Prosím o kontrolu logu - pomalý notebook Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

flowem
Level 5.5
Level 5.5
Příspěvky: 2858
Registrován: březen 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý notebook

Příspěvekod flowem » 05 črc 2015 18:20

tak ted jsem to udělal a žádný log jsem nenašel, ani tlačítko View log, nic.
AMD Ryzen 5 5600X | MSI MAG B550 TOMAHAWK | G.Skill Aegis 32GB 3200MHz | Kingston A2000 1TB | PowerColor Red Devil RX 6700 XT 12GB | XPG Core Reactor 750W | Be quiet! PURE BASE 500 | Asus VG27AQ1A

Reklama
Uživatelský avatar
jerabina
člen Security týmu
Level 6
Level 6
Příspěvky: 3647
Registrován: březen 13
Bydliště: Litoměřice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý notebook

Příspěvekod jerabina » 05 črc 2015 18:53

Zkus to OTL v nouzovém režimu.
Když nevíš jak dál, přichází na řadu prostudovat manuál!
HJT návod

Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.

flowem
Level 5.5
Level 5.5
Příspěvky: 2858
Registrován: březen 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý notebook

Příspěvekod flowem » 05 črc 2015 19:24

Tím jsem myslel MCPR.
To OTL dělám až teď. Omlouvám se, špatně jsem to předtím napsal.
AMD Ryzen 5 5600X | MSI MAG B550 TOMAHAWK | G.Skill Aegis 32GB 3200MHz | Kingston A2000 1TB | PowerColor Red Devil RX 6700 XT 12GB | XPG Core Reactor 750W | Be quiet! PURE BASE 500 | Asus VG27AQ1A

flowem
Level 5.5
Level 5.5
Příspěvky: 2858
Registrován: březen 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý notebook

Příspěvekod flowem » 05 črc 2015 19:36

OTL logfile created on: 7/5/2015 7:22:55 PM - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Jiříček\Desktop
Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17843)
Locale: 00000409 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2.86 Gb Total Physical Memory | 1.89 Gb Available Physical Memory | 66.24% Memory free
5.72 Gb Paging File | 4.46 Gb Available in Paging File | 78.04% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
Drive C: | 280.80 Gb Total Space | 214.69 Gb Free Space | 76.46% Space Free | Partition Type: NTFS
Drive E: | 1.99 Gb Total Space | 1.49 Gb Free Space | 74.58% Space Free | Partition Type: FAT32

Computer Name: DRAHA-HP | User Name: Jiříček | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - C:\Users\Jiříček\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o.)
PRC - C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Avast Software s.r.o.)
PRC - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe (Avast Software)
PRC - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
PRC - C:\Program Files\Trusteer\Rapport\bin\RapportService.exe (IBM Corp.)
PRC - C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe (IBM Corp.)
PRC - C:\Program Files\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe (Foxit Software Inc.)
PRC - C:\Windows\System32\GWX\GWX.exe (Microsoft Corporation)
PRC - C:\Windows\System32\taskhost.exe (Microsoft Corporation)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\IDT\WDM\sttray.exe (IDT, Inc.)
PRC - C:\Program Files\IDT\WDM\stacsv.exe (IDT, Inc.)
PRC - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe (Hewlett-Packard)
PRC - C:\Windows\System32\uArcCapture.exe (ArcSoft, Inc.)
PRC - C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation)
PRC - C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation)
PRC - C:\Program Files\PDF Complete\pdfsvc.exe (PDF Complete Inc)
PRC - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (Broadcom Corporation.)
PRC - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe (Intel Corporation)
PRC - C:\Program Files\IDT\WDM\AEstSrv.exe (Andrea Electronics Corporation)
PRC - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe (Protexis Inc.)


========== Modules (No Company Name) ==========

MOD - C:\Program Files\AVAST Software\Avast\libcef.dll ()
MOD - C:\Program Files\AVAST Software\Avast\log.dll ()
MOD - C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll ()
MOD - C:\Program Files\Trusteer\Rapport\bin\js32.dll ()
MOD - C:\Windows\System32\IccLibDll.dll ()


========== Services (SafeList) ==========

SRV - (avast! Antivirus) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Avast Software s.r.o.)
SRV - (AvastVBoxSvc) -- C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe (Avast Software)
SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
SRV - (MBAMService) -- C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
SRV - (AdobeARMservice) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
SRV - (MozillaMaintenance) -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
SRV - (RapportMgmtService) -- C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe (IBM Corp.)
SRV - (FoxitCloudUpdateService) -- C:\Program Files\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe (Foxit Software Inc.)
SRV - (DiagTrack) -- C:\Windows\System32\diagtrack.dll (Microsoft Corporation)
SRV - (IEEtwCollectorService) -- C:\windows\System32\IEEtwCollector.exe (Microsoft Corporation)
SRV - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (WatAdminSvc) -- C:\Windows\System32\Wat\WatAdminSvc.exe (Microsoft Corporation)
SRV - (ServiceLayer) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (Nokia)
SRV - (STacSV) -- C:\Program Files\IDT\WDM\stacsv.exe (IDT, Inc.)
SRV - (ACDaemon) -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ArcSoft Inc.)
SRV - (HP Wireless Assistant Service) -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe (Hewlett-Packard)
SRV - (uArcCapture) -- C:\Windows\System32\uArcCapture.exe (ArcSoft, Inc.)
SRV - (FLCDLOCK) -- C:\Windows\System32\flcdlock.exe (Hewlett-Packard Ltd)
SRV - (UNS) -- C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation)
SRV - (LMS) -- C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation)
SRV - (pdfcDispatcher) -- C:\Program Files\PDF Complete\pdfsvc.exe (PDF Complete Inc)
SRV - (btwdins) -- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (Broadcom Corporation.)
SRV - (IAANTMON) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe (Intel Corporation)
SRV - (SensrSvc) -- C:\Windows\System32\sensrsvc.dll (Microsoft Corporation)
SRV - (AESTFilters) -- C:\Program Files\IDT\WDM\AEstSrv.exe (Andrea Electronics Corporation)
SRV - (PSI_SVC_2) -- c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe (Protexis Inc.)


========== Driver Services (SafeList) ==========

DRV - (MpKsl429bbab5) -- c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{CB7384B1-3F74-4090-A12F-457514DA69DA}\MpKsl429bbab5.sys File not found
DRV - (catchme) -- C:\Users\JIEK~1\AppData\Local\Temp\catchme.sys File not found
DRV - (aswVmm) -- C:\Users\JIEK~1\AppData\Local\Temp\aswVmm.sys File not found
DRV - (aswSP) -- C:\Windows\System32\drivers\aswsp.sys (Avast Software s.r.o.)
DRV - (aswStm) -- C:\Windows\System32\drivers\aswStm.sys (Avast Software s.r.o.)
DRV - (aswRdr) -- C:\Windows\System32\drivers\aswRdr2.sys (Avast Software s.r.o.)
DRV - (aswMonFlt) -- C:\Windows\System32\drivers\aswMonFlt.sys (Avast Software s.r.o.)
DRV - (aswRvrt) -- C:\windows\System32\drivers\aswRvrt.sys ()
DRV - (aswHwid) -- C:\Windows\System32\drivers\aswHwid.sys ()
DRV - (aswSnx) -- C:\Windows\System32\drivers\aswSnx.sys (Avast Software s.r.o.)
DRV - (VBoxAswDrv) -- C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys (Avast Software)
DRV - (RapportCerberus_1412112) -- C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus32_1412112.sys (IBM Corp.)
DRV - (MBAMWebAccessControl) -- C:\Windows\System32\drivers\mwac.sys (Malwarebytes Corporation)
DRV - (MBAMProtector) -- C:\Windows\System32\drivers\mbam.sys (Malwarebytes Corporation)
DRV - (RapportPG) -- C:\Program Files\Trusteer\Rapport\bin\RapportPG.sys (IBM Corp.)
DRV - (RapportEI) -- C:\Program Files\Trusteer\Rapport\bin\RapportEI.sys (IBM Corp.)
DRV - (RapportKELL) -- C:\Windows\System32\drivers\RapportKELL.sys (IBM Corp.)
DRV - (RapportHades) -- C:\Windows\System32\drivers\RapportHades.sys (IBM Corp.)
DRV - (dtsoftbus01) -- C:\Windows\System32\drivers\dtsoftbus01.sys (Disc Soft Ltd)
DRV - (UsbserFilt) -- C:\Windows\System32\drivers\usbser_lowerfltj.sys (Nokia)
DRV - (upperdev) -- C:\Windows\System32\drivers\usbser_lowerflt.sys (Nokia)
DRV - (nmwcdc) -- C:\Windows\System32\drivers\ccdcmbo.sys (Nokia)
DRV - (nmwcd) -- C:\Windows\System32\drivers\ccdcmb.sys (Nokia)
DRV - (pccsmcfd) -- C:\Windows\System32\drivers\pccsmcfd.sys (Nokia)
DRV - (RdpVideoMiniport) -- C:\Windows\System32\drivers\rdpvideominiport.sys (Microsoft Corporation)
DRV - (TsUsbFlt) -- C:\Windows\System32\drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV - (athr) -- C:\Windows\System32\drivers\athr.sys (Qualcomm Atheros Communications, Inc.)
DRV - (IntcDAud) -- C:\Windows\System32\drivers\IntcDAud.sys (Intel(R) Corporation)
DRV - (rtsuvc) -- C:\Windows\System32\drivers\rtsuvc.sys (Realtek Semiconductor Corp.)
DRV - (hpdskflt) -- C:\Windows\System32\drivers\hpdskflt.sys (Hewlett-Packard Company)
DRV - (Accelerometer) -- C:\Windows\System32\drivers\Accelerometer.sys (Hewlett-Packard Company)
DRV - (WinUsb) -- C:\Windows\System32\drivers\winusb.sys (Microsoft Corporation)
DRV - (STHDA) -- C:\Windows\System32\drivers\stwrt.sys (IDT, Inc.)
DRV - (Impcd) -- C:\Windows\System32\drivers\Impcd.sys (Intel Corporation)
DRV - (SbAlg) -- C:\windows\System32\drivers\SbAlg.sys (McAfee, Inc.)
DRV - (SbFsLock) -- C:\windows\System32\drivers\SbFsLock.sys (McAfee, Inc.)
DRV - (RsvLock) -- C:\windows\System32\drivers\rsvlock.sys (McAfee, Inc.)
DRV - (SafeBoot) -- C:\windows\System32\drivers\SafeBoot.sys ()
DRV - (ARCVCAM) -- C:\Windows\System32\drivers\ArcSoftVCapture.sys (ArcSoft, Inc.)
DRV - (RSUSBSTOR) -- C:\Windows\System32\drivers\RtsUStor.sys (Realtek Semiconductor Corp.)
DRV - (DAMDrv) -- C:\Windows\System32\drivers\DAMDrv.sys (Hewlett-Packard Development Company L.P.)
DRV - (HECI) -- C:\Windows\System32\drivers\HECI.sys (Intel Corporation)
DRV - (HpqKbFiltr) -- C:\Windows\System32\drivers\HpqKbFiltr.sys (Hewlett-Packard Development Company, L.P.)
DRV - (WSDPrintDevice) -- C:\Windows\System32\drivers\WSDPrint.sys (Microsoft Corporation)
DRV - (vwifimp) -- C:\Windows\System32\drivers\vwifimp.sys (Microsoft Corporation)
DRV - (TPM) -- C:\Windows\System32\drivers\tpm.sys (Microsoft Corporation)
DRV - (AgereSoftModem) -- C:\Windows\System32\drivers\AGRSM.sys (LSI Corp)
DRV - (mfetdik) -- C:\Windows\System32\drivers\mfetdik.sys (McAfee, Inc.)
DRV - (KMWDFILTERx86) -- C:\Windows\System32\drivers\KMWDFILTER.sys (Windows (R) Codename Longhorn DDK provider)
DRV - (hamachi) -- C:\Windows\System32\drivers\hamachi.sys (LogMeIn, Inc.)
DRV - (USBModem) -- C:\Windows\System32\drivers\lgusbmodem.sys (LG Electronics Inc.)
DRV - (UsbDiag) -- C:\Windows\System32\drivers\lgusbdiag.sys (LG Electronics Inc.)
DRV - (usbbus) -- C:\Windows\System32\drivers\lgusbbus.sys (LG Electronics Inc.)
DRV - (Afc) -- C:\Windows\System32\drivers\afc.sys (Arcsoft, Inc.)


========== Standard Registry (All) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\windows\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\System32\ieframe.dll (Microsoft Corporation)
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66}: "URL" = http://www.google.com/search?q={searchTerms}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.countryCode: "CZ"
FF - prefs.js..browser.search.defaultthis.engineName: "Google (avast)"
FF - prefs.js..browser.search.isUS: false
FF - prefs.js..browser.search.region: "CZ"
FF - prefs.js..browser.startup.homepage: "about:home"
FF - prefs.js..extensions.enabledAddons: wrc%40avast.com:10.1.0.170
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:38.0.5
FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF32_17_0_0_190.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.67.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.67.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nokia.com/EnablerPlugin: C:\Program Files\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( )
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.27.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.27.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.6: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.5: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2015/07/03 17:37:32 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2014/11/29 20:08:23 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 38.0.5\extensions\\Components: C:\Program Files\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 38.0.5\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2015/06/14 16:28:38 | 000,000,000 | ---D | M]

[2013/08/13 12:41:51 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jiříček\AppData\Roaming\Mozilla\Extensions
[2015/04/27 17:08:16 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jiříček\AppData\Roaming\Mozilla\Firefox\Profiles\kz8srv3r.default\extensions
[2015/01/22 15:31:09 | 000,002,428 | ---- | M] () -- C:\Users\Jiříček\AppData\Roaming\Mozilla\Firefox\Profiles\kz8srv3r.default\searchplugins\google-avast.xml
[2015/06/03 10:37:12 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions
[2015/06/03 10:37:22 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2015/07/03 17:37:32 | 000,000,000 | ---D | M] ("Avast Online Security") -- C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF
[2007/04/10 18:21:08 | 000,163,256 | ---- | M] (Microsoft Corporation) -- C:\Program Files\mozilla firefox\plugins\np-mswmp.dll
[2013/12/07 23:20:29 | 000,238,776 | ---- | M] (Pando Networks) -- C:\Program Files\mozilla firefox\plugins\npPandoWebInst.dll
[2015/05/01 20:10:42 | 000,229,608 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\mozilla firefox\plugins\nppdf32.dll

========== Chrome ==========

CHR - Extension: No name found = C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\
CHR - Extension: No name found = C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_1\
CHR - Extension: No name found = C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_1\
CHR - Extension: No name found = C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_1\
CHR - Extension: No name found = C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_1\
CHR - Extension: No name found = C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck\10.2.0.190_1\
CHR - Extension: No name found = C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\
CHR - Extension: No name found = C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\10.2.0.190_1\
CHR - Extension: No name found = C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_1\
CHR - Extension: No name found = C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_1\

O1 HOSTS File: ([2015/07/04 09:59:06 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
O2 - BHO: (MSS+ Identifier) - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (Avast Software s.r.o.)
O2 - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
O2 - BHO: (Windows Live Messenger Companion Helper) - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (HP Smart BHO Class) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.)
O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o.)
O4 - HKLM..\Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe (Intel Corporation)
O4 - HKLM..\Run: [IgfxTray] C:\Windows\System32\igfxtray.exe (Intel Corporation)
O4 - HKLM..\Run: [Persistence] C:\Windows\System32\igfxpers.exe (Intel Corporation)
O4 - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray.exe (IDT, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUIADesktopToggle = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SoftwareSASGeneration = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\windows\System32\GPhotos.scr (Google Inc.)
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
O9 - Extra Button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra Button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\Windows\System32\nlaapi.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\Windows\System32\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Windows\System32\NapiNSP.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Windows\System32\wshbth.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Windows\System32\winrnr.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000021 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000022 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000023 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000024 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000025 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000026 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000027 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000028 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000029 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000030 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000031 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000032 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000033 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000034 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000035 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000036 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000037 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O15 - HKLM\..Trusted Domains: mojebanka.cz ([etrading] https in Trusted sites)
O15 - HKLM\..Trusted Domains: mojebanka.cz ([www] https in Trusted sites)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.138
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1278BF7E-7057-4AF7-BD7F-100649410166}: DhcpNameServer = 10.0.0.138
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\System32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - Winlogon\Notify\DeviceNP: DllName - (DeviceNP.dll) - C:\windows\System32\DeviceNP.dll (Hewlett-Packard Limited)
O20 - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\windows\System32\igfxdev.dll (Intel Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (credssp.dll) - C:\windows\System32\credssp.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\windows\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - C:\windows\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\windows\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\windows\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\windows\System32\wdigest.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (tspkg) - C:\windows\System32\tspkg.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (pku2u) - C:\windows\System32\pku2u.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (livessp) - C:\windows\System32\livessp.dll (Microsoft Corp.)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2015/07/05 17:46:45 | 003,480,040 | ---- | C] (McAfee, Inc.) -- C:\Users\Jiříček\Desktop\MCPR.exe
[2015/07/04 17:28:04 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Jiříček\Desktop\OTL.exe
[2015/07/04 13:43:17 | 000,000,000 | ---D | C] -- C:\KVRT_Data
[2015/07/04 13:32:14 | 004,197,016 | ---- | C] (Kaspersky Lab ZAO) -- C:\Users\Jiříček\Desktop\tdsskiller.exe
[2015/07/04 13:31:20 | 105,341,088 | ---- | C] (Kaspersky Lab ZAO) -- C:\Users\Jiříček\Desktop\KVRT.exe
[2015/07/04 13:26:29 | 000,224,968 | ---- | C] (ESET) -- C:\Users\Jiříček\Desktop\ESETPoweliksCleaner.exe
[2015/07/04 10:05:18 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2015/07/04 09:57:05 | 000,000,000 | ---D | C] -- C:\windows\temp
[2015/07/04 09:57:05 | 000,000,000 | ---D | C] -- C:\Users\Jiříček\AppData\Local\temp
[2015/07/03 21:10:56 | 001,943,800 | ---- | C] (Bleeping Computer, LLC) -- C:\Users\Jiříček\Desktop\rkill.com
[2015/07/03 20:31:30 | 000,000,000 | ---D | C] -- C:\windows\Minidump
[2015/07/03 20:12:39 | 000,000,000 | ---D | C] -- C:\Users\Jiříček\AppData\Local\CrashDumps
[2015/07/03 19:33:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes' Anti-Malware (portable)
[2015/07/03 19:32:10 | 000,000,000 | ---D | C] -- C:\Users\Jiříček\Desktop\mbar
[2015/07/03 19:30:14 | 005,200,384 | ---- | C] (AVAST Software) -- C:\Users\Jiříček\Desktop\aswmbr.exe
[2015/07/03 19:30:11 | 016,502,728 | ---- | C] (Malwarebytes Corp.) -- C:\Users\Jiříček\Desktop\mbar-1.09.1.1004.exe
[2015/07/03 18:21:39 | 000,000,000 | ---D | C] -- C:\windows\System32\vbox
[2015/07/03 17:37:32 | 000,291,312 | ---- | C] (Avast Software s.r.o.) -- C:\windows\System32\aswBoot.exe
[2015/07/03 17:37:26 | 000,043,112 | ---- | C] (Avast Software s.r.o.) -- C:\windows\avastSS.scr
[2015/07/03 12:23:57 | 000,518,144 | ---- | C] (SteelWerX) -- C:\windows\SWREG.exe
[2015/07/03 12:23:57 | 000,406,528 | ---- | C] (SteelWerX) -- C:\windows\SWSC.exe
[2015/07/03 12:23:57 | 000,060,416 | ---- | C] (NirSoft) -- C:\windows\NIRCMD.exe
[2015/07/03 12:23:31 | 000,000,000 | ---D | C] -- C:\Qoobox
[2015/07/03 12:22:51 | 000,000,000 | ---D | C] -- C:\windows\erdnt
[2015/07/03 12:21:48 | 005,631,262 | R--- | C] (Swearware) -- C:\Users\Jiříček\Desktop\ComboFix.exe
[2015/07/03 10:22:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
[2015/07/03 10:22:28 | 000,000,000 | ---D | C] -- C:\Program Files\CrystalDiskInfo
[2015/07/02 13:51:43 | 000,000,000 | ---D | C] -- C:\ProgramData\RogueKiller
[2015/07/02 09:53:47 | 000,000,000 | ---D | C] -- C:\Users\Jiříček\Desktop\škola
[2015/06/16 18:28:34 | 000,000,000 | ---D | C] -- C:\Users\Jiříček\AppData\Local\Skype
[2015/06/14 16:53:14 | 000,000,000 | ---D | C] -- C:\Users\Jiříček\AppData\Local\OCCT_-_Ocbase_-_Adrien_Me
[2015/06/14 16:53:08 | 000,000,000 | ---D | C] -- C:\Users\Jiříček\Documents\OCCT
[2015/06/14 16:48:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OCCT
[2015/06/14 16:48:50 | 000,000,000 | ---D | C] -- C:\Program Files\OCCTPT
[2015/06/14 16:47:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
[2015/06/14 16:47:01 | 000,000,000 | ---D | C] -- C:\Program Files\CPUID
[2015/06/13 17:03:34 | 000,000,000 | ---D | C] -- C:\Users\Jiříček\AppData\Local\GWX
[2015/06/12 10:43:04 | 000,901,120 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\aeinv.dll
[2015/06/12 10:43:04 | 000,879,104 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\appraiser.dll
[2015/06/12 10:43:04 | 000,621,568 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\invagent.dll
[2015/06/12 10:43:04 | 000,571,392 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\generaltel.dll
[2015/06/12 10:43:04 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\aepic.dll
[2015/06/12 10:43:03 | 000,333,824 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\devinv.dll
[2015/06/12 10:43:03 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\aepdu.dll
[2015/06/12 10:43:03 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\acmigration.dll
[2015/06/12 10:43:01 | 002,384,384 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\win32k.sys
[2015/06/12 10:43:00 | 000,054,656 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\drivers\stream.sys
[2015/06/12 10:42:50 | 000,685,568 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ie4uinit.exe
[2015/06/12 10:42:50 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieetwcollector.exe
[2015/06/12 10:42:50 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\JavaScriptCollectionAgent.dll
[2015/06/12 10:42:50 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieetwproxystub.dll
[2015/06/12 10:42:50 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\iernonce.dll
[2015/06/12 10:42:49 | 000,667,648 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\MsSpellCheckingFacility.exe
[2015/06/12 10:42:49 | 000,342,728 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\iedkcs32.dll
[2015/06/12 10:42:48 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieapfltr.dll
[2015/06/12 10:42:48 | 000,689,152 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msfeeds.dll
[2015/06/12 10:42:48 | 000,620,032 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\jscript9diag.dll
[2015/06/12 10:42:48 | 000,418,304 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dxtmsft.dll
[2015/06/12 10:42:48 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieUnatt.exe
[2015/06/12 10:42:48 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\jsproxy.dll
[2015/06/12 10:42:47 | 002,724,864 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\mshtml.tlb
[2015/06/12 10:42:46 | 002,052,608 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\inetcpl.cpl
[2015/06/12 10:42:46 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msrating.dll
[2015/06/12 10:42:46 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\iesetup.dll
[2015/06/12 10:42:45 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieetwcollectorres.dll
[2015/06/12 10:42:44 | 000,285,696 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dxtrans.dll
[2015/06/12 10:42:43 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieui.dll
[2015/06/12 10:42:39 | 000,341,504 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\html.iec
[2015/06/12 10:42:38 | 001,155,072 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\mshtmlmedia.dll
[2015/06/12 10:42:38 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\MshtmlDac.dll
[2015/06/12 10:42:37 | 004,305,920 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\jscript9.dll
[2015/06/12 10:42:22 | 000,271,360 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\conhost.exe
[2015/06/12 10:42:22 | 000,169,984 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\winsrv.dll
[2015/06/12 10:42:22 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-processthreads-l1-1-0.dll
[2015/06/12 10:42:22 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll
[2015/06/12 10:42:22 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-synch-l1-1-0.dll
[2015/06/12 10:42:22 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-misc-l1-1-0.dll
[2015/06/12 10:42:21 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-localregistry-l1-1-0.dll
[2015/06/12 10:42:21 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll
[2015/06/12 10:42:21 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll
[2015/06/12 10:42:21 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-memory-l1-1-0.dll
[2015/06/12 10:42:21 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2015/06/12 10:42:21 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-string-l1-1-0.dll
[2015/06/12 10:42:21 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll
[2015/06/12 10:42:21 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-profile-l1-1-0.dll
[2015/06/12 10:42:21 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-fibers-l1-1-0.dll
[2015/06/12 10:42:21 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-debug-l1-1-0.dll
[2015/06/12 10:42:20 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-file-l1-1-0.dll
[2015/06/12 10:42:20 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-interlocked-l1-1-0.dll
[2015/06/12 10:42:20 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-heap-l1-1-0.dll
[2015/06/12 10:42:20 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-io-l1-1-0.dll
[2015/06/12 10:42:20 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-handle-l1-1-0.dll
[2015/06/12 10:42:20 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll
[2015/06/12 10:42:20 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-delayload-l1-1-0.dll
[2015/06/12 10:42:20 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-datetime-l1-1-0.dll
[2015/06/12 10:42:19 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-security-base-l1-1-0.dll
[2015/06/12 10:42:19 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-threadpool-l1-1-0.dll
[2015/06/12 10:42:19 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-localization-l1-1-0.dll
[2015/06/12 10:42:19 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-xstate-l1-1-0.dll
[2015/06/12 10:42:19 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-util-l1-1-0.dll
[2015/06/12 10:42:19 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\api-ms-win-core-console-l1-1-0.dll
[2015/06/12 10:42:15 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\spwmp.dll
[2015/06/12 10:42:15 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msdxm.ocx
[2015/06/12 10:42:15 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dxmasf.dll
[2015/06/12 10:42:14 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\wmploc.DLL
[2015/06/12 10:42:05 | 000,853,504 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\diagtrack.dll
[2015/06/12 10:42:04 | 003,989,440 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ntkrnlpa.exe
[2015/06/12 10:42:03 | 000,400,896 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\srcore.dll
[2015/06/12 10:42:03 | 000,364,544 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\tracerpt.exe
[2015/06/12 10:42:02 | 003,934,144 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ntoskrnl.exe
[2015/06/12 10:42:02 | 000,262,656 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\rstrui.exe
[2015/06/12 10:42:01 | 000,635,392 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\tdh.dll
[2015/06/12 10:42:01 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ncrypt.dll
[2015/06/12 10:42:01 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\logman.exe
[2015/06/12 10:42:00 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\auditpol.exe
[2015/06/12 10:42:00 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\typeperf.exe
[2015/06/12 10:42:00 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\relog.exe
[2015/06/12 10:41:59 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\csrsrv.dll
[2015/06/12 10:41:59 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\diskperf.exe
[2015/06/12 10:41:58 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\sspisrv.dll
[2015/06/12 10:41:58 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\apisetschema.dll
[2015/06/12 10:41:57 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\adtschema.dll
[2015/06/12 10:41:57 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msaudite.dll
[2015/06/12 10:41:56 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msobjs.dll
[2015/06/12 10:41:56 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\UtcResources.dll

========== Files - Modified Within 30 Days ==========

[2015/07/05 19:26:23 | 000,022,688 | -H-- | M] () -- C:\windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2015/07/05 19:26:23 | 000,022,688 | -H-- | M] () -- C:\windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2015/07/05 19:21:46 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2015/07/05 19:21:46 | 000,000,940 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2015/07/05 19:21:44 | 000,000,914 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2015/07/05 18:35:52 | 000,000,936 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2015/07/05 18:29:14 | 000,672,144 | ---- | M] () -- C:\windows\System32\perfh005.dat
[2015/07/05 18:29:14 | 000,657,142 | ---- | M] () -- C:\windows\System32\perfh009.dat
[2015/07/05 18:29:14 | 000,142,708 | ---- | M] () -- C:\windows\System32\perfc005.dat
[2015/07/05 18:29:14 | 000,122,954 | ---- | M] () -- C:\windows\System32\perfc009.dat
[2015/07/05 18:21:38 | 2302,222,336 | -HS- | M] () -- C:\hiberfil.sys
[2015/07/05 17:47:00 | 003,480,040 | ---- | M] (McAfee, Inc.) -- C:\Users\Jiříček\Desktop\MCPR.exe
[2015/07/04 17:28:18 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Jiříček\Desktop\OTL.exe
[2015/07/04 13:33:03 | 105,341,088 | ---- | M] (Kaspersky Lab ZAO) -- C:\Users\Jiříček\Desktop\KVRT.exe
[2015/07/04 13:32:26 | 004,197,016 | ---- | M] (Kaspersky Lab ZAO) -- C:\Users\Jiříček\Desktop\tdsskiller.exe
[2015/07/04 13:26:30 | 000,224,968 | ---- | M] (ESET) -- C:\Users\Jiříček\Desktop\ESETPoweliksCleaner.exe
[2015/07/04 09:59:06 | 000,000,027 | ---- | M] () -- C:\windows\System32\drivers\etc\hosts
[2015/07/03 21:11:22 | 001,943,800 | ---- | M] (Bleeping Computer, LLC) -- C:\Users\Jiříček\Desktop\rkill.com
[2015/07/03 19:33:14 | 000,119,512 | ---- | M] (Malwarebytes Corporation) -- C:\windows\System32\drivers\MBAMSwissArmy.sys
[2015/07/03 19:32:13 | 000,092,888 | ---- | M] (Malwarebytes Corporation) -- C:\windows\System32\drivers\mbamchameleon.sys
[2015/07/03 19:30:29 | 016,502,728 | ---- | M] (Malwarebytes Corp.) -- C:\Users\Jiříček\Desktop\mbar-1.09.1.1004.exe
[2015/07/03 19:30:20 | 005,200,384 | ---- | M] (AVAST Software) -- C:\Users\Jiříček\Desktop\aswmbr.exe
[2015/07/03 17:37:57 | 000,428,120 | ---- | M] (Avast Software s.r.o.) -- C:\windows\System32\drivers\aswsp.sys
[2015/07/03 17:37:30 | 000,209,048 | ---- | M] () -- C:\windows\System32\drivers\aswVmm.sys
[2015/07/03 17:37:30 | 000,106,912 | ---- | M] (Avast Software s.r.o.) -- C:\windows\System32\drivers\aswStm.sys
[2015/07/03 17:37:30 | 000,081,728 | ---- | M] (Avast Software s.r.o.) -- C:\windows\System32\drivers\aswRdr2.sys
[2015/07/03 17:37:30 | 000,074,976 | ---- | M] (Avast Software s.r.o.) -- C:\windows\System32\drivers\aswMonFlt.sys
[2015/07/03 17:37:30 | 000,049,904 | ---- | M] () -- C:\windows\System32\drivers\aswRvrt.sys
[2015/07/03 17:37:30 | 000,024,144 | ---- | M] () -- C:\windows\System32\drivers\aswHwid.sys
[2015/07/03 17:37:26 | 000,291,312 | ---- | M] (Avast Software s.r.o.) -- C:\windows\System32\aswBoot.exe
[2015/07/03 17:37:26 | 000,043,112 | ---- | M] (Avast Software s.r.o.) -- C:\windows\avastSS.scr
[2015/07/03 17:37:17 | 000,787,760 | ---- | M] (Avast Software s.r.o.) -- C:\windows\System32\drivers\aswSnx.sys
[2015/07/03 12:22:18 | 005,631,262 | R--- | M] (Swearware) -- C:\Users\Jiříček\Desktop\ComboFix.exe
[2015/07/03 10:22:43 | 000,001,930 | ---- | M] () -- C:\Users\Jiříček\Desktop\CrystalDiskInfo.lnk
[2015/07/02 21:25:40 | 000,024,064 | ---- | M] () -- C:\windows\zoek-delete.exe
[2015/07/02 21:09:22 | 000,035,064 | ---- | M] () -- C:\windows\System32\drivers\TrueSight.sys
[2015/07/02 13:09:27 | 000,000,207 | ---- | M] () -- C:\windows\tweaking.com-regbackup-DRAHA-HP-Windows-7-Home-Premium-(32-bit).dat
[2015/07/02 10:30:36 | 000,001,064 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2015/07/01 17:36:52 | 000,002,205 | ---- | M] () -- C:\Users\Jiříček\Desktop\Google Chrome.lnk
[2015/06/29 11:21:24 | 000,778,416 | ---- | M] (Adobe Systems Incorporated) -- C:\windows\System32\FlashPlayerApp.exe
[2015/06/29 11:21:24 | 000,142,512 | ---- | M] (Adobe Systems Incorporated) -- C:\windows\System32\FlashPlayerCPLApp.cpl
[2015/06/18 08:41:54 | 000,051,928 | ---- | M] (Malwarebytes Corporation) -- C:\windows\System32\drivers\mwac.sys
[2015/06/18 08:41:36 | 000,023,256 | ---- | M] (Malwarebytes Corporation) -- C:\windows\System32\drivers\mbam.sys
[2015/06/14 16:57:23 | 000,001,026 | ---- | M] () -- C:\Users\Public\Desktop\CPUID CPU-Z.lnk
[2015/06/14 16:49:04 | 000,000,929 | ---- | M] () -- C:\Users\Jiříček\Desktop\OCCT.lnk
[2015/06/14 16:47:02 | 000,001,087 | ---- | M] () -- C:\Users\Public\Desktop\CPUID HWMonitor.lnk
[2015/06/12 15:06:59 | 000,419,872 | ---- | M] () -- C:\windows\System32\FNTCACHE.DAT

========== Files Created - No Company Name ==========

[2015/07/03 12:23:57 | 000,256,000 | ---- | C] () -- C:\windows\PEV.exe
[2015/07/03 12:23:57 | 000,208,896 | ---- | C] () -- C:\windows\MBR.exe
[2015/07/03 12:23:57 | 000,098,816 | ---- | C] () -- C:\windows\sed.exe
[2015/07/03 12:23:57 | 000,080,412 | ---- | C] () -- C:\windows\grep.exe
[2015/07/03 12:23:57 | 000,068,096 | ---- | C] () -- C:\windows\zip.exe
[2015/07/03 11:31:59 | 000,028,672 | ---- | C] () -- C:\Users\Jiříček\Desktop\memtest.exe
[2015/07/03 10:22:43 | 000,001,930 | ---- | C] () -- C:\Users\Jiříček\Desktop\CrystalDiskInfo.lnk
[2015/07/02 23:09:38 | 000,024,064 | ---- | C] () -- C:\windows\zoek-delete.exe
[2015/07/02 13:51:46 | 000,035,064 | ---- | C] () -- C:\windows\System32\drivers\TrueSight.sys
[2015/07/02 13:09:27 | 000,000,207 | ---- | C] () -- C:\windows\tweaking.com-regbackup-DRAHA-HP-Windows-7-Home-Premium-(32-bit).dat
[2015/06/14 16:57:23 | 000,001,026 | ---- | C] () -- C:\Users\Public\Desktop\CPUID CPU-Z.lnk
[2015/06/14 16:49:03 | 000,000,929 | ---- | C] () -- C:\Users\Jiříček\Desktop\OCCT.lnk
[2015/06/14 16:47:02 | 000,001,087 | ---- | C] () -- C:\Users\Public\Desktop\CPUID HWMonitor.lnk
[2014/11/29 20:00:23 | 000,242,479 | ---- | C] () -- C:\windows\hpoins19.dat
[2014/11/29 20:00:23 | 000,013,898 | ---- | C] () -- C:\windows\hpomdl19.dat
[2014/11/16 14:27:11 | 000,209,048 | ---- | C] () -- C:\windows\System32\drivers\aswVmm.sys
[2014/11/16 14:27:11 | 000,049,904 | ---- | C] () -- C:\windows\System32\drivers\aswRvrt.sys
[2014/11/16 14:27:11 | 000,024,144 | ---- | C] () -- C:\windows\System32\drivers\aswHwid.sys
[2013/09/10 16:22:46 | 000,139,656 | ---- | C] () -- C:\windows\System32\drivers\PnkBstrK.sys
[2013/09/10 16:22:46 | 000,138,904 | ---- | C] () -- C:\Users\Jiříček\AppData\Roaming\PnkBstrK.sys
[2013/09/10 16:22:35 | 000,290,776 | ---- | C] () -- C:\windows\System32\PnkBstrB.exe
[2013/09/10 16:22:33 | 002,250,024 | ---- | C] () -- C:\windows\System32\pbsvc.exe
[2013/09/10 16:22:33 | 000,076,888 | ---- | C] () -- C:\windows\System32\PnkBstrA.exe
[2013/09/06 12:59:47 | 000,000,000 | ---- | C] () -- C:\Users\Jiříček\regbcm
[2013/08/13 19:19:06 | 000,010,240 | ---- | C] () -- C:\Users\Jiříček\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2013/06/08 19:29:19 | 000,000,057 | ---- | C] () -- C:\ProgramData\Ament.ini
[2012/12/28 16:05:52 | 000,000,848 | -HS- | C] () -- C:\ProgramData\KGyGaAvL.sys
[2002/08/29 19:33:56 | 000,319,488 | R--- | C] () -- C:\Users\Jiříček\AppData\Roaming\MafiaSetup.exe
AMD Ryzen 5 5600X | MSI MAG B550 TOMAHAWK | G.Skill Aegis 32GB 3200MHz | Kingston A2000 1TB | PowerColor Red Devil RX 6700 XT 12GB | XPG Core Reactor 750W | Be quiet! PURE BASE 500 | Asus VG27AQ1A

flowem
Level 5.5
Level 5.5
Příspěvky: 2858
Registrován: březen 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý notebook

Příspěvekod flowem » 05 črc 2015 19:37

========== ZeroAccess Check ==========

[2009/07/14 06:42:31 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2015/02/13 07:26:18 | 012,875,264 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 14:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2009/07/14 03:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== LOP Check ==========

[2014/09/12 13:34:42 | 000,000,000 | ---D | M] -- C:\Users\Jiříček\AppData\Roaming\Ashampoo
[2014/11/16 17:35:40 | 000,000,000 | ---D | M] -- C:\Users\Jiříček\AppData\Roaming\AVAST Software
[2015/01/05 17:46:39 | 000,000,000 | ---D | M] -- C:\Users\Jiříček\AppData\Roaming\DAEMON Tools Lite
[2013/08/12 18:30:56 | 000,000,000 | ---D | M] -- C:\Users\Jiříček\AppData\Roaming\DigitalPersona
[2015/01/18 18:36:59 | 000,000,000 | ---D | M] -- C:\Users\Jiříček\AppData\Roaming\Foxit Software
[2015/01/05 22:07:03 | 000,000,000 | ---D | M] -- C:\Users\Jiříček\AppData\Roaming\PC Suite
[2013/08/15 06:52:08 | 000,000,000 | ---D | M] -- C:\Users\Jiříček\AppData\Roaming\Publish Providers
[2013/12/20 13:06:35 | 000,000,000 | ---D | M] -- C:\Users\Jiříček\AppData\Roaming\Quadcore Games
[2013/08/12 18:31:14 | 000,000,000 | ---D | M] -- C:\Users\Jiříček\AppData\Roaming\Seznam.cz
[2015/01/05 18:02:15 | 000,000,000 | ---D | M] -- C:\Users\Jiříček\AppData\Roaming\Solveig Multimedia
[2013/08/15 07:29:38 | 000,000,000 | ---D | M] -- C:\Users\Jiříček\AppData\Roaming\Sony
[2013/08/15 09:20:43 | 000,000,000 | ---D | M] -- C:\Users\Jiříček\AppData\Roaming\Sony Creative Software Inc
[2015/01/05 17:46:38 | 000,000,000 | ---D | M] -- C:\Users\Jiříček\AppData\Roaming\uTorrent

========== Purity Check ==========



< End of report >
AMD Ryzen 5 5600X | MSI MAG B550 TOMAHAWK | G.Skill Aegis 32GB 3200MHz | Kingston A2000 1TB | PowerColor Red Devil RX 6700 XT 12GB | XPG Core Reactor 750W | Be quiet! PURE BASE 500 | Asus VG27AQ1A

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý notebook

Příspěvekod Orcus » 06 črc 2015 11:01

Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:

Kód: Vybrat vše

:OTL
DRV - (MpKsl429bbab5) -- c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{CB7384B1-3F74-4090-A12F-457514DA69DA}\MpKsl429bbab5.sys File not found
DRV - (catchme) -- C:\Users\JIEK~1\AppData\Local\Temp\catchme.sys File not found
DRV - (aswVmm) -- C:\Users\JIEK~1\AppData\Local\Temp\aswVmm.sys File not found
DRV - (SbFsLock) -- C:\windows\System32\drivers\SbFsLock.sys (McAfee, Inc.)
DRV - (RsvLock) -- C:\windows\System32\drivers\rsvlock.sys (McAfee, Inc.)
DRV - (mfetdik) -- C:\Windows\System32\drivers\mfetdik.sys (McAfee, Inc.)
DRV - (SbAlg) -- C:\windows\System32\drivers\SbAlg.sys (McAfee, Inc.)
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
FF - prefs.js..extensions.enabledAddons: wrc%40avast.com:10.1.0.170
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:38.0.5
FF - user.js - File not found
FF - prefs.js..browser.search.isUS: false
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2015/07/03 17:37:32 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2014/11/29 20:08:23 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 38.0.5\extensions\\Components: C:\Program Files\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 38.0.5\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2015/06/14 16:28:38 | 000,000,000 | ---D | M]
[2013/08/13 12:41:51 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jiříček\AppData\Roaming\Mozilla\Extensions
[2015/04/27 17:08:16 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jiříček\AppData\Roaming\Mozilla\Firefox\Profiles\kz8srv3r.default\extensions
[2015/01/22 15:31:09 | 000,002,428 | ---- | M] () -- C:\Users\Jiříček\AppData\Roaming\Mozilla\Firefox\Profiles\kz8srv3r.default\searchplugins\google-avast.xml
[2015/06/03 10:37:12 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions
[2015/06/03 10:37:22 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
CHR - Extension: No name found = C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\
CHR - Extension: No name found = C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_1\
CHR - Extension: No name found = C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_1\
CHR - Extension: No name found = C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_1\
CHR - Extension: No name found = C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_1\
CHR - Extension: No name found = C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck\10.2.0.190_1\
CHR - Extension: No name found = C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\
CHR - Extension: No name found = C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\10.2.0.190_1\
CHR - Extension: No name found = C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_1\
CHR - Extension: No name found = C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_1\
O2 - BHO: (MSS+ Identifier) - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
[2015/07/05 19:21:46 | 000,000,940 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2015/07/05 19:21:44 | 000,000,914 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2015/07/05 18:35:52 | 000,000,936 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job

:Files
C:\WINDOWS\System32\*.tmp
C:\WINDOWS\*.tmp
C:\WINDOWS\system32\*.tmp.dll
C:\WINDOWS\System32\dllcache\*.tmp
C:\WINDOWS\system32\SET*.tmp
C:\WINDOWS\system32\DUMP*.tmp
c:\windows\Tasks\*.job /s
C:\*.tmp
C:\WINDOWS\System32\drivers\*.tmp
C:\Program Files\*.tmp
C:\Documents and Settings\All Users\Data aplikací\*.tmp
C:\Users\Jiříček\AppData\*.tmp

:Reg
:Commands
[resethosts]
[purity]
[emptytemp]
[EMPTYFLASH]
[start explorer]
[Reboot]


Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

flowem
Level 5.5
Level 5.5
Příspěvky: 2858
Registrován: březen 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý notebook

Příspěvekod flowem » 06 črc 2015 11:46

Udělal jsem to, ale ten program mi teď neodpovídá a nic to nedělá.. Co mám dělat? čekat?
AMD Ryzen 5 5600X | MSI MAG B550 TOMAHAWK | G.Skill Aegis 32GB 3200MHz | Kingston A2000 1TB | PowerColor Red Devil RX 6700 XT 12GB | XPG Core Reactor 750W | Be quiet! PURE BASE 500 | Asus VG27AQ1A

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý notebook

Příspěvekod Orcus » 06 črc 2015 15:11

Nějakou dobu to trvá. Pokud nepomůže, proveď v nouzovém režimu.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

flowem
Level 5.5
Level 5.5
Příspěvky: 2858
Registrován: březen 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý notebook

Příspěvekod flowem » 06 črc 2015 18:53

Tak jsem to udělal v nouz. režimu a furt to samé.. 2 hodiny jsem to nechal, ale stále to neodpovídá.
AMD Ryzen 5 5600X | MSI MAG B550 TOMAHAWK | G.Skill Aegis 32GB 3200MHz | Kingston A2000 1TB | PowerColor Red Devil RX 6700 XT 12GB | XPG Core Reactor 750W | Be quiet! PURE BASE 500 | Asus VG27AQ1A

Uživatelský avatar
jerabina
člen Security týmu
Level 6
Level 6
Příspěvky: 3647
Registrován: březen 13
Bydliště: Litoměřice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý notebook

Příspěvekod jerabina » 06 črc 2015 18:54

Dobře, smažeme to teda přes něco jiného:

Prosím stáhni příslušnou verzi programu pro Tvůj systém 32-bit/64-bit Farbar Recovery Scan Tool (FRST)
32bit.:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
64bit.:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
a ulož jej na plochu. ,pak spusť FRST jako správce
Potvrď způsob užití.
Neměň žádné z výchozích nastavení a klikni na položku „Scan“ („Skenovat“) .Když je skenování dokončeno, ukážou se dva logy = FRST.txt a Addition.txt a uloží se na ploše.Prosím zkopíruj sem celý jejich obsah.
Když nevíš jak dál, přichází na řadu prostudovat manuál!
HJT návod

Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.

flowem
Level 5.5
Level 5.5
Příspěvky: 2858
Registrován: březen 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý notebook

Příspěvekod flowem » 06 črc 2015 20:34

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 05-07-2015
Ran by Jiříček (administrator) on DRAHA-HP on 06-07-2015 20:30:19
Running from C:\Users\Jiříček\Desktop
Loaded Profiles: Jiříček (Available Profiles: Draha & banka & Jiříček & Banka2 & Guest)
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(IBM Corp.) C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AEstSrv.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Foxit Software Inc.) C:\Program Files\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(PDF Complete Inc) C:\Program Files\PDF Complete\pdfsvc.exe
() C:\Windows\System32\PnkBstrA.exe
(Protexis Inc.) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
(ArcSoft, Inc.) C:\Windows\System32\uArcCapture.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray.exe
(IBM Corp.) C:\Program Files\Trusteer\Rapport\bin\RapportService.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-07-03] (Avast Software s.r.o.)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray.exe [495708 2010-09-08] (IDT, Inc.)
Winlogon\Notify\DeviceNP: C:\windows\system32\DeviceNP.dll [2009-11-18] (Hewlett-Packard Limited)
HKU\S-1-5-21-2773443163-1413056139-2955013918-1006\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\windows\System32\scrnsave.scr [10240 2009-07-14] (Microsoft Corporation)
Lsa: [Notification Packages] DPPassFilter scecli
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2015-07-03] (Avast Software s.r.o.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-2773443163-1413056139-2955013918-1006\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-2773443163-1413056139-2955013918-1006\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2773443163-1413056139-2955013918-1006 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
BHO: HP Print Enhancer -> {0347C33E-8762-4905-BF09-768834316C61} -> C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-09-20] (Hewlett-Packard Co.)
BHO: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09] (McAfee, Inc.)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2014-11-16] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-07-03] (Avast Software s.r.o.)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files\Windows Live\Companion\companioncore.dll [2010-09-23] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-11-16] (Oracle Corporation)
BHO: HP Smart BHO Class -> {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} -> C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-09-20] (Hewlett-Packard Co.)
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2009-02-26] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{1278BF7E-7057-4AF7-BD7F-100649410166}: [DhcpNameServer] 10.0.0.138

FireFox:
========
FF ProfilePath: C:\Users\Jiříček\AppData\Roaming\Mozilla\Firefox\Profiles\kz8srv3r.default
FF NewTab: about:newtab
FF Homepage: about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF32_17_0_0_190.dll [2015-06-29] ()
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll [2013-04-02] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-11-16] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-11-16] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2010-09-23] (Microsoft Corporation)
FF Plugin: @nokia.com/EnablerPlugin -> C:\Program Files\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll [2012-12-21] ( )
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-19] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-19] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-05-01] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npPandoWebInst.dll [2013-12-07] (Pando Networks)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2015-05-01] (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Jiříček\AppData\Roaming\Mozilla\Firefox\Profiles\kz8srv3r.default\searchplugins\google-avast.xml [2015-01-22]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-11-16]
FF HKLM\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2014-11-29]

Chrome:
=======
CHR Profile: C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-07-03]
CHR Extension: (Google Docs) - C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-08-12]
CHR Extension: (Google Drive) - C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-08-12]
CHR Extension: (YouTube) - C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-08-12]
CHR Extension: (Google Search) - C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-08-12]
CHR Extension: (Avast SafePrice) - C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2014-11-23]
CHR Extension: (Google Sheets) - C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-07-03]
CHR Extension: (Avast Online Security) - C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-11-16]
CHR Extension: (Google Wallet) - C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-02]
CHR Extension: (Gmail) - C:\Users\Jiříček\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-08-12]
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-07-03]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-07-03]
CHR HKU\S-1-5-21-2773443163-1413056139-2955013918-1006\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bbjllphbppobebmjpjcijfbakobcheof] - https://clients2.google.com/service/update2/crx

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 ACDaemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-07-03] (Avast Software s.r.o.)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3207800 2015-07-03] (Avast Software)
S3 FLCDLOCK; c:\Windows\system32\flcdlock.exe [362040 2009-11-18] (Hewlett-Packard Ltd)
R2 FoxitCloudUpdateService; C:\Program Files\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [244392 2015-06-02] (Foxit Software Inc.)
R2 HP Wireless Assistant Service; C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [102968 2009-12-17] (Hewlett-Packard)
R3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 hpqddsvc; C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 HPSLPSVC; C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL [694784 2009-09-20] (Hewlett-Packard Co.) [File not signed]
S2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
R2 Net Driver HPZ12; C:\windows\system32\HPZinw12.dll [44544 2008-12-03] (Hewlett-Packard) [File not signed]
R2 pdfcDispatcher; C:\Program Files\PDF Complete\pdfsvc.exe [635416 2009-10-23] (PDF Complete Inc)
R2 Pml Driver HPZ12; C:\windows\system32\HPZipm12.dll [53760 2008-12-03] (Hewlett-Packard) [File not signed]
R2 PnkBstrA; C:\windows\system32\PnkBstrA.exe [76888 2013-12-08] ()
R2 RapportMgmtService; C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe [2222360 2015-06-02] (IBM Corp.)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV.exe [254034 2010-09-08] (IDT, Inc.)
R2 uArcCapture; C:\windows\system32\uArcCapture.exe [506472 2009-12-04] (ArcSoft, Inc.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 Afc; C:\windows\System32\drivers\Afc.sys [18688 2006-11-10] (Arcsoft, Inc.)
R3 ARCVCAM; C:\windows\System32\DRIVERS\ArcSoftVCapture.sys [29824 2009-12-04] (ArcSoft, Inc.)
R2 aswHwid; C:\windows\system32\drivers\aswHwid.sys [24144 2015-07-03] ()
R2 aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [74976 2015-07-03] (Avast Software s.r.o.)
R1 aswRdr; C:\windows\system32\drivers\aswRdr2.sys [81728 2015-07-03] (Avast Software s.r.o.)
R0 aswRvrt; C:\windows\system32\Drivers\aswRvrt.sys [49904 2015-07-03] ()
R1 aswSnx; C:\windows\system32\drivers\aswSnx.sys [787760 2015-07-03] (Avast Software s.r.o.)
R1 aswSP; C:\windows\system32\drivers\aswSP.sys [428120 2015-07-03] (Avast Software s.r.o.)
R2 aswStm; C:\windows\system32\drivers\aswStm.sys [106912 2015-07-03] (Avast Software s.r.o.)
R3 athr; C:\windows\System32\DRIVERS\athr.sys [2957312 2012-06-20] (Qualcomm Atheros Communications, Inc.)
S3 DAMDrv; C:\windows\System32\DRIVERS\DAMDrv.sys [32312 2009-10-21] (Hewlett-Packard Development Company L.P.)
R1 dtsoftbus01; C:\windows\System32\DRIVERS\dtsoftbus01.sys [243128 2013-09-10] (Disc Soft Ltd)
S3 hamachi; C:\windows\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.)
S3 KMWDFILTERx86; C:\windows\System32\DRIVERS\KMWDFILTER.sys [25088 2009-04-29] (Windows (R) Codename Longhorn DDK provider)
R3 MBAMProtector; C:\windows\system32\drivers\mbam.sys [23256 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\windows\system32\drivers\mwac.sys [51928 2015-06-18] (Malwarebytes Corporation)
R1 mfetdik; C:\windows\System32\drivers\mfetdik.sys [55336 2009-05-16] (McAfee, Inc.)
R1 RapportCerberus_1412112; C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus32_1412112.sys [531416 2015-06-29] (IBM Corp.)
R1 RapportEI; C:\Program Files\Trusteer\Rapport\bin\RapportEI.sys [280088 2015-06-02] (IBM Corp.)
R0 RapportHades; C:\windows\System32\Drivers\RapportHades.sys [68280 2015-06-02] (IBM Corp.)
R0 RapportKELL; C:\windows\System32\Drivers\RapportKELL.sys [218264 2015-06-02] (IBM Corp.)
R1 RapportPG; C:\Program Files\Trusteer\Rapport\bin\RapportPG.sys [337176 2015-06-02] (IBM Corp.)
R1 RsvLock; C:\windows\system32\Drivers\RsvLock.sys [40088 2009-12-16] (McAfee, Inc.)
R3 rtsuvc; C:\windows\System32\DRIVERS\rtsuvc.sys [6337128 2011-07-05] (Realtek Semiconductor Corp.)
R0 SafeBoot; C:\windows\system32\Drivers\SafeBoot.sys [110520 2009-12-16] () [File not signed]
R0 SbAlg; C:\windows\system32\Drivers\SbAlg.sys [51800 2009-12-16] (McAfee, Inc.)
R0 SbFsLock; C:\windows\system32\Drivers\SbFsLock.sys [13256 2009-12-16] (McAfee, Inc.)
S3 usbbus; C:\windows\System32\DRIVERS\lgusbbus.sys [13056 2008-11-19] (LG Electronics Inc.)
S3 UsbDiag; C:\windows\System32\DRIVERS\lgusbdiag.sys [19968 2008-11-19] (LG Electronics Inc.)
S3 USBModem; C:\windows\System32\DRIVERS\lgusbmodem.sys [24832 2008-11-19] (LG Electronics Inc.)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [220752 2015-07-03] (Avast Software)
U5 AppMgmt; C:\windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-07-06 20:30 - 2015-07-06 20:31 - 00017204 _____ C:\Users\Jiříček\Desktop\FRST.txt
2015-07-06 20:30 - 2015-07-06 20:30 - 00000000 ____D C:\FRST
2015-07-06 20:29 - 2015-07-06 20:29 - 01636352 _____ (Farbar) C:\Users\Jiříček\Downloads\FRST.exe
2015-07-06 20:29 - 2015-07-06 20:29 - 01636352 _____ (Farbar) C:\Users\Jiříček\Desktop\FRST.exe
2015-07-06 11:17 - 2015-07-06 11:17 - 00000000 ____D C:\_OTL
2015-07-05 18:21 - 2015-07-05 18:21 - 00000468 _____ C:\windows\PFRO.log
2015-07-05 18:05 - 2015-07-06 20:24 - 00051382 _____ C:\windows\WindowsUpdate.log
2015-07-05 18:05 - 2015-07-06 20:18 - 00000168 _____ C:\windows\setupact.log
2015-07-05 18:05 - 2015-07-05 18:05 - 00000000 _____ C:\windows\setuperr.log
2015-07-05 17:46 - 2015-07-05 17:47 - 03480040 _____ (McAfee, Inc.) C:\Users\Jiříček\Desktop\MCPR.exe
2015-07-04 17:28 - 2015-07-04 17:28 - 00602112 _____ (OldTimer Tools) C:\Users\Jiříček\Desktop\OTL.exe
2015-07-04 13:43 - 2015-07-04 15:42 - 00000000 ____D C:\KVRT_Data
2015-07-04 13:32 - 2015-07-04 13:32 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\Jiříček\Desktop\tdsskiller.exe
2015-07-04 13:31 - 2015-07-04 13:33 - 105341088 _____ (Kaspersky Lab ZAO) C:\Users\Jiříček\Desktop\KVRT.exe
2015-07-04 13:26 - 2015-07-04 13:26 - 00224968 _____ (ESET) C:\Users\Jiříček\Desktop\ESETPoweliksCleaner.exe
2015-07-04 10:06 - 2015-07-04 10:06 - 00021974 _____ C:\ComboFix.txt
2015-07-03 21:10 - 2015-07-03 21:11 - 01943800 _____ (Bleeping Computer, LLC) C:\Users\Jiříček\Desktop\rkill.com
2015-07-03 20:31 - 2015-07-05 18:03 - 00000000 ____D C:\windows\Minidump
2015-07-03 20:12 - 2015-07-05 18:03 - 00000000 ____D C:\Users\Jiříček\AppData\Local\CrashDumps
2015-07-03 19:33 - 2015-07-03 20:08 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-07-03 19:32 - 2015-07-03 20:08 - 00000000 ____D C:\Users\Jiříček\Desktop\mbar
2015-07-03 19:30 - 2015-07-03 19:30 - 16502728 _____ (Malwarebytes Corp.) C:\Users\Jiříček\Desktop\mbar-1.09.1.1004.exe
2015-07-03 19:30 - 2015-07-03 19:30 - 05200384 _____ (AVAST Software) C:\Users\Jiříček\Desktop\aswmbr.exe
2015-07-03 18:21 - 2015-07-03 18:21 - 00000000 ____D C:\windows\system32\vbox
2015-07-03 17:37 - 2015-07-03 17:37 - 00291312 _____ (Avast Software s.r.o.) C:\windows\system32\aswBoot.exe
2015-07-03 17:37 - 2015-07-03 17:37 - 00043112 _____ (Avast Software s.r.o.) C:\windows\avastSS.scr
2015-07-03 12:23 - 2015-07-04 10:06 - 00000000 ____D C:\Qoobox
2015-07-03 12:23 - 2011-06-26 08:45 - 00256000 _____ C:\windows\PEV.exe
2015-07-03 12:23 - 2010-11-07 19:20 - 00208896 _____ C:\windows\MBR.exe
2015-07-03 12:23 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\windows\NIRCMD.exe
2015-07-03 12:23 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\windows\SWREG.exe
2015-07-03 12:23 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\windows\SWSC.exe
2015-07-03 12:23 - 2000-08-31 02:00 - 00098816 _____ C:\windows\sed.exe
2015-07-03 12:23 - 2000-08-31 02:00 - 00080412 _____ C:\windows\grep.exe
2015-07-03 12:23 - 2000-08-31 02:00 - 00068096 _____ C:\windows\zip.exe
2015-07-03 12:22 - 2015-07-04 09:57 - 00000000 ____D C:\windows\erdnt
2015-07-03 12:21 - 2015-07-03 12:22 - 05631262 ____R (Swearware) C:\Users\Jiříček\Desktop\ComboFix.exe
2015-07-03 11:31 - 2014-07-24 13:01 - 00028672 _____ () C:\Users\Jiříček\Desktop\memtest.exe
2015-07-03 11:29 - 2015-07-03 11:30 - 00002020 _____ C:\DelFix.txt
2015-07-03 10:22 - 2015-07-03 10:22 - 00001930 _____ C:\Users\Jiříček\Desktop\CrystalDiskInfo.lnk
2015-07-03 10:22 - 2015-07-03 10:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2015-07-03 10:22 - 2015-07-03 10:22 - 00000000 ____D C:\Program Files\CrystalDiskInfo
2015-07-02 23:09 - 2015-07-02 21:25 - 00024064 _____ C:\windows\zoek-delete.exe
2015-07-02 13:51 - 2015-07-02 21:09 - 00035064 _____ C:\windows\system32\Drivers\TrueSight.sys
2015-07-02 13:51 - 2015-07-02 14:10 - 00000000 ____D C:\ProgramData\RogueKiller
2015-07-02 13:09 - 2015-07-02 13:09 - 00000207 _____ C:\windows\tweaking.com-regbackup-DRAHA-HP-Windows-7-Home-Premium-(32-bit).dat
2015-07-02 09:53 - 2015-07-02 09:54 - 00000000 ____D C:\Users\Jiříček\Desktop\škola
2015-06-21 16:06 - 2015-06-21 16:08 - 00000000 ____D C:\Users\Guest\Desktop\zahrada fotky 2015
2015-06-16 18:28 - 2015-06-16 18:28 - 00000000 ____D C:\Users\Jiříček\AppData\Local\Skype
2015-06-14 16:57 - 2015-06-14 16:57 - 00001026 _____ C:\Users\Public\Desktop\CPUID CPU-Z.lnk
2015-06-14 16:53 - 2015-06-14 16:53 - 00000000 ____D C:\Users\Jiříček\Documents\OCCT
2015-06-14 16:53 - 2015-06-14 16:53 - 00000000 ____D C:\Users\Jiříček\AppData\Local\OCCT_-_Ocbase_-_Adrien_Me
2015-06-14 16:49 - 2015-06-14 16:49 - 00000929 _____ C:\Users\Jiříček\Desktop\OCCT.lnk
2015-06-14 16:49 - 2015-06-14 16:49 - 00000929 _____ C:\Users\Guest\Desktop\OCCT.lnk
2015-06-14 16:49 - 2015-06-14 16:49 - 00000929 _____ C:\Users\Draha\Desktop\OCCT.lnk
2015-06-14 16:49 - 2015-06-14 16:49 - 00000929 _____ C:\Users\Banka2\Desktop\OCCT.lnk
2015-06-14 16:49 - 2015-06-14 16:49 - 00000929 _____ C:\Users\banka\Desktop\OCCT.lnk
2015-06-14 16:48 - 2015-06-14 16:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OCCT
2015-06-14 16:48 - 2015-06-14 16:49 - 00000000 ____D C:\Program Files\OCCTPT
2015-06-14 16:47 - 2015-06-14 16:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2015-06-14 16:47 - 2015-06-14 16:57 - 00000000 ____D C:\Program Files\CPUID
2015-06-14 16:47 - 2015-06-14 16:47 - 00001087 _____ C:\Users\Public\Desktop\CPUID HWMonitor.lnk
2015-06-13 17:03 - 2015-06-13 17:03 - 00000000 ____D C:\Users\Jiříček\AppData\Local\GWX
2015-06-12 10:43 - 2015-05-25 19:00 - 02384384 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2015-06-12 10:43 - 2015-05-22 20:03 - 00571392 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2015-06-12 10:43 - 2015-05-22 20:02 - 00879104 _____ (Microsoft Corporation) C:\windows\system32\appraiser.dll
2015-06-12 10:43 - 2015-05-22 20:02 - 00621568 _____ (Microsoft Corporation) C:\windows\system32\invagent.dll
2015-06-12 10:43 - 2015-05-22 20:02 - 00333824 _____ (Microsoft Corporation) C:\windows\system32\devinv.dll
2015-06-12 10:43 - 2015-05-22 20:02 - 00202752 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2015-06-12 10:43 - 2015-05-22 20:02 - 00037888 _____ (Microsoft Corporation) C:\windows\system32\acmigration.dll
2015-06-12 10:43 - 2015-05-22 19:58 - 00901120 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2015-06-12 10:43 - 2015-05-21 15:20 - 00163840 _____ (Microsoft Corporation) C:\windows\system32\aepic.dll
2015-06-12 10:43 - 2015-04-11 05:07 - 00054656 _____ (Microsoft Corporation) C:\windows\system32\Drivers\stream.sys
2015-06-12 10:42 - 2015-06-02 21:35 - 00342728 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2015-06-12 10:42 - 2015-05-27 16:08 - 19607040 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2015-06-12 10:42 - 2015-05-25 20:07 - 03989440 _____ (Microsoft Corporation) C:\windows\system32\ntkrnlpa.exe
2015-06-12 10:42 - 2015-05-25 20:07 - 03934144 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2015-06-12 10:42 - 2015-05-25 20:07 - 00137664 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2015-06-12 10:42 - 2015-05-25 20:07 - 00067520 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2015-06-12 10:42 - 2015-05-25 20:04 - 01307648 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2015-06-12 10:42 - 2015-05-25 20:01 - 01061376 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2015-06-12 10:42 - 2015-05-25 20:01 - 00853504 _____ (Microsoft Corporation) C:\windows\system32\diagtrack.dll
2015-06-12 10:42 - 2015-05-25 20:01 - 00641536 _____ (Microsoft Corporation) C:\windows\system32\advapi32.dll
2015-06-12 10:42 - 2015-05-25 20:01 - 00635392 _____ (Microsoft Corporation) C:\windows\system32\tdh.dll
2015-06-12 10:42 - 2015-05-25 20:01 - 00551424 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2015-06-12 10:42 - 2015-05-25 20:01 - 00400896 _____ (Microsoft Corporation) C:\windows\system32\srcore.dll
2015-06-12 10:42 - 2015-05-25 20:01 - 00259584 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2015-06-12 10:42 - 2015-05-25 20:01 - 00248832 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2015-06-12 10:42 - 2015-05-25 20:01 - 00221184 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2015-06-12 10:42 - 2015-05-25 20:01 - 00172032 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll
2015-06-12 10:42 - 2015-05-25 20:01 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\sechost.dll
2015-06-12 10:42 - 2015-05-25 20:01 - 00065536 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2015-06-12 10:42 - 2015-05-25 20:00 - 00364544 _____ (Microsoft Corporation) C:\windows\system32\tracerpt.exe
2015-06-12 10:42 - 2015-05-25 20:00 - 00262656 _____ (Microsoft Corporation) C:\windows\system32\rstrui.exe
2015-06-12 10:42 - 2015-05-25 20:00 - 00082944 _____ (Microsoft Corporation) C:\windows\system32\logman.exe
2015-06-12 10:42 - 2015-05-25 20:00 - 00069632 _____ (Microsoft Corporation) C:\windows\system32\smss.exe
2015-06-12 10:42 - 2015-05-25 20:00 - 00050176 _____ (Microsoft Corporation) C:\windows\system32\auditpol.exe
2015-06-12 10:42 - 2015-05-25 20:00 - 00040448 _____ (Microsoft Corporation) C:\windows\system32\typeperf.exe
2015-06-12 10:42 - 2015-05-25 20:00 - 00037888 _____ (Microsoft Corporation) C:\windows\system32\relog.exe
2015-06-12 10:42 - 2015-05-23 05:28 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2015-06-12 10:42 - 2015-05-23 05:28 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2015-06-12 10:42 - 2015-05-23 05:15 - 00503808 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2015-06-12 10:42 - 2015-05-23 05:15 - 00062464 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2015-06-12 10:42 - 2015-05-23 05:15 - 00047616 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2015-06-12 10:42 - 2015-05-23 05:14 - 00341504 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2015-06-12 10:42 - 2015-05-23 05:13 - 00064000 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2015-06-12 10:42 - 2015-05-23 05:10 - 02278912 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2015-06-12 10:42 - 2015-05-23 05:09 - 00047104 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2015-06-12 10:42 - 2015-05-23 05:08 - 00030720 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2015-06-12 10:42 - 2015-05-23 05:06 - 00478208 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2015-06-12 10:42 - 2015-05-23 05:05 - 00664064 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2015-06-12 10:42 - 2015-05-23 05:05 - 00115712 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2015-06-12 10:42 - 2015-05-23 05:05 - 00102912 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2015-06-12 10:42 - 2015-05-23 05:04 - 00620032 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2015-06-12 10:42 - 2015-05-23 05:00 - 00667648 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2015-06-12 10:42 - 2015-05-23 04:57 - 00418304 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2015-06-12 10:42 - 2015-05-23 04:52 - 00060416 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2015-06-12 10:42 - 2015-05-23 04:49 - 00168960 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2015-06-12 10:42 - 2015-05-23 04:48 - 00076288 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2015-06-12 10:42 - 2015-05-23 04:47 - 04305920 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2015-06-12 10:42 - 2015-05-23 04:47 - 00285696 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2015-06-12 10:42 - 2015-05-23 04:38 - 00689152 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2015-06-12 10:42 - 2015-05-23 04:38 - 00685568 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2015-06-12 10:42 - 2015-05-23 04:37 - 02052608 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2015-06-12 10:42 - 2015-05-23 04:37 - 01155072 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2015-06-12 10:42 - 2015-05-23 04:28 - 12829696 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2015-06-12 10:42 - 2015-05-23 04:20 - 01950720 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2015-06-12 10:42 - 2015-05-23 04:16 - 01309696 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2015-06-12 10:42 - 2015-05-23 04:14 - 00710144 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2015-06-12 10:42 - 2015-05-09 05:14 - 00169984 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll
2015-06-12 10:42 - 2015-05-09 05:13 - 00868352 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll
2015-06-12 10:42 - 2015-05-09 05:13 - 00293376 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll
2015-06-12 10:42 - 2015-05-09 05:12 - 00271360 _____ (Microsoft Corporation) C:\windows\system32\conhost.exe
2015-06-12 10:42 - 2015-05-09 05:08 - 00005120 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 03:59 - 00006144 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 03:59 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 03:59 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-06-12 10:42 - 2015-05-09 03:59 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-06-12 10:42 - 2015-04-29 20:07 - 11411456 _____ (Microsoft Corporation) C:\windows\system32\wmp.dll
2015-06-12 10:42 - 2015-04-29 20:07 - 00008192 _____ (Microsoft Corporation) C:\windows\system32\spwmp.dll
2015-06-12 10:42 - 2015-04-29 20:07 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\msdxm.ocx
2015-06-12 10:42 - 2015-04-29 20:07 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\dxmasf.dll
2015-06-12 10:42 - 2015-04-29 20:05 - 12625408 _____ (Microsoft Corporation) C:\windows\system32\wmploc.DLL
2015-06-12 10:41 - 2015-05-25 20:01 - 00100352 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2015-06-12 10:41 - 2015-05-25 20:01 - 00043008 _____ (Microsoft Corporation) C:\windows\system32\srclient.dll
2015-06-12 10:41 - 2015-05-25 20:01 - 00038912 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll
2015-06-12 10:41 - 2015-05-25 20:01 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll
2015-06-12 10:41 - 2015-05-25 20:01 - 00017408 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2015-06-12 10:41 - 2015-05-25 20:01 - 00015872 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll
2015-06-12 10:41 - 2015-05-25 20:00 - 00022528 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2015-06-12 10:41 - 2015-05-25 20:00 - 00017408 _____ (Microsoft Corporation) C:\windows\system32\diskperf.exe
2015-06-12 10:41 - 2015-05-25 19:57 - 00146432 _____ (Microsoft Corporation) C:\windows\system32\msaudite.dll
2015-06-12 10:41 - 2015-05-25 19:57 - 00060416 _____ (Microsoft Corporation) C:\windows\system32\msobjs.dll
2015-06-12 10:41 - 2015-05-25 19:55 - 00686080 _____ (Microsoft Corporation) C:\windows\system32\adtschema.dll
2015-06-12 10:41 - 2015-05-25 19:55 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\apisetschema.dll
2015-06-12 10:41 - 2015-05-25 18:53 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\UtcResources.dll
2015-06-12 10:41 - 2015-04-24 19:56 - 00530432 _____ (Microsoft Corporation) C:\windows\system32\comctl32.dll

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-07-06 20:26 - 2012-12-28 13:34 - 00000936 _____ C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-07-06 20:25 - 2010-02-02 06:26 - 01592166 _____ C:\windows\system32\PerfStringBackup.INI
2015-07-06 20:21 - 2013-01-06 17:39 - 00000914 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2015-07-06 20:18 - 2009-07-14 06:53 - 00000006 ____H C:\windows\Tasks\SA.DAT
2015-07-06 14:06 - 2012-12-28 13:34 - 00000940 _____ C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-07-06 12:57 - 2009-07-14 06:34 - 00022688 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-07-06 12:57 - 2009-07-14 06:34 - 00022688 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-07-06 10:57 - 2010-02-02 06:41 - 00000000 ____D C:\ProgramData\PDFC
2015-07-05 18:13 - 2009-07-14 04:37 - 00000000 ____D C:\windows\system32\config\Journal
2015-07-05 18:09 - 2010-02-02 06:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2015-07-05 18:08 - 2014-11-29 20:00 - 00001771 _____ C:\ProgramData\hpzinstall.log
2015-07-05 18:00 - 2010-02-02 06:14 - 00000000 ____D C:\Program Files\Hewlett-Packard
2015-07-04 13:37 - 2010-02-02 06:40 - 00000000 ____D C:\ProgramData\HPQLOG
2015-07-04 09:59 - 2009-07-14 04:04 - 00000215 _____ C:\windows\system.ini
2015-07-04 09:57 - 2009-07-14 04:03 - 68157440 _____ C:\windows\system32\config\software.bak
2015-07-04 09:57 - 2009-07-14 04:03 - 33292288 _____ C:\windows\system32\config\system.bak
2015-07-04 09:57 - 2009-07-14 04:03 - 00524288 _____ C:\windows\system32\config\default.bak
2015-07-04 09:57 - 2009-07-14 04:03 - 00262144 _____ C:\windows\system32\config\security.bak
2015-07-04 09:57 - 2009-07-14 04:03 - 00262144 _____ C:\windows\system32\config\sam.bak
2015-07-04 09:56 - 2015-04-23 19:50 - 00000000 ___RD C:\Program Files\Skype
2015-07-03 19:33 - 2014-11-16 13:33 - 00119512 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\MBAMSwissArmy.sys
2015-07-03 19:32 - 2014-11-16 13:32 - 00092888 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbamchameleon.sys
2015-07-03 17:37 - 2014-11-16 14:27 - 00787760 _____ (Avast Software s.r.o.) C:\windows\system32\Drivers\aswSnx.sys
2015-07-03 17:37 - 2014-11-16 14:27 - 00428120 _____ (Avast Software s.r.o.) C:\windows\system32\Drivers\aswsp.sys
2015-07-03 17:37 - 2014-11-16 14:27 - 00209048 _____ C:\windows\system32\Drivers\aswVmm.sys
2015-07-03 17:37 - 2014-11-16 14:27 - 00106912 _____ (Avast Software s.r.o.) C:\windows\system32\Drivers\aswStm.sys
2015-07-03 17:37 - 2014-11-16 14:27 - 00081728 _____ (Avast Software s.r.o.) C:\windows\system32\Drivers\aswRdr2.sys
2015-07-03 17:37 - 2014-11-16 14:27 - 00074976 _____ (Avast Software s.r.o.) C:\windows\system32\Drivers\aswMonFlt.sys
2015-07-03 17:37 - 2014-11-16 14:27 - 00049904 _____ C:\windows\system32\Drivers\aswRvrt.sys
2015-07-03 17:37 - 2014-11-16 14:27 - 00024144 _____ C:\windows\system32\Drivers\aswHwid.sys
2015-07-03 13:09 - 2009-07-14 04:37 - 00000000 ___RD C:\Users\Public
2015-07-02 22:58 - 2014-09-28 17:24 - 00000000 ____D C:\Users\Banka2\AppData\Local\Google
2015-07-02 10:30 - 2014-11-16 13:33 - 00001064 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-07-02 10:30 - 2014-11-16 13:32 - 00000000 ____D C:\Program Files\Malwarebytes Anti-Malware
2015-07-01 17:36 - 2013-08-12 18:31 - 00002205 _____ C:\Users\Jiříček\Desktop\Google Chrome.lnk
2015-06-30 12:33 - 2013-04-28 08:56 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Seznam.cz
2015-06-30 11:16 - 2013-04-28 08:56 - 00002201 _____ C:\Users\Guest\Desktop\Google Chrome.lnk
2015-06-29 11:21 - 2013-01-06 17:39 - 00778416 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerApp.exe
2015-06-29 11:21 - 2013-01-06 17:39 - 00142512 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerCPLApp.cpl
2015-06-29 10:03 - 2015-05-02 16:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ochrana koncového bodu Trusteer
2015-06-21 15:49 - 2009-07-14 06:53 - 00032602 _____ C:\windows\Tasks\SCHEDLGU.TXT
2015-06-18 08:41 - 2014-11-16 13:32 - 00051928 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mwac.sys
2015-06-18 08:41 - 2014-11-16 13:32 - 00023256 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbam.sys
2015-06-16 18:29 - 2013-08-14 20:43 - 00000000 ____D C:\Users\Jiříček\AppData\Roaming\Skype
2015-06-14 16:28 - 2015-01-17 17:57 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-06-12 15:06 - 2009-07-14 06:33 - 00419872 _____ C:\windows\system32\FNTCACHE.DAT
2015-06-12 15:04 - 2014-12-12 16:15 - 00000000 ____D C:\windows\system32\appraiser
2015-06-12 15:04 - 2014-05-24 07:46 - 00000000 ___SD C:\windows\system32\CompatTel
2015-06-12 12:32 - 2010-02-02 06:54 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-06-12 12:29 - 2013-08-12 22:37 - 00000000 ____D C:\windows\system32\MRT
2015-06-12 12:20 - 2009-07-14 04:37 - 00000000 ____D C:\windows\Microsoft.NET
2015-06-12 12:10 - 2012-12-28 12:40 - 136900096 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2015-06-12 10:15 - 2012-12-28 13:44 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service

==================== Files in the root of some directories =======

2002-08-29 19:33 - 2002-08-29 19:33 - 0319488 ____R () C:\Users\Jiříček\AppData\Roaming\MafiaSetup.exe
2013-09-10 16:22 - 2013-12-08 11:01 - 0138904 _____ () C:\Users\Jiříček\AppData\Roaming\PnkBstrK.sys
2013-08-13 19:19 - 2013-12-05 15:58 - 0010240 _____ () C:\Users\Jiříček\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-06-08 19:29 - 2013-06-08 19:29 - 0000057 _____ () C:\ProgramData\Ament.ini
2014-11-29 20:00 - 2015-07-05 18:08 - 0001771 _____ () C:\ProgramData\hpzinstall.log
2012-12-28 16:05 - 2013-06-20 17:32 - 0000848 ___SH () C:\ProgramData\KGyGaAvL.sys

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\windows\explorer.exe => File is digitally signed
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-07-03 16:45

==================== End of log ============================
AMD Ryzen 5 5600X | MSI MAG B550 TOMAHAWK | G.Skill Aegis 32GB 3200MHz | Kingston A2000 1TB | PowerColor Red Devil RX 6700 XT 12GB | XPG Core Reactor 750W | Be quiet! PURE BASE 500 | Asus VG27AQ1A

flowem
Level 5.5
Level 5.5
Příspěvky: 2858
Registrován: březen 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalý notebook

Příspěvekod flowem » 06 črc 2015 20:34

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 05-07-2015
Ran by Jiříček at 2015-07-06 20:31:33
Running from C:\Users\Jiříček\Desktop
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2773443163-1413056139-2955013918-500 - Administrator - Disabled)
banka (S-1-5-21-2773443163-1413056139-2955013918-1005 - Limited - Enabled) => C:\Users\banka
Banka2 (S-1-5-21-2773443163-1413056139-2955013918-1007 - Limited - Enabled) => C:\Users\Banka2
Draha (S-1-5-21-2773443163-1413056139-2955013918-1003 - Administrator - Enabled) => C:\Users\Draha
Guest (S-1-5-21-2773443163-1413056139-2955013918-501 - Limited - Enabled) => C:\Users\Guest
HomeGroupUser$ (S-1-5-21-2773443163-1413056139-2955013918-1004 - Limited - Enabled)
Jiříček (S-1-5-21-2773443163-1413056139-2955013918-1006 - Administrator - Enabled) => C:\Users\Jiříček

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

1310 (Version: 130.0.365.000 - Hewlett-Packard) Hidden
1310_Help (Version: 82.0.58.000 - Hewlett-Packard) Hidden
1310Trb (Version: 82.0.242.000 - Hewlett-Packard) Hidden
32 Bit HP CIO Components Installer (Version: 6.1.1 - Hewlett-Packard) Hidden
ActiveCheck component for HP Active Support Library (Version: 3.0.0.1 - Hewlett-Packard) Hidden
Adobe Flash Player 17 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 17.0.0.190 - Adobe Systems Incorporated)
Adobe Flash Player 17 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 17.0.0.190 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.11) - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.11 - Adobe Systems Incorporated)
AIO_CDB_ProductContext (Version: 130.0.365.000 - Hewlett-Packard) Hidden
AIO_CDB_Software (Version: 130.0.365.000 - Hewlett-Packard) Hidden
AIO_Scan (Version: 130.0.421.000 - Hewlett-Packard) Hidden
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0405-0000-0000000FF1CE}_PROHYBRIDR_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0405-0000-0000000FF1CE}_PROHYBRIDR_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0405-0000-0000000FF1CE}_PROHYBRIDR_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Any Video Converter 5 5.0.3 (HKLM\...\Any Video Converter 5_is1) (Version: - Any-Video-Converter.com)
ArcSoft TotalMedia (HKLM\...\ArcSoft TotalMedia) (Version: 1.0.23.17 - ArcSoft)
ArcSoft TotalMedia (Version: 1.0.33.17 - ArcSoft) Hidden
ArcSoft Webcam Sharing Manager (HKLM\...\{190A7D93-3823-439C-91B9-ADCE3EC2A6A2}) (Version: 1.0.0.26 - ArcSoft)
Ashampoo Burning Studio 6 FREE v.6.84 (HKLM\...\{91B33C97-3ED1-03EA-A67B-244AA4D7B559}_is1) (Version: 6.8.4 - Ashampoo GmbH & Co. KG)
Atheros Driver Installation Program (HKLM\...\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}) (Version: 9.2 - Atheros)
Avast Free Antivirus (HKLM\...\Avast) (Version: 10.2.2218 - AVAST Software)
Balíček ovladače systému Windows - Nokia pccsmcfd “LegacyDriver” (05/31/2012 7.1.2.0) (HKLM\...\17D063A0A9F5D5A225B76B1D9BCB5ADBE85C8382) (Version: 05/31/2012 7.1.2.0 - Nokia)
BufferChm (Version: 130.0.331.000 - Hewlett-Packard) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 3.27 - Piriform)
Copy (Version: 130.0.428.000 - Hewlett-Packard) Hidden
Corel Home Office - CS Templates (Version: 5.4.5 - 公司名称) Hidden
Corel Home Office - CT Templates (Version: 5.4.5 - 您的公司名稱) Hidden
Corel Home Office - IPM (Version: 5.5 - Corel Corporation) Hidden
Corel Home Office - JP Templates (Version: 5.4.5 - 会社名) Hidden
Corel Home Office - KR Templates (Version: 5.4.5 - 회사명) Hidden
Corel Home Office - Launcher (Version: 5.5 - Corel Corporation) Hidden
Corel Home Office - Templates RU (Version: 5.4.5 - Название организации) Hidden
Corel Home Office - Templates1 (Version: 5.4.5 - Your Company Name) Hidden
Corel Home Office (HKLM\...\_{36C95AD3-D330-4BAA-884A-9F3EFD15A5EA}) (Version: 5.0.69.462 - Corel Corporation)
Corel Home Office (Version: 5.5 - Corel Corporation) Hidden
CPUID CPU-Z 1.71.1 (HKLM\...\CPUID CPU-Z_is1) (Version: - )
CPUID HWMonitor 1.27 (HKLM\...\CPUID HWMonitor_is1) (Version: - )
CrystalDiskInfo 6.5.2 (HKLM\...\CrystalDiskInfo_is1) (Version: 6.5.2 - Crystal Dew World)
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 4.47.1.0335 - Disc Soft Ltd)
Destinations (Version: 130.0.0.0 - Hewlett-Packard) Hidden
Device Access Manager for HP ProtectTools (HKLM\...\{55B52830-024A-443E-AF61-61E1E71AFA1B}) (Version: 5.0.1.5 - Hewlett-Packard)
DeviceDiscovery (Version: 130.0.465.000 - Hewlett-Packard) Hidden
DocProc (Version: 13.0.0.0 - Hewlett-Packard) Hidden
Drive Encryption for HP ProtectTools (HKLM\...\Drive Encryption) (Version: 5.0.4.0 - Hewlett-Packard)
Drive Encryption for HP ProtectTools (Version: 5.0.4.0 - Hewlett-Packard) Hidden
EAX Unified (HKLM\...\EAX Unified) (Version: - )
Fax (Version: 130.0.418.000 - Hewlett-Packard) Hidden
File Sanitizer For HP ProtectTools (HKLM\...\{6D6ADF03-B257-4EA5-BBC1-1D145AF8D514}) (Version: 5.0.1.2 - Hewlett-Packard)
Foxit Cloud (HKLM\...\{41914D8B-9D6E-4764-A1F9-BC43FB6782C1}_is1) (Version: 3.5.116.602 - Foxit Software Inc.)
Foxit Reader (HKLM\...\Foxit Reader_is1) (Version: 7.0.3.916 - Foxit Software Inc.)
Google Earth Plug-in (HKLM\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Chrome (HKLM\...\Google Chrome) (Version: 43.0.2357.130 - Google Inc.)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.27.5 - Google Inc.) Hidden
GPBaseService2 (Version: 130.0.371.000 - Hewlett-Packard) Hidden
HP Customer Participation Program 13.0 (HKLM\...\HPExtendedCapabilities) (Version: 13.0 - HP)
HP Deskjet 3050A J611 series Nápověda (HKLM\...\{97DDCAB8-B770-4089-A10F-67568069D78A}) (Version: 140.0.2.2 - Hewlett Packard)
HP ESU for Microsoft Windows 7 (HKLM\...\{871732B3-1EE5-4C54-8462-8BFF516880B7}) (Version: 1.0.5.1 - Hewlett-Packard Company)
HP HotKey Support (HKLM\...\{0497B553-0E3F-4CCD-BE13-E28F1A54B318}) (Version: 3.5.13.1 - Hewlett-Packard Company)
HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP)
HP Integrated Module with Bluetooth wireless technology (HKLM\...\{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}) (Version: 6.2.1.500 - Broadcom Corporation)
HP Photosmart Essential 3.5 (HKLM\...\HP Photosmart Essential) (Version: 3.5 - HP)
HP Photosmart Officejet and Deskjet All-In-One Driver Software 13.0 Rel. B (HKLM\...\{B61ED343-0B14-4241-999C-490CB1A20DA4}) (Version: 13.0 - HP)
HP Power Assistant (HKLM\...\{EEB023B5-8EBE-4BEB-90C8-BDA16ABEDBB4}) (Version: 1.0.3.2 - Hewlett-Packard)
HP Power Data (HKLM\...\{E366F338-BF6E-4165-BDDB-3DCCB3388F9F}) (Version: 1.0.7.77 - Hewlett-Packard)
HP Product Detection (HKLM\...\{42D10994-A566-495D-A5E7-D0C6B5C6B35C}) (Version: 11.14.0006 - HP)
HP QuickLook (HKLM\...\{472FFCD7-A6B3-49ED-998F-6B8333D22390}) (Version: 3.2.0.14 - Hewlett-Packard)
HP QuickWeb (HKLM\...\{7861911B-4270-498A-8F7A-FCF0570F485D}) (Version: 1.0.1.53 - DeviceVM, Inc.)
HP Setup (HKLM\...\{1E6219D4-027E-47EE-AB83-DD2F26E31A32}) (Version: 1.2.3557.3169 - Hewlett-Packard)
HP Smart Web Printing 4.51 (HKLM\...\HP Smart Web Printing) (Version: 4.51 - HP)
HP SoftPaq Download Manager (HKLM\...\{2DA697D7-FED3-4DE2-A174-92A2A12F9688}) (Version: 3.0.5.0 - Hewlett-Packard Company)
HP Software Framework (HKLM\...\{2712DAD6-C1F7-4295-B06E-17D6DC62EC20}) (Version: 3.5.13.1 - Hewlett-Packard Company)
HP Software Setup (HKLM\...\{04801E42-B1A6-4C52-9F3D-CADB5A050433}) (Version: 7.0.1.5 - Hewlett-Packard Company)
HP Solution Center 13.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 13.0 - HP)
HP Update (HKLM\...\{7059BDA7-E1DB-442C-B7A1-6144596720A4}) (Version: 4.000.011.006 - Hewlett-Packard)
HP User Guides 0189 (HKLM\...\{3BDB9B89-56B5-4953-B052-AEB75FCBFC93}) (Version: 1.01.0000 - Hewlett-Packard)
HP Wallpaper (HKLM\...\{F173C2B3-296F-458C-98FF-1676A42EBA02}) (Version: 1.0.1.3 - Hewlett-Packard Company)
HP Webcam Driver (HKLM\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.1.7600.108 - Realtek Semiconductor Corp.)
HP Wireless Assistant (HKLM\...\{0279C882-B150-44B6-A769-A7C8A2F31CE3}) (Version: 4.0.3.2 - Hewlett-Packard)
HPAsset component for HP Active Support Library (Version: 3.0.0.3 - Hewlett-Packard) Hidden
HPPhotoGadget (Version: 130.0.282.000 - Hewlett-Packard) Hidden
HPPhotoSmartDiscLabelContent1 (Version: 2.04.0000 - Hewlett-Packard) Hidden
HPPhotosmartEssential (Version: 2.04.0000 - Hewlett-Packard) Hidden
HPProductAssistant (Version: 130.0.371.000 - Hewlett-Packard) Hidden
HPSSupply (Version: 130.0.371.000 - Hewlett-Packard) Hidden
IDT Audio (HKLM\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6300.0 - IDT)
Intel(R) Management Engine Components (HKLM\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation)
Intel(R) Processor Graphics (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2827 - Intel Corporation)
Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version: - Intel Corporation)
Java 7 Update 67 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle)
Junk Mail filter update (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
LG USB Modem Drivers (HKLM\...\{E1640DA5-89B4-4F52-B15D-5DA3D14F29D4}) (Version: 4.9.4 - LG Electronics)
Malwarebytes Anti-Malware verze 2.1.8.1057 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
MarketResearch (Version: 130.0.374.000 - Hewlett-Packard) Hidden
Mesh Runtime (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Messenger Companion (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM\...\{59E4543A-D49D-4489-B445-473D763C79AF}) (Version: 2.0.672.0 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Outlook Connector (HKLM\...\{95140000-007A-0405-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Mozilla Firefox 38.0.5 (x86 cs) (HKLM\...\Mozilla Firefox 38.0.5 (x86 cs)) (Version: 38.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
MSVC80_x86_v2 (Version: 1.0.3.0 - Nokia) Hidden
MSVC90_x86 (Version: 1.0.1.2 - Nokia) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Network (Version: 130.0.572.000 - Hewlett-Packard) Hidden
Nokia Connectivity Cable Driver (HKLM\...\{6FE12C01-2FBC-42E2-AEB9-4CA2238C462F}) (Version: 7.1.101.0 - Nokia)
Nokia PC Internet Access (HKLM\...\Nokia PC Internet Access) (Version: 2.0.1.6 - Nokia)
Nokia PC Internet Access (Version: 2.0.1.6 - Nokia) Hidden
Nokia Suite (HKLM\...\Nokia Suite) (Version: 3.7.22.0 - Nokia)
Nokia Suite (Version: 3.7.22.0 - Nokia) Hidden
NVIDIA PhysX (HKLM\...\{DEA314C4-0929-4250-BC92-98E4C105F28D}) (Version: 9.10.0129 - NVIDIA Corporation)
OCCT 4.4.1 (HKLM\...\OCCT) (Version: 4.4.1 - Ocbase.com)
OCR Software by I.R.I.S. 13.0 (HKLM\...\HPOCR) (Version: 13.0 - HP)
Ochrana koncového bodu Trusteer (HKLM\...\Rapport_msi) (Version: 3.5.1412.176 - Trusteer)
Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení (HKLM\...\{B6190387-0036-4BEB-8D74-A0AFC5F14706}) (Version: 15.4.5722.2 - Microsoft Corporation)
Pando Media Booster (HKLM\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.3.3.6 - Pando Networks Inc.)
PC Connectivity Solution (HKLM\...\{6B722793-E77B-41F5-BAB3-6C9832274E75}) (Version: 12.0.76.0 - Nokia)
PDF Complete Special Edition (HKLM\...\PDF Complete) (Version: 3.5.112 - PDF Complete, Inc)
Picasa 3 (HKLM\...\Picasa 3) (Version: 3.9 - Google, Inc.)
Pre-Boot Security for HP ProtectTools (Version: 5.0.7.1 - Hewlett-Packard) Hidden
Privacy Manager for HP ProtectTools (HKLM\...\{142D2DFA-1FB7-41B9-8509-DAB5F3978CE4}) (Version: 5.01.734 - Hewlett-Packard)
Rapport (Version: 3.5.1412.176 - Trusteer) Hidden
Realtek Ethernet Controller All-In-One Windows Driver (HKLM\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 1.12.0007 - Realtek)
Realtek USB 2.0 Card Reader (HKLM\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7600.30109 - Realtek Semiconductor Corp.)
Scan (Version: 13.0.0.0 - Hewlett-Packard) Hidden
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 13.0 - HP)
Skype™ 7.0 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
SmartWebPrinting (Version: 130.0.457.000 - Hewlett-Packard) Hidden
SolutionCenter (Version: 130.0.373.000 - Hewlett-Packard) Hidden
Status (Version: 130.0.469.000 - Hewlett-Packard) Hidden
System Requirements Lab Detection (HKLM\...\{A407FC22-36BF-4C82-A516-59D94BC505A9}) (Version: 1.0.5.0 - Husdawg, LLC)
System Requirements Lab for Intel (HKLM\...\{53C63F43-B827-42D9-8886-4698D91EA33B}) (Version: 4.5.15.0 - Husdawg, LLC)
Theft Recovery (HKLM\...\InstallShield_{33C9F24B-1D92-4632-A915-81E3BB1D5D6B}) (Version: 5.1.0.18 - Hewlett-Packard)
Theft Recovery (Version: 5.1.0.18 - Hewlett-Packard) Hidden
Toolbox (Version: 130.0.648.000 - Hewlett-Packard) Hidden
Total Commander (Remove or Repair) (HKLM\...\Totalcmd) (Version: 8.01 - Ghisler Software GmbH)
TrayApp (Version: 130.0.422.000 - Hewlett-Packard) Hidden
UnloadSupport (Version: 11.0.0 - Hewlett-Packard) Hidden
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN)
WebReg (Version: 130.0.132.017 - Hewlett-Packard) Hidden
Windows 7 Default Setting (HKLM\...\{5BF8E079-D6E2-4323-B794-75152371122A}) (Version: 1.0.1.4 - Hewlett-Packard Company)
Windows Driver Package - Broadcom Bluetooth (06/15/2009 6.2.0.9000) (HKLM\...\B7541EC5F72AA713F557569278EB6273725F5607) (Version: 06/15/2009 6.2.0.9000 - Broadcom)
Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) (HKLM\...\A6A8668C0A13640CA28FE2A7D9654BE4AE478B13) (Version: 07/30/2009 6.2.0.9405 - Broadcom)
Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) (HKLM\...\BF20603967CFDCB2BBF91950E8A56DFBC5C833FE) (Version: 07/28/2009 6.2.0.9800 - Broadcom)
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 15.4.3502.0922 - Microsoft Corporation)
Windows Media Player Firefox Plugin (HKLM\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
WinRAR 4.20 (32-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)
Základní software zařízení HP Deskjet 3050A J611 series (HKLM\...\{0188AB09-99C9-4396-B565-7EEE0DE76488}) (Version: 25.0.571.0 - Hewlett-Packard Co.)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2773443163-1413056139-2955013918-1006_Classes\CLSID\{1FD1FE74-9E3C-4C1C-AEEB-AAB592AD770F}\localserver32 -> C:\Users\Jiříček\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
CustomCLSID: HKU\S-1-5-21-2773443163-1413056139-2955013918-1006_Classes\CLSID\{5E71E4F3-E8C7-4906-9626-973E418762B6}\InprocServer32 -> C:\Users\Jiříček\AppData\Local\Facebook\Update\1.2.205.0\goopdate.dll (Facebook Inc.)

==================== Restore Points =========================

03-07-2015 11:30:12 End of disinfection
03-07-2015 17:35:55 avast! antivirus system restore point
05-07-2015 17:44:16 Removed HP Advisor.
05-07-2015 17:49:06 Removed HP 3D DriveGuard
05-07-2015 17:50:19 Removed Face Recognition for HP ProtectTools
05-07-2015 18:08:21 Removed HP Support Assistant.

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:04 - 2015-07-04 09:59 - 00000027 ____A C:\windows\system32\Drivers\etc\hosts
127.0.0.1 localhost

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0BBFA875-A1CA-4C5C-BA9E-43EA5BF15DDD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2012-12-28] (Google Inc.)
Task: {11A669C1-50CC-449F-8753-FE2875C45D53} - System32\Tasks\Hewlett-Packard\HP Assistant\PC Health Analysis => C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe
Task: {11A8C456-FE38-46C0-AA80-2DFF6FE7CC06} - \avastBCLRestartS-1-5-21-2773443163-1413056139-2955013918-1003 No Task File <==== ATTENTION
Task: {29296727-D5F3-4EF3-A815-6E1D511400E3} - System32\Tasks\Hewlett-Packard\HP Assistant\PC Tuneup => C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe
Task: {2D7D36EF-9CD0-4438-8A64-96EA7A2CD117} - System32\Tasks\Registration => C:\Program Files\Hewlett-Packard\HP Setup\RemEngine.exe
Task: {6084E99B-6565-403C-B171-70785BD917D3} - System32\Tasks\{8471A40F-EC10-4265-97A0-D97E8103777A} => pcalua.exe -a C:\Users\Jiříček\Downloads\Touchpad_Synaptics_v10.2.4_Vistax32x64_XPx32x64_modded_build2\Setup.exe -d C:\Users\Jiříček\Downloads\Touchpad_Synaptics_v10.2.4_Vistax32x64_XPx32x64_modded_build2
Task: {6D0407C3-3DA9-43FF-8D24-DC4DF6FD4929} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-01-23] (Piriform Ltd)
Task: {8860369A-9EBF-453B-A411-6143C2E1B2A2} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-07-03] (Avast Software s.r.o.)
Task: {A41944DD-2AE6-46AC-B782-F11C9B7B309D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2012-12-28] (Google Inc.)
Task: {CE41C217-A85B-40A3-978C-6E01544D2CAC} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-06-12] (Adobe Systems Incorporated)
Task: {FAE43C95-A166-4EA3-8963-076D38F1C82A} - System32\Tasks\Adobe Flash Player Updater => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-29] (Adobe Systems Incorporated)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (Whitelisted) ==============

2015-07-03 17:37 - 2015-07-03 17:37 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-07-03 17:37 - 2015-07-03 17:37 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-07-05 17:41 - 2015-07-05 17:41 - 02956288 _____ () C:\Program Files\AVAST Software\Avast\defs\15070501\algo.dll
2015-07-06 20:19 - 2015-07-06 20:19 - 02956288 _____ () C:\Program Files\AVAST Software\Avast\defs\15070601\algo.dll
2013-09-10 16:22 - 2013-12-08 11:01 - 00076888 _____ () C:\windows\system32\PnkBstrA.exe
2011-10-21 09:49 - 2011-10-21 09:49 - 00094208 _____ () C:\Windows\System32\IccLibDll.dll
2015-07-03 17:37 - 2015-07-03 17:37 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2014-03-23 17:04 - 2014-03-23 17:04 - 00557056 _____ () C:\Program Files\Trusteer\Rapport\bin\js32.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Guest\Downloads\message.eml:OECustomProperty

==================== Safe Mode (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2773443163-1413056139-2955013918-1006\Control Panel\Desktop\\Wallpaper -> C:\Users\Jiříček\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 10.0.0.138

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: wlidsvc => 2
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk => C:\windows\pss\Bluetooth.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^GamersFirst LIVE!.lnk => C:\windows\pss\GamersFirst LIVE!.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk => C:\windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^Draha^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk => C:\windows\pss\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk.Startup
MSCONFIG\startupreg: cz.seznam.software.szndesktop => "C:\Users\Draha\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
MSCONFIG\startupreg: DTRun => c:\Program Files\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe
MSCONFIG\startupreg: File Sanitizer => C:\Program Files\Hewlett-Packard\File Sanitizer\CoreShredder.exe
MSCONFIG\startupreg: GrooveMonitor => "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
MSCONFIG\startupreg: HP Software Update => C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
MSCONFIG\startupreg: HPADVISOR => C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe autorun=AUTORUN
MSCONFIG\startupreg: HPPowerAssistant => C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe /hidden
MSCONFIG\startupreg: hpqSRMon => C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
MSCONFIG\startupreg: HPWirelessAssistant => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe 120 C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe /hidden
MSCONFIG\startupreg: IAAnotif => C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
MSCONFIG\startupreg: NokiaPCInternetAccess => "C:\Program Files\Nokia\PC Internet Access\NPCIA.exe" /b
MSCONFIG\startupreg: NokiaSuite.exe => C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe -tray
MSCONFIG\startupreg: Pando Media Booster => C:\Program Files\Pando Networks\Media Booster\PMB.exe
MSCONFIG\startupreg: PDF Complete => C:\Program Files\PDF Complete\pdfsty.exe
MSCONFIG\startupreg: QLBController => C:\Program Files\Hewlett-Packard\HP HotKey Support\QLBController.exe /start
MSCONFIG\startupreg: Skype => "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{B07C6083-ED89-4C94-AC58-40428A4A86A1}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe
FirewallRules: [{0A63CA76-A7C7-483B-9450-9172EC44FFC0}] => (Allow) C:\Program Files\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{581B2AE9-88A7-41F2-8179-7EEA4601D300}] => (Allow) LPort=2869
FirewallRules: [{E02F0C30-1F3E-484B-B2C0-D424B769ADDD}] => (Allow) LPort=1900
FirewallRules: [{8D9FE54A-E0F0-4686-9A9D-272A27325A54}] => (Allow) C:\Program Files\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{321F0812-B6D3-46FC-BACE-1E8473270B6A}] => (Allow) C:\Program Files\Windows Live\Mesh\MOE.exe
FirewallRules: [TCP Query User{5F8377C3-315F-4B06-AEA6-2B39B3DB949E}C:\program files\google\chrome\application\chrome.exe] => (Allow) C:\program files\google\chrome\application\chrome.exe
FirewallRules: [UDP Query User{AC1F3F12-30F8-4954-BB79-9010D7D533C1}C:\program files\google\chrome\application\chrome.exe] => (Allow) C:\program files\google\chrome\application\chrome.exe
FirewallRules: [{F757E031-3FB5-4A09-8F06-C7FD30E47813}] => (Allow) C:\Program Files\nokia\nokia suite\nokiasuite.exe
FirewallRules: [TCP Query User{F9F07F9E-A182-4449-BE52-FA14A044F4BC}C:\windows\system32\javaw.exe] => (Allow) C:\windows\system32\javaw.exe
FirewallRules: [UDP Query User{4888ABED-3C8E-4988-BC23-508A47B4981B}C:\windows\system32\javaw.exe] => (Allow) C:\windows\system32\javaw.exe
FirewallRules: [TCP Query User{C1CDA29E-C4FA-41A9-AD6C-63B7FDADFA6E}C:\windows\system32\javaw.exe] => (Allow) C:\windows\system32\javaw.exe
FirewallRules: [UDP Query User{5E24CCE5-B0E4-4E06-8041-C752266BD84B}C:\windows\system32\javaw.exe] => (Allow) C:\windows\system32\javaw.exe
FirewallRules: [TCP Query User{082472C6-73FE-48BD-BE40-0141BC5ABC3F}D:\metin2 aqua\metin2.bin] => (Allow) D:\metin2 aqua\metin2.bin
FirewallRules: [UDP Query User{3B3AA7C1-B7B8-4D0D-8739-AE0C6914E101}D:\metin2 aqua\metin2.bin] => (Allow) D:\metin2 aqua\metin2.bin
FirewallRules: [TCP Query User{DE5DC9B8-6D4F-4BA0-A17F-99260DD0E76E}D:\metin2 aqua\metin2.bin] => (Allow) D:\metin2 aqua\metin2.bin
FirewallRules: [UDP Query User{EEECE80C-CF5E-49DB-9382-54B890E4BD4B}D:\metin2 aqua\metin2.bin] => (Allow) D:\metin2 aqua\metin2.bin
FirewallRules: [TCP Query User{5B43698C-9374-47D0-ADED-620BBFBC0420}C:\program files\totalcmd\totalcmd.exe] => (Allow) C:\program files\totalcmd\totalcmd.exe
FirewallRules: [UDP Query User{B08C9764-D49D-46AB-B186-DDD648C75FB2}C:\program files\totalcmd\totalcmd.exe] => (Allow) C:\program files\totalcmd\totalcmd.exe
FirewallRules: [TCP Query User{20C4BA47-D2EB-4606-B35F-E290AA9F77A7}D:\xampp\apache\bin\httpd.exe] => (Allow) D:\xampp\apache\bin\httpd.exe
FirewallRules: [UDP Query User{6422D857-7F97-40F7-894C-5B0222615CE6}D:\xampp\apache\bin\httpd.exe] => (Allow) D:\xampp\apache\bin\httpd.exe
FirewallRules: [TCP Query User{4349AEA6-1877-40AD-9F29-DE9E35806080}D:\xampp\xampp-portable\apache\bin\httpd.exe] => (Allow) D:\xampp\xampp-portable\apache\bin\httpd.exe
FirewallRules: [UDP Query User{5BF02BBB-ACE6-49EA-9182-4ACBC4F3C991}D:\xampp\xampp-portable\apache\bin\httpd.exe] => (Allow) D:\xampp\xampp-portable\apache\bin\httpd.exe
FirewallRules: [TCP Query User{1B395C59-C87E-4E7A-B9F0-317048504EC4}D:\xampp\xampp-portable\mysql\bin\mysqld.exe] => (Allow) D:\xampp\xampp-portable\mysql\bin\mysqld.exe
FirewallRules: [UDP Query User{02B39DDE-1BDB-4683-AB4C-9BDA964025D6}D:\xampp\xampp-portable\mysql\bin\mysqld.exe] => (Allow) D:\xampp\xampp-portable\mysql\bin\mysqld.exe
FirewallRules: [TCP Query User{AD3C3FD8-6364-4E4A-BB55-6FCD240458D6}C:\program files\java\jre7\bin\java.exe] => (Allow) C:\program files\java\jre7\bin\java.exe
FirewallRules: [UDP Query User{15A6A53E-E3C8-4801-B2CF-953C3BC646A6}C:\program files\java\jre7\bin\java.exe] => (Allow) C:\program files\java\jre7\bin\java.exe
FirewallRules: [{ED6A5EBD-034A-4138-9001-4364B6F06B76}] => (Allow) C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\DeviceSetup.exe
FirewallRules: [{C6FBCBDE-663E-4A7E-9A4F-EF570EA58CF7}] => (Allow) C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\HPNetworkCommunicator.exe
FirewallRules: [TCP Query User{2865DE63-21F1-4766-9150-9369BA1151A9}C:\users\guest\desktop\odorik.exe] => (Block) C:\users\guest\desktop\odorik.exe
FirewallRules: [UDP Query User{DA6552CE-C80C-41B6-B86B-4269E4D482B5}C:\users\guest\desktop\odorik.exe] => (Block) C:\users\guest\desktop\odorik.exe
FirewallRules: [TCP Query User{C36FA21C-70E3-4676-A3AF-14B23BD4F2AB}C:\users\guest\desktop\odorik.exe] => (Block) C:\users\guest\desktop\odorik.exe
FirewallRules: [UDP Query User{490ECDA2-DDFC-4A43-B674-6705EE310C0F}C:\users\guest\desktop\odorik.exe] => (Block) C:\users\guest\desktop\odorik.exe
FirewallRules: [TCP Query User{4A3EC411-2688-422A-9B1C-9E846CA9A088}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe
FirewallRules: [UDP Query User{32C46A88-20BB-4098-A59B-D35993DCD86F}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe
FirewallRules: [TCP Query User{AD599AC7-C2B2-4D1E-B5B6-D100927C1B2F}C:\users\jiříček\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\jiříček\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{6AC5A33F-4C1F-4566-96A0-10D8DA2647AE}C:\users\jiříček\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\jiříček\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{14562213-69A2-4762-949A-8D54D5A9C22E}] => (Allow) C:\Windows\System32\PnkBstrA.exe
FirewallRules: [{94F2FC97-88C3-4609-B153-68F8B71B8E4A}] => (Allow) C:\Windows\System32\PnkBstrA.exe
FirewallRules: [{7777D05F-A90C-40D5-BF5F-B4B88BF81EBC}] => (Allow) C:\Windows\System32\PnkBstrB.exe
FirewallRules: [{CE7DFA18-9354-46B6-B325-3F42016E2893}] => (Allow) C:\Windows\System32\PnkBstrB.exe
FirewallRules: [{125E095C-C4E4-4D8E-A412-22EA80B82E58}] => (Allow) C:\Program Files\Pando Networks\Media Booster\PMB.exe
FirewallRules: [{367608C7-2E94-46BD-A9FB-FD6AB2F780EC}] => (Allow) C:\Program Files\Pando Networks\Media Booster\PMB.exe
FirewallRules: [{DE28D44B-B757-476E-A65E-C1050BE8C85D}] => (Allow) C:\Program Files\Pando Networks\Media Booster\PMB.exe
FirewallRules: [{C49EB5E2-DE88-4A11-9BAB-1DBBF0FA3BC8}] => (Allow) C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [TCP Query User{34748482-F3E2-4AC6-9DD0-D55EC0FA45D3}C:\xampp-portable\apache\bin\httpd.exe] => (Allow) C:\xampp-portable\apache\bin\httpd.exe
FirewallRules: [UDP Query User{C5294D4A-540D-42C9-88AC-8114A0FD7100}C:\xampp-portable\apache\bin\httpd.exe] => (Allow) C:\xampp-portable\apache\bin\httpd.exe
FirewallRules: [TCP Query User{77756832-BB99-459E-BCF0-594968BB93E0}C:\xampp-portable\mysql\bin\mysqld.exe] => (Allow) C:\xampp-portable\mysql\bin\mysqld.exe
FirewallRules: [UDP Query User{9A9D146F-3A7B-482A-9964-0E2ACD1694A6}C:\xampp-portable\mysql\bin\mysqld.exe] => (Allow) C:\xampp-portable\mysql\bin\mysqld.exe
FirewallRules: [{3F67ABD7-A1D8-4B85-92F5-1E90EC2653B0}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
FirewallRules: [{24ED5E19-6F87-4552-A0DE-87B23D3E1671}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe
FirewallRules: [{112FCE7A-0F77-49A1-9681-D49877F57F13}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe
FirewallRules: [{6438E7D5-2BC2-4A35-A0F6-B4E664F6FC57}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe
FirewallRules: [{E6A2B381-642B-4755-890D-71F675CC6E01}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hposid01.exe
FirewallRules: [{C6E957CF-792D-4C70-98C6-3A01226C4FDF}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe
FirewallRules: [{2677A18C-2B6D-4FE6-A8E3-34F16BF3E626}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqcopy2.exe
FirewallRules: [{CC02DEB5-2766-40A8-8836-317CC22DA8EC}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe
FirewallRules: [{A8BBAF1A-EE78-4CD8-B3ED-C023F4F5527E}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe
FirewallRules: [{0922C201-555F-4063-9451-20D443BD6A8E}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe
FirewallRules: [{DFC2878D-F475-4861-B693-5007B04CAF53}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe
FirewallRules: [{43691E39-7477-4305-9475-D56010C62516}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe
FirewallRules: [{DF8CF0CD-786A-41C1-B323-FBB357CA517E}] => (Allow) C:\Program Files\common files\hp\digital imaging\bin\hpqphotocrm.exe
FirewallRules: [{8931264A-A575-490E-9C97-2884E8F7EEFA}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe
FirewallRules: [{C97E0E4A-FC7F-46A9-8BA7-BFEB1FA42618}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe
FirewallRules: [{63B3B5E4-233B-4242-80D6-57C0FC2569D8}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpofxs08.exe
FirewallRules: [{94DF6FB9-054F-4872-8B44-088E6FD0ECFB}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqfxt08.exe
FirewallRules: [{72D4C517-5922-40BD-8ADE-1E01BA69CF48}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe
FirewallRules: [{9C3D86E0-292B-4D96-BD32-17075827A6DD}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe
FirewallRules: [{2E17A9F4-25ED-46BD-B4C3-C784277AE2D7}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
FirewallRules: [{F42D8E00-EAFB-4551-B0F6-3E32F20E577D}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe
FirewallRules: [{DD6701E8-D3C2-4FA9-AF08-175CA93DF071}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe
FirewallRules: [{47E90B48-964A-4BE6-BF58-0FF55E009DDF}] => (Allow) C:\Program Files\HP\hp software update\hpwucli.exe
FirewallRules: [{F6F5B60A-0601-4317-A4AA-74D566C6E034}] => (Allow) C:\Program Files\HP\digital imaging\smart web printing\smartwebprintexe.exe
FirewallRules: [{D730B996-2FDF-485A-A150-2A895F8C9E68}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{1BB60EC0-22CF-44F3-895D-DC33FFD6ECC0}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{A842265A-BE43-47B0-8928-F16E90BAE7C2}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe
FirewallRules: [{3A5506BC-46AD-4945-9A9B-3B8453336EEC}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe
FirewallRules: [{A4BA7AEF-9C48-4C49-A864-0F9EE6570F84}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe

==================== Faulty Device Manager Devices =============

Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Deskjet 3050A J611 series
Description: Deskjet 3050A J611 series
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: HP
Service:
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (07/05/2015 06:05:57 PM) (Source: Windows Search Service) (EventID: 7042) (User: )
Description: Služba Windows Search byla zastavena, protože došlo k problému s indexovacím modulem The catalog is corrupt.

Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)

Error: (07/05/2015 06:05:57 PM) (Source: Windows Search Service) (EventID: 7010) (User: )
Description: Index nebyl inicializován.

Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)

Error: (07/05/2015 06:05:57 PM) (Source: Windows Search Service) (EventID: 3058) (User: )
Description: Aplikace nebyla inicializována.

Kontext: aplikace Windows

Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)

Error: (07/05/2015 06:05:57 PM) (Source: Windows Search Service) (EventID: 3028) (User: )
Description: Objekt indexování nebyl inicializován.

Kontext: aplikace Windows, katalog SystemIndex

Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)

Error: (07/05/2015 06:05:57 PM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: Modul plug-in v <Search.TripoliIndexer> nebyl inicializován.

Kontext: aplikace Windows, katalog SystemIndex

Podrobnosti:
Prvek nebyl nalezen. (HRESULT : 0x80070490) (0x80070490)

Error: (07/05/2015 06:05:54 PM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: Modul plug-in v <Search.JetPropStore> nebyl inicializován.

Kontext: aplikace Windows, katalog SystemIndex

Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)

Error: (07/05/2015 06:05:54 PM) (Source: Windows Search Service) (EventID: 9002) (User: )
Description: Služba Windows Search nenačetla informace o úložišti vlastností.

Kontext: aplikace Windows, katalog SystemIndex

Podrobnosti:
Server indexu obsahu neaktualizoval nebo nenačetl informace kvůli chybě databáze. Zastavte a restartujte vyhledávací službu. Pokud potíže potrvají, vymažte index obsahu a proveďte znovu jeho procházení. V některých případech bude pravděpodobně nutné odstranit a znovu vytvořit index obsahu. (HRESULT : 0x8004117f) (0x8004117f)

Error: (07/05/2015 06:05:54 PM) (Source: Windows Search Service) (EventID: 7040) (User: )
Description: Vyhledávací služby zjistila, že index {id=1100} obsahuje poškozené datové soubory. Služba se pokusí tyto potíže automaticky odstranit vytvořením nového indexu.

Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)

Error: (07/05/2015 06:05:54 PM) (Source: Windows Search Service) (EventID: 9000) (User: )
Description: Služba Windows Search neotevřela úložiště vlastností databázového stroje Jet.

Podrobnosti:
0x%08x (0x8004117f - Server indexu obsahu neaktualizoval nebo nenačetl informace kvůli chybě databáze. Zastavte a restartujte vyhledávací službu. Pokud potíže potrvají, vymažte index obsahu a proveďte znovu jeho procházení. V některých případech bude pravděpodobně nutné odstranit a znovu vytvořit index obsahu. (HRESULT : 0x8004117f))

Error: (07/04/2015 09:46:14 AM) (Source: System Restore) (EventID: 8193) (User: )
Description: Vytvoření bodu obnovení se nezdařilo (Proces = C:\windows\system32\wbem\wmiprvse.exe; Popis = ComboFix created restore point; Chyba = 0x8007043c).


System errors:
=============
Error: (07/06/2015 08:20:10 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: specifické pro aplikaciMístníSpuštění{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (pomocí LRPC)

Error: (07/06/2015 08:18:37 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (14:54:17, ‎6.‎7.‎2015) bylo neočekávané.

Error: (07/06/2015 02:14:05 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Služba seznamu sítí závisí na službě Sledování umístění v síti (NLA), která neuspěla při spuštění v důsledku následující chyby:
%%1068

Error: (07/06/2015 02:10:30 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Rozpoznávací modul sběrnice PnP-X IP závisí na službě Hostitel poskytovatele rozpoznávání funkce, která neuspěla při spuštění v důsledku následující chyby:
%%1068

Error: (07/06/2015 02:09:01 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Služba seznamu sítí závisí na službě Sledování umístění v síti (NLA), která neuspěla při spuštění v důsledku následující chyby:
%%1068

Error: (07/06/2015 02:09:01 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Služba seznamu sítí závisí na službě Sledování umístění v síti (NLA), která neuspěla při spuštění v důsledku následující chyby:
%%1068

Error: (07/06/2015 02:09:01 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Služba seznamu sítí závisí na službě Sledování umístění v síti (NLA), která neuspěla při spuštění v důsledku následující chyby:
%%1068

Error: (07/06/2015 02:09:01 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Služba seznamu sítí závisí na službě Sledování umístění v síti (NLA), která neuspěla při spuštění v důsledku následující chyby:
%%1068

Error: (07/06/2015 02:09:01 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Služba seznamu sítí závisí na službě Sledování umístění v síti (NLA), která neuspěla při spuštění v důsledku následující chyby:
%%1068

Error: (07/06/2015 02:09:01 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Služba seznamu sítí závisí na službě Sledování umístění v síti (NLA), která neuspěla při spuštění v důsledku následující chyby:
%%1068


Microsoft Office:
=========================

==================== Memory info ===========================

Processor: Intel(R) Core(TM) i3 CPU M 330 @ 2.13GHz
Percentage of memory in use: 36%
Total physical RAM: 2927.43 MB
Available physical RAM: 1846.09 MB
Total Virtual: 5853.17 MB
Available Virtual: 4559 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:280.8 GB) (Free:214.4 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (HP_TOOLS) (Fixed) (Total:1.99 GB) (Free:1.49 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 58054A99)
Partition 1: (Active) - (Size=300 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=280.8 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=15 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=2 GB) - (Type=0C)

==================== End of log ============================
AMD Ryzen 5 5600X | MSI MAG B550 TOMAHAWK | G.Skill Aegis 32GB 3200MHz | Kingston A2000 1TB | PowerColor Red Devil RX 6700 XT 12GB | XPG Core Reactor 750W | Be quiet! PURE BASE 500 | Asus VG27AQ1A


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 77 hostů