Prosím o kontrolu - taskeng.exe Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Kanovka
Level 2
Level 2
Příspěvky: 187
Registrován: říjen 13
Pohlaví: Žena
Stav:
Offline

Re: Prosím o kontrolu - taskeng.exe

Příspěvekod Kanovka » 11 kvě 2015 11:15

OTL Extras logfile created on: 8.5.2015 16:01:08 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Lucka\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17728)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

3,87 Gb Total Physical Memory | 1,73 Gb Available Physical Memory | 44,63% Memory free
7,73 Gb Paging File | 5,26 Gb Available in Paging File | 68,05% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 254,14 Gb Total Space | 64,23 Gb Free Space | 25,27% Space Free | Partition Type: NTFS
Drive D: | 29,00 Gb Total Space | 8,84 Gb Free Space | 30,47% Space Free | Partition Type: NTFS

Computer Name: LUCKA-PC | User Name: Lucka | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = OperaStable] -- C:\Program Files (x86)\Opera\Launcher.exe (Opera Software)
.url[@ = InternetShortcut] -- C:\windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = OperaStable] -- C:\Program Files (x86)\Opera\Launcher.exe (Opera Software)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = OperaStable] -- C:\Program Files (x86)\Opera\Launcher.exe (Opera Software)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [Browse with &IrfanView] -- "C:\Program Files (x86)\IrfanView\i_view32.exe" "%1 /thumbs" (Irfan Skiljan)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [Browse with &IrfanView] -- "C:\Program Files (x86)\IrfanView\i_view32.exe" "%1 /thumbs" (Irfan Skiljan)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

========== Firewall Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{02ABC135-A6EB-49B2-9FC6-1AC28AD5B67D}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{066CDCA1-F2F9-4D34-AF94-EA32239C4B64}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{06AB8ACE-50B2-45B9-A9AE-090E85C785C1}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{0931C60F-DECD-4DB3-A3A2-1E5F4157676D}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{0AC59CC1-6189-4CF5-A272-784EC03E7A00}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{0B56B389-A83D-4ABB-8EE8-F5ABCA6F66A1}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{11DD5807-BCB5-48E5-8FEE-2C3F638A0710}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{1514F17A-D209-431F-A7A7-E4155869C803}" = rport=137 | protocol=17 | dir=out | app=system |
"{1B43BDEA-D06D-42D3-9D39-BC09FC727F5C}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe |
"{258BFD79-47F4-452D-82AA-0EAC95D60154}" = lport=445 | protocol=6 | dir=in | app=system |
"{2638FA1B-9A96-4989-9F05-6B560358B012}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{2BA6F582-1C9F-41B8-B1EE-3B2AE81C8BD9}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{2EE3DD69-475C-417C-9252-C2E0CDA721B9}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe |
"{336E74A6-2537-4DFC-BD6B-AA732D48C6F1}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{4499555D-647B-4B18-B3E2-B5E691C12128}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{4831C7D4-7491-4321-A92B-CE2632F93E21}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe |
"{50FEE99A-4C75-40FF-B6FF-184C1F042001}" = rport=139 | protocol=6 | dir=out | app=system |
"{5268C365-E3E1-414C-868A-E5184BDEE38C}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{555C5D71-D86B-4264-8A81-EE1D9A0DA7D0}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{573FB35D-771D-4E40-BBCB-74455CD8117C}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{700FAA4A-2737-4006-A8CC-3A557BD3A0AB}" = lport=2869 | protocol=6 | dir=in | app=system |
"{7CD8BBAA-9C78-49F6-862E-3008C591AE62}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{7D85E15F-1CAB-4A07-9DBF-7D1D12AC99F0}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{8175019B-EB64-41EE-89FA-97E846F6DA7E}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{81EADDAB-9163-4BAA-8C02-DC2E23D7A44D}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{8CDD5C76-EDE5-4BC2-9019-5542CAB9E993}" = lport=139 | protocol=6 | dir=in | app=system |
"{95E9EB07-AE5F-4A56-A410-A2D906407601}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{995A99A8-2F35-4F8D-A192-464263F4ED4D}" = lport=137 | protocol=17 | dir=in | app=system |
"{9B20C0F2-3E6C-4742-8F63-5F6540821EB2}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{ADF7882B-E85F-4105-BB16-3ABC635AB366}" = rport=138 | protocol=17 | dir=out | app=system |
"{B0E48621-6B25-450D-97ED-DBE883913F1F}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{B646BE9D-52C3-4528-809F-A50B61A5F4D5}" = lport=138 | protocol=17 | dir=in | app=system |
"{BB26DCC6-F656-432B-BC7B-1C579EBA2A43}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{D4F825AB-B2CB-4D78-8739-3F92462CD9EE}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe |
"{DCE377A2-71E8-4499-BE5C-7FC6A9EE74A0}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{DD3DC8FC-77B2-46DF-81D6-953749E5F460}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{E8C187B8-1C77-4904-8829-2AC640A64F2C}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{F20055F8-0D7F-43F9-93EF-EE379F74D0F9}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{F50747EA-C0BE-4645-A782-10741404E6F7}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
"{F545CBF9-FCE6-4A43-9068-955BE5E3685F}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe |
"{F5D9AF02-C429-4069-98D9-675C2EB29C84}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{F7B916BD-D87F-4BA7-8600-1053D7C52100}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{FBEEC344-4A7C-4B85-A94B-F74F7CF39B39}" = rport=445 | protocol=6 | dir=out | app=system |
"{FFD7A523-C8C3-4DD2-9B14-673DB602846D}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{013698F7-C0AF-4D84-9737-33394231491F}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{099258B6-6A1E-462A-BF4D-68B54726CB14}" = dir=in | app=c:\program files\cyberlink\powerdirector\pdr9.exe |
"{0B1E6E1D-2412-4584-BB65-7AF5E580B7C9}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{0B545D6F-11B2-47BD-AED3-EC581D957183}" = protocol=17 | dir=in | app=c:\program files (x86)\icq7.5\icq.exe |
"{0D610A4A-CCE5-426E-87E8-32D589A795DE}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{0D918517-B4E1-4501-B619-2C388330CF1E}" = protocol=6 | dir=in | app=c:\program files (x86)\snugtv\snugtv station\amaserver.exe |
"{1369DB1B-95CD-49DE-A78D-1D20CCD04B06}" = protocol=17 | dir=in | app=c:\program files (x86)\snugtv\snugtv station\amaserver.exe |
"{16671F5C-F08D-45A4-A0D8-62660D901D2A}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer.exe |
"{20CEFEE8-8DB7-4EA9-B8B8-8A3B4893C4A0}" = dir=out | app=c:\program files (x86)\lenovo\readycomm\common\igrs.exe |
"{256827B1-F6A1-4AE2-B8B4-8EB36C0E0E08}" = dir=out | app=c:\program files\lenovo\readycomm\readycomm.exe |
"{28FC8DB9-1B9D-4C34-8627-FB755E8702B1}" = dir=out | app=c:\program files\lenovo\readycomm\connsvc.exe |
"{2DF4682E-76C0-41CD-A90B-EECFA31D4C05}" = protocol=17 | dir=in | app=c:\program files\microsoft office 15\root\office15\ucmapi.exe |
"{371EB336-99A6-4C52-A242-B61D05F1E31E}" = protocol=17 | dir=in | app=c:\program files\microsoft office 15\root\office15\lync.exe |
"{37F078EB-A2B6-4578-890F-A5E09529EEC0}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{38573667-1B35-4D92-BCB2-DB6CC198958F}" = protocol=6 | dir=in | app=c:\program files\microsoft office 15\root\office15\lync.exe |
"{3F16A506-8582-49B9-BC14-1D2F6A59AF2D}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{432892A6-E645-4725-BF84-556E7F6F62E9}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer_service.exe |
"{454128CF-3A6A-4DBC-AB22-3D7BA3FB55D2}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{45735C09-1DC8-4FF2-9CD4-117A8DDCCBE7}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{5C18FC0E-6A05-4969-8A72-71D520BF7FFD}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |
"{5FBD74A9-C457-43A4-A29D-A20A2CD67799}" = dir=in | app=c:\program files (x86)\windows live\sync\windowslivesync.exe |
"{6952733A-BD4C-48F3-95E8-A4C90756E3A6}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{6F23B772-6555-482A-84AD-C52A19496686}" = protocol=6 | dir=in | app=c:\program files (x86)\icq7.5\icq.exe |
"{6F8F3038-BC89-481E-B79B-FA14C35A7619}" = dir=out | app=c:\program files\lenovo\readycomm\appsvc.exe |
"{6FC2630D-B870-4EE6-994D-C99E1C8BEEDB}" = protocol=6 | dir=in | app=c:\program files\microsoft office 15\root\office15\ucmapi.exe |
"{72F9890D-9572-429F-B873-7D477AD2718D}" = dir=out | app=c:\program files\lenovo\readycomm\projectionist.exe |
"{74DC1E4E-75B4-4F4A-B37C-A791BDBE0E2D}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer.exe |
"{79D6C7AC-C460-49E5-8A31-EB94CF711907}" = dir=in | app=c:\program files (x86)\lenovo\readycomm\common\igrs.exe |
"{7A2E4399-6D4F-4978-8FED-ED27F230F103}" = dir=in | app=c:\program files (x86)\lenovo\readycomm\common\igrs.exe |
"{7A89EF56-CAB4-4436-9E84-49D53E005362}" = dir=in | app=c:\windows\system32\igrssvcs.exe |
"{7FE76877-632C-47DB-BD62-5FBCF8311454}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{842C38B0-CFD5-4F6B-B9ED-26E7A8450AD6}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{84BE0FB4-2F2F-4764-856D-EB2D149987CE}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |
"{871B4DBA-CDC3-4A99-8B57-58A1DBED209F}" = protocol=17 | dir=in | app=c:\program files (x86)\icq7.5\icq.exe |
"{8D304329-9E87-4F97-ACFB-BB5461E49B57}" = protocol=6 | dir=in | app=c:\program files (x86)\snugtv\snugtv station\configwizard.exe |
"{8E897338-4229-4967-9CFE-814F199368A1}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{91170C25-26E3-42BD-B581-85481572D497}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{916EE0FF-9B66-414D-89B0-4FAAF36A83AC}" = protocol=17 | dir=in | app=c:\program files (x86)\snugtv\snugtv station\configwizard.exe |
"{9563DA46-A045-4718-B6C8-4A619E04DFEF}" = protocol=6 | dir=in | app=c:\program files (x86)\icq7.5\icq.exe |
"{98385884-59A3-461A-AB4D-D12ECDF8217C}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{9CB30EAB-63EC-41BB-BBD9-8DB058CD1790}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
"{A178D039-60F2-47B5-8017-F1997ACEFE78}" = dir=in | app=c:\program files\lenovo\readycomm\connsvc.exe |
"{A54D0B48-602D-4403-8FE4-FC23FB66A3A0}" = dir=in | app=c:\program files\lenovo\readycomm\appsvc.exe |
"{AA90C5F4-D5E7-4C6F-8C6A-C8F2F1697464}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{B3C7B3B7-CD05-4681-97B4-08879AA70318}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{B5F2BA95-6306-4BC3-A5FE-1DBDC595C82A}" = dir=out | app=c:\windows\system32\igrssvcs.exe |
"{C113A567-01A7-4937-8423-E4E0AFCA6857}" = dir=out | app=c:\program files (x86)\lenovo\readycomm\common\igrs.exe |
"{C76B4C43-AC43-43AF-8650-9A6E62AF0239}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{C9102D11-B0B6-4DA5-ACE2-9BE9A6DA9B32}" = protocol=17 | dir=in | app=c:\program files (x86)\snugtv\snugtv station\amaserver.exe |
"{D349080B-E86D-43DA-ACDD-0418A4B6AA9C}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
"{D5B02B32-60A3-4194-A87F-CD9785CF9C2A}" = dir=in | app=c:\program files\lenovo\readycomm\projectionist.exe |
"{DF651455-A8C4-4E6D-8351-ECA7D7B1054E}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer_service.exe |
"{EC6D3BC3-5420-44F2-AD13-D918908F8824}" = protocol=6 | dir=in | app=c:\program files (x86)\snugtv\snugtv station\amaserver.exe |
"{EC89E69B-623E-4385-9BEB-5E0EB63835E5}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{F1B0B420-749C-4620-8AF7-F3BCAAC344E3}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"TCP Query User{039B73B7-4073-45A7-9938-745DEF26E1C1}C:\program files (x86)\icq7.2\icq.exe" = protocol=6 | dir=in | app=c:\program files (x86)\icq7.2\icq.exe |
"TCP Query User{2BC51166-DFD4-468C-BCEA-D5C90EF08DF9}C:\program files (x86)\lenovo\lenovo directshare\directshare.exe" = protocol=6 | dir=in | app=c:\program files (x86)\lenovo\lenovo directshare\directshare.exe |
"TCP Query User{5FA3D664-245C-4F46-9384-076EE2DF6E06}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
"TCP Query User{A76FEAB8-6896-4693-AA0D-5E39A19F5DB7}F:\counter strike 1.6\hl.exe" = protocol=6 | dir=in | app=f:\counter strike 1.6\hl.exe |
"TCP Query User{B3275E18-BE6D-4D2B-B81D-8071309EF313}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe |
"TCP Query User{B9216D2A-3BE6-4CF5-8FED-19A5EDF238E8}C:\program files (x86)\real\realplayer\realplay.exe" = protocol=6 | dir=in | app=c:\program files (x86)\real\realplayer\realplay.exe |
"TCP Query User{C79F0325-5586-45C4-BAED-BB5349ACF309}C:\program files\windows sidebar\sidebar.exe" = protocol=6 | dir=in | app=c:\program files\windows sidebar\sidebar.exe |
"TCP Query User{CD05DB36-0DFA-4696-929A-9AEFC9294362}C:\program files (x86)\icq7.2\icq.exe" = protocol=6 | dir=in | app=c:\program files (x86)\icq7.2\icq.exe |
"TCP Query User{DE847A09-4036-420D-8E3F-0A719C8D5D2F}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
"UDP Query User{122AE08A-85A1-4D5A-B1E2-D8461DB9664B}F:\counter strike 1.6\hl.exe" = protocol=17 | dir=in | app=f:\counter strike 1.6\hl.exe |
"UDP Query User{318A6400-79A2-4397-84C6-C2C41C99C273}C:\program files (x86)\real\realplayer\realplay.exe" = protocol=17 | dir=in | app=c:\program files (x86)\real\realplayer\realplay.exe |
"UDP Query User{3B84699B-6EA6-4AAD-9074-EF79DD9B4D84}C:\program files (x86)\icq7.2\icq.exe" = protocol=17 | dir=in | app=c:\program files (x86)\icq7.2\icq.exe |
"UDP Query User{5FD282C2-FA39-4817-A0D2-7F77CB699FEA}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
"UDP Query User{6308F0CC-B015-43BE-A53A-B1E0772FC7AE}C:\program files (x86)\icq7.2\icq.exe" = protocol=17 | dir=in | app=c:\program files (x86)\icq7.2\icq.exe |
"UDP Query User{8D7A8817-E66A-47C4-AC11-46A8E236DFBD}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe |
"UDP Query User{ABB9E834-A3DF-4968-A2A0-E895CE4878E6}C:\program files (x86)\lenovo\lenovo directshare\directshare.exe" = protocol=17 | dir=in | app=c:\program files (x86)\lenovo\lenovo directshare\directshare.exe |
"UDP Query User{CB83A76A-C99A-4175-AA41-7F156A58410E}C:\program files\windows sidebar\sidebar.exe" = protocol=17 | dir=in | app=c:\program files\windows sidebar\sidebar.exe |
"UDP Query User{CDE88A3E-314C-4590-80EF-B9BE5E3BB2CF}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{26784146-6E05-3FF9-9335-786C7C0FB5BE}" = Microsoft .NET Framework 4.5.2
"{26A24AE4-039D-4CA4-87B4-2F86418045F0}" = Java 8 Update 45 (64-bit)
"{2B1C6CB4-4470-4D57-91E0-83986DCEB5DA}" = Windows Live Family Safety
"{46F4D124-20E5-4D12-BE52-EC177A7A4B42}" = Lenovo OneKey Recovery
"{50813B8C-FCBB-3C61-8039-EAAA93029066}" = Microsoft .NET Framework 4.5.1 (CSY)
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{64A3A4F4-B792-11D6-A78A-00B0D0170210}" = Java SE Development Kit 7 Update 21 (64-bit)
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8338783A-0968-3B85-AFC7-BAAE0A63DC50}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0405-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Czech) 2007
"{90150000-008F-0000-1000-0000000FF1CE}" = Office 15 Click-to-Run Licensing Component
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029" = Microsoft .NET Framework 4.5.1 (čeština)
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.2
"{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9ACF3FDB-C8E6-444C-8C64-13A221F7BFFD}" = Microsoft SQL Server Native Client
"{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}" = Lenovo Bluetooth with Enhanced Data Rate Software
"{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}" = Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Ovladač 3D Vision 310.70
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Ovládací panel NVIDIA 310.70
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Ovladače grafiky 310.70
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 1.8.1
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Ovladač řídící jednotky 3D Vision 310.70
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Systémový software PhysX 9.13.0725
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizace NVIDIA 10.11.15
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamC" = GeForce Experience NvStream Client Components
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Ovladač HD audia 1.3.18.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 10.11.15
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.19
"{B636C9B9-A3F2-4DCE-ADCC-72E095018385}" = Microsoft SQL Server VSS Writer
"{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
"{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}" = PlayReady PC Runtime amd64
"{C6E57DC0-5699-47D4-9263-CEE00A4BB1FC}" = Windows Live MIME IFilter
"{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = CyberLink PowerDirector
"{CE52672C-A0E9-4450-8875-88A221D5CD50}" = Windows Live ID Sign-in Assistant
"{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64
"{EE936C7A-EA40-31D5-9B65-8E3E089C3828}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148
"0A4175B489A1B4A6E07E11B063A6263480C51D71" = Balíček ovladače systému Windows - Lenovo (ACPIVPC) System (10/19/2009 5.4.0.1)
"3BA80AB4C7E9F8497C115C844953A3D4BEB84D21" = Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800)
"6B6B5E96843E55CF5CF8C7E45FB457F1FE642FF1" = Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405)
"6B8550A319DDC8B17F35F4A89988705E4592349B" = Windows Driver Package - Broadcom Bluetooth (06/15/2009 6.2.0.9000)
"CCleaner" = CCleaner
"CNXT_AUDIO_HDA" = Conexant HD Audio
"Elantech" = ETDWare PS/2-x64 7.0.4.13_WHQL
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"nbi-nb-base-7.3.0.0.201302132200" = NetBeans IDE 7.3
"O365ProPlusRetail - cs-cz" = Microsoft Office 365 ProPlus - cs-cz
"priPrinter" = priPrinter
"Totalcmd64" = Total Commander 64-bit (Remove or Repair)
"VLC media player" = VLC media player 2.0.7

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00EFF3C6-F857-49EC-8559-202B2A7EF2A6}" = IDEA 9.2
"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
"{068B46A0-8858-4CEB-80BC-A4AE787A05FC}" = Windows Live Sync
"{0CE226F3-EB27-4ECD-BBF5-F088716779FD}" = Energy Management
"{10A0255E-0B73-4397-AB4E-E3667EDA70E4}_is1" = FotoMix version 9.2.7
"{17542DBF-E17C-4562-BC4D-FA3EF3076C45}" = Lenovo ReadyComm 5
"{198F93FD-9919-4010-8164-06BC2349959C}" = SnugTV Station
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{24758B1D-9345-4538-A69A-05660F63A296}" = Junk Mail filter update
"{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype™ 7.3
"{26A24AE4-039D-4CA4-87B4-2F83218045F0}" = Java 8 Update 45
"{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1
"{2BD5C305-1B27-4D41-B690-7A61172D2FEB}" = Macromedia Flash 8
"{2C01080F-AAD8-40A7-AF6B-725DCCC802DB}" = Windows Live Mail
"{2F8BA3FD-1FA9-4279-B696-712ABB12F09F}" = SmartSound Quicktracks 5
"{3A9FC03D-C685-4831-94CF-4EDFD3749497}" = Microsoft SQL Server Compact 3.5 SP2 ENU
"{3DCF21FE-A8CB-41DE-AEA3-D5FBEF108CD5}" = Microsoft Office Outlook Gadgets for Windows SideShow
"{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology
"{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
"{4260CAAE-D108-4223-A1C5-96B67062FE86}" = Windows Live Installer
"{4838134A-8CFF-4D5B-B3C1-C110DA8DF61B}" = calibre
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{5016185F-05AF-455F-AA70-6B6E5D6D4E70}" = AVerTV 3D
"{5546CDB5-2CE2-498B-B059-5B3BF81FC41F}" = Macromedia Extension Manager
"{59307833-CB98-4440-B644-0CD352F61907}" = Windows Live PIMT Platform
"{5C1D9C2A-B542-4A21-94A4-783C5A4681DF}" = Photo Common
"{5FDED311-B6BA-4FE7-83C1-7D2F10A5AAE0}" = Windows Live Essentials
"{6093CCDD-5CC8-4C0D-A349-8807B58D19EE}" = Windows Live UX Platform Language Pack
"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{65C0025A-2CDE-43C5-82D0-C7A56EF0DB39}" = Bing Bar Platform
"{6617D6C3-6904-478C-81D1-1EC8336F7F49}" = Windows Live Writer Resources
"{72D9236D-C6EA-4DA6-A18C-CC24521A70D4}" = Windows Live Mail
"{7578ADEA-D65F-4C89-A249-B1C88B6FFC20}" = ICQ7.5
"{76C66170-C538-4E77-B54D-48E136B5B533}" = Lenovo ReadyComm 5.0 Service
"{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime
"{7B5AA67E-FEA0-40BB-BAB5-CA56645A589C}" = NVIDIA PhysX
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver For Windows Vista and Later
"{8991E763-21F5-4DEA-A938-5D9D77DCB488}" = Broadcom 802.11 Wireless Driver
"{8BF2C401-02CE-424D-BC26-6C4F9FB446B6}" = Macromedia Flash 8 Video Encoder
"{8C22A294-DBBA-445F-B55C-E26817CCFE69}" = Movie Maker
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
"{8E66B81E-B1AC-4346-9975-4CDA283E0209}" = Windows Live Family Safety
"{8F66BFDE-B213-48E2-93EF-7151277A2916}" = Windows Live SOXE Definitions
"{90120000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2007
"{90120000-0015-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0015-0405-0000-0000000FF1CE}_PROHYBRIDR_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2007
"{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0405-0000-0000000FF1CE}_PROHYBRIDR_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2007
"{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0405-0000-0000000FF1CE}_PROHYBRIDR_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2007
"{90120000-0019-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-0405-0000-0000000FF1CE}_PROHYBRIDR_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2007
"{90120000-001A-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0405-0000-0000000FF1CE}_PROHYBRIDR_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2007
"{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0405-0000-0000000FF1CE}_PROHYBRIDR_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2007
"{90120000-001F-0405-0000-0000000FF1CE}_ENTERPRISE_{0B7A4B67-2A38-42B1-9857-662FAB361E08}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0405-0000-0000000FF1CE}_PROHYBRIDR_{0B7A4B67-2A38-42B1-9857-662FAB361E08}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0407-0000-0000000FF1CE}_PROHYBRIDR_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}_PROHYBRIDR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2007
"{90120000-001F-041B-0000-0000000FF1CE}_ENTERPRISE_{FDF9A959-241A-4662-A8DE-7DED9C22D160}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-041B-0000-0000000FF1CE}_PROHYBRIDR_{FDF9A959-241A-4662-A8DE-7DED9C22D160}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002A-0000-1000-0000000FF1CE}_PROHYBRIDR_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002A-0405-1000-0000000FF1CE}_ENTERPRISE_{A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002A-0405-1000-0000000FF1CE}_PROHYBRIDR_{A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0044-0405-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2007
"{90120000-0044-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}_ENTERPRISE_{A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-006E-0405-0000-0000000FF1CE}_PROHYBRIDR_{A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2007
"{90120000-00A1-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00BA-0405-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Czech) 2007
"{90120000-00BA-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{90150000-008C-0000-0000-0000000FF1CE}" = Office 15 Click-to-Run Extensibility Component
"{90150000-008C-0405-0000-0000000FF1CE}" = Office 15 Click-to-Run Localization Component
"{92C41B26-EBC5-41C5-8B6F-E3EF7E57FF16}" = AVerMedia Applications
"{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195
"{94532CD5-C66D-49E3-9131-5FB04D7647A1}" = Windows Live UX Platform
"{94A65759-6B3F-4AF8-944A-66F3FABDEFDE}_is1" = zavvyuka
"{95140000-007A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook Connector
"{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader
"{9797D7BA-A333-4DF1-AF55-AC745D216EDB}" = Windows Live Writer
"{983FA94A-A7DD-40B1-B7F9-F45D2B4FD1DE}" = Windows Live Photo Common
"{9A0C0A74-8AC8-4216-8E1F-B9AD2E14C950}" = Movie Maker
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A34DCE59-0004-0000-2300-3F8A9926B752}" = FortiClient SSLVPN v4.0.2300
"{A59A15E8-2B9B-490D-916E-D608A9D0D295}" = Windows Live Writer
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A939D341-5A04-4E0A-BB55-3E65B386432D}" = Součásti připojení sady Microsoft Office Small Business
"{A9FFEC6C-9C44-4597-8E23-EDD78BF5D0B2}" = Windows Live Communications Platform
"{AC76BA86-7AD7-1029-7B44-AB0000000001}" = Adobe Reader XI (11.0.10) - Czech
"{AC76BA86-7AD7-5464-3428-900000000004}" = Spelling Dictionaries Support For Adobe Reader 9
"{ADE16A9D-FBDC-4ecc-B6BD-9C31E51D0332}" = Lenovo EasyCamera
"{B2164CCB-C002-4B80-8550-7535D80DF237}" = Lenovo DirectShare
"{B4299C72-D4BF-4F29-A5A6-63294B1C0368}" = Fotogalerie
"{B92C2C6C-F70E-497B-88A7-1FEF9888272B}" = Adobe AIR
"{BA289EB6-331F-40EB-A31E-52F5B39EBA61}" = Windows Live Messenger
"{C87DF7BB-4F5C-4BBE-B041-A59FFF4A1D07}" = Windows Live SOXE
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{DF7DC45D-8A3C-490C-A70F-8C6A6189EDF9}" = Photo Gallery
"{DFB19121-0609-49C1-92B1-546E5A940FE8}" = Onekey Theater
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E1D17027-DA39-4F3F-904C-0E35CDECF40C}" = Windows Live Writer
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E5E83E00-1144-4821-B6B6-7A16C41EFC39}" = Windows Live Messenger
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 17 ActiveX
"Adobe Flash Player NPAPI" = Adobe Flash Player 17 NPAPI
"Adobe Flash Player PPAPI" = Adobe Flash Player 17 PPAPI
"Adobe Shockwave Player" = Adobe Shockwave Player 12.0
"ALZip_is1" = ALZip 8.51
"avast" = Avast Free Antivirus
"AVerMedia A835 USB TV Tuner" = AVerMedia A835 USB TV Tuner 8.0.64.57
"ENTERPRISE" = Microsoft Office Enterprise 2007
"ESET Online Scanner" = ESET Online Scanner v3
"FlpGrfCtrl" = Flipper Graph Control
"FormatFactory" = FormatFactory 2.95
"Google Chrome" = Google Chrome
"Inkscape" = Inkscape 0.48.5
"Inno Setup 5_is1" = Inno Setup verze 5.4.2
"InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
"InstallShield_{2F8BA3FD-1FA9-4279-B696-712ABB12F09F}" = SmartSound Quicktracks 5
"InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}" = Lenovo OneKey Recovery
"InstallShield_{5016185F-05AF-455F-AA70-6B6E5D6D4E70}" = AVerTV 3D
"InstallShield_{92C41B26-EBC5-41C5-8B6F-E3EF7E57FF16}" = AVerMedia Applications
"InstallShield_{B2164CCB-C002-4B80-8550-7535D80DF237}" = Lenovo DirectShare
"InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = CyberLink PowerDirector
"IrfanView" = IrfanView (remove only)
"KLiteCodecPack_is1" = K-Lite Codec Pack 5.9.0 (Basic)
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware verze 2.1.6.1022
"Mozilla Firefox 30.0 (x86 cs)" = Mozilla Firefox 30.0 (x86 cs)
"NVIDIA StereoUSB Driver" = NVIDIA 3D Vision Controller Driver
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"Nvu_is1" = Nvu 1.0
"OKbase One Demo_is1" = OKbase One Demo 2.50.00
"Opera 12.16.1860" = Opera 12.16
"Opera 29.0.1795.47" = Opera Stable 29.0.1795.47
"Papel_is1" = Papel
"PSPad editor_is1" = PSPad editor
"RealPlayer 15.0" = RealPlayer
"SpeedFan" = SpeedFan (remove only)
"TeamViewer 9" = TeamViewer 9
"VLC media player" = VLC media player
"WinGimp-2.0_is1" = GIMP 2.6.11
"WinLiveSuite" = Windows Live Essentials
"XviD" = XviD MPEG-4 Codec

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"UnityWebPlayer" = Unity Web Player

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 7.5.2015 18:47:50 | Computer Name = Lucka-PC | Source = SideBySide | ID = 16842787
Description = Generování kontextu aktivace pro C:\Program Files\Microsoft Office
15\root\office15\lync.exe.Manifest se nezdařilo. Chyba v souboru manifestu nebo
zásady C:\Program Files\Microsoft Office 15\root\office15\UccApi.DLL na řádku 1.
Identita
komponenty nalezená v manifestu nesouhlasí s identitou požadované komponenty. Odkaz
je UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0". Definice
je UccApi,processorArchitecture="x86",type="win32",version="15.0.0.0". Podrobnější
diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 7.5.2015 18:49:53 | Computer Name = Lucka-PC | Source = SideBySide | ID = 16842832
Description = Generování kontextu aktivace pro c:\program files (x86)\ESET\eset
online scanner\ESETSmartInstaller.exe se nezdařilo. Chyba v souboru manifestu nebo
zásad na řádku . Verze součásti požadovaná aplikací je v konfliktu s jinou verzí
součásti, která je již aktivní. Konfliktní součásti: Součást 1: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Součást
2: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error - 8.5.2015 4:53:46 | Computer Name = Lucka-PC | Source = Application Hang | ID = 1002
Description = Program CF14516.3XE verze 6.1.7601.17514 přestal spolupracovat se
systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací
o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID
procesu: 109c Čas spuštění: 01d0896bd0f8f2c6 Čas ukončení: 60000 Cesta k aplikaci:
C:\ComboFix\CF14516.3XE ID hlášení:

Error - 8.5.2015 4:58:13 | Computer Name = Lucka-PC | Source = NvStreamSvc | ID = 131073
Description =

Error - 8.5.2015 4:58:13 | Computer Name = Lucka-PC | Source = NvStreamSvc | ID = 131073
Description =

Error - 8.5.2015 6:05:48 | Computer Name = Lucka-PC | Source = C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe | ID = 131073
Description =

Error - 8.5.2015 6:09:01 | Computer Name = Lucka-PC | Source = NvStreamSvc | ID = 131073
Description =

Error - 8.5.2015 6:09:01 | Computer Name = Lucka-PC | Source = NvStreamSvc | ID = 131073
Description =

Error - 8.5.2015 6:57:00 | Computer Name = Lucka-PC | Source = NvStreamSvc | ID = 131073
Description =

Error - 8.5.2015 6:57:00 | Computer Name = Lucka-PC | Source = NvStreamSvc | ID = 131073
Description =

[ AVer AutoUpdate Events ]
Error - 4.4.2015 10:54:27 | Computer Name = Lucka-PC | Source = AVerUpdate Server | ID = 0
Description =

Error - 4.4.2015 11:54:26 | Computer Name = Lucka-PC | Source = AVerUpdate Server | ID = 0
Description =

Error - 4.4.2015 11:54:53 | Computer Name = Lucka-PC | Source = AVerUpdate Server | ID = 0
Description =

Error - 4.4.2015 11:55:21 | Computer Name = Lucka-PC | Source = AVerUpdate Server | ID = 0
Description =

Error - 4.4.2015 11:55:48 | Computer Name = Lucka-PC | Source = AVerUpdate Server | ID = 0
Description =

Error - 4.4.2015 11:56:15 | Computer Name = Lucka-PC | Source = AVerUpdate Server | ID = 0
Description =

Error - 4.4.2015 11:56:43 | Computer Name = Lucka-PC | Source = AVerUpdate Server | ID = 0
Description =

Error - 4.4.2015 11:57:10 | Computer Name = Lucka-PC | Source = AVerUpdate Server | ID = 0
Description =

Error - 16.4.2015 10:54:30 | Computer Name = Lucka-PC | Source = AVerUpdate Server | ID = 0
Description =

Error - 7.5.2015 10:54:32 | Computer Name = Lucka-PC | Source = AVerUpdate Server | ID = 0
Description =

[ Media Center Events ]
Error - 16.4.2015 15:02:09 | Computer Name = Lucka-PC | Source = MCUpdate | ID = 0
Description = 21:01:52 - Chyba při připojování k Internetu 21:01:52 - Nelze kontaktovat
server..

Error - 16.4.2015 16:02:51 | Computer Name = Lucka-PC | Source = MCUpdate | ID = 0
Description = 22:02:51 - Chyba při připojování k Internetu 22:02:51 - Nelze kontaktovat
server..

Error - 16.4.2015 16:03:23 | Computer Name = Lucka-PC | Source = MCUpdate | ID = 0
Description = 22:03:20 - Chyba při připojování k Internetu 22:03:20 - Nelze kontaktovat
server..

Error - 16.4.2015 17:04:05 | Computer Name = Lucka-PC | Source = MCUpdate | ID = 0
Description = 23:04:05 - Chyba při připojování k Internetu 23:04:05 - Nelze kontaktovat
server..

Error - 16.4.2015 17:04:37 | Computer Name = Lucka-PC | Source = MCUpdate | ID = 0
Description = 23:04:34 - Chyba při připojování k Internetu 23:04:34 - Nelze kontaktovat
server..

Error - 24.4.2015 15:38:59 | Computer Name = Lucka-PC | Source = MCUpdate | ID = 0
Description = 21:38:59 - Chyba při připojování k Internetu 21:38:59 - Nelze kontaktovat
server..

Error - 25.4.2015 21:41:36 | Computer Name = Lucka-PC | Source = MCUpdate | ID = 0
Description = 3:41:27 - Chyba při připojování k Internetu 3:41:27 - Nelze kontaktovat
server..

Error - 25.4.2015 22:46:51 | Computer Name = Lucka-PC | Source = MCUpdate | ID = 0
Description = 4:46:32 - Chyba při připojování k Internetu 4:46:32 - Nelze kontaktovat
server..

Error - 25.4.2015 23:47:25 | Computer Name = Lucka-PC | Source = MCUpdate | ID = 0
Description = 5:47:22 - Chyba při připojování k Internetu 5:47:22 - Nelze kontaktovat
server..

Error - 26.4.2015 0:48:00 | Computer Name = Lucka-PC | Source = MCUpdate | ID = 0
Description = 6:47:57 - Chyba při připojování k Internetu 6:47:57 - Nelze kontaktovat
server..

[ OSession Events ]
Error - 29.12.2010 6:37:56 | Computer Name = Lucka-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 9
seconds with 0 seconds of active time. This session ended with a crash.

Error - 2.1.2012 15:45:18 | Computer Name = Lucka-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 1, Application Name: Microsoft Office Excel, Application Version:
12.0.6654.5003, Microsoft Office Version: 12.0.6425.1000. This session lasted 3545
seconds with 660 seconds of active time. This session ended with a crash.

Error - 20.4.2013 13:12:17 | Computer Name = Lucka-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 34067
seconds with 6240 seconds of active time. This session ended with a crash.

Error - 5.5.2013 5:18:51 | Computer Name = Lucka-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 4613
seconds with 2400 seconds of active time. This session ended with a crash.

Error - 18.11.2013 16:10:06 | Computer Name = Lucka-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 5188
seconds with 3240 seconds of active time. This session ended with a crash.

Error - 28.11.2013 9:44:08 | Computer Name = Lucka-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 80721
seconds with 17760 seconds of active time. This session ended with a crash.

[ System Events ]
Error - 8.5.2015 5:00:31 | Computer Name = Lucka-PC | Source = Service Control Manager | ID = 7022
Description = Služba Sdílení připojení k Internetu (ICS) přestala během spouštění
reagovat.

Error - 8.5.2015 5:02:47 | Computer Name = Lucka-PC | Source = Service Control Manager | ID = 7000
Description = Služba ReadyComm.DirectRouter neuspěla při spuštění v důsledku následující
chyby: %%2

Error - 8.5.2015 5:06:21 | Computer Name = Lucka-PC | Source = Service Control Manager | ID = 7022
Description = Služba Windows Update přestala během spouštění reagovat.

Error - 8.5.2015 5:20:01 | Computer Name = Lucka-PC | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.

Error - 8.5.2015 5:25:22 | Computer Name = Lucka-PC | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.

Error - 8.5.2015 6:08:28 | Computer Name = Lucka-PC | Source = Service Control Manager | ID = 7009
Description = Při čekání na připojení služby MBAMService bylo dosaženo časového
limitu (30000 ms).

Error - 8.5.2015 6:08:28 | Computer Name = Lucka-PC | Source = Service Control Manager | ID = 7000
Description = Služba MBAMService neuspěla při spuštění v důsledku následující chyby:
%%1053

Error - 8.5.2015 6:11:50 | Computer Name = Lucka-PC | Source = Service Control Manager | ID = 7000
Description = Služba ReadyComm.DirectRouter neuspěla při spuštění v důsledku následující
chyby: %%2

Error - 8.5.2015 6:22:29 | Computer Name = Lucka-PC | Source = Schannel | ID = 36887
Description = Byla přijata následující výstraha o závažné chybě: 20.

Error - 8.5.2015 6:59:41 | Computer Name = Lucka-PC | Source = Service Control Manager | ID = 7000
Description = Služba ReadyComm.DirectRouter neuspěla při spuštění v důsledku následující
chyby: %%2


< End of report >

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu - taskeng.exe

Příspěvekod jaro3 » 12 kvě 2015 08:21

Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKCU\..\SearchScopes,DefaultScope = {A6C454C5-930B-4CE7-8E16-3E9940CA7EF8}
IE - HKCU\..\SearchScopes\{A6C454C5-930B-4CE7-8E16-3E9940CA7EF8}: "URL" = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?}
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll File not found
[2015.05.10 09:28:12 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lucka\AppData\Roaming\Mozilla\Extensions
[2015.05.10 09:36:18 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lucka\AppData\Roaming\Mozilla\Firefox\Profiles\2yzghyrg.default\extensions
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O9 - Extra Button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - Reg Error: Key error. File not found
O9 - Extra 'Tools' menuitem : Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - Reg Error: Key error. File not found
MsConfig:64bit - StartUpReg: cz.seznam.software.autoupdate - hkey= - key= - File not found
MsConfig:64bit - StartUpReg: cz.seznam.software.szndesktop - hkey= - key= - File not found
MsConfig:64bit - StartUpReg: DAEMON Tools Lite - hkey= - key= - File not found
MsConfig:64bit - StartUpReg: EA Core - hkey= - key= - File not found
MsConfig:64bit - StartUpReg: Facebook Update - hkey= - key= - C:\Users\Lucka\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)

:Files
C:\WINDOWS\System32\*.tmp
C:\WINDOWS\*.tmp
C:\WINDOWS\system32\*.tmp.dll
C:\WINDOWS\System32\dllcache\*.tmp
C:\WINDOWS\system32\SET*.tmp
C:\WINDOWS\system32\DUMP*.tmp
c:\windows\Tasks\*.job /s
C:\*.tmp
C:\WINDOWS\System32\drivers\*.tmp
C:\Program Files\*.tmp
C:\Documents and Settings\All Users\Data aplikací\*.tmp
C:\Windows\SysNative\drivers\*.tmp
C:\Windows\SysWow64\drivers\*.tmp
C:\Program Files (x86)\*.tmp
C:\Windows\SysWow64\*.tmp
C:\Windows\SysNative\*.tmp
C:\Program Files (x86)\*.tmp
c:\program files (x86)\ESET

:Reg
:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]

Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.

dá se ta hláška vyfotit?

Protokol událostí
Ovládací panely->Nástroje pro správu->Prohlížeč událostí->Protokoly systému Windows->klikni pravým myšítkem na protokol Systém, zvol Uložit všechny události jako a ulož to jako .evtx soubor. Ten upni na http://www.leteckaposta.cz
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Kanovka
Level 2
Level 2
Příspěvky: 187
Registrován: říjen 13
Pohlaví: Žena
Stav:
Offline

Re: Prosím o kontrolu - taskeng.exe

Příspěvekod Kanovka » 12 kvě 2015 19:45

All processes killed
========== OTL ==========
No active process named explorer.exe was found!
No active process named firefox.exe was found!
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{A6C454C5-930B-4CE7-8E16-3E9940CA7EF8}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A6C454C5-930B-4CE7-8E16-3E9940CA7EF8}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@adobe.com/FlashPlayer\ deleted successfully.
C:\Users\Lucka\AppData\Roaming\Mozilla\Extensions folder moved successfully.
C:\Users\Lucka\AppData\Roaming\Mozilla\Firefox\Profiles\2yzghyrg.default\extensions folder moved successfully.
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\StartUpReg\cz.seznam.software.autoupdate\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\StartUpReg\cz.seznam.software.szndesktop\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\StartUpReg\DAEMON Tools Lite\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\StartUpReg\EA Core\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\StartUpReg\Facebook Update\ not found.
========== FILES ==========
File\Folder C:\WINDOWS\System32\*.tmp not found.
File\Folder C:\WINDOWS\*.tmp not found.
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
File\Folder C:\WINDOWS\System32\dllcache\*.tmp not found.
File\Folder C:\WINDOWS\system32\SET*.tmp not found.
File\Folder C:\WINDOWS\system32\DUMP*.tmp not found.
File\Folder c:\windows\Tasks\*.job not found.
File\Folder C:\*.tmp not found.
File\Folder C:\WINDOWS\System32\drivers\*.tmp not found.
File\Folder C:\Program Files\*.tmp not found.
File\Folder C:\Documents and Settings\All Users\Data aplikací\*.tmp not found.
File\Folder C:\Windows\SysNative\drivers\*.tmp not found.
File\Folder C:\Windows\SysWow64\drivers\*.tmp not found.
File\Folder C:\Program Files (x86)\*.tmp not found.
File\Folder C:\Windows\SysWow64\*.tmp not found.
File\Folder C:\Windows\SysNative\*.tmp not found.
File\Folder C:\Program Files (x86)\*.tmp not found.
File\Folder c:\program files (x86)\ESET not found.
========== REGISTRY ==========
========== COMMANDS ==========

[EMPTYTEMP]

User: Administrator
->Temp folder emptied: 0 bytes

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Hanka
->Temp folder emptied: 0 bytes

User: Lucka
->Temp folder emptied: 25140663 bytes
->Temporary Internet Files folder emptied: 246331223 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 16434421 bytes
->Google Chrome cache emptied: 0 bytes
->Apple Safari cache emptied: 0 bytes
->Opera cache emptied: 0 bytes
->Flash cache emptied: 2377 bytes

User: Michal
->Temp folder emptied: 0 bytes

User: Public
->Temp folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 5475418 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 128 bytes
RecycleBin emptied: 538506141 bytes

Total Files Cleaned = 793,00 mb


OTL by OldTimer - Version 3.2.69.0 log created on 05122015_180028

Files\Folders moved on Reboot...
C:\Users\Lucka\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
C:\Users\Lucka\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.
File move failed. C:\windows\temp\_avast_\AvastLock.txt scheduled to be moved on reboot.
C:\windows\temp\LUCKA-PC-20150511-0320.log moved successfully.
File\Folder C:\windows\temp\officeclicktorun.exe_c2ruidll(20150511032019798).log not found!
File\Folder C:\windows\temp\officeclicktorun.exe_streamserver(20150511032024798).log not found!
File move failed. C:\windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat scheduled to be moved on reboot.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

Kanovka
Level 2
Level 2
Příspěvky: 187
Registrován: říjen 13
Pohlaví: Žena
Stav:
Offline

Re: Prosím o kontrolu - taskeng.exe

Příspěvekod Kanovka » 12 kvě 2015 19:45

neuvěřitelné, bing se zase vrátil místo googlu :D

Kanovka
Level 2
Level 2
Příspěvky: 187
Registrován: říjen 13
Pohlaví: Žena
Stav:
Offline

Re: Prosím o kontrolu - taskeng.exe

Příspěvekod Kanovka » 12 kvě 2015 19:58


Kanovka
Level 2
Level 2
Příspěvky: 187
Registrován: říjen 13
Pohlaví: Žena
Stav:
Offline

Re: Prosím o kontrolu - taskeng.exe

Příspěvekod Kanovka » 13 kvě 2015 08:27

v příloze přiloženo, jak to vypadá při startu počítače (na minutu dvě se taskeng.exe zobrazí, pak zmizí), během práce s počítačem je vyfocení taskeng.exe téměř nemožné, opravdu to jen ani ne na vteřinu problikne
Přílohy
Clipboard01.jpg

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu - taskeng.exe

Příspěvekod jaro3 » 13 kvě 2015 10:58

Start--napiš do okénka:
msconfig
a dej OK.

v záložkách služby" a "po spuštění"
tam pohledej.

viz třeba:
http://videotekaumravencu.blog.cz/1011/ ... askeng-exe
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Kanovka
Level 2
Level 2
Příspěvky: 187
Registrován: říjen 13
Pohlaví: Žena
Stav:
Offline

Re: Prosím o kontrolu - taskeng.exe

Příspěvekod Kanovka » 13 kvě 2015 19:10

tento odkaz už jsem navštívila předtím, než jsem založila tento příspěvek a právě že jsem z toho nebyla moc moudrá

Uživatelský avatar
jerabina
člen Security týmu
Level 6
Level 6
Příspěvky: 3647
Registrován: březen 13
Bydliště: Litoměřice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu - taskeng.exe

Příspěvekod jerabina » 13 kvě 2015 20:06

Zkus tedy prohledat v "msconfigu" záložku "po spuštění".
Když nevíš jak dál, přichází na řadu prostudovat manuál!
HJT návod

Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.

Kanovka
Level 2
Level 2
Příspěvky: 187
Registrován: říjen 13
Pohlaví: Žena
Stav:
Offline

Re: Prosím o kontrolu - taskeng.exe

Příspěvekod Kanovka » 13 kvě 2015 20:13

v Po spuštění taskeng.exe není

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu - taskeng.exe

Příspěvekod Orcus » 13 kvě 2015 22:42

Stáhni si Autoruns:
https://technet.microsoft.com/cs-cz/sys ... 63902.aspx

Vytvoř výstup dle tohoto návodu:
https://forums.avg.com/us-en/avg-forums ... w&id=85857

Upni ho na leteckaposta.cz a dodej nám sem prosím odkaz.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

Kanovka
Level 2
Level 2
Příspěvky: 187
Registrován: říjen 13
Pohlaví: Žena
Stav:
Offline

Re: Prosím o kontrolu - taskeng.exe

Příspěvekod Kanovka » 14 kvě 2015 08:27



Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 96 hostů