Prosím o kontrolu HJT

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Alssea
nováček
Příspěvky: 47
Registrován: červenec 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu HJT

Příspěvekod Alssea » 11 led 2016 18:32

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808
FirewallRules: [{F2020797-1CDC-4FFF-933B-A4C83B6EB901}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{33C5EF69-D29A-426D-8F54-72D4F62F4330}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{14D6A8EF-D199-4E8D-8634-5084D3E7E410}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{0E533EC5-03BE-4197-82E1-85BD0E97B60F}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{B7ADBF0A-3FA5-4D9D-A763-2C7696BAE47D}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{98800AA2-8E0F-4934-87EF-956945477695}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [UDP Query User{D95264FD-441D-4C05-87DA-0006556520D8}C:\users\martincovi\desktop\hazzard v1.4\hazzard.exe] => (Allow) C:\users\martincovi\desktop\hazzard v1.4\hazzard.exe
FirewallRules: [TCP Query User{B7CEC6E4-9CB3-4E81-A281-E3B7CE74C268}C:\users\martincovi\desktop\hazzard v1.4\hazzard.exe] => (Allow) C:\users\martincovi\desktop\hazzard v1.4\hazzard.exe
FirewallRules: [UDP Query User{23246323-7537-457F-BA79-9FB93A4C4B1F}C:\users\martincovi\desktop\the-lost-island\metin2.bin] => (Allow) C:\users\martincovi\desktop\the-lost-island\metin2.bin
FirewallRules: [TCP Query User{55AD8D14-A215-4E29-A197-46F29AB2EBCF}C:\users\martincovi\desktop\the-lost-island\metin2.bin] => (Allow) C:\users\martincovi\desktop\the-lost-island\metin2.bin
FirewallRules: [UDP Query User{0FA00EC8-2834-4BEC-9BB9-236FF266E1BF}C:\program files (x86)\freetime\formatfactory\formatfactory.exe] => (Block) C:\program files (x86)\freetime\formatfactory\formatfactory.exe
FirewallRules: [TCP Query User{D752320E-F133-40A3-B82C-E655644C2418}C:\program files (x86)\freetime\formatfactory\formatfactory.exe] => (Block) C:\program files (x86)\freetime\formatfactory\formatfactory.exe
FirewallRules: [{081BC16C-1F31-418D-80FB-883FBD132D36}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\VideoSpin.exe
FirewallRules: [{AA5B9437-431C-406C-AB72-3AD681E1335A}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\VideoSpin.exe
FirewallRules: [{17BE7855-F993-4109-BDC5-76EA3926AFBD}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\umi.exe
FirewallRules: [{2BDC4119-5FAB-44C3-8DB6-C28D3CA5F5B9}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\umi.exe
FirewallRules: [{3B3C86A4-F29D-4EAE-84F4-2C49369E6245}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\RM.exe
FirewallRules: [{2F92BCDC-F55D-4D0A-AD51-268C9F3F6CF3}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\RM.exe
FirewallRules: [UDP Query User{78BDB525-1792-4819-B8DD-705C26333396}C:\program files (x86)\lolreplay\lolreplay.exe] => (Allow) C:\program files (x86)\lolreplay\lolreplay.exe
FirewallRules: [TCP Query User{C21E4DCC-E95F-46A0-9FA5-DEA51080A138}C:\program files (x86)\lolreplay\lolreplay.exe] => (Allow) C:\program files (x86)\lolreplay\lolreplay.exe
FirewallRules: [UDP Query User{48126AFB-8E18-4D71-B731-FA5BEFBA4118}C:\users\martincovi\desktop\nová složka (3)\nová složka\santhia beta\santhia.bin] => (Allow) C:\users\martincovi\desktop\nová složka (3)\nová složka\santhia beta\santhia.bin
FirewallRules: [TCP Query User{11677B9B-F04D-40C5-BEE0-6BDEA6DF3E57}C:\users\martincovi\desktop\nová složka (3)\nová složka\santhia beta\santhia.bin] => (Allow) C:\users\martincovi\desktop\nová složka (3)\nová složka\santhia beta\santhia.bin
FirewallRules: [UDP Query User{6DF2C4F5-AB6E-45BA-A409-DEA26AE777C1}C:\users\martincovi\desktop\nová složka (2)\spaceworld\zcsk.dll] => (Allow) C:\users\martincovi\desktop\nová složka (2)\spaceworld\zcsk.dll
FirewallRules: [TCP Query User{BE3124DE-CBA7-4E48-8681-8C7B0CDC4EE1}C:\users\martincovi\desktop\nová složka (2)\spaceworld\zcsk.dll] => (Allow) C:\users\martincovi\desktop\nová složka (2)\spaceworld\zcsk.dll
FirewallRules: [UDP Query User{B81F3E9E-3983-4836-8C3F-9833B92EB4B8}C:\users\martincovi\desktop\nová složka (2)\spaceworld\spaceworldlauncher.exe] => (Allow) C:\users\martincovi\desktop\nová složka (2)\spaceworld\spaceworldlauncher.exe
FirewallRules: [TCP Query User{8F5D8BE3-4148-40CC-A845-D2D2FA9B052C}C:\users\martincovi\desktop\nová složka (2)\spaceworld\spaceworldlauncher.exe] => (Allow) C:\users\martincovi\desktop\nová složka (2)\spaceworld\spaceworldlauncher.exe
FirewallRules: [UDP Query User{445D9817-F655-49AF-A68A-B14D42E9E0B9}C:\program files (x86)\tmnationsforever\tmforever.exe] => (Allow) C:\program files (x86)\tmnationsforever\tmforever.exe
FirewallRules: [TCP Query User{07513218-D5BE-40B4-8A90-964FCCB5EDE0}C:\program files (x86)\tmnationsforever\tmforever.exe] => (Allow) C:\program files (x86)\tmnationsforever\tmforever.exe
FirewallRules: [{07EDE44D-9ADD-4F90-9E1C-C56096F2453E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{DA499A83-78BC-4C54-BC99-307E40092B42}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [UDP Query User{EDD3F097-D6A2-49A8-BDC8-BBC99B7280BF}C:\program files (x86)\maniaplanet\maniaplanet.exe] => (Allow) C:\program files (x86)\maniaplanet\maniaplanet.exe
FirewallRules: [TCP Query User{D29DDE4D-C187-44DC-935B-A7602C34160D}C:\program files (x86)\maniaplanet\maniaplanet.exe] => (Allow) C:\program files (x86)\maniaplanet\maniaplanet.exe
FirewallRules: [UDP Query User{FDB5A505-16FF-4ED7-8039-510AACC1090D}C:\users\martincovi\desktop\nová složka\last-world\lw.bin] => (Allow) C:\users\martincovi\desktop\nová složka\last-world\lw.bin
FirewallRules: [TCP Query User{8D1461B6-D1C2-4B09-9348-D2FB2A7935EB}C:\users\martincovi\desktop\nová složka\last-world\lw.bin] => (Allow) C:\users\martincovi\desktop\nová složka\last-world\lw.bin
FirewallRules: [UDP Query User{8504334C-CB4E-4DA6-8A9F-A5B1221AE8F4}C:\users\martincovi\desktop\nová složka\spaceworld\zcsk.dll] => (Allow) C:\users\martincovi\desktop\nová složka\spaceworld\zcsk.dll
FirewallRules: [TCP Query User{9C1DC715-B869-4A42-9DD6-A2D467286D11}C:\users\martincovi\desktop\nová složka\spaceworld\zcsk.dll] => (Allow) C:\users\martincovi\desktop\nová složka\spaceworld\zcsk.dll
FirewallRules: [UDP Query User{7067B66A-D9F6-4623-8CC5-FF6188B45377}C:\users\martincovi\desktop\nová složka\spaceworld\spaceworldlauncher.exe] => (Allow) C:\users\martincovi\desktop\nová složka\spaceworld\spaceworldlauncher.exe
FirewallRules: [TCP Query User{0E148754-14A3-43C3-8866-09B633D9A42F}C:\users\martincovi\desktop\nová složka\spaceworld\spaceworldlauncher.exe] => (Allow) C:\users\martincovi\desktop\nová složka\spaceworld\spaceworldlauncher.exe
FirewallRules: [UDP Query User{D1B302CD-DDA9-4ABC-A61B-E2C820F60DCF}C:\program files (x86)\gameforgelive\games\cze_ces\aion\nclauncher.exe] => (Allow) C:\program files (x86)\gameforgelive\games\cze_ces\aion\nclauncher.exe
FirewallRules: [TCP Query User{BF278108-7067-4110-A614-3259ECB1BE88}C:\program files (x86)\gameforgelive\games\cze_ces\aion\nclauncher.exe] => (Allow) C:\program files (x86)\gameforgelive\games\cze_ces\aion\nclauncher.exe
FirewallRules: [UDP Query User{9338F104-55C1-41E6-A16B-F5A93953394B}C:\users\martincovi\desktop\nová složka\candylongjuczsk 2.0\metin2.exe] => (Allow) C:\users\martincovi\desktop\nová složka\candylongjuczsk 2.0\metin2.exe
FirewallRules: [TCP Query User{0845CBA6-9900-4E29-9C69-5B9A154461CF}C:\users\martincovi\desktop\nová složka\candylongjuczsk 2.0\metin2.exe] => (Allow) C:\users\martincovi\desktop\nová složka\candylongjuczsk 2.0\metin2.exe
FirewallRules: [{9E515716-23AA-4E51-8FA9-192654355183}] => (Allow) C:\Users\Martincovi\AppData\Roaming\BitTorrent\BitTorrent.exe
FirewallRules: [{011A6D60-EE09-4CBA-B52E-9661DF6D9B8D}] => (Allow) C:\Users\Martincovi\AppData\Roaming\BitTorrent\BitTorrent.exe
FirewallRules: [UDP Query User{CFD873C2-C69B-4290-8ED3-486D177F9442}C:\users\martincovi\appdata\roaming\bittorrent\bittorrent.exe] => (Block) C:\users\martincovi\appdata\roaming\bittorrent\bittorrent.exe
FirewallRules: [TCP Query User{E34DC386-CCAA-4868-BFB0-A9588F11B0C4}C:\users\martincovi\appdata\roaming\bittorrent\bittorrent.exe] => (Block) C:\users\martincovi\appdata\roaming\bittorrent\bittorrent.exe
FirewallRules: [UDP Query User{0EFB9DB0-E309-4033-A4D9-2D0139D141D3}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe] => (Allow) C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe
FirewallRules: [TCP Query User{034C27E1-114B-4285-8AD4-EB4872E5B0D6}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe] => (Allow) C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe
FirewallRules: [UDP Query User{E523C309-144C-4825-A29A-B3EBE1491D5E}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe] => (Allow) C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe
FirewallRules: [TCP Query User{5F363E96-9E18-4BAA-B135-6C50A1DD1B30}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe] => (Allow) C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe
FirewallRules: [UDP Query User{D94BB943-EB2C-4FF8-8973-AF9B6F99029A}C:\program files (x86)\mozilla firefox\plugin-container.exe] => (Allow) C:\program files (x86)\mozilla firefox\plugin-container.exe
FirewallRules: [TCP Query User{E4829FDF-2BE4-4CCF-9206-C60B7888FCC5}C:\program files (x86)\mozilla firefox\plugin-container.exe] => (Allow) C:\program files (x86)\mozilla firefox\plugin-container.exe
FirewallRules: [UDP Query User{ACF5A6F2-9A76-4991-8CBB-29240861102D}C:\users\martincovi\desktop\nová složka\apostate\apostate\apostate.exe] => (Allow) C:\users\martincovi\desktop\nová složka\apostate\apostate\apostate.exe
FirewallRules: [TCP Query User{2421AF46-0669-49B0-8B69-DBF067CCF011}C:\users\martincovi\desktop\nová složka\apostate\apostate\apostate.exe] => (Allow) C:\users\martincovi\desktop\nová složka\apostate\apostate\apostate.exe
FirewallRules: [UDP Query User{C0EFA1F9-E75A-4252-AF94-D427EB0508C7}C:\users\martincovi\desktop\nová složka\nether-world\nether-world.bin] => (Allow) C:\users\martincovi\desktop\nová složka\nether-world\nether-world.bin
FirewallRules: [TCP Query User{12A472E8-B4FB-41BD-AA66-A455D671E837}C:\users\martincovi\desktop\nová složka\nether-world\nether-world.bin] => (Allow) C:\users\martincovi\desktop\nová složka\nether-world\nether-world.bin
FirewallRules: [UDP Query User{C689B56C-6EC5-427A-9887-E0FBC9CFA92A}C:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe] => (Block) C:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe
FirewallRules: [TCP Query User{C3839F1C-34AE-4BFB-A07C-487C0DDAB748}C:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe] => (Block) C:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe
FirewallRules: [UDP Query User{A86270AF-D619-48E9-B4C9-84B3B990150A}C:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe] => (Block) C:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe
FirewallRules: [TCP Query User{218C65A0-0AE6-4C80-8384-F33A4188BA62}C:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe] => (Block) C:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe
FirewallRules: [UDP Query User{44C5C5FF-682F-471C-A1E9-FAB7ABA2F381}C:\users\martincovi\desktop\nová složka\metin2 anubis official\anubis.bin] => (Allow) C:\users\martincovi\desktop\nová složka\metin2 anubis official\anubis.bin
FirewallRules: [TCP Query User{6EF07AE7-BDF0-4ADB-B61D-151B4288C10D}C:\users\martincovi\desktop\nová složka\metin2 anubis official\anubis.bin] => (Allow) C:\users\martincovi\desktop\nová složka\metin2 anubis official\anubis.bin
FirewallRules: [UDP Query User{8B28C4A5-AE14-4013-9FE7-48787B6D806A}C:\users\martincovi\desktop\etacidnys new\eg.dlleg] => (Allow) C:\users\martincovi\desktop\etacidnys new\eg.dlleg
FirewallRules: [TCP Query User{CB359CCB-80DC-4010-A891-23343913E5C5}C:\users\martincovi\desktop\etacidnys new\eg.dlleg] => (Allow) C:\users\martincovi\desktop\etacidnys new\eg.dlleg
FirewallRules: [UDP Query User{3CA4D953-3EA2-4C80-A132-2EBF7803347F}C:\users\martincovi\documents\laroxionmt2\graves.dll] => (Allow) C:\users\martincovi\documents\laroxionmt2\graves.dll
FirewallRules: [TCP Query User{2A3D2E65-85C2-4ACB-B9B4-8622FE2CBBDC}C:\users\martincovi\documents\laroxionmt2\graves.dll] => (Allow) C:\users\martincovi\documents\laroxionmt2\graves.dll
FirewallRules: [{51B446B0-5525-4900-91BA-5514C6FC5843}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
FirewallRules: [{EF46362C-50D7-47A0-9A07-5B2C21EB2018}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
FirewallRules: [{243AC97C-C396-4567-BB98-E008828EABA6}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
FirewallRules: [{E5E95264-4AE8-465C-BD3D-55826608A13B}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
FirewallRules: [{787851BB-3037-4713-A371-B0E8064EC839}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
FirewallRules: [UDP Query User{09F71D9A-E667-4B06-AAEB-2AAF2EE593D0}C:\users\martincovi\appdata\roaming\bittorrent\bittorrent.exe] => (Block) C:\users\martincovi\appdata\roaming\bittorrent\bittorrent.exe
FirewallRules: [TCP Query User{7C7BAE7C-3B56-4C2B-AF50-7D6BE6AEB694}C:\users\martincovi\appdata\roaming\bittorrent\bittorrent.exe] => (Block) C:\users\martincovi\appdata\roaming\bittorrent\bittorrent.exe
FirewallRules: [UDP Query User{BA44D8F3-53A2-4B3E-B5A6-75D16A592757}C:\users\martincovi\desktop\fearinside pvp klient\fearinside pvp\fearinside.exe] => (Allow) C:\users\martincovi\desktop\fearinside pvp klient\fearinside pvp\fearinside.exe
FirewallRules: [TCP Query User{C0896E0E-808F-41F4-9017-40100ECC3A20}C:\users\martincovi\desktop\fearinside pvp klient\fearinside pvp\fearinside.exe] => (Allow) C:\users\martincovi\desktop\fearinside pvp klient\fearinside pvp\fearinside.exe
FirewallRules: [UDP Query User{66A67E64-B7AF-44D6-8618-A0547B287667}C:\users\martincovi\desktop\nová složka\number9\spoustec.exe] => (Allow) C:\users\martincovi\desktop\nová složka\number9\spoustec.exe
FirewallRules: [TCP Query User{02576AD3-D4A1-41B8-B299-3888950186E0}C:\users\martincovi\desktop\nová složka\number9\spoustec.exe] => (Allow) C:\users\martincovi\desktop\nová složka\number9\spoustec.exe
FirewallRules: [UDP Query User{A0C6C009-6D2E-4ACB-803C-63C8797546F3}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe
FirewallRules: [TCP Query User{129E0F8D-3AB5-4062-B4A1-C4DFEF0DDE36}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe
FirewallRules: [UDP Query User{502E9A0F-E650-47D1-A8F8-CC90E5573CC2}C:\program files (x86)\hi-rez studios\hirezgames\tribes\binaries\win32\tribesascend.exe] => (Allow) C:\program files (x86)\hi-rez studios\hirezgames\tribes\binaries\win32\tribesascend.exe
FirewallRules: [TCP Query User{A3FDAC93-674A-478D-BC56-3756E16E4015}C:\program files (x86)\hi-rez studios\hirezgames\tribes\binaries\win32\tribesascend.exe] => (Allow) C:\program files (x86)\hi-rez studios\hirezgames\tribes\binaries\win32\tribesascend.exe
FirewallRules: [UDP Query User{20AF0A63-22EA-4BCC-A0E0-579DC3277692}E:\dayz standalone v0.46\dayz.exe] => (Block) E:\dayz standalone v0.46\dayz.exe
FirewallRules: [TCP Query User{FE9DF4D2-2684-4875-AD4A-BFB354578065}E:\dayz standalone v0.46\dayz.exe] => (Block) E:\dayz standalone v0.46\dayz.exe
FirewallRules: [UDP Query User{7C9A2FBC-6CA8-4177-9707-511DF3792FBC}C:\users\martincovi\downloads\laroxionmt2\graves.dll] => (Allow) C:\users\martincovi\downloads\laroxionmt2\graves.dll
FirewallRules: [TCP Query User{38405C24-9EE6-4582-B763-E15DD46813AA}C:\users\martincovi\downloads\laroxionmt2\graves.dll] => (Allow) C:\users\martincovi\downloads\laroxionmt2\graves.dll
FirewallRules: [UDP Query User{FC409EFE-BD5A-4935-BCCC-ADFE428BCDC0}C:\users\martincovi\documents\programy\sindicate\game.exe] => (Allow) C:\users\martincovi\documents\programy\sindicate\game.exe
FirewallRules: [TCP Query User{6AE60438-3D01-406C-BD34-70E05445DC34}C:\users\martincovi\documents\programy\sindicate\game.exe] => (Allow) C:\users\martincovi\documents\programy\sindicate\game.exe
FirewallRules: [UDP Query User{E93BD201-4063-4499-A1B7-7C51A25C44E2}C:\program files (x86)\counter-strike 1.6 non-steam\hl.exe] => (Block) C:\program files (x86)\counter-strike 1.6 non-steam\hl.exe
FirewallRules: [TCP Query User{EF55E666-6520-4E17-B51C-D639B1E187E7}C:\program files (x86)\counter-strike 1.6 non-steam\hl.exe] => (Block) C:\program files (x86)\counter-strike 1.6 non-steam\hl.exe
FirewallRules: [{2E46D7B8-E572-4F5E-9CBE-6F07F6CFF88B}] => (Allow) C:\Users\Martincovi\Downloads\World of Warcraft 3.3.5a (no install)\WoW-x.x.x.x-4.0.0.12911-Downloader.exe
FirewallRules: [{73723E0F-2628-4545-8786-5B500C29C223}] => (Allow) C:\Users\Martincovi\Downloads\World of Warcraft 3.3.5a (no install)\WoW-x.x.x.x-4.0.0.12911-Downloader.exe
FirewallRules: [UDP Query User{F9A7F03C-F66E-46CD-89AA-074FFD365712}C:\users\martincovi\desktop\programy\a\unlimitedworld\uw.bin] => (Allow) C:\users\martincovi\desktop\programy\a\unlimitedworld\uw.bin
FirewallRules: [TCP Query User{E00F9246-D462-437C-A64E-B30020687538}C:\users\martincovi\desktop\programy\a\unlimitedworld\uw.bin] => (Allow) C:\users\martincovi\desktop\programy\a\unlimitedworld\uw.bin
FirewallRules: [UDP Query User{AB7B834B-EC82-4D69-8B96-69059FBAA6CD}C:\program files (x86)\quadcorem2\pack\core.bin] => (Allow) C:\program files (x86)\quadcorem2\pack\core.bin
FirewallRules: [TCP Query User{7797F150-8009-4B2B-B412-D115F8FC5D31}C:\program files (x86)\quadcorem2\pack\core.bin] => (Allow) C:\program files (x86)\quadcorem2\pack\core.bin
FirewallRules: [UDP Query User{7580604F-F8C9-4AE7-88F5-E8BA2BF42481}C:\users\martincovi\desktop\a\unlimitedworld\uw.bin] => (Block) C:\users\martincovi\desktop\a\unlimitedworld\uw.bin
FirewallRules: [TCP Query User{6D215836-0FE2-456E-AA26-F1B4EABE5D28}C:\users\martincovi\desktop\a\unlimitedworld\uw.bin] => (Block) C:\users\martincovi\desktop\a\unlimitedworld\uw.bin
FirewallRules: [UDP Query User{5557860D-6457-4F9D-B0BD-49ECDFBFE1D5}C:\users\martincovi\desktop\a\unlimitedworld\uw.bin] => (Allow) C:\users\martincovi\desktop\a\unlimitedworld\uw.bin
FirewallRules: [TCP Query User{A2535A1A-8227-4A68-92CF-F029F273FBA9}C:\users\martincovi\desktop\a\unlimitedworld\uw.bin] => (Allow) C:\users\martincovi\desktop\a\unlimitedworld\uw.bin
FirewallRules: [UDP Query User{C012A82C-3BED-4538-9505-38493D4F3732}C:\program files (x86)\gameforgelive\games\gbr_eng\aion\nclauncher.exe] => (Allow) C:\program files (x86)\gameforgelive\games\gbr_eng\aion\nclauncher.exe
FirewallRules: [TCP Query User{8A196B93-1EBE-4886-BDFE-F76C1077F699}C:\program files (x86)\gameforgelive\games\gbr_eng\aion\nclauncher.exe] => (Allow) C:\program files (x86)\gameforgelive\games\gbr_eng\aion\nclauncher.exe
FirewallRules: [{1F29D82E-EB6F-481C-9646-C326A1F38FB9}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{AA722B70-B0C3-4365-A8AD-6A6AB89ED2AD}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [UDP Query User{BFCE8643-6F24-4099-AE8E-C026EECF4E9D}C:\users\martincovi\documents\sindicate\game.exe] => (Allow) C:\users\martincovi\documents\sindicate\game.exe
FirewallRules: [TCP Query User{2D799A73-9359-452A-A334-BA758BBF6023}C:\users\martincovi\documents\sindicate\game.exe] => (Allow) C:\users\martincovi\documents\sindicate\game.exe
FirewallRules: [{00F86D7E-2A72-47DD-83B5-8873235C52CD}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [UDP Query User{DB5CE21D-9367-4118-9184-ABA35233850C}C:\users\martincovi\desktop\programy\sindicate\game.exe] => (Allow) C:\users\martincovi\desktop\programy\sindicate\game.exe
FirewallRules: [TCP Query User{62C104A7-C7B5-4A73-9530-E97D7AA335A5}C:\users\martincovi\desktop\programy\sindicate\game.exe] => (Allow) C:\users\martincovi\desktop\programy\sindicate\game.exe
FirewallRules: [{B85A1DE7-55B2-48A9-8A11-946E87435A74}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{DE6AD5FD-ADB9-458E-9FE0-FB4127F97D02}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{A41B3942-DC2D-4F89-AD93-CBD96F01CF64}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe
FirewallRules: [{6C0BDD01-5A3E-4033-95C9-698B8AF049AE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe
FirewallRules: [TCP Query User{2698CC2E-BC1A-4204-BEBA-4C741A88FEA7}C:\users\martincovi\desktop\akatsuki2 klient oficial\akatsuki metin2.exe] => (Allow) C:\users\martincovi\desktop\akatsuki2 klient oficial\akatsuki metin2.exe
FirewallRules: [UDP Query User{D1580ED9-28C1-44B3-ACAB-A8181516553D}C:\users\martincovi\desktop\akatsuki2 klient oficial\akatsuki metin2.exe] => (Allow) C:\users\martincovi\desktop\akatsuki2 klient oficial\akatsuki metin2.exe
FirewallRules: [TCP Query User{DB01139D-AAAB-45D0-9F45-E6ED7A0C3A94}C:\users\martincovi\documents\akatsuki2 klient oficial\akatsuki metin2.exe] => (Allow) C:\users\martincovi\documents\akatsuki2 klient oficial\akatsuki metin2.exe
FirewallRules: [UDP Query User{A2B75B78-F352-4DD2-A4A0-F5D978C9C2E3}C:\users\martincovi\documents\akatsuki2 klient oficial\akatsuki metin2.exe] => (Allow) C:\users\martincovi\documents\akatsuki2 klient oficial\akatsuki metin2.exe
FirewallRules: [TCP Query User{BA6FF89B-3209-4956-95D9-A971F121725E}C:\program files (x86)\steam\steamapps\common\cryptic studios\neverwinter\live\gameclient.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\cryptic studios\neverwinter\live\gameclient.exe
FirewallRules: [UDP Query User{82DEF0BC-DCEB-4F5E-8ED7-ABB6FB2A263B}C:\program files (x86)\steam\steamapps\common\cryptic studios\neverwinter\live\gameclient.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\cryptic studios\neverwinter\live\gameclient.exe
FirewallRules: [{C72EC7FA-FA3C-41AB-A1B5-942D3F9629D2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{4CF15098-9C6D-4528-92AF-61CB7FD94404}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{0426B012-6CED-4176-B628-4C4C6508D196}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{8E32EB64-0B8C-46CF-ACD8-D603CFF4EC54}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{0C7D8EB3-3BA8-4D19-A330-F39B6258C5DF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [TCP Query User{38F18AD9-EA4D-4D8D-A82C-CB4BD321F210}C:\users\martincovi\downloads\quadcorem2\pack\core.bin] => (Allow) C:\users\martincovi\downloads\quadcorem2\pack\core.bin
FirewallRules: [UDP Query User{8087FF5E-936E-4DDA-BA28-E3AE8A8DFFD8}C:\users\martincovi\downloads\quadcorem2\pack\core.bin] => (Allow) C:\users\martincovi\downloads\quadcorem2\pack\core.bin
FirewallRules: [{63A6AF6A-C32F-4C23-84A6-DA7003F80F34}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{20AB3CF0-CEBF-4F73-8985-D25FA744FFA0}] => (Allow) LPort=2869
FirewallRules: [{DB08F23A-9FCF-41C4-95A7-0A7F9E3E460A}] => (Allow) LPort=1900
FirewallRules: [{DCB23D29-8634-4BBE-AA57-B704D79D03F2}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [TCP Query User{DCEAD337-EF4A-4F0C-8BC5-C1158EF44BFA}C:\users\martincovi\downloads\psro_full_client_downloader_v3.exe] => (Allow) C:\users\martincovi\downloads\psro_full_client_downloader_v3.exe
FirewallRules: [UDP Query User{D303888D-97BE-4ADC-82C6-9FACE86E7CAB}C:\users\martincovi\downloads\psro_full_client_downloader_v3.exe] => (Allow) C:\users\martincovi\downloads\psro_full_client_downloader_v3.exe
FirewallRules: [TCP Query User{1226A107-D2DD-40ED-B03D-B4D948E48BF3}C:\users\martincovi\downloads\psro_full_client_downloader_v3(1).exe] => (Allow) C:\users\martincovi\downloads\psro_full_client_downloader_v3(1).exe
FirewallRules: [UDP Query User{511565FE-82F0-49EE-BD85-E859982E868B}C:\users\martincovi\downloads\psro_full_client_downloader_v3(1).exe] => (Allow) C:\users\martincovi\downloads\psro_full_client_downloader_v3(1).exe
FirewallRules: [{E1D44C0D-3853-4B2C-B1F7-166D16109228}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{A9E02541-72D2-4FDD-9946-173B89D495F5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{8B69D4D0-990F-4CC9-BA6F-21453D6B45C6}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service

==================== Restore Points =========================

08-01-2016 10:25:52 Odstraněno 3D Sound Back Beta0.1
09-01-2016 10:03:07 JRT Pre-Junkware Removal
09-01-2016 21:27:34 JRT Pre-Junkware Removal

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (01/11/2016 06:01:14 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: PC)
Description: Aplikaci Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI se nepovedlo aktivovat, protože došlo k chybě: -2147023170. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (01/11/2016 06:00:47 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Explorer.EXE, verze: 10.0.10240.16603, časové razítko: 0x56553bcd
Název chybujícího modulu: Windows.Gaming.Input.dll, verze: 10.0.10240.16384, časové razítko: 0x559f3e30
Kód výjimky: 0xc0000409
Posun chyby: 0x000000000000c931
ID chybujícího procesu: 0x1158
Čas spuštění chybující aplikace: 0xExplorer.EXE0
Cesta k chybující aplikaci: Explorer.EXE1
Cesta k chybujícímu modulu: Explorer.EXE2
ID zprávy: Explorer.EXE3
Úplný název chybujícího balíčku: Explorer.EXE4
ID aplikace související s chybujícím balíčkem: Explorer.EXE5

Error: (01/11/2016 05:59:12 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: PC)
Description: Aplikace Microsoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy+CortanaUI se nespustila ve stanovenou dobu.

Error: (01/11/2016 05:06:41 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SearchUI.exe verze 10.0.10240.16603 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.

ID procesu: 1a88

Čas spuštění: 01d14c89fccf985a

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe

ID hlášení: 445d4d2f-b87d-11e5-9cde-448a5b62c86c

Úplný název balíčku s chybou: Microsoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy

ID aplikace související s balíčkem s chybou: CortanaUI

Error: (01/11/2016 05:06:24 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: PC)
Description: Aplikace Microsoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy+CortanaUI se nespustila ve stanovenou dobu.

Error: (01/11/2016 03:54:56 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: plugin-container.exe, verze: 43.0.4.5848, časové razítko: 0x568c88bd
Název chybujícího modulu: mozglue.dll, verze: 43.0.4.5848, časové razítko: 0x568c7b16
Kód výjimky: 0x80000003
Posun chyby: 0x0000ed44
ID chybujícího procesu: 0x1f1c
Čas spuštění chybující aplikace: 0xplugin-container.exe0
Cesta k chybující aplikaci: plugin-container.exe1
Cesta k chybujícímu modulu: plugin-container.exe2
ID zprávy: plugin-container.exe3
Úplný název chybujícího balíčku: plugin-container.exe4
ID aplikace související s chybujícím balíčkem: plugin-container.exe5

Error: (01/11/2016 03:04:34 PM) (Source: Application Error) (EventID: 1005) (User: )
Description: Systém Windows nemůže získat přístup k souboru C:\Windows\System32\dlnashext.dll z jednoho z těchto důvodů:
došlo k problému s připojením k síti, s diskem, na kterém je soubor uložen, nebo
s ovladači ukládání nainstalovanými v tomto počítači; nebo disk chybí.
Systém Windows kvůli této chybě ukončil program Průzkumník Windows.

Program: Průzkumník Windows
Soubor: C:\Windows\System32\dlnashext.dll

Hodnota chyby je uvedena v části Další údaje.
Akce uživatele
1. Otevřete soubor znovu.
Může se jednat o dočasný problém, který se při novém spuštění programu nebude opakovat.
2.
Pokud k souboru stále nelze získat přístup a:
- Nachází se v síti,
měl by správce sítě ověřit, zda nedošlo k problému se sítí a zda lze server kontaktovat.
- Je na vyměnitelném disku (například disketě nebo disku CD-ROM), ověřte, zda je disk správně vložen do počítače.
3. Zkontrolujte a opravte systém souborů pomocí nástroje CHKDSK. Ten lze spustit tak, že kliknete na tlačítko Start a příkaz Spustit, zadáte příkaz CMD a kliknete na tlačítko OK. Do příkazového řádku zadejte příkaz CHKDSK /F a stiskněte klávesu ENTER.
4. Pokud potíže potrvají, obnovte soubor ze záložní kopie.
5. Zjistěte, zda lze otevřít jiné soubory na stejném disku. Pokud ne, může být disk poškozen. Jedná-li se o pevný disk, obraťte se na správce nebo na dodavatele počítačového hardwaru
se žádostí o pomoc.

Další údaje
Hodnota chyby: C000009C
Typ disku: 3

Error: (01/11/2016 03:04:34 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Explorer.EXE, verze: 10.0.10240.16603, časové razítko: 0x56553bcd
Název chybujícího modulu: dlnashext.dll, verze: 12.0.10240.16590, časové razítko: 0x563ad304
Kód výjimky: 0xc0000006
Posun chyby: 0x0000000000021d7c
ID chybujícího procesu: 0x1458
Čas spuštění chybující aplikace: 0xExplorer.EXE0
Cesta k chybující aplikaci: Explorer.EXE1
Cesta k chybujícímu modulu: Explorer.EXE2
ID zprávy: Explorer.EXE3
Úplný název chybujícího balíčku: Explorer.EXE4
ID aplikace související s chybujícím balíčkem: Explorer.EXE5

Error: (01/11/2016 03:04:09 PM) (Source: Application Error) (EventID: 1005) (User: )
Description: Systém Windows nemůže získat přístup k souboru C:\Windows\System32\dlnashext.dll z jednoho z těchto důvodů:
došlo k problému s připojením k síti, s diskem, na kterém je soubor uložen, nebo
s ovladači ukládání nainstalovanými v tomto počítači; nebo disk chybí.
Systém Windows kvůli této chybě ukončil program WinRAR archiver.

Program: WinRAR archiver
Soubor: C:\Windows\System32\dlnashext.dll

Hodnota chyby je uvedena v části Další údaje.
Akce uživatele
1. Otevřete soubor znovu.
Může se jednat o dočasný problém, který se při novém spuštění programu nebude opakovat.
2.
Pokud k souboru stále nelze získat přístup a:
- Nachází se v síti,
měl by správce sítě ověřit, zda nedošlo k problému se sítí a zda lze server kontaktovat.
- Je na vyměnitelném disku (například disketě nebo disku CD-ROM), ověřte, zda je disk správně vložen do počítače.
3. Zkontrolujte a opravte systém souborů pomocí nástroje CHKDSK. Ten lze spustit tak, že kliknete na tlačítko Start a příkaz Spustit, zadáte příkaz CMD a kliknete na tlačítko OK. Do příkazového řádku zadejte příkaz CHKDSK /F a stiskněte klávesu ENTER.
4. Pokud potíže potrvají, obnovte soubor ze záložní kopie.
5. Zjistěte, zda lze otevřít jiné soubory na stejném disku. Pokud ne, může být disk poškozen. Jedná-li se o pevný disk, obraťte se na správce nebo na dodavatele počítačového hardwaru
se žádostí o pomoc.

Další údaje
Hodnota chyby: C000009C
Typ disku: 3

Error: (01/11/2016 03:04:09 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: WinRAR.exe, verze: 4.20.0.0, časové razítko: 0x4fd34d58
Název chybujícího modulu: dlnashext.dll, verze: 12.0.10240.16590, časové razítko: 0x563ad304
Kód výjimky: 0xc0000006
Posun chyby: 0x0000000000021d7c
ID chybujícího procesu: 0x1b40
Čas spuštění chybující aplikace: 0xWinRAR.exe0
Cesta k chybující aplikaci: WinRAR.exe1
Cesta k chybujícímu modulu: WinRAR.exe2
ID zprávy: WinRAR.exe3
Úplný název chybujícího balíčku: WinRAR.exe4
ID aplikace související s chybujícím balíčkem: WinRAR.exe5


System errors:
=============
Error: (01/11/2016 06:08:40 PM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: Služba Xbox Live Auth Manager skončila s následující chybou specifickou pro službu:
%%0

Error: (01/11/2016 06:03:53 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (01/11/2016 06:03:51 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (01/11/2016 06:03:49 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (01/11/2016 06:03:48 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (01/11/2016 06:03:46 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (01/11/2016 06:03:44 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (01/11/2016 06:03:42 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (01/11/2016 06:03:05 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (01/11/2016 06:03:03 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.


CodeIntegrity:
===================================
Date: 2015-12-10 17:48:04.405
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements.

Date: 2015-12-10 17:48:04.316
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

Date: 2015-12-10 17:48:04.223
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements.

Date: 2015-12-10 17:48:04.147
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements.

Date: 2015-12-10 17:48:04.074
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

Date: 2015-12-10 17:48:04.025
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements.

Date: 2015-12-10 17:48:00.158
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements.

Date: 2015-12-10 17:47:54.893
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements.

Date: 2015-12-10 15:35:41.998
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements.

Date: 2015-12-10 15:35:41.918
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

Processor: AMD FX(tm)-6300 Six-Core Processor
Percentage of memory in use: 49%
Total physical RAM: 4095.18 MB
Available physical RAM: 2060.87 MB
Total Virtual: 8191.18 MB
Available Virtual: 5916.36 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:465.22 GB) (Free:330.12 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: CF72D7A3)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=465.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)

==================== End of Addition.txt ============================

Reklama
Uživatelský avatar
jerabina
člen Security týmu
Level 6
Level 6
Příspěvky: 3647
Registrován: březen 13
Bydliště: Litoměřice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu HJT

Příspěvekod jerabina » 11 led 2016 20:44

Odinstaluj Glary Utilities 5.4, Bing a Spybot - Search and Destroy

Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.

Kód: Vybrat vše

Start
CloseProcesses:

HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597040 2015-10-06] (Oracle Corporation)
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-765595779-2585989944-2631038468-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-765595779-2585989944-2631038468-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3011152 2015-12-05] (Valve Corporation)
HKU\S-1-5-21-765595779-2585989944-2631038468-1000\...\Run: [BingSvc] => C:\Users\Martincovi\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2016-01-04] (© 2015 Microsoft Corporation)
BootExecute: autocheck autochk * sdnclean64.exe

HKU\S-1-5-21-765595779-2585989944-2631038468-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=SK2M&ocid=SK2MDHP&osmkt=en-ww

FF NewTab: about:newtab
FF Homepage: about:home
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-04] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-04] (Google Inc.)
FF Plugin HKU\S-1-5-21-765595779-2585989944-2631038468-1000: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [No File]
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => not found
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => not found

CHR dev: Chrome dev build detected! <======= ATTENTION
CHR HKLM\...\Chrome\Extension: [aaaaadgepjkdffhjbkfjgnnffnfcffbg] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-765595779-2585989944-2631038468-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx

S2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)

R0 BootDefragDriver; C:\Windows\System32\drivers\BootDefragDriver.sys [17600 2014-07-18] (Glarysoft Ltd)
R1 GUBootStartup; C:\Windows\System32\drivers\GUBootStartup.sys [20160 2014-08-09] (Glarysoft Ltd)
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath

C:\Windows\System32\drivers\BootDefragDriver.sys
C:\Windows\System32\drivers\GUBootStartup.sys
C:\WINDOWS\system32\RegBootDefrag.exe

C:\Program Files (x86)\Glary Utilities 5
C:\WINDOWS\Tasks\GlaryInitialize 5.job

C:\Program Files (x86)\Spybot - Search & Destroy 2
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
C:\ProgramData\Spybot - Search & Destroy
C:\Users\Martincovi\Desktop\spybot-2.4.exe
C:\WINDOWS\system32\sdnclean64.exe
C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
C:\Users\Martincovi\AppData\Local\Microsoft\BingSvc
C:\ProgramData\DP45977C.lfl

Task: {058F3FE1-E871-4290-BE8D-EAFD897F5438} - System32\Tasks\GoogleUpdateTaskMachineCore1d08f037c01d07a => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {089E7518-E73B-4502-8000-931B14D10C49} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {185E8780-378F-4E6A-92BE-2B2EEA8F1D99} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {1D7E3E4C-67CF-4784-B616-1829F7C8FC32} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {216A42A5-C1D5-443C-B836-A3F6E85AE1DE} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {23F4129F-4141-40F8-970E-0756FB1F7700} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.)
Task: {388F56B0-82DC-43C3-8C21-60A6E9A87652} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {3CFD0332-2F6B-45F7-97E0-1F165C2F1593} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {42EDFE77-DE96-4A47-A326-12D9E193D1B2} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2014-06-24] (Safer-Networking Ltd.)
Task: {5032D026-A888-4770-8FF9-3B92E1444B1B} - System32\Tasks\GoogleUpdateTaskMachineUA1d0bf466a80f3a7 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {685E0287-D38E-48AE-82DC-F233EDBB88C2} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-09-14] (Adobe Systems Incorporated)
Task: {7A022217-2124-49E3-888A-8C8D839C4501} - System32\Tasks\GoogleUpdateTaskMachineUA1d040a8d4fe9f8e => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {842B3718-AC2B-4B13-9FD6-1FCDF781B344} - System32\Tasks\GoogleUpdateTaskMachineCore1d021394fcad10f => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {976DD8EA-7478-4257-AB9A-E07E28EE321D} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {A20B2CAE-96B0-4388-B8C9-A8AC43E1FEAA} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => config upnphost start= auto
Task: {A2580F34-0846-46A0-B4DC-FBC2598A378A} - System32\Tasks\GoogleUpdateTaskMachineCore1d0bf4669cf062c => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {A971D8CA-02A8-46E5-A4BA-338FAE383EE1} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2014-06-24] (Safer-Networking Ltd.)
Task: {AD659BDB-C622-46EF-84BD-FB28111386F9} - System32\Tasks\GoogleUpdateTaskMachineUA1d08f037ca822a9 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {BA23E92C-7B02-4D6F-97FD-2143F4F08776} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {BE5F6C35-215D-4868-992A-8D14287B20FC} - \AutoKMS -> No File <==== ATTENTION
Task: {C3083644-D3D9-4D0B-9F1B-61D32B96C692} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {D31F8E36-1C4F-4B1B-B4CC-614A9D17CF28} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {DD3F7977-19DF-4F8A-B514-52EEA5C59065} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {E03B3FDF-7BB2-42F8-B792-CA565EC65121} - System32\Tasks\GlaryInitialize 5 => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe [2014-12-12] (Glarysoft Ltd)
Task: {E3DE8A78-E6B7-455E-8CB5-411C6F9E56EB} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Task: C:\WINDOWS\Tasks\GlaryInitialize 5.job => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d021394fcad10f.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d08f037c01d07a.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0bf4669cf062c.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d040a8d4fe9f8e.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d08f037ca822a9.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d0bf466a80f3a7.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

C:\Program Files (x86)\Google\Update

StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service

Hosts:
EmptyTemp:
End


(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).

Ulož jej na na plochu jako fixlist.txt

Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Když nevíš jak dál, přichází na řadu prostudovat manuál!
HJT návod

Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.

Alssea
nováček
Příspěvky: 47
Registrován: červenec 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu HJT

Příspěvekod Alssea » 12 led 2016 14:17

Fix result of Farbar Recovery Scan Tool (x64) Version:10-01-2015 01
Ran by Martincovi (2016-01-12 14:06:34) Run:2
Running from C:\Users\Martincovi\Desktop
Loaded Profiles: Martincovi (Available Profiles: Martincovi & DefaultAppPool)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:

HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597040 2015-10-06] (Oracle Corporation)
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-765595779-2585989944-2631038468-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-765595779-2585989944-2631038468-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3011152 2015-12-05] (Valve Corporation)
HKU\S-1-5-21-765595779-2585989944-2631038468-1000\...\Run: [BingSvc] => C:\Users\Martincovi\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2016-01-04] (© 2015 Microsoft Corporation)
BootExecute: autocheck autochk * sdnclean64.exe

HKU\S-1-5-21-765595779-2585989944-2631038468-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=SK2M&ocid=SK2MDHP&osmkt=en-ww

FF NewTab: about:newtab
FF Homepage: about:home
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-04] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-04] (Google Inc.)
FF Plugin HKU\S-1-5-21-765595779-2585989944-2631038468-1000: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [No File]
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => not found
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => not found

CHR dev: Chrome dev build detected! <======= ATTENTION
CHR HKLM\...\Chrome\Extension: [aaaaadgepjkdffhjbkfjgnnffnfcffbg] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-765595779-2585989944-2631038468-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx

S2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)

R0 BootDefragDriver; C:\Windows\System32\drivers\BootDefragDriver.sys [17600 2014-07-18] (Glarysoft Ltd)
R1 GUBootStartup; C:\Windows\System32\drivers\GUBootStartup.sys [20160 2014-08-09] (Glarysoft Ltd)
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath

C:\Windows\System32\drivers\BootDefragDriver.sys
C:\Windows\System32\drivers\GUBootStartup.sys
C:\WINDOWS\system32\RegBootDefrag.exe

C:\Program Files (x86)\Glary Utilities 5
C:\WINDOWS\Tasks\GlaryInitialize 5.job

C:\Program Files (x86)\Spybot - Search & Destroy 2
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
C:\ProgramData\Spybot - Search & Destroy
C:\Users\Martincovi\Desktop\spybot-2.4.exe
C:\WINDOWS\system32\sdnclean64.exe
C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
C:\Users\Martincovi\AppData\Local\Microsoft\BingSvc
C:\ProgramData\DP45977C.lfl

Task: {058F3FE1-E871-4290-BE8D-EAFD897F5438} - System32\Tasks\GoogleUpdateTaskMachineCore1d08f037c01d07a => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {089E7518-E73B-4502-8000-931B14D10C49} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {185E8780-378F-4E6A-92BE-2B2EEA8F1D99} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {1D7E3E4C-67CF-4784-B616-1829F7C8FC32} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {216A42A5-C1D5-443C-B836-A3F6E85AE1DE} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {23F4129F-4141-40F8-970E-0756FB1F7700} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.)
Task: {388F56B0-82DC-43C3-8C21-60A6E9A87652} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {3CFD0332-2F6B-45F7-97E0-1F165C2F1593} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {42EDFE77-DE96-4A47-A326-12D9E193D1B2} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2014-06-24] (Safer-Networking Ltd.)
Task: {5032D026-A888-4770-8FF9-3B92E1444B1B} - System32\Tasks\GoogleUpdateTaskMachineUA1d0bf466a80f3a7 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {685E0287-D38E-48AE-82DC-F233EDBB88C2} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-09-14] (Adobe Systems Incorporated)
Task: {7A022217-2124-49E3-888A-8C8D839C4501} - System32\Tasks\GoogleUpdateTaskMachineUA1d040a8d4fe9f8e => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {842B3718-AC2B-4B13-9FD6-1FCDF781B344} - System32\Tasks\GoogleUpdateTaskMachineCore1d021394fcad10f => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {976DD8EA-7478-4257-AB9A-E07E28EE321D} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {A20B2CAE-96B0-4388-B8C9-A8AC43E1FEAA} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => config upnphost start= auto
Task: {A2580F34-0846-46A0-B4DC-FBC2598A378A} - System32\Tasks\GoogleUpdateTaskMachineCore1d0bf4669cf062c => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {A971D8CA-02A8-46E5-A4BA-338FAE383EE1} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2014-06-24] (Safer-Networking Ltd.)
Task: {AD659BDB-C622-46EF-84BD-FB28111386F9} - System32\Tasks\GoogleUpdateTaskMachineUA1d08f037ca822a9 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {BA23E92C-7B02-4D6F-97FD-2143F4F08776} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {BE5F6C35-215D-4868-992A-8D14287B20FC} - \AutoKMS -> No File <==== ATTENTION
Task: {C3083644-D3D9-4D0B-9F1B-61D32B96C692} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {D31F8E36-1C4F-4B1B-B4CC-614A9D17CF28} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {DD3F7977-19DF-4F8A-B514-52EEA5C59065} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {E03B3FDF-7BB2-42F8-B792-CA565EC65121} - System32\Tasks\GlaryInitialize 5 => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe [2014-12-12] (Glarysoft Ltd)
Task: {E3DE8A78-E6B7-455E-8CB5-411C6F9E56EB} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Task: C:\WINDOWS\Tasks\GlaryInitialize 5.job => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d021394fcad10f.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d08f037c01d07a.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0bf4669cf062c.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d040a8d4fe9f8e.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d08f037ca822a9.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d0bf466a80f3a7.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

C:\Program Files (x86)\Google\Update

StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service

Hosts:
EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value not found.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SDTray => value not found.
HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SDWinLogon => key not found.
HKU\S-1-5-21-765595779-2585989944-2631038468-1000\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Monitoring => value not found.
HKU\S-1-5-21-765595779-2585989944-2631038468-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Steam => value not found.
HKU\S-1-5-21-765595779-2585989944-2631038468-1000\Software\Microsoft\Windows\CurrentVersion\Run\\BingSvc => value not found.
hklm\System\CurrentControlSet\Control\Session Manager\\BootExecute => value restored successfully
HKU\S-1-5-21-765595779-2585989944-2631038468-1000\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
FF NewTab: about:newtab => not found
FF Homepage: about:home => not found
HKLM\Software\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin => key not found.
HKLM\Software\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3 => key not found.
C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll => not found.
HKLM\Software\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9 => key not found.
C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll => not found.
HKU\S-1-5-21-765595779-2585989944-2631038468-1000\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin => key not found.
C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll => not found.
HKLM\Software\Mozilla\Thunderbird\Extensions\\eplgTb@eset.com => value not found.
HKLM\Software\Wow6432Node\Mozilla\Thunderbird\Extensions\\eplgTb@eset.com => value not found.
CHR dev: Chrome dev build detected! <======= ATTENTION => Error: No automatic fix found for this entry.
HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaadgepjkdffhjbkfjgnnffnfcffbg => key not found.
HKU\S-1-5-21-765595779-2585989944-2631038468-1000\SOFTWARE\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd => key not found.
SDScannerService => service not found.
SDUpdateService => service not found.
SDWSCService => service not found.
BootDefragDriver => service not found.
GUBootStartup => service not found.
idsvc => service not found.
wpcsvc => service not found.
"C:\Windows\System32\drivers\BootDefragDriver.sys" => not found.
"C:\Windows\System32\drivers\GUBootStartup.sys" => not found.
"C:\WINDOWS\system32\RegBootDefrag.exe" => not found.
"C:\Program Files (x86)\Glary Utilities 5" => not found.
"C:\WINDOWS\Tasks\GlaryInitialize 5.job" => not found.
"C:\Program Files (x86)\Spybot - Search & Destroy 2" => not found.
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk" => not found.
"C:\ProgramData\Spybot - Search & Destroy" => not found.
"C:\Users\Martincovi\Desktop\spybot-2.4.exe" => not found.
"C:\WINDOWS\system32\sdnclean64.exe" => not found.
"C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk" => not found.
"C:\Users\Martincovi\AppData\Local\Microsoft\BingSvc" => not found.
"C:\ProgramData\DP45977C.lfl" => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{058F3FE1-E871-4290-BE8D-EAFD897F5438} => key not found.
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore1d08f037c01d07a => not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore1d08f037c01d07a" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{089E7518-E73B-4502-8000-931B14D10C49}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{089E7518-E73B-4502-8000-931B14D10C49}" => key removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{185E8780-378F-4E6A-92BE-2B2EEA8F1D99}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{185E8780-378F-4E6A-92BE-2B2EEA8F1D99}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1D7E3E4C-67CF-4784-B616-1829F7C8FC32}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1D7E3E4C-67CF-4784-B616-1829F7C8FC32}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{216A42A5-C1D5-443C-B836-A3F6E85AE1DE}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{216A42A5-C1D5-443C-B836-A3F6E85AE1DE}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{23F4129F-4141-40F8-970E-0756FB1F7700} => key not found.
C:\WINDOWS\System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Check for updates => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{388F56B0-82DC-43C3-8C21-60A6E9A87652}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{388F56B0-82DC-43C3-8C21-60A6E9A87652}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3CFD0332-2F6B-45F7-97E0-1F165C2F1593}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3CFD0332-2F6B-45F7-97E0-1F165C2F1593}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{42EDFE77-DE96-4A47-A326-12D9E193D1B2} => key not found.
C:\WINDOWS\System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Scan the system => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5032D026-A888-4770-8FF9-3B92E1444B1B}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5032D026-A888-4770-8FF9-3B92E1444B1B}" => key removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d0bf466a80f3a7 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA1d0bf466a80f3a7" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{685E0287-D38E-48AE-82DC-F233EDBB88C2}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{685E0287-D38E-48AE-82DC-F233EDBB88C2}" => key removed successfully
C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Acrobat Update Task" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7A022217-2124-49E3-888A-8C8D839C4501}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7A022217-2124-49E3-888A-8C8D839C4501}" => key removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d040a8d4fe9f8e => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA1d040a8d4fe9f8e" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{842B3718-AC2B-4B13-9FD6-1FCDF781B344}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{842B3718-AC2B-4B13-9FD6-1FCDF781B344}" => key removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore1d021394fcad10f => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore1d021394fcad10f" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{976DD8EA-7478-4257-AB9A-E07E28EE321D}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{976DD8EA-7478-4257-AB9A-E07E28EE321D}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A20B2CAE-96B0-4388-B8C9-A8AC43E1FEAA}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A20B2CAE-96B0-4388-B8C9-A8AC43E1FEAA}" => key removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UPnP\UPnPHostConfig" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A2580F34-0846-46A0-B4DC-FBC2598A378A}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A2580F34-0846-46A0-B4DC-FBC2598A378A}" => key removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore1d0bf4669cf062c => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore1d0bf4669cf062c" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A971D8CA-02A8-46E5-A4BA-338FAE383EE1} => key not found.
C:\WINDOWS\System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AD659BDB-C622-46EF-84BD-FB28111386F9}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AD659BDB-C622-46EF-84BD-FB28111386F9}" => key removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d08f037ca822a9 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA1d08f037ca822a9" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BA23E92C-7B02-4D6F-97FD-2143F4F08776}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BA23E92C-7B02-4D6F-97FD-2143F4F08776}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{BE5F6C35-215D-4868-992A-8D14287B20FC}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BE5F6C35-215D-4868-992A-8D14287B20FC}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AutoKMS" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C3083644-D3D9-4D0B-9F1B-61D32B96C692}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C3083644-D3D9-4D0B-9F1B-61D32B96C692}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D31F8E36-1C4F-4B1B-B4CC-614A9D17CF28}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D31F8E36-1C4F-4B1B-B4CC-614A9D17CF28}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{DD3F7977-19DF-4F8A-B514-52EEA5C59065}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DD3F7977-19DF-4F8A-B514-52EEA5C59065}" => key removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E03B3FDF-7BB2-42F8-B792-CA565EC65121} => key not found.
C:\WINDOWS\System32\Tasks\GlaryInitialize 5 => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GlaryInitialize 5 => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E3DE8A78-E6B7-455E-8CB5-411C6F9E56EB}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E3DE8A78-E6B7-455E-8CB5-411C6F9E56EB}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => key removed successfully
C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => moved successfully
C:\WINDOWS\Tasks\GlaryInitialize 5.job => not found.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d021394fcad10f.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d08f037c01d07a.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0bf4669cf062c.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d040a8d4fe9f8e.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d08f037ca822a9.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d0bf466a80f3a7.job => moved successfully
C:\Program Files (x86)\Google\Update => moved successfully
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe => value not found.
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.
EmptyTemp: => 430.9 MB temporary data Removed.


The system needed a reboot.

==== End of Fixlog 14:08:41 ====

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu HJT

Příspěvekod jaro3 » 12 led 2016 16:00

Co problémy?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Alssea
nováček
Příspěvky: 47
Registrován: červenec 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu HJT

Příspěvekod Alssea » 12 led 2016 16:09

Pořád stejné :(

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu HJT

Příspěvekod jaro3 » 12 led 2016 16:31

Stáhni si Memtest:

Políčko , ve kterém je napsáno:
All unused RAM -ponech , jak je.
-dej Start , nech nejméně 2h běžet , pokud bude po 2h stále 0 errors , jsou v pořádku.


Ještě zkontrolovat HDD na chyby ,popř. zkusit jeho defragmentaci ..


Stáhni si CrystalDiskInfo
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Alssea
nováček
Příspěvky: 47
Registrován: červenec 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu HJT

Příspěvekod Alssea » 12 led 2016 16:53

"Ještě zkontrolovat HDD na chyby" Já nevím co si pod tím představit... :oops:

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu HJT

Příspěvekod Orcus » 12 led 2016 17:06

Provést defragmentaci + dodat log z CrystalDiskInfo. ;-)
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

Alssea
nováček
Příspěvky: 47
Registrován: červenec 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu HJT

Příspěvekod Alssea » 12 led 2016 19:46

Defragmentace provedena a tady je log c CrystalDiskInfo:

----------------------------------------------------------------------------
CrystalDiskInfo 6.5.2 (C) 2008-2015 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 10 [10.0 Build 10240] (x64)
Date : 2016/01/12 19:43:43

-- Controller Map ----------------------------------------------------------
+ ATA Channel 0 (0) [ATA]
- WDC WD5000AAKS-22V1A0 ATA Device
- ATA Channel 1 (1) [ATA]
- ATA Channel 0 (0) [ATA]
- ATA Channel 1 (1) [ATA]
+ PCI Standardní dvoukanálový řadič IDE [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)
+ PCI Standardní dvoukanálový řadič IDE [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)
+ Asmedia 106x SATA Controller [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)
- Řadič prostorů úložišť [SCSI]

-- Disk List ---------------------------------------------------------------
(1) WDC WD5000AAKS-22V1A0 : 500,1 GB [0/0/0, pd1] - wd

----------------------------------------------------------------------------
(1) WDC WD5000AAKS-22V1A0
----------------------------------------------------------------------------
Model : WDC WD5000AAKS-22V1A0
Firmware : 05.01D05
Serial Number : WD-WCAWF7442501
Disk Size : 500,1 GB (8,4/137,4/500,1/500,1)
Buffer Size : 16384 KB
Queue Depth : 32
# of Sectors : 976773168
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : ---- | SATA/300
Power On Hours : 21784 hod.
Power On Count : 3794 krát
Temperature : 35 C (95 F)
Health Status : Pozor
Features : S.M.A.R.T., AAM, 48bit LBA, NCQ
APM Level : ----
AAM Level : 80FEh [ON]

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000000 Počet chyb čtení
03 142 139 _21 000000000F3C Čas na roztočení ploten
04 _97 _97 __0 000000000F90 Počet spuštění/zastavení
05 192 192 140 00000000003C Počet přemapovaných sektorů
07 200 198 __0 000000000000 Počet chybných hledání
09 _71 _71 __0 000000005518 Hodin v činnosti
0A 100 100 __0 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 __0 000000000000 Počet pokusů o překalibrování
0C _97 _97 __0 000000000ED2 Počet cyklů zapnutí zařízení
C0 200 200 __0 000000000132 Počet vypnutí disku
C1 199 199 __0 000000000E59 Počet cyklů načítání/vymazání
C2 108 _92 __0 000000000023 Teplota
C4 200 200 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 195 194 __0 0000000001DE Počet podezřelých sektorů
C6 198 198 __0 0000000000F4 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 199 199 __0 000000000160 Počet chyb při zápisu sektorů

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 427A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2057 442D 5743 4157 4637 3434 3235 3031
020: 0000 8000 0032 3035 2E30 3144 3035 5744 4320 5744
030: 3530 3030 4141 4B53 2D32 3256 3141 3020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4001 0000 0000 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 1706 0000 0044 0040
080: 01FE 0000 746B 7F61 4123 7469 BE41 4123 407F 0028
090: 0028 0000 FFFE 0000 80FE 0000 0000 0000 0000 0000
100: 6030 3A38 0000 0000 0000 0000 0000 0000 5001 4EE1
110: 0314 757C 0000 0000 0000 0000 0000 0000 0000 4018
120: 4018 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 16EC 0000 0000 0000 0000 0000 0000
140: 0000 0000 0004 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 3037 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
220: 0000 0000 101E 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 1000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 B9A5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 2F 00 C8 C8 00 00 00 00 00 00 00 03 27
010: 00 8E 8B 3C 0F 00 00 00 00 00 04 32 00 61 61 90
020: 0F 00 00 00 00 00 05 33 00 C0 C0 3C 00 00 00 00
030: 00 00 07 2E 00 C8 C6 00 00 00 00 00 00 00 09 32
040: 00 47 47 18 55 00 00 00 00 00 0A 32 00 64 64 00
050: 00 00 00 00 00 00 0B 32 00 64 64 00 00 00 00 00
060: 00 00 0C 32 00 61 61 D2 0E 00 00 00 00 00 C0 32
070: 00 C8 C8 32 01 00 00 00 00 00 C1 32 00 C7 C7 59
080: 0E 00 00 00 00 00 C2 22 00 6C 5C 23 00 00 00 00
090: 00 00 C4 32 00 C8 C8 00 00 00 00 00 00 00 C5 32
0A0: 00 C3 C2 DE 01 00 00 00 00 00 C6 30 00 C6 C6 F4
0B0: 00 00 00 00 00 00 C7 32 00 C8 C8 00 00 00 00 00
0C0: 00 00 C8 08 00 C7 C7 60 01 00 00 00 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 84 00 2C 1F 01 7B
170: 03 00 01 00 02 5F 05 00 00 00 00 00 00 00 00 00
180: 00 00 01 02 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 72

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 33 C8 C8 00 00 00 00 00 00 00 00 03 15
010: 00 00 00 00 00 00 00 00 00 00 04 00 00 00 00 00
020: 00 00 00 00 00 00 05 8C 00 00 00 00 00 00 00 00
030: 00 00 07 00 C8 C8 00 00 00 00 00 00 00 00 09 00
040: 00 00 00 00 00 00 00 00 00 00 0A 00 00 00 00 00
050: 00 00 00 00 00 00 0B 00 00 00 00 00 00 00 00 00
060: 00 00 0C 00 00 00 00 00 00 00 00 00 00 00 C0 00
070: 00 00 00 00 00 00 00 00 00 00 C1 00 00 00 00 00
080: 00 00 00 00 00 00 C2 00 00 00 00 00 00 00 00 00
090: 00 00 C4 00 00 00 00 00 00 00 00 00 00 00 C5 00
0A0: 00 00 00 00 00 00 00 00 00 00 C6 00 EF 05 00 00
0B0: 00 00 00 00 00 00 C7 00 00 00 00 00 00 00 00 00
0C0: 00 00 C8 00 C7 C8 00 00 00 00 00 00 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1A

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu HJT

Příspěvekod jaro3 » 13 led 2016 09:16

špatná zpráva , ten disk je vadný , to neopravíme. Zzálohuj si potřebné a kup si nový disk.
Popisované problémy dělá s určitostí ten disk.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Alssea
nováček
Příspěvky: 47
Registrován: červenec 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu HJT

Příspěvekod Alssea » 13 led 2016 13:18

Tak to je celkem nemilé... Ještě bych rád věděl jak bych měl zalohovat věci, když se tam nedostanu a jestli by Vám nevadilo, tak poradit nějaký ten disk ke koupi.


Děkuji za odpověď.

Edit: Ještě bych rád poděkoval za ochotu a za úsilí, které jste vynaložili při řešení mého problému. Děkuji

Uživatelský avatar
jerabina
člen Security týmu
Level 6
Level 6
Příspěvky: 3647
Registrován: březen 13
Bydliště: Litoměřice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu HJT

Příspěvekod jerabina » 13 led 2016 16:49

Návody na zálohování: http://technet.idnes.cz/zaloha-celeho-p ... ftware_vse

Ten disk ... to záleží na tobě, jakou velikost, jakou máš základní desku, není to tak jednoduché.
Disk, který se zde ale hodně doporučuje a dává do většiny sestav je tento: http://www.czc.cz/seagate-barracuda-720 ... 89/produkt
Když nevíš jak dál, přichází na řadu prostudovat manuál!
HJT návod

Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 95 hostů