Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Pomale PC

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Huso
Návštěvník
Návštěvník
Příspěvky: 166
Registrován: 18 lis 2007 19:00

Pomale PC

#1 Příspěvek od Huso »

Uz po niekolky raz...znovu vyrazne spomalena praca...netusim ci v pozadi nieco prebieha, nic nevidim, ale reaguje s vyraznym oneskorenim...

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 27-05.2019
Ran by HP (administrator) on HP-PC (Hewlett-Packard HP Pro3500 G2 MT PC) (29-05-2019 07:55:45)
Running from C:\Users\HP\Desktop
Loaded Profiles: HP (Available Profiles: HP)
Platform: Windows 8.1 Connected (Update) (X64) Language: Slovenčina (Slovensko)
Default browser: FF
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe
(CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
(Firebird Project) [File not signed] C:\Program Files (x86)\KROS\KROS FBServer\Firebird001\bin\fbserver.exe
(Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(HP Inc. -> HP Inc.) C:\Program Files\HP\HP Touchpoint Analytics Client\TouchpointAnalyticsClientService.exe
(Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Intel(R) Corporation) [File not signed] C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.1\avp.exe
(Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.1\avpui.exe
(KROS a.s. -> KROS a.s.) C:\Program Files (x86)\KROS\ALFA plus\!System\ALFAplus.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\AppVShNotify.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\EXCEL.EXE
(Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\prevhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(PS Media s.r.o. -> PS Media s.r.o.) C:\Windows\SysWOW64\ssins.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Samsung Electronics CO., LTD. -> ) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13667032 2014-03-27] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984 2014-04-20] (Ivaylo Beltchev -> IvoSoft) [File not signed]
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] (Samsung Electronics CO., LTD. -> )
HKU\S-1-5-21-1940277907-3814265933-3346958118-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [19645800 2019-01-10] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-1940277907-3814265933-3346958118-1001\...\Run: [EEDSpeedLauncher] => C:\windows\system32\eed_ec.dll [1848320 2017-07-10] (Microsoft Windows Hardware Compatibility Publisher -> )
HKU\S-1-5-21-1940277907-3814265933-3346958118-1001\...\RunOnce: [Delete Cached Update Binary] => C:\windows\system32\cmd.exe /q /c del /q "C:\Users\HP\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe"
HKU\S-1-5-21-1940277907-3814265933-3346958118-1001\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\windows\system32\cmd.exe /q /c del /q "C:\Users\HP\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe"
HKU\S-1-5-21-1940277907-3814265933-3346958118-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\windows\system32\ssText3d.scr [217088 2014-10-29] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-18\...\Run: [EEDSpeedLauncher] => C:\windows\system32\eed_ec.dll [1848320 2017-07-10] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\...\Drivers32: [VIDC.LAGS] => C:\windows\system32\lagarith.dll [148992 2011-12-07] ( ) [File not signed]
HKLM\...\Drivers32: [VIDC.X264] => C:\windows\system32\x264vfw64.dll [3502080 2014-07-22] (x264vfw project) [File not signed]
HKLM\...\Drivers32: [VIDC.XVID] => C:\windows\system32\xvidvfw.dll [258560 2011-06-24] () [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\windows\system32\ac3acm.acm [180736 2012-07-21] (fccHandler) [File not signed]
HKLM\...\Drivers32: [msacm.l3codecp] => C:\windows\system32\l3codecp.acm [177152 2014-10-29] (Microsoft Windows -> Fraunhofer Institut Integrierte Schaltungen IIS)
HKLM\...\Drivers32: [VIDC.LAGS] => C:\windows\SysWOW64\lagarith.dll [216064 2011-12-07] ( ) [File not signed]
HKLM\...\Drivers32: [VIDC.X264] => C:\Windows\SysWOW64\x264vfw.dll [3510784 2014-07-22] (x264vfw project) [File not signed]
HKLM\...\Drivers32: [VIDC.XVID] => C:\windows\SysWOW64\xvidvfw.dll [243200 2011-06-24] () [File not signed]
HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [112640 2014-10-06] () [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\windows\SysWOW64\ac3acm.acm [122880 2012-07-21] (fccHandler) [File not signed]
HKLM\...\Drivers32: [msacm.l3codecp] => C:\windows\SysWOW64\l3codecp.acm [186368 2014-10-29] (Microsoft Windows -> Fraunhofer Institut Integrierte Schaltungen IIS)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\74.0.3729.169\Installer\chrmstp.exe [2019-05-22] (Google LLC -> Google Inc.)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\62.0.3202.94\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2019-05-03] (Adobe Inc. -> Adobe Systems, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ALFA plus - rýchle spustenie.lnk [2016-03-02]
ShortcutTarget: ALFA plus - rýchle spustenie.lnk -> C:\Program Files (x86)\KROS\ALFA plus\!System\ALFAplus.exe (KROS a.s. -> KROS a.s.)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {1CC363DB-22ED-4605-A256-F0B0239D76B2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1488248 2018-12-10] (HP Inc. -> HP Inc.)
Task: {34E8A131-A995-4080-8FDE-DC0E09589EDE} - System32\Tasks\HPCeeScheduleForHP => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [96568 2015-06-16] (Hewlett-Packard Company -> Hewlett-Packard)
Task: {39972A59-D5CD-497A-9AE9-B81354A05A0A} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [979024 2019-02-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {49B4AE1A-4BB7-4746-B485-7A1F042B8022} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1195544 2018-12-16] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Task: {4DB4100A-49A3-451F-90B5-408F4D678473} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [652664 2019-04-17] (HP Inc. -> HP Inc.)
Task: {7A7C8C69-4EC3-488E-ADB0-E5AE5A5CE5C6} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [136056 2019-01-02] (HP Inc. -> HP Inc.)
Task: {7E834939-090C-46D1-9727-82DFBFA8EF98} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-02-05] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {83D89FA0-5CE4-4C53-BAB9-2C08B7E192FC} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [979024 2019-02-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {876657C5-018A-4764-9E43-7C136B266E6C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [237432 2019-04-29] (HP Inc. -> HP Inc.)
Task: {88B05E16-ABD3-4DFA-A785-4F0758316D5E} - System32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901} => C:\Program Files\Common Files\AV\Kaspersky Lab\upgrade_launcher.exe [516416 2017-10-15] (Kaspersky Lab -> AO Kaspersky Lab)
Task: {8E2D0B5B-55C6-423E-9DF6-00C1420A0158} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-05-15] (Adobe Inc. -> Adobe)
Task: {99CC4565-3BAB-4117-8311-93A2C71D91E7} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1488248 2018-12-10] (HP Inc. -> HP Inc.)
Task: {AEF6A392-C720-407F-B5E9-538299AB73EB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-11-24] (Google Inc -> Google Inc.)
Task: {D4DBD548-23D2-4081-BEFA-FC6D82CEDA9C} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [25128 2017-11-22] (HP Inc. -> )
Task: {EA8577F3-24D5-4E17-A737-F9C7791E3E7A} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [14679256 2019-01-10] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {F5E5DD56-C6A2-4006-9E5E-B01115085502} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-11-24] (Google Inc -> Google Inc.)
Task: {F8A5B6C9-E89E-40AB-A842-40A92DD6FE0A} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_192_Plugin.exe [1457208 2019-05-15] (Adobe Inc. -> Adobe)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\windows\Tasks\HPCeeScheduleForHP.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 195.146.128.62
Tcpip\..\Interfaces\{CAC150CC-B2D3-41EC-ABEC-EB13F4E28E18}: [DhcpNameServer] 192.168.1.1 195.146.128.62

Internet Explorer:
==================
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Kaspersky Protection -> {03993315-5CE9-4F00-8790-D14A94F1D91A} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.1\x64\IEExt\ie_plugin.dll [2017-12-05] (Kaspersky Lab -> AO Kaspersky Lab)
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2019-02-13] (Microsoft Corporation -> Microsoft Corporation)
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2019-04-30] (Microsoft Corporation -> Microsoft Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2016-07-21] (Hewlett-Packard Company -> HP Inc.)
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO-x32: Kaspersky Protection -> {03993315-5CE9-4F00-8790-D14A94F1D91A} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.1\IEExt\ie_plugin.dll [2017-12-05] (Kaspersky Lab -> AO Kaspersky Lab)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-07-21] (Hewlett-Packard Company -> HP Inc.)
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20] (Ivaylo Beltchev -> IvoSoft) [File not signed]
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (Ivaylo Beltchev -> IvoSoft) [File not signed]
Toolbar: HKLM - Kaspersky Protection Toolbar - {001032CB-B0AC-4F2C-A650-AD4B2B26E5DA} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.1\x64\IEExt\ie_plugin.dll [2017-12-05] (Kaspersky Lab -> AO Kaspersky Lab)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (Ivaylo Beltchev -> IvoSoft) [File not signed]
Toolbar: HKLM-x32 - Kaspersky Protection Toolbar - {001032CB-B0AC-4F2C-A650-AD4B2B26E5DA} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.1\IEExt\ie_plugin.dll [2017-12-05] (Kaspersky Lab -> AO Kaspersky Lab)
DPF: HKLM-x32 {1ABA5FAC-1417-422B-BA82-45C35E2C908B} hxxp://kitchenplanner.ikea.com/CZ/Core/Player/2020PlayerAX_IKEA_Win32.cab
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2017-07-18] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF DefaultProfile: o4a0yb2d.default
FF ProfilePath: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\o4a0yb2d.default [2019-05-29]
FF HKLM\...\Firefox\Extensions: [light_plugin_8B78A3E0B2874D708E89F783B0DB2AFB@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.1\FFExt\light_plugin_firefox\addon.xpi
FF Extension: (Kaspersky Protection) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.1\FFExt\light_plugin_firefox\addon.xpi [2018-03-29]
FF HKLM-x32\...\Firefox\Extensions: [light_plugin_8B78A3E0B2874D708E89F783B0DB2AFB@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.1\FFExt\light_plugin_firefox\addon.xpi
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_32_0_0_192.dll [2019-05-15] (Adobe Inc. -> )
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_192.dll [2019-05-15] (Adobe Inc. -> )
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-03-18] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-03-18] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2014-12-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-16] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-16] (Google Inc -> Google LLC)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-05-03] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR Profile: C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default [2019-05-02]
CHR Extension: (Dokumenty) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-07-20]
CHR Extension: (Disk Google) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-07-20]
CHR Extension: (YouTube) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-07-20]
CHR Extension: (Avira Browser Safety) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2018-07-20]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-07-20]
CHR Extension: (Kaspersky Protection) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpeeaghdjmhlakojjcgfdhgcejdaefmi [2018-07-20]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-07-20]
CHR Extension: (Gmail) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-07-20]
CHR Extension: (Chrome Media Router) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-07-20]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [lpeeaghdjmhlakojjcgfdhgcejdaefmi] - hxxps://chrome.google.com/webstore/detail/lpeeaghdjmhlakojjcgfdhgcejdaefmi
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lpeeaghdjmhlakojjcgfdhgcejdaefmi] - hxxps://chrome.google.com/webstore/detail/lpeeaghdjmhlakojjcgfdhgcejdaefmi

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AVP16.0.1; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.1\avp.exe [236928 2015-12-22] (Kaspersky Lab -> AO Kaspersky Lab)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [3058256 2019-02-13] (Microsoft Corporation -> Microsoft Corporation)
R2 CyberLink PowerDVD 12 Media Server Monitor Service; c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [77576 2013-08-12] (CyberLink Corp. -> CyberLink)
R2 CyberLink PowerDVD 12 Media Server Service; c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [298760 2013-08-12] (CyberLink Corp. -> CyberLink)
R2 FirebirdServerKROS_20400; C:\Program Files (x86)\KROS\KROS FBServer\Firebird001\bin\fbserver.exe [3764224 2011-10-11] (Firebird Project) [File not signed]
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [347512 2018-12-06] (HP Inc. -> HP Inc.)
R2 HPTouchpointAnalyticsService; C:\Program Files\HP\HP Touchpoint Analytics Client\TouchpointAnalyticsClientService.exe [332216 2017-11-22] (HP Inc. -> HP Inc.)
R2 Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; c:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel® Trusted Connect Service -> Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2014-03-18] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2014-03-18] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
S3 klvssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.1\x64\vssbridge64.exe [152488 2015-12-22] (Kaspersky Lab -> AO Kaspersky Lab)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6562472 2019-02-01] (Malwarebytes Corporation -> Malwarebytes)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [290520 2014-03-27] (Realtek Semiconductor Corp -> Realtek Semiconductor)
R2 ssinstall; C:\windows\SysWOW64\ssins.exe [4696960 2017-04-27] (PS Media s.r.o. -> PS Media s.r.o.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R0 cm_km; C:\windows\System32\DRIVERS\cm_km.sys [389816 2015-07-06] (Kaspersky Lab -> Kaspersky Lab ZAO)
R1 ESProtectionDriver; C:\windows\system32\drivers\mbae64.sys [153328 2019-01-08] (Malwarebytes Corporation -> Malwarebytes)
R3 igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [4221440 2014-02-25] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R0 kl1; C:\windows\System32\DRIVERS\kl1.sys [478392 2015-09-11] (Kaspersky Lab -> Kaspersky Lab ZAO)
R0 klbackupdisk; C:\windows\System32\DRIVERS\klbackupdisk.sys [53432 2015-06-06] (Kaspersky Lab -> Kaspersky Lab ZAO)
R1 klbackupflt; C:\windows\System32\DRIVERS\klbackupflt.sys [79752 2015-12-01] (Kaspersky Lab -> AO Kaspersky Lab)
R2 kldisk; C:\windows\system32\DRIVERS\kldisk.sys [78200 2015-12-02] (Kaspersky Lab -> AO Kaspersky Lab)
S0 klelam; C:\windows\System32\DRIVERS\klelam.sys [30328 2015-06-24] (Microsoft Windows Early Launch Anti-malware Publisher -> Kaspersky Lab)
R3 klflt; C:\windows\system32\DRIVERS\klflt.sys [186360 2017-10-15] (Kaspersky Lab -> AO Kaspersky Lab)
R1 klhk; C:\windows\system32\DRIVERS\klhk.sys [279240 2018-03-29] (Kaspersky Lab -> AO Kaspersky Lab)
R1 KLIF; C:\windows\System32\DRIVERS\klif.sys [1001672 2018-03-29] (Kaspersky Lab -> AO Kaspersky Lab)
R1 KLIM6; C:\windows\system32\DRIVERS\klim6.sys [51288 2016-05-05] (Kaspersky Lab -> AO Kaspersky Lab)
R3 klkbdflt; C:\windows\system32\DRIVERS\klkbdflt.sys [52608 2015-11-11] (Kaspersky Lab -> AO Kaspersky Lab)
R3 klmouflt; C:\windows\system32\DRIVERS\klmouflt.sys [41656 2015-06-07] (Kaspersky Lab -> Kaspersky Lab ZAO)
R1 klpd; C:\windows\System32\DRIVERS\klpd.sys [45960 2015-12-07] (Kaspersky Lab -> AO Kaspersky Lab)
R1 klwfp; C:\windows\system32\DRIVERS\klwfp.sys [87984 2016-08-16] (Kaspersky Lab -> AO Kaspersky Lab)
R1 Klwtp; C:\windows\system32\DRIVERS\klwtp.sys [116448 2017-03-14] (Kaspersky Lab -> AO Kaspersky Lab)
R1 kneps; C:\windows\system32\DRIVERS\kneps.sys [194440 2015-12-03] (Kaspersky Lab -> AO Kaspersky Lab)
R2 MBAMChameleon; C:\windows\System32\Drivers\MbamChameleon.sys [199768 2019-05-15] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMFarflt; C:\windows\System32\DRIVERS\farflt.sys [127136 2019-05-21] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMProtection; C:\windows\system32\DRIVERS\mbam.sys [73912 2019-05-28] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMSwissArmy; C:\windows\System32\Drivers\mbamswissarmy.sys [275232 2019-05-21] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMWebProtection; C:\windows\system32\DRIVERS\mwac.sys [117344 2019-05-21] (Malwarebytes Corporation -> Malwarebytes)
R3 MEIx64; C:\windows\System32\drivers\TeeDriverx64.sys [99288 2014-03-18] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
S3 ssudserd; C:\windows\system32\DRIVERS\ssudserd.sys [206080 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.(www.devguru.co.kr))
S3 WdBoot; C:\windows\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\windows\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-05-29 07:55 - 2019-05-29 07:56 - 000028536 _____ C:\Users\HP\Desktop\FRST.txt
2019-05-29 07:55 - 2019-05-29 07:55 - 000000000 ____D C:\Users\HP\Desktop\FRST-OlderVersion
2019-05-22 15:06 - 2019-05-22 15:07 - 000022012 _____ C:\Users\HP\Downloads\RD Zeman - HSV.xlsx
2019-05-22 08:45 - 2019-05-22 08:45 - 001445007 _____ C:\Users\HP\Desktop\Vampil - kruhovka elektro 2.pdf
2019-05-22 08:44 - 2019-05-22 08:44 - 000647848 _____ C:\Users\HP\Desktop\Vampil - kruhovka elektro 1.pdf
2019-05-21 11:44 - 2019-05-28 14:54 - 000073912 _____ (Malwarebytes) C:\windows\system32\Drivers\mbam.sys
2019-05-21 11:44 - 2019-05-21 11:44 - 000127136 _____ (Malwarebytes) C:\windows\system32\Drivers\farflt.sys
2019-05-21 11:44 - 2019-05-21 11:44 - 000117344 _____ (Malwarebytes) C:\windows\system32\Drivers\mwac.sys
2019-05-21 11:43 - 2019-05-21 11:43 - 000275232 _____ (Malwarebytes) C:\windows\system32\Drivers\mbamswissarmy.sys
2019-05-15 11:12 - 2019-05-15 11:12 - 000000000 ____D C:\Users\HP\AppData\Local\mbam
2019-05-15 11:11 - 2019-05-15 11:11 - 000199768 _____ (Malwarebytes) C:\windows\system32\Drivers\MbamChameleon.sys
2019-05-15 11:11 - 2019-05-15 11:11 - 000001890 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2019-05-15 11:11 - 2019-05-15 11:11 - 000000000 ____D C:\Users\HP\AppData\Local\mbamtray
2019-05-15 11:11 - 2019-05-15 11:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2019-05-15 11:11 - 2019-01-08 16:32 - 000153328 _____ (Malwarebytes) C:\windows\system32\Drivers\mbae64.sys
2019-05-15 11:08 - 2019-05-15 11:09 - 063182216 _____ (Malwarebytes ) C:\Users\HP\Desktop\mb3-setup-43841.43841-3.7.1.2839-1.0.586-1.0.10430.exe
2019-05-15 09:16 - 2019-05-24 09:07 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2019-05-15 08:34 - 2019-05-06 05:47 - 001311768 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll
2019-05-15 08:34 - 2019-05-06 05:36 - 001677024 _____ (Microsoft Corporation) C:\windows\system32\winload.efi
2019-05-15 08:34 - 2019-05-06 05:36 - 001537776 _____ (Microsoft Corporation) C:\windows\system32\winload.exe
2019-05-15 08:34 - 2019-05-06 05:35 - 007363320 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2019-05-15 08:34 - 2019-05-06 05:34 - 000805384 _____ (Microsoft Corporation) C:\windows\system32\oleaut32.dll
2019-05-15 08:34 - 2019-05-06 05:33 - 001136208 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll
2019-05-15 08:34 - 2019-05-06 04:12 - 000861184 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll
2019-05-15 08:34 - 2019-05-06 04:08 - 001040384 _____ (Microsoft Corporation) C:\windows\SysWOW64\kernel32.dll
2019-05-15 08:34 - 2019-05-06 03:41 - 001197056 _____ (Microsoft Corporation) C:\windows\system32\Windows.Globalization.dll
2019-05-15 08:34 - 2019-04-30 02:51 - 000578560 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2019-05-15 08:34 - 2019-04-30 02:51 - 000499200 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2019-05-15 08:34 - 2019-04-25 06:01 - 025730560 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2019-05-15 08:34 - 2019-04-25 05:40 - 002902016 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2019-05-15 08:34 - 2019-04-25 05:31 - 020279296 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2019-05-15 08:34 - 2019-04-25 05:28 - 005775360 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2019-05-15 08:34 - 2019-04-25 05:26 - 000790528 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2019-05-15 08:34 - 2019-04-25 05:09 - 002295808 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2019-05-15 08:34 - 2019-04-25 05:03 - 000663040 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2019-05-15 08:34 - 2019-04-25 04:58 - 001033216 _____ (Microsoft Corporation) C:\windows\system32\inetcomm.dll
2019-05-15 08:34 - 2019-04-25 04:50 - 000809472 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2019-05-15 08:34 - 2019-04-25 04:46 - 015285248 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2019-05-15 08:34 - 2019-04-25 04:42 - 000880640 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcomm.dll
2019-05-15 08:34 - 2019-04-25 04:40 - 004493312 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2019-05-15 08:34 - 2019-04-25 04:37 - 000696320 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2019-05-15 08:34 - 2019-04-25 04:35 - 013682176 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2019-05-15 08:34 - 2019-04-25 04:35 - 005303808 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2019-05-15 08:34 - 2019-04-25 04:24 - 001557504 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2019-05-15 08:34 - 2019-04-25 04:18 - 004831232 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2019-05-15 08:34 - 2019-04-25 04:14 - 001323008 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2019-05-15 08:34 - 2019-04-25 04:14 - 000800768 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2019-05-15 08:34 - 2019-04-25 04:12 - 000710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2019-05-15 08:34 - 2019-04-17 02:45 - 022373296 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2019-05-15 08:34 - 2019-04-17 02:41 - 019790872 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2019-05-15 08:34 - 2019-04-16 15:45 - 001756160 _____ (Microsoft Corporation) C:\windows\system32\GdiPlus.dll
2019-05-15 08:34 - 2019-04-16 15:40 - 001493504 _____ (Microsoft Corporation) C:\windows\SysWOW64\GdiPlus.dll
2019-05-15 08:34 - 2019-04-14 18:37 - 000096768 _____ (Microsoft Corporation) C:\windows\system32\fontsub.dll
2019-05-15 08:34 - 2019-04-14 18:35 - 000148992 _____ (Microsoft Corporation) C:\windows\system32\t2embed.dll
2019-05-15 08:34 - 2019-04-14 18:09 - 000078336 _____ (Microsoft Corporation) C:\windows\SysWOW64\fontsub.dll
2019-05-15 08:34 - 2019-04-14 18:07 - 000113664 _____ (Microsoft Corporation) C:\windows\SysWOW64\t2embed.dll
2019-05-15 08:34 - 2019-04-09 00:17 - 000537096 _____ (Microsoft Corporation) C:\windows\system32\wer.dll
2019-05-15 08:34 - 2019-04-09 00:17 - 000139912 _____ (Microsoft Corporation) C:\windows\system32\wermgr.exe
2019-05-15 08:34 - 2019-04-09 00:13 - 000449744 _____ (Microsoft Corporation) C:\windows\SysWOW64\wer.dll
2019-05-15 08:34 - 2019-04-09 00:12 - 000136736 _____ (Microsoft Corporation) C:\windows\SysWOW64\wermgr.exe
2019-05-15 08:34 - 2019-04-08 23:40 - 000136432 _____ (Microsoft Corporation) C:\windows\system32\Drivers\wfplwfs.sys
2019-05-15 08:34 - 2019-04-07 02:57 - 001214720 _____ (Microsoft Corporation) C:\windows\SysWOW64\ole32.dll
2019-05-15 08:34 - 2019-04-06 22:31 - 001311744 _____ (Microsoft Corporation) C:\windows\SysWOW64\msjet40.dll
2019-05-15 08:34 - 2019-04-06 22:31 - 000376320 _____ (Microsoft Corporation) C:\windows\SysWOW64\mspbde40.dll
2019-05-15 08:34 - 2019-04-06 22:31 - 000353280 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrd3x40.dll
2019-05-15 08:34 - 2019-04-06 22:31 - 000341504 _____ (Microsoft Corporation) C:\windows\SysWOW64\msexcl40.dll
2019-05-15 08:34 - 2019-04-06 22:31 - 000240640 _____ (Microsoft Corporation) C:\windows\SysWOW64\msltus40.dll
2019-05-15 08:34 - 2019-04-06 20:39 - 002172832 _____ (Microsoft Corporation) C:\windows\system32\combase.dll
2019-05-15 08:34 - 2019-04-06 20:39 - 001662512 _____ (Microsoft Corporation) C:\windows\system32\ole32.dll
2019-05-15 08:34 - 2019-04-06 17:42 - 000809472 _____ (Microsoft Corporation) C:\windows\system32\rpcss.dll
2019-05-15 08:34 - 2019-04-06 00:47 - 000096208 _____ (Microsoft Corporation) C:\windows\system32\cryptdll.dll
2019-05-15 08:34 - 2019-04-06 00:46 - 000177608 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2019-05-15 08:34 - 2019-04-06 00:44 - 000073248 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptdll.dll
2019-05-15 08:34 - 2019-04-05 16:07 - 003324928 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2019-05-15 08:34 - 2019-04-05 16:06 - 001253888 _____ (Microsoft Corporation) C:\windows\system32\werconcpl.dll
2019-05-15 08:34 - 2019-04-05 16:06 - 000176640 _____ (Microsoft Corporation) C:\windows\system32\werui.dll
2019-05-15 08:34 - 2019-04-05 16:06 - 000086528 _____ (Microsoft Corporation) C:\windows\system32\wercplsupport.dll
2019-05-15 08:34 - 2019-04-05 16:01 - 003618304 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2019-05-15 08:34 - 2019-04-05 16:01 - 000160256 _____ (Microsoft Corporation) C:\windows\SysWOW64\werui.dll
2019-05-15 08:34 - 2019-04-05 01:58 - 000863232 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Globalization.dll
2019-05-15 08:34 - 2019-04-05 00:15 - 000513416 _____ C:\windows\SysWOW64\locale.nls
2019-05-15 08:34 - 2019-04-05 00:15 - 000513416 _____ C:\windows\system32\locale.nls
2019-05-15 08:34 - 2019-04-04 20:01 - 000469504 _____ (Microsoft Corporation) C:\windows\system32\nltest.exe
2019-05-15 08:34 - 2019-04-04 19:41 - 000445440 _____ (Microsoft Corporation) C:\windows\system32\certcli.dll
2019-05-15 08:34 - 2019-04-04 19:10 - 001080320 _____ (Microsoft Corporation) C:\windows\system32\IKEEXT.DLL
2019-05-15 08:34 - 2019-04-04 18:49 - 000324096 _____ (Microsoft Corporation) C:\windows\SysWOW64\certcli.dll
2019-05-15 08:34 - 2019-04-04 18:48 - 000713216 _____ (Microsoft Corporation) C:\windows\system32\nshwfp.dll
2019-05-15 08:34 - 2019-04-04 18:44 - 002779648 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2019-05-15 08:34 - 2019-04-04 18:15 - 000562176 _____ (Microsoft Corporation) C:\windows\SysWOW64\nshwfp.dll
2019-05-15 08:34 - 2019-04-04 18:10 - 002464256 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2019-05-14 14:52 - 2019-05-14 14:52 - 008066813 _____ C:\Users\HP\Downloads\zasilka-MYVM3FTUEMGAGXNV.zip
2019-04-29 08:11 - 2019-04-29 08:11 - 000018432 _____ C:\Users\HP\Downloads\Faktúry(3).xls

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-05-29 07:55 - 2019-02-01 11:24 - 000000000 ____D C:\FRST
2019-05-29 07:55 - 2019-02-01 11:20 - 002435584 _____ (Farbar) C:\Users\HP\Desktop\FRST64.exe
2019-05-29 07:52 - 2015-11-20 11:20 - 000000000 ____D C:\ProgramData\Kaspersky Lab
2019-05-29 07:21 - 2018-12-12 09:44 - 000003140 _____ C:\windows\System32\Tasks\HPCeeScheduleForHP
2019-05-29 07:21 - 2018-12-12 09:44 - 000000332 _____ C:\windows\Tasks\HPCeeScheduleForHP.job
2019-05-29 07:18 - 2014-12-02 01:06 - 000003946 _____ C:\windows\System32\Tasks\User_Feed_Synchronization-{A52CA3FF-104F-46BA-BC04-E3A96EFDBEB7}
2019-05-28 11:57 - 2014-12-02 01:01 - 000000000 ____D C:\Users\HP\AppData\Local\Packages
2019-05-24 11:29 - 2013-08-22 15:25 - 000262144 ___SH C:\windows\system32\config\ELAM
2019-05-23 15:23 - 2018-09-25 08:42 - 000000000 ____D C:\Users\HP\Documents\Scan
2019-05-23 08:39 - 2014-12-02 01:07 - 000003600 _____ C:\windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1940277907-3814265933-3346958118-1001
2019-05-23 08:27 - 2017-07-18 08:25 - 000003162 _____ C:\windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1940277907-3814265933-3346958118-1001
2019-05-23 08:25 - 2018-01-10 09:11 - 000002288 _____ C:\Users\HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive for Business.lnk
2019-05-22 15:34 - 2018-09-25 08:41 - 000000000 ____D C:\ProgramData\boost_interprocess
2019-05-22 11:01 - 2013-08-22 17:36 - 000000000 ____D C:\windows\rescache
2019-05-22 08:56 - 2017-11-24 17:19 - 000002263 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-05-22 08:56 - 2017-11-24 17:19 - 000002222 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-05-21 11:50 - 2017-07-18 08:16 - 000015840 _____ C:\windows\system32\perfh01B.dat
2019-05-21 11:50 - 2017-07-18 08:16 - 000005926 _____ C:\windows\system32\perfc01B.dat
2019-05-21 11:50 - 2014-03-18 17:32 - 000874670 _____ C:\windows\system32\PerfStringBackup.INI
2019-05-21 11:50 - 2013-08-22 15:36 - 000000000 ____D C:\windows\Inf
2019-05-21 11:47 - 2016-11-22 10:48 - 000000000 ____D C:\Users\HP\AppData\LocalLow\Mozilla
2019-05-21 11:47 - 2015-01-26 15:29 - 000000000 ____D C:\ProgramData\firebird
2019-05-21 11:47 - 2014-12-08 09:26 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2019-05-21 11:46 - 2014-12-08 09:26 - 000001182 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2019-05-21 11:46 - 2013-08-22 17:36 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-05-21 11:43 - 2016-08-12 10:31 - 000002440 _____ C:\Users\Public\Desktop\Kaspersky Anti-Virus.lnk
2019-05-21 11:43 - 2014-12-03 13:02 - 000000000 ____D C:\Program Files\Microsoft Office 15
2019-05-21 11:43 - 2013-08-22 16:45 - 000000006 ____H C:\windows\Tasks\SA.DAT
2019-05-21 11:41 - 2013-08-22 15:25 - 000262144 ___SH C:\windows\system32\config\BBI
2019-05-21 11:37 - 2013-08-22 17:36 - 000000000 ___RD C:\windows\ToastData
2019-05-21 11:36 - 2014-12-02 01:12 - 000000000 ____D C:\Users\HP\AppData\Roaming\ClassicShell
2019-05-17 13:48 - 2017-04-05 15:45 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-05-16 08:12 - 2019-03-28 15:42 - 000003370 _____ C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA
2019-05-16 08:12 - 2019-03-28 15:42 - 000003242 _____ C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore
2019-05-15 11:11 - 2017-04-18 14:16 - 000000000 ____D C:\ProgramData\Malwarebytes
2019-05-15 09:16 - 2017-09-14 11:55 - 000000000 ____D C:\Users\HP\Documents\Adobe
2019-05-15 09:09 - 2013-08-22 17:20 - 000000000 ____D C:\windows\CbsTemp
2019-05-15 09:05 - 2014-12-05 16:29 - 000000000 ____D C:\windows\system32\MRT
2019-05-15 09:01 - 2018-03-14 10:01 - 000004450 _____ C:\windows\System32\Tasks\Adobe Flash Player NPAPI Notifier
2019-05-15 09:01 - 2014-12-08 11:30 - 000004288 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater
2019-05-15 09:01 - 2013-08-22 17:36 - 000000000 ____D C:\windows\SysWOW64\Macromed
2019-05-15 09:01 - 2013-08-22 17:36 - 000000000 ____D C:\windows\system32\Macromed
2019-05-15 08:59 - 2014-12-05 16:29 - 132445408 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe
2019-05-02 23:59 - 2018-03-19 09:30 - 000835688 _____ (Adobe) C:\windows\SysWOW64\FlashPlayerApp.exe
2019-05-02 23:59 - 2018-03-19 09:30 - 000179816 _____ (Adobe) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2019-04-29 09:54 - 2013-08-22 17:36 - 000000000 ___HD C:\Program Files\WindowsApps
2019-04-29 09:54 - 2013-08-22 17:36 - 000000000 ____D C:\windows\AppReadiness

==================== Files in the root of some directories =======

2017-04-10 08:32 - 2017-04-10 08:32 - 000000000 _____ () C:\Users\HP\AppData\Local\{526FF1C0-1711-450E-84B5-B7969609F375}

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)


LastRegBack: 2019-05-22 09:09
==================== End of FRST.txt ============================



Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-05.2019
Ran by HP (29-05-2019 07:57:27)
Running from C:\Users\HP\Desktop
Windows 8.1 Connected (Update) (X64) (2014-12-01 23:00:57)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1940277907-3814265933-3346958118-500 - Administrator - Disabled)
Guest (S-1-5-21-1940277907-3814265933-3346958118-501 - Limited - Disabled)
HP (S-1-5-21-1940277907-3814265933-3346958118-1001 - Administrator - Enabled) => C:\Users\HP

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Kaspersky Anti-Virus (Enabled - Up to date) {86367591-4BE4-AE08-2FD9-7FCB8259CD98}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Kaspersky Anti-Virus (Enabled - Up to date) {3D579475-6DDE-A186-1569-44B9F9DE8725}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 15.13 (HKLM-x32\...\7-Zip) (Version: 15.13 - Igor Pavlov)
Adobe Acrobat Reader DC - Slovak (HKLM-x32\...\{AC76BA86-7AD7-1051-7B44-AC0F074E4100}) (Version: 19.012.20034 - Adobe Systems Incorporated)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.192 - Adobe)
ALFA plus 7.20.00 - C:\Program Files (x86)\KROS\ALFA plus\ (HKLM-x32\...\{236521C4-CF98-4D10-AC1B-F03229B8A114}) (Version: 7.20.00 - KROS a.s.)
CCleaner (HKLM\...\CCleaner) (Version: 5.52 - Piriform)
Classic Shell (HKLM\...\{840C85B7-D3D6-4143-9AF9-DAE80FD54CFC}) (Version: 4.1.0 - IvoSoft)
Common Desktop Agent (HKLM\...\{031A0E14-0413-4C97-9772-2639B782F46F}) (Version: 1.62.0 - OEM) Hidden
CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.2.3212 - CyberLink Corp.)
Elcomm (HKLM-x32\...\Elcomm) (Version: - )
Extended Asian Language font pack for Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-2530-0000-AC13084E6700}) (Version: 19.008.20071 - Adobe Systems Incorporated)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 74.0.3729.169 - Spoločnosť Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.169 - Google Inc.) Hidden
Hewlett-Packard ACLM.NET v1.2.2.3 (HKLM-x32\...\{6F340107-F9AA-47C6-B54C-C3A19F11553F}) (Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP Documentation (HKLM-x32\...\{229FDD0B-B642-4032-8C15-772B47797B8D}) (Version: 1.2.0.0 - Hewlett-Packard)
HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.7493.4758 - Hewlett-Packard)
HP Support Assistant (HKLM-x32\...\{79C54A05-F146-4EA0-8A70-D4EFE6181E52}) (Version: 8.7.50.3 - Hewlett-Packard Company)
HP Support Information (HKLM-x32\...\{B2B7B1C8-7C8B-476C-BE2C-049731C55992}) (Version: 13.00.0000 - Hewlett-Packard)
HP Support Solutions Framework (HKLM-x32\...\{A806B71B-00A4-4BFC-9476-3CBEFBE440E5}) (Version: 12.10.49.21 - Hewlett-Packard Company)
HP Touchpoint Analytics Client (HKLM\...\{E5FB98E0-0784-44F0-8CEC-95CD4690C43F}) (Version: 4.0.2.1439 - HP Inc.)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.13.1706 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3412 - Intel Corporation)
Kaspersky Anti-Virus (HKLM-x32\...\{F575F386-57EF-4943-B003-A13F13B05EEB}) (Version: 16.0.1.445 - Kaspersky Lab) Hidden
Kaspersky Anti-Virus (HKLM-x32\...\InstallWIX_{F575F386-57EF-4943-B003-A13F13B05EEB}) (Version: 16.0.1.445 - Kaspersky Lab)
K-Lite Mega Codec Pack 10.8.0 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.8.0 - )
Malwarebytes verzia 3.7.1.2839 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.7.1.2839 - Malwarebytes)
Microsoft Access database engine 2010 (English) (HKLM-x32\...\{90140000-00D1-0409-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office 2013 pre študentov a domácnosti - sk-sk (HKLM\...\HomeStudentRetail - sk-sk) (Version: 15.0.5137.1000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1940277907-3814265933-3346958118-1001\...\OneDriveSetup.exe) (Version: 19.070.0410.0005 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (HKLM-x32\...\{6e8f74e0-43bd-4dce-8477-6ff6828acc07}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Mozilla Firefox 66.0.5 (x64 sk) (HKLM\...\Mozilla Firefox 66.0.5 (x64 sk)) (Version: 66.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 66.0.5.7066 - Mozilla)
Office 15 Click-to-Run Extensibility Component (HKLM-x32\...\{90150000-008C-0000-0000-0000000FF1CE}) (Version: 15.0.5137.1000 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (HKLM\...\{90150000-008F-0000-1000-0000000FF1CE}) (Version: 15.0.5137.1000 - Microsoft Corporation) Hidden
OLYMP 16.20.00 (HKLM-x32\...\{E632280B-3D7A-41B5-8F20-79895AFFAC3F}) (Version: 16.20.00 - KROS a.s.)
OMEGA 18.61.00 (HKLM-x32\...\{B689E116-35E5-48EF-908E-0B2605FF883F}) (Version: 18.61.00 - KROS a.s.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7179 - Realtek Semiconductor Corp.)
Recovery Manager (HKLM-x32\...\{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}) (Version: 5.5.0.7316 - CyberLink Corp.) Hidden
Samsung Easy Document Creator (HKLM-x32\...\Samsung Easy Document Creator) (Version: 1.06.46 (30.10.2014) - Samsung Electronics Co., Ltd.)
Samsung Easy Printer Manager (HKLM-x32\...\Samsung Easy Printer Manager) (Version: 1.06.00.08(7.9.2016) - Samsung Electronics Co., Ltd.)
Samsung M2070 Series (HKLM-x32\...\Samsung M2070 Series) (Version: 1.27 (21.7.2017) - Samsung Electronics Co., Ltd.)
Samsung Printer Diagnostics (HKLM-x32\...\Samsung Printer Diagnostics) (Version: 1.0.1.6.02 - Samsung Electronics Co., Ltd.)
Samsung Printer Live Update (HKLM-x32\...\Samsung Printer Live Update) (Version: 1.01.00:04(2013-04-22) - Samsung Electronics Co., Ltd.)
Samsung Scan Process Machine (HKLM-x32\...\Samsung Scan Process Machine) (Version: 1.03.05.18 - Samsung Electronics Co., Ltd.) Hidden
Skype™ 6.21 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.21.104 - Skype Technologies S.A.)
SNS Upload for Easy Document Creator (HKLM-x32\...\{B6B5F07C-88D5-49D3-A1A7-A6D4BC37DCCC}) (Version: 1.0.0 - Samsung Electronics Co.,Ltd)
View User's Guide (HKLM-x32\...\View User Guide) (Version: 3.60.47.0 - )
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
WinRAR 5.11 (64-bitová verzia) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH)

Packages:
=========
Getting Started with Windows 8 -> C:\Program Files\WindowsApps\AD2F1837.GettingStartedwithWindows8_1.6.0.0_neutral__v10z8vjag6ke6 [2015-03-03] (Hewlett-Packard Company)
HP Registration -> C:\Program Files\WindowsApps\AD2F1837.HPRegistration_1.2.1.166_neutral__v10z8vjag6ke6 [2014-12-03] (Hewlett-Packard Company)
Výber prehľadávača -> C:\windows\BrowserChoice [2014-12-08] (Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (Ivaylo Beltchev -> IvoSoft) [File not signed]
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (Ivaylo Beltchev -> IvoSoft) [File not signed]
ContextMenuHandlers1-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files (x86)\7-Zip\7-zip.dll [2015-12-31] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [Kaspersky Anti-Virus 16.0.1] -> {7E2FE095-E536-4F69-AC17-997E9EAEBD4D} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.1\x64\shellex.dll [2015-12-22] (Kaspersky Lab -> AO Kaspersky Lab)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2014-08-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2014-08-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [Kaspersky Anti-Virus 16.0.1] -> {7E2FE095-E536-4F69-AC17-997E9EAEBD4D} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.1\x64\shellex.dll [2015-12-22] (Kaspersky Lab -> AO Kaspersky Lab)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-02-01] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers4-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files (x86)\7-Zip\7-zip.dll [2015-12-31] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [Kaspersky Anti-Virus 16.0.1] -> {7E2FE095-E536-4F69-AC17-997E9EAEBD4D} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.1\x64\shellex.dll [2015-12-22] (Kaspersky Lab -> AO Kaspersky Lab)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\windows\system32\igfxpph.dll [2014-02-25] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files (x86)\7-Zip\7-zip.dll [2015-12-31] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [Kaspersky Anti-Virus 16.0.1] -> {7E2FE095-E536-4F69-AC17-997E9EAEBD4D} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.1\x64\shellex.dll [2015-12-22] (Kaspersky Lab -> AO Kaspersky Lab)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-02-01] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [StartMenuExt] -> {E595F05F-903F-4318-8B0A-7F633B520D2B} => C:\windows\system32\StartMenuHelper64.dll [2014-04-20] (Ivaylo Beltchev -> IvoSoft) [File not signed]
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2014-08-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2014-08-27] (win.rar GmbH -> Alexander Roshal)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2014-10-30 09:02 - 2014-10-30 09:02 - 000537088 _____ () [File not signed] C:\Program Files (x86)\Samsung\Easy Document Creator\EDCAddin.dll
2014-10-30 09:02 - 2014-10-30 09:02 - 000626176 _____ () [File not signed] C:\Program Files (x86)\Samsung\Easy Document Creator\EDCOffice.dll
2014-09-08 13:38 - 2014-09-08 13:38 - 000051200 _____ () [File not signed] C:\Program Files\Common Files\Common Desktop Agent\CDASrvPS.dll
2016-08-12 10:37 - 2016-08-12 10:37 - 000630272 _____ (AO Kaspersky Lab) [File not signed] C:\ProgramData\Kaspersky Lab\AVP16.0.1\Bases\Cache\intctrl.kdl.0000000000099e00-01d1ed6e51c905fb-01d1e94e6c0d8000
2015-01-26 15:23 - 2011-10-11 10:59 - 003764224 _____ (Firebird Project) [File not signed] C:\Program Files (x86)\KROS\KROS FBServer\Firebird001\bin\fbserver.exe
2015-01-26 15:23 - 2011-10-11 10:59 - 000007680 _____ (Firebird Project) [File not signed] C:\Program Files (x86)\KROS\KROS FBServer\Firebird001\bin\ib_util.dll
2015-01-26 15:24 - 2011-10-11 10:59 - 000921600 _____ (Firebird Project) [File not signed] C:\Program Files (x86)\KROS\KROS FBServer\Firebird001\intl\fbintl.DLL
2015-01-26 15:24 - 2011-10-11 10:59 - 000434176 _____ (Firebird Project) [File not signed] C:\Program Files (x86)\KROS\KROS FBServer\Firebird001\plugins\fbtrace.dll
2015-01-26 15:23 - 2011-10-11 10:59 - 001568768 _____ (IBM Corporation and others) [File not signed] C:\Program Files (x86)\KROS\KROS FBServer\Firebird001\bin\icudt30.dll
2015-01-26 15:23 - 2011-10-11 10:59 - 000675840 _____ (IBM Corporation and others) [File not signed] C:\Program Files (x86)\KROS\KROS FBServer\Firebird001\bin\icuuc30.dll
2013-05-11 18:45 - 2013-05-11 18:45 - 000733696 _____ (Intel(R) Corporation) [File not signed] c:\Program Files\Intel\iCLS Client\HeciServer.exe
2014-04-20 11:17 - 2014-04-20 11:17 - 000803520 _____ (Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicExplorer64.dll
2014-04-20 11:17 - 2014-04-20 11:17 - 000161984 _____ (Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicStartMenu.exe
2014-04-20 11:17 - 2014-04-20 11:17 - 003374272 _____ (Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicStartMenuDLL.dll
2014-04-20 11:17 - 2014-04-20 11:17 - 000284864 _____ (Ivaylo Beltchev -> IvoSoft) [File not signed] C:\windows\system32\StartMenuHelper64.dll
2014-09-24 11:04 - 2013-07-08 09:21 - 000499712 _____ (Microsoft Corporation) [File not signed] c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\MSVCP71.dll
2014-09-24 11:04 - 2013-07-08 09:21 - 000348160 _____ (Microsoft Corporation) [File not signed] c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\MSVCR71.dll
2016-02-01 16:28 - 2016-02-01 16:28 - 000852992 _____ (Robert Simpson, et al.) [File not signed] C:\Program Files (x86)\KROS\ALFA plus\!System\SQLite.Interop.dll
2016-07-26 12:57 - 2016-07-26 12:57 - 000123904 _____ (Samsung Electronics Co., Ltd.) [File not signed] C:\Program Files (x86)\Samsung\Easy Printer Manager\SmartScreenPrint\CDAKEYMonitor64.dll
2016-07-26 12:59 - 2016-07-26 12:59 - 002524160 _____ (TODO: <Company name>) [File not signed] C:\Program Files (x86)\Samsung\Easy Printer Manager\CDAS2PC\CDAScan2PCMonitor.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 15:25 - 2013-08-22 15:25 - 000000824 _____ C:\windows\system32\drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Business Objects\Common\3.5\bin\NOTES\;C:\Program Files (x86)\Business Objects\Common\3.5\bin\NOTES\DATA\;c:\Program Files (x86)\Intel\iCLS Client\;c:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT
HKU\S-1-5-21-1940277907-3814265933-3346958118-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Pozadie plochy.bmp
DNS Servers: 192.168.1.1 - 195.146.128.62
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{A974871C-6899-434B-9B5D-ED61A907B7A2}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{C2FF22E5-3CFC-4154-B30D-E6842BFCD58F}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe (CyberLink Corp. -> CyberLink)
FirewallRules: [{4CD6981A-76F5-44ED-B52D-E7FF52C23C2A}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{602EF40E-497F-4251-AD21-CF3D320DBB3E}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{9BC39945-27E1-4DA3-AFDE-F3E196AF1388}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{0B134294-A80D-4CA2-B198-BF3C688FD3EA}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{279907E6-EB87-4DFF-A1C5-106A8AD92A42}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{FA63088C-8A43-408E-BF0F-B2D5DB1EFA0A}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{8E89CC42-56EC-4745-87C5-EABAA38E31A0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{C97DBA32-6900-4F69-B6FD-514858B9E196}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{CA8182DB-89F5-4913-BF8D-0048F18BD89B}] => (Allow) LPort=20400
FirewallRules: [{7205F9FD-46F9-4E56-9C02-C732EE865011}] => (Allow) LPort=20401
FirewallRules: [{7C88C7C1-639E-42DE-A85A-CB908452D169}] => (Allow) LPort=20402
FirewallRules: [{C261E0F3-764B-4CFA-ABA1-0AB119AFEFC7}] => (Allow) C:\Windows\twain_32\Samsung\SLM2070\ScanCDLM\ScanCDLM.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{3FBB5065-32EF-4431-B66D-7F397F7C67C8}] => (Allow) C:\Windows\twain_32\Samsung\SLM2070\ScanCDLM\ScanCDLM.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{D6811D48-974B-4BF2-BA6C-76643D424315}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\IDS.Application.exe (Samsung Electronics Co., Ltd.) [File not signed]
FirewallRules: [{A9223F3B-500A-4A8B-8C9D-D2F53D5C4BF6}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\OrderSupplies.exe (Samsung Electronics Co., Ltd.) [File not signed]
FirewallRules: [{1146ECAC-316A-4078-AA70-CBD40F63B9CC}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\IDSAlert.exe (Samsung Electronics Co., Ltd.) [File not signed]
FirewallRules: [{A67054EB-6293-4F9C-9DDF-3D2142D9D8C9}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\uninstall.exe (Samsung Electronics Co., Ltd.) [File not signed]
FirewallRules: [{989B8138-99B3-4BBC-AF0C-9957F4A62DC0}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\CDAS2PC\CDAS2PC.exe (Samsung Electronics Co., Ltd.) [File not signed]
FirewallRules: [{F2A41861-682E-4E7D-84A1-3B340CB74A69}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\CDAS2PC\ScanProcess.exe (ScanProcess) [File not signed]
FirewallRules: [{A7FDFA34-6CBB-4102-8893-FC40542E536A}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\CDAS2PC\Scan2PCNotify.exe (Scan2PCNotify) [File not signed]
FirewallRules: [{2CC845E5-1300-4406-8D31-8C74FC36581E}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{183EE54A-9FA2-4816-9043-792999497B0B}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{A753D584-B7F4-4FE0-BFD2-5569AB0E2FCF}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{39DE4381-4A49-4DE1-8908-4F4C1634C589}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{BAAC58F3-6716-4C90-B15D-A6F62B81DE55}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{D73BC4FF-09EF-4386-9CE7-BDDA76A839DA}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{94CB0B2F-2E6B-4448-9BC3-D6A5AE7DF344}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.)

==================== Restore Points =========================

09-05-2019 14:22:33 Scheduled Checkpoint
15-05-2019 08:55:06 Windows Update
22-05-2019 09:49:40 Scheduled Checkpoint

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (05/28/2019 01:47:09 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: The Open Procedure for service ".NETFramework" in DLL "C:\windows\system32\mscoree.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code.

Error: (05/27/2019 08:14:18 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: The Open Procedure for service ".NETFramework" in DLL "C:\windows\system32\mscoree.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code.

Error: (05/24/2019 03:01:00 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: The Open Procedure for service ".NETFramework" in DLL "C:\windows\system32\mscoree.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code.

Error: (05/22/2019 12:16:11 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: The Open Procedure for service ".NETFramework" in DLL "C:\windows\system32\mscoree.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code.

Error: (05/22/2019 11:22:24 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program mbamtray.exe version 3.1.0.1807 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: e64

Start Time: 01d50fb9c57e4ed1

Termination Time: 4294967295

Application Path: C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe

Report Id: 1667098f-7c73-11e9-82dc-40a8f059f4fa

Faulting package full name:

Faulting package-relative application ID:

Error: (05/21/2019 11:48:03 AM) (Source: Windows Search Service) (EventID: 10021) (User: )
Description: Nedajú sa získať informácie databázy registry počítadla výkonu pre WSearchIdxPi pre inštanciu následkom tejto chyby: Operácia sa úspešne dokončila. 0x0.

Error: (05/21/2019 11:48:03 AM) (Source: Windows Search Service) (EventID: 3007) (User: )
Description: Performance monitoring cannot be initialized for the gatherer object, because the counters are not loaded or the shared memory object cannot be opened. This only affects availability of the perfmon counters. Restart the computer.

Context: Application, SystemIndex Catalog

Error: (05/21/2019 11:48:03 AM) (Source: Windows Search Service) (EventID: 3006) (User: )
Description: Performance monitoring cannot be initialized for the gatherer service, because the counters are not loaded or the shared memory object cannot be opened. This only affects availability of the perfmon counters. Restart the computer.


System errors:
=============
Error: (05/29/2019 07:47:29 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba CyberLink PowerDVD 12 Media Server Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 18-krát.

Error: (05/29/2019 07:30:15 AM) (Source: DCOM) (EventID: 10010) (User: HP-PC)
Description: The server {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} did not register with DCOM within the required timeout.

Error: (05/29/2019 07:29:45 AM) (Source: DCOM) (EventID: 10010) (User: HP-PC)
Description: The server {1B1F472E-3221-4826-97DB-2C2324D389AE} did not register with DCOM within the required timeout.

Error: (05/28/2019 04:38:00 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba CyberLink PowerDVD 12 Media Server Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 17-krát.

Error: (05/28/2019 03:59:38 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba CyberLink PowerDVD 12 Media Server Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 16-krát.

Error: (05/28/2019 02:53:25 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Malwarebytes Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 3 krát. O 5000 ms bude vykonaná nasledujúca opravná akcia: Reštartovať službu.

Error: (05/28/2019 12:38:35 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba CyberLink PowerDVD 12 Media Server Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 15-krát.

Error: (05/28/2019 10:34:50 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba CyberLink PowerDVD 12 Media Server Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 14-krát.


Windows Defender:
===================================
Date: 2017-11-08 09:27:31.296
Description:
Windows Defender scan has been stopped before completion.
Scan ID: {DB8CDB64-524B-4130-A8A5-6F823A3BC736}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2017-11-08 09:14:16.989
Description:
Windows Defender scan has been stopped before completion.
Scan ID: {D0E644A7-36C0-4C82-B9F5-162C085530AA}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2017-11-07 07:45:45.089
Description:
Windows Defender scan has been stopped before completion.
Scan ID: {4662AC1D-32B8-447D-B846-799DA479BCCF}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2017-11-06 15:53:31.027
Description:
Windows Defender scan has been stopped before completion.
Scan ID: {B71493C3-D129-413B-83ED-9CAE3D70FE96}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2017-11-06 15:42:15.432
Description:
Windows Defender scan has been stopped before completion.
Scan ID: {32A71231-33F7-46DC-983C-FE5E2644A2C6}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2017-11-06 11:43:21.480
Description:
Windows Defender Real-Time Protection feature has encountered an error and failed.
Feature: Network Inspection System
Error Code: 0x80070002
Error description: Systém nemôže nájsť zadaný súbor.
Reason: The system is missing updates that are required for running Network Inspection System. Install the required updates and restart the computer.

Date: 2017-11-06 11:31:25.089
Description:
Windows Defender has encountered an error trying to load signatures and will attempt reverting back to a known-good set of signatures.
Signatures Attempted: Current
Error Code: 0x80073aba
Error description: Prostriedok je príliš starý, takže nemôže byť kompatibilný.
Signature version: 1.155.266.0;1.155.266.0
Engine version: 1.1.9700.0

Date: 2014-12-02 00:00:41.753
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version: 106.0.0.0
Update Source: Microsoft Malware Protection Center
Signature Type: Network Inspection System
Update Type: Full
Current Engine Version:
Previous Engine Version: 2.1.9700.0
Error code: 0x80072ee7
Error description: The server name or address could not be resolved

Date: 2014-12-02 00:00:41.737
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version: 1.155.266.0
Update Source: Microsoft Malware Protection Center
Signature Type: AntiSpyware
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.9700.0
Error code: 0x80072ee7
Error description: The server name or address could not be resolved

Date: 2014-12-02 00:00:41.737
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version: 1.155.266.0
Update Source: Microsoft Malware Protection Center
Signature Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.9700.0
Error code: 0x80072ee7
Error description: The server name or address could not be resolved

CodeIntegrity:
===================================

Date: 2017-07-28 12:46:30.026
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume4\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements.

Date: 2017-07-28 12:46:28.134
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume4\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements.

Date: 2017-07-28 12:20:56.853
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume4\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements.

Date: 2017-07-28 12:20:55.150
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume4\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements.

Date: 2017-07-27 14:14:29.499
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume4\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements.

Date: 2017-07-27 14:14:28.102
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume4\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements.

Date: 2017-07-26 11:06:18.585
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume4\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements.

Date: 2017-07-26 11:06:11.970
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume4\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements.

==================== Memory info ===========================

BIOS: AMI 80.03 05/05/2014
Motherboard: Hewlett-Packard 22F8
Processor: Intel(R) Celeron(R) CPU G1620 @ 2.70GHz
Percentage of memory in use: 60%
Total physical RAM: 3983.67 MB
Available physical RAM: 1562.05 MB
Total Virtual: 8256.83 MB
Available Virtual: 3701.56 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:456.05 GB) (Free:372.41 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive d: (Recovery Image) (Fixed) (Total:8.23 GB) (Free:1.04 GB) NTFS ==>[system with boot components (obtained from drive)]

\\?\Volume{9a022730-87bd-4196-a4f3-1c4154aee2c4}\ (Windows RE tools) (Fixed) (Total:1 GB) (Free:0.63 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 4976E778)

Partition: GPT.

==================== End of Addition.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomale PC

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Huso
Návštěvník
Návštěvník
Příspěvky: 166
Registrován: 18 lis 2007 19:00

Re: Pomale PC

#3 Příspěvek od Huso »

# -------------------------------
# Malwarebytes AdwCleaner 7.3.0.0
# -------------------------------
# Build: 04-04-2019
# Database: 2019-05-27.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 05-29-2019
# Duration: 00:00:16
# OS: Windows 8.1 Connected
# Scanned: 27501
# Detected: 0


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

No malicious registry entries found.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries found.

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.


AdwCleaner[S00].txt - [1256 octets] - [02/10/2018 11:09:49]
AdwCleaner[S01].txt - [1317 octets] - [09/11/2018 13:26:24]
AdwCleaner[S02].txt - [1378 octets] - [18/01/2019 14:50:32]
AdwCleaner[C02].txt - [1564 octets] - [18/01/2019 14:53:17]
AdwCleaner[S03].txt - [1500 octets] - [29/01/2019 10:23:15]
AdwCleaner[S04].txt - [1561 octets] - [30/01/2019 11:41:57]
AdwCleaner[S05].txt - [1622 octets] - [01/02/2019 09:32:44]
AdwCleaner[C05].txt - [1808 octets] - [01/02/2019 09:33:19]
AdwCleaner[S06].txt - [1744 octets] - [01/02/2019 10:05:31]
AdwCleaner[S07].txt - [1805 octets] - [14/03/2019 08:07:13]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S08].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomale PC

#4 Příspěvek od Rudy »

Toto je OK. Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore
Task: {AEF6A392-C720-407F-B5E9-538299AB73EB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-11-24] (Google Inc -> Google Inc.)
Task: {F5E5DD56-C6A2-4006-9E5E-B01115085502} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-11-24] (Google Inc -> Google Inc.)
C:\Users\HP\AppData\Local\{526FF1C0-1711-450E-84B5-B7969609F375}

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Huso
Návštěvník
Návštěvník
Příspěvky: 166
Registrován: 18 lis 2007 19:00

Re: Pomale PC

#5 Příspěvek od Huso »

Fix result of Farbar Recovery Scan Tool (x64) Version: 29-05.2019
Ran by HP (30-05-2019 11:10:09) Run:2
Running from C:\Users\HP\Desktop
Loaded Profiles: HP (Available Profiles: HP)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore
Task: {AEF6A392-C720-407F-B5E9-538299AB73EB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-11-24] (Google Inc -> Google Inc.)
Task: {F5E5DD56-C6A2-4006-9E5E-B01115085502} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-11-24] (Google Inc -> Google Inc.)
C:\Users\HP\AppData\Local\{526FF1C0-1711-450E-84B5-B7969609F375}

EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => removed successfully
HKLM\Software\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => not found
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => not found
C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{AEF6A392-C720-407F-B5E9-538299AB73EB}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AEF6A392-C720-407F-B5E9-538299AB73EB}" => removed successfully
"C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F5E5DD56-C6A2-4006-9E5E-B01115085502}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F5E5DD56-C6A2-4006-9E5E-B01115085502}" => removed successfully
"C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
C:\Users\HP\AppData\Local\{526FF1C0-1711-450E-84B5-B7969609F375} => moved successfully

=========== EmptyTemp: ==========

BITS transfer queue => 8388608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 12721323 B
Java, Flash, Steam htmlcache => 1258 B
Windows/system/drivers => 889255 B
Edge => 0 B
Chrome => 140164 B
Firefox => 173113939 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 128 B
LocalService => 16819658 B
NetworkService => 0 B
HP => 17537428 B

RecycleBin => 91819728 B
EmptyTemp: => 306.5 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 11:10:28 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomale PC

#6 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Huso
Návštěvník
Návštěvník
Příspěvky: 166
Registrován: 18 lis 2007 19:00

Re: Pomale PC

#7 Příspěvek od Huso »

O poznanie rychlejsie, ale stale mam pocit, ze aj po ukonceni vsetkych programov prebieha v pozadi nejaky proces, nasledne po spusteni programov sa otvaraju pomaly, okna naskakuju s oneskorenim, pri pisani textov rovnako oneskorene....a pocujem ze disk sa kruti a kruti....

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomale PC

#8 Příspěvek od Rudy »

Otevřte správce úloh a zjistěte, který pproces nejvíce zatěžuje systém.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Huso
Návštěvník
Návštěvník
Příspěvky: 166
Registrován: 18 lis 2007 19:00

Re: Pomale PC

#9 Příspěvek od Huso »

Takto je to asi jednoduchsie...

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomale PC

#10 Příspěvek od Rudy »

Huso píše:Takto je to asi jednoduchsie...
Potřebuji jen vědět, který proces systém zatěžuje. Pak lze snáze určit další postup.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět