Samovolné zavírání oken
Napsal: 25 bře 2018 18:39
Dobrý den,
v PC se mi samy od sebe zavírají otevřená okna a někdy se do adresního řádku v prohlížeči začnou psát samy od sebe písmena nebo znaky (vždycky jen 2, většinou g\). Na ploše se mi také zobrazuje tabulka Ukončení Windows. Prosím o kontrolu logu. Předem moc děkuji.
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 14.03.2018
Ran by Zuzana (administrator) on ZUZANA-PC (25-03-2018 19:07:09)
Running from C:\Users\Zuzana\Downloads
Loaded Profiles: Zuzana (Available Profiles: Zuzana)
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ESET) D:\Programy\ekrn.exe
() C:\Program Files\Broadcom\CV\bin\UshUpgradeService.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv.exe
(Broadcom Corporation) C:\Program Files\Broadcom\CV\bin\HostControlService.exe
(Broadcom Corporation) C:\Program Files\Broadcom\CV\bin\HostStorageService.exe
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AEstSrv.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.33.7\GoogleCrashHandler.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(ESET) D:\Programy\egui.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray.exe [495708 2017-08-20] (IDT, Inc.)
HKLM\...\Run: [egui] => D:\Programy\ecmds.exe [300440 2017-12-18] (ESET)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [261944 2018-01-22] (Apple Inc.)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKU\S-1-5-21-2314392373-3971531273-2474555217-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Bubbles.scr [878592 2010-11-20] (Microsoft Corporation)
HKU\S-1-5-18\...\RunOnce: [SPReview] => "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"hxxp://go.microsoft.com/fwlink/?LinkID=122915" /build:7601
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{7E9B2CD9-F506-4066-A456-264B419C0268}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{A8EF6825-A73B-49BE-859E-AD75C102933A}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
HKU\S-1-5-21-2314392373-3971531273-2474555217-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10440__180304__yaie
SearchScopes: HKU\S-1-5-21-2314392373-3971531273-2474555217-1000 -> {C0C3A6C6-03BC-4195-8FCB-AEA091301353} URL = hxxps://search.yahoo.com/yhs/search?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__ch_WCYID10440__180304__yaie&p={searchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2014-05-22] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
FireFox:
========
FF DefaultProfile: eew84m5u.default
FF ProfilePath: C:\Users\Zuzana\AppData\Roaming\Mozilla\Firefox\Profiles\eew84m5u.default [2018-03-25]
FF Homepage: Mozilla\Firefox\Profiles\eew84m5u.default -> hxxps://search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10440__180304__yaff
FF NewTab: Mozilla\Firefox\Profiles\eew84m5u.default -> hxxps://search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10440__180304__yaff
FF Extension: (No Name) - C:\Users\Zuzana\AppData\Roaming\Mozilla\Firefox\Profiles\eew84m5u.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [not found]
FF SearchPlugin: C:\Users\Zuzana\AppData\Roaming\Mozilla\Firefox\Profiles\eew84m5u.default\searchplugins\yahoo-lavasoft.xml [2018-03-04]
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-12-27] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-12-27] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-02-12] (Adobe Systems Inc.)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\dsengine.js [2018-03-04] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files\mozilla firefox\dsengine.cfg [2018-03-04] <==== ATTENTION
Chrome:
=======
CHR Profile: C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Default [2018-03-25]
CHR Extension: (Prezentace) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-12-27]
CHR Extension: (Dokumenty) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-12-27]
CHR Extension: (Adobe Acrobat) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-12-30]
CHR Extension: (Tabulky) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-12-27]
CHR Extension: (City-Sunset) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnffhanomkamjoleojbnkailliiojphl [2017-12-27]
CHR Extension: (Dokumenty Google offline) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-12-27]
CHR Extension: (AdBlock) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-03-17]
CHR Extension: (Chrome Media Router) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-03-25]
CHR HKLM\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ekrn; D:\Programy\ekrn.exe [1539560 2017-12-18] (ESET)
R2 hostcontrolsvc; C:\Program Files\Broadcom\CV\bin\HostControlService.exe [820736 2018-02-24] (Broadcom Corporation)
R2 hoststoragesvc; C:\Program Files\Broadcom\CV\bin\HostStorageService.exe [36352 2018-02-24] (Broadcom Corporation)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV.exe [245842 2017-08-20] (IDT, Inc.)
R2 ushupgradesvc; C:\Program Files\Broadcom\CV\bin\UshUpgradeService.exe [221696 2018-02-24] ()
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 cvusbdrv; C:\Windows\System32\Drivers\cvusbdrv.sys [51808 2018-02-24] (Broadcom Corporation)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [114552 2018-01-19] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [141480 2018-01-19] (ESET)
R1 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [90136 2018-01-19] (ESET)
S3 ETDSMBus; C:\Windows\System32\DRIVERS\ETDSMBus.sys [28744 2017-08-20] (ELAN Microelectronic Corp.)
R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO32.SYS [23840 2017-08-20] (REALiX(tm))
R3 NETwNs32; C:\Windows\System32\DRIVERS\NETwNs32.sys [7530736 2017-08-20] (Intel Corporation)
R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [45144 2018-02-24] (Synaptics Incorporated)
R3 WirelessKeyboardFilter; C:\Windows\System32\DRIVERS\WirelessKeyboardFilter.sys [44776 2018-02-24] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-03-25 19:07 - 2018-03-25 19:07 - 000010388 _____ C:\Users\Zuzana\Downloads\FRST.txt
2018-03-25 19:06 - 2018-03-25 19:06 - 001764352 _____ (Farbar) C:\Users\Zuzana\Downloads\Nepotvrzeno 830225.crdownload
2018-03-25 19:05 - 2018-03-25 19:07 - 000000000 ____D C:\FRST
2018-03-25 19:05 - 2018-03-25 19:05 - 001764352 _____ (Farbar) C:\Users\Zuzana\Downloads\FRST.exe
2018-03-18 20:42 - 2018-03-18 20:45 - 381285552 _____ (Microsoft Corporation) C:\Users\Zuzana\Downloads\OfficeLangPack_Czech_x86.exe
2018-03-18 20:22 - 2018-03-18 20:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2018-03-18 20:22 - 2018-03-18 20:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2018-03-18 20:21 - 2018-03-18 20:21 - 000000000 ____D C:\Program Files\Microsoft Synchronization Services
2018-03-18 20:21 - 2018-03-18 20:21 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2018-03-18 20:20 - 2018-03-18 20:20 - 000000000 ____D C:\Windows\PCHEALTH
2018-03-18 20:20 - 2018-03-18 20:20 - 000000000 ____D C:\Program Files\Microsoft Sync Framework
2018-03-18 20:20 - 2018-03-18 20:20 - 000000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2018-03-18 20:17 - 2018-03-18 20:17 - 000000000 ____D C:\Program Files\Microsoft Visual Studio 8
2018-03-18 20:16 - 2018-03-18 20:49 - 000000000 ____D C:\Windows\SHELLNEW
2018-03-18 20:16 - 2018-03-18 20:16 - 000000000 ____D C:\Program Files\Microsoft Analysis Services
2018-03-18 20:14 - 2018-03-18 20:14 - 000000000 __RHD C:\MSOCache
2018-03-18 19:48 - 2018-03-18 19:48 - 000000000 ____D C:\Users\Zuzana\Downloads\Microsoft Office 2010 Professional Plus 14.0.7128.5000 SP2 RePack by D!akov
2018-03-18 19:45 - 2018-03-18 19:48 - 682989259 _____ C:\Users\Zuzana\Downloads\ms office 2010.zip
2018-03-18 19:42 - 2018-03-18 19:42 - 000000000 ____D C:\Users\Zuzana\AppData\Roaming\Thinstall
2018-03-18 19:42 - 2018-03-18 19:42 - 000000000 ____D C:\Users\Zuzana\AppData\Local\Thinstall
2018-03-18 19:41 - 2018-03-18 19:41 - 003306404 _____ C:\Users\Zuzana\Downloads\MAII_tutorial1_slides.pdf
2018-03-18 19:13 - 2018-03-18 19:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2018-03-18 16:05 - 2018-03-18 16:05 - 000000661 _____ C:\Users\Zuzana\Desktop\Zuzka – zástupce.lnk
2018-03-17 18:16 - 2018-03-17 18:16 - 000000000 ____D C:\Users\Zuzana\Documents\Vlastní šablony Office
2018-03-17 17:48 - 2018-03-17 17:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2018-03-17 17:48 - 2018-03-17 17:48 - 000000000 ____D C:\ProgramData\ESET
2018-03-17 16:24 - 2018-03-21 19:44 - 000002149 _____ C:\Users\Zuzana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2018-03-17 16:24 - 2018-03-21 19:44 - 000000000 ___RD C:\Users\Zuzana\OneDrive
2018-03-17 16:24 - 2018-03-17 16:24 - 000002086 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2018-03-17 16:24 - 2018-03-17 16:24 - 000002086 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2018-03-17 16:24 - 2018-03-17 16:24 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2018-03-17 16:23 - 2018-03-17 16:23 - 000000000 ____D C:\Users\Zuzana\AppData\Roaming\Skype
2018-03-17 16:23 - 2018-03-17 16:23 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2018-03-17 15:40 - 2018-03-18 20:20 - 000000000 ____D C:\Program Files\Microsoft Office
2018-03-16 22:22 - 2018-02-13 20:31 - 000117440 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2018-03-16 22:22 - 2018-02-13 20:24 - 000534016 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2018-03-16 22:22 - 2018-02-13 16:04 - 001893888 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2018-03-16 22:22 - 2018-02-13 16:04 - 001319424 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2018-03-16 22:22 - 2018-02-13 16:04 - 000594944 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2018-03-16 22:22 - 2018-02-13 16:04 - 000508416 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2018-03-16 22:22 - 2018-02-13 16:04 - 000339968 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
2018-03-16 22:22 - 2018-02-13 16:04 - 000313856 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2018-03-16 22:22 - 2018-02-13 16:04 - 000212992 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2018-03-16 22:22 - 2018-02-13 16:04 - 000190976 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2018-03-11 15:54 - 2018-03-11 15:54 - 000000000 ____D C:\Users\Zuzana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Drakensang Online
2018-03-04 18:52 - 2018-03-04 18:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2018-03-04 18:48 - 2018-03-04 18:48 - 000000000 ____D C:\Program Files\GOG.com
2018-03-04 17:48 - 2018-03-18 19:44 - 000000000 ____D C:\Users\Zuzana\AppData\LocalLow\uTorrent
2018-03-04 17:46 - 2018-03-25 18:30 - 000000000 ____D C:\Users\Zuzana\AppData\Roaming\uTorrent
2018-03-04 17:46 - 2018-03-04 17:46 - 000000000 ____D C:\Users\Zuzana\AppData\Roaming\Lavasoft
2018-03-04 17:46 - 2018-03-04 17:46 - 000000000 ____D C:\Users\Zuzana\AppData\Local\Lavasoft
2018-03-04 17:46 - 2018-03-04 17:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
2018-03-04 17:46 - 2018-03-04 17:46 - 000000000 ____D C:\ProgramData\Lavasoft
2018-03-04 17:46 - 2018-03-04 17:46 - 000000000 ____D C:\Program Files\Lavasoft
2018-03-01 17:35 - 2018-03-01 17:35 - 000242496 _____ (Microsoft Corporation) C:\Windows\system32\concrt140.dll
2018-03-01 17:11 - 2018-03-01 17:11 - 000440128 _____ (Microsoft Corporation) C:\Windows\system32\msvcp140.dll
2018-03-01 17:11 - 2018-03-01 17:11 - 000263856 _____ (Microsoft Corporation) C:\Windows\system32\vccorlib140.dll
2018-03-01 17:11 - 2018-03-01 17:11 - 000083792 _____ (Microsoft Corporation) C:\Windows\system32\vcruntime140.dll
2018-02-24 12:26 - 2018-01-13 16:51 - 000000857 _____ C:\Users\Zuzana\Desktop\Downloads.lnk
2018-02-24 11:59 - 2018-02-24 11:59 - 001637776 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll
2018-02-24 11:59 - 2018-02-24 11:59 - 000045144 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys
2018-02-24 11:59 - 2018-02-24 11:59 - 000044776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WirelessKeyboardFilter.sys
2018-02-24 11:59 - 2018-02-24 11:59 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2018-02-24 11:59 - 2018-02-24 11:59 - 000000000 ____D C:\Program Files\Synaptics
2018-02-24 11:56 - 2018-02-24 11:56 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_cvusbdrv_01009.Wdf
2018-02-24 11:55 - 2018-03-24 18:27 - 000020730 _____ C:\Windows\system32\CVFirmwareUpgradeLog.txt
2018-02-24 11:55 - 2018-02-24 11:55 - 001463424 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll
2018-02-24 11:55 - 2018-02-24 11:55 - 000523392 _____ (Broadcom Corporation) C:\Windows\system32\bipdll.dll
2018-02-24 11:55 - 2018-02-24 11:55 - 000363008 _____ (Broadcom) C:\Windows\system32\cvproppage.dll
2018-02-24 11:55 - 2018-02-24 11:55 - 000051808 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\cvusbdrv.sys
2018-02-24 11:55 - 2018-02-24 11:55 - 000000000 ____D C:\ProgramData\Broadcom
2018-02-24 11:55 - 2018-02-24 11:55 - 000000000 ____D C:\Program Files\Broadcom
2018-02-24 11:41 - 2018-02-24 11:41 - 000000000 ____D C:\Program Files\PDF Architect 5 Manager
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-03-25 18:55 - 2009-07-14 06:34 - 000014016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2018-03-25 18:55 - 2009-07-14 06:34 - 000014016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2018-03-25 18:29 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\inf
2018-03-24 20:07 - 2017-12-03 19:22 - 000115552 _____ C:\Users\Zuzana\AppData\Local\GDIPFONTCACHEV1.DAT
2018-03-24 18:40 - 2017-12-27 20:17 - 000002170 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-03-24 18:27 - 2009-07-14 06:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-03-21 19:31 - 2009-07-14 06:33 - 000439408 _____ C:\Windows\system32\FNTCACHE.DAT
2018-03-18 20:50 - 2009-07-14 04:04 - 000000478 _____ C:\Windows\win.ini
2018-03-18 20:21 - 2009-07-14 06:52 - 000000000 ____D C:\Program Files\MSBuild
2018-03-18 20:21 - 2009-07-14 04:37 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2018-03-18 20:17 - 2009-07-14 04:37 - 000000000 ____D C:\Program Files\Common Files\System
2018-03-18 19:39 - 2017-08-21 18:19 - 000000000 ____D C:\Users\Zuzana\Desktop\Zástupci
2018-03-18 19:32 - 2017-08-28 18:01 - 000000000 ____D C:\Users\Zuzana\AppData\Roaming\vlc
2018-03-18 19:29 - 2017-12-27 20:15 - 000000000 ____D C:\Program Files\Mozilla Firefox
2018-03-18 19:29 - 2009-07-14 06:53 - 000032606 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2018-03-18 19:25 - 2018-02-20 21:06 - 000000000 ____D C:\Program Files\PDFCreator
2018-03-18 19:23 - 2009-12-21 01:46 - 000000000 ____D C:\Windows\Panther
2018-03-17 21:04 - 2009-12-21 02:02 - 001558876 _____ C:\Windows\system32\PerfStringBackup.INI
2018-03-17 21:04 - 2009-07-14 10:44 - 000668792 _____ C:\Windows\system32\perfh005.dat
2018-03-17 21:04 - 2009-07-14 10:44 - 000141420 _____ C:\Windows\system32\perfc005.dat
2018-03-17 16:24 - 2009-12-21 01:58 - 000000000 ____D C:\Users\Zuzana
2018-03-17 10:41 - 2009-12-21 00:01 - 000000000 ____D C:\Windows\system32\appraiser
2018-03-17 10:04 - 2017-08-20 22:50 - 000000000 ____D C:\Windows\system32\MRT
2018-03-17 10:01 - 2017-10-11 15:48 - 127391104 ____C (Microsoft Corporation) C:\Windows\system32\MRT-KB890830.exe
2018-03-17 10:01 - 2017-08-20 22:49 - 127391104 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2018-03-11 15:54 - 2017-08-21 20:24 - 000000000 ____D C:\Program Files\Drakensang Online
2018-03-04 18:54 - 2009-12-21 01:58 - 000000000 ____D C:\Users\Zuzana\AppData\Local\VirtualStore
2018-02-25 15:07 - 2017-12-03 20:12 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2018-02-24 19:36 - 2018-02-20 21:10 - 000000000 ____D C:\ProgramData\AVAST Software
2018-02-24 11:42 - 2018-02-20 21:07 - 000000000 ____D C:\ProgramData\PDF Architect 5
2018-02-24 11:41 - 2018-02-20 21:10 - 000000000 ____D C:\Users\Zuzana\AppData\Roaming\Seznam.cz
2018-02-24 11:41 - 2018-02-20 21:10 - 000000000 ____D C:\Program Files\Seznam.cz
2018-02-24 11:36 - 2018-01-21 17:00 - 000000000 ____D C:\Program Files\Common Files\InstallShield
2018-02-24 11:36 - 2017-08-20 23:23 - 000000000 ____D C:\ProgramData\ProductData
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2018-03-21 20:00
==================== End of FRST.txt ============================
v PC se mi samy od sebe zavírají otevřená okna a někdy se do adresního řádku v prohlížeči začnou psát samy od sebe písmena nebo znaky (vždycky jen 2, většinou g\). Na ploše se mi také zobrazuje tabulka Ukončení Windows. Prosím o kontrolu logu. Předem moc děkuji.
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 14.03.2018
Ran by Zuzana (administrator) on ZUZANA-PC (25-03-2018 19:07:09)
Running from C:\Users\Zuzana\Downloads
Loaded Profiles: Zuzana (Available Profiles: Zuzana)
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ESET) D:\Programy\ekrn.exe
() C:\Program Files\Broadcom\CV\bin\UshUpgradeService.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv.exe
(Broadcom Corporation) C:\Program Files\Broadcom\CV\bin\HostControlService.exe
(Broadcom Corporation) C:\Program Files\Broadcom\CV\bin\HostStorageService.exe
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AEstSrv.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.33.7\GoogleCrashHandler.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(ESET) D:\Programy\egui.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray.exe [495708 2017-08-20] (IDT, Inc.)
HKLM\...\Run: [egui] => D:\Programy\ecmds.exe [300440 2017-12-18] (ESET)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [261944 2018-01-22] (Apple Inc.)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKU\S-1-5-21-2314392373-3971531273-2474555217-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Bubbles.scr [878592 2010-11-20] (Microsoft Corporation)
HKU\S-1-5-18\...\RunOnce: [SPReview] => "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"hxxp://go.microsoft.com/fwlink/?LinkID=122915" /build:7601
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{7E9B2CD9-F506-4066-A456-264B419C0268}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{A8EF6825-A73B-49BE-859E-AD75C102933A}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
HKU\S-1-5-21-2314392373-3971531273-2474555217-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10440__180304__yaie
SearchScopes: HKU\S-1-5-21-2314392373-3971531273-2474555217-1000 -> {C0C3A6C6-03BC-4195-8FCB-AEA091301353} URL = hxxps://search.yahoo.com/yhs/search?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__ch_WCYID10440__180304__yaie&p={searchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2014-05-22] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
FireFox:
========
FF DefaultProfile: eew84m5u.default
FF ProfilePath: C:\Users\Zuzana\AppData\Roaming\Mozilla\Firefox\Profiles\eew84m5u.default [2018-03-25]
FF Homepage: Mozilla\Firefox\Profiles\eew84m5u.default -> hxxps://search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10440__180304__yaff
FF NewTab: Mozilla\Firefox\Profiles\eew84m5u.default -> hxxps://search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10440__180304__yaff
FF Extension: (No Name) - C:\Users\Zuzana\AppData\Roaming\Mozilla\Firefox\Profiles\eew84m5u.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [not found]
FF SearchPlugin: C:\Users\Zuzana\AppData\Roaming\Mozilla\Firefox\Profiles\eew84m5u.default\searchplugins\yahoo-lavasoft.xml [2018-03-04]
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-12-27] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-12-27] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-02-12] (Adobe Systems Inc.)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\dsengine.js [2018-03-04] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files\mozilla firefox\dsengine.cfg [2018-03-04] <==== ATTENTION
Chrome:
=======
CHR Profile: C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Default [2018-03-25]
CHR Extension: (Prezentace) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-12-27]
CHR Extension: (Dokumenty) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-12-27]
CHR Extension: (Adobe Acrobat) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-12-30]
CHR Extension: (Tabulky) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-12-27]
CHR Extension: (City-Sunset) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnffhanomkamjoleojbnkailliiojphl [2017-12-27]
CHR Extension: (Dokumenty Google offline) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-12-27]
CHR Extension: (AdBlock) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-03-17]
CHR Extension: (Chrome Media Router) - C:\Users\Zuzana\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-03-25]
CHR HKLM\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ekrn; D:\Programy\ekrn.exe [1539560 2017-12-18] (ESET)
R2 hostcontrolsvc; C:\Program Files\Broadcom\CV\bin\HostControlService.exe [820736 2018-02-24] (Broadcom Corporation)
R2 hoststoragesvc; C:\Program Files\Broadcom\CV\bin\HostStorageService.exe [36352 2018-02-24] (Broadcom Corporation)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV.exe [245842 2017-08-20] (IDT, Inc.)
R2 ushupgradesvc; C:\Program Files\Broadcom\CV\bin\UshUpgradeService.exe [221696 2018-02-24] ()
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 cvusbdrv; C:\Windows\System32\Drivers\cvusbdrv.sys [51808 2018-02-24] (Broadcom Corporation)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [114552 2018-01-19] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [141480 2018-01-19] (ESET)
R1 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [90136 2018-01-19] (ESET)
S3 ETDSMBus; C:\Windows\System32\DRIVERS\ETDSMBus.sys [28744 2017-08-20] (ELAN Microelectronic Corp.)
R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO32.SYS [23840 2017-08-20] (REALiX(tm))
R3 NETwNs32; C:\Windows\System32\DRIVERS\NETwNs32.sys [7530736 2017-08-20] (Intel Corporation)
R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [45144 2018-02-24] (Synaptics Incorporated)
R3 WirelessKeyboardFilter; C:\Windows\System32\DRIVERS\WirelessKeyboardFilter.sys [44776 2018-02-24] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-03-25 19:07 - 2018-03-25 19:07 - 000010388 _____ C:\Users\Zuzana\Downloads\FRST.txt
2018-03-25 19:06 - 2018-03-25 19:06 - 001764352 _____ (Farbar) C:\Users\Zuzana\Downloads\Nepotvrzeno 830225.crdownload
2018-03-25 19:05 - 2018-03-25 19:07 - 000000000 ____D C:\FRST
2018-03-25 19:05 - 2018-03-25 19:05 - 001764352 _____ (Farbar) C:\Users\Zuzana\Downloads\FRST.exe
2018-03-18 20:42 - 2018-03-18 20:45 - 381285552 _____ (Microsoft Corporation) C:\Users\Zuzana\Downloads\OfficeLangPack_Czech_x86.exe
2018-03-18 20:22 - 2018-03-18 20:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2018-03-18 20:22 - 2018-03-18 20:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2018-03-18 20:21 - 2018-03-18 20:21 - 000000000 ____D C:\Program Files\Microsoft Synchronization Services
2018-03-18 20:21 - 2018-03-18 20:21 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2018-03-18 20:20 - 2018-03-18 20:20 - 000000000 ____D C:\Windows\PCHEALTH
2018-03-18 20:20 - 2018-03-18 20:20 - 000000000 ____D C:\Program Files\Microsoft Sync Framework
2018-03-18 20:20 - 2018-03-18 20:20 - 000000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2018-03-18 20:17 - 2018-03-18 20:17 - 000000000 ____D C:\Program Files\Microsoft Visual Studio 8
2018-03-18 20:16 - 2018-03-18 20:49 - 000000000 ____D C:\Windows\SHELLNEW
2018-03-18 20:16 - 2018-03-18 20:16 - 000000000 ____D C:\Program Files\Microsoft Analysis Services
2018-03-18 20:14 - 2018-03-18 20:14 - 000000000 __RHD C:\MSOCache
2018-03-18 19:48 - 2018-03-18 19:48 - 000000000 ____D C:\Users\Zuzana\Downloads\Microsoft Office 2010 Professional Plus 14.0.7128.5000 SP2 RePack by D!akov
2018-03-18 19:45 - 2018-03-18 19:48 - 682989259 _____ C:\Users\Zuzana\Downloads\ms office 2010.zip
2018-03-18 19:42 - 2018-03-18 19:42 - 000000000 ____D C:\Users\Zuzana\AppData\Roaming\Thinstall
2018-03-18 19:42 - 2018-03-18 19:42 - 000000000 ____D C:\Users\Zuzana\AppData\Local\Thinstall
2018-03-18 19:41 - 2018-03-18 19:41 - 003306404 _____ C:\Users\Zuzana\Downloads\MAII_tutorial1_slides.pdf
2018-03-18 19:13 - 2018-03-18 19:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2018-03-18 16:05 - 2018-03-18 16:05 - 000000661 _____ C:\Users\Zuzana\Desktop\Zuzka – zástupce.lnk
2018-03-17 18:16 - 2018-03-17 18:16 - 000000000 ____D C:\Users\Zuzana\Documents\Vlastní šablony Office
2018-03-17 17:48 - 2018-03-17 17:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2018-03-17 17:48 - 2018-03-17 17:48 - 000000000 ____D C:\ProgramData\ESET
2018-03-17 16:24 - 2018-03-21 19:44 - 000002149 _____ C:\Users\Zuzana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2018-03-17 16:24 - 2018-03-21 19:44 - 000000000 ___RD C:\Users\Zuzana\OneDrive
2018-03-17 16:24 - 2018-03-17 16:24 - 000002086 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2018-03-17 16:24 - 2018-03-17 16:24 - 000002086 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2018-03-17 16:24 - 2018-03-17 16:24 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2018-03-17 16:23 - 2018-03-17 16:23 - 000000000 ____D C:\Users\Zuzana\AppData\Roaming\Skype
2018-03-17 16:23 - 2018-03-17 16:23 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2018-03-17 15:40 - 2018-03-18 20:20 - 000000000 ____D C:\Program Files\Microsoft Office
2018-03-16 22:22 - 2018-02-13 20:31 - 000117440 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2018-03-16 22:22 - 2018-02-13 20:24 - 000534016 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2018-03-16 22:22 - 2018-02-13 16:04 - 001893888 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2018-03-16 22:22 - 2018-02-13 16:04 - 001319424 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2018-03-16 22:22 - 2018-02-13 16:04 - 000594944 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2018-03-16 22:22 - 2018-02-13 16:04 - 000508416 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2018-03-16 22:22 - 2018-02-13 16:04 - 000339968 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
2018-03-16 22:22 - 2018-02-13 16:04 - 000313856 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2018-03-16 22:22 - 2018-02-13 16:04 - 000212992 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2018-03-16 22:22 - 2018-02-13 16:04 - 000190976 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2018-03-11 15:54 - 2018-03-11 15:54 - 000000000 ____D C:\Users\Zuzana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Drakensang Online
2018-03-04 18:52 - 2018-03-04 18:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2018-03-04 18:48 - 2018-03-04 18:48 - 000000000 ____D C:\Program Files\GOG.com
2018-03-04 17:48 - 2018-03-18 19:44 - 000000000 ____D C:\Users\Zuzana\AppData\LocalLow\uTorrent
2018-03-04 17:46 - 2018-03-25 18:30 - 000000000 ____D C:\Users\Zuzana\AppData\Roaming\uTorrent
2018-03-04 17:46 - 2018-03-04 17:46 - 000000000 ____D C:\Users\Zuzana\AppData\Roaming\Lavasoft
2018-03-04 17:46 - 2018-03-04 17:46 - 000000000 ____D C:\Users\Zuzana\AppData\Local\Lavasoft
2018-03-04 17:46 - 2018-03-04 17:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
2018-03-04 17:46 - 2018-03-04 17:46 - 000000000 ____D C:\ProgramData\Lavasoft
2018-03-04 17:46 - 2018-03-04 17:46 - 000000000 ____D C:\Program Files\Lavasoft
2018-03-01 17:35 - 2018-03-01 17:35 - 000242496 _____ (Microsoft Corporation) C:\Windows\system32\concrt140.dll
2018-03-01 17:11 - 2018-03-01 17:11 - 000440128 _____ (Microsoft Corporation) C:\Windows\system32\msvcp140.dll
2018-03-01 17:11 - 2018-03-01 17:11 - 000263856 _____ (Microsoft Corporation) C:\Windows\system32\vccorlib140.dll
2018-03-01 17:11 - 2018-03-01 17:11 - 000083792 _____ (Microsoft Corporation) C:\Windows\system32\vcruntime140.dll
2018-02-24 12:26 - 2018-01-13 16:51 - 000000857 _____ C:\Users\Zuzana\Desktop\Downloads.lnk
2018-02-24 11:59 - 2018-02-24 11:59 - 001637776 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll
2018-02-24 11:59 - 2018-02-24 11:59 - 000045144 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys
2018-02-24 11:59 - 2018-02-24 11:59 - 000044776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WirelessKeyboardFilter.sys
2018-02-24 11:59 - 2018-02-24 11:59 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2018-02-24 11:59 - 2018-02-24 11:59 - 000000000 ____D C:\Program Files\Synaptics
2018-02-24 11:56 - 2018-02-24 11:56 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_cvusbdrv_01009.Wdf
2018-02-24 11:55 - 2018-03-24 18:27 - 000020730 _____ C:\Windows\system32\CVFirmwareUpgradeLog.txt
2018-02-24 11:55 - 2018-02-24 11:55 - 001463424 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll
2018-02-24 11:55 - 2018-02-24 11:55 - 000523392 _____ (Broadcom Corporation) C:\Windows\system32\bipdll.dll
2018-02-24 11:55 - 2018-02-24 11:55 - 000363008 _____ (Broadcom) C:\Windows\system32\cvproppage.dll
2018-02-24 11:55 - 2018-02-24 11:55 - 000051808 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\cvusbdrv.sys
2018-02-24 11:55 - 2018-02-24 11:55 - 000000000 ____D C:\ProgramData\Broadcom
2018-02-24 11:55 - 2018-02-24 11:55 - 000000000 ____D C:\Program Files\Broadcom
2018-02-24 11:41 - 2018-02-24 11:41 - 000000000 ____D C:\Program Files\PDF Architect 5 Manager
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-03-25 18:55 - 2009-07-14 06:34 - 000014016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2018-03-25 18:55 - 2009-07-14 06:34 - 000014016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2018-03-25 18:29 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\inf
2018-03-24 20:07 - 2017-12-03 19:22 - 000115552 _____ C:\Users\Zuzana\AppData\Local\GDIPFONTCACHEV1.DAT
2018-03-24 18:40 - 2017-12-27 20:17 - 000002170 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-03-24 18:27 - 2009-07-14 06:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-03-21 19:31 - 2009-07-14 06:33 - 000439408 _____ C:\Windows\system32\FNTCACHE.DAT
2018-03-18 20:50 - 2009-07-14 04:04 - 000000478 _____ C:\Windows\win.ini
2018-03-18 20:21 - 2009-07-14 06:52 - 000000000 ____D C:\Program Files\MSBuild
2018-03-18 20:21 - 2009-07-14 04:37 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2018-03-18 20:17 - 2009-07-14 04:37 - 000000000 ____D C:\Program Files\Common Files\System
2018-03-18 19:39 - 2017-08-21 18:19 - 000000000 ____D C:\Users\Zuzana\Desktop\Zástupci
2018-03-18 19:32 - 2017-08-28 18:01 - 000000000 ____D C:\Users\Zuzana\AppData\Roaming\vlc
2018-03-18 19:29 - 2017-12-27 20:15 - 000000000 ____D C:\Program Files\Mozilla Firefox
2018-03-18 19:29 - 2009-07-14 06:53 - 000032606 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2018-03-18 19:25 - 2018-02-20 21:06 - 000000000 ____D C:\Program Files\PDFCreator
2018-03-18 19:23 - 2009-12-21 01:46 - 000000000 ____D C:\Windows\Panther
2018-03-17 21:04 - 2009-12-21 02:02 - 001558876 _____ C:\Windows\system32\PerfStringBackup.INI
2018-03-17 21:04 - 2009-07-14 10:44 - 000668792 _____ C:\Windows\system32\perfh005.dat
2018-03-17 21:04 - 2009-07-14 10:44 - 000141420 _____ C:\Windows\system32\perfc005.dat
2018-03-17 16:24 - 2009-12-21 01:58 - 000000000 ____D C:\Users\Zuzana
2018-03-17 10:41 - 2009-12-21 00:01 - 000000000 ____D C:\Windows\system32\appraiser
2018-03-17 10:04 - 2017-08-20 22:50 - 000000000 ____D C:\Windows\system32\MRT
2018-03-17 10:01 - 2017-10-11 15:48 - 127391104 ____C (Microsoft Corporation) C:\Windows\system32\MRT-KB890830.exe
2018-03-17 10:01 - 2017-08-20 22:49 - 127391104 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2018-03-11 15:54 - 2017-08-21 20:24 - 000000000 ____D C:\Program Files\Drakensang Online
2018-03-04 18:54 - 2009-12-21 01:58 - 000000000 ____D C:\Users\Zuzana\AppData\Local\VirtualStore
2018-02-25 15:07 - 2017-12-03 20:12 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2018-02-24 19:36 - 2018-02-20 21:10 - 000000000 ____D C:\ProgramData\AVAST Software
2018-02-24 11:42 - 2018-02-20 21:07 - 000000000 ____D C:\ProgramData\PDF Architect 5
2018-02-24 11:41 - 2018-02-20 21:10 - 000000000 ____D C:\Users\Zuzana\AppData\Roaming\Seznam.cz
2018-02-24 11:41 - 2018-02-20 21:10 - 000000000 ____D C:\Program Files\Seznam.cz
2018-02-24 11:36 - 2018-01-21 17:00 - 000000000 ____D C:\Program Files\Common Files\InstallShield
2018-02-24 11:36 - 2017-08-20 23:23 - 000000000 ____D C:\ProgramData\ProductData
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2018-03-21 20:00
==================== End of FRST.txt ============================