Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:06-05-2016
Ran by Petr (administrator) on I5-PETR (05-05-2016 11:45:13)
Running from E:\Hlavní složky\Stažené soubory
Loaded Profiles: Petr (Available Profiles: Petr & Táta)
Platform: Windows 10 Pro (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Advanced Micro Devices) C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe
(Mr. John aka japamd) C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
() C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Google Inc.) C:\Users\Petr\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Petr\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Petr\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Petr\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Petr\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Petr\AppData\Local\Google\Chrome\Application\chrome.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(SteelSeries ApS) C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe
(Samsung Electronics.) C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe
(Google Inc.) C:\Users\Petr\AppData\Local\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8492800 2015-06-24] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [557768 2014-09-19] (Adobe Systems Incorporated)
HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [5009096 2016-04-15] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176952 2016-03-19] (Apple Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1085656 2015-12-14] (Adobe Systems Incorporated)
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\Run: [DAEMON Tools Lite] => E:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\Run: [SteelSeries Engine] => C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe [87040 2014-10-09] (SteelSeries ApS)
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\Run: [Google Update] => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc.)
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\Run: [iFunBox] => C:\Program Files (x86)\i-Funbox DevTeam\iFunBox_x64.exe [2783232 2015-07-27] (i-Funbox.com)
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\Run: [Lync] => C:\Program Files\Microsoft Office\Office15\lync.exe [27871912 2015-06-25] (Microsoft Corporation)
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\MountPoints2: {75d6cbb7-5699-11e4-826c-d43d7eecfa0b} - "G:\setup.exe"
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => No File
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{5b11aa51-3e65-4d6c-ac2b-5da5716333a4}: [NameServer] 4.2.2.3,4.2.2.4
Tcpip\..\Interfaces\{9867b728-1aa3-4b9b-ac0e-dd8f008a35e2}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{9867b728-1aa3-4b9b-ac0e-dd8f008a35e2}: [DhcpNameServer] 10.0.0.138
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://windows.microsoft.com/cs-cz/hotm ... ?ocid=iehp
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1292206800-3816184836-4294836885-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-06-25] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2015-10-23] (Oracle Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-06-16] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2015-10-23] (Oracle Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-06-25] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-06-16] (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2014-04-01] (Microsoft Corporation)
FireFox:
========
FF Plugin: @java.com/DTPlugin,version=10.80.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2015-10-23] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.80.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2015-10-23] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2016-03-08] ()
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [No File]
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-04-03] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-04-03] (Intel Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-03-31] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin-x32: @t.garena.com/garenatalk -> C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll [No File]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2016-02-27] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1292206800-3816184836-4294836885-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Petr\AppData\Local\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-03] (Google Inc.)
FF Plugin HKU\S-1-5-21-1292206800-3816184836-4294836885-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Petr\AppData\Local\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-03] (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-03-31] (Microsoft Corporation)
Chrome:
=======
CHR Profile: C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-05-05]
CHR Extension: (Dokumenty Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-05-05]
CHR Extension: (Disk Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-05-05]
CHR Extension: (YouTube) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-05-05]
CHR Extension: (Tabulky Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-05-05]
CHR Extension: (Dokumenty Google offline) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-05-05]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-05-05]
CHR Extension: (Gmail) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-05-05]
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx <not found>
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 amdacpusrsvc; C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [121856 2016-04-15] (Advanced Micro Devices) [File not signed]
S3 Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDevice.exe [55336 2015-08-10] ()
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-03-02] (Apple Inc.)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2521440 2016-02-22] (ESET)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887232 2014-01-31] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-04-03] (Intel Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
R2 RadeonPro Support Service; C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe [20608 2013-11-04] (Mr. John aka japamd) [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6889232 2015-12-14] (TeamViewer GmbH)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 amdacpksd; C:\WINDOWS\system32\drivers\amdacpksd.sys [305400 2016-04-28] (Advanced Micro Devices)
S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [40720 2015-07-28] (Advanced Micro Devices, Inc.)
R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [62152 2014-10-28] (Advanced Micro Devices, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102400 2016-03-14] (Advanced Micro Devices)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-10-18] (Disc Soft Ltd)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [264552 2016-02-09] (ESET)
S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [14976 2016-02-09] (ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [186784 2016-02-09] (ESET)
R2 epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [170792 2016-02-09] (ESET)
R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO64A.SYS [27552 2014-10-06] (REALiX(tm))
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-04-14] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [118272 2014-04-03] (Intel Corporation)
R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13368 2013-03-11] ()
R3 RTL8023x64; C:\Windows\System32\drivers\Rtnic64.sys [61656 2014-01-23] (Realtek Semiconductor Corporation )
R3 SAlphamHid; C:\Windows\System32\drivers\SAlpham64.sys [39168 2014-10-08] (SteelSeries Corporation)
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
S1 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [117768 2015-12-18] (Oracle Corporation)
S3 VBoxUSB; C:\Windows\System32\Drivers\VBoxUSB.sys [115208 2014-11-24] (Oracle Corporation)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
S0 b06bdrv; System32\drivers\bxvbda.sys [X]
U4 DiagTrack; no ImagePath
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-05-05 11:45 - 2016-05-05 11:45 - 00000000 ____D C:\FRST
2016-05-05 11:41 - 2016-05-05 11:41 - 00016148 _____ C:\WINDOWS\system32\I5-PETR_Petr_HistoryPrediction.bin
2016-05-05 11:40 - 2016-05-05 11:31 - 00024064 _____ C:\WINDOWS\zoek-delete.exe
2016-05-05 11:31 - 2016-05-05 11:39 - 00000000 ____D C:\zoek_backup
2016-05-04 21:42 - 2016-05-04 21:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2016-05-04 21:42 - 2016-05-04 21:42 - 00000000 ____D C:\Program Files\iTunes
2016-05-04 21:42 - 2016-05-04 21:42 - 00000000 ____D C:\Program Files\iPod
2016-05-04 21:42 - 2016-05-04 21:42 - 00000000 ____D C:\Program Files (x86)\iTunes
2016-05-04 21:40 - 2016-05-04 21:40 - 00000000 ____D C:\WINDOWS\System32\Tasks\Apple
2016-05-04 21:40 - 2016-05-04 21:40 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2016-05-04 17:54 - 2016-05-04 18:03 - 00000000 ____D C:\AdwCleaner
2016-05-04 17:32 - 2016-05-04 17:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stardew Valley [GOG.com]
2016-05-04 17:32 - 2016-05-04 17:32 - 00000000 ____D C:\Program Files (x86)\Microsoft XNA
2016-05-04 17:31 - 2016-05-04 17:41 - 00000000 ____D C:\Users\Petr\AppData\Roaming\StardewValley
2016-05-04 15:42 - 2016-05-04 15:42 - 00000000 ____D C:\WINDOWS\LastGood.Tmp
2016-05-04 15:42 - 2016-05-04 15:42 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2016-05-04 15:42 - 2016-05-04 15:42 - 00000000 ____D C:\Program Files (x86)\AMD
2016-05-04 15:42 - 2016-04-07 19:03 - 00130328 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2016-05-04 15:42 - 2016-04-07 19:02 - 00131352 _____ C:\WINDOWS\system32\vulkan-1.dll
2016-05-04 15:42 - 2016-04-07 19:02 - 00040216 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2016-05-04 15:42 - 2016-04-07 19:01 - 00045336 _____ C:\WINDOWS\system32\vulkaninfo.exe
2016-05-04 15:35 - 2016-05-04 15:35 - 00000000 ____D C:\Re-Volt
2016-05-04 13:14 - 2016-05-04 13:14 - 00186586 _____ C:\Users\Petr\Documents\cc_20160504_131430.reg
2016-05-04 13:07 - 2016-05-04 13:07 - 00002852 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2016-05-04 13:07 - 2016-05-04 13:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-05-04 13:05 - 2016-05-04 13:05 - 00001302 _____ C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMD Radeon Settings.lnk
2016-04-28 01:12 - 2016-04-28 01:12 - 07467560 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll
2016-04-28 01:12 - 2016-04-28 01:12 - 00112400 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll
2016-04-28 01:11 - 2016-04-28 01:11 - 00088032 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2016-04-28 01:11 - 2016-04-28 01:11 - 00081192 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2016-04-28 01:10 - 2016-04-28 01:10 - 08587520 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdxc64.dll
2016-04-28 01:10 - 2016-04-28 01:10 - 06761712 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdxc32.dll
2016-04-28 01:10 - 2016-04-28 01:10 - 00471344 _____ C:\WINDOWS\system32\amdmiracast.dll
2016-04-28 01:10 - 2016-04-28 01:10 - 00151968 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll
2016-04-28 01:10 - 2016-04-28 01:10 - 00081200 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2016-04-28 01:09 - 2016-04-28 01:09 - 00120768 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2016-04-28 01:09 - 2016-04-28 01:09 - 00112392 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2016-04-28 01:04 - 2016-04-28 01:04 - 00243736 _____ C:\WINDOWS\system32\clinfo.exe
2016-04-28 01:04 - 2016-04-28 01:04 - 00232984 _____ C:\WINDOWS\system32\dgtrayicon.exe
2016-04-28 01:04 - 2016-04-28 01:04 - 00218648 _____ C:\WINDOWS\system32\GameManager64.dll
2016-04-28 01:04 - 2016-04-28 01:04 - 00203792 _____ C:\WINDOWS\system32\hsa-thunk64.dll
2016-04-28 01:04 - 2016-04-28 01:04 - 00195088 _____ C:\WINDOWS\SysWOW64\GameManager32.dll
2016-04-28 01:04 - 2016-04-28 01:04 - 00183320 _____ C:\WINDOWS\SysWOW64\hsa-thunk.dll
2016-04-28 01:04 - 2016-04-28 01:04 - 00136208 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll
2016-04-28 01:04 - 2016-04-28 01:04 - 00122392 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll
2016-04-28 01:04 - 2016-04-28 01:04 - 00106000 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll
2016-04-28 01:04 - 2016-04-28 01:04 - 00098328 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll
2016-04-28 01:04 - 2016-04-28 01:04 - 00012824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\detoured.dll
2016-04-28 01:04 - 2016-04-28 01:04 - 00012824 _____ (Microsoft Corporation) C:\WINDOWS\system32\detoured.dll
2016-04-28 01:03 - 2016-04-28 01:03 - 25078800 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll
2016-04-28 01:03 - 2016-04-28 01:03 - 00199704 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll
2016-04-28 01:03 - 2016-04-28 01:03 - 00097816 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2016-04-28 01:03 - 2016-04-28 01:03 - 00089624 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2016-04-28 01:00 - 2016-04-28 01:00 - 48221208 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll
2016-04-28 00:59 - 2016-04-28 00:59 - 26895384 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl12cl64.dll
2016-04-28 00:58 - 2016-04-28 00:58 - 06893592 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll
2016-04-28 00:58 - 2016-04-28 00:58 - 05406736 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmantle32.dll
2016-04-28 00:58 - 2016-04-28 00:58 - 00710160 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2016-04-28 00:58 - 2016-04-28 00:58 - 00588824 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2016-04-28 00:58 - 2016-04-28 00:58 - 00059416 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
2016-04-28 00:58 - 2016-04-28 00:58 - 00048144 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll
2016-04-28 00:57 - 2016-04-28 00:57 - 00305400 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amdacpksd.sys
2016-04-28 00:57 - 2016-04-28 00:57 - 00213528 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2016-04-28 00:57 - 2016-04-28 00:57 - 00198672 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2016-04-28 00:57 - 2016-04-28 00:57 - 00143384 _____ C:\WINDOWS\system32\amdhdl64.dll
2016-04-28 00:57 - 2016-04-28 00:57 - 00132112 _____ C:\WINDOWS\SysWOW64\amdhdl32.dll
2016-04-28 00:57 - 2016-04-28 00:57 - 00073752 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2016-04-28 00:56 - 2016-04-28 00:56 - 00138416 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll
2016-04-28 00:56 - 2016-04-28 00:56 - 00088032 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2016-04-28 00:48 - 2016-04-28 00:48 - 30388752 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll
2016-04-28 00:48 - 2016-04-28 00:48 - 15720472 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll
2016-04-28 00:48 - 2016-04-28 00:48 - 14310936 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll
2016-04-28 00:48 - 2016-04-28 00:48 - 06964752 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdvlk64.dll
2016-04-28 00:48 - 2016-04-28 00:48 - 05428752 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdvlk32.dll
2016-04-28 00:48 - 2016-04-28 00:48 - 00573464 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2016-04-28 00:48 - 2016-04-28 00:48 - 00451096 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2016-04-28 00:48 - 2016-04-28 00:48 - 00375824 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe
2016-04-28 00:48 - 2016-04-28 00:48 - 00341520 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODE.exe
2016-04-28 00:48 - 2016-04-28 00:48 - 00260120 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe
2016-04-28 00:48 - 2016-04-28 00:48 - 00171032 _____ C:\WINDOWS\system32\atieah64.exe
2016-04-28 00:48 - 2016-04-28 00:48 - 00166416 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2016-04-28 00:48 - 2016-04-28 00:48 - 00154136 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2016-04-28 00:48 - 2016-04-28 00:48 - 00087056 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2016-04-28 00:48 - 2016-04-28 00:48 - 00084496 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll
2016-04-28 00:48 - 2016-04-28 00:48 - 00078872 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll
2016-04-28 00:48 - 2016-04-28 00:48 - 00078872 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll
2016-04-28 00:48 - 2016-04-28 00:48 - 00071192 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll
2016-04-28 00:48 - 2016-04-28 00:48 - 00064528 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll
2016-04-28 00:48 - 2016-04-28 00:48 - 00060944 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll
2016-04-28 00:48 - 2016-04-28 00:48 - 00059928 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODCLI.exe
2016-04-28 00:48 - 2016-04-28 00:48 - 00057880 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll
2016-04-28 00:48 - 2016-04-28 00:48 - 00052248 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll
2016-04-27 14:05 - 2016-04-27 14:05 - 03471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap
2016-04-27 14:05 - 2016-04-27 14:05 - 03437632 _____ C:\WINDOWS\system32\atiumd6a.cap
2016-04-27 14:05 - 2016-04-27 14:05 - 00698768 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb
2016-04-27 14:05 - 2016-04-27 14:05 - 00698768 _____ C:\WINDOWS\system32\atiapfxx.blb
2016-04-27 14:04 - 2016-04-27 14:04 - 00857576 _____ C:\WINDOWS\system32\amdicdxx.dat
2016-04-24 12:58 - 2016-04-24 12:58 - 00000000 ____D C:\Users\Petr\AppData\Roaming\ESET
2016-04-24 12:36 - 2016-04-24 12:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2016-04-24 12:36 - 2016-04-24 12:36 - 00000000 ____D C:\ProgramData\ESET
2016-04-24 12:36 - 2016-04-24 12:36 - 00000000 ____D C:\Program Files\ESET
2016-04-24 12:24 - 2016-03-09 17:16 - 01070904 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4A0.tmp
2016-04-24 12:24 - 2016-03-09 17:16 - 00107792 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4E1.tmp
2016-04-24 12:24 - 2016-02-23 17:16 - 00552880 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw46F.tmp
2016-04-24 12:24 - 2016-02-23 17:16 - 00463744 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4F3.tmp
2016-04-24 12:24 - 2016-02-10 17:16 - 00287016 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4F4.tmp
2016-04-24 12:24 - 2016-02-10 17:16 - 00165344 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw514.tmp
2016-04-24 12:24 - 2016-02-10 17:16 - 00103064 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4B0.tmp
2016-04-24 12:24 - 2016-02-10 17:16 - 00074544 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4E2.tmp
2016-04-24 12:24 - 2016-02-10 17:16 - 00037656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4D1.tmp
2016-04-24 12:24 - 2016-02-10 17:15 - 00037144 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw48F.tmp
2016-04-23 09:34 - 2016-04-23 09:34 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Amanita-Design.Samorost3
2016-04-23 09:23 - 2016-04-23 09:23 - 00000000 ____D C:\Users\Petr\AppData\LocalLow\Mindfield Games
2016-04-15 16:23 - 2016-04-15 16:23 - 02412544 _____ C:\WINDOWS\system32\amdacpusl.pdb
2016-04-15 16:20 - 2016-04-15 16:20 - 00364544 _____ (Advanced Micro Devices) C:\WINDOWS\system32\amdacpusl.dll
2016-04-15 16:20 - 2016-04-15 16:20 - 00306176 _____ C:\WINDOWS\system32\amdacpusl.pdb.pub
2016-04-15 16:20 - 2016-04-15 16:20 - 00248832 _____ (Advanced Micro Devices) C:\WINDOWS\SysWOW64\amdacpusl.dll
2016-04-13 15:45 - 2016-03-29 08:40 - 03587584 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-04-13 15:45 - 2016-03-29 08:40 - 01381376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-04-13 15:45 - 2016-03-25 09:38 - 24593408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-04-13 15:45 - 2016-03-25 09:25 - 12505600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-04-13 15:45 - 2016-03-25 09:14 - 07525376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-04-13 15:45 - 2016-03-25 09:13 - 19325440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-04-13 15:45 - 2016-03-25 08:55 - 11263488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-04-13 15:45 - 2016-03-25 08:54 - 05457408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-04-13 15:45 - 2016-03-16 06:56 - 03467784 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2016-04-13 15:45 - 2016-03-16 06:56 - 01022664 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-04-13 15:45 - 2016-03-16 06:56 - 00861512 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-04-13 15:45 - 2016-03-16 06:55 - 02495768 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-04-13 15:45 - 2016-03-16 06:55 - 01951872 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-04-13 15:45 - 2016-03-16 06:55 - 01299032 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-04-13 15:45 - 2016-03-16 06:55 - 01127024 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-04-13 15:45 - 2016-03-16 06:55 - 00601344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-04-13 15:45 - 2016-03-16 06:54 - 00595016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-04-13 15:45 - 2016-03-16 06:47 - 22610328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-04-13 15:45 - 2016-03-16 06:47 - 03622272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-04-13 15:45 - 2016-03-16 06:47 - 00801632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-04-13 15:45 - 2016-03-16 06:46 - 00658568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2016-04-13 15:45 - 2016-03-16 06:45 - 00140536 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe
2016-04-13 15:45 - 2016-03-16 06:41 - 00607416 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-04-13 15:45 - 2016-03-16 06:41 - 00208736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-04-13 15:45 - 2016-03-16 06:39 - 00983904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-04-13 15:45 - 2016-03-16 06:37 - 01010016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-04-13 15:45 - 2016-03-16 06:21 - 01767000 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-04-13 15:45 - 2016-03-16 06:21 - 01531888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-04-13 15:45 - 2016-03-16 06:11 - 21088728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-04-13 15:45 - 2016-03-16 06:11 - 02879024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-04-13 15:45 - 2016-03-16 06:11 - 00700256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-04-13 15:45 - 2016-03-16 06:08 - 00151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-04-13 15:45 - 2016-03-16 06:06 - 00181088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2016-04-13 15:45 - 2016-03-16 06:05 - 00539728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-04-13 15:45 - 2016-03-16 06:03 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-04-13 15:45 - 2016-03-16 06:03 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-04-13 15:45 - 2016-03-16 06:00 - 21859840 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-04-13 15:45 - 2016-03-16 05:56 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-04-13 15:45 - 2016-03-16 05:56 - 00194048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll
2016-04-13 15:45 - 2016-03-16 05:55 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll
2016-04-13 15:45 - 2016-03-16 05:55 - 00243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2016-04-13 15:45 - 2016-03-16 05:55 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-04-13 15:45 - 2016-03-16 05:51 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2016-04-13 15:45 - 2016-03-16 05:51 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-04-13 15:45 - 2016-03-16 05:49 - 01416192 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-04-13 15:45 - 2016-03-16 05:49 - 00850432 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-04-13 15:45 - 2016-03-16 05:47 - 00856576 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2016-04-13 15:45 - 2016-03-16 05:47 - 00511488 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2016-04-13 15:45 - 2016-03-16 05:44 - 01016832 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-04-13 15:45 - 2016-03-16 05:43 - 00573952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2016-04-13 15:45 - 2016-03-16 05:42 - 02180608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-04-13 15:45 - 2016-03-16 05:42 - 01290240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-04-13 15:45 - 2016-03-16 05:42 - 00181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2016-04-13 15:45 - 2016-03-16 05:41 - 00950272 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-04-13 15:45 - 2016-03-16 05:40 - 00931840 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-04-13 15:45 - 2016-03-16 05:40 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2016-04-13 15:45 - 2016-03-16 05:40 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2016-04-13 15:45 - 2016-03-16 05:40 - 00214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-04-13 15:45 - 2016-03-16 05:40 - 00158208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll
2016-04-13 15:45 - 2016-03-16 05:40 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2016-04-13 15:45 - 2016-03-16 05:40 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2016-04-13 15:45 - 2016-03-16 05:39 - 03363328 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-04-13 15:45 - 2016-03-16 05:39 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-04-13 15:45 - 2016-03-16 05:38 - 01423872 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2016-04-13 15:45 - 2016-03-16 05:37 - 01521664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-04-13 15:45 - 2016-03-16 05:37 - 00856576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2016-04-13 15:45 - 2016-03-16 05:37 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2016-04-13 15:45 - 2016-03-16 05:37 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2016-04-13 15:45 - 2016-03-16 05:37 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-04-13 15:45 - 2016-03-16 05:37 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll
2016-04-13 15:45 - 2016-03-16 05:36 - 01205248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2016-04-13 15:45 - 2016-03-16 05:36 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2016-04-13 15:45 - 2016-03-16 05:36 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll
2016-04-13 15:45 - 2016-03-16 05:36 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2016-04-13 15:45 - 2016-03-16 05:36 - 00244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\cemapi.dll
2016-04-13 15:45 - 2016-03-16 05:36 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll
2016-04-13 15:45 - 2016-03-16 05:36 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll
2016-04-13 15:45 - 2016-03-16 05:36 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-04-13 15:45 - 2016-03-16 05:36 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll
2016-04-13 15:45 - 2016-03-16 05:36 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll
2016-04-13 15:45 - 2016-03-16 05:36 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-04-13 15:45 - 2016-03-16 05:36 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-04-13 15:45 - 2016-03-16 05:36 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-04-13 15:45 - 2016-03-16 05:36 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-04-13 15:45 - 2016-03-16 05:35 - 01794560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-04-13 15:45 - 2016-03-16 05:35 - 00607744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxApplicabilityEngine.dll
2016-04-13 15:45 - 2016-03-16 05:35 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2016-04-13 15:45 - 2016-03-16 05:35 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2016-04-13 15:45 - 2016-03-16 05:34 - 01871872 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2016-04-13 15:45 - 2016-03-16 05:33 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-04-13 15:45 - 2016-03-16 05:32 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\basesrv.dll
2016-04-13 15:45 - 2016-03-16 05:31 - 00172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll
2016-04-13 15:45 - 2016-03-16 05:31 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExtrasXmlParser.dll
2016-04-13 15:45 - 2016-03-16 05:28 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll
2016-04-13 15:45 - 2016-03-16 05:27 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll
2016-04-13 15:45 - 2016-03-16 05:24 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2016-04-13 15:45 - 2016-03-16 05:21 - 18796544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-04-13 15:45 - 2016-03-16 05:18 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll
2016-04-13 15:45 - 2016-03-16 05:17 - 03680256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2016-04-13 15:45 - 2016-03-16 05:17 - 00842240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2016-04-13 15:45 - 2016-03-16 05:17 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vaultcli.dll
2016-04-13 15:45 - 2016-03-16 05:17 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
2016-04-13 15:45 - 2016-03-16 05:17 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxSip.dll
2016-04-13 15:45 - 2016-03-16 05:17 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll
2016-04-13 15:45 - 2016-03-16 05:16 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-04-13 15:45 - 2016-03-16 05:14 - 00625152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2016-04-13 15:45 - 2016-03-16 05:14 - 00579584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2016-04-13 15:45 - 2016-03-16 05:14 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll
2016-04-13 15:45 - 2016-03-16 05:13 - 00928256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2016-04-13 15:45 - 2016-03-16 05:13 - 00525312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
2016-04-13 15:45 - 2016-03-16 05:13 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll
2016-04-13 15:45 - 2016-03-16 05:13 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2016-04-13 15:45 - 2016-03-16 05:13 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cemapi.dll
2016-04-13 15:45 - 2016-03-16 05:13 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll
2016-04-13 15:45 - 2016-03-16 05:13 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2016-04-13 15:45 - 2016-03-16 05:13 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\POSyncServices.dll
2016-04-13 15:45 - 2016-03-16 05:13 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataPlatformHelperUtil.dll
2016-04-13 15:45 - 2016-03-16 05:13 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTypeHelperUtil.dll
2016-04-13 15:45 - 2016-03-16 05:13 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataLanguageUtil.dll
2016-04-13 15:45 - 2016-03-16 05:11 - 01594368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2016-04-13 15:45 - 2016-03-16 05:10 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2016-04-13 15:44 - 2016-03-16 05:55 - 00183296 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2016-04-13 15:44 - 2016-03-16 05:47 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2016-04-13 15:44 - 2016-03-16 05:46 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-04-13 15:44 - 2016-03-16 05:43 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-04-13 15:44 - 2016-03-16 05:40 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2016-04-13 15:44 - 2016-03-16 05:39 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-04-13 15:44 - 2016-03-16 05:35 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2016-04-13 15:44 - 2016-03-16 05:31 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
2016-04-13 15:44 - 2016-03-16 05:24 - 00365056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2016-04-13 15:44 - 2016-03-16 05:24 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll
2016-04-13 15:44 - 2016-03-16 05:20 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll
2016-04-13 15:44 - 2016-03-16 05:18 - 00768000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-04-13 15:44 - 2016-03-16 05:13 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallHistoryClient.dll
2016-04-13 15:44 - 2016-03-16 05:13 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PimIndexMaintenanceClient.dll
2016-04-13 15:44 - 2016-03-16 05:12 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll
2016-04-07 19:03 - 2016-04-07 19:03 - 00130328 _____ C:\WINDOWS\SysWOW64\vulkan-1-1-0-8-0.dll
2016-04-07 19:02 - 2016-04-07 19:02 - 00131352 _____ C:\WINDOWS\system32\vulkan-1-1-0-8-0.dll
2016-04-07 19:02 - 2016-04-07 19:02 - 00040216 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-1-0-8-0.exe
2016-04-07 19:01 - 2016-04-07 19:01 - 00045336 _____ C:\WINDOWS\system32\vulkaninfo-1-1-0-8-0.exe
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-05-05 11:41 - 2015-08-04 17:00 - 00000008 __RSH C:\ProgramData\ntuser.pol
2016-05-05 11:41 - 2015-08-04 16:51 - 00065536 _____ C:\WINDOWS\system32\spu_storage.bin
2016-05-05 11:41 - 2015-07-10 14:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-05-05 11:41 - 2015-07-10 11:05 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-05-05 11:41 - 2014-10-31 21:25 - 00003124 _____ C:\WINDOWS\System32\Tasks\MSIAfterburner
2016-05-05 11:41 - 2014-10-06 18:43 - 00000000 ____D C:\Users\Petr\AppData\Roaming\uTorrent
2016-05-05 11:39 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2016-05-05 11:39 - 2013-08-22 17:36 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy
2016-05-05 11:19 - 2016-02-26 22:16 - 00000000 ____D C:\AMD
2016-05-05 11:17 - 2014-10-18 14:07 - 00000000 ____D C:\Users\Petr\AppData\Roaming\DAEMON Tools Lite
2016-05-05 11:16 - 2014-10-06 18:44 - 00000974 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001UA.job
2016-05-05 11:15 - 2015-03-29 14:43 - 00028272 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys
2016-05-05 11:13 - 2015-08-04 17:02 - 01770118 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-05-05 11:13 - 2015-07-10 18:02 - 00748310 _____ C:\WINDOWS\system32\perfh005.dat
2016-05-05 11:13 - 2015-07-10 18:02 - 00150188 _____ C:\WINDOWS\system32\perfc005.dat
2016-05-05 11:13 - 2015-07-10 13:02 - 00000000 ____D C:\WINDOWS\INF
2016-05-05 11:12 - 2014-10-06 18:42 - 00004194 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{E6DBB309-B6A9-48F5-A5BA-80A513F846F4}
2016-05-04 21:42 - 2014-10-21 22:01 - 00000000 ____D C:\Program Files\Common Files\Apple
2016-05-04 21:40 - 2014-10-21 22:01 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-05-04 20:12 - 2015-03-29 14:43 - 00000000 ____D C:\ProgramData\RogueKiller
2016-05-04 18:03 - 2014-10-27 14:48 - 00000000 ____D C:\WINDOWS\pss
2016-05-04 17:54 - 2015-03-29 10:40 - 00136408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-05-04 17:53 - 2015-03-29 10:40 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-05-04 17:38 - 2015-03-28 14:57 - 00000000 ____D C:\Users\Petr\AppData\Roaming\DiskSpaceFan
2016-05-04 16:22 - 2015-08-05 00:21 - 00000000 ____D C:\Users\Petr\Documents\regfiles
2016-05-04 15:56 - 2015-08-30 20:40 - 00000000 ___RD C:\Users\Petr\Documents\Scanned Documents
2016-05-04 15:42 - 2016-02-26 22:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2016-05-04 15:42 - 2015-08-04 16:51 - 00000000 ____D C:\Program Files\AMD
2016-05-04 15:32 - 2015-11-30 19:32 - 00000000 ____D C:\hry
2016-05-04 15:20 - 2016-02-29 10:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UnReal World 3.20 (patch 2)
2016-05-04 15:20 - 2016-02-22 21:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.5
2016-05-04 15:20 - 2016-01-17 21:51 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line
2016-05-04 15:20 - 2016-01-17 21:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image-Line
2016-05-04 15:20 - 2016-01-15 22:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dragons Dogma Dark Arisen
2016-05-04 15:20 - 2016-01-09 15:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of Might and Magic 3 Complete [GOG.com]
2016-05-04 15:20 - 2015-11-14 10:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fallout 4
2016-05-04 15:20 - 2015-08-06 23:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chroma Squad [GOG.com]
2016-05-04 15:20 - 2015-08-02 12:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tropico 5
2016-05-04 15:20 - 2015-07-25 12:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vietcong
2016-05-04 15:20 - 2015-07-17 09:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Witcher 2 (CZ)
2016-05-04 15:20 - 2015-07-03 10:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autumnal Wanderers
2016-05-04 15:20 - 2015-06-21 16:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mount&Blade Warband
2016-05-04 15:20 - 2015-06-20 09:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPUB File Reader
2016-05-04 15:20 - 2015-05-30 16:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved
2016-05-04 15:20 - 2015-05-17 13:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOSBox-0.74
2016-05-04 15:20 - 2015-05-10 11:05 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenIV
2016-05-04 15:20 - 2015-05-03 14:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps
2016-05-04 15:20 - 2015-05-01 16:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SSDlife
2016-05-04 15:20 - 2015-04-21 16:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Grand Theft Auto V
2016-05-04 15:20 - 2015-04-19 12:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hotline Miami 2 - Wrong Number [GOG.com]
2016-05-04 15:20 - 2015-03-29 17:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Banished [GOG.com]
2016-05-04 13:14 - 2015-05-30 16:09 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Raptr
2016-05-04 13:14 - 2015-04-09 17:24 - 00000000 ____D C:\Users\Petr\.VirtualBox
2016-05-04 13:14 - 2015-01-09 23:59 - 00000000 ____D C:\Users\Petr\AppData\Roaming\TeamViewer
2016-05-04 13:14 - 2014-10-07 19:36 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Skype
2016-05-04 13:14 - 2014-10-06 19:39 - 00000000 ____D C:\ProgramData\Skype
2016-05-04 13:08 - 2014-10-07 19:42 - 00000000 ____D C:\Program Files\CCleaner
2016-05-04 12:38 - 2014-10-24 21:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS4YOU
2016-05-04 12:38 - 2014-10-24 21:54 - 00000000 ____D C:\Program Files (x86)\AVS4YOU
2016-05-04 12:35 - 2015-06-12 21:26 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\1-click run
2016-05-04 12:35 - 2015-05-10 11:05 - 00000000 ____D C:\Users\Petr\AppData\Roaming\New Technology Studio
2016-05-04 12:34 - 2015-02-15 17:39 - 00000000 ____D C:\ProgramData\Sony
2016-05-03 07:16 - 2014-10-06 18:44 - 00000922 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001Core.job
2016-05-02 22:20 - 2014-10-06 18:45 - 00002497 _____ C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-04-28 01:13 - 2015-07-16 02:12 - 00162784 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll
2016-04-28 01:13 - 2015-07-16 02:11 - 00143592 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll
2016-04-28 01:12 - 2015-07-16 02:11 - 09618792 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll
2016-04-28 01:12 - 2015-07-16 02:11 - 08930432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll
2016-04-28 01:12 - 2015-07-16 02:11 - 08669624 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll
2016-04-28 01:11 - 2015-07-16 02:11 - 11742128 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll
2016-04-28 01:11 - 2015-07-16 02:11 - 09681128 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll
2016-04-28 01:11 - 2015-07-16 02:11 - 01542120 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2016-04-28 01:11 - 2015-07-16 02:11 - 00130616 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll
2016-04-28 01:10 - 2015-07-16 02:11 - 01267824 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2016-04-28 01:04 - 2016-03-14 23:54 - 00874000 _____ (AMD) C:\WINDOWS\system32\coinst_16.15.dll
2016-04-28 00:59 - 2016-03-15 00:24 - 40135704 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll
2016-04-28 00:59 - 2016-03-15 00:21 - 21739032 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl12cl.dll
2016-04-28 00:57 - 2016-03-15 00:23 - 00068112 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2016-04-28 00:48 - 2016-03-14 23:40 - 00953368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2016-04-28 00:48 - 2016-03-14 23:40 - 00151056 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2016-04-28 00:48 - 2015-11-03 23:44 - 01285144 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2016-04-28 00:48 - 2015-10-24 10:58 - 00953368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2016-04-28 00:48 - 2015-07-16 02:06 - 26354200 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys
2016-04-28 00:48 - 2015-07-16 01:13 - 00685584 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys
2016-04-24 18:06 - 2016-01-29 11:21 - 00000000 ____D C:\Program Files (x86)\Eurobattle.net
2016-04-24 12:37 - 2015-07-10 13:04 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2016-04-24 12:24 - 2015-04-21 20:41 - 00000000 ____D C:\ProgramData\AVAST Software
2016-04-24 11:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-04-22 09:57 - 2014-10-06 18:59 - 00453288 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-04-17 19:32 - 2015-08-04 16:53 - 00000000 ____D C:\Users\Petr
2016-04-16 15:10 - 2015-08-05 00:21 - 00000000 ____D C:\Users\Petr\Documents\My Games
2016-04-16 15:10 - 2014-10-31 16:48 - 00000000 ____D C:\Program Files (x86)\Steam
2016-04-15 09:52 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\rescache
2016-04-13 22:42 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-04-13 16:14 - 2015-07-10 12:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-04-06 20:32 - 2015-07-10 13:06 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-04-06 20:32 - 2015-07-10 13:06 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
==================== Files in the root of some directories =======
2014-11-03 16:01 - 2014-11-03 16:06 - 0000127 _____ () C:\Users\Petr\AppData\Roaming\Camdata.ini
2014-11-03 16:01 - 2014-11-03 16:06 - 0000408 _____ () C:\Users\Petr\AppData\Roaming\CamLayout.ini
2014-11-03 16:01 - 2014-11-03 16:06 - 0000408 _____ () C:\Users\Petr\AppData\Roaming\CamShapes.ini
2014-11-03 16:01 - 2014-11-03 16:06 - 0004547 _____ () C:\Users\Petr\AppData\Roaming\CamStudio.cfg
2014-12-22 22:04 - 2014-12-22 22:04 - 0000044 _____ () C:\Users\Petr\AppData\Roaming\twow_sysprepdt.dat
2014-11-03 16:00 - 2014-11-03 16:01 - 0000096 _____ () C:\Users\Petr\AppData\Roaming\version2.xml
2014-10-27 18:54 - 2014-10-27 18:54 - 0000600 _____ () C:\Users\Petr\AppData\Roaming\winscp.rnd
2015-12-15 22:12 - 2015-12-15 22:12 - 0003584 _____ () C:\Users\Petr\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-10-31 21:25 - 2015-02-07 23:12 - 2128896 _____ () C:\Users\Petr\AppData\Local\file__0.localstorage
2014-10-06 18:55 - 2015-02-14 12:05 - 0007603 _____ () C:\Users\Petr\AppData\Local\resmon.resmoncfg
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-05-04 19:24
==================== End of FRST.txt ============================
Prosím o preventivní kontrolu Vyřešeno
- Clorky
- Moderátor / člen HW týmu
-
Master Level 8.5
- Příspěvky: 7032
- Registrován: květen 10
- Bydliště: Moravskoslezský kraj
- Pohlaví:
- Stav:
Offline
Re: Prosím o preventivní kontrolu
Additional scan result of Farbar Recovery Scan Tool (x64) Version:06-05-2016
Ran by Petr (2016-05-05 11:45:34)
Running from E:\Hlavní složky\Stažené soubory
Windows 10 Pro (X64) (2015-08-04 15:00:12)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1292206800-3816184836-4294836885-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1292206800-3816184836-4294836885-503 - Limited - Disabled)
Guest (S-1-5-21-1292206800-3816184836-4294836885-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1292206800-3816184836-4294836885-1003 - Limited - Enabled)
Petr (S-1-5-21-1292206800-3816184836-4294836885-1001 - Administrator - Enabled) => C:\Users\Petr
Táta (S-1-5-21-1292206800-3816184836-4294836885-1005 - Limited - Enabled) => C:\Users\Táta
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: ESET NOD32 Antivirus 9.0.374.1 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
AS: ESET NOD32 Antivirus 9.0.374.1 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
ACP Application (Version: 2016.0415.1620.42 - Advanced Micro Devices, Inc.) Hidden
Adobe Reader XI (11.0.15) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.15 - Adobe Systems Incorporated)
AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.4 - Advanced Micro Devices, Inc.)
ANT Drivers Installer x64 (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
Apple Mobile Device Support (HKLM\...\{2E4AF2A6-50EA-4260-9BA4-5E582D11879A}) (Version: 9.3.0.15 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)
AVS Audio Converter version 6.1 (HKLM-x32\...\AVS Audio Converter 6.1_is1) (Version: - Online Media Technologies Ltd.)
AVS Video Converter 9.0 (HKLM-x32\...\AVS4YOU Video Converter 7_is1) (Version: 9.0.1.566 - Online Media Technologies Ltd.)
Balíček ovladače systému Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Balíček ovladače systému Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Catalyst Control Center Next Localization BR (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.16 - Piriform)
Classic Shell (HKLM\...\{840C85B7-D3D6-4143-9AF9-DAE80FD54CFC}) (Version: 4.1.0 - IvoSoft)
Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve)
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd)
Disk Space Fan 4 4.5.4.152 (HKLM-x32\...\Disk Space Fan 4_is1) (Version: - Disk Space Fan Team)
Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve)
Elevated Installer (x32 Version: 4.1.10.0 - Garmin Ltd or its subsidiaries) Hidden
ESET NOD32 Antivirus (HKLM\...\{AECC8921-23AC-4056-9953-205D83BFF65E}) (Version: 9.0.374.1 - ESET, spol. s r.o.)
Eurobattle.net (HKLM-x32\...\Eurobattle.net) (Version: - Eurobattle.net)
Eurobattle.net (HKLM-x32\...\Eurobattle.net1.26a) (Version: 1.26a - Eurobattle.net)
FlatOut Ultimate Carnage (HKLM-x32\...\FlatOut Ultimate Carnage) (Version: - Empire Interactive)
Garmin Express (x32 Version: 4.1.10.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express Tray (x32 Version: 4.1.10.0 - Garmin Ltd or its subsidiaries) Hidden
GnuWin32: PDCurses version 2.6 (HKLM-x32\...\PDCurses-2.6_is1) (Version: 2.6 - GnuWin32)
GOG.com Heroes of Might and Magic 3 (HKLM\...\{1d3c859c-1028-4822-b0a7-da4f7bbc18bc}.sdb) (Version: - )
GOM Audio (HKLM-x32\...\GomAudio) (Version: 2.0.11.1156 - Gretech Corporation)
GOM Player (HKLM-x32\...\GOM Player) (Version: 2.2.62.5209 - Gretech Corporation)
Google Chrome (HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\Google Chrome) (Version: 50.0.2661.94 - Google Inc.)
Heroes of Might and Magic 3 Complete (HKLM-x32\...\GOGPACKHOMM3COMPLETE_is1) (Version: 2.0.0.16 - GOG.com)
HWiNFO64 Version 4.44 (HKLM\...\HWiNFO64_is1) (Version: 4.44 - Martin Malík - REALiX)
Chameleon Shutdown 1.0 (HKLM-x32\...\Chameleon Shutdown) (Version: 1.0 - NeoSoft Tools)
iFunbox (v3.0.3109.1352) (HKLM-x32\...\iFunbox_is1) (Version: v3.0.3109.1352 - iFunbox DevTeam)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.1.1000 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3907 - Intel Corporation)
iTunes (HKLM\...\{A31C5565-90D9-4615-AE13-94D86C3836C7}) (Version: 12.3.3.17 - Apple Inc.)
Java 7 Update 80 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417080FF}) (Version: 7.0.800 - Oracle)
K-Lite Mega Codec Pack 11.5.5 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 11.5.5 - )
Malwarebytes Anti-Malware verze 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
MSI Afterburner 4.1.0 (HKLM-x32\...\Afterburner) (Version: 4.1.0 - MSI Co., LTD)
MSXML4 Parser (HKLM-x32\...\{01501EBA-EC35-4F9F-8889-3BE346E5DA13}) (Version: 1.0.0 - Microsoft Game Studios)
Neighbours From Hell Compilation (HKLM-x32\...\InstallShield_{5C81E5B5-15C0-4196-8FEC-BE56FFAB9437}) (Version: 1.00.0000 - CD Projekt)
Neighbours From Hell Compilation (x32 Version: 1.00.0000 - CD Projekt) Hidden
Nukleární Karel (HKLM-x32\...\{45E67696-E9E3-456F-B2BB-710904002E32}) (Version: 1.0.1 - Albisoft)
NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Podpora aplikací Apple (32bitová) (HKLM-x32\...\{FE5C2FAA-118D-4509-B51D-3F71CC9E1B3E}) (Version: 4.3 - Apple Inc.)
Podpora aplikací Apple (64bitová) (HKLM\...\{2937FD88-C9D6-4B82-B539-37CD0A572F42}) (Version: 4.3 - Apple Inc.)
QuickSFV (HKLM\...\{89B56CFC-0270-4ACF-8BF1-048251FD9E08}) (Version: 3.0.0 - Totally Useful Software, Inc.)
RadeonPro 1.0 (Build 1.1.1.0) (HKLM-x32\...\RadeonPro_is1) (Version: - )
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.23.1126.2013 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)
Realtek PCI Fast Ethernet Controller Driver (HKLM-x32\...\{AE46ABD3-D625-467F-B5A7-8D3FFF077F0D}) (Version: 6.112.123.2014 - Realtek)
Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform)
Reign Of Kings (HKLM-x32\...\Steam App 344760) (Version: - Code}{atch)
Rise of Nations (HKLM-x32\...\RiseOfNationsExpansion 1.0) (Version: 1.0 - Microsoft)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.6.9 - Rockstar Games)
S.T.A.L.K.E.R. Call of Pripyat (HKLM-x32\...\GOGPACKSTALKERCOP_is1) (Version: 2.0.0.12 - GOG.com)
SafeZone Stable 1.48.2066.44 (x32 Version: 1.48.2066.44 - Avast Software) Hidden
Samsung Data Migration (HKLM-x32\...\{D4DE3DB4-7734-47E5-8D92-B80146311406}) (Version: 2.7 - Samsung)
Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 4.5.1 - Samsung Electronics)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version: - Microsoft) Hidden
Skype™ 7.18 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.18.109 - Skype Technologies S.A.)
South Park - The Stick of Truth verzia 1.0.1380/83 (HKLM-x32\...\South Park - The Stick of Truth_is1) (Version: 1.0.1380/83 - CzTorrent.net)
SSDlife for Ultrabook (HKLM-x32\...\{1A2945BD-0D9F-45D0-836C-75ADD1330369}) (Version: 2.5.82 - BinarySense Inc.)
Stardew Valley (HKLM-x32\...\1453375253_is1) (Version: 2.6.0.8 - GOG.com)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
SteelSeries Engine (HKLM\...\SteelSeries Engine) (Version: 2.9.2014.1 - SteelSeries)
Subtitle And Video Renamer 0.5.0 (HKLM-x32\...\Subtitle And Video Renamer) (Version: 0.5.0 - Karolj Kočmaroš)
SUPERHOT (HKLM-x32\...\1456141688_is1) (Version: 2.0.0.4 - GOG.com)
System Shock 2 (HKLM-x32\...\Steam App 238210) (Version: - Irrational Games)
TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.13 - TeamSpeak Systems GmbH)
TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.53254 - TeamViewer)
TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp)
The Witcher 3: Wild Hunt - Free DLC program (16 DLC) (HKLM-x32\...\Free DLC program (16 DLC)_is1) (Version: 1.0.12.0 - GOG.com)
The Witcher 3: Wild Hunt - Srdce z kamene (HKLM-x32\...\Hearts of Stone_is1) (Version: 1.0.12.0 - GOG.com)
The Witcher: Enhanced Edition (HKLM-x32\...\Steam App 20900) (Version: - CD PROJEKT RED)
Tomb Raider - Game of the Year Edition version 1.0.0 (HKLM-x32\...\Tomb Raider - Game of the Year Edition_is1) (Version: 1.0.0 - Eidos Interactive)
Update for Skype for Business 2015 (KB2889853) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{40930C8E-A677-414C-A72F-DFDEB10738FB}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB3054946) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{5280698D-EE40-4A94-9E69-ED2E2B1E12A2}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB3054946) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{5280698D-EE40-4A94-9E69-ED2E2B1E12A2}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB3054946) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{5280698D-EE40-4A94-9E69-ED2E2B1E12A2}) (Version: - Microsoft)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
Vietcong & Vietcong: Fist Alpha (HKLM-x32\...\{DCF5C463-BD5C-4982-91F9-2C3F8F9E9C88}) (Version: 1.06 - )
Vulkan Run Time Libraries 1.0.8.0 (HKLM\...\VulkanRT1.0.8.0) (Version: 1.0.8.0 - LunarG, Inc.)
WhoCrashed 5.03 (HKLM\...\WhoCrashed_is1) (Version: - Resplendence Software Projects Sp.)
Windows Movie Maker 2.6 (HKLM-x32\...\{B3DAF54F-DB25-4586-9EF1-96D24BB14088}) (Version: 2.6.4037.0 - Microsoft Corporation)
WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
Worms World Party Remastered (HKLM-x32\...\1433238834_is1) (Version: 2.1.0.2 - GOG.com)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-1292206800-3816184836-4294836885-1001_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Petr\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1292206800-3816184836-4294836885-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Petr\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll (Google Inc.)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {01ADB9A2-C2F9-4B05-9E8E-8269E96FF3AD} - System32\Tasks\{04266EFC-5BB2-479D-A1BC-2D70E926B677} => Chrome.exe hxxp://ui.skype.com/ui/0/6.20.0.104/cs/ ... Error=1603
Task: {075ACDC0-9C5B-440F-864C-E112618AEEDE} - System32\Tasks\{4DD16751-0F76-44F6-9FF4-2212EA22CC80} => pcalua.exe -a "D:\Hry\Mass Effect\MassEffectLauncher.exe" -d "D:\Hry\Mass Effect"
Task: {11013F4E-6E9C-46B9-827F-DA10B3E86011} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.)
Task: {16C02394-846C-476C-BC07-C40FC1DA3230} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {17F9B78C-C1D2-4CB1-B644-76E3F20243A5} - System32\Tasks\{0A03B37D-8A84-4E7C-A29C-700FD16EDFE3} => Chrome.exe hxxp://ui.skype.com/ui/0/6.21.59.104/cs ... Error=1603
Task: {1BB38BF2-E722-43F3-A045-A7FBDC0BC061} - System32\Tasks\AdobeAAMUpdater-1.0-i5-Petr-Petr => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2014-09-19] (Adobe Systems Incorporated)
Task: {1DD23B2C-7A3F-4E08-A1EE-440695E0A41C} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {4467FA47-CB84-4823-8CA0-EC50DDC5BBF6} - System32\Tasks\{DBAEFEB3-6ABB-49D6-A18C-201301AC427E} => Chrome.exe hxxp://ui.skype.com/ui/0/6.21.0.104/cs/ ... Error=1603
Task: {4491EA1E-3C63-448D-B7F9-D420282DFFFA} - System32\Tasks\{A17716E6-3791-4337-886D-73BC3D44C12A} => Chrome.exe hxxp://ui.skype.com/ui/0/6.20.0.104/cs/ ... Error=1603
Task: {54D7D9D8-E9CB-44E7-B27D-C07D8F794D3E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {55039598-0995-44F4-8870-29D4A12383B9} - System32\Tasks\{F243475E-1CC9-4A04-BAEF-3015EEF02FAD} => Chrome.exe hxxp://ui.skype.com/ui/0/6.21.0.104/cs/ ... age=tsMain
Task: {557979F5-BF31-4404-9062-0635B9DF4699} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {5602D040-740C-44BD-8221-59A9E15CBFC5} - System32\Tasks\{6657CC10-E0AA-49E7-B395-0B0C22CAE24A} => pcalua.exe -a C:\Hry\Bioshock\Builds\Release\Bioshock.exe -d C:\Hry\Bioshock\Builds\Release
Task: {5F7B90F5-225C-4F5F-AB48-595D6B73689F} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {6C53EEB0-ED40-41ED-8EE4-CB0E2F06715A} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2016-04-15] (Advanced Micro Devices, Inc.)
Task: {77116FCC-8EE7-43B6-BEF3-5F11A365A912} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001Core => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {85419F5E-9C58-4D6E-9AD8-DCFE45F08D85} - System32\Tasks\{65EF54A0-FCC5-4725-8897-2109CB44787E} => pcalua.exe -a "C:\Nuklearni Karel\uninstall.exe" -d "C:\Nuklearni Karel"
Task: {87D24623-1847-44B7-A2E6-3972DDCBA970} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {899D4F97-DB25-4075-A038-B7782A80756E} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2014-12-06] ()
Task: {8BD95E71-2A16-46D6-8C89-D450E7024E00} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {96595D36-2E34-4781-B1AD-903B21295594} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {9B0A9A42-4B99-4B17-AB23-0CE92ADF24B2} - \GarminUpdaterTask -> No File <==== ATTENTION
Task: {A3C0AA21-0210-4D1C-B4A3-AA2F693F1CC1} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe [2014-09-28] (Samsung Electronics.)
Task: {A9063117-C94D-4CC3-AE22-A22C2EE004C2} - System32\Tasks\{121A26B9-85DE-4D45-80BB-3E6DA6A20FFB} => Chrome.exe hxxp://ui.skype.com/ui/0/6.21.0.104/cs/ ... Error=1603
Task: {B2A957E3-C513-44FD-A0DA-50A207E4C888} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
Task: {B8AAF045-C266-44E7-9AD3-3600BC3CDCDA} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001UA => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {BB336DD9-3F9D-440D-8C60-DAEA91B5FCFC} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14] (Adobe Systems Incorporated)
Task: {BBBC1976-1121-490B-99C8-378E395ABD95} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-03-11] (Piriform Ltd)
Task: {BC46826A-F1D8-47D9-87A1-03ABC819C506} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {CF9A773A-DEBE-4E61-AF98-1F63F495138A} - System32\Tasks\{C7B6F82C-45E4-40A7-8483-2D75F8222C5D} => Chrome.exe hxxp://ui.skype.com/ui/0/6.20.0.104/cs/ ... Error=1603
Task: {D341D636-9465-40EB-A6BC-510297575EB0} - System32\Tasks\{32FA096E-4D15-4567-8A70-B047A49211B1} => Chrome.exe hxxp://ui.skype.com/ui/0/6.20.0.104/cs/ ... Error=1603
Task: {D54383A2-5176-4567-B3F7-3242C9D8C79A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {DCCC42F5-5A45-4F3E-BB9F-F047E12FD5B7} - System32\Tasks\SafeZone scheduled Autoupdate 1450426752 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-02-01] (Avast Software)
Task: {E08B2C1E-3013-4C1E-8E76-4A9FEE978ED8} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {E121A23D-70E1-4238-93F5-DC685B451EDA} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {EEF2B05B-7F09-4F1C-B67A-6D9DF674ACE2} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {F06CDA5C-537C-4F5D-9B4A-C2C646F71D6E} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2015-10-16] ()
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001Core.job => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001UA.job => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2015-08-04 17:48 - 2015-08-04 17:48 - 00032768 _____ () C:\WINDOWS\SYSTEM32\licensemanagerapi.dll
2016-03-18 22:56 - 2016-03-18 22:56 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2016-03-18 22:56 - 2016-03-18 22:56 - 01329936 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2016-04-13 15:45 - 2016-03-16 06:55 - 02495768 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2014-12-06 09:03 - 2014-12-06 09:03 - 00565760 _____ () C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
2016-04-13 15:45 - 2016-03-16 06:55 - 02495768 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2015-03-18 14:08 - 2015-03-18 14:08 - 08898720 _____ () C:\Program Files\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2015-10-23 21:49 - 2015-09-17 07:48 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-12-09 17:43 - 2015-11-25 06:20 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-12-09 17:42 - 2015-11-25 06:17 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-12-09 17:43 - 2015-11-25 06:17 - 01808384 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-10-23 21:49 - 2015-09-17 07:43 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00504832 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\SSEngineLib.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 09315328 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\SSEngineWinGui.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00015872 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\Localization.dll
2014-10-09 21:43 - 2014-10-09 21:43 - 00011264 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\ISSPlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00011264 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\Utilities.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00115200 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\DriverCommunication.dll
2014-10-08 17:30 - 2014-10-08 17:30 - 00047616 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesDrivers\x2api.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00034304 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\DBUtils.dll
2014-10-08 17:30 - 2014-10-08 17:30 - 01102336 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\System.Data.SQLite.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00189440 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\MousePlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00030720 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\D3MousePlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00031744 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\KKMousePlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00030720 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\SRawPlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00159744 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\MLGSenseiPlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00020992 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\WoWGoldPlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00030720 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\GW2MousePlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00029696 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\CSGOMousePlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00030208 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\DOTA2MousePlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00023040 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\WoWWirelessPlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00030720 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\CODMousePlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00030208 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\WoTMousePlugin.dll
2014-12-06 09:02 - 2014-12-06 09:02 - 00217600 _____ () C:\Program Files (x86)\MSI Afterburner\RTCore.dll
2014-12-06 09:01 - 2014-12-06 09:01 - 00353792 _____ () C:\Program Files (x86)\MSI Afterburner\RTUI.dll
2014-12-06 09:01 - 2014-12-06 09:01 - 00071680 _____ () C:\Program Files (x86)\MSI Afterburner\RTMUI.dll
2014-12-06 09:01 - 2014-12-06 09:01 - 00056832 _____ () C:\Program Files (x86)\MSI Afterburner\RTFC.dll
2014-12-06 09:02 - 2014-12-06 09:02 - 00649216 _____ () C:\Program Files (x86)\MSI Afterburner\RTHAL.dll
2016-05-02 22:20 - 2016-04-28 01:25 - 01738904 _____ () C:\Users\Petr\AppData\Local\Google\Chrome\Application\50.0.2661.94\libglesv2.dll
2016-05-02 22:20 - 2016-04-28 01:25 - 00086168 _____ () C:\Users\Petr\AppData\Local\Google\Chrome\Application\50.0.2661.94\libegl.dll
2014-10-06 18:56 - 2014-09-28 18:59 - 00019872 _____ () C:\Program Files (x86)\Samsung\Samsung Magician\SAMSUNG_SSD.dll
2014-04-03 16:48 - 2014-04-03 16:48 - 01241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\ProgramData\TEMP:1CE11B51 [110]
AlternateDataStreams: C:\ProgramData\TEMP:90C664F3 [650]
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\sharepoint.com -> hxxps://gsosfm.sharepoint.com
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 15:25 - 2016-05-05 11:32 - 00000753 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run: => "TNOD UP"
HKLM\...\StartupApproved\Run32: => "IMSS"
HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud"
HKLM\...\StartupApproved\Run32: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run32: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "Adobe ARM"
HKLM\...\StartupApproved\Run32: => "Raptr"
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\StartupApproved\StartupFolder: => "Samsung Magician.lnk"
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\StartupApproved\StartupFolder: => "TEMP.bat"
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\StartupApproved\Run: => "Google Update"
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\StartupApproved\Run: => "DAEMON Tools Lite"
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\StartupApproved\Run: => "IDMan"
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\StartupApproved\Run: => "iFunBox"
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\StartupApproved\Run: => "Lync"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [UDP Query User{C5027DF3-7676-4EC5-B6F3-E86B9821BF67}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe
FirewallRules: [TCP Query User{9EEE5280-F3E8-4BAB-8297-4E87738DFCAF}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe
FirewallRules: [{1971807A-DE3A-47D4-905C-3B6DA51EF967}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\The Witcher Enhanced Edition\Digital Comic\DigitalComic.exe
FirewallRules: [{8A81D76F-41A3-4202-9F11-6181772190BC}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\The Witcher Enhanced Edition\Digital Comic\DigitalComic.exe
FirewallRules: [{68918EF6-0DFB-428F-BAA0-F6B4F2C99DF0}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\The Witcher Enhanced Edition\System\djinni!.exe
FirewallRules: [{09F0C546-6E8E-4FE8-8722-5AC5F7060D81}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\The Witcher Enhanced Edition\System\djinni!.exe
FirewallRules: [{C271A81D-2992-4FE8-95C5-5011DE9B9618}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\Reign Of Kings\Reign of Kings.exe
FirewallRules: [{3D459BA4-9EE6-440B-9865-2E421B2D9B9B}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\Reign Of Kings\Reign of Kings.exe
FirewallRules: [UDP Query User{1DA7168E-4C26-4703-BF92-6E00DA831E51}C:\program files (x86)\eurobattle.net\gproxy.exe] => (Allow) C:\program files (x86)\eurobattle.net\gproxy.exe
FirewallRules: [TCP Query User{6E707F6C-4047-4336-9DF2-4C354B4C5B76}C:\program files (x86)\eurobattle.net\gproxy.exe] => (Allow) C:\program files (x86)\eurobattle.net\gproxy.exe
FirewallRules: [{CFDF89C1-B23B-4E44-B7F4-79B7C959AFC3}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\Reign Of Kings\ROK.exe
FirewallRules: [{907E2891-18F7-40C4-BB76-842A13A08961}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\Reign Of Kings\ROK.exe
FirewallRules: [{7C65B6BA-0B3E-44E9-BC6B-493342C15F38}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{5D097E6F-DE72-4C85-946D-C1FC82232E4B}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{6A2405AD-956F-4622-9EE8-076EE702D41B}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{5AC01BA2-068A-4E04-976C-9F607513FB94}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{68F83E09-3150-40EE-AE16-383BAD79EE44}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{00EED4C4-C503-4C70-8706-7F7D7544771E}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{184E5CDC-B022-466B-8AB4-1B158E7F6FD9}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\SS2\Shock2.exe
FirewallRules: [{F6D96007-8FB9-41E2-BAC5-0DFA12473E9F}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\SS2\Shock2.exe
FirewallRules: [{38027914-D2C9-4739-88BA-D48711471A52}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{12B3A4CD-42EB-41E6-8507-86452E0295DE}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{137FE5F1-62C5-4206-AC3C-526B891BCE4A}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{424AF7CC-89D9-4D20-9DCD-AD3ACE572DF9}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{E969AAD3-283F-483F-BA41-20761D8CEAB4}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{E6F92A28-45BE-4AF8-A4EE-0327E7F26F2D}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{ADDBB436-0544-4D60-934F-32BB5535698C}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{9548F665-38DD-4F34-93D2-E200C5B97B43}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{590740B2-F00D-4EAB-B14C-4BAB064EA3BA}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{010100C6-D96A-47BD-8FD9-E40D8607CC1E}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [UDP Query User{85AEDF36-43DD-4AA8-8E65-4F14B118B655}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{617ECBF0-F527-41A0-B7CD-0D5EA9E20C20}C:\users\petr\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\petr\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [TCP Query User{492E3001-B943-403C-AAA6-0EDA0053C8B2}C:\users\petr\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\petr\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [TCP Query User{6147D9AD-D0E7-4E94-878B-4CE15AF1158A}D:\hry\counter strike 1.6 clean\hl.exe] => (Allow) D:\hry\counter strike 1.6 clean\hl.exe
FirewallRules: [UDP Query User{E3254333-F8D4-47F2-9F50-844706EBA8C2}D:\hry\counter strike 1.6 clean\hl.exe] => (Allow) D:\hry\counter strike 1.6 clean\hl.exe
FirewallRules: [TCP Query User{1288C616-82BA-41C3-9381-D0BA9FB47671}C:\users\petr\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\petr\appdata\local\google\chrome\application\chrome.exe
FirewallRules: [UDP Query User{3E27AEB5-6680-4998-8C21-7618134E55CA}C:\users\petr\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\petr\appdata\local\google\chrome\application\chrome.exe
FirewallRules: [{0442F190-AD50-49C6-B929-34992E3D6884}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{591BE741-DE5D-4306-BD98-FF057DF6DEA2}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C28DEB94-20A7-4A29-BD89-CBB1B96286F0}] => (Allow) C:\Users\Petr\AppData\Roaming\uTorrent\utorrent.exe
FirewallRules: [{269F0105-6F5A-42A0-83E6-749DEEA64C08}] => (Allow) C:\Users\Petr\AppData\Roaming\uTorrent\utorrent.exe
FirewallRules: [{1856C548-7046-458A-8D61-8CA2F3522F3F}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{430E9FF1-B08F-4DF2-A7F0-0D0B13D2DB09}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{D502DCCC-5097-436C-8C53-1CC4E20DF55F}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{1613F483-A4B8-42A6-BBC4-D95DAA9EB8B7}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{D7037850-E6E3-4197-9FC2-E6FEF46756D7}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{015A57E1-2881-4363-BA0D-104CEEF360EA}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{5E30F0D8-7EF3-437C-9B72-6BAB0AC68212}] => (Allow) D:\Hry\Rise of Nations\thrones.exe
FirewallRules: [{222467F2-AE6B-4FD7-B356-9BC492F02CFF}] => (Allow) D:\Hry\Rise of Nations\thrones.exe
FirewallRules: [TCP Query User{8629AB47-6539-4F2E-9F95-9EA77DECCD0B}C:\hry\warcraft iii\war3.exe] => (Allow) C:\hry\warcraft iii\war3.exe
FirewallRules: [UDP Query User{A18DFDE0-35A1-4815-9C55-8A125B375B95}C:\hry\warcraft iii\war3.exe] => (Allow) C:\hry\warcraft iii\war3.exe
FirewallRules: [{28A5A3EE-D289-49E2-8F83-66B27E2C79FF}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{DEB397E9-D11A-4D76-AA0E-23FB3993648A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{F8CD2EBE-75E6-4A3B-8309-D8C09D180923}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{E5D07542-AB68-401E-80E5-1F4D7CC80189}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{AB9B4A21-3EAA-4F90-834D-70FF4A403D34}] => (Allow) D:\Hry\FlatOut Ultimate Carnage\Fouc.exe
FirewallRules: [{F747F76C-52A0-4C66-9807-EB8DA6F29B23}] => (Allow) D:\Hry\FlatOut Ultimate Carnage\Fouc.exe
FirewallRules: [{4157EECC-34FB-41C0-B0A9-4C718DC317DD}] => (Allow) C:\Users\Petr\AppData\Local\Google\Chrome\Application\chrome.exe
FirewallRules: [{100AD5EA-7C7A-4F04-A66E-9F2A04C32BF2}] => (Allow) C:\Program Files\iTunes\iTunes.exe
==================== Restore Points =========================
29-04-2016 22:08:36 Naplánovaný kontrolní bod
04-05-2016 12:34:37 Removed GUILTY GEAR X2 #RELOAD
04-05-2016 20:11:22 JRT Pre-Junkware Removal
==================== Faulty Device Manager Devices =============
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (05/04/2016 09:47:21 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program chrome.exe verze 50.0.2661.94 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.
ID procesu: efc
Čas spuštění: 01d1a63b39af0c08
Čas ukončení: 4
Cesta k aplikaci: C:\Users\Petr\AppData\Local\Google\Chrome\Application\chrome.exe
ID hlášení: 00f1e889-1231-11e6-83fc-0019e00b0663
Úplný název balíčku s chybou:
ID aplikace související s balíčkem s chybou:
Error: (05/04/2016 09:28:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: handle_resolve_request bad interfaceIndex 24
Error: (05/04/2016 09:28:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: handle_resolve_request bad interfaceIndex 23
Error: (05/04/2016 09:28:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: handle_resolve_request bad interfaceIndex 22
Error: (05/04/2016 09:28:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: handle_resolve_request bad interfaceIndex 21
Error: (05/04/2016 09:28:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: handle_resolve_request bad interfaceIndex 20
Error: (05/04/2016 09:28:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: handle_resolve_request bad interfaceIndex 19
Error: (05/04/2016 09:28:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: handle_resolve_request bad interfaceIndex 18
Error: (05/04/2016 09:28:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: handle_resolve_request bad interfaceIndex 17
Error: (05/04/2016 09:28:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: handle_resolve_request bad interfaceIndex 16
System errors:
=============
Error: (05/05/2016 11:44:35 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}
Error: (05/05/2016 11:41:28 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Virtualizace souborů nástroje Řízení uživatelských účtů neuspěla při spuštění v důsledku následující chyby:
%%1275
Error: (05/05/2016 11:41:02 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Hostitel synchronizace_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (05/05/2016 11:39:49 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (05/05/2016 11:39:49 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (05/05/2016 11:39:48 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (05/05/2016 11:39:48 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (05/05/2016 11:39:48 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (05/05/2016 11:13:32 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}
Error: (05/05/2016 11:08:21 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Virtualizace souborů nástroje Řízení uživatelských účtů neuspěla při spuštění v důsledku následující chyby:
%%1275
CodeIntegrity:
===================================
Date: 2016-05-05 11:45:36.479
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-05-05 11:45:36.468
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-05-05 11:45:36.325
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-05-05 11:45:36.311
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-05-05 11:45:36.296
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-05-05 11:45:36.273
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-05-05 11:45:36.259
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-05-05 11:45:36.241
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-05-05 11:44:58.929
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-05-05 11:44:58.917
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i5-4570S CPU @ 2.90GHz
Percentage of memory in use: 26%
Total physical RAM: 8120.07 MB
Available physical RAM: 5970.21 MB
Total Virtual: 9400.07 MB
Available Virtual: 7200.73 MB
==================== Drives ================================
Drive c: (Systém) (Fixed) (Total:99.83 GB) (Free:41.2 GB) NTFS
Drive d: (Data) (Fixed) (Total:732.42 GB) (Free:292.77 GB) NTFS
Drive e: (Programy) (Fixed) (Total:199.09 GB) (Free:34.54 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or
(Size: 111.8 GB) (Disk ID: E5572F99)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=99.8 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
========================================================
Disk: 1 (MBR Code: Windows 7 or
(Size: 931.5 GB) (Disk ID: 0008C0E8)
Partition 1: (Not Active) - (Size=732.4 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=199.1 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================
Ran by Petr (2016-05-05 11:45:34)
Running from E:\Hlavní složky\Stažené soubory
Windows 10 Pro (X64) (2015-08-04 15:00:12)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1292206800-3816184836-4294836885-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1292206800-3816184836-4294836885-503 - Limited - Disabled)
Guest (S-1-5-21-1292206800-3816184836-4294836885-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1292206800-3816184836-4294836885-1003 - Limited - Enabled)
Petr (S-1-5-21-1292206800-3816184836-4294836885-1001 - Administrator - Enabled) => C:\Users\Petr
Táta (S-1-5-21-1292206800-3816184836-4294836885-1005 - Limited - Enabled) => C:\Users\Táta
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: ESET NOD32 Antivirus 9.0.374.1 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
AS: ESET NOD32 Antivirus 9.0.374.1 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
ACP Application (Version: 2016.0415.1620.42 - Advanced Micro Devices, Inc.) Hidden
Adobe Reader XI (11.0.15) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.15 - Adobe Systems Incorporated)
AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.4 - Advanced Micro Devices, Inc.)
ANT Drivers Installer x64 (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
Apple Mobile Device Support (HKLM\...\{2E4AF2A6-50EA-4260-9BA4-5E582D11879A}) (Version: 9.3.0.15 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)
AVS Audio Converter version 6.1 (HKLM-x32\...\AVS Audio Converter 6.1_is1) (Version: - Online Media Technologies Ltd.)
AVS Video Converter 9.0 (HKLM-x32\...\AVS4YOU Video Converter 7_is1) (Version: 9.0.1.566 - Online Media Technologies Ltd.)
Balíček ovladače systému Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Balíček ovladače systému Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Catalyst Control Center Next Localization BR (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.16 - Piriform)
Classic Shell (HKLM\...\{840C85B7-D3D6-4143-9AF9-DAE80FD54CFC}) (Version: 4.1.0 - IvoSoft)
Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve)
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd)
Disk Space Fan 4 4.5.4.152 (HKLM-x32\...\Disk Space Fan 4_is1) (Version: - Disk Space Fan Team)
Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve)
Elevated Installer (x32 Version: 4.1.10.0 - Garmin Ltd or its subsidiaries) Hidden
ESET NOD32 Antivirus (HKLM\...\{AECC8921-23AC-4056-9953-205D83BFF65E}) (Version: 9.0.374.1 - ESET, spol. s r.o.)
Eurobattle.net (HKLM-x32\...\Eurobattle.net) (Version: - Eurobattle.net)
Eurobattle.net (HKLM-x32\...\Eurobattle.net1.26a) (Version: 1.26a - Eurobattle.net)
FlatOut Ultimate Carnage (HKLM-x32\...\FlatOut Ultimate Carnage) (Version: - Empire Interactive)
Garmin Express (x32 Version: 4.1.10.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express Tray (x32 Version: 4.1.10.0 - Garmin Ltd or its subsidiaries) Hidden
GnuWin32: PDCurses version 2.6 (HKLM-x32\...\PDCurses-2.6_is1) (Version: 2.6 - GnuWin32)
GOG.com Heroes of Might and Magic 3 (HKLM\...\{1d3c859c-1028-4822-b0a7-da4f7bbc18bc}.sdb) (Version: - )
GOM Audio (HKLM-x32\...\GomAudio) (Version: 2.0.11.1156 - Gretech Corporation)
GOM Player (HKLM-x32\...\GOM Player) (Version: 2.2.62.5209 - Gretech Corporation)
Google Chrome (HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\Google Chrome) (Version: 50.0.2661.94 - Google Inc.)
Heroes of Might and Magic 3 Complete (HKLM-x32\...\GOGPACKHOMM3COMPLETE_is1) (Version: 2.0.0.16 - GOG.com)
HWiNFO64 Version 4.44 (HKLM\...\HWiNFO64_is1) (Version: 4.44 - Martin Malík - REALiX)
Chameleon Shutdown 1.0 (HKLM-x32\...\Chameleon Shutdown) (Version: 1.0 - NeoSoft Tools)
iFunbox (v3.0.3109.1352) (HKLM-x32\...\iFunbox_is1) (Version: v3.0.3109.1352 - iFunbox DevTeam)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.1.1000 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3907 - Intel Corporation)
iTunes (HKLM\...\{A31C5565-90D9-4615-AE13-94D86C3836C7}) (Version: 12.3.3.17 - Apple Inc.)
Java 7 Update 80 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417080FF}) (Version: 7.0.800 - Oracle)
K-Lite Mega Codec Pack 11.5.5 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 11.5.5 - )
Malwarebytes Anti-Malware verze 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
MSI Afterburner 4.1.0 (HKLM-x32\...\Afterburner) (Version: 4.1.0 - MSI Co., LTD)
MSXML4 Parser (HKLM-x32\...\{01501EBA-EC35-4F9F-8889-3BE346E5DA13}) (Version: 1.0.0 - Microsoft Game Studios)
Neighbours From Hell Compilation (HKLM-x32\...\InstallShield_{5C81E5B5-15C0-4196-8FEC-BE56FFAB9437}) (Version: 1.00.0000 - CD Projekt)
Neighbours From Hell Compilation (x32 Version: 1.00.0000 - CD Projekt) Hidden
Nukleární Karel (HKLM-x32\...\{45E67696-E9E3-456F-B2BB-710904002E32}) (Version: 1.0.1 - Albisoft)
NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Podpora aplikací Apple (32bitová) (HKLM-x32\...\{FE5C2FAA-118D-4509-B51D-3F71CC9E1B3E}) (Version: 4.3 - Apple Inc.)
Podpora aplikací Apple (64bitová) (HKLM\...\{2937FD88-C9D6-4B82-B539-37CD0A572F42}) (Version: 4.3 - Apple Inc.)
QuickSFV (HKLM\...\{89B56CFC-0270-4ACF-8BF1-048251FD9E08}) (Version: 3.0.0 - Totally Useful Software, Inc.)
RadeonPro 1.0 (Build 1.1.1.0) (HKLM-x32\...\RadeonPro_is1) (Version: - )
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.23.1126.2013 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)
Realtek PCI Fast Ethernet Controller Driver (HKLM-x32\...\{AE46ABD3-D625-467F-B5A7-8D3FFF077F0D}) (Version: 6.112.123.2014 - Realtek)
Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform)
Reign Of Kings (HKLM-x32\...\Steam App 344760) (Version: - Code}{atch)
Rise of Nations (HKLM-x32\...\RiseOfNationsExpansion 1.0) (Version: 1.0 - Microsoft)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.6.9 - Rockstar Games)
S.T.A.L.K.E.R. Call of Pripyat (HKLM-x32\...\GOGPACKSTALKERCOP_is1) (Version: 2.0.0.12 - GOG.com)
SafeZone Stable 1.48.2066.44 (x32 Version: 1.48.2066.44 - Avast Software) Hidden
Samsung Data Migration (HKLM-x32\...\{D4DE3DB4-7734-47E5-8D92-B80146311406}) (Version: 2.7 - Samsung)
Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 4.5.1 - Samsung Electronics)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version: - Microsoft) Hidden
Skype™ 7.18 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.18.109 - Skype Technologies S.A.)
South Park - The Stick of Truth verzia 1.0.1380/83 (HKLM-x32\...\South Park - The Stick of Truth_is1) (Version: 1.0.1380/83 - CzTorrent.net)
SSDlife for Ultrabook (HKLM-x32\...\{1A2945BD-0D9F-45D0-836C-75ADD1330369}) (Version: 2.5.82 - BinarySense Inc.)
Stardew Valley (HKLM-x32\...\1453375253_is1) (Version: 2.6.0.8 - GOG.com)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
SteelSeries Engine (HKLM\...\SteelSeries Engine) (Version: 2.9.2014.1 - SteelSeries)
Subtitle And Video Renamer 0.5.0 (HKLM-x32\...\Subtitle And Video Renamer) (Version: 0.5.0 - Karolj Kočmaroš)
SUPERHOT (HKLM-x32\...\1456141688_is1) (Version: 2.0.0.4 - GOG.com)
System Shock 2 (HKLM-x32\...\Steam App 238210) (Version: - Irrational Games)
TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.13 - TeamSpeak Systems GmbH)
TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.53254 - TeamViewer)
TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp)
The Witcher 3: Wild Hunt - Free DLC program (16 DLC) (HKLM-x32\...\Free DLC program (16 DLC)_is1) (Version: 1.0.12.0 - GOG.com)
The Witcher 3: Wild Hunt - Srdce z kamene (HKLM-x32\...\Hearts of Stone_is1) (Version: 1.0.12.0 - GOG.com)
The Witcher: Enhanced Edition (HKLM-x32\...\Steam App 20900) (Version: - CD PROJEKT RED)
Tomb Raider - Game of the Year Edition version 1.0.0 (HKLM-x32\...\Tomb Raider - Game of the Year Edition_is1) (Version: 1.0.0 - Eidos Interactive)
Update for Skype for Business 2015 (KB2889853) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{40930C8E-A677-414C-A72F-DFDEB10738FB}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB3054946) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{5280698D-EE40-4A94-9E69-ED2E2B1E12A2}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB3054946) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{5280698D-EE40-4A94-9E69-ED2E2B1E12A2}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB3054946) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{5280698D-EE40-4A94-9E69-ED2E2B1E12A2}) (Version: - Microsoft)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
Vietcong & Vietcong: Fist Alpha (HKLM-x32\...\{DCF5C463-BD5C-4982-91F9-2C3F8F9E9C88}) (Version: 1.06 - )
Vulkan Run Time Libraries 1.0.8.0 (HKLM\...\VulkanRT1.0.8.0) (Version: 1.0.8.0 - LunarG, Inc.)
WhoCrashed 5.03 (HKLM\...\WhoCrashed_is1) (Version: - Resplendence Software Projects Sp.)
Windows Movie Maker 2.6 (HKLM-x32\...\{B3DAF54F-DB25-4586-9EF1-96D24BB14088}) (Version: 2.6.4037.0 - Microsoft Corporation)
WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
Worms World Party Remastered (HKLM-x32\...\1433238834_is1) (Version: 2.1.0.2 - GOG.com)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-1292206800-3816184836-4294836885-1001_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Petr\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1292206800-3816184836-4294836885-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Petr\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll (Google Inc.)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {01ADB9A2-C2F9-4B05-9E8E-8269E96FF3AD} - System32\Tasks\{04266EFC-5BB2-479D-A1BC-2D70E926B677} => Chrome.exe hxxp://ui.skype.com/ui/0/6.20.0.104/cs/ ... Error=1603
Task: {075ACDC0-9C5B-440F-864C-E112618AEEDE} - System32\Tasks\{4DD16751-0F76-44F6-9FF4-2212EA22CC80} => pcalua.exe -a "D:\Hry\Mass Effect\MassEffectLauncher.exe" -d "D:\Hry\Mass Effect"
Task: {11013F4E-6E9C-46B9-827F-DA10B3E86011} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.)
Task: {16C02394-846C-476C-BC07-C40FC1DA3230} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {17F9B78C-C1D2-4CB1-B644-76E3F20243A5} - System32\Tasks\{0A03B37D-8A84-4E7C-A29C-700FD16EDFE3} => Chrome.exe hxxp://ui.skype.com/ui/0/6.21.59.104/cs ... Error=1603
Task: {1BB38BF2-E722-43F3-A045-A7FBDC0BC061} - System32\Tasks\AdobeAAMUpdater-1.0-i5-Petr-Petr => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2014-09-19] (Adobe Systems Incorporated)
Task: {1DD23B2C-7A3F-4E08-A1EE-440695E0A41C} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {4467FA47-CB84-4823-8CA0-EC50DDC5BBF6} - System32\Tasks\{DBAEFEB3-6ABB-49D6-A18C-201301AC427E} => Chrome.exe hxxp://ui.skype.com/ui/0/6.21.0.104/cs/ ... Error=1603
Task: {4491EA1E-3C63-448D-B7F9-D420282DFFFA} - System32\Tasks\{A17716E6-3791-4337-886D-73BC3D44C12A} => Chrome.exe hxxp://ui.skype.com/ui/0/6.20.0.104/cs/ ... Error=1603
Task: {54D7D9D8-E9CB-44E7-B27D-C07D8F794D3E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {55039598-0995-44F4-8870-29D4A12383B9} - System32\Tasks\{F243475E-1CC9-4A04-BAEF-3015EEF02FAD} => Chrome.exe hxxp://ui.skype.com/ui/0/6.21.0.104/cs/ ... age=tsMain
Task: {557979F5-BF31-4404-9062-0635B9DF4699} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {5602D040-740C-44BD-8221-59A9E15CBFC5} - System32\Tasks\{6657CC10-E0AA-49E7-B395-0B0C22CAE24A} => pcalua.exe -a C:\Hry\Bioshock\Builds\Release\Bioshock.exe -d C:\Hry\Bioshock\Builds\Release
Task: {5F7B90F5-225C-4F5F-AB48-595D6B73689F} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {6C53EEB0-ED40-41ED-8EE4-CB0E2F06715A} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2016-04-15] (Advanced Micro Devices, Inc.)
Task: {77116FCC-8EE7-43B6-BEF3-5F11A365A912} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001Core => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {85419F5E-9C58-4D6E-9AD8-DCFE45F08D85} - System32\Tasks\{65EF54A0-FCC5-4725-8897-2109CB44787E} => pcalua.exe -a "C:\Nuklearni Karel\uninstall.exe" -d "C:\Nuklearni Karel"
Task: {87D24623-1847-44B7-A2E6-3972DDCBA970} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {899D4F97-DB25-4075-A038-B7782A80756E} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2014-12-06] ()
Task: {8BD95E71-2A16-46D6-8C89-D450E7024E00} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {96595D36-2E34-4781-B1AD-903B21295594} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {9B0A9A42-4B99-4B17-AB23-0CE92ADF24B2} - \GarminUpdaterTask -> No File <==== ATTENTION
Task: {A3C0AA21-0210-4D1C-B4A3-AA2F693F1CC1} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe [2014-09-28] (Samsung Electronics.)
Task: {A9063117-C94D-4CC3-AE22-A22C2EE004C2} - System32\Tasks\{121A26B9-85DE-4D45-80BB-3E6DA6A20FFB} => Chrome.exe hxxp://ui.skype.com/ui/0/6.21.0.104/cs/ ... Error=1603
Task: {B2A957E3-C513-44FD-A0DA-50A207E4C888} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
Task: {B8AAF045-C266-44E7-9AD3-3600BC3CDCDA} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001UA => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {BB336DD9-3F9D-440D-8C60-DAEA91B5FCFC} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14] (Adobe Systems Incorporated)
Task: {BBBC1976-1121-490B-99C8-378E395ABD95} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-03-11] (Piriform Ltd)
Task: {BC46826A-F1D8-47D9-87A1-03ABC819C506} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {CF9A773A-DEBE-4E61-AF98-1F63F495138A} - System32\Tasks\{C7B6F82C-45E4-40A7-8483-2D75F8222C5D} => Chrome.exe hxxp://ui.skype.com/ui/0/6.20.0.104/cs/ ... Error=1603
Task: {D341D636-9465-40EB-A6BC-510297575EB0} - System32\Tasks\{32FA096E-4D15-4567-8A70-B047A49211B1} => Chrome.exe hxxp://ui.skype.com/ui/0/6.20.0.104/cs/ ... Error=1603
Task: {D54383A2-5176-4567-B3F7-3242C9D8C79A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {DCCC42F5-5A45-4F3E-BB9F-F047E12FD5B7} - System32\Tasks\SafeZone scheduled Autoupdate 1450426752 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-02-01] (Avast Software)
Task: {E08B2C1E-3013-4C1E-8E76-4A9FEE978ED8} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {E121A23D-70E1-4238-93F5-DC685B451EDA} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {EEF2B05B-7F09-4F1C-B67A-6D9DF674ACE2} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {F06CDA5C-537C-4F5D-9B4A-C2C646F71D6E} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2015-10-16] ()
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001Core.job => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001UA.job => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2015-08-04 17:48 - 2015-08-04 17:48 - 00032768 _____ () C:\WINDOWS\SYSTEM32\licensemanagerapi.dll
2016-03-18 22:56 - 2016-03-18 22:56 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2016-03-18 22:56 - 2016-03-18 22:56 - 01329936 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2016-04-13 15:45 - 2016-03-16 06:55 - 02495768 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2014-12-06 09:03 - 2014-12-06 09:03 - 00565760 _____ () C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
2016-04-13 15:45 - 2016-03-16 06:55 - 02495768 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2015-03-18 14:08 - 2015-03-18 14:08 - 08898720 _____ () C:\Program Files\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2015-10-23 21:49 - 2015-09-17 07:48 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-12-09 17:43 - 2015-11-25 06:20 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-12-09 17:42 - 2015-11-25 06:17 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-12-09 17:43 - 2015-11-25 06:17 - 01808384 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-10-23 21:49 - 2015-09-17 07:43 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00504832 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\SSEngineLib.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 09315328 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\SSEngineWinGui.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00015872 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\Localization.dll
2014-10-09 21:43 - 2014-10-09 21:43 - 00011264 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\ISSPlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00011264 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\Utilities.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00115200 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\DriverCommunication.dll
2014-10-08 17:30 - 2014-10-08 17:30 - 00047616 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesDrivers\x2api.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00034304 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\DBUtils.dll
2014-10-08 17:30 - 2014-10-08 17:30 - 01102336 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\System.Data.SQLite.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00189440 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\MousePlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00030720 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\D3MousePlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00031744 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\KKMousePlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00030720 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\SRawPlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00159744 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\MLGSenseiPlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00020992 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\WoWGoldPlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00030720 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\GW2MousePlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00029696 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\CSGOMousePlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00030208 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\DOTA2MousePlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00023040 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\WoWWirelessPlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00030720 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\CODMousePlugin.dll
2014-10-09 21:44 - 2014-10-09 21:44 - 00030208 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\WoTMousePlugin.dll
2014-12-06 09:02 - 2014-12-06 09:02 - 00217600 _____ () C:\Program Files (x86)\MSI Afterburner\RTCore.dll
2014-12-06 09:01 - 2014-12-06 09:01 - 00353792 _____ () C:\Program Files (x86)\MSI Afterburner\RTUI.dll
2014-12-06 09:01 - 2014-12-06 09:01 - 00071680 _____ () C:\Program Files (x86)\MSI Afterburner\RTMUI.dll
2014-12-06 09:01 - 2014-12-06 09:01 - 00056832 _____ () C:\Program Files (x86)\MSI Afterburner\RTFC.dll
2014-12-06 09:02 - 2014-12-06 09:02 - 00649216 _____ () C:\Program Files (x86)\MSI Afterburner\RTHAL.dll
2016-05-02 22:20 - 2016-04-28 01:25 - 01738904 _____ () C:\Users\Petr\AppData\Local\Google\Chrome\Application\50.0.2661.94\libglesv2.dll
2016-05-02 22:20 - 2016-04-28 01:25 - 00086168 _____ () C:\Users\Petr\AppData\Local\Google\Chrome\Application\50.0.2661.94\libegl.dll
2014-10-06 18:56 - 2014-09-28 18:59 - 00019872 _____ () C:\Program Files (x86)\Samsung\Samsung Magician\SAMSUNG_SSD.dll
2014-04-03 16:48 - 2014-04-03 16:48 - 01241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\ProgramData\TEMP:1CE11B51 [110]
AlternateDataStreams: C:\ProgramData\TEMP:90C664F3 [650]
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\sharepoint.com -> hxxps://gsosfm.sharepoint.com
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 15:25 - 2016-05-05 11:32 - 00000753 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run: => "TNOD UP"
HKLM\...\StartupApproved\Run32: => "IMSS"
HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud"
HKLM\...\StartupApproved\Run32: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run32: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "Adobe ARM"
HKLM\...\StartupApproved\Run32: => "Raptr"
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\StartupApproved\StartupFolder: => "Samsung Magician.lnk"
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\StartupApproved\StartupFolder: => "TEMP.bat"
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\StartupApproved\Run: => "Google Update"
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\StartupApproved\Run: => "DAEMON Tools Lite"
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\StartupApproved\Run: => "IDMan"
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\StartupApproved\Run: => "iFunBox"
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\StartupApproved\Run: => "Lync"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [UDP Query User{C5027DF3-7676-4EC5-B6F3-E86B9821BF67}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe
FirewallRules: [TCP Query User{9EEE5280-F3E8-4BAB-8297-4E87738DFCAF}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe
FirewallRules: [{1971807A-DE3A-47D4-905C-3B6DA51EF967}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\The Witcher Enhanced Edition\Digital Comic\DigitalComic.exe
FirewallRules: [{8A81D76F-41A3-4202-9F11-6181772190BC}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\The Witcher Enhanced Edition\Digital Comic\DigitalComic.exe
FirewallRules: [{68918EF6-0DFB-428F-BAA0-F6B4F2C99DF0}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\The Witcher Enhanced Edition\System\djinni!.exe
FirewallRules: [{09F0C546-6E8E-4FE8-8722-5AC5F7060D81}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\The Witcher Enhanced Edition\System\djinni!.exe
FirewallRules: [{C271A81D-2992-4FE8-95C5-5011DE9B9618}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\Reign Of Kings\Reign of Kings.exe
FirewallRules: [{3D459BA4-9EE6-440B-9865-2E421B2D9B9B}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\Reign Of Kings\Reign of Kings.exe
FirewallRules: [UDP Query User{1DA7168E-4C26-4703-BF92-6E00DA831E51}C:\program files (x86)\eurobattle.net\gproxy.exe] => (Allow) C:\program files (x86)\eurobattle.net\gproxy.exe
FirewallRules: [TCP Query User{6E707F6C-4047-4336-9DF2-4C354B4C5B76}C:\program files (x86)\eurobattle.net\gproxy.exe] => (Allow) C:\program files (x86)\eurobattle.net\gproxy.exe
FirewallRules: [{CFDF89C1-B23B-4E44-B7F4-79B7C959AFC3}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\Reign Of Kings\ROK.exe
FirewallRules: [{907E2891-18F7-40C4-BB76-842A13A08961}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\Reign Of Kings\ROK.exe
FirewallRules: [{7C65B6BA-0B3E-44E9-BC6B-493342C15F38}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{5D097E6F-DE72-4C85-946D-C1FC82232E4B}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{6A2405AD-956F-4622-9EE8-076EE702D41B}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{5AC01BA2-068A-4E04-976C-9F607513FB94}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{68F83E09-3150-40EE-AE16-383BAD79EE44}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{00EED4C4-C503-4C70-8706-7F7D7544771E}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{184E5CDC-B022-466B-8AB4-1B158E7F6FD9}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\SS2\Shock2.exe
FirewallRules: [{F6D96007-8FB9-41E2-BAC5-0DFA12473E9F}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\SS2\Shock2.exe
FirewallRules: [{38027914-D2C9-4739-88BA-D48711471A52}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{12B3A4CD-42EB-41E6-8507-86452E0295DE}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{137FE5F1-62C5-4206-AC3C-526B891BCE4A}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{424AF7CC-89D9-4D20-9DCD-AD3ACE572DF9}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{E969AAD3-283F-483F-BA41-20761D8CEAB4}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{E6F92A28-45BE-4AF8-A4EE-0327E7F26F2D}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{ADDBB436-0544-4D60-934F-32BB5535698C}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{9548F665-38DD-4F34-93D2-E200C5B97B43}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{590740B2-F00D-4EAB-B14C-4BAB064EA3BA}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{010100C6-D96A-47BD-8FD9-E40D8607CC1E}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [UDP Query User{85AEDF36-43DD-4AA8-8E65-4F14B118B655}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{617ECBF0-F527-41A0-B7CD-0D5EA9E20C20}C:\users\petr\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\petr\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [TCP Query User{492E3001-B943-403C-AAA6-0EDA0053C8B2}C:\users\petr\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\petr\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [TCP Query User{6147D9AD-D0E7-4E94-878B-4CE15AF1158A}D:\hry\counter strike 1.6 clean\hl.exe] => (Allow) D:\hry\counter strike 1.6 clean\hl.exe
FirewallRules: [UDP Query User{E3254333-F8D4-47F2-9F50-844706EBA8C2}D:\hry\counter strike 1.6 clean\hl.exe] => (Allow) D:\hry\counter strike 1.6 clean\hl.exe
FirewallRules: [TCP Query User{1288C616-82BA-41C3-9381-D0BA9FB47671}C:\users\petr\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\petr\appdata\local\google\chrome\application\chrome.exe
FirewallRules: [UDP Query User{3E27AEB5-6680-4998-8C21-7618134E55CA}C:\users\petr\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\petr\appdata\local\google\chrome\application\chrome.exe
FirewallRules: [{0442F190-AD50-49C6-B929-34992E3D6884}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{591BE741-DE5D-4306-BD98-FF057DF6DEA2}] => (Allow) D:\Hry\Steam Hry\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C28DEB94-20A7-4A29-BD89-CBB1B96286F0}] => (Allow) C:\Users\Petr\AppData\Roaming\uTorrent\utorrent.exe
FirewallRules: [{269F0105-6F5A-42A0-83E6-749DEEA64C08}] => (Allow) C:\Users\Petr\AppData\Roaming\uTorrent\utorrent.exe
FirewallRules: [{1856C548-7046-458A-8D61-8CA2F3522F3F}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{430E9FF1-B08F-4DF2-A7F0-0D0B13D2DB09}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{D502DCCC-5097-436C-8C53-1CC4E20DF55F}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{1613F483-A4B8-42A6-BBC4-D95DAA9EB8B7}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{D7037850-E6E3-4197-9FC2-E6FEF46756D7}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{015A57E1-2881-4363-BA0D-104CEEF360EA}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{5E30F0D8-7EF3-437C-9B72-6BAB0AC68212}] => (Allow) D:\Hry\Rise of Nations\thrones.exe
FirewallRules: [{222467F2-AE6B-4FD7-B356-9BC492F02CFF}] => (Allow) D:\Hry\Rise of Nations\thrones.exe
FirewallRules: [TCP Query User{8629AB47-6539-4F2E-9F95-9EA77DECCD0B}C:\hry\warcraft iii\war3.exe] => (Allow) C:\hry\warcraft iii\war3.exe
FirewallRules: [UDP Query User{A18DFDE0-35A1-4815-9C55-8A125B375B95}C:\hry\warcraft iii\war3.exe] => (Allow) C:\hry\warcraft iii\war3.exe
FirewallRules: [{28A5A3EE-D289-49E2-8F83-66B27E2C79FF}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{DEB397E9-D11A-4D76-AA0E-23FB3993648A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{F8CD2EBE-75E6-4A3B-8309-D8C09D180923}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{E5D07542-AB68-401E-80E5-1F4D7CC80189}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{AB9B4A21-3EAA-4F90-834D-70FF4A403D34}] => (Allow) D:\Hry\FlatOut Ultimate Carnage\Fouc.exe
FirewallRules: [{F747F76C-52A0-4C66-9807-EB8DA6F29B23}] => (Allow) D:\Hry\FlatOut Ultimate Carnage\Fouc.exe
FirewallRules: [{4157EECC-34FB-41C0-B0A9-4C718DC317DD}] => (Allow) C:\Users\Petr\AppData\Local\Google\Chrome\Application\chrome.exe
FirewallRules: [{100AD5EA-7C7A-4F04-A66E-9F2A04C32BF2}] => (Allow) C:\Program Files\iTunes\iTunes.exe
==================== Restore Points =========================
29-04-2016 22:08:36 Naplánovaný kontrolní bod
04-05-2016 12:34:37 Removed GUILTY GEAR X2 #RELOAD
04-05-2016 20:11:22 JRT Pre-Junkware Removal
==================== Faulty Device Manager Devices =============
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (05/04/2016 09:47:21 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program chrome.exe verze 50.0.2661.94 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.
ID procesu: efc
Čas spuštění: 01d1a63b39af0c08
Čas ukončení: 4
Cesta k aplikaci: C:\Users\Petr\AppData\Local\Google\Chrome\Application\chrome.exe
ID hlášení: 00f1e889-1231-11e6-83fc-0019e00b0663
Úplný název balíčku s chybou:
ID aplikace související s balíčkem s chybou:
Error: (05/04/2016 09:28:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: handle_resolve_request bad interfaceIndex 24
Error: (05/04/2016 09:28:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: handle_resolve_request bad interfaceIndex 23
Error: (05/04/2016 09:28:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: handle_resolve_request bad interfaceIndex 22
Error: (05/04/2016 09:28:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: handle_resolve_request bad interfaceIndex 21
Error: (05/04/2016 09:28:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: handle_resolve_request bad interfaceIndex 20
Error: (05/04/2016 09:28:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: handle_resolve_request bad interfaceIndex 19
Error: (05/04/2016 09:28:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: handle_resolve_request bad interfaceIndex 18
Error: (05/04/2016 09:28:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: handle_resolve_request bad interfaceIndex 17
Error: (05/04/2016 09:28:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: handle_resolve_request bad interfaceIndex 16
System errors:
=============
Error: (05/05/2016 11:44:35 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}
Error: (05/05/2016 11:41:28 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Virtualizace souborů nástroje Řízení uživatelských účtů neuspěla při spuštění v důsledku následující chyby:
%%1275
Error: (05/05/2016 11:41:02 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Hostitel synchronizace_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (05/05/2016 11:39:49 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (05/05/2016 11:39:49 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (05/05/2016 11:39:48 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (05/05/2016 11:39:48 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (05/05/2016 11:39:48 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (05/05/2016 11:13:32 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}
Error: (05/05/2016 11:08:21 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Virtualizace souborů nástroje Řízení uživatelských účtů neuspěla při spuštění v důsledku následující chyby:
%%1275
CodeIntegrity:
===================================
Date: 2016-05-05 11:45:36.479
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-05-05 11:45:36.468
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-05-05 11:45:36.325
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-05-05 11:45:36.311
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-05-05 11:45:36.296
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-05-05 11:45:36.273
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-05-05 11:45:36.259
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-05-05 11:45:36.241
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-05-05 11:44:58.929
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-05-05 11:44:58.917
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i5-4570S CPU @ 2.90GHz
Percentage of memory in use: 26%
Total physical RAM: 8120.07 MB
Available physical RAM: 5970.21 MB
Total Virtual: 9400.07 MB
Available Virtual: 7200.73 MB
==================== Drives ================================
Drive c: (Systém) (Fixed) (Total:99.83 GB) (Free:41.2 GB) NTFS
Drive d: (Data) (Fixed) (Total:732.42 GB) (Free:292.77 GB) NTFS
Drive e: (Programy) (Fixed) (Total:199.09 GB) (Free:34.54 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or

Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=99.8 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
========================================================
Disk: 1 (MBR Code: Windows 7 or

Partition 1: (Not Active) - (Size=732.4 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=199.1 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o preventivní kontrolu
Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.
(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).
Ulož jej na na plochu jako fixlist.txt
Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Aktualizuj javu:
http://www.oracle.com/technetwork/java/ ... 33155.html
Java SE Runtime Environment 8
Klikni na Accept License Agreement
Vyber si OS (Windows nebo Windows x64, Offline Installation)
jre-8-windows-i586-p.exe nebo
jre-8-windows-x64.exe
Stáhni ( download) a nainstaluj.
Ostatní javy odeber v přidat/odebrat programy.
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.
Kód: Vybrat vše
Start
CloseProcesses:
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\Run: [Google Update] => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc.)
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\MountPoints2: {75d6cbb7-5699-11e4-826c-d43d7eecfa0b} - "G:\setup.exe"
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => No File
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1292206800-3816184836-4294836885-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [No File]
U4 DiagTrack; no ImagePath
2016-04-24 12:24 - 2016-03-09 17:16 - 01070904 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4A0.tmp
2016-04-24 12:24 - 2016-03-09 17:16 - 00107792 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4E1.tmp
2016-04-24 12:24 - 2016-02-23 17:16 - 00552880 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw46F.tmp
2016-04-24 12:24 - 2016-02-23 17:16 - 00463744 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4F3.tmp
2016-04-24 12:24 - 2016-02-10 17:16 - 00287016 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4F4.tmp
2016-04-24 12:24 - 2016-02-10 17:16 - 00165344 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw514.tmp
2016-04-24 12:24 - 2016-02-10 17:16 - 00103064 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4B0.tmp
2016-04-24 12:24 - 2016-02-10 17:16 - 00074544 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4E2.tmp
2016-04-24 12:24 - 2016-02-10 17:16 - 00037656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4D1.tmp
2016-04-24 12:24 - 2016-02-10 17:15 - 00037144 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw48F.tmp
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
CustomCLSID: HKU\S-1-5-21-1292206800-3816184836-4294836885-1001_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Petr\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1292206800-3816184836-4294836885-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Petr\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll (Google Inc.)
Task: {11013F4E-6E9C-46B9-827F-DA10B3E86011} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.)
Task: {16C02394-846C-476C-BC07-C40FC1DA3230} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {1DD23B2C-7A3F-4E08-A1EE-440695E0A41C} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {557979F5-BF31-4404-9062-0635B9DF4699} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {5F7B90F5-225C-4F5F-AB48-595D6B73689F} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {77116FCC-8EE7-43B6-BEF3-5F11A365A912} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001Core => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {87D24623-1847-44B7-A2E6-3972DDCBA970} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {8BD95E71-2A16-46D6-8C89-D450E7024E00} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {96595D36-2E34-4781-B1AD-903B21295594} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {9B0A9A42-4B99-4B17-AB23-0CE92ADF24B2} - \GarminUpdaterTask -> No File <==== ATTENTION
Task: {B8AAF045-C266-44E7-9AD3-3600BC3CDCDA} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001UA => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {D54383A2-5176-4567-B3F7-3242C9D8C79A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {DCCC42F5-5A45-4F3E-BB9F-F047E12FD5B7} - System32\Tasks\SafeZone scheduled Autoupdate 1450426752 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-02-01] (Avast Software)
Task: {E08B2C1E-3013-4C1E-8E76-4A9FEE978ED8} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {E121A23D-70E1-4238-93F5-DC685B451EDA} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {EEF2B05B-7F09-4F1C-B67A-6D9DF674ACE2} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001Core.job => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001UA.job => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe
AlternateDataStreams: C:\ProgramData\TEMP:1CE11B51 [110]
AlternateDataStreams: C:\ProgramData\TEMP:90C664F3 [650]
EmptyTemp:
End
(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).
Ulož jej na na plochu jako fixlist.txt
Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Aktualizuj javu:
http://www.oracle.com/technetwork/java/ ... 33155.html
Java SE Runtime Environment 8
Klikni na Accept License Agreement
Vyber si OS (Windows nebo Windows x64, Offline Installation)
jre-8-windows-i586-p.exe nebo
jre-8-windows-x64.exe
Stáhni ( download) a nainstaluj.
Ostatní javy odeber v přidat/odebrat programy.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
- Clorky
- Moderátor / člen HW týmu
-
Master Level 8.5
- Příspěvky: 7032
- Registrován: květen 10
- Bydliště: Moravskoslezský kraj
- Pohlaví:
- Stav:
Offline
Re: Prosím o preventivní kontrolu
Fix result of Farbar Recovery Scan Tool (x64) Version:06-05-2016
Ran by Petr (2016-05-05 12:32:08) Run:1
Running from E:\Hlavní složky\Plocha
Loaded Profiles: Petr (Available Profiles: Petr & Táta)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\Run: [Google Update] => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc.)
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\MountPoints2: {75d6cbb7-5699-11e4-826c-d43d7eecfa0b} - "G:\setup.exe"
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => No File
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1292206800-3816184836-4294836885-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [No File]
U4 DiagTrack; no ImagePath
2016-04-24 12:24 - 2016-03-09 17:16 - 01070904 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4A0.tmp
2016-04-24 12:24 - 2016-03-09 17:16 - 00107792 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4E1.tmp
2016-04-24 12:24 - 2016-02-23 17:16 - 00552880 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw46F.tmp
2016-04-24 12:24 - 2016-02-23 17:16 - 00463744 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4F3.tmp
2016-04-24 12:24 - 2016-02-10 17:16 - 00287016 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4F4.tmp
2016-04-24 12:24 - 2016-02-10 17:16 - 00165344 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw514.tmp
2016-04-24 12:24 - 2016-02-10 17:16 - 00103064 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4B0.tmp
2016-04-24 12:24 - 2016-02-10 17:16 - 00074544 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4E2.tmp
2016-04-24 12:24 - 2016-02-10 17:16 - 00037656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4D1.tmp
2016-04-24 12:24 - 2016-02-10 17:15 - 00037144 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw48F.tmp
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
CustomCLSID: HKU\S-1-5-21-1292206800-3816184836-4294836885-1001_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Petr\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1292206800-3816184836-4294836885-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Petr\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll (Google Inc.)
Task: {11013F4E-6E9C-46B9-827F-DA10B3E86011} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.)
Task: {16C02394-846C-476C-BC07-C40FC1DA3230} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {1DD23B2C-7A3F-4E08-A1EE-440695E0A41C} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {557979F5-BF31-4404-9062-0635B9DF4699} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {5F7B90F5-225C-4F5F-AB48-595D6B73689F} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {77116FCC-8EE7-43B6-BEF3-5F11A365A912} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001Core => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {87D24623-1847-44B7-A2E6-3972DDCBA970} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {8BD95E71-2A16-46D6-8C89-D450E7024E00} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {96595D36-2E34-4781-B1AD-903B21295594} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {9B0A9A42-4B99-4B17-AB23-0CE92ADF24B2} - \GarminUpdaterTask -> No File <==== ATTENTION
Task: {B8AAF045-C266-44E7-9AD3-3600BC3CDCDA} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001UA => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {D54383A2-5176-4567-B3F7-3242C9D8C79A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {DCCC42F5-5A45-4F3E-BB9F-F047E12FD5B7} - System32\Tasks\SafeZone scheduled Autoupdate 1450426752 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-02-01] (Avast Software)
Task: {E08B2C1E-3013-4C1E-8E76-4A9FEE978ED8} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {E121A23D-70E1-4238-93F5-DC685B451EDA} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {EEF2B05B-7F09-4F1C-B67A-6D9DF674ACE2} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001Core.job => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001UA.job => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe
AlternateDataStreams: C:\ProgramData\TEMP:1CE11B51 [110]
AlternateDataStreams: C:\ProgramData\TEMP:90C664F3 [650]
EmptyTemp:
End
*****************
Processes closed successfully.
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update => value removed successfully
"HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{75d6cbb7-5699-11e4-826c-d43d7eecfa0b}" => key removed successfully
HKCR\CLSID\{75d6cbb7-5699-11e4-826c-d43d7eecfa0b} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast" => key removed successfully
HKCR\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ShareOverlay" => key removed successfully
HKCR\CLSID\{594D4122-1F87-41E2-96C7-825FB4796516} => key not found.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
"HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66}" => key removed successfully
HKCR\CLSID\{012E1000-F331-11DB-8314-0800200C9A66} => key not found.
"HKLM\Software\Wow6432Node\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0" => key removed successfully
DiagTrack => service removed successfully
C:\WINDOWS\system32\Drivers\asw4A0.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw4E1.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw46F.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw4F3.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw4F4.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw514.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw4B0.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw4E2.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw4D1.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw48F.tmp => moved successfully
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} => removed successfully
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} => removed successfully
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0} => removed successfully
"HKU\S-1-5-21-1292206800-3816184836-4294836885-1001_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}" => key removed successfully
"HKU\S-1-5-21-1292206800-3816184836-4294836885-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{11013F4E-6E9C-46B9-827F-DA10B3E86011}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{11013F4E-6E9C-46B9-827F-DA10B3E86011}" => key removed successfully
C:\WINDOWS\System32\Tasks\Apple\AppleSoftwareUpdate => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Apple\AppleSoftwareUpdate" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{16C02394-846C-476C-BC07-C40FC1DA3230}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{16C02394-846C-476C-BC07-C40FC1DA3230}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1DD23B2C-7A3F-4E08-A1EE-440695E0A41C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1DD23B2C-7A3F-4E08-A1EE-440695E0A41C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{557979F5-BF31-4404-9062-0635B9DF4699}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{557979F5-BF31-4404-9062-0635B9DF4699}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5F7B90F5-225C-4F5F-AB48-595D6B73689F}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5F7B90F5-225C-4F5F-AB48-595D6B73689F}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{77116FCC-8EE7-43B6-BEF3-5F11A365A912}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{77116FCC-8EE7-43B6-BEF3-5F11A365A912}" => key removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001Core => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001Core" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{87D24623-1847-44B7-A2E6-3972DDCBA970}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{87D24623-1847-44B7-A2E6-3972DDCBA970}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8BD95E71-2A16-46D6-8C89-D450E7024E00}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8BD95E71-2A16-46D6-8C89-D450E7024E00}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{96595D36-2E34-4781-B1AD-903B21295594}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96595D36-2E34-4781-B1AD-903B21295594}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9B0A9A42-4B99-4B17-AB23-0CE92ADF24B2}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9B0A9A42-4B99-4B17-AB23-0CE92ADF24B2}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GarminUpdaterTask" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B8AAF045-C266-44E7-9AD3-3600BC3CDCDA}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B8AAF045-C266-44E7-9AD3-3600BC3CDCDA}" => key removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001UA => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001UA" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D54383A2-5176-4567-B3F7-3242C9D8C79A}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D54383A2-5176-4567-B3F7-3242C9D8C79A}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DCCC42F5-5A45-4F3E-BB9F-F047E12FD5B7}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DCCC42F5-5A45-4F3E-BB9F-F047E12FD5B7}" => key removed successfully
C:\WINDOWS\System32\Tasks\SafeZone scheduled Autoupdate 1450426752 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SafeZone scheduled Autoupdate 1450426752" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E08B2C1E-3013-4C1E-8E76-4A9FEE978ED8}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E08B2C1E-3013-4C1E-8E76-4A9FEE978ED8}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E121A23D-70E1-4238-93F5-DC685B451EDA}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E121A23D-70E1-4238-93F5-DC685B451EDA}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EEF2B05B-7F09-4F1C-B67A-6D9DF674ACE2}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EEF2B05B-7F09-4F1C-B67A-6D9DF674ACE2}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d" => key removed successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001Core.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001UA.job => moved successfully
C:\ProgramData\TEMP => ":1CE11B51" ADS removed successfully.
C:\ProgramData\TEMP => ":90C664F3" ADS removed successfully.
EmptyTemp: => 259.6 MB temporary data Removed.
The system needed a reboot.
==== End of Fixlog 12:32:11 ====
Ran by Petr (2016-05-05 12:32:08) Run:1
Running from E:\Hlavní složky\Plocha
Loaded Profiles: Petr (Available Profiles: Petr & Táta)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\Run: [Google Update] => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc.)
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\...\MountPoints2: {75d6cbb7-5699-11e4-826c-d43d7eecfa0b} - "G:\setup.exe"
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => No File
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1292206800-3816184836-4294836885-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [No File]
U4 DiagTrack; no ImagePath
2016-04-24 12:24 - 2016-03-09 17:16 - 01070904 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4A0.tmp
2016-04-24 12:24 - 2016-03-09 17:16 - 00107792 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4E1.tmp
2016-04-24 12:24 - 2016-02-23 17:16 - 00552880 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw46F.tmp
2016-04-24 12:24 - 2016-02-23 17:16 - 00463744 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4F3.tmp
2016-04-24 12:24 - 2016-02-10 17:16 - 00287016 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4F4.tmp
2016-04-24 12:24 - 2016-02-10 17:16 - 00165344 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw514.tmp
2016-04-24 12:24 - 2016-02-10 17:16 - 00103064 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4B0.tmp
2016-04-24 12:24 - 2016-02-10 17:16 - 00074544 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4E2.tmp
2016-04-24 12:24 - 2016-02-10 17:16 - 00037656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw4D1.tmp
2016-04-24 12:24 - 2016-02-10 17:15 - 00037144 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw48F.tmp
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
CustomCLSID: HKU\S-1-5-21-1292206800-3816184836-4294836885-1001_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Petr\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1292206800-3816184836-4294836885-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Petr\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll (Google Inc.)
Task: {11013F4E-6E9C-46B9-827F-DA10B3E86011} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.)
Task: {16C02394-846C-476C-BC07-C40FC1DA3230} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {1DD23B2C-7A3F-4E08-A1EE-440695E0A41C} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {557979F5-BF31-4404-9062-0635B9DF4699} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {5F7B90F5-225C-4F5F-AB48-595D6B73689F} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {77116FCC-8EE7-43B6-BEF3-5F11A365A912} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001Core => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {87D24623-1847-44B7-A2E6-3972DDCBA970} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {8BD95E71-2A16-46D6-8C89-D450E7024E00} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {96595D36-2E34-4781-B1AD-903B21295594} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {9B0A9A42-4B99-4B17-AB23-0CE92ADF24B2} - \GarminUpdaterTask -> No File <==== ATTENTION
Task: {B8AAF045-C266-44E7-9AD3-3600BC3CDCDA} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001UA => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {D54383A2-5176-4567-B3F7-3242C9D8C79A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {DCCC42F5-5A45-4F3E-BB9F-F047E12FD5B7} - System32\Tasks\SafeZone scheduled Autoupdate 1450426752 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-02-01] (Avast Software)
Task: {E08B2C1E-3013-4C1E-8E76-4A9FEE978ED8} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {E121A23D-70E1-4238-93F5-DC685B451EDA} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {EEF2B05B-7F09-4F1C-B67A-6D9DF674ACE2} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001Core.job => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001UA.job => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe
AlternateDataStreams: C:\ProgramData\TEMP:1CE11B51 [110]
AlternateDataStreams: C:\ProgramData\TEMP:90C664F3 [650]
EmptyTemp:
End
*****************
Processes closed successfully.
HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update => value removed successfully
"HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{75d6cbb7-5699-11e4-826c-d43d7eecfa0b}" => key removed successfully
HKCR\CLSID\{75d6cbb7-5699-11e4-826c-d43d7eecfa0b} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast" => key removed successfully
HKCR\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ShareOverlay" => key removed successfully
HKCR\CLSID\{594D4122-1F87-41E2-96C7-825FB4796516} => key not found.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
"HKU\S-1-5-21-1292206800-3816184836-4294836885-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66}" => key removed successfully
HKCR\CLSID\{012E1000-F331-11DB-8314-0800200C9A66} => key not found.
"HKLM\Software\Wow6432Node\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0" => key removed successfully
DiagTrack => service removed successfully
C:\WINDOWS\system32\Drivers\asw4A0.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw4E1.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw46F.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw4F3.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw4F4.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw514.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw4B0.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw4E2.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw4D1.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw48F.tmp => moved successfully
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} => removed successfully
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} => removed successfully
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0} => removed successfully
"HKU\S-1-5-21-1292206800-3816184836-4294836885-1001_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}" => key removed successfully
"HKU\S-1-5-21-1292206800-3816184836-4294836885-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{11013F4E-6E9C-46B9-827F-DA10B3E86011}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{11013F4E-6E9C-46B9-827F-DA10B3E86011}" => key removed successfully
C:\WINDOWS\System32\Tasks\Apple\AppleSoftwareUpdate => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Apple\AppleSoftwareUpdate" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{16C02394-846C-476C-BC07-C40FC1DA3230}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{16C02394-846C-476C-BC07-C40FC1DA3230}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1DD23B2C-7A3F-4E08-A1EE-440695E0A41C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1DD23B2C-7A3F-4E08-A1EE-440695E0A41C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{557979F5-BF31-4404-9062-0635B9DF4699}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{557979F5-BF31-4404-9062-0635B9DF4699}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5F7B90F5-225C-4F5F-AB48-595D6B73689F}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5F7B90F5-225C-4F5F-AB48-595D6B73689F}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{77116FCC-8EE7-43B6-BEF3-5F11A365A912}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{77116FCC-8EE7-43B6-BEF3-5F11A365A912}" => key removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001Core => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001Core" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{87D24623-1847-44B7-A2E6-3972DDCBA970}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{87D24623-1847-44B7-A2E6-3972DDCBA970}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8BD95E71-2A16-46D6-8C89-D450E7024E00}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8BD95E71-2A16-46D6-8C89-D450E7024E00}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{96595D36-2E34-4781-B1AD-903B21295594}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96595D36-2E34-4781-B1AD-903B21295594}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9B0A9A42-4B99-4B17-AB23-0CE92ADF24B2}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9B0A9A42-4B99-4B17-AB23-0CE92ADF24B2}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GarminUpdaterTask" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B8AAF045-C266-44E7-9AD3-3600BC3CDCDA}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B8AAF045-C266-44E7-9AD3-3600BC3CDCDA}" => key removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001UA => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001UA" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D54383A2-5176-4567-B3F7-3242C9D8C79A}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D54383A2-5176-4567-B3F7-3242C9D8C79A}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DCCC42F5-5A45-4F3E-BB9F-F047E12FD5B7}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DCCC42F5-5A45-4F3E-BB9F-F047E12FD5B7}" => key removed successfully
C:\WINDOWS\System32\Tasks\SafeZone scheduled Autoupdate 1450426752 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SafeZone scheduled Autoupdate 1450426752" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E08B2C1E-3013-4C1E-8E76-4A9FEE978ED8}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E08B2C1E-3013-4C1E-8E76-4A9FEE978ED8}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E121A23D-70E1-4238-93F5-DC685B451EDA}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E121A23D-70E1-4238-93F5-DC685B451EDA}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EEF2B05B-7F09-4F1C-B67A-6D9DF674ACE2}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EEF2B05B-7F09-4F1C-B67A-6D9DF674ACE2}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d" => key removed successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001Core.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1292206800-3816184836-4294836885-1001UA.job => moved successfully
C:\ProgramData\TEMP => ":1CE11B51" ADS removed successfully.
C:\ProgramData\TEMP => ":90C664F3" ADS removed successfully.
EmptyTemp: => 259.6 MB temporary data Removed.
The system needed a reboot.
==== End of Fixlog 12:32:11 ====
- Orcus
- člen Security týmu
-
Elite Level 10.5
- Příspěvky: 10645
- Registrován: duben 10
- Bydliště: Okolo rostou 3 růže =o)
- Pohlaví:
- Stav:
Offline
Re: Prosím o preventivní kontrolu
Jak to vypadá teď?
Láska hřeje, ale uhlí je uhlí.
Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.

Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.
- Clorky
- Moderátor / člen HW týmu
-
Master Level 8.5
- Příspěvky: 7032
- Registrován: květen 10
- Bydliště: Moravskoslezský kraj
- Pohlaví:
- Stav:
Offline
Re: Prosím o preventivní kontrolu
Jo, prohlížeč běží plynuleji, náběh do systému taky rychlejší - díky moc, teď to vyčistíme od těch utilit?
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o preventivní kontrolu Vyřešeno
Ano.
Stáhni si zde DelFix
https://toolslib.net/downloads/viewdownload/2-delfix/
ulož si soubor na plochu.
Poklepáním na ikonu spusť nástroj Delfix.exe
( Ve Windows Vista, Windows 7 a 8, musíš spustit soubor pravým tlačítkem myši -> Spustit jako správce .
V hlavním menu, zkontroluj tyto možnosti - Odstranění dezinfekce nástrojů (Remove desinfection tools) – Vyčistit body obnovy (Purge System Restore)
Poté klikněte na tlačítko Spustit (Run) a nech nástroj dělat svoji práci
Poté se zpráva se otevře (DelFix.txt). Vlož celý obsah zprávy sem.Jinak je zpráva zde:
v C: \ DelFix.txt
Pokud nejsou problémy , je to vše a můžeš dát vyřešeno , zelenou fajfku.
Stáhni si zde DelFix
https://toolslib.net/downloads/viewdownload/2-delfix/
ulož si soubor na plochu.
Poklepáním na ikonu spusť nástroj Delfix.exe
( Ve Windows Vista, Windows 7 a 8, musíš spustit soubor pravým tlačítkem myši -> Spustit jako správce .
V hlavním menu, zkontroluj tyto možnosti - Odstranění dezinfekce nástrojů (Remove desinfection tools) – Vyčistit body obnovy (Purge System Restore)
Poté klikněte na tlačítko Spustit (Run) a nech nástroj dělat svoji práci
Poté se zpráva se otevře (DelFix.txt). Vlož celý obsah zprávy sem.Jinak je zpráva zde:
v C: \ DelFix.txt
Pokud nejsou problémy , je to vše a můžeš dát vyřešeno , zelenou fajfku.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
- Clorky
- Moderátor / člen HW týmu
-
Master Level 8.5
- Příspěvky: 7032
- Registrován: květen 10
- Bydliště: Moravskoslezský kraj
- Pohlaví:
- Stav:
Offline
Re: Prosím o preventivní kontrolu
Díky za pomoc, zamykám :)
# DelFix v1.013 - Logfile created 06/05/2016 at 06:56:59
# Updated 17/04/2016 by Xplode
# Username : Petr - I5-PETR
# Operating System : Windows 10 Pro (64 bits)
~ Removing disinfection tools ...
Deleted : C:\FRST
Deleted : C:\zoek_backup
Deleted : C:\AdwCleaner
Deleted : C:\zoek-results.log
Deleted : E:\Hlavní složky\Plocha\Fixlog.txt
Deleted : E:\Hlavní složky\Plocha\FRST64.exe
Deleted : HKLM\SOFTWARE\OldTimer Tools
Deleted : HKLM\SOFTWARE\AdwCleaner
Deleted : HKLM\SOFTWARE\TrendMicro\Hijackthis
~ Cleaning system restore ...
Deleted : RP #31 [Removed GUILTY GEAR X2 #RELOAD | 05/04/2016 10:34:37]
Deleted : RP #32 [JRT Pre-Junkware Removal | 05/04/2016 18:11:22]
New restore point created !
########## - EOF - ##########
# DelFix v1.013 - Logfile created 06/05/2016 at 06:56:59
# Updated 17/04/2016 by Xplode
# Username : Petr - I5-PETR
# Operating System : Windows 10 Pro (64 bits)
~ Removing disinfection tools ...
Deleted : C:\FRST
Deleted : C:\zoek_backup
Deleted : C:\AdwCleaner
Deleted : C:\zoek-results.log
Deleted : E:\Hlavní složky\Plocha\Fixlog.txt
Deleted : E:\Hlavní složky\Plocha\FRST64.exe
Deleted : HKLM\SOFTWARE\OldTimer Tools
Deleted : HKLM\SOFTWARE\AdwCleaner
Deleted : HKLM\SOFTWARE\TrendMicro\Hijackthis
~ Cleaning system restore ...
Deleted : RP #31 [Removed GUILTY GEAR X2 #RELOAD | 05/04/2016 10:34:37]
Deleted : RP #32 [JRT Pre-Junkware Removal | 05/04/2016 18:11:22]
New restore point created !
########## - EOF - ##########
Kdo je online
Uživatelé prohlížející si toto fórum: Google Adsense [Bot] a 92 hostů