Dlouhé spouštění Notebooku Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

martyxxx
Level 1
Level 1
Příspěvky: 58
Registrován: červen 12
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Dlouhé spouštění Notebooku

Příspěvekod martyxxx » 07 pro 2015 17:39

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:05-12-2015
Ran by Martin (administrator) on MARTIN-PC (07-12-2015 17:31:42)
Running from C:\Users\Martin\Desktop
Loaded Profiles: Martin (Available Profiles: Martin)
Platform: Microsoft Windows 7 Home Basic Service Pack 1 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Software602 a.s.) C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.29.1\GoogleCrashHandler.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Adobe Systems, Incorporated) C:\Program Files\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
(Hewlett-Packard Company) C:\Program Files\HP\Common\HPSupportSolutionsFrameworkService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
() C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
(DEVGURU Co., LTD.) C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\tv_w32.exe
(Vimicro) C:\Program Files\USB Camera\VM331STI.EXE
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Hewlett-Packard) C:\Program Files\HP\HP Software Update\hpwuschd2.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
(Google) C:\Program Files\Google\Drive\googledrivesync.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Adobe Systems, Inc.) C:\Program Files\Adobe\Adobe Bridge CS5\Bridge.exe
(ZONER software) C:\Program Files\Zoner\Photo Studio 17\Program32\ZPSTray.exe
(Google) C:\Program Files\Google\Drive\googledrivesync.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Hewlett-Packard Co.) C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTStackServer.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
() C:\Program Files\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Creative Cloud\CCXProcess\CCXProcess.exe
(Joyent, Inc) C:\Program Files\Adobe\Adobe Creative Cloud\CCXProcess\libs\node.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe
() C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\updateui.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [331BigDog] => C:\Program Files\USB Camera\VM331STI.EXE [548864 2013-03-12] (Vimicro)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [11947080 2013-05-13] (Realtek Semiconductor)
HKLM\...\Run: [USB3MON] => C:\Program Files\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-03-27] (Intel Corporation)
HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [6134544 2015-09-25] (AVAST Software)
HKLM\...\Run: [Pocket Navigator Installer 6.0] => C:\Program Files\Navigator11\Setup Utility\clickertray.exe [353280 2011-06-29] ()
HKLM\...\Run: [hpqSRMon] => C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508104 2015-10-30] (Adobe Systems Incorporated)
HKLM\...\Run: [SwitchBoard] => C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM\...\Run: [AdobeCS5ServiceManager] => C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM\...\Run: [HP Software Update] => C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2304688 2015-11-25] (Adobe Systems Incorporated)
HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [22790776 2015-11-04] (Google)
HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\...\Run: [AdobeBridge] => C:\Program Files\Adobe\Adobe Bridge CS5\Bridge.exe [11989960 2010-03-09] (Adobe Systems, Inc.)
HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\...\Run: [Zoner Photo Studio Autoupdate] => C:\Program Files\Zoner\Photo Studio 17\Program32\ZPSTRAY.EXE [437248 2014-09-12] (ZONER software)
HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [6602152 2015-11-16] (Piriform Ltd)
HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Bubbles.scr [878592 2010-11-20] (Microsoft Corporation)
Lsa: [Notification Packages] scecli C:\Program Files\Lenovo\Bluetooth Software\BtwProximityCP.dll
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-11-04] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-11-04] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-11-04] (Google)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x86.dll [2015-11-14] ()
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x86.dll [2015-11-14] ()
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x86.dll [2015-11-14] ()
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2015-09-25] (AVAST Software)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2013-12-30]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2014-06-01]
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.10.20 192.168.0.1
Tcpip\..\Interfaces\{1D19C5CB-0FDF-4030-9163-0A37F2D84DC9}: [DhcpNameServer] 192.168.10.20 192.168.0.1
Tcpip\..\Interfaces\{463EFE5C-8333-4EED-8B90-9F9A32581FFB}: [DhcpNameServer] 192.168.42.129

Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKU\S-1-5-21-3048907222-2003921856-3909994109-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: HP Print Enhancer -> {0347C33E-8762-4905-BF09-768834316C61} -> C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-09-20] (Hewlett-Packard Co.)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_20\bin\ssv.dll [2014-08-28] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-08-07] (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_20\bin\jp2ssv.dll [2014-08-28] (Oracle Corporation)
BHO: HP Smart BHO Class -> {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} -> C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-09-20] (Hewlett-Packard Co.)
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2009-02-26] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\dq9sc8il.default
FF Homepage: about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-13] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1213153.dll [2014-06-24] (Adobe Systems, Inc.)
FF Plugin: @garmin.com/GpsControl -> C:\Program Files\Garmin GPS Plugin\npGarmin.dll [2013-10-09] (GARMIN Corp.)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2015-03-30] (Google)
FF Plugin: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 -> C:\Program Files\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-03-12] (Intel Corporation)
FF Plugin: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-03-12] (Intel Corporation)
FF Plugin: @java.com/DTPlugin,version=11.20.2 -> C:\Program Files\Java\jre1.8.0_20\bin\dtplugin\npDeployJava1.dll [2014-08-28] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.20.2 -> C:\Program Files\Java\jre1.8.0_20\bin\plugin2\npjp2.dll [2014-08-28] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin: @software602.cz/602XML Filler -> C:\Program Files\Software602\602XML\Filler\npfiller.dll [2012-08-06] (Software602 a.s.)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-05] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-05] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.1.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-09-27] (Adobe Systems Inc.)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2015-11-25] (Adobe Systems)
FF Plugin HKU\S-1-5-21-3048907222-2003921856-3909994109-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Martin\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [No File]
FF HKLM\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2014-06-01] [not signed]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-09-25] [not signed]
FF HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3

Chrome:
=======
CHR HomePage: Default -> hxxp://www.idnes.cz/
CHR Profile: C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-12-04]
CHR Extension: (Dokumenty Google) - C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-12-04]
CHR Extension: (Disk Google) - C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-04]
CHR Extension: (YouTube) - C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-04]
CHR Extension: (Vyhledávání Google) - C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-04]
CHR Extension: (Tabulky Google) - C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-12-04]
CHR Extension: (Dokumenty Google offline) - C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-12-05]
CHR Extension: (Avast Online Security) - C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-12-04]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-12-04]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-12-04]
CHR Extension: (Gmail) - C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-04]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-03-21]
CHR HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 602XML Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [85344 2011-10-10] (Software602 a.s.)
R2 AdobeUpdateService; C:\Program Files\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [683696 2015-11-16] (Adobe Systems Incorporated)
R2 AGSService; C:\Program Files\Common Files\Adobe\AdobeGCClient\AGSService.exe [2016448 2015-11-25] (Adobe Systems, Incorporated)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600 2015-09-25] (AVAST Software)
S2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [113704 2014-01-31] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3219136 2015-09-25] (Avast Software)
R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [829656 2013-02-19] (Broadcom Corporation.)
S3 cphs; C:\Windows\system32\IntelCpHeciSvc.exe [279024 2013-08-27] (Intel Corporation)
R3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 hpqddsvc; C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 HPSupportSolutionsFrameworkService; C:\Program Files\Hp\Common\HPSupportSolutionsFrameworkService.exe [89840 2015-03-28] (Hewlett-Packard Company)
R3 ICCS; C:\Program Files\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [169752 2012-04-24] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [583680 2013-02-13] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [637912 2013-02-13] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-03-12] (Intel Corporation)
R2 jhi_service; C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-03-12] (Intel Corporation)
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [44032 2010-08-06] (Hewlett-Packard) [File not signed]
R2 PassThru Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [167424 2012-12-07] () [File not signed]
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53760 2010-08-06] (Hewlett-Packard) [File not signed]
R2 ss_conn_service; C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe [728328 2014-04-11] (DEVGURU Co., LTD.)
S3 SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [5702416 2015-09-11] (TeamViewer GmbH)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 AmUStor; C:\Windows\System32\drivers\AmUStor.SYS [61528 2012-04-20] (Alcor Micro, Corp.)
S3 androidusb; C:\Windows\System32\Drivers\androidusb.sys [26112 2010-04-29] (Google Inc)
R3 Apowersoft_AudioDevice; C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys [26032 2014-04-09] (Wondershare)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24016 2015-09-25] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [76000 2015-09-25] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81728 2015-09-25] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49776 2015-09-25] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [794952 2015-11-06] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [435464 2015-11-06] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [115640 2015-09-25] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [208664 2015-09-25] (AVAST Software)
R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [170552 2012-09-25] (Broadcom Corporation.)
R3 btwampfl; C:\Windows\system32\drivers\btwampfl.sys [508184 2012-12-04] (Broadcom Corporation.)
R0 iusb3hcs; C:\Windows\System32\DRIVERS\iusb3hcs.sys [15640 2012-03-27] (Intel Corporation)
R3 iusb3hub; C:\Windows\System32\DRIVERS\iusb3hub.sys [349976 2012-03-27] (Intel Corporation)
R3 iusb3xhc; C:\Windows\System32\DRIVERS\iusb3xhc.sys [792856 2012-03-27] (Intel Corporation)
R3 MEI; C:\Windows\System32\DRIVERS\HECI.sys [56432 2013-03-12] (Intel Corporation)
R0 ngvss; C:\Windows\system32\Drivers\ngvss.sys [107984 2015-09-25] (AVAST Software)
S3 pneteth; C:\Windows\System32\DRIVERS\pneteth.sys [13440 2011-11-24] (June Fabrics Technology Inc.)
S3 ssudserd; C:\Windows\System32\DRIVERS\ssudserd.sys [184192 2014-04-11] (DEVGURU Co., LTD.(www.devguru.co.kr))
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [220752 2015-09-25] (Avast Software)
R3 vm331avs; C:\Windows\System32\Drivers\vm331avs.sys [998272 2013-03-01] (Vimicro Corporation)
U5 AppMgmt; C:\Windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]
S3 taphss6; system32\DRIVERS\taphss6.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-12-07 17:31 - 2015-12-07 17:32 - 00024246 _____ C:\Users\Martin\Desktop\FRST.txt
2015-12-07 17:31 - 2015-12-07 17:31 - 00000000 ____D C:\FRST
2015-12-07 17:29 - 2015-12-07 17:30 - 01719808 _____ (Farbar) C:\Users\Martin\Desktop\FRST.exe
2015-12-07 16:45 - 2015-12-07 16:45 - 00388608 _____ (Trend Micro Inc.) C:\Users\Martin\Downloads\HijackThis.exe
2015-12-06 23:30 - 2015-12-07 00:21 - 374681600 _____ C:\Users\Martin\Downloads\Odložené-případy-01x10-Stopař.avi
2015-12-06 20:34 - 2015-12-06 20:34 - 00584288 _____ (Oracle Corporation) C:\Users\Martin\Downloads\chromeinstall-8u66.exe
2015-12-05 23:55 - 2015-12-05 23:55 - 00222700 _____ C:\Users\Martin\Documents\cc_20151205_235459.reg
2015-12-05 23:29 - 2015-12-07 16:21 - 00000000 ____D C:\Program Files\CCleaner
2015-12-05 23:29 - 2015-12-05 23:29 - 00000929 _____ C:\Users\Public\Desktop\CCleaner.lnk
2015-12-05 23:29 - 2015-12-05 23:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-12-05 23:26 - 2015-12-05 23:28 - 06801752 _____ (Piriform Ltd) C:\Users\Martin\Downloads\ccsetup512.exe
2015-12-05 23:04 - 2015-12-05 23:04 - 00001155 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk
2015-12-05 23:04 - 2015-12-05 23:04 - 00001143 _____ C:\Users\Public\Desktop\Adobe Creative Cloud.lnk
2015-12-05 23:04 - 2015-12-05 23:04 - 00000000 ____D C:\ProgramData\Package Cache
2015-12-04 23:50 - 2015-12-06 00:06 - 00000000 ____D C:\Windows\erdnt
2015-12-04 23:37 - 2015-12-04 22:56 - 00024064 _____ C:\Windows\zoek-delete.exe
2015-12-04 23:31 - 2015-12-04 23:42 - 00000000 ____D C:\zoek
2015-12-04 22:56 - 2015-12-04 23:34 - 00000000 ____D C:\zoek_backup
2015-12-04 22:54 - 2015-12-04 22:55 - 01309184 _____ C:\Users\Martin\Desktop\zoek.exe
2015-12-04 19:30 - 2015-12-05 00:28 - 00030848 _____ C:\Windows\system32\Drivers\TrueSight.sys
2015-12-04 19:30 - 2015-12-04 22:57 - 00000000 ____D C:\ProgramData\RogueKiller
2015-12-04 18:08 - 2015-12-04 18:08 - 01599336 _____ (Malwarebytes) C:\Users\Martin\Desktop\JRT.exe
2015-12-04 16:20 - 2015-12-04 16:20 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-12-04 15:59 - 2015-12-04 17:59 - 00000000 ____D C:\AdwCleaner
2015-12-04 15:58 - 2015-12-04 15:58 - 01736704 _____ C:\Users\Martin\Desktop\AdwCleaner.exe
2015-12-04 15:22 - 2015-12-07 17:31 - 00000000 ____D C:\Users\Martin\Desktop\Hick jack
2015-12-04 14:48 - 2015-12-04 14:48 - 00000000 ____D C:\Program Files\Common Files\AV
2015-12-01 13:25 - 2015-12-01 13:25 - 00002085 _____ C:\Users\Public\Desktop\HP Photosmart Essential 3.5.lnk
2015-11-29 21:07 - 2015-11-29 21:07 - 00001896 _____ C:\Users\Martin\Desktop\Photomatix Pro 5.0.5.lnk
2015-11-29 21:07 - 2015-11-29 21:07 - 00000000 ____D C:\Users\Martin\AppData\Roaming\HDRsoft
2015-11-29 21:07 - 2015-11-29 21:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photomatix Pro 5.0
2015-11-29 21:07 - 2015-11-29 21:07 - 00000000 ____D C:\Program Files\PhotomatixPro5
2015-11-29 18:12 - 2015-11-29 18:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dynamic-Photo HDR
2015-11-29 18:12 - 2015-11-29 18:12 - 00000000 ____D C:\Program Files\DynamicPhotoHDR
2015-11-21 23:34 - 2015-11-21 23:38 - 00000000 ____D C:\Users\Martin\Desktop\Ephoto
2015-11-15 23:07 - 2015-11-15 23:07 - 00000000 ____D C:\Users\Martin\Documents\Adobe Scripts
2015-11-14 02:29 - 2015-11-14 02:29 - 00001727 _____ C:\Users\Martin\Desktop\Photoshop – zástupce.lnk
2015-11-14 02:14 - 2015-11-14 02:14 - 00004333 _____ C:\Users\Martin\Downloads\+Barvy (Lab Color).atn
2015-11-14 01:59 - 2015-07-27 16:48 - 03323392 _____ C:\Users\Martin\Desktop\botbeetle.exe
2015-11-13 23:49 - 2015-11-13 23:49 - 00001220 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC 2014 (32 Bit).lnk
2015-11-08 22:34 - 2015-11-08 22:34 - 00000000 ____D C:\Users\Martin\Desktop\Adobe
2015-11-08 21:59 - 2015-11-08 21:59 - 00000000 ____D C:\Users\Martin\Documents\Poznámkové bloky aplikace OneNote

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-12-07 17:31 - 2009-07-14 03:37 - 00000000 ____D C:\Windows
2015-12-07 16:49 - 2014-05-07 08:35 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-12-07 16:40 - 2009-07-14 05:34 - 00026544 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-12-07 16:40 - 2009-07-14 05:34 - 00026544 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-12-07 16:35 - 2010-11-21 02:16 - 00669116 _____ C:\Windows\system32\perfh005.dat
2015-12-07 16:35 - 2010-11-21 02:16 - 00141744 _____ C:\Windows\system32\perfc005.dat
2015-12-07 16:35 - 2010-11-20 22:01 - 01584554 _____ C:\Windows\system32\PerfStringBackup.INI
2015-12-07 16:35 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\inf
2015-12-07 16:33 - 2014-07-19 21:55 - 00000000 ___RD C:\Users\Martin\Disk Google
2015-12-07 16:32 - 2014-11-30 23:51 - 00000000 ____D C:\Users\Martin\AppData\Local\CrashDumps
2015-12-07 16:31 - 2014-06-04 19:55 - 00000437 _____ C:\Windows\system32\Drivers\etc\hosts.ics
2015-12-07 16:28 - 2013-12-30 18:54 - 00000936 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-12-07 16:28 - 2009-07-14 05:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-12-07 16:21 - 2009-07-14 05:53 - 00032586 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-12-07 10:19 - 2013-12-31 14:23 - 00000000 ____D C:\Users\Martin\AppData\Roaming\vlc
2015-12-07 08:54 - 2015-01-25 21:10 - 00000000 ____D C:\Program Files\TeamViewer
2015-12-07 08:46 - 2014-01-01 01:28 - 00000000 ____D C:\Mp3
2015-12-07 04:45 - 2014-04-06 20:39 - 00000000 ____D C:\Program Files\FastShare
2015-12-07 02:00 - 2013-12-30 23:20 - 00000000 ____D C:\Users\Martin\AppData\Local\Adobe
2015-12-06 20:28 - 2013-12-30 21:23 - 00000000 ____D C:\Program Files\JDownloader
2015-12-06 00:08 - 2013-12-30 16:46 - 00000000 ____D C:\Users\Martin
2015-12-05 23:32 - 2014-01-19 18:05 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Vso
2015-12-05 23:32 - 2014-01-19 18:05 - 00000000 ____D C:\ProgramData\VSO
2015-12-05 23:31 - 2013-12-30 16:41 - 00000000 ____D C:\Windows\Panther
2015-12-05 23:31 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\ModemLogs
2015-12-05 23:06 - 2013-12-30 23:22 - 00000000 ____D C:\ProgramData\Adobe
2015-12-05 23:06 - 2013-12-30 23:22 - 00000000 ____D C:\Program Files\Common Files\Adobe
2015-12-05 23:06 - 2013-12-30 13:27 - 00000000 ____D C:\Users\Martin\AppData\Roaming\Adobe
2015-12-05 23:02 - 2013-12-30 23:22 - 00000000 ____D C:\Program Files\Adobe
2015-12-05 21:39 - 2009-07-14 03:04 - 00000215 _____ C:\Windows\system.ini
2015-12-05 19:49 - 2013-12-30 18:54 - 00000940 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-12-04 18:13 - 2015-03-07 21:41 - 00000000 ____D C:\Program Files\YTD
2015-12-04 18:13 - 2014-07-07 22:46 - 00000000 ____D C:\Users\Public\Documents\Downloaded Installers
2015-11-28 02:35 - 2014-07-19 21:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2015-11-28 00:14 - 2015-03-07 21:50 - 00000000 ____D C:\Users\Martin\AppData\Roaming\CENZURA
2015-11-20 22:22 - 2014-03-02 20:01 - 00001112 _____ C:\Users\Martin\AppData\Local\MRDownloader.nast
2015-11-20 22:21 - 2014-11-16 15:50 - 00009200 _____ C:\Users\Martin\AppData\Local\MRDownloader.err
2015-11-19 10:24 - 2014-12-28 22:26 - 00000000 ____D C:\Photoshop
2015-11-19 10:16 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\Web
2015-11-13 23:49 - 2014-12-14 02:32 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2015-11-13 19:49 - 2014-02-02 01:00 - 00780488 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-11-13 19:49 - 2014-02-02 01:00 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-11-13 16:22 - 2013-12-30 16:53 - 00000000 ____D C:\Users\Martin\AppData\Local\Deployment
2015-11-08 23:48 - 2014-01-01 01:26 - 00000000 ____D C:\Fotky
2015-11-08 22:08 - 2015-04-26 12:04 - 00000000 ___SD C:\Windows\system32\GWX
2015-11-08 22:08 - 2013-12-30 20:08 - 00000000 ____D C:\Users\Martin\AppData\Roaming\GHISLER
2015-11-08 22:08 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\registration

==================== Files in the root of some directories =======

2014-01-19 18:05 - 2014-01-19 18:05 - 0087608 _____ () C:\Users\Martin\AppData\Roaming\inst.exe
2014-01-19 18:05 - 2014-01-19 18:05 - 0007887 _____ () C:\Users\Martin\AppData\Roaming\pcouffin.cat
2014-01-19 18:05 - 2014-01-19 18:05 - 0001144 _____ () C:\Users\Martin\AppData\Roaming\pcouffin.inf
2014-01-19 18:05 - 2014-01-19 18:05 - 0047360 _____ (VSO Software) C:\Users\Martin\AppData\Roaming\pcouffin.sys
2014-12-29 21:09 - 2014-12-29 21:09 - 0001480 _____ () C:\Users\Martin\AppData\Local\Adobe Uložit pro web 12.0 Prefs
2014-06-02 19:35 - 2014-06-02 19:35 - 0001096 _____ () C:\Users\Martin\AppData\Local\MRDownloader (1).nast
2014-11-16 15:50 - 2015-11-20 22:21 - 0009200 _____ () C:\Users\Martin\AppData\Local\MRDownloader.err
2014-03-02 20:01 - 2015-11-20 22:22 - 0001112 _____ () C:\Users\Martin\AppData\Local\MRDownloader.nast
2014-01-05 10:27 - 2014-06-02 19:38 - 0011646 _____ () C:\Users\Martin\AppData\Local\SRDownloader.err
2013-12-30 19:56 - 2014-06-02 19:38 - 0001968 _____ () C:\Users\Martin\AppData\Local\SRDownloader.nast
2014-06-01 20:08 - 2014-12-13 17:26 - 0004287 _____ () C:\ProgramData\hpzinstall.log

Some files in TEMP:
====================
C:\Users\Martin\AppData\Local\Temp\AAMHelper.exe
C:\Users\Martin\AppData\Local\Temp\AdobeApplicationManager.exe


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-12-03 12:04

==================== End of FRST.txt ============================

Reklama
martyxxx
Level 1
Level 1
Příspěvky: 58
Registrován: červen 12
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Dlouhé spouštění Notebooku

Příspěvekod martyxxx » 07 pro 2015 17:39

Additional scan result of Farbar Recovery Scan Tool (x86) Version:05-12-2015
Ran by Martin (2015-12-07 17:32:33)
Running from C:\Users\Martin\Desktop
Microsoft Windows 7 Home Basic Service Pack 1 (X86) (2013-12-30 15:46:42)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3048907222-2003921856-3909994109-500 - Administrator - Disabled)
Guest (S-1-5-21-3048907222-2003921856-3909994109-501 - Limited - Disabled)
Martin (S-1-5-21-3048907222-2003921856-3909994109-1000 - Administrator - Enabled) => C:\Users\Martin

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

32 Bit HP CIO Components Installer (Version: 7.1.8 - Hewlett-Packard) Hidden
Adobe AIR (HKLM\...\Adobe AIR) (Version: 1.5.3.9120 - Adobe Systems Inc.)
Adobe Community Help (HKLM\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM\...\Adobe Creative Cloud) (Version: 3.4.1.181 - Adobe Systems Incorporated)
Adobe Flash Player 10 ActiveX (HKLM\...\{B7B3E9B3-FB14-4927-894B-E9124509AF5A}) (Version: 10.0.32.18 - Adobe Systems, Inc.)
Adobe Flash Player 19 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 19.0.0.245 - Adobe Systems Incorporated)
Adobe Media Player (HKLM\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated)
Adobe Photoshop CC 2014 (32 Bit) (HKLM\...\{7C25E7A0-A0A1-4B87-BB30-BF0FBDC37878}) (Version: 15.2 - Adobe Systems Incorporated)
Adobe Photoshop CS5 (HKLM\...\{15FEDA5F-141C-4127-8D7E-B962D1742728}) (Version: 12.0 - Adobe Systems Incorporated)
Adobe Photoshop Lightroom 6.0 (HKLM\...\Adobe Photoshop Lightroom 6.0) (Version: 6.0 - Adobe)
Adobe Reader XI (11.0.13) - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.13 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM\...\Adobe Shockwave Player) (Version: 12.1.3.153 - Adobe Systems, Inc.)
Advanced Cymatic Trader for Betfair (HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\...\010df6dc144fd5b1) (Version: 1.0.0.191 - Cymatic Ltd)
AIO_CDB_ProductContext (Version: 130.0.365.000 - Hewlett-Packard) Hidden
AIO_CDB_Software (Version: 130.0.365.000 - Hewlett-Packard) Hidden
AIO_Scan (Version: 130.0.421.000 - Hewlett-Packard) Hidden
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Alcor Micro USB Card Reader (HKLM\...\AmUStor) (Version: 3.10.3042.71197 - Alcor Micro Corp.)
Alcor Micro USB Card Reader (Version: 3.10.3042.71197 - Alcor Micro Corp.) Hidden
Avast Free Antivirus (HKLM\...\Avast) (Version: 10.4.2233 - AVAST Software)
Balíček ovladače systému Windows - u-blox AG (ubloxusb) Ports (09/12/2008 1.2.0.1) (HKLM\...\38C9A50B4FB83FBC3B6B66EAC2E4A7B2930F8D10) (Version: 09/12/2008 1.2.0.1 - u-blox AG)
Broadcom 802.11 Network Adapter (HKLM\...\Broadcom 802.11 Network Adapter) (Version: 6.20.55.57 - Broadcom Corporation)
BufferChm (Version: 130.0.331.000 - Hewlett-Packard) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.12 - Piriform)
Cisco EAP-FAST Module (Version: 2.2.14 - Cisco Systems, Inc.) Hidden
Cisco LEAP Module (Version: 1.0.19 - Cisco Systems, Inc.) Hidden
Cisco PEAP Module (Version: 1.1.6 - Cisco Systems, Inc.) Hidden
Copy (Version: 130.0.428.000 - Hewlett-Packard) Hidden
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden
Destinations (Version: 130.0.0.0 - Hewlett-Packard) Hidden
DeviceDiscovery (Version: 130.0.465.000 - Hewlett-Packard) Hidden
DocProc (Version: 13.0.0.0 - Hewlett-Packard) Hidden
Dynamic-Photo HDR 3.0 (HKLM\...\Dynamic-Photo HDR_is1) (Version: - Mediachance)
F300 (Version: 130.0.365.000 - Hewlett-Packard) Hidden
F300_Help (Version: 82.0.242.000 - Hewlett-Packard) Hidden
F300Trb (Version: 82.0.242.000 - Hewlett-Packard) Hidden
FastShare.cz verze 2.1 (HKLM\...\FastShare.cz_is1) (Version: 2.1 - )
FastStone Image Viewer 5.3 (HKLM\...\FastStone Image Viewer) (Version: 5.3 - FastStone Soft)
Fax (Version: 130.0.418.000 - Hewlett-Packard) Hidden
Fotogalerie (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Garmin Communicator Plugin (HKLM\...\{032A13FF-D26D-4844-9597-7EF698627985}) (Version: 4.1.0 - Garmin Ltd or its subsidiaries)
Geeks Toy - Betfair (HKLM\...\{CBE7C963-8799-4382-8320-2C4B25BEC31F}) (Version: 1.3.7 - The Geek)
Google Drive (HKLM\...\{1C3D2F92-D25E-4D98-B810-3F3B0857BF26}) (Version: 1.26.0707.2863 - Google, Inc.)
Google Earth (HKLM\...\{1A295C25-6E02-49FB-826B-F0D2C56FFA4E}) (Version: 7.1.4.1529 - Google)
Google Chrome (HKLM\...\Google Chrome) (Version: 47.0.2526.73 - Google Inc.)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.29.1 - Google Inc.) Hidden
GPBaseService2 (Version: 130.0.371.000 - Hewlett-Packard) Hidden
HP Customer Participation Program 13.0 (HKLM\...\HPExtendedCapabilities) (Version: 13.0 - HP)
HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP)
HP Photosmart Essential 3.5 (HKLM\...\HP Photosmart Essential) (Version: 3.5 - HP)
HP Smart Web Printing 4.51 (HKLM\...\HP Smart Web Printing) (Version: 4.51 - HP)
HP Solution Center 13.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 13.0 - HP)
HP Support Solutions Framework (HKLM\...\{FC3C2B77-6800-48C6-A15D-9D1031130C16}) (Version: 11.51.0049 - Hewlett-Packard Company)
HP Update (HKLM\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HPPhotoGadget (Version: 130.0.282.000 - Hewlett-Packard) Hidden
HPPhotoSmartDiscLabelContent1 (Version: 2.04.0000 - Hewlett-Packard) Hidden
HPPhotosmartEssential (Version: 2.04.0000 - Hewlett-Packard) Hidden
HPProductAssistant (Version: 130.0.371.000 - Hewlett-Packard) Hidden
HTC Driver Installer (HKLM\...\{4CEEE5D0-F905-4688-B9F9-ECC710507796}) (Version: 4.1.0.001 - HTC Corporation)
Integrated Camera (HKLM\...\{ADE16A9D-FBDC-4ecc-B6BD-9C31E51D0332}) (Version: 5.13.312.31 - Vimicro)
Intel(R) Control Center (HKLM\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1011 - Intel Corporation)
Intel(R) Manageability Engine Firmware Recovery Agent (HKLM\...\{A6C48A9F-694A-4234-B3AA-62590B668927}) (Version: 1.0.0.36702 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.0.0.1323 - Intel Corporation)
Intel(R) Processor Graphics (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3223 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.4.225 - Intel Corporation)
IPTInstaller (HKLM\...\{08208143-777D-4A06-BB54-71BF0AD1BB70}) (Version: 4.0.8 - HTC)
Java 7 Update 67 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle)
Java 8 Update 20 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218020F0}) (Version: 8.0.200 - Oracle Corporation)
JDownloader 0.9 (HKLM\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH)
Junk Mail filter update (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Kingo Android ROOT version 1.2.2.1915 (HKLM\...\{AE7675D6-0B31-494F-ABFA-822E1A0FDF17}_is1) (Version: 1.2.2.1915 - Kingosoft Technology Ltd.)
Lenovo Bluetooth with Enhanced Data Rate Software (HKLM\...\{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}) (Version: 6.5.1.4000 - Broadcom Corporation)
Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.10.20 - Lenovo)
MarketResearch (Version: 130.0.374.000 - Hewlett-Packard) Hidden
MetaTrader 4 (HKLM\...\MetaTrader 4) (Version: 4.00 - MetaQuotes Software Corp.)
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Movie Maker (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 35.0 (x86 cs) (HKLM\...\Mozilla Firefox 35.0 (x86 cs)) (Version: 35.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 30.0 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
Navigator 11 - Setup Utility 11.0.8-1 (HKLM\...\MAPFACTOR_SETUP_UTILITY_HYBRID_11_is1) (Version: 11.0.8-1 - MapFactor s.r.o)
OCR Software by I.R.I.S. 13.0 (HKLM\...\HPOCR) (Version: 13.0 - HP)
PC Navigator 12 12.0.7-1 (HKLM\...\PCNavigator12_is1) (Version: 12.0.7-1 - MapFactor s.r.o)
PC Navigator 9 9.0.39-1 (HKLM\...\PCNavigator9_is1) (Version: 9.0.39-1 - MapFactor)
PDF Settings CS5 (Version: 10.0 - Adobe Systems Incorporated) Hidden
Photomatix Pro version 5.0.5 (HKLM\...\PhotomatixPro5x32_is1) (Version: 5.0.5 - HDRsoft Ltd)
Realtek Ethernet Controller Driver (HKLM\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.65.1025.2012 - Realtek)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6909 - Realtek Semiconductor Corp.)
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.43.0 - SAMSUNG Electronics Co., Ltd.)
Scan (Version: 13.0.0.0 - Hewlett-Packard) Hidden
SDÍLEJ.CZ Manager (HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\...\69f070f18ade444c) (Version: 0.0.1.42 - SDÍLEJ.CZ)
SlimDrivers (HKLM\...\{A5457401-D56A-43F2-9524-78E54A7FC07A}) (Version: 2.2.32705 - SlimWare Utilities, Inc.)
SmartWebPrinting (Version: 130.0.457.000 - Hewlett-Packard) Hidden
Software602 Form Filler (HKLM\...\{F8F79FE0-64EA-439C-A6AE-B1946A178F24}) (Version: 4.55 - Software602 a.s.)
SolutionCenter (Version: 130.0.373.000 - Hewlett-Packard) Hidden
Status (Version: 130.0.469.000 - Hewlett-Packard) Hidden
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TeamViewer 10 (HKLM\...\TeamViewer) (Version: 10.0.47484 - TeamViewer)
Toolbox (Version: 130.0.648.000 - Hewlett-Packard) Hidden
Total Commander (Remove or Repair) (HKLM\...\Totalcmd) (Version: 7.50 - C. Ghisler & Co.)
TrayApp (Version: 130.0.422.000 - Hewlett-Packard) Hidden
Universal Adb Driver (HKLM\...\{D9C4202E-6D51-4B06-A8F1-22316E654BCA}) (Version: 1.0.0 - ClockworkMod)
UnloadSupport (Version: 11.0.0 - Hewlett-Packard) Hidden
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Veselé Omalovánky 1 - malování pro děti (HKLM\...\Veselé Omalovánky 1_is1) (Version: - Martin Roubec)
Video Download Capture verze 5.0.3 (HKLM\...\{3C9D008D-3716-4C3F-90CD-38ED57568FAB}_is1) (Version: 5.0.3 - APOWERSOFT LIMITED)
VLC media player (HKLM\...\VLC media player) (Version: 2.2.1 - VideoLAN)
VSO ConvertXToDVD (HKLM\...\{CE1F93C0-4353-4C9D-84DA-AB4E7C63ED32}_is1) (Version: 5.1.0.9 - VSO Software)
WebReg (Version: 130.0.132.017 - Hewlett-Packard) Hidden
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
WinRAR 4.20 (32-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)
Zoner Photo Studio 17 (HKLM\...\ZonerPhotoStudio17_CZ_is1) (Version: 17.0.1.1 - ZONER software)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3048907222-2003921856-3909994109-1000_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems)

==================== Restore Points =========================


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:04 - 2015-12-05 21:36 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts

127.0.0.1 localhost

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {198BBA2E-E41B-4695-848B-8D44C9C32A04} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2012-06-14] (Intel Corporation)
Task: {2FA54DDE-3E4E-4803-8D59-FDC03AEB88F2} - System32\Tasks\{58A34CD9-B1A8-48BB-BDF0-9C6B2CFEEE26} => pcalua.exe -a C:\Users\Martin\Downloads\ytd-1.45.exe -d C:\Users\Martin\Downloads
Task: {3C6C46C1-CC51-4100-9BB9-931E882BD178} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-11-16] (Piriform Ltd)
Task: {4EDEB27E-1822-45E5-BE0C-3DDB22DAD0E3} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2015-12-04] (AVAST Software)
Task: {513DCDC9-87D7-4C85-88F0-6F9C6D51F82C} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-09-25] (AVAST Software)
Task: {60DCD767-4EA0-4999-BF16-EC674B6C1767} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2012-06-14] (Intel Corporation)
Task: {611175B6-2F78-418A-BFBF-7A2EE0354A26} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {75F766C5-A98E-4657-A834-45E99DEA708F} - System32\Tasks\{654F8E54-F962-41DC-AD62-ECC5691E0859} => pcalua.exe -a "C:\Program Files\Navigator11\Setup Utility\setup.exe" -d "C:\Program Files\Navigator11\Setup Utility" -c -updates
Task: {77E5C7D3-48CC-408F-97C8-577EBC596A3F} - System32\Tasks\AdobeAAMUpdater-1.0-Martin-PC-Martin => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-10-30] (Adobe Systems Incorporated)
Task: {97349B8A-51DF-469D-942C-7D9593D01FB2} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-11-13] (Adobe Systems Incorporated)
Task: {9D64C903-66F9-4E83-B6E5-5F886A407961} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-10-28] (Adobe Systems Incorporated)
Task: {DC3A3D53-D37C-4C7F-82D4-E0F7870DE012} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2015-09-25 18:15 - 2015-09-25 18:15 - 00103376 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-09-25 18:15 - 2015-09-25 18:15 - 00123976 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-12-06 15:26 - 2015-12-06 15:26 - 02803200 _____ () C:\Program Files\AVAST Software\Avast\defs\15120600\algo.dll
2015-12-07 16:33 - 2015-12-07 16:33 - 02803200 _____ () C:\Program Files\AVAST Software\Avast\defs\15120701\algo.dll
2015-11-14 04:22 - 2015-11-14 04:22 - 00486048 _____ () C:\Program Files\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x86.dll
2014-07-13 16:27 - 2012-12-07 16:26 - 00167424 _____ () C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
2013-12-30 17:40 - 2013-06-27 07:56 - 00094208 _____ () C:\Windows\System32\IccLibDll.dll
2015-09-25 18:15 - 2015-09-25 18:15 - 40539648 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2015-11-16 17:43 - 2015-11-16 17:43 - 40523440 _____ () C:\Program Files\Common Files\Adobe\Adobe Desktop Common\CEF\libcef.dll
2010-03-09 04:28 - 2010-03-09 04:28 - 00073728 _____ () C:\Program Files\Adobe\Adobe Bridge CS5\Symlib.dll
2010-03-09 04:28 - 2010-03-09 04:28 - 02748416 _____ () C:\Program Files\Adobe\Adobe Bridge CS5\LIBMYSQLD.dll
2010-02-10 19:10 - 2010-02-10 19:10 - 00108256 _____ () C:\Program Files\Common Files\Adobe\Bridge CS5 Extensions\Adobe Output Module\mediagallery\resources\plugins\XSLT.dll
2014-11-30 22:31 - 2014-09-09 13:30 - 00603648 _____ () C:\Program Files\Zoner\Photo Studio 17\Program32\SpiderMonkey.dll
2015-12-07 16:32 - 2015-12-07 16:32 - 00098816 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\win32api.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00110080 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\pywintypes27.dll
2015-12-07 16:32 - 2015-12-07 16:32 - 00364544 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\pythoncom27.dll
2015-12-07 16:32 - 2015-12-07 16:32 - 00046080 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\_socket.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 01208320 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\_ssl.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00320512 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\win32com.shell.shell.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00776704 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\_hashlib.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 01176576 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\wx._core_.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00806400 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\wx._gdi_.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00816128 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\wx._windows_.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 01067008 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\wx._controls_.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00733184 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\wx._misc_.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00682496 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\pysqlite2._sqlite.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00088064 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\_ctypes.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00119808 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\win32file.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00108544 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\win32security.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00007168 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\hashobjs_ext.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00017920 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\thumbnails_ext.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00079360 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\usb_ext.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00167936 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\win32gui.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00018432 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\win32event.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00128512 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\_elementtree.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00127488 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\pyexpat.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00013824 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\common.time34.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00036864 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\_psutil_windows.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00038912 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\win32inet.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00525640 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\windows._lib_cacheinvalidation.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00011264 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\win32crypt.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00077312 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\wx._html2.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00027136 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\_multiprocessing.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00020480 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\_yappi.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00035840 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\win32process.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00686080 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\unicodedata.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00123392 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\wx._wizard.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00024064 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\win32pipe.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00010240 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\select.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00025600 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\win32pdh.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00017408 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\win32profile.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00022528 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\win32ts.pyd
2015-12-07 16:32 - 2015-12-07 16:32 - 00078848 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI52802\wx._animate.pyd
2015-11-16 17:55 - 2015-11-16 17:55 - 00047104 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2015-11-16 17:43 - 2015-11-16 17:43 - 01365680 _____ () C:\Program Files\Common Files\Adobe\Adobe Desktop Common\CEF\libglesv2.dll
2015-11-16 17:43 - 2015-11-16 17:43 - 00219312 _____ () C:\Program Files\Common Files\Adobe\Adobe Desktop Common\CEF\libegl.dll
2013-12-30 17:35 - 2012-01-11 11:12 - 00663552 _____ () C:\Windows\system32\vmprp331.ax
2015-12-04 14:53 - 2015-11-24 09:00 - 01583432 _____ () C:\Program Files\Google\Chrome\Application\47.0.2526.73\libglesv2.dll
2015-12-04 14:53 - 2015-11-24 09:00 - 00081224 _____ () C:\Program Files\Google\Chrome\Application\47.0.2526.73\libegl.dll
2015-11-14 04:22 - 2015-11-14 04:22 - 31401120 _____ () C:\Program Files\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
2015-11-25 19:35 - 2015-11-25 19:35 - 00124416 _____ () C:\Program Files\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\fs-ext\build\Release\fs-ext.node
2015-11-25 19:35 - 2015-11-25 19:35 - 00188416 _____ () C:\Program Files\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\node-vulcanjs\build\Release\VulcanJS.node
2015-11-25 19:35 - 2015-11-25 19:35 - 00121344 _____ () C:\Program Files\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\ref\build\Release\binding.node
2015-11-25 19:35 - 2015-11-25 19:35 - 00129536 _____ () C:\Program Files\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\ffi\build\Release\ffi_bindings.node
2015-11-25 13:22 - 2015-11-25 13:22 - 00089264 _____ () C:\Program Files\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\node-ProxyResolver\native\ProxyResolverWin7.dll
2015-11-25 19:35 - 2015-11-25 19:35 - 00081408 _____ () C:\Program Files\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\idle-gc\build\Release\idle-gc.node
2011-08-15 20:12 - 2011-08-15 20:12 - 02603520 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\QtCore4.dll
2011-08-15 20:15 - 2011-08-15 20:15 - 00382464 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\QtXml4.dll
2011-08-17 16:41 - 2011-08-17 16:41 - 00400384 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\sqlite3.dll
2011-08-17 16:48 - 2011-08-17 16:48 - 00322048 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\log4cplus.dll
2012-06-14 11:57 - 2012-06-14 11:57 - 00015872 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\featureController.dll
2011-08-15 20:12 - 2011-08-15 20:12 - 01006592 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\QtNetwork4.dll
2011-08-17 16:48 - 2011-08-17 16:48 - 00195584 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\libgsoap.dll
2011-08-15 19:23 - 2011-08-15 19:23 - 00062464 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\zlib1.dll
2012-06-14 11:56 - 2012-06-14 11:56 - 00481792 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\DeviceProfile.dll
2012-06-14 12:06 - 2012-06-14 12:06 - 00500064 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\plugin\PServerPlugin.dll
2012-06-14 11:55 - 2012-06-14 11:55 - 00013824 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\eventsSender.dll
2012-07-24 12:06 - 2012-07-24 12:06 - 00119808 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\updateui.exe
2011-07-19 16:05 - 2011-07-19 16:05 - 14978048 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\QtWebKit4.dll
2011-07-19 16:04 - 2011-07-19 16:04 - 00317952 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\phonon4.dll
2011-08-15 20:17 - 2011-08-15 20:17 - 09224704 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\QtGui4.dll
2015-12-04 14:53 - 2015-11-24 09:00 - 16496456 _____ () C:\Program Files\Google\Chrome\Application\47.0.2526.73\PepperFlash\pepflashplayer.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.10.20 - 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{2A50C7A1-9940-413B-9D33-68355CB5B28A}] => (Allow) c:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [{5041096B-E086-4161-932F-8ED052966C92}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
FirewallRules: [{1D4466A7-9AB9-4B19-8CF9-02D0309FA334}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe
FirewallRules: [{89603836-6887-4D2D-B4A3-51DB23918855}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe
FirewallRules: [{72F6B730-257B-410A-B439-4AC14B0236D9}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe
FirewallRules: [{1F534713-28B5-48D0-A533-A43D4BF55FE6}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hposid01.exe
FirewallRules: [{2C9B310C-9E75-48B2-A7F2-FBA2E12578A1}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe
FirewallRules: [{3C60AA10-1A55-4924-8497-7D8E0CDD1622}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqcopy2.exe
FirewallRules: [{7E7FA899-0CBC-4BAF-8CEF-A5AEDC48A9CB}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe
FirewallRules: [{7955D9FC-200F-41DC-8FB7-4D12B2436C24}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe
FirewallRules: [{A3C9119C-33B0-41E9-9C3F-8F28A11B0D38}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe
FirewallRules: [{5F879EBE-DB5A-4668-9888-B6778B91309D}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe
FirewallRules: [{6D1243B2-E0C8-4D3F-9AD1-BE8C5701AA9F}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe
FirewallRules: [{C62B1647-B9C4-41C9-B430-04F56DE57D43}] => (Allow) C:\Program Files\common files\hp\digital imaging\bin\hpqphotocrm.exe
FirewallRules: [{99BD3028-8327-427D-889C-5C95C23A0807}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe
FirewallRules: [{C81B86C4-62CC-4F7C-B4D6-86728393FACE}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe
FirewallRules: [{468A494F-AE54-46DE-A70D-4326A508B7F2}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpofxs08.exe
FirewallRules: [{AC536AE9-43DB-41A2-9792-7995132E21BF}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqfxt08.exe
FirewallRules: [{2E6964B4-F3F7-4B9D-ADBE-5454CFE03032}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe
FirewallRules: [{E88E90A3-B86C-42DE-8891-71EF72ECADD4}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe
FirewallRules: [{DCCCCCE6-C590-4393-BA43-7D534AF554EE}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
FirewallRules: [{86C37FDE-3F33-46E0-8AB0-B68296C5D186}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe
FirewallRules: [{35BDBD74-EC6D-452D-9582-315B5479786B}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe
FirewallRules: [{612230DB-7CBE-45C9-A2CF-5C46B9A96351}] => (Allow) C:\Program Files\HP\hp software update\hpwucli.exe
FirewallRules: [{63717A3F-03D6-452E-97EC-4A93B4CFB35E}] => (Allow) C:\Program Files\HP\digital imaging\smart web printing\smartwebprintexe.exe
FirewallRules: [TCP Query User{559389DF-53B2-46CB-8CCA-0EBD9CA8B0F4}C:\program files\java\jre7\bin\jp2launcher.exe] => (Block) C:\program files\java\jre7\bin\jp2launcher.exe
FirewallRules: [UDP Query User{D2EA074E-B2E9-40D2-B991-FC1CFE4FBB72}C:\program files\java\jre7\bin\jp2launcher.exe] => (Block) C:\program files\java\jre7\bin\jp2launcher.exe
FirewallRules: [{A92D49DB-2A19-49C3-AE9F-3F6E2B811908}] => (Allow) C:\Program Files\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{8E779C7E-DF7F-424B-BAF7-B0488CFEF964}] => (Allow) LPort=2869
FirewallRules: [{FDB25CBE-3216-4D26-92D0-0334E23A5492}] => (Allow) LPort=1900
FirewallRules: [TCP Query User{DE810AA0-A54D-4F6E-978D-0154435FBF7F}C:\program files\java\jre1.8.0_20\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_20\bin\javaw.exe
FirewallRules: [UDP Query User{CC5F6253-1827-40C0-AFCF-311C99A558C2}C:\program files\java\jre1.8.0_20\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_20\bin\javaw.exe
FirewallRules: [{D1510288-EE60-4711-8BA7-D10EB7255218}] => (Allow) C:\Program Files\Zoner\Photo Studio 17\Program32\MediaServer.exe
FirewallRules: [{FC8D77A1-254E-416C-90BE-3DEE1318FE01}] => (Allow) C:\Program Files\Common Files\soft602\langserv.exe
FirewallRules: [{8DEFBF05-6C02-4F67-B356-30C1D450882C}] => (Allow) C:\Program Files\Common Files\soft602\langserv.exe
FirewallRules: [{E6FABD0B-D6C1-464E-8923-730E6D416350}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{46C98FA2-46A3-49DC-9FF8-1D6490F91821}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{A5A57421-7757-4384-AA3B-D5B99DC6E078}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\Video Download Capture.exe
FirewallRules: [{2802B40A-341E-4836-A5B0-EE2817555002}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\Video Download Capture.exe
FirewallRules: [{5C95A19E-EBB8-4D24-92EF-A978DF80A2BC}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftSrv.dll
FirewallRules: [{5433ACBC-87DC-41BA-8272-7B527C62BDAD}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftSrv.dll
FirewallRules: [{683E68B4-6B02-4049-A044-ED9AEB5AE66A}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftDump.dll
FirewallRules: [{74FDD985-EA94-4E5A-BE57-AB0BADC04C30}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftDump.dll
FirewallRules: [{86A27FD3-444F-44E6-8401-5444AB5F42DF}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftAC.dll
FirewallRules: [{570A654D-7A6D-438F-A5FE-DAD68A52D753}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftAC.dll
FirewallRules: [{97C99810-20CF-40AD-8310-AC9B55444860}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftPlayer.dll
FirewallRules: [{4A1C50F6-2478-4E86-839A-B14795E7A62B}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftPlayer.dll
FirewallRules: [{90F3E8B0-0CD3-44DE-991B-34A1B6FC7868}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftDownloaderHelp.dll
FirewallRules: [{D0D62C10-7AC6-43C3-9283-CE3DB2952279}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftDownloaderHelp.dll
FirewallRules: [{CEA02673-21DD-45BC-B58E-4E70A23C427C}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftHDSDump.dll
FirewallRules: [{F991969D-891D-4AD6-A7A8-3B71E940C517}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftHDSDump.dll
FirewallRules: [{039F9CEF-CE8D-473A-B620-8753F2D37977}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe
FirewallRules: [{AA3D9226-1720-4CFD-86FD-B12CC65870E8}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe
FirewallRules: [{F194758C-0407-4993-ADD6-9648BC516274}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{B6BF2028-8F67-4515-8AF2-AA1D47F9A269}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{0E4B81DF-4FE8-4711-994E-D1604D47BD0C}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe
FirewallRules: [{C7AF72BE-C47A-4F07-B479-7CABD4B92AF9}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe
FirewallRules: [{7D8BB952-97C3-44C1-A223-1E160130D57C}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (12/07/2015 04:32:10 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clickertray.exe, verze: 11.0.8.1, časové razítko: 0x4e0b1aaa
Název chybujícího modulu: MSVCR90.dll, verze: 9.0.30729.6161, časové razítko: 0x4dace5b9
Kód výjimky: 0xc0000417
Posun chyby: 0x0006ccd5
ID chybujícího procesu: 0x11c0
Čas spuštění chybující aplikace: 0xclickertray.exe0
Cesta k chybující aplikaci: clickertray.exe1
Cesta k chybujícímu modulu: clickertray.exe2
ID zprávy: clickertray.exe3

Error: (12/07/2015 04:29:31 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/07/2015 04:21:19 PM) (Source: Application Error) (EventID: 1005) (User: )
Description: Systém Windows nemůže získat přístup k souboru C:\Windows\System32\qmgr.dll z jednoho z těchto důvodů:
došlo k problému s připojením k síti, s diskem, na kterém je soubor uložen, nebo
s ovladači ukládání nainstalovanými v tomto počítači; nebo disk chybí.
Systém Windows kvůli této chybě ukončil program Host Process for Windows Services.

Program: Host Process for Windows Services
Soubor: C:\Windows\System32\qmgr.dll

Hodnota chyby je uvedena v části Další údaje.
Akce uživatele
1. Otevřete soubor znovu.
Může se jednat o dočasný problém, který se při novém spuštění programu nebude opakovat.
2.
Pokud k souboru stále nelze získat přístup a:
- Nachází se v síti,
měl by správce sítě ověřit, zda nedošlo k problému se sítí a zda lze server kontaktovat.
- Je na vyměnitelném disku (například disketě nebo disku CD-ROM), ověřte, zda je disk správně vložen do počítače.
3. Zkontrolujte a opravte systém souborů pomocí nástroje CHKDSK. Ten lze spustit tak, že kliknete na tlačítko Start a příkaz Spustit, zadáte příkaz CMD a kliknete na tlačítko OK. Do příkazového řádku zadejte příkaz CHKDSK /F a stiskněte klávesu ENTER.
4. Pokud potíže potrvají, obnovte soubor ze záložní kopie.
5. Zjistěte, zda lze otevřít jiné soubory na stejném disku. Pokud ne, může být disk poškozen. Jedná-li se o pevný disk, obraťte se na správce nebo na dodavatele počítačového hardwaru
se žádostí o pomoc.

Další údaje
Hodnota chyby: C0000185
Typ disku: 3

Error: (12/07/2015 04:21:19 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: svchost.exe_BITS, verze: 6.1.7600.16385, časové razítko: 0x4a5bc100
Název chybujícího modulu: qmgr.dll, verze: 7.5.7601.17514, časové razítko: 0x4ce7b999
Kód výjimky: 0xc0000006
Posun chyby: 0x0000dda9
ID chybujícího procesu: 0x4b8
Čas spuštění chybující aplikace: 0xsvchost.exe_BITS0
Cesta k chybující aplikaci: svchost.exe_BITS1
Cesta k chybujícímu modulu: svchost.exe_BITS2
ID zprávy: svchost.exe_BITS3

Error: (12/07/2015 04:21:18 PM) (Source: Application Error) (EventID: 1005) (User: )
Description: Systém Windows nemůže získat přístup k souboru C:\Program Files\Common Files\Adobe\Adobe Desktop Common\CEF\libcef.dll z jednoho z těchto důvodů:
došlo k problému s připojením k síti, s diskem, na kterém je soubor uložen, nebo
s ovladači ukládání nainstalovanými v tomto počítači; nebo disk chybí.
Systém Windows kvůli této chybě ukončil program Adobe Creative Cloud.

Program: Adobe Creative Cloud
Soubor: C:\Program Files\Common Files\Adobe\Adobe Desktop Common\CEF\libcef.dll

Hodnota chyby je uvedena v části Další údaje.
Akce uživatele
1. Otevřete soubor znovu.
Může se jednat o dočasný problém, který se při novém spuštění programu nebude opakovat.
2.
Pokud k souboru stále nelze získat přístup a:
- Nachází se v síti,
měl by správce sítě ověřit, zda nedošlo k problému se sítí a zda lze server kontaktovat.
- Je na vyměnitelném disku (například disketě nebo disku CD-ROM), ověřte, zda je disk správně vložen do počítače.
3. Zkontrolujte a opravte systém souborů pomocí nástroje CHKDSK. Ten lze spustit tak, že kliknete na tlačítko Start a příkaz Spustit, zadáte příkaz CMD a kliknete na tlačítko OK. Do příkazového řádku zadejte příkaz CHKDSK /F a stiskněte klávesu ENTER.
4. Pokud potíže potrvají, obnovte soubor ze záložní kopie.
5. Zjistěte, zda lze otevřít jiné soubory na stejném disku. Pokud ne, může být disk poškozen. Jedná-li se o pevný disk, obraťte se na správce nebo na dodavatele počítačového hardwaru
se žádostí o pomoc.

Další údaje
Hodnota chyby: C0000185
Typ disku: 3

Error: (12/07/2015 04:21:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Creative Cloud.exe, verze: 3.4.1.181, časové razítko: 0x56561d8d
Název chybujícího modulu: libcef.dll, verze: 3.2171.2069.0, časové razítko: 0x551bdc44
Kód výjimky: 0xc0000006
Posun chyby: 0x0170ee90
ID chybujícího procesu: 0x1190
Čas spuštění chybující aplikace: 0xCreative Cloud.exe0
Cesta k chybující aplikaci: Creative Cloud.exe1
Cesta k chybujícímu modulu: Creative Cloud.exe2
ID zprávy: Creative Cloud.exe3

Error: (12/07/2015 04:17:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clickertray.exe, verze: 11.0.8.1, časové razítko: 0x4e0b1aaa
Název chybujícího modulu: MSVCR90.dll, verze: 9.0.30729.6161, časové razítko: 0x4dace5b9
Kód výjimky: 0xc0000417
Posun chyby: 0x0006ccd5
ID chybujícího procesu: 0x68c
Čas spuštění chybující aplikace: 0xclickertray.exe0
Cesta k chybující aplikaci: clickertray.exe1
Cesta k chybujícímu modulu: clickertray.exe2
ID zprávy: clickertray.exe3

Error: (12/07/2015 04:17:56 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/07/2015 08:12:50 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/06/2015 10:33:50 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program botbeetle.exe verze 3.7.0.0 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: 1018

Čas spuštění: 01d13069aef4d8f8

Čas ukončení: 17

Cesta k aplikaci: C:\Users\Martin\Desktop\botbeetle.exe

ID hlášení: 053ee4da-9c61-11e5-b54f-f82fa8fd40e8


System errors:
=============
Error: (12/07/2015 05:28:12 PM) (Source: NetBT) (EventID: 4321) (User: )
Description: Název MARTIN-PC :0 nelze zaregistrovat v rozhraní s IP adresou 192.168.0.100.
Počítač s IP adresou 192.168.0.104 nepovolil získání názvu
tímto počítačem.

Error: (12/07/2015 04:58:50 PM) (Source: NetBT) (EventID: 4321) (User: )
Description: Název MARTIN-PC :0 nelze zaregistrovat v rozhraní s IP adresou 192.168.0.100.
Počítač s IP adresou 192.168.0.104 nepovolil získání názvu
tímto počítačem.

Error: (12/07/2015 04:34:58 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Windows Update přestala během spouštění reagovat.

Error: (12/07/2015 04:31:59 PM) (Source: NetBT) (EventID: 4321) (User: )
Description: Název MARTIN-PC :0 nelze zaregistrovat v rozhraní s IP adresou 192.168.0.100.
Počítač s IP adresou 192.168.0.104 nepovolil získání názvu
tímto počítačem.

Error: (12/07/2015 04:31:58 PM) (Source: NetBT) (EventID: 4321) (User: )
Description: Název MARTIN-PC :20 nelze zaregistrovat v rozhraní s IP adresou 192.168.0.100.
Počítač s IP adresou 192.168.0.104 nepovolil získání názvu
tímto počítačem.

Error: (12/07/2015 04:31:58 PM) (Source: Server) (EventID: 2505) (User: )
Description: Server nemohl vytvořit vazbu na přenos \Device\NetBT_Tcpip_{1D19C5CB-0FDF-4030-9163-0A37F2D84DC9}, protože jiný počítač v síti má stejný název. Server nelze spustit.

Error: (12/07/2015 04:31:58 PM) (Source: ipnathlp) (EventID: 30013) (User: )
Description: 192.168.0.100192.168.137.0255.255.255.0

Error: (12/07/2015 04:30:16 PM) (Source: ipnathlp) (EventID: 30013) (User: )
Description: 192.168.0.100192.168.137.0255.255.255.0

Error: (12/07/2015 04:30:16 PM) (Source: ipnathlp) (EventID: 1233) (User: )
Description:

Error: (12/07/2015 04:30:04 PM) (Source: NetBT) (EventID: 4321) (User: )
Description: Název MARTIN-PC :20 nelze zaregistrovat v rozhraní s IP adresou 192.168.0.100.
Počítač s IP adresou 192.168.0.104 nepovolil získání názvu
tímto počítačem.


==================== Memory info ===========================

Processor: Intel(R) Celeron(R) CPU 1005M @ 1.90GHz
Percentage of memory in use: 65%
Total physical RAM: 3175.74 MB
Available physical RAM: 1079.82 MB
Total Virtual: 6349.79 MB
Available Virtual: 3856.94 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:465.66 GB) (Free:162.74 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 0C97625A)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Uživatelský avatar
jerabina
člen Security týmu
Level 6
Level 6
Příspěvky: 3647
Registrován: březen 13
Bydliště: Litoměřice
Pohlaví: Muž
Stav:
Offline

Re: Dlouhé spouštění Notebooku

Příspěvekod jerabina » 07 pro 2015 17:59

Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.

Kód: Vybrat vše

Start
CloseProcesses:

HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508104 2015-10-30] (Adobe Systems Incorporated)
HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\...\Run: [Zoner Photo Studio Autoupdate] => C:\Program Files\Zoner\Photo Studio 17\Program32\ZPSTRAY.EXE [437248 2014-09-12] (ZONER software)
HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [6602152 2015-11-16] (Piriform Ltd)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION

FF Homepage: about:home
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-05] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-05] (Google Inc.)
FF Plugin HKU\S-1-5-21-3048907222-2003921856-3909994109-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Martin\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [No File]

CHR HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx

C:\ProgramData\RogueKiller
C:\Users\Martin\AppData\Roaming\inst.exe

Task: {611175B6-2F78-418A-BFBF-7A2EE0354A26} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Files\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {75F766C5-A98E-4657-A834-45E99DEA708F} - System32\Tasks\{654F8E54-F962-41DC-AD62-ECC5691E0859} => pcalua.exe -a "C:\Program Files\Navigator11\Setup Utility\setup.exe" -d "C:\Program Files\Navigator11\Setup Utility" -c -updates
Task: {77E5C7D3-48CC-408F-97C8-577EBC596A3F} - System32\Tasks\AdobeAAMUpdater-1.0-Martin-PC-Martin => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-10-30] (Adobe Systems Incorporated)
Task: {97349B8A-51DF-469D-942C-7D9593D01FB2} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-11-13] (Adobe Systems Incorporated)
Task: {9D64C903-66F9-4E83-B6E5-5F886A407961} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-10-28] (Adobe Systems Incorporated)
Task: {DC3A3D53-D37C-4C7F-82D4-E0F7870DE012} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

C:\Program Files\Google\Update
C:\Users\Martin\AppData\Local\Temp

EmptyTemp:
End


(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).

Ulož jej na na plochu jako fixlist.txt

Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Když nevíš jak dál, přichází na řadu prostudovat manuál!
HJT návod

Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.

martyxxx
Level 1
Level 1
Příspěvky: 58
Registrován: červen 12
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Dlouhé spouštění Notebooku

Příspěvekod martyxxx » 07 pro 2015 18:35

Fix result of Farbar Recovery Scan Tool (x86) Version:05-12-2015
Ran by Martin (2015-12-07 18:08:48) Run:1
Running from C:\Users\Martin\Desktop
Loaded Profiles: Martin (Available Profiles: Martin)
Boot Mode: Normal

==============================================

fixlist content:
*****************
Start
CloseProcesses:

HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508104 2015-10-30] (Adobe Systems Incorporated)
HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\...\Run: [Zoner Photo Studio Autoupdate] => C:\Program Files\Zoner\Photo Studio 17\Program32\ZPSTRAY.EXE [437248 2014-09-12] (ZONER software)
HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [6602152 2015-11-16] (Piriform Ltd)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION

FF Homepage: about:home
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-05] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-05] (Google Inc.)
FF Plugin HKU\S-1-5-21-3048907222-2003921856-3909994109-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Martin\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [No File]

CHR HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx

C:\ProgramData\RogueKiller
C:\Users\Martin\AppData\Roaming\inst.exe

Task: {611175B6-2F78-418A-BFBF-7A2EE0354A26} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Files\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {75F766C5-A98E-4657-A834-45E99DEA708F} - System32\Tasks\{654F8E54-F962-41DC-AD62-ECC5691E0859} => pcalua.exe -a "C:\Program Files\Navigator11\Setup Utility\setup.exe" -d "C:\Program Files\Navigator11\Setup Utility" -c -updates
Task: {77E5C7D3-48CC-408F-97C8-577EBC596A3F} - System32\Tasks\AdobeAAMUpdater-1.0-Martin-PC-Martin => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-10-30] (Adobe Systems Incorporated)
Task: {97349B8A-51DF-469D-942C-7D9593D01FB2} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-11-13] (Adobe Systems Incorporated)
Task: {9D64C903-66F9-4E83-B6E5-5F886A407961} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-10-28] (Adobe Systems Incorporated)
Task: {DC3A3D53-D37C-4C7F-82D4-E0F7870DE012} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

C:\Program Files\Google\Update
C:\Users\Martin\AppData\Local\Temp

EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeAAMUpdater-1.0 => value removed successfully.
HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Zoner Photo Studio Autoupdate => value removed successfully.
HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Monitoring => value removed successfully.
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully.
"HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully.
Firefox "homepage" removed successfully.
"HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3" => key removed successfully.
C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll => moved successfully
"HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9" => key removed successfully.
C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll => not found.
"HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0" => key removed successfully.
C:\Users\Martin\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll => not found.
"HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\SOFTWARE\Google\Chrome\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh" => key removed successfully.
C:\ProgramData\RogueKiller => moved successfully
C:\Users\Martin\AppData\Roaming\inst.exe => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{611175B6-2F78-418A-BFBF-7A2EE0354A26}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{611175B6-2F78-418A-BFBF-7A2EE0354A26}" => key removed successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => key removed successfully.
Files\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.) => Error: No automatic fix found for this entry.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{75F766C5-A98E-4657-A834-45E99DEA708F}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{75F766C5-A98E-4657-A834-45E99DEA708F}" => key removed successfully.
C:\Windows\System32\Tasks\{654F8E54-F962-41DC-AD62-ECC5691E0859} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{654F8E54-F962-41DC-AD62-ECC5691E0859}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{77E5C7D3-48CC-408F-97C8-577EBC596A3F}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{77E5C7D3-48CC-408F-97C8-577EBC596A3F}" => key removed successfully.
C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-Martin-PC-Martin => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AdobeAAMUpdater-1.0-Martin-PC-Martin" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{97349B8A-51DF-469D-942C-7D9593D01FB2}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{97349B8A-51DF-469D-942C-7D9593D01FB2}" => key removed successfully.
C:\Windows\System32\Tasks\Adobe Flash Player Updater => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash Player Updater" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9D64C903-66F9-4E83-B6E5-5F886A407961}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9D64C903-66F9-4E83-B6E5-5F886A407961}" => key removed successfully.
C:\Windows\System32\Tasks\Adobe Acrobat Update Task => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Acrobat Update Task" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DC3A3D53-D37C-4C7F-82D4-E0F7870DE012}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DC3A3D53-D37C-4C7F-82D4-E0F7870DE012}" => key removed successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => key removed successfully.
C:\Windows\Tasks\Adobe Flash Player Updater.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
C:\Program Files\Google\Update => moved successfully

"C:\Users\Martin\AppData\Local\Temp" folder move:

Could not move "C:\Users\Martin\AppData\Local\Temp" => Scheduled to move on reboot.


Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 2015-12-07 18:33:42)

==> ATTENTION: ATTENTION: System is not rebooted.
"C:\Users\Martin\AppData\Local\Temp" => Could not move

==== End of Fixlog 18:33:44 ====

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Dlouhé spouštění Notebooku

Příspěvekod jaro3 » 07 pro 2015 18:48

Co problémy?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

martyxxx
Level 1
Level 1
Příspěvky: 58
Registrován: červen 12
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Dlouhé spouštění Notebooku

Příspěvekod martyxxx » 07 pro 2015 18:59

Restartoval jsem a vypadá to podstatně lépe. Uvidíme po delší době. Když tak se ozvu. Děkuji mockrát za pomoc. Donate s radostí pošlu :-)

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Dlouhé spouštění Notebooku

Příspěvekod jaro3 » 07 pro 2015 19:07

Stáhni si zde DelFix
https://toolslib.net/downloads/viewdownload/2-delfix/

ulož si soubor na plochu.
Poklepáním na ikonu spusť nástroj Delfix.exe
( Ve Windows Vista, Windows 7 a 8, musíš spustit soubor pravým tlačítkem myši -> Spustit jako správce .
V hlavním menu, zkontroluj tyto možnosti - Odstranění dezinfekce nástrojů (Remove desinfection tools) – Vyčistit body obnovy (Purge System Restore)
Poté klikněte na tlačítko Spustit (Run) a nech nástroj dělat svoji práci

Poté se zpráva se otevře (DelFix.txt). Vlož celý obsah zprávy sem.Jinak je zpráva zde:
v C: \ DelFix.txt



Díky za příspěvek!

Pokud nebudou problémy , je to vše a můžeš dát vyřešeno , zelenou fajfku.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

martyxxx
Level 1
Level 1
Příspěvky: 58
Registrován: červen 12
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Dlouhé spouštění Notebooku

Příspěvekod martyxxx » 07 pro 2015 21:28

Tak bezproblémový start byl jen po tom prvním restartu jak jsem odpovídal výše. Po dalších restartech už se mi žádný program otevřít nepodařilo, nebo když už jsem nějaký program otevřel, tak s ním nic dělat nešlo. Nešel ani zavřít. Při zavření přes správce úloh vyskočilo vždy oznámení xxx program neodpovídá.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Dlouhé spouštění Notebooku

Příspěvekod jaro3 » 08 pro 2015 09:18

Stáhni si Memtest:

Políčko , ve kterém je napsáno:
All unused RAM -ponech , jak je.
-dej Start , nech nejméně 2h běžet , pokud bude po 2h stále 0 errors , jsou v pořádku.


Ještě zkontrolovat HDD na chyby ,popř. zkusit jeho defragmentaci ..


Stáhni si CrystalDiskInfo
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

martyxxx
Level 1
Level 1
Příspěvky: 58
Registrován: červen 12
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Dlouhé spouštění Notebooku

Příspěvekod martyxxx » 13 pro 2015 12:59

memtest nejde spustit. Po kliknutí na start testing vyskočí tato hláška
Obrázek


Tady log z Cristal..
----------------------------------------------------------------------------
CrystalDiskInfo 6.5.2 (C) 2008-2015 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 7 Home Basic SP1 [6.1 Build 7601] (x86)
Date : 2015/12/13 12:54:48

-- Controller Map ----------------------------------------------------------
+ ATA Channel 0 (0) [ATA]
- ST500LT012-9WS142 ATA Device
+ ATA Channel 4 (4) [ATA]
- PLDS DVD-RW DS8A9SH ATA Device
+ Intel(R) 7 Series/C216 Chipset Family SATA AHCI Controller - 1E03 [ATA]
- ATA Channel 0 (0)
- ATA Channel 4 (4)

-- Disk List ---------------------------------------------------------------
(1) ST500LT012-9WS142 : 500,1 GB [0/0/0, pd1] - st

----------------------------------------------------------------------------
(1) ST500LT012-9WS142
----------------------------------------------------------------------------
Model : ST500LT012-9WS142
Firmware : 0001LVM1
Serial Number : W0VFNDP0
Disk Size : 500,1 GB (7,9/137,4/500,1/500,1)
Buffer Size : 16384 KB
Queue Depth : 32
# of Sectors : 976773168
Rotation Rate : 5400 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 4
Transfer Mode : SATA/300 | SATA/300
Power On Hours : 4839 hod.
Power On Count : 1275 krát
Temperature : 40 C (104 F)
Health Status : Pozor
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 8080h [ON]
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 105 _84 _34 00000A5FC41C Počet chyb čtení
03 _99 _99 __0 000000000000 Čas na roztočení ploten
04 _99 _99 _20 000000000517 Počet spuštění/zastavení
05 100 100 _36 000000000000 Počet přemapovaných sektorů
07 _75 _60 _30 00040726F949 Počet chybných hledání
09 _95 _95 __0 2148000012E7 Hodin v činnosti
0A 100 100 _97 000000000000 Počet opakovaných pokusů o roztočení ploten
0C _99 _99 _20 0000000004FB Počet cyklů zapnutí zařízení
B8 100 100 _99 000000000000 Ukončovacích chyb
BB __1 __1 __0 000000001D29 Ohlášeno neopravitelných chyb
BC 100 _99 __0 000000000002 Časový limit příkazu
BD 100 100 __0 000000000000 Vysoká rychlost zápisu
BE _60 _48 _45 000028170028 Teplota toku vzduchu
BF 100 100 __0 0000000000E1 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 00000000001D Počet vypnutí disku
C1 _75 _75 __0 00000000C77C Počet cyklů načítání/vymazání
C2 _40 _52 __0 000F00000028 Teplota
C4 _95 _95 _30 EC4E000011F6 Počet udalostí s číslem realokování sektorů
C5 100 100 __0 000000000008 Počet podezřelých sektorů
C6 100 100 __0 000000000008 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
FE 100 100 __0 000000000000 Ochrana proti pádu

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0C5A 3FFF C837 000F 0000 0000 003F 0000 0000 0000
010: 2020 2020 2020 2020 2020 2020 5730 5646 4E44 5030
020: 0000 8000 0004 3030 3031 4C56 4D31 5354 3530 304C
030: 5430 3132 2D39 5753 3134 3220 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 4000 2F00
050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0407 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 0F06 0004 0048 0040
080: 01F8 0029 346B 7D09 6123 3469 BC09 6123 007F 0030
090: 0030 8080 FFFE 0000 FE00 0000 0000 0000 0000 0000
100: 6030 3A38 0000 0000 0000 0000 6003 0000 5000 C500
110: 6DEB B5A0 0000 0000 0000 0000 0000 0000 0000 401E
120: 401E 0000 0000 0000 0000 0000 0000 0000 0029 6030
130: 3A38 6030 3A38 2020 0002 0140 0108 5000 3C06 3C0A
140: 0000 003C 0000 0008 0000 0000 00FF 0280 0004 0000
150: 0008 0000 0000 0000 0000 0000 0000 0000 5F00 8000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0003 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 1031 0000 0000 4000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0002 0000 101F 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 20A5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 0A 00 01 0F 00 69 54 1C C4 5F 0A 00 00 00 03 03
010: 00 63 63 00 00 00 00 00 00 00 04 32 00 63 63 17
020: 05 00 00 00 00 00 05 33 00 64 64 00 00 00 00 00
030: 00 00 07 0F 00 4B 3C 49 F9 26 07 04 00 00 09 32
040: 00 5F 5F E7 12 00 00 48 21 0C 0A 13 00 64 64 00
050: 00 00 00 00 00 00 0C 32 00 63 63 FB 04 00 00 00
060: 00 00 B8 32 00 64 64 00 00 00 00 00 00 00 BB 32
070: 00 01 01 29 1D 00 00 00 00 00 BC 32 00 64 63 02
080: 00 00 00 00 00 00 BD 3A 00 64 64 00 00 00 00 00
090: 00 00 BE 22 00 3C 30 28 00 17 28 00 00 00 BF 32
0A0: 00 64 64 E1 00 00 00 00 00 00 C0 32 00 64 64 1D
0B0: 00 00 00 00 00 00 C1 32 00 4B 4B 7C C7 00 00 00
0C0: 00 00 C2 22 00 28 34 28 00 00 00 0F 00 00 C4 0F
0D0: 00 5F 5F F6 11 00 00 4E EC 09 C5 12 00 64 64 08
0E0: 00 00 00 00 00 00 C6 10 00 64 64 08 00 00 00 00
0F0: 00 00 C7 3E 00 C8 C8 00 00 00 00 00 00 00 FE 32
100: 00 64 64 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 73
170: 03 00 01 00 01 65 02 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 06 01 01 01 01 01 01 01
190: 01 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00
1A0: 00 00 00 00 E1 00 00 00 C2 86 A1 50 DD 0F 00 00
1B0: 00 00 00 00 01 00 D9 1C 97 92 62 F4 CF BF 02 00
1C0: 5C 96 CE A7 0D C6 29 00 00 00 00 00 00 00 00 00
1D0: 01 00 00 00 14 00 00 00 DE 21 00 00 3C 00 06 00
1E0: 00 00 00 00 D8 A5 10 00 00 00 00 00 00 00 00 07
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 DE

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 01 00 01 22 00 00 00 00 00 00 00 00 00 00 03 00
010: 00 00 00 00 00 00 00 00 00 00 04 14 00 00 00 00
020: 00 00 00 00 00 00 05 24 00 00 00 00 00 00 00 00
030: 00 00 07 1E 00 00 00 00 00 00 00 00 00 00 09 00
040: 00 00 00 00 00 00 00 00 00 00 0A 61 00 00 00 00
050: 00 00 00 00 00 00 0C 14 00 00 00 00 00 00 00 00
060: 00 00 B8 63 00 00 00 00 00 00 00 00 00 00 BB 00
070: 00 00 00 00 00 00 00 00 00 00 BC 00 00 00 00 00
080: 00 00 00 00 00 00 BD 00 00 00 00 00 00 00 00 00
090: 00 00 BE 2D 00 00 00 00 00 00 00 00 00 00 BF 00
0A0: 00 00 00 00 00 00 00 00 00 00 C0 00 00 00 00 00
0B0: 00 00 00 00 00 00 C1 00 00 00 00 00 00 00 00 00
0C0: 00 00 C2 00 00 00 00 00 00 00 00 00 00 00 C4 1E
0D0: 00 00 00 00 00 00 00 00 00 00 C5 00 00 00 00 00
0E0: 00 00 00 00 00 00 C6 00 00 00 00 00 00 00 00 00
0F0: 00 00 C7 00 00 00 00 00 00 00 00 00 00 00 FE 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 71

Uživatelský avatar
jerabina
člen Security týmu
Level 6
Level 6
Příspěvky: 3647
Registrován: březen 13
Bydliště: Litoměřice
Pohlaví: Muž
Stav:
Offline

Re: Dlouhé spouštění Notebooku

Příspěvekod jerabina » 13 pro 2015 15:56

Ten Memtest musíš spustit několikrát.

Kód: Vybrat vše

00000A5FC41C Počet chyb čtení
00040726F949 Počet chybných hledání
000000001D29 Ohlášeno neopravitelných chyb
0000000000E1 Počet udalostí zaznamenaných otřesovým senzorem
EC4E000011F6 Počet udalostí s číslem realokování sektorů
000000000008 Počet podezřelých sektorů
000000000008 Počet neopravitelných sektorů


Ten HDD vypadá, že je poškozený, může se jednat o zdroj problémů.

+ udělej znova FRST
Když nevíš jak dál, přichází na řadu prostudovat manuál!
HJT návod

Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.

martyxxx
Level 1
Level 1
Příspěvky: 58
Registrován: červen 12
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Dlouhé spouštění Notebooku

Příspěvekod martyxxx » 13 pro 2015 20:13

memtest se podařilo spustit. Výsledek Errors 0.

Tady logy z FRST

Additional scan result of Farbar Recovery Scan Tool (x86) Version:12-12-2015 01
Ran by Martin (2015-12-13 20:00:03)
Running from C:\Users\Martin\Desktop
Microsoft Windows 7 Home Basic Service Pack 1 (X86) (2013-12-30 15:46:42)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3048907222-2003921856-3909994109-500 - Administrator - Disabled)
Guest (S-1-5-21-3048907222-2003921856-3909994109-501 - Limited - Disabled)
Martin (S-1-5-21-3048907222-2003921856-3909994109-1000 - Administrator - Enabled) => C:\Users\Martin

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

32 Bit HP CIO Components Installer (Version: 7.1.8 - Hewlett-Packard) Hidden
Adobe AIR (HKLM\...\Adobe AIR) (Version: 1.5.3.9120 - Adobe Systems Inc.)
Adobe Community Help (HKLM\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM\...\Adobe Creative Cloud) (Version: 3.4.1.181 - Adobe Systems Incorporated)
Adobe Flash Player 10 ActiveX (HKLM\...\{B7B3E9B3-FB14-4927-894B-E9124509AF5A}) (Version: 10.0.32.18 - Adobe Systems, Inc.)
Adobe Flash Player 19 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 19.0.0.245 - Adobe Systems Incorporated)
Adobe Flash Player 20 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 20.0.0.228 - Adobe Systems Incorporated)
Adobe Media Player (HKLM\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated)
Adobe Photoshop CC 2014 (32 Bit) (HKLM\...\{7C25E7A0-A0A1-4B87-BB30-BF0FBDC37878}) (Version: 15.2 - Adobe Systems Incorporated)
Adobe Photoshop CS5 (HKLM\...\{15FEDA5F-141C-4127-8D7E-B962D1742728}) (Version: 12.0 - Adobe Systems Incorporated)
Adobe Photoshop Lightroom 6.0 (HKLM\...\Adobe Photoshop Lightroom 6.0) (Version: 6.0 - Adobe)
Adobe Reader XI (11.0.13) - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.13 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM\...\Adobe Shockwave Player) (Version: 12.1.3.153 - Adobe Systems, Inc.)
AIO_CDB_ProductContext (Version: 130.0.365.000 - Hewlett-Packard) Hidden
AIO_CDB_Software (Version: 130.0.365.000 - Hewlett-Packard) Hidden
AIO_Scan (Version: 130.0.421.000 - Hewlett-Packard) Hidden
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Alcor Micro USB Card Reader (HKLM\...\AmUStor) (Version: 3.10.3042.71197 - Alcor Micro Corp.)
Alcor Micro USB Card Reader (Version: 3.10.3042.71197 - Alcor Micro Corp.) Hidden
Avast Free Antivirus (HKLM\...\Avast) (Version: 11.1.2245 - AVAST Software)
Balíček ovladače systému Windows - u-blox AG (ubloxusb) Ports (09/12/2008 1.2.0.1) (HKLM\...\38C9A50B4FB83FBC3B6B66EAC2E4A7B2930F8D10) (Version: 09/12/2008 1.2.0.1 - u-blox AG)
Broadcom 802.11 Network Adapter (HKLM\...\Broadcom 802.11 Network Adapter) (Version: 6.20.55.57 - Broadcom Corporation)
BufferChm (Version: 130.0.331.000 - Hewlett-Packard) Hidden
Cisco EAP-FAST Module (Version: 2.2.14 - Cisco Systems, Inc.) Hidden
Cisco LEAP Module (Version: 1.0.19 - Cisco Systems, Inc.) Hidden
Cisco PEAP Module (Version: 1.1.6 - Cisco Systems, Inc.) Hidden
Copy (Version: 130.0.428.000 - Hewlett-Packard) Hidden
CrystalDiskInfo 6.5.2 (HKLM\...\CrystalDiskInfo_is1) (Version: 6.5.2 - Crystal Dew World)
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden
Destinations (Version: 130.0.0.0 - Hewlett-Packard) Hidden
DeviceDiscovery (Version: 130.0.465.000 - Hewlett-Packard) Hidden
DocProc (Version: 13.0.0.0 - Hewlett-Packard) Hidden
Dynamic-Photo HDR 3.0 (HKLM\...\Dynamic-Photo HDR_is1) (Version: - Mediachance)
F300 (Version: 130.0.365.000 - Hewlett-Packard) Hidden
F300_Help (Version: 82.0.242.000 - Hewlett-Packard) Hidden
F300Trb (Version: 82.0.242.000 - Hewlett-Packard) Hidden
FastShare.cz verze 2.1 (HKLM\...\FastShare.cz_is1) (Version: 2.1 - )
FastStone Image Viewer 5.3 (HKLM\...\FastStone Image Viewer) (Version: 5.3 - FastStone Soft)
Fax (Version: 130.0.418.000 - Hewlett-Packard) Hidden
Fotogalerie (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Garmin Communicator Plugin (HKLM\...\{032A13FF-D26D-4844-9597-7EF698627985}) (Version: 4.1.0 - Garmin Ltd or its subsidiaries)
Geeks Toy - Betfair (HKLM\...\{CBE7C963-8799-4382-8320-2C4B25BEC31F}) (Version: 1.3.7 - The Geek)
Google Drive (HKLM\...\{1C3D2F92-D25E-4D98-B810-3F3B0857BF26}) (Version: 1.26.0707.2863 - Google, Inc.)
Google Earth (HKLM\...\{1A295C25-6E02-49FB-826B-F0D2C56FFA4E}) (Version: 7.1.4.1529 - Google)
Google Chrome (HKLM\...\Google Chrome) (Version: 47.0.2526.73 - Google Inc.)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.29.1 - Google Inc.) Hidden
GPBaseService2 (Version: 130.0.371.000 - Hewlett-Packard) Hidden
HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP)
HP Smart Web Printing 4.51 (HKLM\...\HP Smart Web Printing) (Version: 4.51 - HP)
HP Solution Center 13.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 13.0 - HP)
HP Support Solutions Framework (HKLM\...\{FC3C2B77-6800-48C6-A15D-9D1031130C16}) (Version: 11.51.0049 - Hewlett-Packard Company)
HP Update (HKLM\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HPPhotoGadget (Version: 130.0.282.000 - Hewlett-Packard) Hidden
HPProductAssistant (Version: 130.0.371.000 - Hewlett-Packard) Hidden
HTC Driver Installer (HKLM\...\{4CEEE5D0-F905-4688-B9F9-ECC710507796}) (Version: 4.1.0.001 - HTC Corporation)
Integrated Camera (HKLM\...\{ADE16A9D-FBDC-4ecc-B6BD-9C31E51D0332}) (Version: 5.13.312.31 - Vimicro)
Intel(R) Control Center (HKLM\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1011 - Intel Corporation)
Intel(R) Manageability Engine Firmware Recovery Agent (HKLM\...\{A6C48A9F-694A-4234-B3AA-62590B668927}) (Version: 1.0.0.36702 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.0.0.1323 - Intel Corporation)
Intel(R) Processor Graphics (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3223 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.4.225 - Intel Corporation)
IPTInstaller (HKLM\...\{08208143-777D-4A06-BB54-71BF0AD1BB70}) (Version: 4.0.8 - HTC)
Java 7 Update 67 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle)
Java 8 Update 20 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218020F0}) (Version: 8.0.200 - Oracle Corporation)
JDownloader 0.9 (HKLM\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH)
Junk Mail filter update (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Kingo Android ROOT version 1.2.2.1915 (HKLM\...\{AE7675D6-0B31-494F-ABFA-822E1A0FDF17}_is1) (Version: 1.2.2.1915 - Kingosoft Technology Ltd.)
Lenovo Bluetooth with Enhanced Data Rate Software (HKLM\...\{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}) (Version: 6.5.1.4000 - Broadcom Corporation)
Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.10.20 - Lenovo)
MetaTrader 4 (HKLM\...\MetaTrader 4) (Version: 4.00 - MetaQuotes Software Corp.)
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Movie Maker (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 35.0 (x86 cs) (HKLM\...\Mozilla Firefox 35.0 (x86 cs)) (Version: 35.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 30.0 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
Navigator 11 - Setup Utility 11.0.8-1 (HKLM\...\MAPFACTOR_SETUP_UTILITY_HYBRID_11_is1) (Version: 11.0.8-1 - MapFactor s.r.o)
OCR Software by I.R.I.S. 13.0 (HKLM\...\HPOCR) (Version: 13.0 - HP)
Opera Stable 34.0.2036.25 (HKLM\...\Opera 34.0.2036.25) (Version: 34.0.2036.25 - Opera Software)
PC Navigator 12 12.0.7-1 (HKLM\...\PCNavigator12_is1) (Version: 12.0.7-1 - MapFactor s.r.o)
PC Navigator 9 9.0.39-1 (HKLM\...\PCNavigator9_is1) (Version: 9.0.39-1 - MapFactor)
PDF Settings CS5 (Version: 10.0 - Adobe Systems Incorporated) Hidden
Photomatix Pro version 5.0.5 (HKLM\...\PhotomatixPro5x32_is1) (Version: 5.0.5 - HDRsoft Ltd)
Realtek Ethernet Controller Driver (HKLM\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.65.1025.2012 - Realtek)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6909 - Realtek Semiconductor Corp.)
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.43.0 - SAMSUNG Electronics Co., Ltd.)
Scan (Version: 13.0.0.0 - Hewlett-Packard) Hidden
SDÍLEJ.CZ Manager (HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\...\69f070f18ade444c) (Version: 0.0.1.42 - SDÍLEJ.CZ)
SlimDrivers (HKLM\...\{A5457401-D56A-43F2-9524-78E54A7FC07A}) (Version: 2.2.32705 - SlimWare Utilities, Inc.)
SmartWebPrinting (Version: 130.0.457.000 - Hewlett-Packard) Hidden
Software602 Form Filler (HKLM\...\{F8F79FE0-64EA-439C-A6AE-B1946A178F24}) (Version: 4.55 - Software602 a.s.)
SolutionCenter (Version: 130.0.373.000 - Hewlett-Packard) Hidden
Status (Version: 130.0.469.000 - Hewlett-Packard) Hidden
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TeamViewer 10 (HKLM\...\TeamViewer) (Version: 10.0.47484 - TeamViewer)
Toolbox (Version: 130.0.648.000 - Hewlett-Packard) Hidden
Total Commander (Remove or Repair) (HKLM\...\Totalcmd) (Version: 7.50 - C. Ghisler & Co.)
TrayApp (Version: 130.0.422.000 - Hewlett-Packard) Hidden
Universal Adb Driver (HKLM\...\{D9C4202E-6D51-4B06-A8F1-22316E654BCA}) (Version: 1.0.0 - ClockworkMod)
UnloadSupport (Version: 11.0.0 - Hewlett-Packard) Hidden
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Veselé Omalovánky 1 - malování pro děti (HKLM\...\Veselé Omalovánky 1_is1) (Version: - Martin Roubec)
Video Download Capture verze 5.0.3 (HKLM\...\{3C9D008D-3716-4C3F-90CD-38ED57568FAB}_is1) (Version: 5.0.3 - APOWERSOFT LIMITED)
VLC media player (HKLM\...\VLC media player) (Version: 2.2.1 - VideoLAN)
VSO ConvertXToDVD (HKLM\...\{CE1F93C0-4353-4C9D-84DA-AB4E7C63ED32}_is1) (Version: 5.1.0.9 - VSO Software)
WebReg (Version: 130.0.132.017 - Hewlett-Packard) Hidden
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
WinRAR 4.20 (32-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)
Zoner Photo Studio 17 (HKLM\...\ZonerPhotoStudio17_CZ_is1) (Version: 17.0.1.1 - ZONER software)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Restore Points =========================

13-12-2015 14:21:53 Naplánovaný kontrolní bod

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:04 - 2015-12-05 21:36 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts

127.0.0.1 localhost

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {198BBA2E-E41B-4695-848B-8D44C9C32A04} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2012-06-14] (Intel Corporation)
Task: {1BB09FC1-B8C8-464F-AED0-1A2C025D8E9A} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\system32\Macromed\Flash\FlashUtil32_20_0_0_228_pepper.exe [2015-12-13] (Adobe Systems Incorporated)
Task: {2FA54DDE-3E4E-4803-8D59-FDC03AEB88F2} - System32\Tasks\{58A34CD9-B1A8-48BB-BDF0-9C6B2CFEEE26} => pcalua.exe -a C:\Users\Martin\Downloads\ytd-1.45.exe -d C:\Users\Martin\Downloads
Task: {4EDEB27E-1822-45E5-BE0C-3DDB22DAD0E3} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2015-12-04] (AVAST Software)
Task: {60DCD767-4EA0-4999-BF16-EC674B6C1767} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2012-06-14] (Intel Corporation)
Task: {981A687B-3E44-4CF2-9AB7-0B9E7F6AA63C} - System32\Tasks\Opera scheduled Autoupdate 1450007740 => C:\Program Files\Opera\launcher.exe [2015-12-04] (Opera Software)
Task: {B421CB68-9033-47AA-A508-0E7DC6636AE1} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-12-12] (AVAST Software)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\system32\Macromed\Flash\FlashUtil32_20_0_0_228_pepper.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2015-12-12 14:45 - 2015-12-12 14:45 - 00103888 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-12-12 14:45 - 2015-12-12 14:45 - 00125512 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-12-13 13:19 - 2015-12-13 13:19 - 02803200 _____ () C:\Program Files\AVAST Software\Avast\defs\15121300\algo.dll
2015-12-12 14:45 - 2015-12-12 14:45 - 00469008 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2014-07-13 16:27 - 2012-12-07 16:26 - 00167424 _____ () C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
2013-12-30 17:40 - 2013-06-27 07:56 - 00094208 _____ () C:\Windows\System32\IccLibDll.dll
2015-12-12 14:45 - 2015-12-12 14:45 - 40539648 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2010-03-09 04:28 - 2010-03-09 04:28 - 00073728 _____ () C:\Program Files\Adobe\Adobe Bridge CS5\Symlib.dll
2010-03-09 04:28 - 2010-03-09 04:28 - 02748416 _____ () C:\Program Files\Adobe\Adobe Bridge CS5\LIBMYSQLD.dll
2010-02-10 19:10 - 2010-02-10 19:10 - 00108256 _____ () C:\Program Files\Common Files\Adobe\Bridge CS5 Extensions\Adobe Output Module\mediagallery\resources\plugins\XSLT.dll
2014-11-30 22:31 - 2014-09-09 13:30 - 00603648 _____ () C:\Program Files\Zoner\Photo Studio 17\Program32\SpiderMonkey.dll
2015-12-13 13:48 - 2015-12-13 13:48 - 00098816 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\win32api.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00110080 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\pywintypes27.dll
2015-12-13 13:48 - 2015-12-13 13:48 - 00364544 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\pythoncom27.dll
2015-12-13 13:48 - 2015-12-13 13:48 - 00046080 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\_socket.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 01208320 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\_ssl.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00320512 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\win32com.shell.shell.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00776704 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\_hashlib.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 01176576 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\wx._core_.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00806400 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\wx._gdi_.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00816128 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\wx._windows_.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 01067008 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\wx._controls_.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00733184 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\wx._misc_.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00682496 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\pysqlite2._sqlite.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00088064 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\_ctypes.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00119808 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\win32file.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00108544 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\win32security.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00007168 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\hashobjs_ext.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00017920 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\thumbnails_ext.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00079360 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\usb_ext.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00167936 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\win32gui.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00018432 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\win32event.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00128512 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\_elementtree.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00127488 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\pyexpat.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00013824 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\common.time34.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00036864 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\_psutil_windows.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00038912 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\win32inet.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00525640 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\windows._lib_cacheinvalidation.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00011264 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\win32crypt.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00077312 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\wx._html2.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00027136 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\_multiprocessing.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00020480 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\_yappi.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00035840 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\win32process.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00686080 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\unicodedata.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00123392 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\wx._wizard.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00024064 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\win32pipe.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00010240 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\select.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00025600 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\win32pdh.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00017408 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\win32profile.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00022528 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\win32ts.pyd
2015-12-13 13:48 - 2015-12-13 13:48 - 00078848 _____ () C:\Users\Martin\AppData\Local\Temp\_MEI31922\wx._animate.pyd
2011-08-15 20:12 - 2011-08-15 20:12 - 02603520 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\QtCore4.dll
2011-08-15 20:15 - 2011-08-15 20:15 - 00382464 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\QtXml4.dll
2011-08-17 16:41 - 2011-08-17 16:41 - 00400384 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\sqlite3.dll
2011-08-17 16:48 - 2011-08-17 16:48 - 00322048 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\log4cplus.dll
2012-06-14 11:57 - 2012-06-14 11:57 - 00015872 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\featureController.dll
2011-08-15 20:12 - 2011-08-15 20:12 - 01006592 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\QtNetwork4.dll
2011-08-17 16:48 - 2011-08-17 16:48 - 00195584 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\libgsoap.dll
2011-08-15 19:23 - 2011-08-15 19:23 - 00062464 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\zlib1.dll
2012-06-14 11:56 - 2012-06-14 11:56 - 00481792 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\DeviceProfile.dll
2012-06-14 12:06 - 2012-06-14 12:06 - 00500064 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\plugin\PServerPlugin.dll
2012-06-14 11:55 - 2012-06-14 11:55 - 00013824 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\eventsSender.dll
2012-07-24 12:06 - 2012-07-24 12:06 - 00119808 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\updateui.exe
2011-07-19 16:05 - 2011-07-19 16:05 - 14978048 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\QtWebKit4.dll
2011-07-19 16:04 - 2011-07-19 16:04 - 00317952 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\phonon4.dll
2011-08-15 20:17 - 2011-08-15 20:17 - 09224704 _____ () C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\QtGui4.dll
2015-12-13 12:55 - 2015-12-04 08:18 - 61547128 _____ () C:\Program Files\Opera\34.0.2036.25\opera.dll
2015-12-13 12:55 - 2015-12-04 08:18 - 01983096 _____ () C:\Program Files\Opera\34.0.2036.25\libglesv2.dll
2015-12-13 12:55 - 2015-12-04 08:18 - 00081528 _____ () C:\Program Files\Opera\34.0.2036.25\libegl.dll
2015-11-14 01:59 - 2015-07-27 16:48 - 03323392 _____ () C:\Users\Martin\Desktop\botbeetle.exe
2013-12-30 17:35 - 2012-01-11 11:12 - 00663552 _____ () C:\Windows\system32\vmprp331.ax
2015-12-04 14:53 - 2015-11-24 09:00 - 01583432 _____ () C:\Program Files\Google\Chrome\Application\47.0.2526.73\libglesv2.dll
2015-12-04 14:53 - 2015-11-24 09:00 - 00081224 _____ () C:\Program Files\Google\Chrome\Application\47.0.2526.73\libegl.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3048907222-2003921856-3909994109-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: Media is not connected to internet.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{2A50C7A1-9940-413B-9D33-68355CB5B28A}] => (Allow) c:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [{5041096B-E086-4161-932F-8ED052966C92}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
FirewallRules: [{1D4466A7-9AB9-4B19-8CF9-02D0309FA334}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe
FirewallRules: [{89603836-6887-4D2D-B4A3-51DB23918855}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe
FirewallRules: [{72F6B730-257B-410A-B439-4AC14B0236D9}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe
FirewallRules: [{1F534713-28B5-48D0-A533-A43D4BF55FE6}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hposid01.exe
FirewallRules: [{2C9B310C-9E75-48B2-A7F2-FBA2E12578A1}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe
FirewallRules: [{3C60AA10-1A55-4924-8497-7D8E0CDD1622}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqcopy2.exe
FirewallRules: [{7E7FA899-0CBC-4BAF-8CEF-A5AEDC48A9CB}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe
FirewallRules: [{7955D9FC-200F-41DC-8FB7-4D12B2436C24}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe
FirewallRules: [{A3C9119C-33B0-41E9-9C3F-8F28A11B0D38}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe
FirewallRules: [{5F879EBE-DB5A-4668-9888-B6778B91309D}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe
FirewallRules: [{6D1243B2-E0C8-4D3F-9AD1-BE8C5701AA9F}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe
FirewallRules: [{C62B1647-B9C4-41C9-B430-04F56DE57D43}] => (Allow) C:\Program Files\common files\hp\digital imaging\bin\hpqphotocrm.exe
FirewallRules: [{99BD3028-8327-427D-889C-5C95C23A0807}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe
FirewallRules: [{C81B86C4-62CC-4F7C-B4D6-86728393FACE}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe
FirewallRules: [{468A494F-AE54-46DE-A70D-4326A508B7F2}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpofxs08.exe
FirewallRules: [{AC536AE9-43DB-41A2-9792-7995132E21BF}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqfxt08.exe
FirewallRules: [{2E6964B4-F3F7-4B9D-ADBE-5454CFE03032}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe
FirewallRules: [{E88E90A3-B86C-42DE-8891-71EF72ECADD4}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe
FirewallRules: [{DCCCCCE6-C590-4393-BA43-7D534AF554EE}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
FirewallRules: [{86C37FDE-3F33-46E0-8AB0-B68296C5D186}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe
FirewallRules: [{35BDBD74-EC6D-452D-9582-315B5479786B}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe
FirewallRules: [{612230DB-7CBE-45C9-A2CF-5C46B9A96351}] => (Allow) C:\Program Files\HP\hp software update\hpwucli.exe
FirewallRules: [{63717A3F-03D6-452E-97EC-4A93B4CFB35E}] => (Allow) C:\Program Files\HP\digital imaging\smart web printing\smartwebprintexe.exe
FirewallRules: [TCP Query User{559389DF-53B2-46CB-8CCA-0EBD9CA8B0F4}C:\program files\java\jre7\bin\jp2launcher.exe] => (Block) C:\program files\java\jre7\bin\jp2launcher.exe
FirewallRules: [UDP Query User{D2EA074E-B2E9-40D2-B991-FC1CFE4FBB72}C:\program files\java\jre7\bin\jp2launcher.exe] => (Block) C:\program files\java\jre7\bin\jp2launcher.exe
FirewallRules: [{A92D49DB-2A19-49C3-AE9F-3F6E2B811908}] => (Allow) C:\Program Files\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{8E779C7E-DF7F-424B-BAF7-B0488CFEF964}] => (Allow) LPort=2869
FirewallRules: [{FDB25CBE-3216-4D26-92D0-0334E23A5492}] => (Allow) LPort=1900
FirewallRules: [TCP Query User{DE810AA0-A54D-4F6E-978D-0154435FBF7F}C:\program files\java\jre1.8.0_20\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_20\bin\javaw.exe
FirewallRules: [UDP Query User{CC5F6253-1827-40C0-AFCF-311C99A558C2}C:\program files\java\jre1.8.0_20\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_20\bin\javaw.exe
FirewallRules: [{D1510288-EE60-4711-8BA7-D10EB7255218}] => (Allow) C:\Program Files\Zoner\Photo Studio 17\Program32\MediaServer.exe
FirewallRules: [{FC8D77A1-254E-416C-90BE-3DEE1318FE01}] => (Allow) C:\Program Files\Common Files\soft602\langserv.exe
FirewallRules: [{8DEFBF05-6C02-4F67-B356-30C1D450882C}] => (Allow) C:\Program Files\Common Files\soft602\langserv.exe
FirewallRules: [{E6FABD0B-D6C1-464E-8923-730E6D416350}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{46C98FA2-46A3-49DC-9FF8-1D6490F91821}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{A5A57421-7757-4384-AA3B-D5B99DC6E078}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\Video Download Capture.exe
FirewallRules: [{2802B40A-341E-4836-A5B0-EE2817555002}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\Video Download Capture.exe
FirewallRules: [{5C95A19E-EBB8-4D24-92EF-A978DF80A2BC}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftSrv.dll
FirewallRules: [{5433ACBC-87DC-41BA-8272-7B527C62BDAD}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftSrv.dll
FirewallRules: [{683E68B4-6B02-4049-A044-ED9AEB5AE66A}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftDump.dll
FirewallRules: [{74FDD985-EA94-4E5A-BE57-AB0BADC04C30}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftDump.dll
FirewallRules: [{86A27FD3-444F-44E6-8401-5444AB5F42DF}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftAC.dll
FirewallRules: [{570A654D-7A6D-438F-A5FE-DAD68A52D753}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftAC.dll
FirewallRules: [{97C99810-20CF-40AD-8310-AC9B55444860}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftPlayer.dll
FirewallRules: [{4A1C50F6-2478-4E86-839A-B14795E7A62B}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftPlayer.dll
FirewallRules: [{90F3E8B0-0CD3-44DE-991B-34A1B6FC7868}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftDownloaderHelp.dll
FirewallRules: [{D0D62C10-7AC6-43C3-9283-CE3DB2952279}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftDownloaderHelp.dll
FirewallRules: [{CEA02673-21DD-45BC-B58E-4E70A23C427C}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftHDSDump.dll
FirewallRules: [{F991969D-891D-4AD6-A7A8-3B71E940C517}] => (Allow) C:\Program Files\Apowersoft\Video Download Capture\ApowersoftHDSDump.dll
FirewallRules: [{039F9CEF-CE8D-473A-B620-8753F2D37977}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe
FirewallRules: [{AA3D9226-1720-4CFD-86FD-B12CC65870E8}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe
FirewallRules: [{F194758C-0407-4993-ADD6-9648BC516274}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{B6BF2028-8F67-4515-8AF2-AA1D47F9A269}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{7D8BB952-97C3-44C1-A223-1E160130D57C}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe
FirewallRules: [{17B249B5-F9DA-43F8-8F5A-80D8264D4FFE}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe
FirewallRules: [{9A2CA789-7E53-4E8E-B41B-7C7AA4288E4E}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (12/13/2015 07:59:00 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: botbeetle.exe, verze: 3.7.0.0, časové razítko: 0x55b652b4
Název chybujícího modulu: KERNELBASE.dll, verze: 6.1.7601.18847, časové razítko: 0x554d7b00
Kód výjimky: 0xe0434352
Posun chyby: 0x0000812f
ID chybujícího procesu: 0xbc4
Čas spuštění chybující aplikace: 0xbotbeetle.exe0
Cesta k chybující aplikaci: botbeetle.exe1
Cesta k chybujícímu modulu: botbeetle.exe2
ID zprávy: botbeetle.exe3

Error: (12/13/2015 07:59:00 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: botbeetle.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.InvalidOperationException
Stack:
at System.Collections.ArrayList+ArrayListEnumeratorSimple.MoveNext()
at System.Windows.Forms.Application.ExitInternal()
at System.Windows.Forms.Application+ThreadContext.OnThreadException(System.Exception)
at System.Windows.Forms.Timer+TimerNativeWindow.OnThreadException(System.Exception)
at System.Windows.Forms.NativeWindow.Callback(IntPtr, Int32, IntPtr, IntPtr)
at System.Windows.Forms.UnsafeNativeMethods.DispatchMessageW(MSG ByRef)
at System.Windows.Forms.Application+ComponentManager.System.Windows.Forms.UnsafeNativeMethods.IMsoComponentManager.FPushMessageLoop(IntPtr, Int32, Int32)
at System.Windows.Forms.Application+ThreadContext.RunMessageLoopInner(Int32, System.Windows.Forms.ApplicationContext)
at System.Windows.Forms.Application+ThreadContext.RunMessageLoop(Int32, System.Windows.Forms.ApplicationContext)
at System.Windows.Forms.Application.Run(System.Windows.Forms.Form)
at b.a()

Error: (12/13/2015 01:46:19 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/12/2015 06:45:49 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/12/2015 06:40:51 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/12/2015 06:25:18 PM) (Source: Application Error) (EventID: 1005) (User: )
Description: Systém Windows nemůže získat přístup k souboru C:\Windows\System32\diagtrack.dll z jednoho z těchto důvodů:
došlo k problému s připojením k síti, s diskem, na kterém je soubor uložen, nebo
s ovladači ukládání nainstalovanými v tomto počítači; nebo disk chybí.
Systém Windows kvůli této chybě ukončil program Host Process for Windows Services.

Program: Host Process for Windows Services
Soubor: C:\Windows\System32\diagtrack.dll

Hodnota chyby je uvedena v části Další údaje.
Akce uživatele
1. Otevřete soubor znovu.
Může se jednat o dočasný problém, který se při novém spuštění programu nebude opakovat.
2.
Pokud k souboru stále nelze získat přístup a:
- Nachází se v síti,
měl by správce sítě ověřit, zda nedošlo k problému se sítí a zda lze server kontaktovat.
- Je na vyměnitelném disku (například disketě nebo disku CD-ROM), ověřte, zda je disk správně vložen do počítače.
3. Zkontrolujte a opravte systém souborů pomocí nástroje CHKDSK. Ten lze spustit tak, že kliknete na tlačítko Start a příkaz Spustit, zadáte příkaz CMD a kliknete na tlačítko OK. Do příkazového řádku zadejte příkaz CHKDSK /F a stiskněte klávesu ENTER.
4. Pokud potíže potrvají, obnovte soubor ze záložní kopie.
5. Zjistěte, zda lze otevřít jiné soubory na stejném disku. Pokud ne, může být disk poškozen. Jedná-li se o pevný disk, obraťte se na správce nebo na dodavatele počítačového hardwaru
se žádostí o pomoc.

Další údaje
Hodnota chyby: C0000185
Typ disku: 3

Error: (12/12/2015 06:25:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: svchost.exe_DiagTrack, verze: 6.1.7600.16385, časové razítko: 0x4a5bc100
Název chybujícího modulu: diagtrack.dll, verze: 10.0.10242.0, časové razítko: 0x55a865cb
Kód výjimky: 0xc0000006
Posun chyby: 0x000b6f65
ID chybujícího procesu: 0x958
Čas spuštění chybující aplikace: 0xsvchost.exe_DiagTrack0
Cesta k chybující aplikaci: svchost.exe_DiagTrack1
Cesta k chybujícímu modulu: svchost.exe_DiagTrack2
ID zprávy: svchost.exe_DiagTrack3

Error: (12/12/2015 06:25:17 PM) (Source: Application Error) (EventID: 1005) (User: )
Description: Systém Windows nemůže získat přístup k souboru C:\Windows\System32\sysmain.dll z jednoho z těchto důvodů:
došlo k problému s připojením k síti, s diskem, na kterém je soubor uložen, nebo
s ovladači ukládání nainstalovanými v tomto počítači; nebo disk chybí.
Systém Windows kvůli této chybě ukončil program Host Process for Windows Services.

Program: Host Process for Windows Services
Soubor: C:\Windows\System32\sysmain.dll

Hodnota chyby je uvedena v části Další údaje.
Akce uživatele
1. Otevřete soubor znovu.
Může se jednat o dočasný problém, který se při novém spuštění programu nebude opakovat.
2.
Pokud k souboru stále nelze získat přístup a:
- Nachází se v síti,
měl by správce sítě ověřit, zda nedošlo k problému se sítí a zda lze server kontaktovat.
- Je na vyměnitelném disku (například disketě nebo disku CD-ROM), ověřte, zda je disk správně vložen do počítače.
3. Zkontrolujte a opravte systém souborů pomocí nástroje CHKDSK. Ten lze spustit tak, že kliknete na tlačítko Start a příkaz Spustit, zadáte příkaz CMD a kliknete na tlačítko OK. Do příkazového řádku zadejte příkaz CHKDSK /F a stiskněte klávesu ENTER.
4. Pokud potíže potrvají, obnovte soubor ze záložní kopie.
5. Zjistěte, zda lze otevřít jiné soubory na stejném disku. Pokud ne, může být disk poškozen. Jedná-li se o pevný disk, obraťte se na správce nebo na dodavatele počítačového hardwaru
se žádostí o pomoc.

Další údaje
Hodnota chyby: C0000185
Typ disku: 3

Error: (12/12/2015 06:25:17 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: svchost.exe_SysMain, verze: 6.1.7600.16385, časové razítko: 0x4a5bc100
Název chybujícího modulu: msvcrt.dll, verze: 7.0.7601.17744, časové razítko: 0x4eeaf722
Kód výjimky: 0xc0000006
Posun chyby: 0x00009c88
ID chybujícího procesu: 0x440
Čas spuštění chybující aplikace: 0xsvchost.exe_SysMain0
Cesta k chybující aplikaci: svchost.exe_SysMain1
Cesta k chybujícímu modulu: svchost.exe_SysMain2
ID zprávy: svchost.exe_SysMain3

Error: (12/12/2015 06:23:04 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


System errors:
=============
Error: (12/13/2015 07:21:00 PM) (Source: ipnathlp) (EventID: 31004) (User: )
Description: 0

Error: (12/13/2015 06:16:10 PM) (Source: atapi) (EventID: 11) (User: )
Description: Ovladač zjistil chybu řadiče na \Device\Ide\IdePort0.

Error: (12/13/2015 06:16:10 PM) (Source: atapi) (EventID: 11) (User: )
Description: Ovladač zjistil chybu řadiče na \Device\Ide\IdePort0.

Error: (12/13/2015 06:16:10 PM) (Source: atapi) (EventID: 11) (User: )
Description: Ovladač zjistil chybu řadiče na \Device\Ide\IdePort0.

Error: (12/13/2015 06:16:10 PM) (Source: atapi) (EventID: 11) (User: )
Description: Ovladač zjistil chybu řadiče na \Device\Ide\IdePort0.

Error: (12/13/2015 06:16:10 PM) (Source: atapi) (EventID: 11) (User: )
Description: Ovladač zjistil chybu řadiče na \Device\Ide\IdePort0.

Error: (12/13/2015 06:16:10 PM) (Source: atapi) (EventID: 11) (User: )
Description: Ovladač zjistil chybu řadiče na \Device\Ide\IdePort0.

Error: (12/13/2015 06:16:10 PM) (Source: atapi) (EventID: 11) (User: )
Description: Ovladač zjistil chybu řadiče na \Device\Ide\IdePort0.

Error: (12/13/2015 06:16:10 PM) (Source: atapi) (EventID: 11) (User: )
Description: Ovladač zjistil chybu řadiče na \Device\Ide\IdePort0.

Error: (12/13/2015 06:16:10 PM) (Source: atapi) (EventID: 11) (User: )
Description: Ovladač zjistil chybu řadiče na \Device\Ide\IdePort0.


==================== Memory info ===========================

Processor: Intel(R) Celeron(R) CPU 1005M @ 1.90GHz
Percentage of memory in use: 70%
Total physical RAM: 3175.74 MB
Available physical RAM: 944.27 MB
Total Virtual: 6349.79 MB
Available Virtual: 3547.94 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:465.66 GB) (Free:154.36 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 0C97625A)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Seznam[Bot] a 12 hostů