16:36 - 2013-11-23 16:36 - 000004104 ____C () C:\Documents and Settings\All Users\Data aplikací\ojobkspa.ako
2013-02-03 15:22 - 2013-02-03 15:22 - 000000147 ____C () C:\Documents and Settings\All Users\Data aplikací\PipShareTuner.log
Some files in TEMP:
====================
2016-10-19 16:11 - 2016-10-19 16:11 - 002458672 ____C (The OpenSSL Project, http://www.openssl.org/) C:\Documents and Settings\Josef\Local Settings\Temp\libeay32.dll
2016-10-19 16:11 - 2016-10-19 16:11 - 000970912 ____C (Microsoft Corporation) C:\Documents and Settings\Josef\Local Settings\Temp\msvcr120.dll
2016-10-19 16:11 - 2016-10-19 16:11 - 000772672 ____C () C:\Documents and Settings\Josef\Local Settings\Temp\sqlite3.dll
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
==================== End of FRST.txt ============================
Omlouvám se , nevšiml jsem si a zkopíroval 2x stejný