Prosím o kontrolu logu - google píše We're sorry...

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Šotnik
nováček
Příspěvky: 22
Registrován: listopad 13
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu - google píše We're sorry...

Příspěvekod Šotnik » 25 lis 2013 20:26

OTL Extras logfile created on: 25. 11. 2013 20:20:26 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Katka a Radek\Desktop
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16438)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d. M. yyyy

7,92 Gb Total Physical Memory | 6,22 Gb Available Physical Memory | 78,49% Memory free
9,17 Gb Paging File | 7,33 Gb Available in Paging File | 79,93% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 117,90 Gb Total Space | 74,84 Gb Free Space | 63,48% Space Free | Partition Type: NTFS
Drive D: | 912,26 Gb Total Space | 834,46 Gb Free Space | 91,47% Space Free | Partition Type: NTFS

Computer Name: MSI_GS70 | User Name: Katka a Radek | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\WINDOWS\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\WINDOWS\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = AC 1C AE C5 46 9F CE 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = [binary data]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = Reg Error: Unknown registry data type -- File not found

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{091307C4-6A79-45A9-A5D1-34A95D8EA5A8}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{0C3EF6B3-8EBE-4733-B9DA-443B34273BE5}" = lport=10243 | protocol=6 | dir=in | app=system |
"{12D65B9F-4860-419F-B7C3-35019C455FD7}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{15C402AA-B342-4FC0-AE32-4459FE86065D}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{189749B8-182F-4C2A-A22F-17C34360BB50}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{22F4EFDD-F2D5-44FC-8872-443A4553EE9C}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{270A3283-FAF8-4CD7-8316-FA071F131A43}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{27463721-C0D5-44EB-A102-ABEA9E2E0851}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{44323026-0642-49BB-B6B0-C98C3A7F520E}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{58199411-C3D9-4BCC-8250-7EA33E00242B}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{5F8C8330-D9F7-440E-A64D-9867D09885AF}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{6D145CBD-8A27-4837-B921-19253BC66B48}" = lport=2869 | protocol=6 | dir=in | app=system |
"{70BF4771-CDA0-488D-A61A-5F518A131A7F}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{70D7DEB8-BBBE-4F3C-9756-449AB14E47F1}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{823E3111-097B-4715-97D7-20440D1E5506}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{86DAD74E-0D30-4EA6-B0AD-7841252B6C53}" = rport=10243 | protocol=6 | dir=out | app=system |
"{AD1A69C8-656A-45B3-BCE9-AEF7D4308B43}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{BC4CFAB5-97F7-441C-BDBF-19C3B823BEB7}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{D209A732-02E1-46FB-A6A0-C360AC6E2113}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{D8E1D754-F053-4350-BF0E-B75FCEB1B3CC}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{DD07454C-12E3-419D-A298-4F63B361B2FD}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{FB3A2863-D4CC-44D7-B582-E0B0E28126B4}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{FD835FAE-4DD4-4FE3-8876-F2ACDB6D6FA5}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{001040BD-340A-490E-9568-403F278764E3}" = dir=out | name=wordament |
"{019EA8A0-F32D-496D-9342-2C580BA5264C}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} |
"{0271AD47-0690-44B3-AEB6-2C28C07B59FA}" = dir=out | name=pinball fx2 |
"{05E85310-BE50-450D-8C33-17AB9A9B911D}" = dir=out | name=@{microsoft.bingtravel_3.0.1.202_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} |
"{0A3D023F-FBDD-4DBB-A9C7-EA547F2CBB66}" = dir=out | name=f5 vpn |
"{0B46EE56-B0F6-4EC2-8C93-C8065E12C64A}" = dir=in | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} |
"{0E15C1CD-19B6-473A-89D9-592C34BD9DD7}" = dir=out | name=evernote |
"{0FDA5A60-5C1E-4095-A5D6-66E3A8703D42}" = dir=in | name=juniper networks junos pulse |
"{10A3FC7F-6065-47EF-AD5B-719C2EE2AC4D}" = dir=out | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} |
"{11087A23-BC15-483C-91CE-23725094CC8E}" = dir=out | name=@{microsoft.bingweather_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} |
"{14EF817A-3A89-4B8D-AC1B-7D65C516B3B2}" = dir=out | name=tumetro |
"{1B7E9462-13A2-4524-875A-B77CA22DE8E2}" = dir=out | name=@{microsoft.binghealthandfitness_3.0.1.203_x64__8wekyb3d8bbwe?ms-resource://microsoft.binghealthandfitness/resources/apptitle} |
"{2CD6D108-13FC-4B9B-86ED-27C49520EF44}" = dir=in | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} |
"{2FE8C290-0BBA-4087-8459-41E30CC47180}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{30B14B58-5EB2-4104-9400-BF8D9995AEA8}" = dir=out | name=windows_ie_ac_001 |
"{3647013A-BF7C-4CCC-AA92-C44BFEFB5589}" = dir=out | name=norton studio |
"{39FF680D-8EF8-4FF1-8D75-034956DDBC03}" = dir=out | name=@{microsoft.bingmaps_1.2.0.136_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} |
"{3B2A5169-14EB-496A-AF55-31471E5AAECF}" = dir=in | name=skype |
"{3B7114ED-D29D-4E2E-B46A-D0AD3929F5CE}" = dir=out | name=@{microsoft.xboxlivegames_2.0.139.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} |
"{3C4EF8C3-7F4D-433E-A16B-AC971BDC4F1E}" = dir=out | name=@{microsoft.bingtravel_1.2.0.145_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} |
"{3CF62171-47A3-4BAF-B089-A5D48912A43E}" = dir=out | name=@{microsoft.bingfoodanddrink_3.0.1.201_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfoodanddrink/resources/apptitlewithbranding} |
"{4282FE99-8560-4BC7-9576-5F3ED84E263F}" = dir=in | name=checkpoint.vpn |
"{4EA9AE59-B5F5-4616-8C24-0DC80020BE92}" = dir=out | name=@{microsoft.bingmaps_2.0.2210.2401_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} |
"{504A5791-BAB0-4B7D-A21B-A05BA067A733}" = dir=in | name=sonicwall mobile connect |
"{548DCF8C-BFF2-4BA4-AA88-FBAF9AC8BCC6}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{560448D6-095C-4907-B046-AC7F710701A7}" = dir=in | name=sonicwall.mobileconnect |
"{57693C47-91F4-46A4-A7AA-15D7D0FBF4C2}" = dir=out | name=adera |
"{57A52755-AE31-4DF8-8688-DAB7E95485AD}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{5B81D8BB-E802-45CC-8142-18347F80FD8D}" = dir=in | name=pinball fx2 |
"{5F4632C0-D5B1-40C3-B0D9-E3A759C81B9E}" = dir=out | name=sonicwall.mobileconnect |
"{6104401E-83A4-41EF-9C20-4021946FA2D3}" = dir=out | name=@{microsoft.bingfinance_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} |
"{65C74F0A-59DA-41F3-BD3A-21754F69F1E6}" = dir=out | name=@{microsoft.bingsports_3.0.1.203_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} |
"{6651ED39-389C-457C-973A-E8451567FCAC}" = dir=out | name=music maker jam |
"{666DB7BC-9F71-4A0C-81A1-7220B2C2A731}" = dir=in | name=music maker jam |
"{68C78B35-60C5-4B5D-9C78-F13F62627886}" = dir=out | name=@{microsoft.microsoftskydrive_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftskydrive/resources/shortproductname} |
"{6BE1820D-AC9A-45A7-8A17-5E2E584E6C08}" = dir=out | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} |
"{6C0FCD93-2DFD-4387-986D-FF9104430754}" = dir=out | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{6DC821AC-BE87-467A-991D-1F81766B96A9}" = dir=out | name=windows_ie_ac_001 |
"{71848B41-EB94-4F15-9474-3418BE6AAB03}" = dir=out | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} |
"{7A5D02AA-70FB-420B-B6EF-F510F9BBD559}" = dir=out | name=windows_ie_ac_001 |
"{7BE5F187-E36B-45CD-B62B-F67EF30A04CE}" = dir=out | name=sonicwall mobile connect |
"{7EE97A92-C9A3-4DCA-BDC9-03C085D3274E}" = dir=out | name=microsoft mahjong |
"{808F1451-4108-46FD-ADBB-F17324B5F0BD}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{85CEDBDC-4528-46DF-B70D-A14E3CC958BB}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{91C4F600-D2E0-4EE3-BB16-9C314E3EB127}" = dir=in | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} |
"{94FB2EC7-E60E-4DF6-95B6-8F04BBCA8754}" = dir=out | name=taptiles |
"{9526FDB2-C2FF-4CAE-A94A-100218AAE4FB}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{99F6B4C8-4926-4338-946D-A17C2599E8A1}" = dir=out | name=@{microsoft.zunemusic_2.2.299.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{9B8E0569-0742-402E-BE63-8AB660C98CE5}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{9E3D57FC-7C37-4424-9352-4831E97D029D}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{9F7CE015-5351-46EA-9D98-F0DBE76DC828}" = dir=out | name=@{microsoft.zunemusic_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/33273} |
"{9F7DC515-9054-4E47-BD45-E01732D45127}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{A13B85D9-1492-4E68-95EB-056A047EE05D}" = dir=out | name=fresh paint |
"{A44AC832-5256-41BD-80A1-84B365973AE0}" = dir=out | name=@{microsoft.zunevideo_2.2.299.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{AC66B275-A927-4C56-9FFD-5B5E0663EDC4}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{ACD62076-8663-4661-9363-7C71A8872AE3}" = dir=out | name=@{microsoft.bingnews_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} |
"{B6756C7E-515D-4DBE-9AB4-B700686C8517}" = dir=out | name=@{microsoft.bingweather_3.0.1.203_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} |
"{B820581C-BA0D-4071-8BFC-3A4AB823B9C7}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{B8518204-6FA0-4F8E-93B0-6571259B8F31}" = dir=out | name=- games app - |
"{B8A2D59C-DBA2-4E03-AE0A-7A761ADE4D21}" = dir=out | name=microsoft solitaire collection |
"{B8B8DCD2-8D37-432B-BD48-75E17FC00B3F}" = dir=out | name=juniper networks junos pulse |
"{BAD10B6D-6FFA-44E9-98F8-27DC167D9B56}" = dir=in | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{BDB1AFC6-387B-4365-B2DA-36BEB37EF9BA}" = dir=out | name=check point vpn |
"{CB71E0FD-48DA-42BF-BFEA-8C5B708D495C}" = dir=in | name=evernote |
"{CC50D316-C627-412C-8FF8-0E918F77304E}" = dir=out | name=cookbook |
"{CC8A48F0-A980-4F72-9BB1-B952EC391DB4}" = dir=out | name=@{microsoft.bingsports_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} |
"{CE48B3E0-6253-42D7-AC26-C75BEDA1B7DC}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{D0D1F7EB-1E91-4357-BB36-EB9B055BACDB}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{D6980480-941A-4DF6-AB81-3734ECD3D779}" = dir=out | name=junipernetworks.junospulsevpn |
"{D9ABCEE2-F9DF-4713-AD22-AB156A532470}" = dir=out | name=@{microsoft.zunevideo_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/33270} |
"{DB59588E-ED90-4C47-A7B5-7929DD0C0BD2}" = dir=out | name=checkpoint.vpn |
"{DD3BF5B7-EB8B-4AFA-95DF-E9933A86C5B3}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{DE589DA7-181A-40E8-9F19-F657F0132EC4}" = dir=in | name=@{microsoft.windowsreadinglist_6.3.9654.20321_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{E0FE4C6F-372B-4B30-8BEB-6B7A6A8D68E5}" = dir=in | name=check point vpn |
"{E328CDF4-409F-43F1-9E1C-C9AE928BC42A}" = dir=out | name=@{microsoft.bingfinance_3.0.1.299_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} |
"{E3510CCA-9377-4720-9D63-3E4B8029AC30}" = dir=in | name=f5 vpn |
"{E56317EC-AC2D-4CB7-B536-4E52D9945FE8}" = dir=out | name=puzzletouch |
"{E7985E1D-C36F-4787-80A8-6350D07E9266}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{E894A64F-7E51-432B-AF54-F1D04B2AD8F8}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} |
"{EC799E33-72BA-42D7-9127-DEFE68F9799D}" = dir=in | name=junipernetworks.junospulsevpn |
"{EE466E83-F869-4569-89CC-6DDC886E4AFB}" = dir=out | name=@{microsoft.bingnews_3.0.1.285_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/apptitle} |
"{F0D1BE1B-2EF5-43B0-95A5-56A2AA8A5062}" = dir=out | name=@{microsoft.windowsreadinglist_6.3.9654.20321_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{F64300AD-D559-4000-BD45-0997BCC8E70A}" = dir=out | name=f5.vpn.client |
"{F77E5446-4378-4E99-8B7A-7061AAAEA193}" = dir=in | name=f5.vpn.client |
"{FBE94594-32F5-438B-9C54-F71567B0A455}" = dir=out | name=skype |
"{FD70D9F4-4DFD-4812-B66A-21B492EDDBF9}" = dir=out | name=@{microsoft.xboxlivegames_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} |
"{FF574E76-7CCD-40D6-831F-AE47EA903754}" = protocol=6 | dir=out | app=system |
"TCP Query User{B6CB6E8B-D04B-47B9-A2E4-2CE8AC2C308A}D:\nfs instal\need for speed most wanted 2012\nfs13.exe" = protocol=6 | dir=in | app=d:\nfs instal\need for speed most wanted 2012\nfs13.exe |
"UDP Query User{F021B8E4-B417-4B56-89AB-FE4E43ECA679}D:\nfs instal\need for speed most wanted 2012\nfs13.exe" = protocol=17 | dir=in | app=d:\nfs instal\need for speed most wanted 2012\nfs13.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP600" = Canon MP600
"{1444D2EE-C7AD-44A8-844F-2634B49353D1}" = Logitech Gaming Software 5.10
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{409CB30E-E457-4008-9B1A-ED1B9EA21140}" = Intel(R) Rapid Storage Technology
"{43136332-880B-458A-966C-900C18752B66}" = MAGIX MX Suite
"{44B72151-611E-429D-9765-9BA093D7E48A}" = Intel® Trusted Connect Service Client
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{5EB368A4-562A-41B6-A5B3-06054A27F5A6}" = Intel(R) Rapid Storage Technology
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{66F2988C-2F76-492A-807C-8783CF388E3E}" = SCM
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{A84A4FB1-D703-48DB-89E0-68B6499D2801}" = Qualcomm Atheros Bluetooth Suite (64)
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Ovládací panel NVIDIA 331.58
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Ovladače grafiky 331.58
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 1.7.1
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus" = NVIDIA Optimus 9.3.21
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Systémový software PhysX 9.13.0725
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizace NVIDIA 9.3.21
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamC" = GeForce Experience NvStream Client Components
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Ovladač HD audia 1.3.26.4
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 9.3.21
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.9
"{CD95F661-A5C4-44F5-A6AA-ECDD91C240DD}" = WinZip 17.5
"{DF446558-ADF7-4884-9B2D-281979CCE71F}" = Qualcomm Atheros Killer Network Manager
"{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64
"5AADE1068CF70DD983F763B20CF2CAAB72883915" = KB9X Radio Switch Driver
"CCleaner" = CCleaner
"Elantech" = ETDWare PS/2-X64 11.13.3.3_WHQL
"WinRAR archiver" = WinRAR 5.00 (64-bit)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{000AD938-EEBB-46F5-BD33-23CB34A57C54}" = Movie Maker
"{034BEE25-A986-455F-BA79-48CF3A47B221}" = Windows Live UX Platform Language Pack
"{03CC9D58-B132-4CC0-A521-4F3660AA43C7}" = Movie Maker
"{0454BB9A-2A7A-4214-BDFF-937F7A711A44}" = Windows Live Communications Platform
"{048C8498-C20B-4AF7-9978-7A79E567D74C}" = Photo Common
"{04CCBB46-37C1-4623-9477-C65A32DFD023}" = Photo Common
"{058EDEC8-1873-4B49-9A08-54ADE9CC129B}" = Movie Maker
"{061FF8F3-5226-4278-8AAB-282C1B024F58}" = Photo Common
"{087D261B-73AE-4B8A-8F18-2EE80DD2ED8B}" = Фотоальбом
"{0BFF2188-2D8E-4BE2-95D0-B3CCD4C6A0C9}" = Photo Common
"{0DF95460-2887-4011-9344-1959CDF18ADC}" = Photo Common
"{0E1BB4B4-00FF-45B1-914B-AB8D8B9862B3}" = Windows Live UX Platform Language Pack
"{0F6A576E-C6E3-437E-B389-262EBC86B09A}" = Windows Live UX Platform Language Pack
"{115356B4-8E81-43DB-BB2A-19E5ED95FBAF}" = Фотоколекція
"{13F3CEA5-9E2C-4C4E-9F0F-D0DB389CF4A9}" = Movie Maker
"{144113A4-1A98-452F-8506-60F8C811D316}" = Movie Maker
"{1532CEFF-ADB4-4230-BF03-30A6B3182663}" = Movie Maker
"{18272881-CFC0-434D-A975-E5BE44206AA0}" = Windows Live UX Platform Language Pack
"{187A0FCA-2FE2-4827-83CA-D4887E965047}" = Photo Common
"{1AE65157-6E14-49AF-98DF-447927FBC142}" = BlueStacks App Player
"{1F0C818D-4A41-4E40-BAFB-BB940C82A518}" = Fotogalerija
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1FEE19BC-6F0C-42E4-82FF-FB597F6141DF}" = Windows Live Essentials
"{2329E182-DFC8-4C1E-AF2C-758F25347F69}" = „Windows Live Essentials“
"{262E7632-72F9-4CBE-9461-937F24106EF2}" = Windows Live Essentials
"{26A24AE4-039D-4CA4-87B4-2F83217045FF}" = Java 7 Update 45
"{2892E1B7-E24D-4CCB-B8A7-B63D4B66F89F}" = BurnRecovery
"{28B2947F-FC0B-4450-80E3-6DF698E824A6}" = Windows Liven peruspaketti
"{2A078A2B-E2C8-43A3-862C-DC57090AB7C2}" = Movie Maker
"{2AC4C6D7-512D-4B78-A85B-2C16E748AB8E}" = Movie Maker
"{2B068A64-F867-44E9-8827-A795647C8730}" = Фотографии (общедоступная версия)
"{306C7AEF-16C7-428D-93AA-99D4A4090243}" = Movie Maker
"{30F99474-EBE3-4134-A02B-F6CD38CFE243}" = Photo Gallery
"{3123396C-3EFE-4DCB-8033-F5D182D6597D}" = Windows Live Essentials
"{32AA7594-09A9-437F-9541-5F760509B752}" = Фотогалерия
"{34C5AD54-3CCD-4935-AB8D-8527058B96F7}" = Windows Live UX Platform Language Pack
"{36BEC461-B58A-414D-993E-E2BDD1F1A14B}" = Movie Maker
"{3C63F944-803E-49A7-B3A2-B8AB3313E883}" = Windows Live UX Platform Language Pack
"{3CBD94C1-BA15-488C-888B-D8DD296CC6DC}" = Fotogalerie
"{3D4F3F4C-E364-4E46-BFB1-A00BF9777422}" = Windows Live UX Platform Language Pack
"{3FD0036E-236A-4EDD-894D-4374BEE64464}" = Windows Live UX Platform Language Pack
"{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}" = Norton Online Backup
"{446CC8CE-0E90-44F7-ADD0-774B243EF090}" = Galerie de photos
"{46A648D2-C097-41A3-A517-E709F045B6CD}" = Movie Maker
"{49F068F2-4323-417B-AFC8-1E43F479D46C}" = Windows Live Essentials
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4AA2A466-8031-403A-8236-5301B4E391FB}" = Windows Live UX Platform Language Pack
"{4AF53C99-315D-4536-873F-029D2D274AE2}" = Photo Common
"{4CCBD1F4-CEEC-452A-9CB8-46564B501315}" = Windows Live UX Platform
"{4DEA5B85-6C56-45F3-AE00-FED756B0D3B4}" = KLM
"{5078CEC3-A56F-4080-8CD4-ED7BCBE5686B}" = Photo Common
"{537B16E0-A39F-47CB-9C1E-50978862B108}" = Windows Live UX Platform Language Pack
"{56232E3D-7EA9-45E0-A371-26CD80510AF7}" = Windows Live UX Platform Language Pack
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{5917D694-AFC3-46BF-8CAB-0DABAF9D6FCB}" = Windows Live UX Platform Language Pack
"{5A30E103-9FA6-4A23-A107-E1F5F174BB62}" = Windows Live Temel Parçalar
"{5BABDA39-61CF-41EE-992D-4054B6649A9B}" = Movie Maker
"{5EE31A9B-EA26-41EA-B4B6-73910C5E06DC}" = MSI Social Media Collection
"{619FA785-489B-4D22-911F-82D6EDF5BDB0}" = Battery Calibration
"{62BBCDDC-4979-4E59-9D97-5B8E874C3191}" = Movie Maker
"{62FF5AAC-013B-42EB-9A06-81914AB132D5}" = Photo Common
"{63B1E33F-F243-4656-A600-125D6963B43A}" = Movie Maker
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{690F5BA3-5DEB-42CD-962B-F687EE59FAA7}" = Windows Live Essentials
"{69D48C91-CCC2-4305-89DE-D1F8122EDBF4}" = Photo Common
"{6A8DB215-7BCD-4377-B015-2E4541A3E7C6}" = Windows Live PIMT Platform
"{6B8F13E2-F02B-445C-9A31-3C0E5D547CBA}" = Photo Common
"{6D9DD7D9-4167-4541-8DA8-619B9B802D72}" = Fotogalerija
"{701FE1BC-834A-4857-AF62-6EBA50CFBC78}" = Movie Maker
"{715F9B21-2817-402A-9BF0-BDA764D21F09}" = Windows Live Essentials
"{719E4DA1-A17B-4B46-9D5D-925D4FBE4D69}" = Movie Maker
"{7359585E-A828-4EFC-8177-7D1883DDA0B5}" = MSI Remind Manager
"{743FD554-A73F-4FE8-BE7B-C283D16297F9}" = Photo Common
"{751EB657-3F22-4150-8CE4-D79A262F1D92}" = Movie Maker
"{7595CAD2-87D0-4D01-AC02-3FDD3A891BB8}" = Galeria fotografii
"{797DC296-ADC5-4A08-8CBC-AEB0D6F4B249}" = Windows Live Essentials
"{7B5AA67E-FEA0-40BB-BAB5-CA56645A589C}" = NVIDIA PhysX
"{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1" = Super-Charger
"{7E63F102-A9E9-4F4C-8004-BC62974736BF}" = Movie Maker
"{7E9A63B3-8572-4A4B-9F87-3C2A873BBC55}" = Windows Live UX Platform Language Pack
"{8063EB67-E777-4A56-9C1E-FAD75C2F5EC2}" = Photo Common
"{8176B9CA-F037-49C0-BD77-661B1DDCA6F3}" = Movie Maker
"{81CF4226-47C1-418C-8718-1B3ED2C37878}" = Windows Live Essentials
"{85309D89-7BE9-4094-BB17-24999C6118FC}" = ArcSoft PhotoStudio 5.5
"{857BC375-BCFB-474E-9BD9-7EBB18EC55E0}" = Windows Live Essentials
"{862780DF-67D4-40B4-BDC7-E82B3F116504}" = Movie Maker
"{8801CA65-921A-4CCC-9D63-879D1D0BAA97}" = Sound Blaster Cinema
"{88809C3E-8C92-4454-AEB7-B26166E3D6CD}" = Windows Live UX Platform Language Pack
"{8A642ACD-CE3A-4A23-A8B1-A0F7EB12B214}" = Windows Live SOXE Definitions
"{8D813AFF-D91D-4EE0-821F-B901FC2E89FA}" = Windows Live
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
"{8F7FECEC-088F-431D-A5FB-2B59E1E69943}" = Galería de fotos
"{90150000-0138-0409-0000-0000000FF1CE}" = Microsoft Office
"{9038E0C6-9CB9-4380-8FA3-B6B30FA304CF}" = Основи Windows Live
"{9093B0D5-EA59-4C9E-A2E3-CC130138DFCD}" = Fotogaléria
"{90993BD9-C7D9-4C2F-B56C-2F7AFEBD4CD0}" = Windows Live UX Platform Language Pack
"{97368584-CA0D-45C6-8151-AE96A33A867B}" = Fotoattēlu galerija
"{9869099A-6A44-4590-9430-BF7AC74EBCC6}" = Windows Live UX Platform Language Pack
"{989889A7-D13D-4DA4-B059-B250784DFABC}" = Photo Common
"{99AA6730-54CD-4B9E-B05B-0A5196743923}" = Windows Live UX Platform Language Pack
"{9B4D3AFE-8679-4704-AA4C-BAB0E41870EF}" = Windows Live Essentials
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9C60D080-84E7-43A5-8ECA-28253D253BD7}" = Windows Live Essentials
"{9D204CE2-C8D8-4CC9-A74B-F2768DBC1E3B}" = Photo Common
"{9EDF46F0-2D4E-4C00-B2B6-0660666E9F60}" = Movie Maker
"{9F470E17-4FC3-4091-A508-D5347A16A2B9}" = Fotogalleriet
"{A035950F-15BA-41C0-9D8F-165FC0536012}" = Movie Maker
"{A17946CA-18E5-4CF0-8D55-A56D804718F8}" = Movie Maker
"{A19A8C25-272A-4CD6-8BA8-3772321A021B}" = Συλλογή φωτογραφιών
"{A1FBD2B3-6768-472D-BA46-C00EACBCE16C}" = Fotogalerie
"{A37F2060-813A-4325-9456-272B10EE75EF}" = Windows Live Essentials
"{A3D995FA-C9A0-4E7D-B430-3F7A6731B4D5}" = Windows Live UX Platform Language Pack
"{A47EA9D4-BB87-415E-9239-28860434E5A0}" = Movie Maker
"{A6C48A9F-694A-4234-B3AA-62590B668927}" = Intel(R) Manageability Engine Firmware Recovery Agent
"{A7E73DE5-E5FD-4923-9D88-E09ECD1F3545}" = Podstawowe programy Windows Live
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AA82E5EF-70C2-41CB-8432-309078304CBB}" = Photo Common
"{ACE848B7-145C-4230-9B95-BA9C98A51AA6}" = Fotogalerii
"{ADE1F206-1365-4B14-9A24-4B1A7DD58BAC}" = Windows Live UX Platform Language Pack
"{AE8044B5-FCA3-4EBE-AC78-0FB3A6E8DC76}" = Movie Maker
"{B096A0E4-26A1-4E9F-8548-577964B9434B}" = Windows Live Essentials
"{B66CFC88-6729-4A0F-8610-258413159C35}" = Windows Live UX Platform Language Pack
"{B693A4C3-B708-4F25-978E-56CA2517914C}" = Windows Live UX Platform Language Pack
"{B727564C-47D3-473A-AC9E-F4BE7B1BD5D3}" = Windows Live UX Platform Language Pack
"{B7F31B9C-8775-4500-8E9D-6ABE9AE17CF4}" = Windows Live Essentials
"{BA068968-594F-40BE-8EE8-99119123C991}" = Windows Live UX Platform Language Pack
"{BAD4B8FA-4BDA-4A59-BE64-9741031680C7}" = Movie Maker
"{BFA6D5AD-25EA-475F-AD80-ECD408C674AB}" = Movie Maker
"{C034A6F9-6569-491B-B3BF-F5D15221A708}" = Windows Live Essentials
"{C07F934A-3253-4740-86B8-22BA5F571E6E}" = Hybrid Power
"{C1E693A4-B1D5-4DCD-B68D-2087835B7184}" = ScanSoft OmniPage SE 4.0
"{C2F1EBBF-9AC4-4E0B-A7F4-74C9C7AD4813}" = Galerie foto
"{C32D87E1-6310-4CD5-8D6D-865AFE0E9B4E}" = Movie Maker
"{C32F4F5A-C9FB-427C-9F6F-9DB157611FFF}" = Valokuvavalikoima
"{C424CD5E-EA05-4D3E-B5DA-F9F149E1D3AC}" = Windows Live Installer
"{C4D82144-B2D5-4A0E-A470-16F13EBC5BCB}" = Windows Live Essentials
"{C5B383EB-B85B-481C-9946-34FBF021678B}" = Galerija fotografija
"{C67BC332-A59A-4D40-977F-664F60AB21D8}" = Photo Common
"{C7929038-EDFB-416D-A2C9-CC65416DA0DF}" = Photo Common
"{C8BBA220-8549-462A-B411-1AF44DE098B5}" = Photo Common
"{C9B6EFD0-4F01-4BBA-8374-39AD99A3ED72}" = Windows Live Photo Common
"{C9D08433-5FDD-43C6-8482-7AFA7D891D98}" = Windows Live UX Platform Language Pack
"{CAEDA0C9-8B41-4D69-B4D6-5AC66AAF44FB}" = Photo Common
"{CB5CC924-4B5C-4682-BB21-F160C12F56AB}" = Foto-galerija
"{CD239A50-AD95-4A72-9D5F-D4FBD4B89417}" = Movie Maker
"{CE542E0D-E056-4426-9F98-084C13E18641}" = Windows Live UX Platform Language Pack
"{CE7773A5-8556-44A3-84AB-B95F67E8D766}" = Photo Common
"{D04EBB49-C985-4A38-8695-62000861293A}" = Raccolta foto
"{D1952E4A-9F67-4693-A06D-DA8E0FB2B00D}" = Windows Live Essentials
"{D1F5A388-09C9-4998-A793-B15DCDEB3B42}" = Photo Common
"{D824AFCC-3408-4FB2-A6C9-28C660700DD4}" = Photo Common
"{D888F114-7537-4D48-AF03-5DA9C82D7540}" = Photo Common
"{D9D4D271-609F-440D-A9EC-A66B0815CFE2}" = Windows Live Essentials
"{DB7B6508-2AAB-4F26-99D4-74559A2F5E42}" = Fotoğraf Galerisi
"{DCA5D0DE-F6AC-4E24-A924-03561D26BE97}" = Windows Live Essentials
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E0E0FB88-D570-463E-A98E-733B7B656867}" = Photo Gallery
"{E1203F8C-FF34-4968-A4A5-B4F1F8533DAB}" = Photo Common
"{E18F981B-401C-4D90-BC57-D8903564D558}" = Windows Live UX Platform Language Pack
"{E354D495-5DA4-4CCF-AB39-080F6A4141BE}" = Fotogalleri
"{E37CD6E8-BC51-4D48-9840-803EC3B418D3}" = גלריית התמונות
"{E50E3DBC-46AA-4827-B2A6-F995D81DF526}" = Fotótár
"{EA348D4B-FB4D-4449-8749-654CA51F56A6}" = Windows Live UX Platform Language Pack
"{EB91007A-0110-42A6-B869-2709955A9B2A}" = Photo Common
"{EC33D375-5164-4374-9061-43F5C6073219}" = Photo Common
"{ED6C77F9-4D7E-447C-9EC0-9A212D075535}" = Movie Maker
"{F09DD76B-D3D3-4558-B5BC-F1EEA6E00162}" = Windows Live UX Platform Language Pack
"{F0A8BF4A-972F-41E0-9800-1EFE3BF28266}" = Realtek Card Reader
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F1CA7DAE-F998-499C-8CA5-FC58CA2416EC}" = Windows Live Essentials
"{F5248B7E-779A-4FA4-8134-D1933D8680FA}" = Galeria de Fotos
"{F54030F3-14B6-432D-9361-78DCB1473920}" = Photo Common
"{F5E338CE-E1C6-4F7D-8300-44DBD05B9F14}" = Galeria de Fotografias
"{F67CA22C-C11F-4573-8406-57F75BA06B51}" = Photo Gallery
"{F7304CCF-B4A0-49C7-88A8-CD3F28FFBF9A}" = Основные компоненты Windows Live
"{F9B257B6-0DA2-40E1-BAE4-0D64A2C9EE5E}" = Windows Live Essentials
"{FC6C7107-7D72-41A1-A031-3CE751159BAB}" = Photo Gallery
"{FC78A8EE-2C7F-44A7-A2D8-9676577F9CE2}" = Windows Live Essentials
"{FCB3772C-B7D0-4933-B1A9-3707EBACC573}" = Intel(R) SDK for OpenCL - CPU Only Runtime Package
"{FE5B524F-CD89-4457-B8C1-9299F17E6634}" = Windows Live UX Platform Language Pack
"{FE7C0B3D-50B9-4951-BE78-A321CBF86552}" = Windows Live SOXE
"Easy-PhotoPrint" = Canon Utilities Easy-PhotoPrint
"FileAssociationManager" = File Association Manager
"Google Chrome" = Google Chrome
"InstallShield_{4DEA5B85-6C56-45F3-AE00-FED756B0D3B4}" = KLM
"InstallShield_{C07F934A-3253-4740-86B8-22BA5F571E6E}" = Hybrid Power
"InstallShield_{DF446558-ADF7-4884-9B2D-281979CCE71F}" = Qualcomm Atheros Killer Network Manager
"KLiteCodecPack_is1" = K-Lite Codec Pack 10.0.0 Basic
"MAGIX_{43136332-880B-458A-966C-900C18752B66}" = MAGIX MX Suite
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware verze 1.75.0.1300
"MediaNavigation.CDLabelPrint" = CD-LabelPrint
"MP Navigator 3.0" = Canon MP Navigator 3.0
"NARA" = Norton Online Backup ARA
"NAT" = Norton Anti-Theft
"Need for Speed Most Wanted 2012_is1" = 1.1
"NIS" = Norton Internet Security
"Registrace uživatele zařízení Canon MP600" = Registrace uživatele zařízení Canon MP600
"rFactor2" = rFactor2
"Samsung SpeedPlus Driver_is1" = Samsung SpeedPlus Driver
"Win8 DVD Player" = Win8 DVD Player 1.2.0.0
"WinLiveSuite" = Windows Live Essentials

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 25. 11. 2013 15:16:04 | Computer Name = MSI_GS70 | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.

Error - 25. 11. 2013 15:16:10 | Computer Name = MSI_GS70 | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.

Error - 25. 11. 2013 15:16:10 | Computer Name = MSI_GS70 | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.

Error - 25. 11. 2013 15:16:10 | Computer Name = MSI_GS70 | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.

Error - 25. 11. 2013 15:16:10 | Computer Name = MSI_GS70 | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.

Error - 25. 11. 2013 15:16:15 | Computer Name = MSI_GS70 | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.

Error - 25. 11. 2013 15:16:18 | Computer Name = MSI_GS70 | Source = NvStreamSvc | ID = 131073
Description =

Error - 25. 11. 2013 15:16:18 | Computer Name = MSI_GS70 | Source = NvStreamSvc | ID = 131073
Description =

Error - 25. 11. 2013 15:16:24 | Computer Name = MSI_GS70 | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.

Error - 25. 11. 2013 15:17:04 | Computer Name = MSI_GS70 | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.

[ System Events ]
Error - 25. 11. 2013 15:15:55 | Computer Name = MSI_GS70 | Source = Service Control Manager | ID = 7000
Description = Služba BlueStacks Hypervisor neuspěla při spuštění v důsledku následující
chyby: %%2

Error - 25. 11. 2013 15:15:56 | Computer Name = MSI_GS70 | Source = Service Control Manager | ID = 7001
Description = Služba BlueStacks Android Service závisí na službě BlueStacks Hypervisor,
která neuspěla při spuštění v důsledku následující chyby: %%2

Error - 25. 11. 2013 15:15:59 | Computer Name = MSI_GS70 | Source = DCOM | ID = 10010
Description =

Error - 25. 11. 2013 15:16:05 | Computer Name = MSI_GS70 | Source = DCOM | ID = 10010
Description =

Error - 25. 11. 2013 15:16:05 | Computer Name = MSI_GS70 | Source = DCOM | ID = 10010
Description =

Error - 25. 11. 2013 15:16:05 | Computer Name = MSI_GS70 | Source = DCOM | ID = 10010
Description =

Error - 25. 11. 2013 15:16:06 | Computer Name = MSI_GS70 | Source = DCOM | ID = 10010
Description =

Error - 25. 11. 2013 15:16:10 | Computer Name = MSI_GS70 | Source = DCOM | ID = 10010
Description =

Error - 25. 11. 2013 15:16:19 | Computer Name = MSI_GS70 | Source = DCOM | ID = 10010
Description =

Error - 25. 11. 2013 15:16:59 | Computer Name = MSI_GS70 | Source = DCOM | ID = 10010
Description =


< End of report >

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - google píše We're sorry...

Příspěvekod jaro3 » 26 lis 2013 10:25

Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {3E13E584-1113-4E77-B288-413B2664DF26}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE:64bit: - HKLM\..\SearchScopes\{3E13E584-1113-4E77-B288-413B2664DF26}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAMIJS;
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{3E13E584-1113-4E77-B288-413B2664DF26}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAMIJS;
IE - HKCU\..\SearchScopes,DefaultScope = {3E13E584-1113-4E77-B288-413B2664DF26}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
[2013/11/10 21:53:35 | 000,769,726 | ---- | M] () -- C:\WINDOWS\SysNative\perfh019.dat
[2013/11/10 21:53:35 | 000,713,560 | ---- | M] () -- C:\WINDOWS\SysNative\perfh01D.dat
[2013/11/10 21:53:35 | 000,158,362 | ---- | M] () -- C:\WINDOWS\SysNative\perfc019.dat
[2013/11/10 21:53:35 | 000,149,444 | ---- | M] () -- C:\WINDOWS\SysNative\perfc01D.dat

:Files
C:\WINDOWS\System32\*.tmp
C:\WINDOWS\*.tmp
C:\WINDOWS\system32\*.tmp.dll
C:\WINDOWS\System32\dllcache\*.tmp
C:\WINDOWS\system32\SET*.tmp
C:\WINDOWS\system32\DUMP*.tmp
c:\windows\Tasks\*.job /s
C:\*.tmp
C:\WINDOWS\System32\drivers\*.tmp
C:\Documents and Settings\All Users\Data aplikací\*.tmp
C:\Windows\SysNative\drivers\*.tmp
C:\Windows\SysWow64\drivers\*.tmp
C:\Program Files (x86)\*.tmp
C:\Windows\SysWow64\*.tmp
C:\Windows\SysNative\*.tmp
C:\ProgramData\Spybot - Search & Destroy
C:\Program Files (x86)\Spybot - Search & Destroy 2
C:\Users\Katka a Radek\AppData\Local\Temporary Internet Files\*.*
C:\WINDOWS\Prefetch\*.*
C:\Users\Katka a Radek\AppData\Roaming\AVAST Software
C:\WINDOWS\SysNative\aswBoot.exe
C:\ProgramData\AVAST Software
C:\WINDOWS\wininit.ini

:Reg
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
""=""%1" %*"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = Reg Error: Unknown registry data type -- File not found

:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]


Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.

Error - 25. 11. 2013 15:16:10 | Computer Name = MSI_GS70 | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Šotnik
nováček
Příspěvky: 22
Registrován: listopad 13
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu - google píše We're sorry...

Příspěvekod Šotnik » 29 lis 2013 20:36

All processes killed
========== OTL ==========
No active process named explorer.exe was found!
No active process named firefox.exe was found!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{3E13E584-1113-4E77-B288-413B2664DF26}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E13E584-1113-4E77-B288-413B2664DF26}\ not found.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{3E13E584-1113-4E77-B288-413B2664DF26}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E13E584-1113-4E77-B288-413B2664DF26}\ not found.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoActiveDesktopChanges deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoActiveDesktop deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\Prefixes\\gopher|:gopher:// /E : value set successfully!
64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
C:\Windows\SysNative\perfh019.dat moved successfully.
C:\Windows\SysNative\perfh01D.dat moved successfully.
C:\Windows\SysNative\perfc019.dat moved successfully.
C:\Windows\SysNative\perfc01D.dat moved successfully.
========== FILES ==========
File\Folder C:\WINDOWS\System32\*.tmp not found.
File\Folder C:\WINDOWS\*.tmp not found.
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
File\Folder C:\WINDOWS\System32\dllcache\*.tmp not found.
File\Folder C:\WINDOWS\system32\SET*.tmp not found.
File\Folder C:\WINDOWS\system32\DUMP*.tmp not found.
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job moved successfully.
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job moved successfully.
File\Folder C:\*.tmp not found.
File\Folder C:\WINDOWS\System32\drivers\*.tmp not found.
File\Folder C:\Documents and Settings\All Users\Data aplikací\*.tmp not found.
File\Folder C:\Windows\SysNative\drivers\*.tmp not found.
File\Folder C:\Windows\SysWow64\drivers\*.tmp not found.
File\Folder C:\Program Files (x86)\*.tmp not found.
File\Folder C:\Windows\SysWow64\*.tmp not found.
File\Folder C:\Windows\SysNative\*.tmp not found.
C:\ProgramData\Spybot - Search & Destroy\Quarantine folder moved successfully.
C:\ProgramData\Spybot - Search & Destroy\Logs folder moved successfully.
C:\ProgramData\Spybot - Search & Destroy\Cleaning folder moved successfully.
C:\ProgramData\Spybot - Search & Destroy folder moved successfully.
C:\Program Files (x86)\Spybot - Search & Destroy 2 folder moved successfully.
File\Folder C:\Users\Katka a Radek\AppData\Local\Temporary Internet Files\*.* not found.
C:\WINDOWS\Prefetch\ACTIVATEDESKTOP.EXE-389C313A.pf moved successfully.
C:\WINDOWS\Prefetch\ADWCLEANER.EXE-8B95AB6B.pf moved successfully.
C:\WINDOWS\Prefetch\AgAppLaunch.db moved successfully.
C:\WINDOWS\Prefetch\AgCx_SC1.db moved successfully.
C:\WINDOWS\Prefetch\AgCx_SC1.db.trx moved successfully.
C:\WINDOWS\Prefetch\AgCx_SC2.db moved successfully.
C:\WINDOWS\Prefetch\AgCx_SC5.db moved successfully.
C:\WINDOWS\Prefetch\AgGlFaultHistory.db moved successfully.
C:\WINDOWS\Prefetch\AgGlFgAppHistory.db moved successfully.
C:\WINDOWS\Prefetch\AgGlGlobalHistory.db moved successfully.
C:\WINDOWS\Prefetch\AgGlUAD_P_S-1-5-21-2583573616-382773400-2243107185-1002.db moved successfully.
C:\WINDOWS\Prefetch\AgGlUAD_S-1-5-21-2583573616-382773400-2243107185-1002.db moved successfully.
C:\WINDOWS\Prefetch\AgRobust.db moved successfully.
C:\WINDOWS\Prefetch\ASOELNCH.EXE-CD7DD6B2.pf moved successfully.
C:\WINDOWS\Prefetch\ATH_COEXAGENT.EXE-B589E685.pf moved successfully.
C:\WINDOWS\Prefetch\AUDIODG.EXE-9848A323.pf moved successfully.
C:\WINDOWS\Prefetch\BFNSERVICE.EXE-26609598.pf moved successfully.
C:\WINDOWS\Prefetch\BTVSTACK.EXE-0FA626F5.pf moved successfully.
C:\WINDOWS\Prefetch\BYTECODEGENERATOR.EXE-353D57C0.pf moved successfully.
C:\WINDOWS\Prefetch\CCLEANER64.EXE-1137D9AC.pf moved successfully.
C:\WINDOWS\Prefetch\CCSETUP408.EXE-F1098826.pf moved successfully.
C:\WINDOWS\Prefetch\CCSVCHST.EXE-DFB7FC8F.pf moved successfully.
C:\WINDOWS\Prefetch\CHARGESERVICE.EXE-D39BEF9B.pf moved successfully.
C:\WINDOWS\Prefetch\CHROME.EXE-CCF9F3F4.pf moved successfully.
C:\WINDOWS\Prefetch\CLTLMH.EXE-810A302E.pf moved successfully.
C:\WINDOWS\Prefetch\CLTLMH.EXE-8C9C4C2D.pf moved successfully.
C:\WINDOWS\Prefetch\CLTRT.EXE-D4D08CDE.pf moved successfully.
C:\WINDOWS\Prefetch\CMD.EXE-2EB3E6E2.pf moved successfully.
C:\WINDOWS\Prefetch\COINST.EXE-2475A041.pf moved successfully.
C:\WINDOWS\Prefetch\COMBOFIX.EXE-4CDC67F0.pf moved successfully.
C:\WINDOWS\Prefetch\COMUPDATUS.EXE-403FA02A.pf moved successfully.
C:\WINDOWS\Prefetch\CONHOST.EXE-F98A1078.pf moved successfully.
C:\WINDOWS\Prefetch\CONSENT.EXE-2D674CE4.pf moved successfully.
C:\WINDOWS\Prefetch\CONTROL.EXE-5BCB0217.pf moved successfully.
C:\WINDOWS\Prefetch\CPYFILE.EXE-7D5DD9CC.pf moved successfully.
C:\WINDOWS\Prefetch\CSRSS.EXE-A7A2B218.pf moved successfully.
C:\WINDOWS\Prefetch\DAEMONU.EXE-6D6DBFB6.pf moved successfully.
C:\WINDOWS\Prefetch\DAO.17359119.EXE-5ABAF28A.pf moved successfully.
C:\WINDOWS\Prefetch\DEFRAG.EXE-22AD8A37.pf moved successfully.
C:\WINDOWS\Prefetch\DELEGATE_EXECUTE.EXE-8869DDC1.pf moved successfully.
C:\WINDOWS\Prefetch\DLLHOST.EXE-5B6442A9.pf moved successfully.
C:\WINDOWS\Prefetch\DLLHOST.EXE-6A829A47.pf moved successfully.
C:\WINDOWS\Prefetch\DLLHOST.EXE-6E31253B.pf moved successfully.
C:\WINDOWS\Prefetch\DLLHOST.EXE-829F390C.pf moved successfully.
C:\WINDOWS\Prefetch\DLLHOST.EXE-9C960405.pf moved successfully.
C:\WINDOWS\Prefetch\DLLHOST.EXE-B51A0D95.pf moved successfully.
C:\WINDOWS\Prefetch\DLLHOST.EXE-E5221F10.pf moved successfully.
C:\WINDOWS\Prefetch\DLLHOST.EXE-F3B31CFE.pf moved successfully.
C:\WINDOWS\Prefetch\DWM.EXE-F29FE9E2.pf moved successfully.
C:\WINDOWS\Prefetch\dynreservedpri.db moved successfully.
C:\WINDOWS\Prefetch\ELAMINST.EXE-F0595A2A.pf moved successfully.
C:\WINDOWS\Prefetch\ERUNT.EXE-7B336883.pf moved successfully.
C:\WINDOWS\Prefetch\ETDANICONF.EXE-9A216E63.pf moved successfully.
C:\WINDOWS\Prefetch\ETDCTRL.EXE-91BAE8DE.pf moved successfully.
C:\WINDOWS\Prefetch\ETDCTRLHELPER.EXE-6A174316.pf moved successfully.
C:\WINDOWS\Prefetch\EXPLORER.EXE-03C49D11.pf moved successfully.
C:\WINDOWS\Prefetch\FAM.EXE-0CBE2BBF.pf moved successfully.
C:\WINDOWS\Prefetch\GOOGLEUPDATE.EXE-62E5E10F.pf moved successfully.
C:\WINDOWS\Prefetch\HD-AGENT.EXE-A514A418.pf moved successfully.
C:\WINDOWS\Prefetch\HD-LOGROTATOR.EXE-AAB4E25E.pf moved successfully.
C:\WINDOWS\Prefetch\HIJACKTHIS.EXE-E99E28A1.pf moved successfully.
C:\WINDOWS\Prefetch\HKCMD.EXE-15DC91D5.pf moved successfully.
C:\WINDOWS\Prefetch\HOTFIX.EXE-032E6F0A.pf moved successfully.
C:\WINDOWS\Prefetch\HOTFIX.EXE-1550253B.pf moved successfully.
C:\WINDOWS\Prefetch\HOTFIX.EXE-4F419B37.pf moved successfully.
C:\WINDOWS\Prefetch\IASTORDATAMGRSVC.EXE-9F640626.pf moved successfully.
C:\WINDOWS\Prefetch\IASTORICON.EXE-DE4237DF.pf moved successfully.
C:\WINDOWS\Prefetch\IASTORICONLAUNCH.EXE-B3D05A86.pf moved successfully.
C:\WINDOWS\Prefetch\IEXPLORE.EXE-7A9337F2.pf moved successfully.
C:\WINDOWS\Prefetch\IEXPLORE.EXE-F4FB5D2F.pf moved successfully.
C:\WINDOWS\Prefetch\IGFXPERS.EXE-82C794F2.pf moved successfully.
C:\WINDOWS\Prefetch\IGFXSRVC.EXE-F41E6E8E.pf moved successfully.
C:\WINDOWS\Prefetch\IGFXTRAY.EXE-21BDFE68.pf moved successfully.
C:\WINDOWS\Prefetch\INSTCA.EXE-9B1EE2DB.pf moved successfully.
C:\WINDOWS\Prefetch\INTELMEFWSERVICE.EXE-265333D9.pf moved successfully.
C:\WINDOWS\Prefetch\INTIUPDATER.EXE-51571A65.pf moved successfully.
C:\WINDOWS\Prefetch\IRACINGRUN.EXE-39DC0192.pf moved successfully.
C:\WINDOWS\Prefetch\IRACINGSIM.EXE-E6288766.pf moved successfully.
C:\WINDOWS\Prefetch\JAVAW.EXE-9BCFFCC7.pf moved successfully.
C:\WINDOWS\Prefetch\JAVAWS.EXE-596738CE.pf moved successfully.
C:\WINDOWS\Prefetch\JHI_SERVICE.EXE-9CD021CB.pf moved successfully.
C:\WINDOWS\Prefetch\JUSCHED.EXE-4B303C70.pf moved successfully.
C:\WINDOWS\Prefetch\KILLERNETMANAGER.EXE-1F457326.pf moved successfully.
C:\WINDOWS\Prefetch\KLM.EXE-C125625C.pf moved successfully.
C:\WINDOWS\Prefetch\LAUNCH RFACTOR.EXE-7EAAB135.pf moved successfully.
C:\WINDOWS\Prefetch\layout.ini moved successfully.
C:\WINDOWS\Prefetch\LIVECOMM.EXE-90010E4F.pf moved successfully.
C:\WINDOWS\Prefetch\LMS.EXE-409EDB07.pf moved successfully.
C:\WINDOWS\Prefetch\LOGONUI.EXE-E35F76FB.pf moved successfully.
C:\WINDOWS\Prefetch\LWEMON.EXE-3D127587.pf moved successfully.
C:\WINDOWS\Prefetch\MBAM-SETUP-1.75.0.1300.TMP-389BFCD5.pf moved successfully.
C:\WINDOWS\Prefetch\MBAM-SETUP-1.75.0.1300.TMP-EE115192.pf moved successfully.
C:\WINDOWS\Prefetch\MBAM.EXE-A49343C3.pf moved successfully.
C:\WINDOWS\Prefetch\MBAMGUI.EXE-233B037C.pf moved successfully.
C:\WINDOWS\Prefetch\MBAMSERVICE.EXE-032FFEC0.pf moved successfully.
C:\WINDOWS\Prefetch\MMC.EXE-C252543C.pf moved successfully.
C:\WINDOWS\Prefetch\MPCMDRUN.EXE-6520183E.pf moved successfully.
C:\WINDOWS\Prefetch\MSCORSVW.EXE-55FE3087.pf moved successfully.
C:\WINDOWS\Prefetch\MSCORSVW.EXE-D593A5D9.pf moved successfully.
C:\WINDOWS\Prefetch\MSISERVICE.EXE-F056E12C.pf moved successfully.
C:\WINDOWS\Prefetch\NAT.EXE-15DEB505.pf moved successfully.
C:\WINDOWS\Prefetch\NAT.EXE-15DEB506.pf moved successfully.
C:\WINDOWS\Prefetch\NAVW32.EXE-F2A86596.pf moved successfully.
C:\WINDOWS\Prefetch\NETPLWIZ.EXE-AFF278BB.pf moved successfully.
C:\WINDOWS\Prefetch\NFS13.EXE-831BB727.pf moved successfully.
C:\WINDOWS\Prefetch\NGEN.EXE-383F81D5.pf moved successfully.
C:\WINDOWS\Prefetch\NGEN.EXE-A8DBB043.pf moved successfully.
C:\WINDOWS\Prefetch\NGENTASK.EXE-4DB88ADA.pf moved successfully.
C:\WINDOWS\Prefetch\NGENTASK.EXE-CD4E002C.pf moved successfully.
C:\WINDOWS\Prefetch\NIS-UPGRADEESDND-21.1.0-CZ.EX-0DED927B.pf moved successfully.
C:\WINDOWS\Prefetch\NIS.EXE-285A4CBB.pf moved successfully.
C:\WINDOWS\Prefetch\NIS.EXE-285A4CBC.pf moved successfully.
C:\WINDOWS\Prefetch\NOTEPAD.EXE-1A4CC1C3.pf moved successfully.
C:\WINDOWS\Prefetch\NOTEPAD.EXE-B28CC291.pf moved successfully.
C:\WINDOWS\Prefetch\NOTEPAD.EXE-F0516D55.pf moved successfully.
C:\WINDOWS\Prefetch\NPE.EXE-E4896201.pf moved successfully.
C:\WINDOWS\Prefetch\NVSPCAPS64.EXE-1136D657.pf moved successfully.
C:\WINDOWS\Prefetch\NVSTREAMSVC.EXE-1D91AC66.pf moved successfully.
C:\WINDOWS\Prefetch\NVTMRU.EXE-91CBFE7D.pf moved successfully.
C:\WINDOWS\Prefetch\NVTRAY.EXE-981FA625.pf moved successfully.
C:\WINDOWS\Prefetch\NVVSVC.EXE-D5489D80.pf moved successfully.
C:\WINDOWS\Prefetch\NVXDSYNC.EXE-7855AED2.pf moved successfully.
C:\WINDOWS\Prefetch\Op-EXPLORER.EXE-03C49D11-000000F5.pf moved successfully.
C:\WINDOWS\Prefetch\OPENWITH.EXE-BA0DC300.pf moved successfully.
C:\WINDOWS\Prefetch\OPWARESE4.EXE-C8C3F338.pf moved successfully.
C:\WINDOWS\Prefetch\OTC.EXE-4BF74FE3.pf moved successfully.
C:\WINDOWS\Prefetch\OTL.EXE-F9FADE90.pf moved successfully.
C:\WINDOWS\Prefetch\PfPre_13d4dbe7.db moved successfully.
C:\WINDOWS\Prefetch\PfSvPerfStats.bin moved successfully.
C:\WINDOWS\Prefetch\PHOTOSAPP.EXE-8FE95EC8.pf moved successfully.
C:\WINDOWS\Prefetch\PING.EXE-CF0A440C.pf moved successfully.
C:\WINDOWS\Prefetch\POWERCFG.EXE-14BEB11F.pf moved successfully.
C:\WINDOWS\Prefetch\PPSTUB.EXE-D6E0F094.pf moved successfully.
C:\WINDOWS\Prefetch\RADIO MANAGER.EXE-540AEED4.pf moved successfully.
C:\WINDOWS\Prefetch\RAVCPL64.EXE-C0BB540D.pf moved successfully.
C:\WINDOWS\Prefetch\RESTOREOPTIN.EXE-60286DB8.pf moved successfully.
C:\WINDOWS\Prefetch\RFACTOR2.EXE-75872B41.pf moved successfully.
C:\WINDOWS\Prefetch\ROGUEKILLERX64.EXE-9CF2DB58.pf moved successfully.
C:\WINDOWS\Prefetch\RULEUP.EXE-D7D3F5A2.pf moved successfully.
C:\WINDOWS\Prefetch\RUNDLL32.EXE-0F905C08.pf moved successfully.
C:\WINDOWS\Prefetch\RUNDLL32.EXE-1C941018.pf moved successfully.
C:\WINDOWS\Prefetch\RUNDLL32.EXE-210D3DBE.pf moved successfully.
C:\WINDOWS\Prefetch\RUNDLL32.EXE-24EFAC77.pf moved successfully.
C:\WINDOWS\Prefetch\RUNDLL32.EXE-26FCD614.pf moved successfully.
C:\WINDOWS\Prefetch\RUNDLL32.EXE-371B3067.pf moved successfully.
C:\WINDOWS\Prefetch\RUNDLL32.EXE-5A8C4741.pf moved successfully.
C:\WINDOWS\Prefetch\RUNDLL32.EXE-5C68AAB7.pf moved successfully.
C:\WINDOWS\Prefetch\RUNDLL32.EXE-65953559.pf moved successfully.
C:\WINDOWS\Prefetch\RUNDLL32.EXE-78F58DB9.pf moved successfully.
C:\WINDOWS\Prefetch\RUNDLL32.EXE-90A75AA6.pf moved successfully.
C:\WINDOWS\Prefetch\RUNDLL32.EXE-A3EE2396.pf moved successfully.
C:\WINDOWS\Prefetch\RUNDLL32.EXE-A4ECE497.pf moved successfully.
C:\WINDOWS\Prefetch\RUNDLL32.EXE-A9D9FA97.pf moved successfully.
C:\WINDOWS\Prefetch\RUNDLL32.EXE-BA47C7B9.pf moved successfully.
C:\WINDOWS\Prefetch\RUNDLL32.EXE-BE5D95DC.pf moved successfully.
C:\WINDOWS\Prefetch\RUNDLL32.EXE-CEFAA268.pf moved successfully.
C:\WINDOWS\Prefetch\RUNDLL32.EXE-CF3C869E.pf moved successfully.
C:\WINDOWS\Prefetch\RUNDLL32.EXE-D30642DC.pf moved successfully.
C:\WINDOWS\Prefetch\RUNONCE.EXE-E874B0D0.pf moved successfully.
C:\WINDOWS\Prefetch\RUNTIMEBROKER.EXE-17E2786F.pf moved successfully.
C:\WINDOWS\Prefetch\SBCINEMA.EXE-A7520DEA.pf moved successfully.
C:\WINDOWS\Prefetch\SDIMMUNIZE.EXE-1AE7723A.pf moved successfully.
C:\WINDOWS\Prefetch\SDQUARANTINE.EXE-EAB43284.pf moved successfully.
C:\WINDOWS\Prefetch\SDSCAN.EXE-0F32CACD.pf moved successfully.
C:\WINDOWS\Prefetch\SDWELCOME.EXE-FA3DE6B8.pf moved successfully.
C:\WINDOWS\Prefetch\SEARCHFILTERHOST.EXE-10E4267C.pf moved successfully.
C:\WINDOWS\Prefetch\SEARCHPROTOCOLHOST.EXE-C6CFE2A8.pf moved successfully.
C:\WINDOWS\Prefetch\SETTINGSYNCHOST.EXE-DD400067.pf moved successfully.
C:\WINDOWS\Prefetch\SEVNTX64.EXE-0D7494DD.pf moved successfully.
C:\WINDOWS\Prefetch\SKYDRIVE.EXE-0DBB4667.pf moved successfully.
C:\WINDOWS\Prefetch\SKYDRIVESETUP.EXE-ACD69350.pf moved successfully.
C:\WINDOWS\Prefetch\SMSS.EXE-81AD91F0.pf moved successfully.
C:\WINDOWS\Prefetch\SNIPPINGTOOL.EXE-74818B88.pf moved successfully.
C:\WINDOWS\Prefetch\SPPSVC.EXE-7B160CA5.pf moved successfully.
C:\WINDOWS\Prefetch\SSBKGDUPDATE.EXE-A5A243C9.pf moved successfully.
C:\WINDOWS\Prefetch\SUPER-CHARGER.EXE-1B145DE4.pf moved successfully.
C:\WINDOWS\Prefetch\SVCHOST.EXE-086E9BC2.pf moved successfully.
C:\WINDOWS\Prefetch\SVCHOST.EXE-3830BC72.pf moved successfully.
C:\WINDOWS\Prefetch\SVCHOST.EXE-38BE90DD.pf moved successfully.
C:\WINDOWS\Prefetch\SVCHOST.EXE-576FFE64.pf moved successfully.
C:\WINDOWS\Prefetch\SVCHOST.EXE-93798CD2.pf moved successfully.
C:\WINDOWS\Prefetch\SVCHOST.EXE-FEA1FDBE.pf moved successfully.
C:\WINDOWS\Prefetch\SYMCDEFS.EXE-9ADEF06D.pf moved successfully.
C:\WINDOWS\Prefetch\SYMERR.EXE-ADD6F468.pf moved successfully.
C:\WINDOWS\Prefetch\SYMERR.EXE-E8E6C194.pf moved successfully.
C:\WINDOWS\Prefetch\SYMERR.EXE-F478DD93.pf moved successfully.
C:\WINDOWS\Prefetch\SYMIMI64.EXE-698D856D.pf moved successfully.
C:\WINDOWS\Prefetch\SYSTEMPROPERTIESADVANCED.EXE-E62A92DA.pf moved successfully.
C:\WINDOWS\Prefetch\SYSTEMSETTINGS.EXE-D8CC3B5E.pf moved successfully.
C:\WINDOWS\Prefetch\TASKENG.EXE-23205583.pf moved successfully.
C:\WINDOWS\Prefetch\TASKHOST.EXE-0E881CD2.pf moved successfully.
C:\WINDOWS\Prefetch\TASKHOST.EXE-29D61DAB.pf moved successfully.
C:\WINDOWS\Prefetch\TASKHOST.EXE-3C5D03F7.pf moved successfully.
C:\WINDOWS\Prefetch\TASKHOST.EXE-5CFABC16.pf moved successfully.
C:\WINDOWS\Prefetch\TASKHOST.EXE-86081325.pf moved successfully.
C:\WINDOWS\Prefetch\TASKHOST.EXE-985C34E6.pf moved successfully.
C:\WINDOWS\Prefetch\TASKHOST.EXE-9F989E84.pf moved successfully.
C:\WINDOWS\Prefetch\TASKHOST.EXE-B030DB66.pf moved successfully.
C:\WINDOWS\Prefetch\TASKHOST.EXE-B7DB5223.pf moved successfully.
C:\WINDOWS\Prefetch\TASKHOST.EXE-D687BE54.pf moved successfully.
C:\WINDOWS\Prefetch\TASKHOST.EXE-F2C7AEBC.pf moved successfully.
C:\WINDOWS\Prefetch\TASKHOSTEX.EXE-7356AAC0.pf moved successfully.
C:\WINDOWS\Prefetch\TASKMGR.EXE-39AABA37.pf moved successfully.
C:\WINDOWS\Prefetch\TDSSKILLER.EXE-4E15608A.pf moved successfully.
C:\WINDOWS\Prefetch\TFC.EXE-55FC6160.pf moved successfully.
C:\WINDOWS\Prefetch\THUMBNAILEXTRACTIONHOST.EXE-C3FB8861.pf moved successfully.
C:\WINDOWS\Prefetch\TIWORKER.EXE-3F06142E.pf moved successfully.
C:\WINDOWS\Prefetch\TRUSTEDINSTALLER.EXE-B018CCBF.pf moved successfully.
C:\WINDOWS\Prefetch\UISTUB.EXE-7B7C7E3F.pf moved successfully.
C:\WINDOWS\Prefetch\UNINS000.EXE-7905E4F2.pf moved successfully.
C:\WINDOWS\Prefetch\UPDATUS.17352973_RUNASUSER.EX-30EF3295.pf moved successfully.
C:\WINDOWS\Prefetch\UPDATUS.17366611_RUNASUSER.EX-34ADED52.pf moved successfully.
C:\WINDOWS\Prefetch\UPDREG.EXE-A07E2F17.pf moved successfully.
C:\WINDOWS\Prefetch\USERINIT.EXE-7FD17ED1.pf moved successfully.
C:\WINDOWS\Prefetch\VSSVC.EXE-206E55B3.pf moved successfully.
C:\WINDOWS\Prefetch\WERFAULT.EXE-44194444.pf moved successfully.
C:\WINDOWS\Prefetch\WERFAULT.EXE-94CE7668.pf moved successfully.
C:\WINDOWS\Prefetch\WERMGR.EXE-D948C216.pf moved successfully.
C:\WINDOWS\Prefetch\WFPUNINS.EXE-9329A0D3.pf moved successfully.
C:\WINDOWS\Prefetch\WIN8DVDPLAYER.EXE-C89E25CD.pf moved successfully.
C:\WINDOWS\Prefetch\WINLOGON.EXE-0D9AB72B.pf moved successfully.
C:\WINDOWS\Prefetch\WINRAR.EXE-E031DE56.pf moved successfully.
C:\WINDOWS\Prefetch\WLMERGER.EXE-33E5B8C2.pf moved successfully.
C:\WINDOWS\Prefetch\WMIADAP.EXE-7D63BB4C.pf moved successfully.
C:\WINDOWS\Prefetch\WMIAPSRV.EXE-CF150EEA.pf moved successfully.
C:\WINDOWS\Prefetch\WMIPRVSE.EXE-BB49B536.pf moved successfully.
C:\WINDOWS\Prefetch\WMPLAYER.EXE-B0AD61F0.pf moved successfully.
C:\WINDOWS\Prefetch\WMPLAYER.EXE-B0AD61F1.pf moved successfully.
C:\WINDOWS\Prefetch\WMPLAYER.EXE-B0AD61F3.pf moved successfully.
C:\WINDOWS\Prefetch\WMPNETWK.EXE-13D172B9.pf moved successfully.
C:\WINDOWS\Prefetch\WSCSTUB.EXE-22AA8EB0.pf moved successfully.
C:\WINDOWS\Prefetch\WSCSTUB.EXE-4252D809.pf moved successfully.
C:\WINDOWS\Prefetch\WSHOST.EXE-05F0A3AF.pf moved successfully.
C:\WINDOWS\Prefetch\WUDFHOST.EXE-0D78D366.pf moved successfully.
C:\WINDOWS\Prefetch\_IU14D2N.TMP-318A7A48.pf moved successfully.
C:\Users\Katka a Radek\AppData\Roaming\AVAST Software\Avast\Cache\Local Storage folder moved successfully.
C:\Users\Katka a Radek\AppData\Roaming\AVAST Software\Avast\Cache\AppCache folder moved successfully.
C:\Users\Katka a Radek\AppData\Roaming\AVAST Software\Avast\Cache folder moved successfully.
C:\Users\Katka a Radek\AppData\Roaming\AVAST Software\Avast folder moved successfully.
C:\Users\Katka a Radek\AppData\Roaming\AVAST Software folder moved successfully.
C:\WINDOWS\SysNative\aswBoot.exe moved successfully.
C:\ProgramData\AVAST Software\Persistent Data\Avast\Logs folder moved successfully.
C:\ProgramData\AVAST Software\Persistent Data\Avast folder moved successfully.
C:\ProgramData\AVAST Software\Persistent Data folder moved successfully.
C:\ProgramData\AVAST Software folder moved successfully.
C:\WINDOWS\wininit.ini moved successfully.
========== REGISTRY ==========
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command\\""|""%1" %*" /E : value set successfully!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade\\"UpgradeTime" | Reg Error: Unknown registry data type -- File not found /E :invalid edit format. Invalid data type.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default.migrated

User: Katka a Radek
->Temp folder emptied: 244953 bytes
->Temporary Internet Files folder emptied: 634487 bytes
->Java cache emptied: 0 bytes
->Google Chrome cache emptied: 71199902 bytes
->Flash cache emptied: 0 bytes

User: Public

User: UpdatusUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: wangzhisong

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 9556 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 69,00 mb


OTL by OldTimer - Version 3.2.69.0 log created on 11292013_203424

Files\Folders moved on Reboot...
C:\Users\Katka a Radek\AppData\Local\Temp\winstore.log moved successfully.
C:\Users\Katka a Radek\AppData\Local\Microsoft\Windows\INetCache\counters.dat moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - google píše We're sorry...

Příspěvekod jaro3 » 30 lis 2013 11:12

Co problémy?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Šotnik
nováček
Příspěvky: 22
Registrován: listopad 13
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu - google píše We're sorry...

Příspěvekod Šotnik » 30 lis 2013 19:26

Dnes se mi objevila modrá obrazovka "memory management", což s tím asi nesouvisí. Jinak žádná změna, když vyhledávám přes google, tak mi to občas jde, ale občas taky nee a musím v lepším připadě opsat písmenka z obrázku a v horším případě se objeví we are sorry. Nevím, jestli se ta chyba týká přímo mě a nebo jí může způsobovat jiný uživatel, který je napojený na stejný bod poskytovatele mého internetu.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - google píše We're sorry...

Příspěvekod jaro3 » 01 pro 2013 11:18

Stáhni si a nainstaluj WhoCrashed
otevři ho a klikni na Analyze.
Program vytvoří zprávu , zkopíruj celou a vlož prosím sem.

Stáhni si Memtest:

Do políčka vlož největší velikost Tvé jednotlivé paměti RAM (256,512 nebo 1024,2048) dej Start , nech nejméně 2h běžet , pokud bude po 2h stále 0 errors , jsou v pořádku.

Stáhni si CrystalDiskInfo
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Šotnik
nováček
Příspěvky: 22
Registrován: listopad 13
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu - google píše We're sorry...

Příspěvekod Šotnik » 01 pro 2013 12:29

System Information (local)
--------------------------------------------------------------------------------

computer name: MSI_GS70
windows version: Windows 8 , 6.2, build: 9200
windows dir: C:\WINDOWS
Hardware: GS70 2OD, Micro-Star International Co., Ltd., MS-1771
CPU: GenuineIntel Intel(R) Core(TM) i7-4700HQ CPU @ 2.40GHz Intel586, level: 6
8 logical processors, active mask: 255
RAM: 8505815040 total
VM: 2147352576, free: 1917079552




--------------------------------------------------------------------------------
Crash Dump Analysis
--------------------------------------------------------------------------------

Crash dump directory: C:\WINDOWS\Minidump

Crash dumps are enabled on your computer.

On Sat 30. 11. 2013 20:41:00 GMT your computer crashed
crash dump file: C:\WINDOWS\Minidump\113013-8578-01.dmp
This was probably caused by the following module: ntoskrnl.exe (nt+0x14DCA0)
Bugcheck code: 0x9F (0x3, 0xFFFFE00008D41060, 0xFFFFD000206AA840, 0xFFFFE000085EFBD0)
Error: DRIVER_POWER_STATE_FAILURE
file path: C:\WINDOWS\system32\ntoskrnl.exe
product: Microsoft® Windows® Operating System
company: Microsoft Corporation
description: NT Kernel & System
Bug check description: This bug check indicates that the driver is in an inconsistent or invalid power state.
This appears to be a typical software driver bug and is not likely to be caused by a hardware problem.
The crash took place in the Windows kernel. Possibly this problem is caused by another driver that cannot be identified at this time.



On Sat 30. 11. 2013 20:41:00 GMT your computer crashed
crash dump file: C:\WINDOWS\memory.dmp
This was probably caused by the following module: ntkrnlmp.exe (nt!KeBugCheckEx+0x0)
Bugcheck code: 0x9F (0x3, 0xFFFFE00008D41060, 0xFFFFD000206AA840, 0xFFFFE000085EFBD0)
Error: DRIVER_POWER_STATE_FAILURE
Bug check description: This bug check indicates that the driver is in an inconsistent or invalid power state.
This appears to be a typical software driver bug and is not likely to be caused by a hardware problem.
The crash took place in the Windows kernel. Possibly this problem is caused by another driver that cannot be identified at this time.




--------------------------------------------------------------------------------
Conclusion
--------------------------------------------------------------------------------

2 crash dumps have been found and analyzed. No offending third party drivers have been found. Consider using WhoCrashed Professional which offers more detailed analysis using symbol resolution. Also configuring your system to produce a full memory dump may help you.


Read the topic general suggestions for troubleshooting system crashes for more information.

Note that it's not always possible to state with certainty whether a reported driver is actually responsible for crashing your system or that the root cause is in another module. Nonetheless it's suggested you look for updates for the products that these drivers belong to and regularly visit Windows update or enable automatic updates for Windows. In case a piece of malfunctioning hardware is causing trouble, a search with Google on the bug check errors together with the model name and brand of your computer may help you investigate this further.

Šotnik
nováček
Příspěvky: 22
Registrován: listopad 13
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu - google píše We're sorry...

Příspěvekod Šotnik » 01 pro 2013 12:46

Paměť mám v jednom slotu 8GB, je možné to zadat do programu?
Jak funguje crystaldiskinfo? Jeden z mých disků je SSD, aby mi nesnížil životnost tohoto disku.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - google píše We're sorry...

Příspěvekod jaro3 » 01 pro 2013 20:26

crystaldiskinfo je úplně neškodný program.

RAM----:
Memtest 86
http://www.memtest86.com/
klikni vlevo na Free Download , vyber:
ISO image for creating bootable CD (Windows - zip) , stáhni , rozbal , otevři , vypal třeba v programu:
http://www.slunecnice.cz/sw/active-iso-burner/
Vlož do mechaniky a nabootuj z něj.
Test udělej alespoň 8h ( přes noc).

Nebo:
GoldMemory 6.92
http://www.slunecnice.cz/sw/goldmemory/

GoldMemory 6.92

GoldMemory je diagnostický program pro důkladné testování pamětového subsystému na
PC-kompatibilních počítačích (architektura x86).
nezávislost na operačním systému ("GMLoader")
http://www.goldmemory.cz/manual_cz.php

http://www.goldmemory.cz/screen_cz.php
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Šotnik
nováček
Příspěvky: 22
Registrován: listopad 13
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu - google píše We're sorry...

Příspěvekod Šotnik » 02 pro 2013 19:35

----------------------------------------------------------------------------
CrystalDiskInfo 6.0.0 (C) 2008-2013 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 8.1 [6.3 Build 9600] (x64)
Date : 2013/12/02 19:29:39

-- Controller Map ----------------------------------------------------------
+ Intel(R) 8 Series Chipset Family SATA AHCI Controller [ATA]
- SanDisk SD6SF1M128G
- HGST HTS721010A9E630
- Řadič prostorů úložišť [SCSI]

-- Disk List ---------------------------------------------------------------
(1) SanDisk SD6SF1M128G : 128,0 GB [0/0/0, pd1] - sd
(2) HGST HTS721010A9E630 : 1000,2 GB [1/0/0, pd1]

----------------------------------------------------------------------------
(1) SanDisk SD6SF1M128G
----------------------------------------------------------------------------
Model : SanDisk SD6SF1M128G
Firmware : X230500
Serial Number : 131900400218
Disk Size : 128,0 GB (8,4/128,0/128,0/128,0)
Buffer Size : Neznámy údaj
Queue Depth : 32
# of Sectors : 250069680
Rotation Rate : ---- (SSD)
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 6
Transfer Mode : SATA/600 | SATA/600
Power On Hours : 520 hod.
Power On Count : 597 krát
Host Reads : 1347 GB
Host Writes : 892 GB
Temparature : 25 C (77 F)
Health Status : Dobrý (100 %)
Features : S.M.A.R.T., APM, 48bit LBA, NCQ, TRIM, DevSleep
APM Level : 0080h [ON]
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
05 100 100 __0 000000000000 Retired Block Count
09 253 100 __0 000000000208 Power-On Hours
0C 100 100 __0 000000000255 Power Cycle Count
A6 100 100 __0 000000000001 Specifický pro výrobce
A7 100 100 __0 00000000000B Specifický pro výrobce
A8 100 100 __0 000000000042 Specifický pro výrobce
A9 100 100 __0 000000000063 Specifický pro výrobce
AB 100 100 __0 000000000000 Program Fail Count
AC 100 100 __0 000000000000 Erase Fail Count
AD 100 100 __0 00000000000D Specifický pro výrobce
AE 100 100 __0 00000000000F Unexpected Power Loss Count
BB 100 100 __0 000000000000 Reported Uncorrectable Errors
C2 _75 _53 __0 003500100019 Specifický pro výrobce
D4 100 100 __0 000000000000 Specifický pro výrobce
E6 100 100 __0 00000000002B Specifický pro výrobce
E8 100 100 __4 000000000064 Remaining Life
E9 100 100 __0 000000000753 Specifický pro výrobce
F1 253 253 __0 00000000037C Total Host Writes
F2 253 253 __0 000000000543 Total Host Reads
F3 100 100 __0 000000000000 Specifický pro výrobce

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0040 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 3133 3139 3030 3430 3032 3138 2020 2020 2020 2020
020: 0000 0000 0000 5832 3330 3530 3020 5361 6E44 6973
030: 6B20 5344 3653 4631 4D31 3238 4720 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8001 4000 2F00
050: 4000 0200 0000 0007 3FFF 0010 003F FC10 00FB 0101
060: C2B0 0EE7 0000 0007 0003 0078 0078 0078 0078 4020
070: 0000 0000 0000 0000 0000 001F 870E 0086 014C 004C
080: 01F0 0028 346B 7D09 4123 3469 BC09 4123 207F 0001
090: 0006 0080 FFFE 0000 0000 0000 0000 0000 0000 0000
100: C2B0 0EE7 0000 0000 0000 0010 4000 0000 5001 B449
110: C175 5E5A 0000 0000 0000 0000 0000 0000 0000 401C
120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 000B 0001
170: 0000 0000 0000 0000 0000 0000 2020 2020 2020 2020
180: 2020 2020 2020 2020 2020 2020 2020 2020 2020 2020
190: 2020 2020 2020 2020 2020 2020 2020 2020 2020 2020
200: 2020 2020 2020 2020 2020 2020 0000 0000 0000 4000
210: 0000 0000 0000 0000 0000 0000 0000 0001 0000 0000
220: 0000 0000 103F 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0080 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 0EA5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 04 00 05 32 00 64 64 00 00 00 00 00 00 00 09 32
010: 00 FD 64 08 02 00 00 00 00 00 0C 32 00 64 64 55
020: 02 00 00 00 00 00 A6 32 00 64 64 01 00 00 00 00
030: 00 00 A7 32 00 64 64 0B 00 00 00 00 00 00 A8 32
040: 00 64 64 42 00 00 00 00 00 00 A9 32 00 64 64 63
050: 00 00 00 00 00 00 AB 32 00 64 64 00 00 00 00 00
060: 00 00 AC 32 00 64 64 00 00 00 00 00 00 00 AD 32
070: 00 64 64 0D 00 00 00 00 00 00 AE 32 00 64 64 0F
080: 00 00 00 00 00 00 BB 32 00 64 64 00 00 00 00 00
090: 00 00 C2 22 00 4B 35 19 00 10 00 35 00 00 D4 32
0A0: 00 64 64 00 00 00 00 00 00 00 E6 32 00 64 64 2B
0B0: 00 00 00 00 00 00 E8 33 00 64 64 64 00 00 00 00
0C0: 00 00 E9 32 00 64 64 53 07 00 00 00 00 00 F1 30
0D0: 00 FD FD 7C 03 00 00 00 00 00 F2 30 00 FD FD 43
0E0: 05 00 00 00 00 00 F3 32 00 64 64 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 11
170: 03 00 01 00 02 0A 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 2D

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 04 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
010: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
020: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
030: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
040: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
050: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
060: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0B0: 00 00 00 00 00 00 E8 04 00 00 00 00 00 00 00 00
0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 10

----------------------------------------------------------------------------
(2) HGST HTS721010A9E630
----------------------------------------------------------------------------
Model : HGST HTS721010A9E630
Firmware : JB0OA3B0
Serial Number : JG40006EG5EV8C
Disk Size : 1000,2 GB (8,4/137,4/1000,2/1000,2)
Buffer Size : 32767 KB
Queue Depth : 32
# of Sectors : 1953525168
Rotation Rate : 7200 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 6
Transfer Mode : SATA/600 | SATA/600
Power On Hours : 516 hod.
Power On Count : 537 krát
Temparature : 22 C (71 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 4080h [ON]
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _62 000000000000 Počet chyb čtení
02 100 100 _40 000000000000 Průchodnost disku
03 239 239 _33 001700000002 Čas na roztočení ploten
04 100 100 __0 0000000004D0 Počet spuštění/zastavení
05 100 100 __5 000000000000 Počet přemapovaných sektorů
07 100 100 _67 000000000000 Počet chybných hledání
08 100 100 _40 000000000000 Čas potřebný na vyhledání
09 _99 _99 __0 000000000204 Hodin v činnosti
0A 100 100 _60 000000000000 Počet opakovaných pokusů o roztočení ploten
0C 100 100 __0 000000000219 Počet cyklů zapnutí zařízení
BF 100 100 __0 000000000000 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 000000000002 Počet vypnutí disku
C1 _99 _99 __0 000000002AD3 Počet cyklů načítání/vymazání
C2 253 253 __0 0030000E0016 Teplota
C4 100 100 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
DF 100 100 __0 000000000000 Zatížení budiče magnetických hlav způsobené opakovanými úkony

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 045A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2020 4A47 3430 3030 3645 4735 4556 3843
020: 0003 FFFF 0004 4A42 304F 4133 4230 4847 5354 2048
030: 5453 3732 3130 3130 4139 4536 3330 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 4000 2F00
050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 170E 0006 005E 004C
080: 01FC 0028 746B 7D69 6163 7469 BC49 6163 207F 005A
090: 005B 4080 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 6DB0 7470 0000 0000 0000 0000 6003 74DC 5000 CCA6
110: A6C2 79D6 0000 0000 0000 0000 0000 0000 0000 401C
120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 000B
130: 0000 0000 2182 1CF1 FA00 0000 4000 2000 0004 0000
140: 0000 0405 0405 0505 0604 0000 0000 0000 0000 0000
150: 0000 0005 304F 4233 0000 6804 0000 5DBD A110 8000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0003 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 003D 0000 0000 4000
210: 0000 0000 0000 0000 0000 0000 0000 1C20 0000 0000
220: 0000 0000 101F 0021 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 03E0 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 E6A5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 0B 00 64 64 00 00 00 00 00 00 00 02 05
010: 00 64 64 00 00 00 00 00 00 00 03 07 00 EF EF 02
020: 00 00 00 17 00 00 04 12 00 64 64 D0 04 00 00 00
030: 00 00 05 33 00 64 64 00 00 00 00 00 00 00 07 0B
040: 00 64 64 00 00 00 00 00 00 00 08 05 00 64 64 00
050: 00 00 00 00 00 00 09 12 00 63 63 04 02 00 00 00
060: 00 00 0A 13 00 64 64 00 00 00 00 00 00 00 0C 32
070: 00 64 64 19 02 00 00 00 00 00 BF 0A 00 64 64 00
080: 00 00 00 00 00 00 C0 32 00 64 64 02 00 00 00 00
090: 00 00 C1 12 00 63 63 D3 2A 00 00 00 00 00 C2 02
0A0: 00 FD FD 16 00 0E 00 30 00 00 C4 32 00 64 64 00
0B0: 00 00 00 00 00 00 C5 22 00 64 64 00 00 00 00 00
0C0: 00 00 C6 08 00 64 64 00 00 00 00 00 00 00 C7 0A
0D0: 00 C8 C8 00 00 00 00 00 00 00 DF 0A 00 64 64 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 2D 00 01 5B
170: 03 00 01 00 02 B5 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 B0

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 3E 00 00 00 00 00 00 00 00 00 00 02 28
010: 00 00 00 00 00 00 00 00 00 00 03 21 00 00 00 00
020: 00 00 00 00 00 00 04 00 00 00 00 00 00 00 00 00
030: 00 00 05 05 00 00 00 00 00 00 00 00 00 00 07 43
040: 00 00 00 00 00 00 00 00 00 00 08 28 00 00 00 00
050: 00 00 00 00 00 00 09 00 00 00 00 00 00 00 00 00
060: 00 00 0A 3C 00 00 00 00 00 00 00 00 00 00 0C 00
070: 00 00 00 00 00 00 00 00 00 00 BF 00 00 00 00 00
080: 00 00 00 00 00 00 C0 00 00 00 00 00 00 00 00 00
090: 00 00 C1 00 00 00 00 00 00 00 00 00 00 00 C2 00
0A0: 00 00 00 00 00 00 00 00 00 00 C4 00 00 00 00 00
0B0: 00 00 00 00 00 00 C5 00 00 00 00 00 00 00 00 00
0C0: 00 00 C6 00 00 00 00 00 00 00 00 00 00 00 C7 00
0D0: 00 00 00 00 00 00 00 00 00 00 DF 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 89

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - google píše We're sorry...

Příspěvekod jaro3 » 02 pro 2013 19:43

Disky OK.

C:\WINDOWS\Minidump složku zkopíruj , zararuj a někam ji postni.

Kontaktuj uživatele MiliNess , ať se na to podívá.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 96 hostů